SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MCTS: Configuring A DNS Zone Infrastructure
Subjects
:
certifications
,
mcts
,
it-skills
Instructions:
Answer
50
questions in
20 minutes
.
2 minutes extra for reading the instructions.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. A ______ is a public key for a remote DNS server that is trusted and able to provide DNSSEC responses.
Win Srvr 2008 and Win Srvr 2008 R2
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
enable zone transfers
trust anchor
2. By default - DCs include two application directory partitions reserved for DNS data: ______.
To All Domain Controllers In This Domain
stub
1. DomainDnsZones and - 2. ForestDnsZones
Reload
3. Used to facilitate the resolution of single-label computer names in a large network.
aging
GlobalNames zone
delegate
dnscmd . /config /enableglobalnamessupport 1
4. ______ resource records are used to specify the location of specific services in a domain.
Retry Interval
Notify
Service location (SRV)
time stamp
5. Scavenging can occur only when ______ is enabled.
NS record and an associated A record
Trust anchors
trigger zone transfers on secondary zones
aging
6. By default - zone transfers are ______ from any zone.
Aging
manually enlist
disabled
Trust anchors
7. Consequently - when aging is enabled - dynamically registered resource records can be scavenged after ___ days by default.
14
Notify
GlobalNames zone
Service location (SRV)
8. What kind of zones do not automatically perform time stamping on dynamically created resource records?
public key
dnscmd servername /createdirectorypartition FQDN
Standard zones
Transfer New Copy Of Zone From Master
9. Public key cryptography provides ______ - which means that separate keys are used to encrypt and decrypt data.
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
asymmetric encryption
will not
use more than one name to point to
10. DNSSEC enables a DNS server to ______ the resource records in its zones.
digitally sign
NS record and an associated A record
Scavenge Stale Resource Records
AD Zone Replication Scope page
11. For a DC to fall within the scope of such a directory partition - you must ______ that DC in the partition.
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
manually enlist
Remove stale
12. When the zone is stored in a file instead of AD - by default the primary zone file is named zone_name.dns - and this file is located in the ______ folder on the server.
%systemroot%System32Dns
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
dnscmd /ZoneExport <zone name> <zone file name>
Transfer New Copy Of Zone From Master
13. If either of the default application directory partitions is deleted or damaged - you can re-create them in DNS Manager by right-clicking the server node and choosing ______.
deploying a GlobalNames zone
Win Srvr 2008 and Win Srvr 2008 R2
To All DNS Servers In This Forest
Create Default Application Directory Partitions
14. To enable GlobalNames zone support - At an elevated command prompt - type the following: ______.
To All DNS Servers In This Forest
DNS server
dnscmd . /config /enableglobalnamessupport 1
AD Zone Replication Scope page
15. The ______ allows you to specify the DNS query suffixes - prefixes - FQDNs - or reverse lookup subnets for which a Win 7 or Win Server 2008 R2 client will request DNSSEC.
trust anchor
Transfer New Copy Of Zone From Master
primary
NRPT
16. You use Group Policy to configure DNS clients to _________________.
To All DNS Servers In This Domain
dnscmd servername /enlistdirectorypartition FQDN
the cache life of a resource record
request DNSSEC validation for specific queries
17. To configure notifications - click ______ on the Zone Transfers tab when zone transfers are enabled.
Refresh Interval
accepted
Notify
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
18. What does the 10 refer to in the following example: _ldap._tcp SRV 0 0 389 dc1.lucernepublishing.com.SRV 10 0 389 dc2.lucernepublishing.com.
priority of dc2.lucernepublishing.com.
dnscmd servername /createdirectorypartition FQDN
dnscmd servername /enlistdirectorypartition FQDN
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
19. ______ are public keys from other zones that are used to validate digitally signed records originating from those zones and from delegated subdomains that are also DNSSEC-compatible.
Trust anchors
notification
ForestDnsZones
time stamp
20. The value you configure in the ______ text box determines how long a secondary server waits before retrying a failed zone transfer. Normally - this time is less than the refresh interval. The default value is 10 minutes.
Retry Interval
Netlogon
Aging
enable zone transfers
21. In this way - digital signatures use ______ cryptography to prove that information is unspoofed and unchanged.
time stamp
stub
Refresh Interval
public key
22. Also recommended for use in the following scenarios: When a host specified in an A resource record in the same zone needs to be renamed - When a generic name for a well-known server such as www needs to resolve to a group of individual computers tha
masters
deploying a GlobalNames zone
CNAME resource records
asymmetric encryption
23. The first step in preparing a zone for DNSSEC is to back up the current zone data. To back up a zone - type the following command at an elevated command prompt: _______.
The Zone Aging/Scavenging Properties
dnscmd /ZoneExport <zone name> <zone file name>
Trust anchors
public key
24. To add an NS record - double-click any existing NS record in DNS Manager and add the server data to the ______ tab.
notification
Name Servers
Win Srvr 2008 and Win Srvr 2008 R2
Secondary
25. ______ refers to the process of deleting outdated resource records on which time stamps have been placed.
Aging
Transfer New Copy Of Zone From Master
Retry Interval
Scavenging
26. A ______ is a database containing records that associate names with addresses for a defined portion of a DNS namespace.
Enterprise Admins
DNS zone
priority of dc2.lucernepublishing.com.
aging
27. DNS delegations are automatically used to separate ______ in a single forest.
parent and child AD DS domains
ForestDnsZones
1. A SOA record 2. At least one NS record.
Service location (SRV)
28. Any of three events can ________________: When the refresh interval of the primary zone's SOA resource record expires - When a server hosting a secondary zone boots up - When a change occurs in the configuration of the primary zone and this primary
To All Domain Controllers In This Domain
trigger zone transfers on secondary zones
AD Zone Replication Scope page
priority of dc2.lucernepublishing.com.
29. The ______ partition is replicated among all DCs that are also DNS servers in a particular domain
deploying a GlobalNames zone
DomainDnsZones
Scavenging
public key
30. To enlist other DNS servers in the partition - type the following command:
Name Servers
Transfer From Master
dnscmd servername /enlistdirectorypartition FQDN
Netlogon
31. The ______ partition is replicated among all DCs that are also DNS servers in every domain in an AD forest.
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
ForestDnsZones
Standard zones
priority of dc2.lucernepublishing.com.
32. For a delegation to be implemented - the parent zone must contain a _____ and an _____ (called a glue record) pointing to each authoritative server of the delegated domain.
NS record and an associated A record
parent zone to a child zone
Enterprise Admins
Create Default Application Directory Partitions
33. The value you configure in the ______ text box determines how long a secondary DNS server waits before querying the master server for a zone renewal. The default value for this setting is 15 minutes.
Refresh Interval
aging
DNS server
Netlogon
34. What is the name of the record that contains a hash of the public key in a delegated subdomain?
A DS record
delegate
AD Zone Replication Scope page
DNS zone
35. The value you configure in the ______ text box determines the length of time that a secondary server - without any contact with its master server - continues to answer queries from DNS clients. After this time elapses - the data is considered unrelia
GlobalNames zone
Netlogon
14
Expires After
36. To create a custom application directory partition - type the following command:
public key
aging
Secondary
dnscmd servername /createdirectorypartition FQDN
37. Alias resource records are sometimes called canonical names (CNAME). These records allow you to ______ a single host.
use more than one name to point to
%systemroot%System32Dns
priority of dc2.lucernepublishing.com.
stub
38. This operation performs a zone transfer from the secondary zone's master server regardless of the serial number in the secondary zone's SOA resource record.
GlobalNames zone
Transfer New Copy Of Zone From Master
Create Default Application Directory Partitions
deploying a GlobalNames zone
39. ______ zones provide a means to offload DNS query traffic in areas of the network where a zone is heavily queried and used.
DomainDnsZones
DNS zone
disabled
Secondary
40. During this operation - the server hosting the local secondary zone determines whether the serial number in the secondary zone's SOA resource record has expired and then pulls a zone transfer from the master server.
Expires After
Scavenging
%systemroot%System32Dns
Transfer From Master
41. You must be a member of the ______ group to create an application directory partition.
Enterprise Admins
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
partition
Retry Interval
42. ______ in DNS refers to the process of using time stamps to track the age of dynamically registered resource records.
Aging
manually enlist
Transfer From Master
To All Domain Controllers In This Domain
43. A secondary zone will not be recognized as a valid name server until it contains a valid copy of zone data. For the secondary zone to obtain this data - you must first ______ to that server.
enable zone transfers
dnscmd servername /enlistdirectorypartition FQDN
partition
%systemroot%System32Dns
44. The ___________________ dialog box enables you to modify two key settings related to aging and scavenging: 1. the no-refresh interval 2. and the refresh interval
the cache life of a resource record
The Zone Aging/Scavenging Properties
The DNS server needs to be a domain controller.
To All Domain Controllers In This Domain
45. The ______ option stores the zone in the user-created application directory partition specified in the associated drop-down list box.
A DS record
To All Domain Controllers Specified In The Scope Of This Directory Partition
enable zone transfers
asymmetric encryption
46. The most common resource records you need to create manually include the following:
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
manually enlist
CNAME resource records
parent zone to a child zone
47. The ______ option stores the new zone in the Domain-DnsZones partition. Every DC in the local domain and on which the DNS Server role is installed will receive a copy of the zone.
14
To All DNS Servers In This Domain
Name Servers
The Zone Aging/Scavenging Properties
48. This operation reloads the secondary zone from the local storage.
GlobalNames zone
Group Policy
time stamp
Reload
49. There are three basic steps in _______________: 1. Enable GlobalNames zone support. 2. Create the GlobalNames zone. 3. Populate the GlobalNames zone.
The Zone Aging/Scavenging Properties
Reload
Win Srvr 2008 and Win Srvr 2008 R2
deploying a GlobalNames zone
50. The GlobalNames zone is compatible only with DNS servers running ______. Therefore - it cannot replicate to servers running earlier versions of Windows Server.
Secondary
Win Srvr 2008 and Win Srvr 2008 R2
time stamp
The Zone Aging/Scavenging Properties