Home
46.
Which of the following is the minimum domain functional level required before you can promote a member server running Windows Server 2012 R2 so that it functions as a domain controller?
  • A.
    Windows Server 2003
  • B.
    Windows Server 2008
  • C.
    Windows Server 2008 R2
  • D.
    Windows Server 2012
  • Answer & Explanation
  • Report
Answer : [A]
Explanation :
  • A. Correct: The Windows Server 2003 functional level supports domain controllers hosted on computers running the Windows Server 2012 R2 operating system.
  • B. Incorrect: The Windows Server 2003 functional level supports domain controllers hosted on computers running the Windows Server 2012 R2 operating system.
  • C. Incorrect: The Windows Server 2003 functional level supports domain controllers hosted on computers running the Windows Server 2012 R2 operating system.
  • D. Incorrect: The Windows Server 2003 functional level supports domain controllers hosted on computers running the Windows Server 2012 R2 operating system.
Report
Name Email  
47.
You are considering adding a child domain to the dandenong.melbourne.victoria. australia.contoso.com domain tree. Which of the following represents the maximum length in characters, including periods, of an Active Directory domain name?
  • A.
    64 characters
  • B.
    128 characters
  • C.
    256 characters
  • D.
    512 characters
  • Answer & Explanation
  • Report
Answer : [A]
Explanation :
  • A. Correct: The maximum length in characters, including periods, of a domain name is 64 characters.
  • B. Incorrect: The maximum length in characters, including periods, of a domain name is 64 characters.
  • C. Incorrect: The maximum length in characters, including periods, of a domain name is 64 characters.
  • D. Incorrect: The maximum length in characters, including periods, of a domain name is 64 characters.
Report
Name Email  
48.
You are about to promote a server running the Windows Server 2012 R2 operating system to domain controller. The domain is currently running at the Windows Server 2008 domain functional level. Your account is a member of the Domain Admins group. Which additional groups should your account be a member of to ensure that the environment is appropriately confgured for this domain controller running Windows Server 2012 R2? (Choose two. Each answer forms part of a complete solution.)
  • A.
    Schema Admins
  • B.
    Enterprise Admins
  • C.
    Account Operators
  • D.
    Server Operators
  • Answer & Explanation
  • Report
Answer : [A and B]
Explanation :
  • A. Correct: An account used to promote a server running Windows Server 2012 to function as a Domain Controller must be a member of the Schema Admins and Enterprise Admins groups so that the existing Active Directory schema can be updated.
  • B. Correct: An account used to promote a server running Windows Server 2012 to function as a Domain Controller must be a member of the Schema Admins and Enterprise Admins groups so that the existing Active Directory schema can be updated.
  • C. Incorrect: An account used to promote a server running Windows Server 2012 to function as a Domain Controller must be a member of the Schema Admins and Enterprise Admins groups so that the existing Active Directory schema can be updated. Membership of the Account Operators group is not necessary.
  • D. Incorrect: An account used to promote a server running Windows Server 2012 to function as a Domain Controller must be a member of the Schema Admins and Enterprise Admins groups so that the existing Active Directory schema can be updated. Membership of the Server Operators group is not necessary.
  • Report
    Name Email  
    49.
    The root domain of the Adatum forest is Adatum.local. The contoso.com domain tree is part of the Adatum forest. Don has an account in the australia.contoso.com domain and is signing on to a computer that is a member of the computers.adatum.local domain. No additional UPNs have been confgured. Which UPN suffx will Don use to sign on to this computer?
    • A.
      @adatum.com
    • B.
      @adatum.local
    • C.
      @computers.adatum.local
    • D.
      @australia.contoso.com
    • Answer & Explanation
    • Report
    Answer : [B]
    Explanation :
    • A. Incorrect: The default UPN suffx for a forest is the forest root domain. Because the forest root domain is Adatum.local, this will be the default UPN suffx.
    • B. Correct: The default UPN suffx for a forest is the forest root domain. Because the forest root domain is Adatum.local, this will be the default UPN suffx.
    • C. Incorrect: The default UPN suffx for a forest is the forest root domain. Because the forest root domain is Adatum.local, this will be the default UPN suffx.
    • D. Incorrect: The default UPN suffx for a forest is the forest root domain. Because the forest root domain is Adatum.local, this will be the default UPN suffx.
    Report
    Name Email  
    50.
    You have confgured a forest trust relationship between the Adatum forest and the Contoso forest. You want to ensure that users from the Contoso forest can authenticate only when needing to access resources in the Adatum forest using the username@secure.contoso.com UPN rather than any other UPN that is available for them. Which of the following should you use to accomplish this goal?
    • A.
      SID fltering
    • B.
      Name suffx routing
    • C.
      Shortcut trust
    • D.
      External trust
    • Answer & Explanation
    • Report
    Answer : [B]
    Explanation :
    • A. Incorrect: SID fltering blocks SIDs from foreign domains being associated with accounts from trusted domains or forests.
    • B. Correct: You can use name suffx routing to manage which UPNs can be used for authentication.
    • C. Incorrect: You use shortcut trusts to speed authentication in forests that have large numbers of domains.
    • D. Incorrect: You use external trusts to create non-transitive trust relationships.
    Report
    Name Email