/* */
SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MCTS: Configuring A DNS Zone Infrastructure
Start Test
Study First
Subjects
:
certifications
,
mcts
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. ______ are public keys from other zones that are used to validate digitally signed records originating from those zones and from delegated subdomains that are also DNSSEC-compatible.
Trust anchors
stub
partition
Scavenge Stale Resource Records
2. The four options presented on the _____________________ are the following: 1. To All DNS Servers In This Forest 2. To All DNS Servers In This Domain 3. To All DCs In This Domain 4. To All DCs Specified In The Scope Of This Directory Partition
standard
The DNS server needs to be a domain controller.
AD Zone Replication Scope page
Group Policy
3. To configure notifications - click ______ on the Zone Transfers tab when zone transfers are enabled.
DomainDnsZones
Win Srvr 2008 and Win Srvr 2008 R2
Notify
1. A SOA record 2. At least one NS record.
4. Used to facilitate the resolution of single-label computer names in a large network.
trust anchor
Transfer New Copy Of Zone From Master
Refresh Interval
GlobalNames zone
5. You must be a member of the ______ group to create an application directory partition.
The DNS server needs to be a domain controller.
DomainDnsZones
masters
Enterprise Admins
6. By default - zone transfers are ______ from any zone.
Netlogon
Remove stale
disabled
manually enlist
7. Increasing the refresh interval ______ zone transfer traffic.
decreases
asymmetric encryption
Name Servers
use more than one name to point to
8. When the zone is stored in a file instead of AD - by default the primary zone file is named zone_name.dns - and this file is located in the ______ folder on the server.
dnscmd servername /createdirectorypartition FQDN
%systemroot%System32Dns
time stamp
Notify
9. Also recommended for use in the following scenarios: When a host specified in an A resource record in the same zone needs to be renamed - When a generic name for a well-known server such as www needs to resolve to a group of individual computers tha
Retry Interval
CNAME resource records
use more than one name to point to
Secondary
10. The GlobalNames zone is compatible only with DNS servers running ______. Therefore - it cannot replicate to servers running earlier versions of Windows Server.
Win Srvr 2008 and Win Srvr 2008 R2
Retry Interval
ForestDnsZones
delegate
11. To create a custom application directory partition - type the following command:
dnscmd /ZoneExport <zone name> <zone file name>
dnscmd servername /createdirectorypartition FQDN
Transfer From Master
deploying a GlobalNames zone
12. During this operation - the server hosting the local secondary zone determines whether the serial number in the secondary zone's SOA resource record has expired and then pulls a zone transfer from the master server.
Minimum (Default) TTL
Transfer From Master
To All Domain Controllers In This Domain
NRPT
13. When you do not store a zone in AD - the zone is called a ______ zone - and zone data is stored in text files on the DNS server.
standard
time stamp
Transfer New Copy Of Zone From Master
Scavenging
14. Public key cryptography provides ______ - which means that separate keys are used to encrypt and decrypt data.
asymmetric encryption
Standard zones
To All Domain Controllers Specified In The Scope Of This Directory Partition
The Zone Aging/Scavenging Properties
15. ______ zones provide a means to offload DNS query traffic in areas of the network where a zone is heavily queried and used.
delegate
DNS zone
notification
Secondary
16. What are the server requirements for storing a zone in AD?
Standard zones
The DNS server needs to be a domain controller.
To All DNS Servers In This Forest
Notify
17. You can perform a delegation only from a ________________.
parent zone to a child zone
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
1. A SOA record 2. At least one NS record.
Refresh Interval
18. In this way - digital signatures use ______ cryptography to prove that information is unspoofed and unchanged.
14
1. DomainDnsZones and - 2. ForestDnsZones
public key
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
19. DNSSEC enables a DNS server to ______ the resource records in its zones.
Transfer New Copy Of Zone From Master
digitally sign
Service location (SRV)
14
20. The value you configure in the ______ text box determines the default Time to Live (TTL) that is applied to all resource records in the zone. The default value is one hour.
the cache life of a resource record
Trust anchors
The Zone Aging/Scavenging Properties
Minimum (Default) TTL
21. The ______ allows you to specify the DNS query suffixes - prefixes - FQDNs - or reverse lookup subnets for which a Win 7 or Win Server 2008 R2 client will request DNSSEC.
dnscmd servername /createdirectorypartition FQDN
To All DNS Servers In This Domain
NRPT
Scavenge Stale Resource Records
22. This operation performs a zone transfer from the secondary zone's master server regardless of the serial number in the secondary zone's SOA resource record.
Transfer New Copy Of Zone From Master
Service location (SRV)
NRPT
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
23. To enable GlobalNames zone support - At an elevated command prompt - type the following: ______.
dnscmd . /config /enableglobalnamessupport 1
Service location (SRV)
Expires After
public key
24. By default - DCs include two application directory partitions reserved for DNS data: ______.
1. DomainDnsZones and - 2. ForestDnsZones
Transfer New Copy Of Zone From Master
disabled
aging
25. To ______ a zone is to create a new zone for a subdomain within a DNS namespace and relinquish authority of that new zone.
asymmetric encryption
To All DNS Servers In This Forest
stub
delegate
26. For a delegation to be implemented - the parent zone must contain a _____ and an _____ (called a glue record) pointing to each authoritative server of the delegated domain.
aging
NS record and an associated A record
request DNSSEC validation for specific queries
Standard zones
27. Alias resource records are sometimes called canonical names (CNAME). These records allow you to ______ a single host.
Win Srvr 2008 and Win Srvr 2008 R2
use more than one name to point to
request DNSSEC validation for specific queries
time stamp
28. If either of the default application directory partitions is deleted or damaged - you can re-create them in DNS Manager by right-clicking the server node and choosing ______.
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
accepted
dnscmd servername /enlistdirectorypartition FQDN
Create Default Application Directory Partitions
29. ______ resource records are used to specify the location of specific services in a domain.
Service location (SRV)
dnscmd /ZoneExport <zone name> <zone file name>
Group Policy
NS record and an associated A record
30. What does the 10 refer to in the following example: _ldap._tcp SRV 0 0 389 dc1.lucernepublishing.com.SRV 10 0 389 dc2.lucernepublishing.com.
Transfer From Master
priority of dc2.lucernepublishing.com.
To All Domain Controllers Specified In The Scope Of This Directory Partition
AD Zone Replication Scope page
31. To enable aging for a particular zone - you have to enable this feature both at the ______ level.
To All Domain Controllers Specified In The Scope Of This Directory Partition
Expires After
server level and at the zone level
CNAME resource records
32. The ______ partition is replicated among all DCs that are also DNS servers in every domain in an AD forest.
Enterprise Admins
The DNS server needs to be a domain controller.
ForestDnsZones
GlobalNames zone
33. Consequently - when aging is enabled - dynamically registered resource records can be scavenged after ___ days by default.
14
primary
To All Domain Controllers In This Domain
%systemroot%System32Dns
34. The no-refresh interval is the period after a time stamp during which a zone or server rejects a ______ refresh. The default no-refresh interval is 7 days.
dnscmd . /config /enableglobalnamessupport 1
GlobalNames zone
Secondary
time stamp
35. Scavenging can occur only when ______ is enabled.
aging
DomainDnsZones
DNS server
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
36. This operation reloads the secondary zone from the local storage.
14
Win Srvr 2008 and Win Srvr 2008 R2
priority of dc2.lucernepublishing.com.
Reload
37. A ______ is a public key for a remote DNS server that is trusted and able to provide DNSSEC responses.
Aging
trust anchor
priority of dc2.lucernepublishing.com.
Service location (SRV)
38. The ______ option stores the zone in the user-created application directory partition specified in the associated drop-down list box.
request DNSSEC validation for specific queries
To All Domain Controllers Specified In The Scope Of This Directory Partition
Notify
The Zone Aging/Scavenging Properties
39. To enlist other DNS servers in the partition - type the following command:
dnscmd servername /createdirectorypartition FQDN
dnscmd servername /enlistdirectorypartition FQDN
dnscmd /ZoneExport <zone name> <zone file name>
priority of dc2.lucernepublishing.com.
40. The _____ option stores the zone in the domain partition. Every DC in the local domain will receive a copy of the zone - regardless of whether the DNS Server role is installed on that DC.
To All Domain Controllers In This Domain
Aging
Scavenging
Standard zones
41. The value you configure in the ______ text box determines how long a secondary server waits before retrying a failed zone transfer. Normally - this time is less than the refresh interval. The default value is 10 minutes.
Retry Interval
dnscmd servername /enlistdirectorypartition FQDN
%systemroot%System32Dns
Notify
42. The refresh interval is the time after the no-refresh interval during which time stamp refreshes are ______ and resource records are not scavenged. The default refresh interval is 7 days.
Trust anchors
accepted
NS record and an associated A record
%systemroot%System32Dns
43. What is the name of the record that contains a hash of the public key in a delegated subdomain?
1. DomainDnsZones and - 2. ForestDnsZones
A DS record
Transfer New Copy Of Zone From Master
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
44. The ___________________ dialog box enables you to modify two key settings related to aging and scavenging: 1. the no-refresh interval 2. and the refresh interval
dnscmd /ZoneExport <zone name> <zone file name>
The Zone Aging/Scavenging Properties
DomainDnsZones
priority of dc2.lucernepublishing.com.
45. What kind of zones do not automatically perform time stamping on dynamically created resource records?
Standard zones
Aging
Notify
Win Srvr 2008 and Win Srvr 2008 R2
46. A ______ is a database containing records that associate names with addresses for a defined portion of a DNS namespace.
DNS zone
will not
14
Aging
47. When scavenging is not enabled - you can perform manual scavenging in zones by right-clicking the server icon in the DNS Manager console tree and then choosing ______.
server level and at the zone level
Scavenge Stale Resource Records
request DNSSEC validation for specific queries
Trust anchors
48. When you create a new zone - two types of records required for the zone are automatically created: ______
1. A SOA record 2. At least one NS record.
parent zone to a child zone
stub
Transfer From Master
49. The ______ option stores the new zone in the Domain-DnsZones partition. Every DC in the local domain and on which the DNS Server role is installed will receive a copy of the zone.
manually enlist
trigger zone transfers on secondary zones
To All DNS Servers In This Domain
use more than one name to point to
50. The first step in preparing a zone for DNSSEC is to back up the current zone data. To back up a zone - type the following command at an elevated command prompt: _______.
To All Domain Controllers Specified In The Scope Of This Directory Partition
To All DNS Servers In This Forest
dnscmd /ZoneExport <zone name> <zone file name>
parent and child AD DS domains
//
//