keywords:
Bookmark and Share



Front Back
A Windows Server 2008 computer that has been configured with the Active Directory DS role is referred to as a __________.
domain controller
A __________ is defined as one or more IP subnets that are connected by fast links.
site
A __________ name references an object in the Active Directory directory structure by using its entire hierarchical path, starting with the object itself and including all parent objects up to the root of the domain
distinguished
Active Directory relies on DNS to provide a locator service for clients on the network.
True
Active Directory uses __________ relationships to allow access between multiple domains and/or forests, either within a single forest or across multiple enterprise networks.
trust
Administration of an OU also can be delegated to a departmental supervisor or manager, and thus can allow that person to manage day-to-day resource access or more mundane tasks, such as resetting passwords. This is referred to as assignment of control.
False
If the domains within a forest are separated by slow WAN links and the tree-walking process takes an exceedingly long time to allow user authentication across domains, you can configure a __________ trust.
shortcut
Inbound replication is when a domain controller transmits replication information to other domain controllers on the network.
False
Interoperability with prior versions of Microsoft Windows is available in Windows Server 2008 through the use of __________.
functional levels
Interoperability with prior versions of Microsoft Windows is available in Windows Server 2008 through the use of functional levels.
True
Only the primary domain controller of the entire forest must be running an operating system supported by the targeted forest functional level.
False
The __________ Domain Controller contains a copy of the ntds.dit file that cannot be modified and does not replicate its changes to other domain controllers within Active Directory.
Read-Only
The largest container object within Active Directory is a(n)
forest
The process of keeping each domain controller in synch with changes that have been made elsewhere on the network is called __________.
replication
To raise the functional level of a forest, you must be logged on as a member of the __________ group.
Enterprise Admins
What allows businesses to define, manage, access, and secure network resources including files, printers, people, and applications?
directory service
What contains the rules and definitions that are used for creating and modifying object classes and attributes within Active Directory?
Schema NC
What locator records within DNS allow clients to locate an Active Directory domain controller or global catalog?
SRV records
What master database contains definitions of all objects in the Active Directory?
schema
What protocol has become an industry standard that enables data exchange between directory services and applications?
LDAP
What type of trust is new to Windows Server 2008 and is only available when the forest functionality is set to Windows Server 2008?
cross-forest trust
When a child domain is created, it automatically receives a __________ trust with its parent domain.
two-way transitive
Which functional level only allows Windows Server 2003 and Windows 2008 domain controllers?
Windows Server 2003
Which of the following is not a benefit of Active Directory Domain Services?
personalized desktops
__________ is the highest available forest functional level.
Windows Server 2008
Aging is the process of removing records that were not refreshed or updated within specified time intervals, which will occur naturally with machines that are removed from the network.
False
Because Server Core does not support graphical utilities, such as Server Manager and the Active Directory Installation Wizard, you need to run dcpromo from the command line using an unattended installation, which uses a specially formatted text file to specify the necessary
True
Each class or attribute that you add to the schema should have a valid __________.
OID
For domain controllers to register their records with DNS at startup, dynamic updates must be allowed.
True
Read-Only Domain Controllers provide added security in the way passwords are stored through what feature?
Password Replication Policy
The default location for the Active Directory database and log files is C:\Windows\System32.
False
What DLL must be registered to use the Schema Management snap-in?
schmmgmt.dll
What SRV record information serves as a mechanism to set up load balancing between multiple servers that are advertising the same SRV records?
priority
What command can you use to run the Active Directory Installation Wizard?
dcpromo
What command-line tool is used to create, delete, verify, and reset trust relationships from the Windows Server 2008 command line?
netdom
What feature makes it possible to configure a user as the local administrator of a specific RODC without making the user a Domain Admins with far-reaching authority over all domain controllers in your entire domain and full access to your Active Directory domain data?
Admin Role Separation
What is the minimum amount of storage space required for the Active Directory installation files?
200 MB
What is the process of replicating DNS information from one DNS server to another?
zone transfer
What new Windows Server 2008 feature is a special installation option that creates a minimal environment for running only specific services and roles?
Server Core
What processes can be used by Windows Server 2008 DNS to clean up the DNS database after DNS records become “stale” or out of date?
aging and scavenging
What role provides developers with the ability to store data for directory-enabled applications without incurring the overhead of extending the Active Directory schema to support their applications?
AD LDS
What shared folder exists on all domain controllers and is used to store Group Policy objects, login scripts, and other files that are replicated domain-wide?
SYSVOL
What type of trust allows you to configure trust relationships between Windows Server 2008 Active Directory and a UNIX MIT Kerberos realm?
realm
What type of trust relationship allows you to create two-way transitive trusts between separate forests?
cross-forest
What type of zone is necessary for computer hostname-to-IP address mappings, which are used for name resolution by a variety of services?
forward lookup
What utility is used to manually create trust relationships?
Active Directory Domains and Trusts MMC snap-in
When modifying the schema, Microsoft recommends adding administrators to what group only for the duration of the task?
Schema Admins
You can launch the Active Directory Installation Wizard using the dcpromo.exe command-line tool or from the Server Manager utility that’s installed in the Administrative Tools folder of each Windows Server 2008 server.
True
__________ partitions are used to separate forest-wide DNS information from domain-wide DNS information to control the scope of replication of different types of DNS data.
Application Directory
__________ roles work together to enable the multimaster functionality of Active Directory.
FSMO
x of y cards Next > >|