SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MSITP
Start Test
Study First
Subjects
:
certifications
,
msitp
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. The strongest form of NAP is
Active Directory Users and Computers utility
IPSec based enforcement. IPSec enforcement should be used when you want a stronger solution than 802.1x - DHCP or VPN based NAP. IPSec based NAP cannot be bypassed by modifying the NAP agent/client.
Back up to an external USB drive by using Windows Server Backup
Include a server that runs Microsoft Office SharePoint Server 2010
2. Ensure password length for a group set to 12 characters long while others keep password policy
Printer driver isolation
Add-ADFineGrainedPasswordPolicySubject cmdlet
Install the Remote Server Administration Tools (RSAT) on the Windows 7 computers.
Deploy a failover cluster that uses Node and File Share Disk Majority
3. To be able to manage all the corporate servers from a workstation - you must install the
FILES option within Ntdsutil
Deploy two writable domain controllers in ad.company.com and recommend to configure both domain controllers as GC's.
dnscmd tool
Remote Server Administrative Tools (RSAT) on your administrative workstation or laptop
4. You need to recommend a solution for users in the branch office to access files in the main office. To minimize the amount of time it takes for users in the Branch office to access files stored on servers in the main office - and minimize the number
Create an e-mail account in AD DS for your RMS users
Branch Cache server that operates in Hosted Cache mode in your recommendation. This is an ideal solution if the branch office already maintains a Server 2008 R2 server solution (no additional licenses would be needed)
Implement Shadow Copies
Multipath I/O feature
5. When deploying servers one would have to include some kind of process that would ultimately join the servers to the domain - this typically would require a script and a reboot. to help eliminate some of the steps involved and automate the deployment
Recommend Group Policy preferences
Implement a domain-based DFS namespace that uses replication
Offline domain join
1) Enable the Audit object access setting in the Local Security Policy for Srv1. 2) Configure auditing in the Certification Authority snap-in.
6. You are upgrading only a few computers in one department to Windows 7. These computers are running a legacy XP application you should recommend...
Windows XP Mode
Recommend GPT and basic disks
Allocate three disks to a single RAID 5 volume for the user data. Allocate two disks to a mirrored volume for the operating system data.
Passive file screens
7. SrvA has Remote Desktop Services role installed. You notice that users are consuming more than 40% of CPU resources. You want to prevent them from consuming more than 10% - however - administrators should not be limited.
Configure a server with the Remote Desktop Services role and install Outlook 2003 on the Remote Desktop Services server. Then publish Outlook 2003 as a Remote Desktop Services RemoteApp (RD RemoteApp).
Branch Cache server that operates in Hosted Cache mode in your recommendation. This is an ideal solution if the branch office already maintains a Server 2008 R2 server solution (no additional licenses would be needed)
Implement Windows System Resource Manager (WSRM) and configure user policies
AD Rights Management Services
8. You have a failover cluster that has an application installed. Service level agreement requires 55 percent of processor and memory utilization to be reserved for the app. A solution to guarantee service level agreement would be
Winrm quickconfig
1) Stop AD services service 2) Compact ntds.dit 3) Move to %windir% ntds 4) Start AD domain services service
Repadmin
Implement Windows System Resource Manager (WSRM) and configure a resource-allocation policy for process-based management.
9. When recommending a monitoring solution for an application so that it's events can be stored in a central
Event Subscriptions
Event Viewer
Distributed File System (DFS) Replication
Domain based Distributed File System (DFS) will reduce network traffic
10. You need to implement read only copies of files at several locations. You currently have DFS for 2008 deployed. You should recommend this.
dnscmd tool
Basic Authentication and SSL
1) Seize operations master roles from sever1 to server2 2) Rebuild Server as a replica domain controller 3) Transfer operations master roles from Server2 to Server1
Upgrading DFS to Windows Server 2008 R2
11. You have a forest with two domains - all servers run 2008 R2 - and all DCs contain DNS. A member server has a primary zone for test.company.com. What should be done so all DCs can resolve names from test.company.com zone?
fsconfig on FSSrv2
Login to one DC and create and configure a conditional forwarder to replicate to all DNS servers in the forest.
Use Netsh tool from administrator's computer.
Install the full installation of Windows Server 2008 R2 Web Edition on two servers - and configure them in a Network Load Balancing cluster
12. You have 159 server 2008 R2 servers that must meet the following: notification by e-mail to the administrator if error occurs on any server with minimum effort...
1) Run net stop ADLDS command 2) Use ntdsutil tool to move db files 3) Run net start ADLDS cmd
Store all sensitive files in EFS encrypted folders and require home users to access the files by using SSTP
On one server - create event subscriptions for each server...on the server - attach tasks to the application error events
Autonomous mode...This allows the local administrator to approve their own updates.
13. WSSvr1 has Windows SharePoint Services role installed and contains 20 SharePoint sites. You need to optimize performance and ensure that if CPU utilization exceeds 75% - then an equal amount of system resources are allocated to each SharePoint site.
Active Directory Domains and Trusts
Remote Server Administrative Tools (RSAT) on your administrative workstation or laptop
dsa.msc - dsamain.exe - ntdsutil.exe
Configure each SharePoint site to use a separate application pool - and then implement Windows System Resource Manager (WSRM)
14. What should be done first to defragment the AD database?
You should: on one domain controller create an Active Directory-Integrated zone for remote domain and create and Active Directory-Integrated stub zone for main domain.
Run net stop ntds
On one server - create event subscriptions for each server...on the server - attach tasks to the application error events
Run the Delegation of Control Wizard on Sales OU. In Group Policy Management Console - modify the permissions of the Group Policy Objects container in the hr.domain.com domain.
15. Srv1 is a file server that has five internal SCSI hard drives. Your storage strategy needs to meet the following requirements: Physically separates the operating system data from the user data; maximize the disk space available for data storage; uses
Microsoft System Center Data Protection Manager
Win2000 Native
Allocate three disks to a single RAID 5 volume for the user data. Allocate two disks to a mirrored volume for the operating system data.
Branch Cache server that operates in Hosted Cache mode in your recommendation. This is an ideal solution if the branch office already maintains a Server 2008 R2 server solution (no additional licenses would be needed)
16. Engineering department has 582 Windows Server 2008 R2 servers. You need to monitor the performance of all 582 with following requirements: Create alerts when average processor usage is higher than 85% for 15 minutes; Automatically adjust the processo
Use Netsh tool from administrator's computer.
From Server1 - run the Create Basic Task Wizard
Deploy WSUS server on secure network. From an online WSUS server - copy the update metadata and the WSUS content to the WSUS server on the secure network.
Deploy Microsoft System Center Operations Manager (SCOM)
17. To limit each user's storage space and to prevent users from storing audio and video files on the servers you should recommend
On one server - create event subscriptions for each server...on the server - attach tasks to the application error events
Deploy two writable domain controllers in ad.company.com and recommend to configure both domain controllers as GC's.
Dfsrdiag
File Server Resource Manager (FSRM) quotas and file screens
18. All servers run 2008 R2 and all client computers run XP SP1. You need to deploy Distributed File System (DFS) to meet these: minimize cost; provide redundancy in the event a single server fails; ensure client computers reconnect to their preferred se
1) Publish the code signing template. 2) Modify the security settings on the template to allow only the administrators to request code signing certificates.
Configure a server with the Remote Desktop Services role and install Outlook 2003 on the Remote Desktop Services server. Then publish Outlook 2003 as a Remote Desktop Services RemoteApp (RD RemoteApp).
Implement a domain-based DFS namespace and add a second namespace server; Enable the "Clients fail back to preferred targets" option. Make sure all client computers have at least XP SP2.
1) Enable the Audit object access setting in the Local Security Policy for Srv1. 2) Configure auditing in the Certification Authority snap-in.
19. When implementing WSUS servers at branch offices or remote campuses you can configure the WSUS server a the remote location to be in
Event Log Subscriptions
AD Domains and Trusts
Autonomous mode...This allows the local administrator to approve their own updates.
Implement a GPO for each domain
20. If you need to deploy a DHCP server that supports computers that start from a PXE network adapater and support Win7
Copy the ADMX files from your company's PDC emulator to the PolicyDefinitions folder on other company's PDC emulator.
New ACCOUNT STORE should be added and configured
Then use Windows Deployment Services (WDS)
Perform an authoritative restore
21. Policy states that users are to log into AD by usine a new User Principal Name (UPN). What tool should be used to modify the UPN suffix for all user accounts?
The Group Policy Management console
DSMOD
Add the IT Help Desk Users to the Group Policy Creator Owners group and then create a new Starter GPO.
Deploy a GPO to the WebSrvOU
22. GPO setting to prevent all users from running an application
Install a full installation of Windows Server 2008 R2 Enterprise Edition on two servers and configure the failover cluster services on them.
Install a Server Core installation of Windows Server 2008 R2 Enterprise. Note: Remember clusters must be either 2008 Enterprise or Datacenter - you cannot build a Microsoft Cluster using Web or Standard Editions
Software Restriction Polices
Multipath I/O feature
23. New password settings object (PSO) created and needs to be applied to user
Properties of PSO need modified
Service user account for AD LDS
Logged changes must include old and new values of any attributes. - Run auditpol and then configure Security settings of Domain Controllers OU
Remote Desktop Virtualization host - you wouldn't want all the users on the same Remote Desktop Session host to be local administrators.
24. If you need to deploy multiple servers through automation of installation and activation and minimize network traffic
You can apply IE Group Policies only to the OU's that contain clients that must be restricted based on your corporate policies.
Add the user to the Domain Admins global group
Install a full installation of Windows Server 2008 R2 Enterprise Edition on two servers and configure the failover cluster services on them.
Then use Key Management Service (KMS) - DHCP server - and Windows Deployment Services.
25. You need to create a DNS infrastructure that must allow client computers in each office to register DNA names within their respective offices and client computuers must be able to resolve names for hosts in all offices
Then deploy Windows Deployment Services (WDS) and Transport Server feature and configure transport server to use static multicast address range.
Ntdsutil
Install a new server that runs a 64-bit version of Windows Server 2008 R2 Enterprise Edition. Install the Hyper-V role. Install the App1 and App2 in separate child virtual machines.
Create an Active Directory-Integrated zone.
26. If your company has the need to create administrative templates (.admx) files for Active Directory runnin on server 2008 R2 you should recommend...
Include a server that runs Microsoft Office SharePoint Server 2010
Implementing a Central Store. This will allow custom .admx files to replicate and be available to administrators on any administrative workstation with the RSAT tools installed in the enterprise
Modify the schema of LDSInst1
Ntfrsutil
27. You have a main office that contains two domain controllers and a branch office that has an RODC. What should be done so that a user named George can install updates on the RODC while preventing George from logging on to any other domain controller?
Use the Local Roles options with dsmgmt.
Enable Windows Remote Management (WinRM) on the servers.
Raise the DFL to Windows Server 2008 R2.
Add the new UPN suffix to the forest.
28. SiteA is an existing AD site. You just created a new site in AD named SiteB. AD replication needs to be configured betwen the two sites so you install a new DC and you careatd a site link between the two sites. What should be done next?
Either implement a DHCP server at the branch office - or configure a "Static Pool" on the RRAS server itself. If deploying a DHCP server at the branch office isn't an option - then once the Remote Access Server role has been deployed you can configur
Configure the zone as an Activde Directory-Integrated zone.
Implement Distributed File System Replication (DFSR) on both servers
In AD Sites and Services - assign a new IP subnet to SiteB - and then move the new DC object to SiteB.
29. With Group Polices having over 8 -000 different settings - the possibility of conflicting policies - and security filters you should track multiple versions and offline modifications to GPOs. You should recommend
The Group Policy Management Console
ntdsutil
Apply a WMI Filter to the policy. Note: You can use a WMI filter to filter out VM from being affected by a GPO the same way you can a physcial machine.
Microsoft Desktop Optimization Pack (MDOP)
30. You have a main office and 2 branch offices. Your OU structure mimics this. The branch office admins need to be able to apply GPOs only to their respective OUs. What 2 steps should you take to accomplish this?
Test-AppLockerPolicy
1) Enable the Audit object access setting in the Local Security Policy for Srv1. 2) Configure auditing in the Certification Authority snap-in.
1) Restart dc in DirectoryServiceRestoreMode - 2) Restory system state data to date before organizational unit was deleted - 3) Use ntdsutil utility to mark organizational unit as authoritative 4) Restart Domain Controller
1) Add the branch office admin accounts to teh Group Policy Creator Owners Group. 2) Run the Delegation of Control Wizard and delegate the right to link GPOs for their branch OUs to the branch office admins.
31. Your forest containts only Windows Server 2008 domain controllers. What should be done to prepare the AD domain to install Windows Server 2008 R2 DCs?
Modify the DNS zone replication properties of the root domain - and change it to the ForestDNSZones application directory partition
Run adprep /forestprep and adprep /domainprep
Back up to an external USB drive by using Windows Server Backup
Install and share a printer on a server and then enable printer pooling.
32. To create AD Domain Services snapshot
Windows XP Mode
Dsmgmt
Ntdsutil
Implement Microsoft System Center Configuration Manager (SCCM) 2007 R2.
33. All 2008 R2 servers and Windows 7 clients are connected to managed switches. The following are requirements for network access: only client computers that have up-to-date service packs installed can access the network; have up-to-date anti-malware so
Implement a domain-based DFS namespace that uses DFS Replication in a hub and spoke topology
Then Install IIS on perimeter network and redirect request to Online Responder on internal network.
Implement Network Access Protection (NAP) that uses 802.1x enforcement
DISABLE slow link detection in the GPO
34. You have 9 2008 R2 servers that host Web apps. You need a remote mgmt strategy to manage the Web servers according to these requirements: Web developers need to be able to configure features on the Web sites; Web developers should not have full admin
Branch Cache server that operates in Hosted Cache mode in your recommendation. This is an ideal solution if the branch office already maintains a Server 2008 R2 server solution (no additional licenses would be needed)
Configure authorization rules for Web developers on each web server
Add the new UPN Suffix to the forest
File Server Resource Manager (FSRM) quotas and file screens
35. To add a server with AD FS 2.0 role to an existing AD FS farm...
fsconfig on FSSrv2
dnscmd tool
A Distributed File System (DFS) namespace
Store all sensitive files in EFS encrypted folders and require home users to access the files by using SSTP
36. PowerShell script to create user accounts with passwords from a file called password.csv
Active Directory Users and Computers utility
Create an e-mail account in AD DS for your RMS users.
Configure authorization rules for Web developers on each web server
Import-csv password.csv | Foreach {New-ADUser -Name $_.Name -Enabled $true_AccountPassword (ConvertTo_SecureString $_.Password -AsPlainText -force)}
37. Your DFS deployment needs to meet these requirements: minimize the bandwidth required to replicate data; ensure users see only folders to which they have access; ensure users can access the data locally.
You should: on one domain controller create an Active Directory-Integrated zone for remote domain and create and Active Directory-Integrated stub zone for main domain.
Include a server that runs Microsoft Office SharePoint Server 2010
Deploy a standalone DFS namespace; Enable access-based enumeration and use DFS Replication
Use Netsh tool from administrator's computer.
38. You need to come up with a solution for managing user accounts that: allows Help Desk department to manage the user objects in all domains and minimize the administrative effort required to manage the frequent changes to the Help Desk department
Request and obtain a server authentication certificate from a trusted certification authority (CA) in your organization or from a trusted third-party CA - Authorization Manager provides a flexible framework for integratin role-based access control in
Then use Windows BitLocker Drive Encryption
Microsoft System Center Data Protection Manager
Create a new global group named HelpDesk and then add the Help Desk department user accounts to the Helpdesk group. Add the HelpDesk group to the Account Operators group that is in all three domains. A-G-U-L-P.
39. To backup GPO's in domain and minimize bakcup...
Assign the application to computers in the PC OU
The Group Policy Management Console
Autonomous mode...This allows the local administrator to approve their own updates.
1) Enable the Audit object access setting in the Local Security Policy for Srv1. 2) Configure auditing in the Certification Authority snap-in.
40. Tool to change Directory Services Restore Mode password on Domain Controller...
Domain based Distributed File System (DFS) namespace and DFS Replication.
In each satellite office - install a WSUS server and configure the WSUS servers to use the main office WSUS server as an upstream server.
ntdsutil
Include a server that runs Microsoft Office SharePoint Server 2010
41. To speed up the deployment of the RODC in the new branch offices you should take advantage of this.
Deploy Microsoft System Center Operations Manager (SCOM)
Install From Media IFM
Administrative Role Separation
Group Policy Preferences
42. When configuring delegation of administration for Domain Controllers at a remote location you must Add the users or groups as members of the Domain Admins Group. However - be careful to allow just a certain user or group of users to manage the Domain
Request and obtain a server authentication certificate from a trusted certification authority (CA) in your organization or from a trusted third-party CA - Authorization Manager provides a flexible framework for integratin role-based access control in
Then configure auto enrollment of certificates and Credential Roaming.
Install Microsoft Secure Socket Tunneling Protocol (SSTP)
Establish a Federated Trust between your company and the external partner. Deploy a 2008 R2 server that runs MIcrosoft SharePoint 2010 and that has the Active Directory Rights Management Services (AD MS) role installed.
43. If you need to minimize amount of time and impact of 50 simultaneous Win7 installations
Install the RSAT tool on their workstation to provide for more efficient network management
Purchase one additional Enterprise License
Then deploy Windows Deployment Services (WDS) and Transport Server feature and configure transport server to use static multicast address range.
View properties of %systemroot%ntdsntds.dit
44. All DCs have been upgraded from Windows Server 2003 to Windows Server 2008 R2. What should be done to ensure the Sysvol share replicates by using DFS Replicaiton (DFS-R)?
File Server Resource Manager (FSRM) quotas and file screens
Upgrade one of the Server 2003 servers to Server 2008 R2. On this server implement the Remote Desktop Services Gateway (RD Gateway) role and configure a Remote Desktop Services connection authorization policy (RD CAP).
Raise the DFL to Windows Server 2008 R2.
Create a Network Load Balancing cluster.
45. If CA PKI needs to support Suite B hashing and encryption algorithms and store keys in AD
Install the File Server Resource Manager (FSRM) role service on the sales department file server. Configure hard quotas and file screening.
Then install new Server 2008 R2 Enterprise subordinate CA.
Store all sensitive files in EFS encrypted folders and require home users to access the files by using SSTP
A Fibre Channel (FC) disk storage subsystem that uses Microsoft Multipath I/O. Configure a RAID 5 array.
46. In order for admins at a branch office to be able to change their passwords and logon if a single DC fails even if the WAN Link to the corporate office fails you shoud
Warning
: Invalid argument supplied for foreach() in
/var/www/html/basicversity.com/show_quiz.php
on line
183
47. George's user account has been deleted in Active Directory. George's user account needs to be restored by usine minimal amount of effort. What should be done?
Perform an authoritative restore
Event Viewer
Back up to an external USB drive by using Windows Server Backup
Modify the local policy to point to the Internal WSUS server
48. To allow a specifc user or group to manage the address information for the user accounts...
Deploy a standalone DFS namespace; Enable access-based enumeration and use DFS Replication
Then Install IIS on perimeter network and redirect request to Online Responder on internal network.
Recommend Active Directory delegation
Use local roles options within "dsmgmt"
49. If you need to be able to create shared folders on Server 2008 R2
Deploy the application via RemoteApp as an .MSI file and enable File Extension Take over.
Ensure your account - or the group is a member of the local Administrators group for that specific server.
Deploy a two-node cluster. Connect an external storage subsystem. Configure the external subsystem as a RAID 10 array - and format the array as a GPT disk.
Event Subscriptions
50. BLANK BLANK is a computer Group Policy setting that can be for example; Linked at an OU where public kiosks/remote desktop session host computers reside.
Authorization Manager role assignment
Use local roles options within "dsmgmt"
Certificate Templates
Loopback Processing - The purpose of the Loopback Processing policy is to prevent usesr policies that currently affect the user from following them to a publicly used or (shared remote desktop) computer. We may indeed in many cases want these policie
Can you answer 50 questions in 15 minutes?
Let me suggest you:
Browse all subjects
Browse all tests
Most popular tests
Major Subjects
Tests & Exams
AP
CLEP
DSST
GRE
SAT
GMAT
Certifications
CISSP go to https://www.isc2.org/
PMP
ITIL
RHCE
MCTS
More...
IT Skills
Android Programming
Data Modeling
Objective C Programming
Basic Python Programming
Adobe Illustrator
More...
Business Skills
Advertising Techniques
Business Accounting Basics
Business Strategy
Human Resource Management
Marketing Basics
More...
Soft Skills
Body Language
People Skills
Public Speaking
Persuasion
Job Hunting And Resumes
More...
Vocabulary
GRE Vocab
SAT Vocab
TOEFL Essential Vocab
Basic English Words For All
Global Words You Should Know
Business English
More...
Languages
AP German Vocab
AP Latin Vocab
SAT Subject Test: French
Italian Survival
Norwegian Survival
More...
Engineering
Audio Engineering
Computer Science Engineering
Aerospace Engineering
Chemical Engineering
Structural Engineering
More...
Health Sciences
Basic Nursing Skills
Health Science Language Fundamentals
Veterinary Technology Medical Language
Cardiology
Clinical Surgery
More...
English
Grammar Fundamentals
Literary And Rhetorical Vocab
Elements Of Style Vocab
Introduction To English Major
Complete Advanced Sentences
Literature
Homonyms
More...
Math
Algebra Formulas
Basic Arithmetic: Measurements
Metric Conversions
Geometric Properties
Important Math Facts
Number Sense Vocab
Business Math
More...
Other Major Subjects
Science
Economics
History
Law
Performing-arts
Cooking
Logic & Reasoning
Trivia
Browse all subjects
Browse all tests
Most popular tests