You have a DNS server named Server1 that runs Windows Server 2012 R2.
Server1 has the zones shown in the following output.

What should you do first?

You need to delegate permissions to modify the records in the zone to a group named Group1.
What should you do first?

A. Enable the distribution of the trust anchors for

B. Unsign

C. Store in Active Directory.

D. Update the server data file for

From the exhibit we see that the zone is signed.
A trust anchor (or trust “point”) is a public cryptographic key for a signed zone. Trust anchors must be configured on every non-authoritative DNS server that will
attempt to validate DNS data. You cannot distribute trust anchors until after a zone is signed.
References: Trust Anchors

