Latest 83-640 - Windows Server 2008 Active Directory, Configuring Dumps
1. Company.com has an Active Directory forest that contains a single domain named ad.Company.com. All domain controllers are configured as DNS servers and have Windows Server 2008 installed. The network has two Active directory-integrated zones: Companyes.com and Companyws.com. The company has instructed you to make sure that a user is able to modify records in Companyes.com while preventing the user from modifying the SOA record in Companyws.com zone. What should you do to achieve this task?
a.Modify the permissions of the Companyes.com zone by accessing the DNS Manager Console
b.Configure the user permissions on Companyes.com to include all the users and configure the user permissions on Companyws.com to allow only the administrators group to modify the records
c.Modify the permission of Companyws.com zone by accessing the DNS Manager Console
d.Modify the Domain Controllers organizational unit by accessing the Active Directory Users and Computers console.
e.None of the above.
Answer :A
Explanation : To allow the user to modify records in Companyes.com and prevent him/her from modifying the SOA record in Companyws.com zone, you should set the permissions of Companyes.com through DNS Manager Console. You set the permissions for the users to modify the records in Companyes.com. By setting permission on one Active directory-integrated zone, you will be preventing the users from modifying anything else on the other zones.
2. Company.com has an Active Directory Domain Controller. All domain controllers are configured as DNS servers and have Windows Server 2008 installed. Only one Active-Directory integrated DNS zone is configured on the domain. You need to make sure that outdated DNS records are removed from the DNS zone automatically. What should you do to achieve this task?
a.Modify the TTL of the SOA record by accessing the zone properties
b.Disable updates from the zone properties
c.Execute netsh/Reset DNS command from the Command prompt
d.Enable Scavenging by accessing the zone properties
e.None of the above
Show the answer with explanation
3. Company.com has a single Active Directory domain. You have configured all domain controllers in the network as DNS servers and they run Windows Server 2008. A domain controller named CK1 has a standard Primary zone for Company.com and a domain controller named CK2 has a standard secondary zone for Company.com. You need to make sure that the replication of the Company.com zone is encrypted so you might not loose any zone data. What should you do to achieve this task?
a.Create a stub zone and delete the secondary zone
b.Convert the primary zone into an active directory zone and delete the secondary zone
c.Change the interface where DNS server listens on both servers
d.On the standard primary zone, configure zone transfer settings. After that modify the master servers lists on the secondary zone
e.None of the above
Show the answer with explanation
4. Company.com has a main office and a branch office. All servers in both offices run Windows Server 2008. The offices are connected through a WAN link. Company.com has an Active Directory domain that hosts a single domain called maks.Company.com. There is a domain controller in the maks.Company.com domain called CK1. It is located in the main office. You have configured CK1 as a DNS server for the maks.Company.com DNS zone. It is configured as a standard primary zone. You are instructed to install a new domain controller called CK2 in the branch office. After installing the domain controller, you install DNS on CK2. You want to ensure that the DNS service on CK2 can update records and resolve DNS queries in the event of a WAN link failure. What should you do to achieve this objective?
a.Configure the DNS on CK1 to forward requests to CK2
b.Add a secondary zone named maks.Company.com on CK2
c.Convert maks.Company.com on CK1 to an Active Directory-integrated zone
d.Configure a new stub zone on CK1 and set the forwarding option to CK2
Show the answer with explanation
5. Company.com has a DNS server with 10 Active Directory Integrated Zones. For auditing purposes, you need to provide copies of the zone files of the DNS server to the security audit group. What should you do to achieve this task?
a.Execute ntdsutil > Partition Management > Display commands
b.execute ipconfig/registerdns command
c.execute the dnscmd/ZoneExport command
d.Execute dnscmd/Zoneoutput command
Show the answer with explanation


Dumps Questions
Dumps PDF's (1)
Questions (256)
Results (0)
Alerts