SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MSITP
Start Test
Study First
Subjects
:
certifications
,
msitp
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. Need to ensure users receive updated template within five days...
Windows BitLocker Drive Encryption (Bit Locker)
dsa.msc - dsamain.exe - ntdsutil.exe
Loopback Processing - The purpose of the Loopback Processing policy is to prevent usesr policies that currently affect the user from following them to a publicly used or (shared remote desktop) computer. We may indeed in many cases want these policie
Registry on users computer needs to be modified
2. You need to recommend a BitLocker recovery method you should recommend this.
Data Recovery Agent
Create a Central Store
Configure RADIUS accounting by using local file loggin on each server. Store the log files in an Internet Authentication Service (IAS) format on a shared folder on one of the servers (Srv1).
Incoming external trust
3. Backup solutions for the files servers that support a robotic-based tape library must support the enterprise; you should recommend
Implement the Windows Search Service.
Data Recovery Agent
Microsoft System Center Data Protection Manager
Improve the performance of File Servers
4. All DCs have been upgraded from Windows Server 2003 to Windows Server 2008 R2. What should be done to ensure the Sysvol share replicates by using DFS Replicaiton (DFS-R)?
Network Load Balancing (NLB)
Enable Windows Remote Management (WinRM) on each server.
Raise the DFL to Windows Server 2008 R2.
The Group Policy Management Console
5. The two role services must be deployed to prevent machines from connecting to the network if their security center settings (Firewall - Windows Updates - Defender) are NOT up to date are
1) Remove the Auth Users account from the Secutiy tab of the company.com DNS zone properties. 2) Assign the server computer accounts to the Allow on Create All Child Objects permission on the Security tab of the company.com DNS zone properties.
Network Policy Server (NPS) and Routing and Remote Access Service (RRAS)
net stop ntds
Modify the local policy to point to the Internal WSUS server
6. You have a root domain and four child domains. Policy requirements state that all local guest accounts must be renamed and disabled - and all local administrator accounts must be renamed
Implement a GPO for each domain
Execute the Set-ADServiceAccount cmdlet
Implement Distributed File System Replication (DFSR) on both servers
From Server1 - run the Create Basic Task Wizard
7. To minimize the amount of storage required you should recommend
Share and Storage Management
Implement a domain-based DFS namespace that uses replication
The Group Policy Management Console
Dsmgmt
8. To recover objects deleted from Active Directory you should recommend
Active Directory snapshots and Tombstone reanimation
Dsmgmt
Add the new UPN Suffix to the forest
Add the IT Help Desk Users to the Group Policy Creator Owners group and then create a new Starter GPO.
9. 3 Servers are Network Policy Servers (NPS) that function as RADIUS servers. The network has 20 wireless access points that are configured as RADIUS clients. You need to plan an audit strategy with the following requirements: stores audit data in a ce
Configure RADIUS accounting by using local file loggin on each server. Store the log files in an Internet Authentication Service (IAS) format on a shared folder on one of the servers (Srv1).
Create a new Password Settings Object (PSO) for the IT users.
Deploy the application via RemoteApp as an .MSI file and enable File Extension Take over.
Dfsrdiag
10. You have a couple support technicians located in branch office on Server 2008 R2 machines with the following requirements: Install server roles; stop and start services; minimize the security privileges granted to the support technicians
Windows XP Mode
Assign the support technicans to the Administrators group on the Windows Server 2008 R2 servers.
Install WSUS 3.0 on a 2008 R2 server and configure Windows Update by using a GPO
Win2000 Native
11. You have a main office that contains two domain controllers and a branch office that has an RODC. What should be done so that a user named George can install updates on the RODC while preventing George from logging on to any other domain controller?
A Fibre Channel (FC) disk storage subsystem that uses Microsoft Multipath I/O. Configure a RAID 5 array.
Implement Windows System Resource Manager (WSRM) and configure a resource-allocation policy for process-based management.
Use the Local Roles options with dsmgmt.
Share and Storage Management
12. Policy states that users are to log into AD by usine a new User Principal Name (UPN). What tool should be used to modify the UPN suffix for all user accounts?
Deploy a GPO to the WebSrvOU
DSMOD
Implement a domain-based DFS namespace and add a second namespace server; Enable the "Clients fail back to preferred targets" option. Make sure all client computers have at least XP SP2.
Microsoft Application Virtualization (AppV)
13. There's an AD domain named company.com. There are 3 DC's that also hold the DNS server role which host an ADI zone named company.com. This zone is configured to update settings to Secure only Dynamic Updates. The CIO has issued a new security policy
Software Restriction Polices
Install Microsoft Secure Socket Tunneling Protocol (SSTP)
1) Remove the Auth Users account from the Secutiy tab of the company.com DNS zone properties. 2) Assign the server computer accounts to the Allow on Create All Child Objects permission on the Security tab of the company.com DNS zone properties.
Copy the ADMX files from your company's PDC emulator to the PolicyDefinitions folder on other company's PDC emulator.
14. Certain apps may require that the end user have the ability to make changes to the application - however some applications may allow these changes to be made in the registry. To give you as the administrator the ability to make changes as necessary -
Enhanced Storage Access settings in Group Policy on the local machine to require a unique vendor ID to identify the device or even require a certificate for the device to connect to your machine. This policy can even lock the device when the computer
Upgrade all the client computers to Windows 7 and implement a Secure Socket Tunneling Protocol (SSTP) VPN solution.
Group Policy Preferences
Congifure the new Local User and Groups by using Group Policy Preferences option and link the policy to the Branch office site.
15. In Active Directory Sites and Services - what should be configured to ensure domain controllers only replicate between domain controllers in adjacent sites?
Allocate three disks to a single RAID 5 volume for the user data. Allocate two disks to a mirrored volume for the operating system data.
Active Directory Users and Computers utility
Disable Site Link Bridging from the IP properties
Administrators is the minimum group membership required to complete this procedure.
16. In order to manage websites without having to logon you can use
Run adprep /forestprep and adprep /domainprep
PowerShell 2.0
dnscmd tool
Microsoft SharePoint Foundation 2010
17. To make a 64-bit application available to several 32-bit XP SP3 computers in the branch office you could use either a remote desktop session host or a remote desktop virtualization host. However - if the application requires you to be a local adminis
Warning
: Invalid argument supplied for foreach() in
/var/www/html/basicversity.com/show_quiz.php
on line
183
18. 4 steps to perform authoritative restore of a deleted OU...
1) Restart dc in DirectoryServiceRestoreMode - 2) Restory system state data to date before organizational unit was deleted - 3) Use ntdsutil utility to mark organizational unit as authoritative 4) Restart Domain Controller
Ntdsutil
Windows System Resource Manager (WSRM)
Create an Active Directory-Integrated zone.
19. You are about to deploy a distributed database appliation that will run on multiple 2008 R2 servers. This deployment needs to follow these requirements: uses the existing network infrastructure; uses standard Windows management tools; allocates stora
Installing Hyper-V on a Server Core installation of Windows Server 2008 R2 Enterprise
Use local roles options within "dsmgmt"
Event Viewer
Include an iSCSI disk storage subsystem that supports Virtual Disk Service (VDS). Configure the storage subsystem as a RAID 5 array.
20. Enables you to receive emails when domain users locked out of accounts...
Deploy Microsoft System Center Data Protection Manager 2010 and create a new protection group.
Your machine and remote desktops
Event Viewer
In AD Sites and Services - assign a new IP subnet to SiteB - and then move the new DC object to SiteB.
21. To compact AD database...
DSMOD
Refresh the zone on DNS2
FILES option within Ntdsutil
Implement the Windows Search Service.
22. When service account passwords need to be changed for SQL they should be...
A Distributed File System (DFS) namespace
Disable Site Link Bridging from IP Properties
Assign the support technicans to the Administrators group on the Windows Server 2008 R2 servers.
Changed manually
23. Server1 collects all events that occur on your domain controllers. Using the minimal effort - from Event Viewer - what should be done to ensure you are notified when a specific event has occurred on any of your domain controllers?
Modify zone transfer settings for company.com zone on DCA
WSUS servers running in replica mode - and configure them to download updates from the WSUS server in the main office
Configure RADIUS accounting by using SQL loggin on each server and use Srv1 as database for RADIUS aaccounting.
From Server1 - run the Create Basic Task Wizard
24. What document management solution allows you to keep multiple versions of documents and automatically apply access policies to these documents? You should recommend
Distributed File System (DFS) Replication
Active Directory Rights Management Services (AD RMS) and Microsoft SharePoint Foundation 2010
Configure offline files and enable manual caching
Create a GPO and link the GPO to the domain then configure the GPO to be enforced
25. You have two identical print devices. You must plan a print services infrastructure where: the print services must be available - even if one print device fails and have the ability to manage the print queue from a central location
Create an e-mail account in AD DS for your RMS users
Install and share a printer on a server and then enable printer pooling.
Restore-ADObject cmdlet
ntdsutil
26. DCA is DC and DNS server that holds ADI zone for company.com DNSB is member server that has DNS server role installed. What should be done so DNSB can get zone updates from DCA?
Group Policy Preferences
Modify zone transfer settings for company.com zone on DCA
Event Log Subscriptions
newly implemented technologies must have a minimal effect on LAN traffic - is met by using express installation files
27. To restore deleted user account from AD Recycle Bin...
Domain based Distributed File System (DFS) namespace and DFS Replication.
Restore-ADObject cmdlet
Printer driver isolation
Reinstall AD DS on DCC.company.com as a WRITABLE DC.
28. To backup GPO's in domain and minimize bakcup...
1) Remove the Auth Users account from the Secutiy tab of the company.com DNS zone properties. 2) Assign the server computer accounts to the Allow on Create All Child Objects permission on the Security tab of the company.com DNS zone properties.
Recommend Group Policy preferences
One Remote Desktop connection authorization policy (RD CAP) and two Remote Desktop resource authorization polices (RD RAPs)
The Group Policy Management Console
29. George needs to administer a read-only domain controller named Server1 - but to do this with minimal permissions assigned to him. What tool should be used for this daunting task?
DFL needs to be Windows Server 2008
Disable Site Link Bridging from the IP properties
Deploy Microsoft System Center Data Protection Manager 2010 and create a new protection group.
Dsmgmt
30. You need a solution that meets policy while minimizing hardware and software costs
Then use on install image file that contains a single install image.
Deploy Remote Desktop Connection 7.0 on all computers; Enabled the Desktop Experience feature on the RD Session host; and install the application on the Remote Desktop Services server.
Microsoft System Center Data Protection Manager
Create a new Password Settings Object (PSO) for the IT users.
31. Domain.com's network has a single forest and single domain. Users currently share files using the corporate FTP server and DropBox. You need a better solution for managing document and allowing access. The solution must meet the following: allow for
dnscmd
Application to the computer if you need to ensure that the application is installed on the computer before the user logs in.
Microsoft SharePoint Foundation 2010
Then configure GlobalNames zones on each domain controller.
32. to prevent VMs from receiving updats from a group policy
Apply a WMI Filter to the policy. Note: You can use a WMI filter to filter out VM from being affected by a GPO the same way you can a physcial machine.
Run adprep /forestprep and adprep /domainprep
Install From Media IFM
Modify the DNS zone replication properties of the root domain - and change it to the ForestDNSZones application directory partition
33. You need to generate a report on the status of software updates for your Windows 7 client computers with the following requirements: display all of the operating system updates and Microsoft application updates that installed successfully and failed;
Click Start - click Run - type cmd - and then press ENTER. - At the command prompt - type dsmgmt.exe - and then press ENTER. - For a list of valid parameters - type ? - and then press ENTER. - By default - no local administrator role is defined on th
Additional DFS Targets
Install WSUS 3.0 on a 2008 R2 server and configure Windows Update by using a GPO
Run net stop ntds
34. Auditing the deletion of Registry keys on all Domain Controllers
Authorization Manager role assignment
Modify Object Access Settings AND Global Object Access Auditing settings FROM Advanced Audit Policy configurations
Add \file2templates as a folder target for \domain.comdfstemplates - Create a DFS replication group that contains \file1templates and \File2templates
You should: on one domain controller create an Active Directory-Integrated zone for remote domain and create and Active Directory-Integrated stub zone for main domain.
35. To help restrict access to Windows 7 computer in the event that it gets stolen implement
Implement the Windows Search Service.
Object access auditing on the server that supports the resource. Note: Enabling audit access also helps when auditing your Cert Servers
Windows BitLocker Drive Encryption (Bit Locker)
dnscmd dcsrv2.company.com /zoneresettype company.com /dsprimary
36. In order to ensure highly available Windows Update servers you should create this.
Configure authorization rules for Web developers on each web server
Add George to the Domain Admins group.
dsa.msc - dsamain.exe - ntdsutil.exe
Network Load Balancing (NLB) Cluser for the front end WSUS servers. This will allow users to have the continued access in the event that WSUS servers become unavailable.
37. To backup to tape/robotic tape and to backup VMs you must use...
1) Run net stop ADLDS command 2) Use ntdsutil tool to move db files 3) Run net start ADLDS cmd
Implement Network Access Protection (NAP)
Microsoft System Center Data Protection Manager 2010
Add \file2templates as a folder target for \domain.comdfstemplates - Create a DFS replication group that contains \file1templates and \File2templates
38. To be able to manage all the corporate servers from a workstation - you must install the
Disable the user half of the policy. For flow reasons we can stop policies from affecting certain computers and users by placing blocks at the OU level. This will prevent the policy from parent OUs from flowing into the child OU as long as the parent
Remote Server Administrative Tools (RSAT) on your administrative workstation or laptop
Object access auditing on the server that supports the resource. Note: Enabling audit access also helps when auditing your Cert Servers
AD RMS
39. You are about to deploy 1 -000 Windows 7 desktops and your company has a web based application that only runs correctly when using IE 6. You should use
MEDV to deploy virtual desktops
Implement Shadow Copies
In each office - install a WSUS server and configure the WSUS servers as a replica of the main office.
Then use Key Management Service (KMS) - DHCP server - and Windows Deployment Services.
40. Two different solutions are available to help assign IP addresses to remote clients that need to VPN or Dial-in to the branch office.
Warning
: Invalid argument supplied for foreach() in
/var/www/html/basicversity.com/show_quiz.php
on line
183
41. You have several Windows 2000 Servers that have a custom application installed. However - the apps are incompatible with each other and with Windows Server 2008 R2 - but they consume less than 10% of system resources. There is a policy that states al
IPSec based enforcement. IPSec enforcement should be used when you want a stronger solution than 802.1x - DHCP or VPN based NAP. IPSec based NAP cannot be bypassed by modifying the NAP agent/client.
Deploy one new server that runs Windows Server 2008 R2 Enterprise Edition and install the Hyper-V feature on the new server. Then create three child virtual machines.
1) Add the branch office admin accounts to teh Group Policy Creator Owners Group. 2) Run the Delegation of Control Wizard and delegate the right to link GPOs for their branch OUs to the branch office admins.
Use CISCO IP Helper command to configure.
42. To improve performance and provide redundancy if a single server fails - the intranet web site should be in this.
Deploy a failover cluster that uses Node and File Share Disk Majority
Raise the DFL to Windows Server 2008 R2.
Deploy a GPO to the WebSrvOU
Network Load Balancing (NLB) cluster
43. When deploying an application using the Group Policy distribution method assign the...
Application to the computer if you need to ensure that the application is installed on the computer before the user logs in.
Modify properties of RODC server computer account.
Deploy a two-node cluster. Connect an external storage subsystem. Configure the external subsystem as a RAID 10 array - and format the array as a GPT disk.
Dfsrdiag
44. So a user can install updates on an RODC while preventing them from logging on to any other domain controller...
Create a Central Store
Configure Microsoft SQL Server 2008 failover cluster. Configure two WSUS servers in a Network Load Balancing cluster. Configure WSUS to use the remote SQL Server 2008 database instance.
Deploy an additional WSUS server for the remote teachers. Configure the remote teacher's laptops to use the additional WSUS server. Configure the addtional WSUS server to leave the updates on the Microsoft Update Web Site.
Use local roles options within "dsmgmt"
45. To create AD Domain Services snapshot
Request and obtain a server authentication certificate from a trusted certification authority (CA) in your organization or from a trusted third-party CA - Authorization Manager provides a flexible framework for integratin role-based access control in
Create an Active Directory-Integrated zone.
Assign the support technicans to the Administrators group on the Windows Server 2008 R2 servers.
Ntdsutil
46. to protect file servers and hard disks that may be at risk of being accessed or stolen
Install a Server Core installation of Windows Server 2008 R2 Enterprise. Note: Remember clusters must be either 2008 Enterprise or Datacenter - you cannot build a Microsoft Cluster using Web or Standard Editions
Then Migrate DHCP server role from the domain controllers to the files servers. On file servers - add admin for office to DHCP admin local group.
Create TWO new starter GPO's one with user administrative templates configure - and one with computer admin template configured - and export them to .cab files - and make the .cab files available in both forests...Then when creating new group policie
Implement Windows BitLocker Drive Encryption (BitLocker)
47. Your company recently created a corporate web site using their own internal developers. Recently your CIO has decided that it would be best that some of the work be done by an outside contractor - and to allow that contractor to only the specific sec
dnscmd tool
Configure caching on the shared folder (offline files)
Copy the ADMX files from your company's PDC emulator to the PolicyDefinitions folder on other company's PDC emulator.
IIS Manager user account
48. To configure AD FS so tokens contain information from Active Directory domain...
New ACCOUNT STORE should be added and configured
Windows XP Mode
The computer must be connected to the network when the end user clicks the icon and launches the install of the application.
Configure separate application pools for each application
49. All users store their files in their Documents folder. Some of these are very large. You are going to implement roaming profiles for all your users. You will configure this by using a GPO. To minimize the amount of time it takes for your users to log
Ntdsutil
Deploy a failover cluster that uses Node and File Share Disk Majority
Modify the GPO to include folder redirection
Restore-ADObject cmdlet
50. Jack and Jill go up the hill - both with a buck and a quarter
Zone transfer settings
Add the new UPN Suffix to the forest
Execute the Set-ADServiceAccount cmdlet
Jill came down with 2.50.
Sorry!:) No result found.
Can you answer 50 questions in 15 minutes?
Let me suggest you:
Browse all subjects
Browse all tests
Most popular tests
Major Subjects
Tests & Exams
AP
CLEP
DSST
GRE
SAT
GMAT
Certifications
CISSP go to https://www.isc2.org/
PMP
ITIL
RHCE
MCTS
More...
IT Skills
Android Programming
Data Modeling
Objective C Programming
Basic Python Programming
Adobe Illustrator
More...
Business Skills
Advertising Techniques
Business Accounting Basics
Business Strategy
Human Resource Management
Marketing Basics
More...
Soft Skills
Body Language
People Skills
Public Speaking
Persuasion
Job Hunting And Resumes
More...
Vocabulary
GRE Vocab
SAT Vocab
TOEFL Essential Vocab
Basic English Words For All
Global Words You Should Know
Business English
More...
Languages
AP German Vocab
AP Latin Vocab
SAT Subject Test: French
Italian Survival
Norwegian Survival
More...
Engineering
Audio Engineering
Computer Science Engineering
Aerospace Engineering
Chemical Engineering
Structural Engineering
More...
Health Sciences
Basic Nursing Skills
Health Science Language Fundamentals
Veterinary Technology Medical Language
Cardiology
Clinical Surgery
More...
English
Grammar Fundamentals
Literary And Rhetorical Vocab
Elements Of Style Vocab
Introduction To English Major
Complete Advanced Sentences
Literature
Homonyms
More...
Math
Algebra Formulas
Basic Arithmetic: Measurements
Metric Conversions
Geometric Properties
Important Math Facts
Number Sense Vocab
Business Math
More...
Other Major Subjects
Science
Economics
History
Law
Performing-arts
Cooking
Logic & Reasoning
Trivia
Browse all subjects
Browse all tests
Most popular tests