SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MSITP
Start Test
Study First
Subjects
:
certifications
,
msitp
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Tool to allow a user to administer an RODC while minimizing the number of permissions assigned to user.
Then make sure all DCs are runing Windows Server 2008 R2 - and then use a GPO to enable Trusted Platform Module backups to AD.
Creating a data collector set that kick off a scritp that either move or delete files.
Create and deploy a logon script that runs Auditpol.
Dsmgmt
2. If the branch office has its own high speed WAN link and you need to minimize traffice between the corporate office and the Branch office - configure this.
Click Start - click Run - type cmd - and then press ENTER. - At the command prompt - type dsmgmt.exe - and then press ENTER. - For a list of valid parameters - type ? - and then press ENTER. - By default - no local administrator role is defined on th
Modify zone transfer settings for company.com zone on DCA
The WSUS client to retrieve updates from Microsoft Update (Do not Store updates locally)
Create a Network Load Balancing cluster.
3. To control access to resources using WSRM and to help prevent memory leaks from monopolizing your web server
The WSUS client to retrieve updates from Microsoft Update (Do not Store updates locally)
Configure separate application pools for each application
Then configure auto enrollment of certificates and Credential Roaming.
DSMOD - ADUC
4. WSUS infrastructure must meet the following: distributed from a central location - all computers must continue to receive updates in the event that a server fails
Windows XP Mode
dsa.msc - dsamain.exe - ntdsutil.exe
Create a new global group named HelpDesk and then add the Help Desk department user accounts to the Helpdesk group. Add the HelpDesk group to the Account Operators group that is in all three domains. A-G-U-L-P.
Configure Microsoft SQL Server 2008 failover cluster. Configure two WSUS servers in a Network Load Balancing cluster. Configure WSUS to use the remote SQL Server 2008 database instance.
5. You need a solution that allows a global group to perform the following: stop and start services; change registry settings; change network settings
Deploy the application via RemoteApp as an .MSI file and enable File Extension Take over.
Add the Remote1-Admins group to the Administrators local group on each server in Remote1.
Microsoft Desktop Optimization Pack (MDOP)
Event Log Subscriptions
6. You need to allow a user to add a single computer to a domain - without any additional rights...
Modify Object Access Settings AND Global Object Access Auditing settings FROM Advanced Audit Policy configurations
Ldp
Use CISCO IP Helper command to configure.
Prestage the computer account in AD
7. You need to ensure that the guest account on all servers is disabled to
Implementing a Central Store. This will allow custom .admx files to replicate and be available to administrators on any administrative workstation with the RSAT tools installed in the enterprise
Implement a domain-based DFS namespace that uses replication
MEDV to deploy virtual desktops
Discover the run Microsoft Baseline Security Analyzer (MBSA)
8. To build a highly secure server cluster with a reduced attack surface area
NOT be able to store that data on an iSCSI SAN
Install a Server Core installation of Windows Server 2008 R2 Enterprise. Note: Remember clusters must be either 2008 Enterprise or Datacenter - you cannot build a Microsoft Cluster using Web or Standard Editions
Run auditpol and then configure the Security settings of the Domain Controllers OU.
Disable the user half of the policy. For flow reasons we can stop policies from affecting certain computers and users by placing blocks at the OU level. This will prevent the policy from parent OUs from flowing into the child OU as long as the parent
9. If the companies support staff is currently using Remote Desktop to connect to the servers in the data center to perform all management tasks - it would be wise to have them instead
Create a standard secondary of domain and create standard secondary of other domain.
Deploy Microsoft SharePoint Foundation 2010 - and then migrate the share to a new document library. Enable versioning for the library
Install the RSAT tool on their workstation to provide for more efficient network management
Add all the particular accounts into a new global security group. - Create new (PSO) and apply to group.
10. The Computer Management snap-in allows you to create shares both on...
Provide remote access to a Windows Server 2008 R2 server that has the Remote Server Administration Tools (RSAT) installed.
1) Publish the code signing template. 2) Modify the security settings on the template to allow only the administrators to request code signing certificates.
Your machine and remote desktops
Recommend one AD based service account for each web site in each domain - that would mean 10 total. NOTE: Because you're using AD accounts that there is one web site in each domain the number of service accounts will match the number of domains.
11. To enforce corporate policy on ALL computers in the domain to show a legal notice when a user logs on to the domain
Implement a domain-based DFS namespace and add a second namespace server; Enable the "Clients fail back to preferred targets" option. Make sure all client computers have at least XP SP2.
Utilize IFM (Install From Media)
Deploy it by using Group Policy Software Installation method
Create a GPO and link the GPO to the domain then configure the GPO to be enforced
12. Minimal FFL needed to deploy an RODC that runs Windows Server 2008 R2...
Configure a server with the Remote Desktop Services role and install Outlook 2003 on the Remote Desktop Services server. Then publish Outlook 2003 as a Remote Desktop Services RemoteApp (RD RemoteApp).
Printer driver isolation
One Remote Desktop connection authorization policy (RD CAP) and two Remote Desktop resource authorization polices (RD RAPs)
Windows Server 2003
13. What Function Level (FL) needs to be in place to enable AD Recycle Bin?
Encrypting File System (EFS). This can be enabled locally or through a GPO.
Network Load Balancing (NLB)
Add \file2templates as a folder target for \domain.comdfstemplates - Create a DFS replication group that contains \file1templates and \File2templates
FFL Windows Server 2008 R2
14. SrvA has the AD LDS role and an instance named LDSInst1. You connect to this instance by using the ADSI Edit utility. When you execute the Create Object wizard there is no User object class. What should be done so you can create user objects in LDSIn
CAPublishGP group should have the Manage CA permission.
IIS Manager user account
DFL needs to be Windows Server 2008
Modify the schema of LDSInst1
15. If users complain that it is hard to find the shared folders on the network implement
Additional DFS Targets
Configure offline files and enable manual caching
Configure folder redirection
Windows System Resource Manager (WSRM)
16. Domain.com's network has a single forest and single domain. Users currently share files using the corporate FTP server and DropBox. You need a better solution for managing document and allowing access. The solution must meet the following: allow for
Deploy Microsoft SharePoint Foundation 2010 - and then migrate the share to a new document library. Enable versioning for the library
Microsoft SharePoint Foundation 2010
Assign the support technicans to the Administrators group on the Windows Server 2008 R2 servers.
Deploy it by using Group Policy Software Installation method
17. You have 9 2008 R2 servers that host Web apps. You need a remote mgmt strategy to manage the Web servers according to these requirements: Web developers need to be able to configure features on the Web sites; Web developers should not have full admin
Event Viewer
Install Windows Server 2008 R2 Datacenter Edition on each server. Deploy the servers in a failover cluster. Deploy an iSCSI storage area network (SAN) - You have a main office and branch office.
Configure authorization rules for Web developers on each web server
Implement Windows System Resource Manager (WSRM) and configure user policies
18. If a user needs to access a new cert template when logging on to any client computer in domain and you need to automatically install on each client computer a cert
Then configure auto enrollment of certificates and Credential Roaming.
The Group Policy Management Console
Converting physical servers to VMs - implementing SANn and SAN management components such as backup and site resiliency will create additional administrative overhead.
Create a new global group named HelpDesk and then add the Help Desk department user accounts to the Helpdesk group. Add the HelpDesk group to the Account Operators group that is in all three domains. A-G-U-L-P.
19. When deploying servers one would have to include some kind of process that would ultimately join the servers to the domain - this typically would require a script and a reboot. to help eliminate some of the steps involved and automate the deployment
Offline domain join
Deploy a GPO for the Sales OU
Jill came down with 2.50.
Enable Credential Roaming
20. To allow administrators tha trun Windows 7 ability to manage the DNS server that runs on the Server Core installation of Server 2008 R2
On one server - create event subscriptions for each server...on the server - attach tasks to the application error events
Install the Remote Server Administration Tools (RSAT) on the Windows 7 computers.
From Server1 - run the Create Basic Task Wizard
Set-ADServiceAccount cmdlet
21. You need to come up with a solution for managing user accounts that: allows Help Desk department to manage the user objects in all domains and minimize the administrative effort required to manage the frequent changes to the Help Desk department
Modify Object Access Settings AND Global Object Access Auditing settings FROM Advanced Audit Policy configurations
Create a new global group named HelpDesk and then add the Help Desk department user accounts to the Helpdesk group. Add the HelpDesk group to the Account Operators group that is in all three domains. A-G-U-L-P.
AD RMS
Windows BitLocker Drive Encryption (Bit Locker)
22. All computers are running either Windows SP2 or Windows 7. You want to audit users that are accessing the administrative shares on all the computers...
Active Directory Users and Computers
Registry on users computer needs to be modified
Authorization Manager
Create and deploy a logon script that runs Auditpol.
23. To allow all users in the forest to be able to resolve the names in the Forest Root Partition
Implement File Server Resource Manager (FSRM) quotas on the desired servers
You should: on one domain controller create an Active Directory-Integrated zone for remote domain and create and Active Directory-Integrated stub zone for main domain.
Modify the DNS zone replication properties of the root domain - and change it to the ForestDNSZones application directory partition
1) Run net stop ADLDS command 2) Use ntdsutil tool to move db files 3) Run net start ADLDS cmd
24. If you need to deploy a DHCP server that supports computers that start from a PXE network adapater and support Win7
Then use Key Management Service (KMS) - DHCP server - and Windows Deployment Services.
Then use Windows Deployment Services (WDS)
DISABLE slow link detection in the GPO
Group Policy Preferences
25. You plan to deploy 12 file servers. All computers and servers connect to Ethernet switches. Your data storage solution must meet these: maximizes performance and fault tolerance; allocates storage to the servers as needed; utilizes the existing netwo
Install Windows Server 2008 R2 Datacenter Edition on each server. Deploy the servers in a failover cluster. Deploy an iSCSI storage area network (SAN) - You have a main office and branch office.
Offline domain join
Implement a domain-based DFS namespace and add a second namespace server; Enable the "Clients fail back to preferred targets" option. Make sure all client computers have at least XP SP2.
Implement a GPO for each domain
26. BLANK BLANK is a computer Group Policy setting that can be for example; Linked at an OU where public kiosks/remote desktop session host computers reside.
Loopback Processing - The purpose of the Loopback Processing policy is to prevent usesr policies that currently affect the user from following them to a publicly used or (shared remote desktop) computer. We may indeed in many cases want these policie
Active Directory Users and Computers utility
Incoming external trust
Event Viewer
27. You need to recommend the minimum number of logical unit numbers (LUNs) that must be provisioned for Cluster. If the cluster has an even number of nodes ...
Ntdsutil
Implement one LUN for the quorum and another LUN for the data
net stop ntds
Implement Network Access Protection (NAP) that uses 802.1x enforcement
28. The strongest form of NAP is
IPSec based enforcement. IPSec enforcement should be used when you want a stronger solution than 802.1x - DHCP or VPN based NAP. IPSec based NAP cannot be bypassed by modifying the NAP agent/client.
Then configure GlobalNames zones on each domain controller.
DFL needs to be Windows Server 2008
Windows Server 2003
29. You are upgrading only a few computers in one department to Windows 7. These computers are running a legacy XP application you should recommend...
Event Subscriptions
Windows XP Mode
Microsoft Application Virtualization (AppV)
Modify the GPO to include folder redirection
30. If you need to implement a Cert Services solution that automates distribution of certificates - ensures security and gives external users acess to resources that use cert-based authentication
1) Seize operations master roles from sever1 to server2 2) Rebuild Server as a replica domain controller 3) Transfer operations master roles from Server2 to Server1
Place the operating system files on one of the RAID 1 array - place the SQL transaction logs on the other RAID 1 array - and place the SQL database files on the RAID 5 array
Deploy an off-line standalone Root CA - deploy an on-line Enterprise Subordinate CA - and deploy an on-line standalone Subordinate CA.
From Server A - run Create Basic Task Wizard
31. If a file server reaches 15% free disk space - you could free up some disk space by
Restore-ADObject cmdlet
Domain based Distributed File System (DFS) namespace and DFS Replication.
Deploy the application via RemoteApp as an .MSI file and enable File Extension Take over.
Creating a data collector set that kick off a scritp that either move or delete files.
32. You need to design patch management for satellite offices that meet the following requirements: WSUS updates are approved independently for each satellite office; Internet traffic is minimized. To accomplish
In each satellite office - install a WSUS server and configure the WSUS servers to use the main office WSUS server as an upstream server.
Implement GPO for all client computers
Administrative Role Separation
Deploy Microsoft SharePoint Foundation 2010 - and then migrate the share to a new document library. Enable versioning for the library
33. Need to ensure users receive updated template within five days...
Implement the Windows Search Service.
Registry on users computer needs to be modified
Then Upgrade clients to Win7 - implement Enterprise CA on Win 2008 R2 and implement IPSec VPN with cert-based authentication.
MEDV to deploy virtual desktops
34. Enables you to receive emails when domain users locked out of accounts...
Loopback Processing - The purpose of the Loopback Processing policy is to prevent usesr policies that currently affect the user from following them to a publicly used or (shared remote desktop) computer. We may indeed in many cases want these policie
FFL Windows Server 2008 R2
Event Viewer
Microsoft Application Virtualization (AppV)
35. You need to ensure that your Windows 2008 R2 file servers meet the following: supports volumes larger than 2 terabytes - if a single disk fails - maintain data redundancy - if a single server fails - maintain access to all data - maximize disk throug
WDS
AD Rights Management Services
Deploy a two-node cluster. Connect an external storage subsystem. Configure the external subsystem as a RAID 10 array - and format the array as a GPT disk.
Ldp
36. Domain.com's network consists of a Single AD domain. All servers and domain controllers run Windows Server 2008 R2. You need to ensure that you can: track all changes made to AD objects by the recently hired IT consulting firm; Ensure that the audits
Active Directory snapshots and Tombstone reanimation
Configure an audit policy by editing the default domain policy and configure Event Forwarding
Implement the Windows Search Service.
Autonomous mode...This allows the local administrator to approve their own updates.
37. You need to design a data storage solution that meets the following: users must be able to choose the documents that will be available when they are away from the network; minimize the number of documents that are stored on users' portable computers;
Configure offline files and enable manual caching
Then deploy Windows Deployment Services (WDS) and Transport Server feature and configure transport server to use static multicast address range.
IPSec based enforcement. IPSec enforcement should be used when you want a stronger solution than 802.1x - DHCP or VPN based NAP. IPSec based NAP cannot be bypassed by modifying the NAP agent/client.
WSUS server in the branch office in replica mode.
38. Tool to change Directory Services Restore Mode password on Domain Controller...
Add the new UPN Suffix to the forest
ntdsutil
1) Seize operations master roles from sever1 to server2 2) Rebuild Server as a replica domain controller 3) Transfer operations master roles from Server2 to Server1
One Remote Desktop connection authorization policy (RD CAP) and two Remote Desktop resource authorization polices (RD RAPs)
39. Files servers need to stay connected to the SAN if a NIC fails. You should recommend
Disable Site Link Bridging from the IP properties
FILES option within Ntdsutil
Multipath I/O feature
Deploy Remote Desktop Connection 7.0 on all computers; Enabled the Desktop Experience feature on the RD Session host; and install the application on the Remote Desktop Services server.
40. Domain.com's network consists of a single forest and a single domain - all Domain Controllers - Servers and Remote Desktop Services servers are now 2008 R2. All clients are Windows 7. You need to deploy a new CRM Applicaiton to the sales team. You mu
Zone transfer settings
Publish the application as a Remote App. Enable Remote Desktop Web Access (RD Web Access).
Configure the zone as an Activde Directory-Integrated zone.
Implement Windows System Resource Manager (WSRM) and configure user policies
41. To be able to remotely administer DNS servers that run on the Server Core installation of Server 2008 R2 - via MMC console
An Active Directory subnet object needs to be created.
Provide remote access to a Windows Server 2008 R2 server that has the Remote Server Administration Tools (RSAT) installed.
Logged changes must include old and new values of any attributes. - Run auditpol and then configure Security settings of Domain Controllers OU
Registry on users computer needs to be modified
42. An AD LDS instance needs to be replicated from one server to another...
Add the IT Help Desk Users to the Group Policy Creator Owners group and then create a new Starter GPO.
Then make sure all DCs are runing Windows Server 2008 R2 - and then use a GPO to enable Trusted Platform Module backups to AD.
Service user account for AD LDS
Install the RSAT tool on their workstation to provide for more efficient network management
43. When deploying software across a large distributed enterprise you can reduce the need for clients to obtain the necessary .msi file needed for installation from over the network. Placing applications .msi file in a shared folder that is replicated us
Domain based Distributed File System (DFS) will reduce network traffic
Implement a domain-based DFS namespace that uses DFS Replication in a hub and spoke topology
Implement a domain-based DFS namespace and add a second namespace server; Enable the "Clients fail back to preferred targets" option. Make sure all client computers have at least XP SP2.
Create an Active Directory-Integrated zone.
44. You need to deploy a new application according to the following requirements: must be available to remote users when they are offline; must access the application from an icon on the Start menu
Either implement a DHCP server at the branch office - or configure a "Static Pool" on the RRAS server itself. If deploying a DHCP server at the branch office isn't an option - then once the Remote Access Server role has been deployed you can configur
Assign the application to computers in the PC OU
DSMOD - ADUC
Implement Distributed File System Replication (DFSR) on both servers
45. Your forest containts only Windows Server 2008 domain controllers. What should be done to prepare the AD domain to install Windows Server 2008 R2 DCs?
Create an Active Directory-Integrated zone.
Refresh the zone on DNS2
New ACCOUNT STORE should be added and configured
Run adprep /forestprep and adprep /domainprep
46. Web server administrator's accountsd are in an OU called WebAdminOU and are member of a global group called WebAdmins. To allow the web server administrators to perform administrative tasks on the web servers - but not allow them to perform administr
One Remote Desktop connection authorization policy (RD CAP) and two Remote Desktop resource authorization polices (RD RAPs)
Ldp
Deploy a GPO to the WebSrvOU
Application to the computer if you need to ensure that the application is installed on the computer before the user logs in.
47. New Password Policy needs to be created for OU different from domain password policy
Install a full installation of Windows Server 2008 R2 Enterprise Edition on two servers and configure the failover cluster services on them.
A Fibre Channel (FC) disk storage subsystem that uses Microsoft Multipath I/O. Configure a RAID 5 array.
Run adprep /forestprep and adprep /domainprep
Add all the particular accounts into a new global security group. - Create new (PSO) and apply to group.
48. To configure Administrator Role Separation for an RODC
Microsoft SharePoint Foundation 2010
Allocate three disks to a single RAID 5 volume for the user data. Allocate two disks to a mirrored volume for the operating system data.
Dfsrdiag
Click Start - click Run - type cmd - and then press ENTER. - At the command prompt - type dsmgmt.exe - and then press ENTER. - For a list of valid parameters - type ? - and then press ENTER. - By default - no local administrator role is defined on th
49. If you need to implement Encrypting File System (EFS) and minimize amount of data transferred across and access EFS certs on any client computer
SSTP is a good solution if you have Vista SP1 or higher and your security team has already opened port 443 on the firewall and the coporate security policy states that they would prefer not to open any more ports on the firewall than necessary. SSTP
Execute the Active Directory Diagnostics Data Collector Set and then review the report.
Then use Windows BitLocker Drive Encryption
Enable Credential Roaming
50. So a user can install updates on an RODC while preventing them from logging on to any other domain controller...
Implement File Server Resource Manager (FSRM) quotas on the desired servers
Use local roles options within "dsmgmt"
Implement the Windows Search Service.
Add all the particular accounts into a new global security group. - Create new (PSO) and apply to group.
Sorry!:) No result found.
Can you answer 50 questions in 15 minutes?
Let me suggest you:
Browse all subjects
Browse all tests
Most popular tests
Major Subjects
Tests & Exams
AP
CLEP
DSST
GRE
SAT
GMAT
Certifications
CISSP go to https://www.isc2.org/
PMP
ITIL
RHCE
MCTS
More...
IT Skills
Android Programming
Data Modeling
Objective C Programming
Basic Python Programming
Adobe Illustrator
More...
Business Skills
Advertising Techniques
Business Accounting Basics
Business Strategy
Human Resource Management
Marketing Basics
More...
Soft Skills
Body Language
People Skills
Public Speaking
Persuasion
Job Hunting And Resumes
More...
Vocabulary
GRE Vocab
SAT Vocab
TOEFL Essential Vocab
Basic English Words For All
Global Words You Should Know
Business English
More...
Languages
AP German Vocab
AP Latin Vocab
SAT Subject Test: French
Italian Survival
Norwegian Survival
More...
Engineering
Audio Engineering
Computer Science Engineering
Aerospace Engineering
Chemical Engineering
Structural Engineering
More...
Health Sciences
Basic Nursing Skills
Health Science Language Fundamentals
Veterinary Technology Medical Language
Cardiology
Clinical Surgery
More...
English
Grammar Fundamentals
Literary And Rhetorical Vocab
Elements Of Style Vocab
Introduction To English Major
Complete Advanced Sentences
Literature
Homonyms
More...
Math
Algebra Formulas
Basic Arithmetic: Measurements
Metric Conversions
Geometric Properties
Important Math Facts
Number Sense Vocab
Business Math
More...
Other Major Subjects
Science
Economics
History
Law
Performing-arts
Cooking
Logic & Reasoning
Trivia
Browse all subjects
Browse all tests
Most popular tests