What should you do?

You support Windows 10 Enterprise desktop computers and tablets that are members of an Active Directory domain. The domain includes Active DirectoryCertificate Services. All users use virtual smart cards to log on to their computers.A domain user wants to log on to both his desktop computer and his tablet computer by using the same domain user account.You need to configure the desktop and tablet computers to support two-factor authentication for the same domain user account.What should you do?

Question:

What should you do?

Options:

Enroll the user for two separate certificates based on the Smartcard Logon template. Install one certificate in a virtual smart card on each of the user’s computers/

After the user has logged on to one computer, disable the Trusted Platform Module (TPM) on the second computer. Run the tpmvscmgr.exe utility on each of the computers.

Issue a temporary physical smart card. Use this smart card for an initial logon on each computer, then disconnect the tablet from the office network and destroy the temporary smart card.

Export the private key from the desktop computer. Import the private key to the tablet.

Correct Answer

The Correct Answer for this Question is

Enroll the user for two separate certificates based on the Smartcard Logon template. Install one certificate in a virtual smart card on each of the user’s computers/

Leave a Comment