NEW
Font size
WorksheetsFinal Exam (Implementing and Designing a server)
Total questions: 25
Worksheet time: 2hrs 5mins
Microsoft's Network Access Protection is software for controlling network access for computers based on the host’s health, which depends on the newest security patches and a current antivirus/antimalware software package.
True
False
The overall architecture of NAP involves which of the following components
NAP enforcement points
Statement of health (SoH)
Remediation servers
All the options
NAP supports which enforcement methods?
802.1Y
NPN
DHCP
TCP
The DHCP method uses IPsec, which is secured by specially configured public key infrastructure (PKI) certificates known as health certificates.
True
False
Who defines the requirements for client computers that connect to your network.
System Health Validators
System Validators
System Health Devalidators
None
To create a trust between a forest or domain, use the Active Directory Domains and Trusts New Trust Wizard.
True
False
You can use Windows to create a trust between a unix domain and a non-Windows Kerberos v5 realm.
True
False
GPOs apply in the following order from the top down: Which is the correct order?
local, site, domain, and OU
local, OU, domain, and site
OU, site, domain, and local
local, site, OU, and domain
By using the WMI Query Language, you can filter based on several hardware and software criteria.
True
False
Designing GPOs is critical for ________
Domain operation
link operation
Object Operation
All the options
Loopfront policies are configured when the users that log on to specific computers require different or stricter user policies than those they have when they log on to other computers.
True
False
Site-linked Group Policy Objects are stored in the ___________ where they are created, and only the location of the site-linked GPO is replicated to other domains in the forest.
domain
forest
tree
GPOs
A security descriptor of an Active Directory object contains the following parts:
Owner
Primary Group
Optional SACL
All the options
The Remote Server Administration Tools (RSAT) allow you to manage roles and features installed on Windows Server 2012 R2 from a PC running Windows 8.1.
True
False
A server product name (SPN) is the name by which a client uniquely identifies an instance of a service.
True
False
The primary reason for creating multiple AD DS sites is to conserve the ___________
bandwidth
application
performance
replication
The Inter-site Topology Generator is responsible for managing the inbound replication connection objects for all bridgehead servers in the site in which it is located.
True
False
In an AD DS installation with multiple sites, each site designates one domain controller as the for each partition with a replica at that site.
bridgehead server
bridgedown server
bridgeup server
All the options
Domain controllers are the servers that store and run the Active Directory database. Active Directory is a major component in authentication, authorization, and auditing (AAA).
True
False
What is the primary function of a global catalog is to provide
Search Capability
UPN
Server Search
None
The schema master and domain naming master should be on domain controllers in the forest root domain and should be placed on a domain controller that is a global catalog server.
True
False
The primary responsibility of the forest root domain is to establish _________ that enable users in one domain to access resources in other domains.
trust paths
trust roads
paths
All the option
One primary reason for installing an RODC in a branch office is because no administrators at the site have the training to manage the AD DS database.
True
False
Which is the primary name resolution technology used on networks.
DNS
DHCP
TCP/UDP
SQL
Administrative Role Separation enables you to designate a local administrator for an RODC without granting any domain permissions.
True
False
