Bookmark and Share

Front Back
A Windows Server 2008 computer that has been configured with the Active Directory DS role is referred to as a __________.
domain controller
A __________ is defined as one or more IP subnets that are connected by fast links.
A __________ name references an object in the Active Directory directory structure by using its entire hierarchical path, starting with the object itself and including all parent objects up to the root of the domain
Active Directory relies on DNS to provide a locator service for clients on the network.
Active Directory uses __________ relationships to allow access between multiple domains and/or forests, either within a single forest or across multiple enterprise networks.
Administration of an OU also can be delegated to a departmental supervisor or manager, and thus can allow that person to manage day-to-day resource access or more mundane tasks, such as resetting passwords. This is referred to as assignment of control.
If the domains within a forest are separated by slow WAN links and the tree-walking process takes an exceedingly long time to allow user authentication across domains, you can configure a __________ trust.
Inbound replication is when a domain controller transmits replication information to other domain controllers on the network.
Interoperability with prior versions of Microsoft Windows is available in Windows Server 2008 through the use of __________.
functional levels
Interoperability with prior versions of Microsoft Windows is available in Windows Server 2008 through the use of functional levels.
Only the primary domain controller of the entire forest must be running an operating system supported by the targeted forest functional level.
The __________ Domain Controller contains a copy of the ntds.dit file that cannot be modified and does not replicate its changes to other domain controllers within Active Directory.
The largest container object within Active Directory is a(n)
The process of keeping each domain controller in synch with changes that have been made elsewhere on the network is called __________.
To raise the functional level of a forest, you must be logged on as a member of the __________ group.
Enterprise Admins
What allows businesses to define, manage, access, and secure network resources including files, printers, people, and applications?
directory service
What contains the rules and definitions that are used for creating and modifying object classes and attributes within Active Directory?
Schema NC
What locator records within DNS allow clients to locate an Active Directory domain controller or global catalog?
SRV records
What master database contains definitions of all objects in the Active Directory?
What protocol has become an industry standard that enables data exchange between directory services and applications?
What type of trust is new to Windows Server 2008 and is only available when the forest functionality is set to Windows Server 2008?
cross-forest trust
When a child domain is created, it automatically receives a __________ trust with its parent domain.
two-way transitive
Which functional level only allows Windows Server 2003 and Windows 2008 domain controllers?
Windows Server 2003
Which of the following is not a benefit of Active Directory Domain Services?
personalized desktops
__________ is the highest available forest functional level.
Windows Server 2008
Aging is the process of removing records that were not refreshed or updated within specified time intervals, which will occur naturally with machines that are removed from the network.
Because Server Core does not support graphical utilities, such as Server Manager and the Active Directory Installation Wizard, you need to run dcpromo from the command line using an unattended installation, which uses a specially formatted text file to specify the necessary
Each class or attribute that you add to the schema should have a valid __________.
For domain controllers to register their records with DNS at startup, dynamic updates must be allowed.
Read-Only Domain Controllers provide added security in the way passwords are stored through what feature?
Password Replication Policy
The default location for the Active Directory database and log files is C:\Windows\System32.
What DLL must be registered to use the Schema Management snap-in?
What SRV record information serves as a mechanism to set up load balancing between multiple servers that are advertising the same SRV records?
What command can you use to run the Active Directory Installation Wizard?
What command-line tool is used to create, delete, verify, and reset trust relationships from the Windows Server 2008 command line?
What feature makes it possible to configure a user as the local administrator of a specific RODC without making the user a Domain Admins with far-reaching authority over all domain controllers in your entire domain and full access to your Active Directory domain data?
Admin Role Separation
What is the minimum amount of storage space required for the Active Directory installation files?
200 MB
What is the process of replicating DNS information from one DNS server to another?
zone transfer
What new Windows Server 2008 feature is a special installation option that creates a minimal environment for running only specific services and roles?
Server Core
What processes can be used by Windows Server 2008 DNS to clean up the DNS database after DNS records become “stale” or out of date?
aging and scavenging
What role provides developers with the ability to store data for directory-enabled applications without incurring the overhead of extending the Active Directory schema to support their applications?
What shared folder exists on all domain controllers and is used to store Group Policy objects, login scripts, and other files that are replicated domain-wide?
What type of trust allows you to configure trust relationships between Windows Server 2008 Active Directory and a UNIX MIT Kerberos realm?
What type of trust relationship allows you to create two-way transitive trusts between separate forests?
What type of zone is necessary for computer hostname-to-IP address mappings, which are used for name resolution by a variety of services?
forward lookup
What utility is used to manually create trust relationships?
Active Directory Domains and Trusts MMC snap-in
When modifying the schema, Microsoft recommends adding administrators to what group only for the duration of the task?
Schema Admins
You can launch the Active Directory Installation Wizard using the dcpromo.exe command-line tool or from the Server Manager utility that’s installed in the Administrative Tools folder of each Windows Server 2008 server.
__________ partitions are used to separate forest-wide DNS information from domain-wide DNS information to control the scope of replication of different types of DNS data.
Application Directory
__________ roles work together to enable the multimaster functionality of Active Directory.
x of y cards Next > >|