Explanation/Reference:
Explanation:
ADatum identifies the following security requirements:
An offline root certification authority (CA) must be configured.

Client computers must be issued certificates by a server in their local office.

Changes to the CA configuration settings and the CA security settings must be logged.

Client computers must be able to renew certificates automatically over the Internet.

The number of permissions and privileges assigned to users must be minimized whenever possible.

Users from a group named Group1 must be able to create new instances of App1 in the private cloud.

Client computers must be issued new certificates when the computers are connected to the local

network only.
The virtual machines used to host App2 must use BitLocker Drive Encryption (BitLocker).

Users from Trey Research must be able to access App2 by using their credentials from

treyresearch.com.
ADatum plans to implement the following changes:
Replace all of the servers with new servers that run Windows Server 2012.

Implement a private cloud by using Microsoft System Center 2012 to host instances of App1.

In the Miami office, deploy four new Hyper-V hosts to the perimeter network.

In the Miami office, deploy two new Hyper-V hosts to the local network.

In the Seattle office, deploy two new Hyper-V hosts.

In the Miami office, implement a System Center 2012 Configuration Manager primary site that has all of

the system roles installed.
Implement a public key infrastructure (PKI).
