Sunteți pe pagina 1din 5

JKing

Chapter 4 Review Questions


1. The protocol for accessing Active Directory obects an! services is base! on
which of the following stan!ar!s"
a. D#$
b. %DA&
c. D'C&
!. (C)&
*. +hich ))C !o you use to create ,-s"
a. Active Directory $ites an! $ervices
b. Active Directory Do.ains an! Trusts
c. Active Directory -sers an! Co.puters
!. Co.puter )anage.ent
/. +hich wi0ar! is use! to assign users the authority to perfor. certain tas1s on
Active Directory obects" Delegation of Control +i0ar!
4. -ser2 co.puter2 an! group accounts can be referre! to as which of the following"
a. Discretionary access accounts
b. $ecurity !escriptors
c. %ocal obects
!. $ecurity principals
3. +hich of the following .ust you .o!ify if you want to change an Active Directory
obect4s per.issions"
a. DAC%
b. $AC%
c. ,bect attributes
!. ,bect sche.a
5. An obect4s owner auto.atically has 6ull control per.ission for the obect. True or
6alse"
7. JDoe is a .e.ber of a group that has 6ull control per.ission for an ,-2 which the
group inherite! fro. a parent ,-. +hat is the best way to stop JDoe fro. having
+rite per.ission to this ,- without a8ecting any other per.issions"
a. Re.ove JDoe fro. the group.
b. A!! a Deny AC9 for JDoe to the parent ,-.
c. A!! an e:plicit Deny AC9 for JDoe to the ,-.
!. A!! a Deny AC9 for the group to the parent ,-.
;. <ou4re logge! on as A!.inistrator to a !o.ain controller an! are trying to
troubleshoot a proble. with a user4s access to Active Directory obects. <ou open
Active Directory -sers an! Co.puters to access an obect4s properties. 'owever2
you can4t view the obect4s per.issions. +hat is the .ost li1ely proble."
a. <ou !on4t have su=cient per.issions to view the obect4s per.issions.
b. <ou nee! to open Active Directory Do.ains an! Trusts.
c. <ou nee! to enable A!vance! 6eatures.
!. <ou nee! to run the >iew ,bect &er.issions +i0ar!.
?. A user4s per.issions to an obect that are a co.bination of inherite! an! e:plicit
per.issions assigne! to the user4s account an! groups the user belongs to are
referre! to as which of the following"
a. (nherite! per.issions
b. 98ective per.issions
c. 9:plicit per.issions
!. Access per.issions
1@. (nherite! per.issions always overri!e e:plicit per.issions. True or 6alse"
11. <ou4re viewing the DAC% for an ,- an! notice an inherite! AC9 for a user
account that gives the account per.ission to the ,- that it shoul!n4t have. <ou
want to re.ove the AC9 fro. the ,-2 but you get an error .essage when you
atte.pt to !o so. +hat !o you nee! to !o"
a. ,pen Active Directory -sers an! Co.puters in a!.inistrative .o!e.
b. -se AD$( 9!it to re.ove per.issions.
c. Disable inheritance on the ,-.
!. A!! an e:plicit Deny AC9 for the user account.
1*. A user is having trouble accessing an ,-2 so you nee! to !eter.ine the user4s
per.issions to the ,-. <ou log on to the !o.ain controller as A!.inistrator an!
view the $ecurity tab of the ,-4s &roperties !ialog bo:. +hat !o you !o ne:t"
Clic1 the A!vance! button2 clic1 the 98ective &er.issions tab2 clic1 the $elect
button2 type the userAs account na.e2 an! clic1 ,K.
1/. +hich of the following is a !irectory partition" BChoose all that apply.C
a. Do.ain !irectory partition
b. Droup policy partition
c. $che.a !irectory partition
!. ConEguration partition
14. +hich is responsible for .anage.ent of a!!ing2 re.oving2 an! rena.ing
!o.ains in a forest"
a. $che.a .aster
b. (nfrastructure .aster
c. Do.ain na.ing .aster
!. R(D .aster
13. +hich is responsible for !eter.ining the replication topology"
a. D&,
b. &DC
c. R(D
!. KCC
15. <our co.pany has .erge! with another co.pany that also uses +in!ows $erver
*@@; an! Active Directory. <ou want to give the other co.pany4s users access to
your co.pany4s !o.ain resources an! vice versa without !uplicating account
infor.ation an! with the least a!.inistrative e8ort. 'ow can you acco.plish this"
Create A forest Trust
17. +hich of the following !o all !o.ains in the sa.e forest have in co..on"
BChoose all that apply.C
a. The sa.e !o.ain na.e
b. The sa.e sche.a
c. The sa.e user accounts
!. The sa.e global catalog
1;. +hich of the following is not a function of the global catalog"
a. 6acilitates forest wi!e searches
b. Keeps universal group .e.berships
c. 6acilitates intersite replication
!. 6acilitates forestwi!e logons
1?. <ou have an Active Directory forest of two trees an! eight !o.ains. <ou haven4t
change! any of the operations .aster !o.ain controllers. ,n which !o.ain
controller is the sche.a .aster"
a. All !o.ain controllers
b. The last !o.ain controller installe!
c. The Erst !o.ain controller in the forest root !o.ain
!. The Erst !o.ain controller in each tree
*@. +hich of the following is a vali! reason for using .ultiple forests"
a. Centrali0e! .anage.ent
b. #ee! for !i8erent sche.as
c. 9asy access to all !o.ain resources
!. #ee! for a single global catalog
*1. +hat can you !o to re!uce the !elay cause! by authentication referral"
a. Create a forest trust.
b. Create an e:ternal trust.
c. Create a shortcut trust.
!. Create a transitive trust.
**. +hat can you !o to integrate user authentication between %inu: an! Active
Directory"
a. Create a real. trust.
b. Create an e:ternal trust.
c. Create a oneFway trust.
!. Create a transitive trust.
*/. Trust relationships between all !o.ains in a forest are twoFway transitive trusts.
True or 6alse"
*4. +hich of the following is a reason to use .ultiple !o.ains" BChoose all that
apply.C
a. #ee! for !i8erent na.e i!entities
b. Replication control
c. #ee! for !i8ering account policies
!. 9asier access to resources
*3. +hich of the following is a reason for establishing .ultiple sites" BChoose all
that apply.C
a. (.proving authentication e=ciency
b. 9nabling .ore freGuent replication
c. Re!ucing tra=c on the +A#
!. 'aving only one (& subnet

S-ar putea să vă placă și