Your network consists of an Active Directory forest that contains one domain named contoso.com AlI domain controllers run Windows Server 2008 and are configured as DNS servers You have two Active Directory-integrated zones : contoso.com and nwtraders.com You need to ensure a user is able to modify records in the contoso.com zone. You must prevent the user from modifying the SOA record in the nwtraders.com zone What should you do()
A. From the DNS Manager console, modify the permissions of the contoso.com zone.
B. From the DNS Manager console, modify the permissions of the nwtraders.com zone.
C. From the Actrve Directory Users and Computers console, run the Delegation of Control Wizard.
D. From the Actrve Directory Users and Computers console, modify the permissions of the Domain Controllers organizational unit (OU).