SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MCTS: Configuring A DNS Zone Infrastructure
Start Test
Study First
Subjects
:
certifications
,
mcts
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. ______ refers to the process of deleting outdated resource records on which time stamps have been placed.
Scavenge Stale Resource Records
will not
Scavenging
enable zone transfers
2. ______ resource records are used to specify the location of specific services in a domain.
Service location (SRV)
dnscmd /ZoneExport <zone name> <zone file name>
%systemroot%System32Dns
Scavenging
3. The ______ option stores the zone in the user-created application directory partition specified in the associated drop-down list box.
asymmetric encryption
digitally sign
To All Domain Controllers Specified In The Scope Of This Directory Partition
notification
4. The GlobalNames zone is compatible only with DNS servers running ______. Therefore - it cannot replicate to servers running earlier versions of Windows Server.
Scavenge Stale Resource Records
masters
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
Win Srvr 2008 and Win Srvr 2008 R2
5. To add an NS record - double-click any existing NS record in DNS Manager and add the server data to the ______ tab.
standard
14
Name Servers
To All DNS Servers In This Forest
6. The Zone Transfers tab also allows you to configure ______ to secondary servers whenever a change occurs at the primary zone.
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
Secondary
accepted
notification
7. Any of three events can ________________: When the refresh interval of the primary zone's SOA resource record expires - When a server hosting a secondary zone boots up - When a change occurs in the configuration of the primary zone and this primary
trigger zone transfers on secondary zones
Expires After
Notify
ForestDnsZones
8. The value you configure in the ______ text box determines the default Time to Live (TTL) that is applied to all resource records in the zone. The default value is one hour.
aging
Netlogon
trigger zone transfers on secondary zones
Minimum (Default) TTL
9. ______ are public keys from other zones that are used to validate digitally signed records originating from those zones and from delegated subdomains that are also DNSSEC-compatible.
request DNSSEC validation for specific queries
will not
use more than one name to point to
Trust anchors
10. The value you configure in the ______ text box determines how long a secondary server waits before retrying a failed zone transfer. Normally - this time is less than the refresh interval. The default value is 10 minutes.
Retry Interval
Netlogon
Aging
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
11. The first step in preparing a zone for DNSSEC is to back up the current zone data. To back up a zone - type the following command at an elevated command prompt: _______.
accepted
dnscmd /ZoneExport <zone name> <zone file name>
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
14
12. Alias resource records are sometimes called canonical names (CNAME). These records allow you to ______ a single host.
Refresh Interval
dnscmd servername /createdirectorypartition FQDN
disabled
use more than one name to point to
13. You must be a member of the ______ group to create an application directory partition.
the cache life of a resource record
Enterprise Admins
AD Zone Replication Scope page
will not
14. Increasing the refresh interval ______ zone transfer traffic.
dnscmd servername /createdirectorypartition FQDN
Group Policy
Name Servers
decreases
15. The refresh interval is the time after the no-refresh interval during which time stamp refreshes are ______ and resource records are not scavenged. The default refresh interval is 7 days.
trust anchor
Netlogon
accepted
A DS record
16. ______ in DNS refers to the process of using time stamps to track the age of dynamically registered resource records.
The DNS server needs to be a domain controller.
Scavenge Stale Resource Records
Aging
will not
17. Win 7 clients can be configured to request DNSSEC through the Name Resolution Policy Table (NRPT) in ______.
To All DNS Servers In This Forest
time stamp
partition
Group Policy
18. When you do not store a zone in AD - the zone is called a ______ zone - and zone data is stored in text files on the DNS server.
Trust anchors
standard
Scavenging
aging
19. This operation reloads the secondary zone from the local storage.
Reload
trust anchor
time stamp
manually enlist
20. TTL values are not relevant for resource records within their authoritative zones. Instead - the TTL refers to ______ in nonauthoritative servers. A DNS server that has cached a resource record from a previous query discards the record when that reco
stub
To All Domain Controllers In This Domain
asymmetric encryption
the cache life of a resource record
21. What kind of zones do not automatically perform time stamping on dynamically created resource records?
parent zone to a child zone
NS record and an associated A record
Standard zones
To All Domain Controllers In This Domain
22. The ______ allows you to specify the DNS query suffixes - prefixes - FQDNs - or reverse lookup subnets for which a Win 7 or Win Server 2008 R2 client will request DNSSEC.
asymmetric encryption
aging
NRPT
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
23. DNSSEC in Win Server 2008 R2 allows a ______ to validate DNS data on behalf of its Win 7 clients.
Scavenge Stale Resource Records
1. DomainDnsZones and - 2. ForestDnsZones
digitally sign
DNS server
24. The ______ service uses SRV records to locate DCs in a domain by searching the domain for the LDAP service.
%systemroot%System32Dns
dnscmd servername /enlistdirectorypartition FQDN
Netlogon
To All DNS Servers In This Domain
25. A ______ is a data structure in AD that distinguishes data for different replication purposes.
partition
The Zone Aging/Scavenging Properties
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
Scavenge Stale Resource Records
26. The most common resource records you need to create manually include the following:
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
trust anchor
dnscmd servername /createdirectorypartition FQDN
The DNS server needs to be a domain controller.
27. The ______ partition is replicated among all DCs that are also DNS servers in a particular domain
14
DomainDnsZones
A DS record
stub
28. You use Group Policy to configure DNS clients to _________________.
dnscmd . /config /enableglobalnamessupport 1
enable zone transfers
Win Srvr 2008 and Win Srvr 2008 R2
request DNSSEC validation for specific queries
29. When you create a new zone - two types of records required for the zone are automatically created: ______
GlobalNames zone
NS record and an associated A record
1. A SOA record 2. At least one NS record.
Refresh Interval
30. There are three basic steps in _______________: 1. Enable GlobalNames zone support. 2. Create the GlobalNames zone. 3. Populate the GlobalNames zone.
decreases
Transfer New Copy Of Zone From Master
Enterprise Admins
deploying a GlobalNames zone
31. For a delegation to be implemented - the parent zone must contain a _____ and an _____ (called a glue record) pointing to each authoritative server of the delegated domain.
decreases
manually enlist
NS record and an associated A record
Minimum (Default) TTL
32. What are the server requirements for storing a zone in AD?
The DNS server needs to be a domain controller.
partition
To All Domain Controllers In This Domain
asymmetric encryption
33. The no-refresh interval is the period after a time stamp during which a zone or server rejects a ______ refresh. The default no-refresh interval is 7 days.
time stamp
Trust anchors
AD Zone Replication Scope page
trigger zone transfers on secondary zones
34. For a DC to fall within the scope of such a directory partition - you must ______ that DC in the partition.
The Zone Aging/Scavenging Properties
A DS record
aging
manually enlist
35. DNSSEC enables a DNS server to ______ the resource records in its zones.
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
aging
digitally sign
Trust anchors
36. The value you configure in the ______ text box determines how long a secondary DNS server waits before querying the master server for a zone renewal. The default value for this setting is 15 minutes.
Refresh Interval
disabled
dnscmd /ZoneExport <zone name> <zone file name>
1. A SOA record 2. At least one NS record.
37. The source zones from which secondary zones acquire their info are called ______ - and the data copy procedures through which this info is regularly updated are called zone transfers.
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
GlobalNames zone
masters
Aging
38. DNS delegations are automatically used to separate ______ in a single forest.
Name Servers
enable zone transfers
Aging
parent and child AD DS domains
39. During this operation - the server hosting the local secondary zone determines whether the serial number in the secondary zone's SOA resource record has expired and then pulls a zone transfer from the master server.
The DNS server needs to be a domain controller.
%systemroot%System32Dns
Transfer From Master
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
40. A secondary zone will not be recognized as a valid name server until it contains a valid copy of zone data. For the secondary zone to obtain this data - you must first ______ to that server.
enable zone transfers
masters
NS record and an associated A record
To All Domain Controllers In This Domain
41. Public key cryptography provides ______ - which means that separate keys are used to encrypt and decrypt data.
The DNS server needs to be a domain controller.
NS record and an associated A record
asymmetric encryption
Scavenging
42. You can perform a delegation only from a ________________.
trust anchor
Trust anchors
enable zone transfers
parent zone to a child zone
43. What does the 10 refer to in the following example: _ldap._tcp SRV 0 0 389 dc1.lucernepublishing.com.SRV 10 0 389 dc2.lucernepublishing.com.
primary
priority of dc2.lucernepublishing.com.
notification
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
44. To create a custom application directory partition - type the following command:
will not
dnscmd servername /createdirectorypartition FQDN
NRPT
accepted
45. The _____ option stores the zone in the domain partition. Every DC in the local domain will receive a copy of the zone - regardless of whether the DNS Server role is installed on that DC.
CNAME resource records
Minimum (Default) TTL
To All Domain Controllers In This Domain
To All Domain Controllers Specified In The Scope Of This Directory Partition
46. Manually created resource records for all zone types are assigned a time stamp of 0; this value indicates that they ______ be aged.
will not
NS record and an associated A record
masters
accepted
47. The ___________________ dialog box enables you to modify two key settings related to aging and scavenging: 1. the no-refresh interval 2. and the refresh interval
The Zone Aging/Scavenging Properties
Transfer New Copy Of Zone From Master
Win Srvr 2008 and Win Srvr 2008 R2
public key
48. The four options presented on the _____________________ are the following: 1. To All DNS Servers In This Forest 2. To All DNS Servers In This Domain 3. To All DCs In This Domain 4. To All DCs Specified In The Scope Of This Directory Partition
Create Default Application Directory Partitions
masters
AD Zone Replication Scope page
dnscmd . /config /enableglobalnamessupport 1
49. This operation performs a zone transfer from the secondary zone's master server regardless of the serial number in the secondary zone's SOA resource record.
dnscmd /ZoneExport <zone name> <zone file name>
Transfer New Copy Of Zone From Master
accepted
Scavenge Stale Resource Records
50. A ______ is a public key for a remote DNS server that is trusted and able to provide DNSSEC responses.
Group Policy
trust anchor
Netlogon
Win Srvr 2008 and Win Srvr 2008 R2