You are on page 1of 5

1.

As the network administrator you have been requested to create a site link to join two sites together for replication. First you click Start, point to Programs, point to Administrative Tools, and then click to open Active Directory Sites and Services. What is the next step in creating this site link? A. Click two or more sites to connect and click OK B. Right-click on Licensing Site Setting and then click on properties. C. Open Inter-Site Transport folder and then right-click IP or SMTP folder D. Enter a name for the site link bridge. E. In the New Object Link dialog box click New Site Link Bridge. Answer: C

2.

In any Active Directory forest there are five Operations Masters roles that must be assigned to one or more domain controllers. Which of the following answers correctly depicts these roles? A. Infrastructure Master, PDC Emulator, Relative ID master, SYSVOL, Root Domain B. Schema Master, Domain Naming Master, Infrastructure Master, PDC Emulator, Relative ID master. C. Root Master, Domain Name Master, Infrastructure Master, PDC Emulator, Relative ID master. D. Trust Master, Root Master, Infrastructure Master, PDC Emulator, Relative ID master. Answer: B

3.

A hierarchical structure made up of multiple domains that trust each other is called a(n) _______? A. Forest B. Schema C. Site D. Organizational Unit E. Tree Answer: E

4.

You have been told that you need to track down the source of a breach in network security. As a network technician for your companys Windows 2000 networks you quickly pull up Event Viewer and examine the security logs on the Domain Controllers. However upon viewing the security log you notice there are key and lock icon symbols you do not understand. What could these mean? A. The key icon represents that this event is locked with a normal password while the lock icon represents that this event is locked with an encryption. B. The key icon represents that the event is a key alert record while the lock icon indicates that this event can only be unlocked by its owner. C. The key icon represents that the event occurred successfully while the lock icon represents event occurred unsuccessfully. D. The key icon represents that this event contains errors, warnings, or vital information while the lock icon represents that this event is normal and within guidelines. Answer: C

5.

As a network administrator you have been requested to move a printer from your company's Marketing OU to your company's Research OU. After the move you test the printer and find that the local administrator assigned to the Marketing OU still has access and can remove print jobs from it. What can you do to change this? A. Remove the permissions for the local administrator from the printer. B. Remove printer permissions from the local administrator. C. Remove the Everyone group from the printer. D. Delete the printer object.

Answer: A 6. You recently been promoted to Network Administrator for DLM Shipping. When you took over this position the first thing you notice is this Windows 2000 environment using DNS naming convention, root domain is DIM.COM, with numerous child domains. User accounts are stored in the child domains. However your supervisor informs you that root domain is misspelled and should be DLM.COM. He explains this is causing tremendous problems with the users and customers. He wants you to rename the domain. What will happen if you rename this root domain server? A. When you rename the root domain server you will only have to rebuild the user accounts since the root domain holds the authentication (SAM) database. B. When you rename the root domain server you will simply rename the child domain also. C. When you rename the root domain server you will lose the entire network orphaning the child domains. D. When you rename the root domain server you will not need to do anything else since domain names are inherited the child domains will acquire the new domain name. Answer: C 7. Windows 2000 Active Directory contains both logical and physical components. Which of the following are physical components of Active Directory? A. Trees B. Organizational Units C. Sites D. Domains E. Domain Controllers Answer: C, E 8. You are the network administrator for a company that has a Windows 2000 single domain with three sites containing two domain controllers in each. The company only has two IP site links: Atlanta Detroit and Dallas Detroit. You are contemplating on adding another domain controller within each site to handle all replication for each site. How should you configure this domain Controller? A. Configure the new domain controller to be an IP preferred bridgehead server. B. Configure the new domain controller to be a site link. C. Configure the new domain controller to be a subnet. D. Configure the new domain controller to be a replication master. Answer: A 9. You are requested to perform a transfer of the role of relative ID master for a domain within your company. Where would you begin this transfer? A. Open the Active Directory Schema snap-in B. Open the Active Directory Sites and Services console C. Open the Active Directory Domains and Trusts console D. Open the Active Directory Users and Computers console Answer: D 10. You have just assisted your company in migrating to Windows 2000 Active Directory. In addition you have installed an intranet server with Web hosting services for each department within your company. One department, the legal department, actually hosts both a web services and ftp services on its intranet server. You need to identify the legal department's intranet server as the host for both ftp and web server within the DNS server's resource records. Which type of resource record should you create to identify this server? A. Alias (CNAME) B. Mail Exchange (MX) C. Pointer (PTR)

D. E. F.

Service (SVR) Name Server (NS) Start of Authority (SOA)

Answer: D 11. As the network administrator you have just been informed that one of your authorized Power Users has deleted several local user accounts. You explain to this mortified employee that he needs to perform an authoritatively restore on the select portion of Active Directory data deleted. What must be done before he can use NTDSUTIL utility to authoritatively restore the data? A. Republish the SYSVOL B. Bring down all domain controllers at the site and reboot C. Perform a Primary restore D. Synchronize Active Directory Services E. No authoritatively restore the System State data F. Revoke and reissue orphaned certificates Answer: E 12. Your company uses Windows 2000 IIS server and log files you have enabled a reverse lookup zone. This will assist in running troubleshooting tools. Because your company is experiencing trouble with a DNS server you decide to use NSLOOKUP to confirm that zone delegation was successful. At the command prompt on your DNS server, you type NSLOOKUP 10.0.0.25 command. What do you expect to see next? A. Hostname B. Server zone C. DNS log file D. DNS queries Answer: A 13. You have been requested to create a group Policy (GPO) linked to a domain. The GPO will be applied to all users in the domain. What is the first step in creating a GPO? A. Open the Dispatch Policy GPO console B. Open Active Directory Users and Computers C. Add the Group Policy snap-in to the MMC console D. Open Active Directory Sites and Services Answer: B 14. You have been asked to troubleshoot a problem with your DNS servers that appears to not be making zone transfers between primary and secondary DNS servers. You begin to solve this problem by opening the DNS console tree, right click the name server, then click Properties. On the Logging tab, select the debug options and click OK. Which of the following are solutions for transfer problems between primary and secondary zones? (Choose all that apply). A. B. C. D. E. Make sure the serial numbers for the zones involved in the transfer are not the same on each server. Make sure a site-link server is properly configures between each zone. Delete the secondary DNS server from the primary and reboot. Eliminate the possibility of network connectivity between the two hosts. Use the PING command to ping each DNS host by its IP address from its remote counterpart. Verify that the primary and secondary DNS servers involved in the transfer are both started and that the zone is not paused.

Answer: A, E 15. As the network administrator you have been asked to move a domain controller from one site to another existing site using Windows 2000 Active Directory. To accomplish this you begin by getting into the Active Directory Sites and Services console. Then you select the domain controller that you want to move. What do you do next? A. Right-click the domain controller, selects Cut, navigate to the new site and Paste it there. B. Click Move on the Action menu, select the site to which you want to move the domain controller in the Move Server dialog box and click OK. C. Drag the domain controller to the new site and drop it there. D. Right-click the domain controller, select Advanced, select the site to which you want to move the domain controller in the Move Server dialog box, and click OK. Answer: B 16. As a network technician you have been requested to restore a mistakenly deleted organizational Unit from the Active Directory. You first perform a nonauthoritative restore of the System State data. After which you next chose to use the NTDSUTIL utility to authoritatively restore the organizational unit (OU) that has been mistakenly deleted. The deleted OU is named "prepexams1" and was located in the knowledgeoasis.com domain. At the command prompt you type the utility command 'ntdsutil' and enter, then the type of restore command 'authoritative restore' and enter. Which of the following commands should you enter next to restore this OU? A. Ntdsutil OU=prepexams1,DC=knowledgeoasis,DC=com B. Restore subtree OU=prepexams1,DC=knowledgeoasis,DC=com C. Restore database OU=prepexams1,DC=knowledgeoasis,DC=com D. Authoritative restore OU=prepexams1,DC=knowledgeoasis,DC=com Answer: B 17. You need to create a reverse lookup zone to enable reverse lookup queries. To create a reverse lookup zone you will need to open DNS console and expand the DNS server. What should you do next? A. Right-click the DNS server and click Properties. B. Right-click the Reverse Lookup Zone folder and click Advanced. C. Right-click the DNS server and select New Domain. D. Right-click the Reverse Lookup Zone folder and click New Zone. Answer: D 18. As network administrator you have been asked to create an Active Directory structure to allow local administrators at your company's branch offices to control users and local resources. The local administrators should control only resources in branch offices. What should you do to accomplish this request? A. Create a child OU for each branch office, place users and resources in it, and delegate control of each OU to local administrators at each office. B. Create a schema that contains formal definition of administrative duties and structure over users and resources in each branch. C. Create an implicit trust object thast grants specific authority to the local administrator over their branch domain. D. Create an explicit one-way nontransitive trust between domains that allow the branch administrators to controller their users and resources. Answer: A 19. You are the backup operator of a Windows 2000 domain. The domain has 2 domain controllers and one certificate server at the central office and 1 domain controller at a branch office. You have been requested to add the domain controller in the remote branch office to your regular once a week backup at the central office. You schedule the backup job

to include the system state data from both locations. What will be backed up from the branch office? A. SYSVOL B. Registry C. Certificate database D. COM+ Class Registration database E. System boot files F. None of the above Answer: F 20. You are an Account Operator responsible for maintaining Windows 2000 Active Directory and the network directory infrastructure. You have been using Windows 2000 Group Policy objects to assign .msi packages to a group of Windows 2000 Professional workstations based on their membership in an organizational unit. Recently you added several new users to the OUs receiving the .msi packages. All seems to performing properly until you are contacted by one of the new users. This user states that an error message: The feature you are trying to install cannot be found in the source directory. What is the solution(s) to this problem? (Choose all that apply) A. B. C. D. You must ensure that the user has sufficient permissions for the SDP and the application. Make sure the network is operating correctly. You must ensure that the user has Apply Group Policy permission for the GPO. You must ensure that the user has READ permission for the GPO.

Answer: A, B, C, D

You might also like