SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MCTS: Configuring A DNS Zone Infrastructure
Start Test
Study First
Subjects
:
certifications
,
mcts
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Alias resource records are sometimes called canonical names (CNAME). These records allow you to ______ a single host.
Transfer New Copy Of Zone From Master
delegate
Transfer From Master
use more than one name to point to
2. What kind of zones do not automatically perform time stamping on dynamically created resource records?
NRPT
Expires After
To All Domain Controllers Specified In The Scope Of This Directory Partition
Standard zones
3. For a DC to fall within the scope of such a directory partition - you must ______ that DC in the partition.
Retry Interval
manually enlist
A DS record
DomainDnsZones
4. A ______ is a public key for a remote DNS server that is trusted and able to provide DNSSEC responses.
dnscmd servername /enlistdirectorypartition FQDN
AD Zone Replication Scope page
DNS zone
trust anchor
5. To enlist other DNS servers in the partition - type the following command:
server level and at the zone level
dnscmd servername /enlistdirectorypartition FQDN
Group Policy
Transfer New Copy Of Zone From Master
6. The most common resource records you need to create manually include the following:
priority of dc2.lucernepublishing.com.
disabled
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
7. A secondary zone will not be recognized as a valid name server until it contains a valid copy of zone data. For the secondary zone to obtain this data - you must first ______ to that server.
dnscmd servername /enlistdirectorypartition FQDN
enable zone transfers
The Zone Aging/Scavenging Properties
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
8. The ___________________ dialog box enables you to modify two key settings related to aging and scavenging: 1. the no-refresh interval 2. and the refresh interval
standard
time stamp
The Zone Aging/Scavenging Properties
NS record and an associated A record
9. ______ are public keys from other zones that are used to validate digitally signed records originating from those zones and from delegated subdomains that are also DNSSEC-compatible.
Trust anchors
trust anchor
NS record and an associated A record
priority of dc2.lucernepublishing.com.
10. The four options presented on the _____________________ are the following: 1. To All DNS Servers In This Forest 2. To All DNS Servers In This Domain 3. To All DCs In This Domain 4. To All DCs Specified In The Scope Of This Directory Partition
AD Zone Replication Scope page
Win Srvr 2008 and Win Srvr 2008 R2
Trust anchors
Expires After
11. Active Directory-integrated zones perform time stamping for dynamically registered records by default - even before aging and scavenging are enabled. However - primary standard zones place time stamps on dynamically registered records in the zone onl
asymmetric encryption
dnscmd . /config /enableglobalnamessupport 1
aging
To All Domain Controllers In This Domain
12. There are three basic steps in _______________: 1. Enable GlobalNames zone support. 2. Create the GlobalNames zone. 3. Populate the GlobalNames zone.
public key
deploying a GlobalNames zone
accepted
Aging
13. Consequently - when aging is enabled - dynamically registered resource records can be scavenged after ___ days by default.
DomainDnsZones
14
Minimum (Default) TTL
CNAME resource records
14. You can perform a delegation only from a ________________.
parent zone to a child zone
A DS record
accepted
use more than one name to point to
15. When you do not store a zone in AD - the zone is called a ______ zone - and zone data is stored in text files on the DNS server.
standard
dnscmd . /config /enableglobalnamessupport 1
Create Default Application Directory Partitions
trust anchor
16. To configure notifications - click ______ on the Zone Transfers tab when zone transfers are enabled.
primary
trigger zone transfers on secondary zones
A DS record
Notify
17. By default - DCs include two application directory partitions reserved for DNS data: ______.
primary
asymmetric encryption
1. DomainDnsZones and - 2. ForestDnsZones
Enterprise Admins
18. This operation reloads the secondary zone from the local storage.
Reload
priority of dc2.lucernepublishing.com.
To All Domain Controllers In This Domain
public key
19. To enable GlobalNames zone support - At an elevated command prompt - type the following: ______.
dnscmd . /config /enableglobalnamessupport 1
14
A DS record
NRPT
20. Scavenging can occur only when ______ is enabled.
Create Default Application Directory Partitions
Win Srvr 2008 and Win Srvr 2008 R2
notification
aging
21. The ______ option stores the new zone in the Domain-DnsZones partition. Every DC in the local domain and on which the DNS Server role is installed will receive a copy of the zone.
To All DNS Servers In This Domain
%systemroot%System32Dns
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
GlobalNames zone
22. A ______ zone provides original read-write source data that allows the local DNS server to answer DNS queries authoritatively about a portion of a DNS namespace.
AD Zone Replication Scope page
To All DNS Servers In This Forest
standard
primary
23. The ______ option stores the new zone in the ForestDnsZones partition. Every DC in the entire forest and on which the DNS Server role is installed will receive a copy of the zone.
To All DNS Servers In This Forest
AD Zone Replication Scope page
partition
A DS record
24. The ______ service uses SRV records to locate DCs in a domain by searching the domain for the LDAP service.
asymmetric encryption
aging
NRPT
Netlogon
25. To enable aging for a particular zone - you have to enable this feature both at the ______ level.
primary
To All DNS Servers In This Forest
stub
server level and at the zone level
26. A ______ zone is similar to a secondary zone - but it contains only those resource records necessary to identify the authoritative DNS servers for the master zone.
stub
Name Servers
Standard zones
masters
27. This operation performs a zone transfer from the secondary zone's master server regardless of the serial number in the secondary zone's SOA resource record.
Transfer From Master
priority of dc2.lucernepublishing.com.
Standard zones
Transfer New Copy Of Zone From Master
28. DNSSEC enables a DNS server to ______ the resource records in its zones.
parent and child AD DS domains
digitally sign
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
To All DNS Servers In This Domain
29. Public key cryptography provides ______ - which means that separate keys are used to encrypt and decrypt data.
aging
asymmetric encryption
Secondary
DNS zone
30. By default - zone transfers are ______ from any zone.
DNS zone
Group Policy
primary
disabled
31. Increasing the refresh interval ______ zone transfer traffic.
Create Default Application Directory Partitions
AD Zone Replication Scope page
decreases
Scavenging
32. DNS delegations are automatically used to separate ______ in a single forest.
parent and child AD DS domains
Transfer New Copy Of Zone From Master
dnscmd servername /createdirectorypartition FQDN
dnscmd . /config /enableglobalnamessupport 1
33. In this way - digital signatures use ______ cryptography to prove that information is unspoofed and unchanged.
asymmetric encryption
Aging
To All Domain Controllers Specified In The Scope Of This Directory Partition
public key
34. To add an NS record - double-click any existing NS record in DNS Manager and add the server data to the ______ tab.
Aging
Name Servers
Trust anchors
stub
35. ______ zones provide a means to offload DNS query traffic in areas of the network where a zone is heavily queried and used.
notification
Reload
Secondary
ForestDnsZones
36. During this operation - the server hosting the local secondary zone determines whether the serial number in the secondary zone's SOA resource record has expired and then pulls a zone transfer from the master server.
masters
primary
Transfer From Master
14
37. The GlobalNames zone is compatible only with DNS servers running ______. Therefore - it cannot replicate to servers running earlier versions of Windows Server.
server level and at the zone level
Win Srvr 2008 and Win Srvr 2008 R2
partition
DomainDnsZones
38. For a delegation to be implemented - the parent zone must contain a _____ and an _____ (called a glue record) pointing to each authoritative server of the delegated domain.
To All Domain Controllers Specified In The Scope Of This Directory Partition
Refresh Interval
DomainDnsZones
NS record and an associated A record
39. When the zone is stored in a file instead of AD - by default the primary zone file is named zone_name.dns - and this file is located in the ______ folder on the server.
parent zone to a child zone
Expires After
use more than one name to point to
%systemroot%System32Dns
40. The ______ partition is replicated among all DCs that are also DNS servers in a particular domain
To All DNS Servers In This Forest
partition
DomainDnsZones
Service location (SRV)
41. To ______ a zone is to create a new zone for a subdomain within a DNS namespace and relinquish authority of that new zone.
Win Srvr 2008 and Win Srvr 2008 R2
trust anchor
delegate
digitally sign
42. The _____ option stores the zone in the domain partition. Every DC in the local domain will receive a copy of the zone - regardless of whether the DNS Server role is installed on that DC.
To All Domain Controllers In This Domain
dnscmd . /config /enableglobalnamessupport 1
the cache life of a resource record
Remove stale
43. The value you configure in the ______ text box determines the default Time to Live (TTL) that is applied to all resource records in the zone. The default value is one hour.
To All DNS Servers In This Forest
dnscmd . /config /enableglobalnamessupport 1
Minimum (Default) TTL
masters
44. What are the server requirements for storing a zone in AD?
public key
standard
The DNS server needs to be a domain controller.
masters
45. The value you configure in the ______ text box determines how long a secondary DNS server waits before querying the master server for a zone renewal. The default value for this setting is 15 minutes.
A DS record
Transfer New Copy Of Zone From Master
Refresh Interval
To All DNS Servers In This Forest
46. The value you configure in the ______ text box determines the length of time that a secondary server - without any contact with its master server - continues to answer queries from DNS clients. After this time elapses - the data is considered unrelia
A DS record
trust anchor
Expires After
NS record and an associated A record
47. A ______ is a data structure in AD that distinguishes data for different replication purposes.
enable zone transfers
digitally sign
Scavenge Stale Resource Records
partition
48. The refresh interval is the time after the no-refresh interval during which time stamp refreshes are ______ and resource records are not scavenged. The default refresh interval is 7 days.
Enterprise Admins
request DNSSEC validation for specific queries
Group Policy
accepted
49. Win 7 clients can be configured to request DNSSEC through the Name Resolution Policy Table (NRPT) in ______.
Group Policy
dnscmd /ZoneExport <zone name> <zone file name>
Reload
1. DomainDnsZones and - 2. ForestDnsZones
50. ______ resource records are used to specify the location of specific services in a domain.
masters
trust anchor
aging
Service location (SRV)