wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

20742B: Identity with Windows Server (Part B)

Total questions: 52

Worksheet time: 31mins

Name
Class
Date
1.

All new GPO's are automatically linked to the local domain. True or false?

a)

True

b)

False

2.

What is the order in which GPO'S are processed on a client computer

a)

Child OU, OU, Domain, Site, Local

b)

Local, Site, Domain, OU, Child OU

c)

Site, Domain, Local, Child OU, OU

d)

Domain, Site, OU, Child OU, Local

3.

Administrative templates modify registry keys. Select the two hives in the registry.

a)

HKEY_CURRENT_CONFIG

b)

HKEY_LOCAL_MACHINE

c)

HKEY_USERS\.DEFAULT

d)

HKEY_CURRENT_USER

4.

Select the registry based policy from the list

a)

Starter Group Policy

b)

Local Group Policy

c)

Administrative Template

5.

What are the two types of files used to store in Administrative Templates

a)

.XML files

b)

.ADM files

c)

.ACL files

d)

.ADMX files

6.

.ADMX files are copied into every GPO in SYSVOL folder. True or False?

a)

True

b)

False

7.

.ADM are language neutral. True or False?

a)

True

b)

False

8.

Create a folder as a common place at SYSVOL folder to store .admx files is called as

a)

External Drive

b)

Central Store

c)

Shared Folder

9.

Options available in folder redirection

a)

Active

b)

None

c)

Basic

d)

Disabled

e)

Advanced

10.

Group policy preferences are set of extensions that expand the functionality of GPO’s, True or False?

a)

True

b)

False

11.

What are scripting language used in group policy scripts? Select 2 from the list

a)

Pearl script

b)

VB script

c)

PHP

d)

Jscript

12.

In-regards to Fine-grained polices, select one option from the list.

a)

Provide the ability to specify different password policies and account lockouts

b)

Provide the ability to specify single password policy and account lockout

c)

Provide the ability to eliminate password polices

13.

From the list select the Multi-factor bio-metric method authentication

a)

Finger print

b)

Digital signature

c)

Voice recognition

d)

User ID and password

14.

What's the default maximum password age?

a)

32

b)

44

c)

42

d)

46

15.

Account lock down durations are calculated in

a)

Days

b)

Seconds

c)

Hours

d)

Minutes

16.

A value of '0' is set in Account Lockout Threshold, which means ...

a)

The account is never locked out

b)

The account is locked out and you must contact administrator

c)

The account will wait for 1 hour and then user can try to login

17.

Managed service account. Select one correct answer from the list

a)

MSA user must change his password to gain access to a service

b)

MSA can provide a program with its own unique account

c)

MSA defines a contract between IT vendor and a client

18.

What's the default settings for enforce password history?

a)

14

b)

24

c)

34

19.

ADCS is one of the following. Select one correct answer from the following list:

a)

Active Directory Computer Services

b)

Active Directory Certificate services

c)

Active Directory Corporate services

20.

CA issues certificate to entities, choose 2 entities

a)

Users

b)

Computers

c)

Public key

d)

Private key

21.

What are the 2 parts in a digital certificate?

a)

Public key

b)

Private key

c)

Customer address

d)

Provider address

22.

Select 2 correct answers about a CA

a)

CA is a computer in ADCS server role installed

b)

CA is a user or administrator in ADCS

c)

CA can sign and revoke certificates

d)

CA is a router in ADCS

23.

Root CA certificates are issued by another CA, True or False?

a)

True

b)

False

24.

Select 1 correct answer about Subordinate CA from the list of options

a)

Is the most trusted type of CA hierarchy

b)

has a self-signed certificate

c)

there could be 1 or many in a certificate hierarchy

d)

mandatory in a CA hierarchy

25.

Select 2 certificate templates from the list

a)

Folder

b)

Computer

c)

User

d)

File

26.

Select the tool to manage certificates. Select all the correct answers

a)

PKI view

b)

Certutil.exe

c)

Online Responder

d)

ADprep

27.

In RODC, by default, user credentials are replicated, True or False?

a)

True

b)

False

28.

________________ allows you to implement a PKI for your organisation

a)

ADFS

b)

ADDS

c)

ADCS

29.

Certificate enrollment methods includes the following, select the missing one

Auto enrollment

Manual enrollment

CA web enrollment

a)

Advanced enrollment

b)

Private enrollment

c)

Enroll on Behalf

d)

Basic enrollment

30.

KRA refers to (a)  

31.

Revocation is the process in which you enable the validity of one or more certificates, True or False?

a)

True

b)

False

32.

What's AIA in deploying certificates?

a)

Authority Information Access

b)

Authority Information Administration

c)

Administrator Internal Access

33.

Certificate enrollment methods includes the following, select 2 methods

a)

Public enrollment

b)

Private enrollment

c)

CA web enrollment

d)

Enrollment on behalf

34.

Configuration management is:

a)

Are used by system objects as the default location for new objects

b)

Is the user account that is authenticated to the domain controller

c)

A centralised approach to applying one or more changes to more than one computer or user

d)

Is a role performed only on a specific computer in a domain controller

35.

What's VSC in security and identification? Select one answer from the list

a)

Volume Shadow Copy

b)

Virtual Shared Computer

c)

Virtual Smart Card

d)

Visual Studio Computer

36.

What are the two types of CA's in two-tier CA hierarchy?

a)

Root

b)

Forest

c)

Domain

d)

Subordinate

37.

In configuring certificate template permissions, fill in the missing permissions

Read, Write, Full Control, Enroll, (a)  

38.

The claims provider is the server that issues claims and authenticates users, True or False?

a)

True

b)

False

39.

Select 2 ADFS components

a)

Attribute store

b)

Key Recovery Agent

c)

Online Responder service

d)

Endpoints

e)

Profile

40.

In a federated trust, the ______________ servers in 2 organisations never have to communicate directly with each other. All communications happens over HTTPS.

a)

ADDS Servers

b)

ADCS

c)

ADFS

d)

DNS

41.

ADRMS is used to ...

a)

Backup and recover

b)

safeguard digital information

c)

replicate user information

d)

communicate with ADFS server

42.

Select ADRMS-aware applications

a)

Exchange

b)

SharePoint server

c)

Office 365

d)

All of the above

43.

In ADRMS, every entity that interacts with the system is represented by a certificate, True or False?

a)

True

b)

False

44.

Dfsrmig is tool to perform migration from FRS to DFS, True or False?

a)

True

b)

False

45.

You should create additional sites in AD for the following reasons:

(Select 2 from the correct answers from the following)

a)

A connection between your HO and branch office location is less than 512kb/s

b)

To create a subnet in the network

c)

Clients use domain controllers that are nearest to them for authentication

d)

To have a different website in IIS

46.

Creates the replication topology for Sites. Select 1 correct answer from the following

a)

DCdiag.exe

b)

ISTG

c)

Repadmin.exe

47.

To implement in AD RMS cluster, which components are necessary?

a)

Office

b)

A Service Account

c)

A Database

d)

ADFS

e)

A Secure Sockets Layer (SSL) certificate

48.

What's the information that's not contained in the physical certificate when you compare it with a digital certificate?

a)

Public Key

b)

Email Address

c)

Private Key

d)

User ID

49.

Certificate is a ______________

a)

Command

b)

File

c)

Database

d)

Schema

50.

Version 1 templates can be duplicated to create version 2 or 3 templates, True or False?

a)

True

b)

False

51.

Information protection technology to safeguard digital information that works with _________ enabled applications

a)

RSAT

b)

ADRMS

c)

ADIMS

d)

ADFS

52.

When you install ADDS, a default site named "Default First-site-Name" is created, True or False?

a)

True

b)

False