SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MCTS: Configuring A DNS Zone Infrastructure
Start Test
Study First
Subjects
:
certifications
,
mcts
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Consequently - when aging is enabled - dynamically registered resource records can be scavenged after ___ days by default.
digitally sign
dnscmd /ZoneExport <zone name> <zone file name>
request DNSSEC validation for specific queries
14
2. To ______ a zone is to create a new zone for a subdomain within a DNS namespace and relinquish authority of that new zone.
Standard zones
Notify
parent zone to a child zone
delegate
3. Alias resource records are sometimes called canonical names (CNAME). These records allow you to ______ a single host.
stub
notification
use more than one name to point to
To All Domain Controllers In This Domain
4. To enable GlobalNames zone support - At an elevated command prompt - type the following: ______.
priority of dc2.lucernepublishing.com.
DNS zone
dnscmd . /config /enableglobalnamessupport 1
GlobalNames zone
5. This operation reloads the secondary zone from the local storage.
14
Expires After
Reload
dnscmd . /config /enableglobalnamessupport 1
6. The value you configure in the ______ text box determines how long a secondary server waits before retrying a failed zone transfer. Normally - this time is less than the refresh interval. The default value is 10 minutes.
Standard zones
Trust anchors
Retry Interval
Notify
7. DNSSEC enables a DNS server to ______ the resource records in its zones.
digitally sign
1. A SOA record 2. At least one NS record.
The DNS server needs to be a domain controller.
The Zone Aging/Scavenging Properties
8. The ______ option stores the new zone in the ForestDnsZones partition. Every DC in the entire forest and on which the DNS Server role is installed will receive a copy of the zone.
1. DomainDnsZones and - 2. ForestDnsZones
To All DNS Servers In This Forest
Minimum (Default) TTL
dnscmd servername /createdirectorypartition FQDN
9. The _____ option stores the zone in the domain partition. Every DC in the local domain will receive a copy of the zone - regardless of whether the DNS Server role is installed on that DC.
primary
A DS record
DNS zone
To All Domain Controllers In This Domain
10. What are the server requirements for storing a zone in AD?
time stamp
enable zone transfers
The DNS server needs to be a domain controller.
DomainDnsZones
11. The ______ allows you to specify the DNS query suffixes - prefixes - FQDNs - or reverse lookup subnets for which a Win 7 or Win Server 2008 R2 client will request DNSSEC.
DomainDnsZones
trust anchor
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
NRPT
12. ______ resource records are used to specify the location of specific services in a domain.
Win Srvr 2008 and Win Srvr 2008 R2
Service location (SRV)
Netlogon
To All Domain Controllers Specified In The Scope Of This Directory Partition
13. You can perform a delegation only from a ________________.
parent zone to a child zone
Name Servers
public key
standard
14. A secondary zone will not be recognized as a valid name server until it contains a valid copy of zone data. For the secondary zone to obtain this data - you must first ______ to that server.
enable zone transfers
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
aging
15. When you create a new zone - two types of records required for the zone are automatically created: ______
A DS record
The DNS server needs to be a domain controller.
trust anchor
1. A SOA record 2. At least one NS record.
16. When the zone is stored in a file instead of AD - by default the primary zone file is named zone_name.dns - and this file is located in the ______ folder on the server.
Aging
%systemroot%System32Dns
1. DomainDnsZones and - 2. ForestDnsZones
dnscmd /ZoneExport <zone name> <zone file name>
17. The Zone Transfers tab also allows you to configure ______ to secondary servers whenever a change occurs at the primary zone.
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
notification
Transfer From Master
18. To enlist other DNS servers in the partition - type the following command:
Enterprise Admins
delegate
The Zone Aging/Scavenging Properties
dnscmd servername /enlistdirectorypartition FQDN
19. Together - aging and scavenging provide a mechanism to ______ resource records - which can accumulate in zone data over time. Both aging and scavenging are disabled by default.
Transfer New Copy Of Zone From Master
1. DomainDnsZones and - 2. ForestDnsZones
Remove stale
Transfer From Master
20. Active Directory-integrated zones perform time stamping for dynamically registered records by default - even before aging and scavenging are enabled. However - primary standard zones place time stamps on dynamically registered records in the zone onl
Group Policy
Name Servers
aging
time stamp
21. By default - zone transfers are ______ from any zone.
disabled
Trust anchors
partition
Aging
22. Used to facilitate the resolution of single-label computer names in a large network.
GlobalNames zone
asymmetric encryption
Minimum (Default) TTL
DNS zone
23. ______ refers to the process of deleting outdated resource records on which time stamps have been placed.
Scavenging
dnscmd servername /createdirectorypartition FQDN
Notify
To All DNS Servers In This Forest
24. To enable aging for a particular zone - you have to enable this feature both at the ______ level.
server level and at the zone level
dnscmd servername /enlistdirectorypartition FQDN
Aging
Reload
25. If either of the default application directory partitions is deleted or damaged - you can re-create them in DNS Manager by right-clicking the server node and choosing ______.
Create Default Application Directory Partitions
Secondary
parent zone to a child zone
1. A SOA record 2. At least one NS record.
26. What is the name of the record that contains a hash of the public key in a delegated subdomain?
GlobalNames zone
NS record and an associated A record
parent and child AD DS domains
A DS record
27. For a DC to fall within the scope of such a directory partition - you must ______ that DC in the partition.
asymmetric encryption
Secondary
dnscmd /ZoneExport <zone name> <zone file name>
manually enlist
28. The first step in preparing a zone for DNSSEC is to back up the current zone data. To back up a zone - type the following command at an elevated command prompt: _______.
dnscmd . /config /enableglobalnamessupport 1
Notify
notification
dnscmd /ZoneExport <zone name> <zone file name>
29. By default - DCs include two application directory partitions reserved for DNS data: ______.
masters
1. DomainDnsZones and - 2. ForestDnsZones
Create Default Application Directory Partitions
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
30. Public key cryptography provides ______ - which means that separate keys are used to encrypt and decrypt data.
stub
asymmetric encryption
To All DNS Servers In This Domain
To All Domain Controllers Specified In The Scope Of This Directory Partition
31. The source zones from which secondary zones acquire their info are called ______ - and the data copy procedures through which this info is regularly updated are called zone transfers.
GlobalNames zone
server level and at the zone level
masters
deploying a GlobalNames zone
32. In this way - digital signatures use ______ cryptography to prove that information is unspoofed and unchanged.
parent and child AD DS domains
public key
parent zone to a child zone
AD Zone Replication Scope page
33. When you create a new zone - two types of records required for the zone are automatically created. List them.
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
DNS zone
A DS record
34. ______ in DNS refers to the process of using time stamps to track the age of dynamically registered resource records.
deploying a GlobalNames zone
Aging
public key
decreases
35. Increasing the refresh interval ______ zone transfer traffic.
Enterprise Admins
The Zone Aging/Scavenging Properties
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
decreases
36. Also recommended for use in the following scenarios: When a host specified in an A resource record in the same zone needs to be renamed - When a generic name for a well-known server such as www needs to resolve to a group of individual computers tha
1. DomainDnsZones and - 2. ForestDnsZones
14
CNAME resource records
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
37. TTL values are not relevant for resource records within their authoritative zones. Instead - the TTL refers to ______ in nonauthoritative servers. A DNS server that has cached a resource record from a previous query discards the record when that reco
To All DNS Servers In This Domain
DNS server
the cache life of a resource record
trigger zone transfers on secondary zones
38. The value you configure in the ______ text box determines the default Time to Live (TTL) that is applied to all resource records in the zone. The default value is one hour.
enable zone transfers
trust anchor
To All Domain Controllers In This Domain
Minimum (Default) TTL
39. A ______ is a public key for a remote DNS server that is trusted and able to provide DNSSEC responses.
digitally sign
Name Servers
To All DNS Servers In This Forest
trust anchor
40. A ______ zone is similar to a secondary zone - but it contains only those resource records necessary to identify the authoritative DNS servers for the master zone.
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
NRPT
accepted
stub
41. A ______ is a data structure in AD that distinguishes data for different replication purposes.
primary
partition
Scavenge Stale Resource Records
trust anchor
42. Win 7 clients can be configured to request DNSSEC through the Name Resolution Policy Table (NRPT) in ______.
Group Policy
ForestDnsZones
delegate
Scavenge Stale Resource Records
43. DNS delegations are automatically used to separate ______ in a single forest.
dnscmd servername /enlistdirectorypartition FQDN
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
parent and child AD DS domains
dnscmd /ZoneExport <zone name> <zone file name>
44. This operation performs a zone transfer from the secondary zone's master server regardless of the serial number in the secondary zone's SOA resource record.
aging
Transfer New Copy Of Zone From Master
Standard zones
accepted
45. You must be a member of the ______ group to create an application directory partition.
Enterprise Admins
%systemroot%System32Dns
enable zone transfers
public key
46. The ______ option stores the zone in the user-created application directory partition specified in the associated drop-down list box.
To All Domain Controllers Specified In The Scope Of This Directory Partition
To All Domain Controllers In This Domain
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
1. Start of Authority (SOA) record that defines basic properties for the zone. 2. NS record signifying the name of the server or servers authoritative for the zone.
47. For a delegation to be implemented - the parent zone must contain a _____ and an _____ (called a glue record) pointing to each authoritative server of the delegated domain.
NS record and an associated A record
To All DNS Servers In This Domain
Enterprise Admins
trigger zone transfers on secondary zones
48. During this operation - the server hosting the local secondary zone determines whether the serial number in the secondary zone's SOA resource record has expired and then pulls a zone transfer from the master server.
enable zone transfers
Reload
Transfer From Master
use more than one name to point to
49. The most common resource records you need to create manually include the following:
Host (A or AAAA) - Alias (CNAME) - Mail exchanger (MX) - Pointer (PTR) - Service location (SRV)
digitally sign
Name Servers
Reload - Transfer From Master - Transfer New Copy Of Zone From Master
50. The ______ partition is replicated among all DCs that are also DNS servers in a particular domain
will not
Notify
DomainDnsZones
DNS zone