SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MSITP
Start Test
Study First
Subjects
:
certifications
,
msitp
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. WSSvr1 has Windows SharePoint Services role installed and contains 20 SharePoint sites. You need to optimize performance and ensure that if CPU utilization exceeds 75% - then an equal amount of system resources are allocated to each SharePoint site.
Configure each SharePoint site to use a separate application pool - and then implement Windows System Resource Manager (WSRM)
Install WSUS 3.0 on a 2008 R2 server and configure Windows Update by using a GPO
Network Policy Server (NPS) and Routing and Remote Access Service (RRAS)
Event Subscriptions
2. If a file server reaches 15% free disk space - you could free up some disk space by
Creating a data collector set that kick off a scritp that either move or delete files.
Implement File Server Resource Manager (FSRM) quotas on the desired servers
Get-ADUser cmdlet
Configure a server with the Remote Desktop Services role and install Outlook 2003 on the Remote Desktop Services server. Then publish Outlook 2003 as a Remote Desktop Services RemoteApp (RD RemoteApp).
3. Your data provisioning solution must meet the following requirements: users must have access to their Documents folder regardless of the client computer that they use; user documents should not be stored on the local client computer; minimize the tim
Role Separation
dsa.msc - dsamain.exe - ntdsutil.exe
Configure folder redirection
Add George to the Domain Admins group.
4. What should be done so application does not fail after 30 days while still keeping password policy in mind?
Set-ADServiceAccount cmdlet
Reinstall AD DS on DCC.company.com as a WRITABLE DC.
Run the Delegation of Control Wizard on Sales OU. In Group Policy Management Console - modify the permissions of the Group Policy Objects container in the hr.domain.com domain.
You should: on one domain controller create an Active Directory-Integrated zone for remote domain and create and Active Directory-Integrated stub zone for main domain.
5. The Authorization Manager console is a Microsoft Management Console (MMC) snap-in. You can run the Authorization Manager console as a stand-alone console - or add it to any MMC console.
1) Publish the code signing template. 2) Modify the security settings on the template to allow only the administrators to request code signing certificates.
Deploy an additional WSUS server for the remote teachers. Configure the remote teacher's laptops to use the additional WSUS server. Configure the addtional WSUS server to leave the updates on the Microsoft Update Web Site.
Administrators is the minimum group membership required to complete this procedure.
In AD Sites and Services - assign a new IP subnet to SiteB - and then move the new DC object to SiteB.
6. Need to access some resources in another domain that is part of another forest...What trust is created?
Congifure the new Local User and Groups by using Group Policy Preferences option and link the policy to the Branch office site.
Create ADMX and ADML files. Configure the GPO and link it to the domain.
Incoming external trust
Add-ADFineGrainedPasswordPolicySubject cmdlet
7. Deployment solutions that will allow both the 64 bit version of Office 2010 and the 32 bit version Office 2003 to run at a same time on a Windows 7 computer - and to do that when the computer is offline - are very limited. You should recommend
Encrypting File System (EFS). This can be enabled locally or through a GPO.
Get-ADUser cmdlet
Microsoft Application Virtualization (AppV)
Deploy Microsoft SharePoint Foundation 2010 - and then migrate the share to a new document library. Enable versioning for the library
8. To create AD Domain Services snapshot
In each satellite office - install a WSUS server and configure the WSUS servers to use the main office WSUS server as an upstream server.
Prestage the computer account in AD
Ntdsutil
MEDV to deploy virtual desktops
9. AD structure includes a forest with one root domain and one child domain. Child domain lists entries that start with "S-1-5-21" but no account name listed. What should be done so account names are listed?
Move "Infrasture Master" role in child domain to a DC that does not hold the Global Catalog.
Recommend one AD based service account for each web site in each domain - that would mean 10 total. NOTE: Because you're using AD accounts that there is one web site in each domain the number of service accounts will match the number of domains.
Implement File Server Resource Manager (FSRM) quotas on the desired servers
dnscmd
10. New password settings object (PSO) created and needs to be applied to user
Backup operator's domain local group
Properties of PSO need modified
Modify zone transfer settings for company.com zone on DCA
Role Separation
11. Your file server contains 2 volumes; one that contains the operating system and the other volume contains all data files. Your recovery strategy must meet these requirements: allows the operating system to be restored; allows the data files to be res
Add the Windows Server Backup feature and Windows System Image recovery.
Then deploy Windows Deployment Services (WDS) and Transport Server feature and configure transport server to use static multicast address range.
Creating a data collector set that kick off a scritp that either move or delete files.
Recommend Active Directory delegation
12. An AD LDS instance needs to be replicated from one server to another...
Service user account for AD LDS
Modify properties of RODC server computer account.
Prestage the computer account in AD
Request and obtain a server authentication certificate from a trusted certification authority (CA) in your organization or from a trusted third-party CA - Authorization Manager provides a flexible framework for integratin role-based access control in
13. If you need to change the TCP/IP addresses on 30 servers using the minimum amount of administrative effort
Warning
: Invalid argument supplied for foreach() in
/var/www/html/basicversity.com/show_quiz.php
on line
183
14. Can be used to install the Windows RE on existing servers
Install WSUS 3.0 on a 2008 R2 server and configure Windows Update by using a GPO
WDS
Deploy an additional WSUS server for the remote teachers. Configure the remote teacher's laptops to use the additional WSUS server. Configure the addtional WSUS server to leave the updates on the Microsoft Update Web Site.
Authorization Manager
15. When implementing WSUS servers at branch offices or remote campuses you can configure the WSUS server a the remote location to be in
Run the Delegation of Control Wizard on the Staff OU
Changed manually
Autonomous mode...This allows the local administrator to approve their own updates.
Configure offline files and enable manual caching
16. You need a solution that meets policy while minimizing hardware and software costs
Network Policy Server (NPS) and Routing and Remote Access Service (RRAS)
Assign the support technicans to the Administrators group on the Windows Server 2008 R2 servers.
Create a new Password Settings Object (PSO) for the IT users.
Network Load Balancing (NLB) Cluser for the front end WSUS servers. This will allow users to have the continued access in the event that WSUS servers become unavailable.
17. What should be done first to defragment the AD database?
Run net stop ntds
Microsoft Desktop Optimization Pack (MDOP) to your company
Authorization Manager role assignment
You can apply IE Group Policies only to the OU's that contain clients that must be restricted based on your corporate policies.
18. If you need to delegate control of server to remote admins group
Increase the tombstone lifetime for the forest.
Provide remote access to a Windows Server 2008 R2 server that has the Remote Server Administration Tools (RSAT) installed.
Configure RODC for Administrator Role Separation
The Group Policy Management Console
19. You need a patch management strategy to deploy updates to the computers on the secure network. To accomplish
Modify Object Access Settings AND Global Object Access Auditing settings FROM Advanced Audit Policy configurations
Deploy WSUS server on secure network. From an online WSUS server - copy the update metadata and the WSUS content to the WSUS server on the secure network.
DSMOD
IIS Chared Configuration
20. To ensure that the SQL Servers can fail over autoatically and support 2 TB drives
Modify zone transfer settings for company.com zone on DCA
Create an e-mail account in AD DS for your RMS users.
Modify the local policy to point to the Internal WSUS server
Recommend GPT and basic disks
21. What should be done to resolve names by using GlobalNames zone?
Run adprep /forestprep and adprep /domainprep
Create TWO new starter GPO's one with user administrative templates configure - and one with computer admin template configured - and export them to .cab files - and make the .cab files available in both forests...Then when creating new group policie
Deploy two writable domain controllers in ad.company.com and recommend to configure both domain controllers as GC's.
dnscmd tool
22. To update ADRMS password...
AD Domains and Trusts
Add all the sales user accounts into a new global security group. Create a new Password Policy Object (PSO) and apply it to the group.
Add the user to the Domain Admins global group
AD Rights Management Services
23. What tool would you use to add a new User Principal Name (UPN) for all user accounts?
Microsoft System Center Data Protection Manager 2010
Then use Windows Deployment Services (WDS) on DHCP1.
Active Directory Domains and Trusts
Additional DFS Targets
24. Srv1 - Srv2 - Srv 3 are Network Policy Servers (NPS) that function as RADIUS Servers. Srv1 is also Microsoft SQL Server 2008 server. The network has 20 wireless access points that are configured as RADIUS clients. You need an audit strategy with the
Configure RADIUS accounting by using SQL loggin on each server and use Srv1 as database for RADIUS aaccounting.
Implement Windows System Resource Manager (WSRM)
Group Policy Preferences
Win2000
25. All servers run 2008 R2 and all client computers run Windows 7. Provide a necessary access solution that meets: only computers that have the most up-to-date service packs can be granted general network access; all noncompliant computers must be redir
The applications within the VM by using RemoteApp. Create a RemoteApp and Desktop Connection for each VM.
Use Windows Server Backup to perform a daily backup to an external disk. Enable shadow copies for the volumes that contain shared user data. Store the shadow copies on a separate physical disk.
Loopback Processing - The purpose of the Loopback Processing policy is to prevent usesr policies that currently affect the user from following them to a publicly used or (shared remote desktop) computer. We may indeed in many cases want these policie
Implement Network Access Protection (NAP)
26. To make deploying the custom Word dictionary easy
Run net stop ntds
Test-AppLockerPolicy
Recommend Group Policy preferences
Restore-ADObject cmdlet
27. To create and additional AD LDS applicaiton directory partition in existing instance...
Raise the DFL to Windows Server 2008 R2.
A Distributed File System (DFS) namespace
Active Directory Rights Management Services (AD RMS) and Microsoft SharePoint Foundation 2010
Ldp
28. To back up your Hyper-VMs and the Hyper-V host; for each VM -
Store the WSUS updates on a Distributed File System (DFS) link that uses multiple replicating targets.
Run a full back up by using Windows Server Backup - and then run a full back up of the Hyper-V hosts by using Windows Server Backup.
Encrypting File System (EFS). This can be enabled locally or through a GPO.
Install a full installation of Windows Server 2008 R2 Enterprise Edition on two servers and configure the failover cluster services on them.
29. The two role services must be deployed to prevent machines from connecting to the network if their security center settings (Firewall - Windows Updates - Defender) are NOT up to date are
Implement Shadow Copies
Use the Local Roles options with dsmgmt.
Network Policy Server (NPS) and Routing and Remote Access Service (RRAS)
Software Restriction Polices
30. You have 2 Server Core servers that are part of a Network Load Balance that host a web site. To be able to allow administrators - on their Windows 7 computers - remotely manage the NLB with automation
Deploy a standalone DFS namespace; Enable access-based enumeration and use DFS Replication
Enable Windows Remote Management (WinRM) on the servers.
Backup operator's domain local group
Run auditpol and then configure the Security settings of the Domain Controllers OU.
31. You need to access some resources in another domain that is part of another forest. What type of trust should you create?
1) Publish the code signing template. 2) Modify the security settings on the template to allow only the administrators to request code signing certificates.
Attach VHD file created by Windows server backup
Incoming external trust
Raise the DFL to Windows Server 2008 R2.
32. Your domain has three OUs - HR - IT - and Sales. You need to redesign the layout of the OUs to support the following: Prevent GPOs that are linked to the domain from applying to computers located in IT OU; minimize number of GPOs; minimize number of
Run the Delegation of Control Wizard on the Staff OU
Windows Server 2003
Create a new Password Settings Object (PSO) for the IT users.
Configure block inheritance on the IT OU
33. 4 steps to perform authoritative restore of a deleted OU...
Dsmgmt
1) Restart dc in DirectoryServiceRestoreMode - 2) Restory system state data to date before organizational unit was deleted - 3) Use ntdsutil utility to mark organizational unit as authoritative 4) Restart Domain Controller
Then use Windows BitLocker Drive Encryption
Win2000 Native
34. If you need to be able to create shared folders on Server 2008 R2
DSMOD - ADUC
Ensure your account - or the group is a member of the local Administrators group for that specific server.
Install Hyper-V role and convert physical machines into virtual machines
Include a server that runs Microsoft Office SharePoint Server 2010
35. If you need to minimize amount of time and impact of 50 simultaneous Win7 installations
Implement a GPO for each domain
newly implemented technologies must have a minimal effect on LAN traffic - is met by using express installation files
Event Log Subscriptions
Then deploy Windows Deployment Services (WDS) and Transport Server feature and configure transport server to use static multicast address range.
36. To replicate SYSVOL using Distributed File System Replication (DFSR)...
DFL needs to be Windows Server 2008
Install a new server that runs a 64-bit version of Windows Server 2008 R2 Enterprise Edition. Install the Hyper-V role. Install the App1 and App2 in separate child virtual machines.
FFL Windows Server 2008 R2
Configure caching on the shared folder and configure offline files to use encryption
37. All DCs have been upgraded from Windows Server 2003 to Windows Server 2008 R2. What should be done to ensure the Sysvol share replicates by using DFS Replicaiton (DFS-R)?
Raise the DFL to Windows Server 2008 R2.
Move "Infrasture Master" role in child domain to a DC that does not hold the Global Catalog.
Storage manager for SANs
Dynamically expanding VHD's
38. Srv1 is a file server that has five internal SCSI hard drives. Your storage strategy needs to meet the following requirements: Physically separates the operating system data from the user data; maximize the disk space available for data storage; uses
Upgrade one of the Server 2003 servers to Server 2008 R2. On this server - implement the Remote Desktop Services Gateway (RD Gateway) role and configure a Remote Desktop Services Resource authorization policy (RD RAP).
Ntdsutil
Recommend Group Policy preferences
Allocate three disks to a single RAID 5 volume for the user data. Allocate two disks to a mirrored volume for the operating system data.
39. If you need to implement a Cert Services solution that automates distribution of certificates - ensures security and gives external users acess to resources that use cert-based authentication
Import-Module
Purchase one additional Enterprise License
Deploy an off-line standalone Root CA - deploy an on-line Enterprise Subordinate CA - and deploy an on-line standalone Subordinate CA.
net stop ntds
40. You need to recommend management solution that will allow users to manage only certain parts of Hyper-V
Configure an audit policy by editing the default domain policy and configure Event Forwarding
Create a standard secondary of domain and create standard secondary of other domain.
Authorization Manager
Then use on install image file that contains a single install image.
41. With Group Polices having over 8 -000 different settings - the possibility of conflicting policies - and security filters you should track multiple versions and offline modifications to GPOs. You should recommend
Microsoft Desktop Optimization Pack (MDOP)
Install Microsoft Secure Socket Tunneling Protocol (SSTP)
Import-csv password.csv | Foreach {New-ADUser -Name $_.Name -Enabled $true_AccountPassword (ConvertTo_SecureString $_.Password -AsPlainText -force)}
Site
42. Two different solutions are available to help assign IP addresses to remote clients that need to VPN or Dial-in to the branch office.
Warning
: Invalid argument supplied for foreach() in
/var/www/html/basicversity.com/show_quiz.php
on line
183
43. when deploying Virtual Machines in a Remote Desktop pool you can minimize the amount of disk space used by the VM and reduced the admin effort by deploying this.
The applications within the VM by using RemoteApp. Create a RemoteApp and Desktop Connection for each VM.
Assign the application to all client computers by using a GPO.
Create a standard secondary of domain and create standard secondary of other domain.
Publish the application as a Remote App. Enable Remote Desktop Web Access (RD Web Access).
44. You need to come up with a solution for managing user accounts that: allows Help Desk department to manage the user objects in all domains and minimize the administrative effort required to manage the frequent changes to the Help Desk department
Incoming external trust
Raise the DFL to Windows Server 2008 R2.
Increase the tombstone lifetime for the forest.
Create a new global group named HelpDesk and then add the Help Desk department user accounts to the Helpdesk group. Add the HelpDesk group to the Account Operators group that is in all three domains. A-G-U-L-P.
45. Your company recently created a corporate web site using their own internal developers. Recently your CIO has decided that it would be best that some of the work be done by an outside contractor - and to allow that contractor to only the specific sec
Get-ADUser cmdlet
Deploy a failover cluster that contains one node in each office.
The Group Policy Management console
IIS Manager user account
46. There are now 4 primary types of VPN solutions - PPTP - L2TP - SSTP and Direct Access. If you need to implement a VPN on Vista SP1 or higher machines you can implement SSTP.
Role Separation
SSTP is a good solution if you have Vista SP1 or higher and your security team has already opened port 443 on the firewall and the coporate security policy states that they would prefer not to open any more ports on the firewall than necessary. SSTP
Create a Central Store
Windows Server 2003
47. All 2008 R2 servers and Windows 7 clients are connected to managed switches. The following are requirements for network access: only client computers that have up-to-date service packs installed can access the network; have up-to-date anti-malware so
Microsoft Desktop Optimization Pack (MDOP) to your company
Implement Network Access Protection (NAP) that uses 802.1x enforcement
Publish the application as a Remote App. Enable Remote Desktop Web Access (RD Web Access).
Use Windows Server Backup to back up each domain controller to a remote network share. Use Windows Deployment Services (WDS) to deploy the Windows Recovery Environment (Windows RE)
48. You don't want users to be able to install removable devices on client computers. However - domain admins and desktop support technicians must be allowed to install removable devices on client computers
Add-ADFineGrainedPasswordPolicySubject cmdlet
Certificate Templates
Configure block inheritance on the IT OU
Implement GPO for all client computers
49. To ensure that the branch office with its own high speed internet connection receives the exact same updates as the corporate office you should recommend this.
Place the operating system files on one of the RAID 1 array - place the SQL transaction logs on the other RAID 1 array - and place the SQL database files on the RAID 5 array
WSUS server running in replica mode that is configured to download updates from Microsoft Update (a.k.a. replica split)
1) Seize operations master roles from sever1 to server2 2) Rebuild Server as a replica domain controller 3) Transfer operations master roles from Server2 to Server1
802.1.x NAP
50. You are evaluating whether to use express installation files as an update distribution mechanism. The technical requirement that
newly implemented technologies must have a minimal effect on LAN traffic - is met by using express installation files
Deploy Microsoft System Center Operations Manager (SCOM)
Restore-ADObject cmdlet
Logged changes must include old and new values of any attributes. - Run auditpol and then configure Security settings of Domain Controllers OU
Can you answer 50 questions in 15 minutes?
Let me suggest you:
Browse all subjects
Browse all tests
Most popular tests
Major Subjects
Tests & Exams
AP
CLEP
DSST
GRE
SAT
GMAT
Certifications
CISSP go to https://www.isc2.org/
PMP
ITIL
RHCE
MCTS
More...
IT Skills
Android Programming
Data Modeling
Objective C Programming
Basic Python Programming
Adobe Illustrator
More...
Business Skills
Advertising Techniques
Business Accounting Basics
Business Strategy
Human Resource Management
Marketing Basics
More...
Soft Skills
Body Language
People Skills
Public Speaking
Persuasion
Job Hunting And Resumes
More...
Vocabulary
GRE Vocab
SAT Vocab
TOEFL Essential Vocab
Basic English Words For All
Global Words You Should Know
Business English
More...
Languages
AP German Vocab
AP Latin Vocab
SAT Subject Test: French
Italian Survival
Norwegian Survival
More...
Engineering
Audio Engineering
Computer Science Engineering
Aerospace Engineering
Chemical Engineering
Structural Engineering
More...
Health Sciences
Basic Nursing Skills
Health Science Language Fundamentals
Veterinary Technology Medical Language
Cardiology
Clinical Surgery
More...
English
Grammar Fundamentals
Literary And Rhetorical Vocab
Elements Of Style Vocab
Introduction To English Major
Complete Advanced Sentences
Literature
Homonyms
More...
Math
Algebra Formulas
Basic Arithmetic: Measurements
Metric Conversions
Geometric Properties
Important Math Facts
Number Sense Vocab
Business Math
More...
Other Major Subjects
Science
Economics
History
Law
Performing-arts
Cooking
Logic & Reasoning
Trivia
Browse all subjects
Browse all tests
Most popular tests