Your network consists of one Active Directory forest that contains two domains named<br /> Domain1.contoso.com and Domain2.contoso.com. The functional level of the forest is Windows Server 2003.<br /> The domains contain the global security groups shown in the following table.<br /> <img src="https://nimg.ppkao.com/2018-07/yuanhao/2018072715184435443.jpg?sign=09a5677356feecb65ba1d76e9cb42a23&t=62d01f73" /><br /> Each domain has three servers. Each server has a group named Sales-Applications-Local. The<br /> Sales-Applications-Local groups are used to grant permissions to resources on the servers.<br /> You need to implement a solution to meet the following requirements:<br /> Allow Sales department employees from any domain to access the Sales department resources in any domain.<br /> Minimize administrative effort when membership of the Sales department changes, additional domains are added,or additional servers are added.<br /> What should you do? ()
A、·On each of the servers, add Domain1-Sales-Global and Domain2-Sales-Global to Sales-Applications-Local. ·In Domain1, create a universal security group named Sales-Department-Universal. ·Add Domain1-Sales-Global and Domain2-Sales-Global to Sales-Department-Universal.
B、·On each of the servers, add Sales-Department-Universal group to Sales-Applications-Local. ·In each domain, create a domain local security group named Sales-Applications-Domain-Local. ·In each domain, add Domain1-Sales-Global and Domain2-Sales-Global to Sales-Applications-Domain-Local.
C、·On each of the servers, assign permissions to Sales-Applications-Domain-Local from the local domain. ·Create two universal security groups named Domain1\Sales-Department-Universal andDomain2\Sales-Department-Universal. ·Add Domain1\Domain1-Sales-Global to Domain1\Sales-Department-Universal. ·Add Domain2\Domain2-Sales-Global to Domain2\Sales-Department-Universal.
D、·On each of the servers, add Domain1\Sales-Department-Universal and Domain2\Sales-Department-Universal to Sales-Applications-Local.