您好,欢迎来到江浙沪招生考试网 !

设为首页|加入收藏|联系我们|网站地图|

江浙沪招生考试网

您现在的位置: test4exam >> 计算机考试 >> 微软认证考试 >> 正文

MCITP认证考试微软认证专业IT人士70-640考试练习题

日期:2014/9/19 12:41:16 来源:本站原创 访问量:
he shared folders contains confidential data. You need to ensure that unauthorized users are not able to access the shared folder that contains confidential data. What should you do?

  A.

  Enable the Do not trust this computer for delegation property on all the computers of unauthorized users by using the Dsmod utility.

  B.

  Instruct the unauthorized users to log on by using the Guest account. Configure the Deny Full control permission on the shared folders that hold the confidential data for the Guest account.

  C.

  Create a Global Group named Deny DLG. Place the global group that contains the unauthorized users into the Deny DLG group. Configure the Allow Full control permission on the shared folder that holds the confidential data for the Deny DLG group.

  D.

  Create a Domain Local Group named Deny DLG. Place the global group that contains the unauthorized users into the Deny DLG group. Configure the Deny Full control permission on the shared folder that holds the confidential data for the Deny DLG group.

  Answers: D

  10: Single

  Your network consists of an Active Directory forest named contoso.com. All servers run Windows Server 2008. All domain controllers are configured as DNS servers. The contoso.com DNS zone is stored in the ForestDnsZones Active Directory application partition. You have a member server that contains a standard primary DNS zone for dev.contoso.com. You need to ensure that all domain controllers can resolve names for dev.contoso.com. What should you do?

  A.

  Create a NS record in the contoso.com zone.

  B.

  Create a delegation in the contoso.com zone.

  C.

  Create a standard secondary zone on a Global Catalog server.

  D.

  Modify the properties of the SOA record in the contoso.com zone.

  Answers: B

  11: Single

  Your network consists of an Active Directory forest that contains one domain. All domain controllers run Windows Server 2008 and are configured as DNS servers. You have an Active Directory-integrated zone. You have two Active Directory sites. Each site contains five domain controllers. You add a new NS record to the zone. You need to ensure that all domain controllers immediately receive the new NS record. What should you do?

  A.

  From the DNS Manager console, reload the zone.

  B.

  From the Services snap-in, restart the DNS Server service.

  C.

  From the command prompt, run repadmin /syncall.

  D.

  From the DNS Manager console, increase the version number of the SOA record.

  Answers: C

  12: Single

  Your company has a main office and five branch offices that are connected by WAN links. The company has an Active Directory domain named contoso.com. Each branch office has a member server configured as a DNS server. All branch office DNS servers host a secondary zone for contoso.com. You need to configure the contoso.com zone to resolve client queries for at least four days in the event that a WAN link fails. What should you do?

  A.

  Configure the Expire after option for the contoso.com zone to 4 days.

  B.

  Configure the Retry interval option for the contoso.com zone to 4 days.

  C.

  Configure the Refresh interval option for the contoso.com zone to 4 days.

  D.

  Configure the Minimum (default) TTL option for the contoso.com zone to 4 days.

  Answers: A

  13: Single

  Your company has an Active Directory domain. You install a new domain controller in the domain. Twenty users report that they are unable to log on to the domain. You need to reregister the SRV records. Which command should you run on the new domain controller?

  A.

  Run the netsh interface reset command.

  B.

  Run the ipconfig /flushdns command.

  C.

  Run the dnscmd /EnlistDirectoryPartition command.

  D.

  Run the sc stop netlogon command followed by the sc start netlogon command.

  Answers: D

  14: Single

  Your network consists of an Active Directory forest that contains one domain named contoso.com. All domain controllers run Windows Server 2008 and are configured as DNS servers. You have two Active Directory-integrated zones: contoso.com and nwtraders.com. You need to ensure a user is able to modify records in the contoso.com zone. You must prevent the user from modifying the SOA record in the nwtraders.com zone. What should you do?

  A.

  From the DNS Manager console, modify the permissions of the contoso.com zone.

  B.

  From the DNS Manager console, modify the permissions of the nwtraders.com zone.

  C.

  From the Active Directory Users and Computers console, run the Delegation of Control Wizard.

  D.

  From the Active Directory Users and Computers console, modify the permissions of the Domain Controllers organizational unit (OU).

  Answers: A

  15: Single

  Your network consists of a single Active Directory domain. You have a domain controller and a member server that run Windows Server 2008. Both servers are configured as DNS servers. Client computers run either Windows XP Service Pack 2 or Windows Vista. You have a standard primary zone on the domain controller. The member server hosts a secondary copy of the zone. You need to ensure that only authenticated users are allowed to update host (A) records in the DNS zone. What should you do first?

  A.

  On the member server, add a conditional forwarder.

  B.

  On the member server, install Active Directory Domain Services.

  C.

  Add all computer accounts to the DNSUpdateProxy group.

  D.

  Convert the standard primary zone to an Active Directory-integrated zone.

  Answers: D

  16: Single

  Your network consists of a single Active Directory domain. The domain contains 10 domain controllers. The domain controllers run Windows Server 2008 and are configured as DNS servers. You plan to create a new Active Directory-integrated zone. You need to ensure that the new zone is only replicated to four of your domain controllers. What should you do first?

  A.

  Create a new delegation in the ForestDnsZones application directory partition.

  B.

  Create a new delegation in the DomainDnsZones application directory partition.

  C.

  From the command prompt, run dnscmd and specify the /enlistdirectorypartition parameter.

  D.

  From the command prompt, run dnscmd and specify the /createdirectorypartition parameter.

  Answers: D

  17: Single

  Your company has an Active Directory forest. The company has three locations. Each location has an organizational unit and a child organizational unit named Sales. The Sales organizational unit contains all users and computers of the sales department. The company plans to deploy a Microsoft Office 2007 application on all computers within the three Sales organizational units. You need to ensure that the Office 2007 application is installed only on the computers in the Sales organizational units. What should you do?

  A.

  Create a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to assign the application to the computer account. Link the SalesAPP GPO to the domain.

  B.

  Create a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to assign the application to the user account. Link the SalesAPP GPO to the Sales organizational unit in each location.

  C.

  Create a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to publish the application to the user account. Link t

上一页  [1] [2] [3] [4] [5] [6] [7] [8] [9] [10]  ... 下一页  >> 

相关阅读
·推荐文章

Copyright ©2013-2015 江浙沪招生考试网 All Rights Reserved.
地址: 苏州市姑苏区阊胥路483号(工投创业园)  电话:0512-85551931 邮编: 214000
邮箱: [email protected] 版权所有:苏州迈峰教育科技有限公司 苏ICP备15050684号-2