Your network contains an Active Directory domain named contoso.com.You run nslookup.exe as shown in the following Command Prompt window. You need to ensure that you can use Nslookup to list all of the service location (SRV) resource records for contoso.com.
What should you modify()
A.the root hints of the DNS server
B.the security settings of the zone
C.the Windows Firewall settings on the DNS server
D.the zone transfer settings of the zone
您可能感兴趣的试卷
你可能感兴趣的试题
Your network contains a single Active Directory domain named contoso.com. The domain contains two domain controllers named DC1 and DC2 that run Windows Server 2008 R2.
DC1 hosts a primary zone for contoso.com. DC2 hosts a secondary zone for contosto.com.
On DC1, you change the zone to an Active Directory-integrated zone and configure the zone to accept secure dynamic updates only.
You need to ensure that DC2 can accept secure dynamic updates to the contoso.com zone.
Which command should you run()
A.dnscmd.exe dc2.contoso.com /createdirectorypartition dns.contoso.com
B.dnscmd.exe dc2.contoso.com /zoneresettype contoso.com /dsprimary
C.dnslint.exe /ql
D.repadmin.exe /syncall /force
Your network contains an Active Directory domain named contoso.com.
You plan to deploy a child domain named sales.contoso.com. The domain controllers in sales.contoso.com will be DNS servers for sales.contoso.com.
You need to ensure that users in contoso.com can connect to servers in sales.contoso.com by using fully qualified domain names (FQDNs).
What should you do()
A.Create a DNS forwarder.
B.Create a DNS delegation.
C.Configure root hint servers.
D.Configure an alternate DNS server on all client computers.
You need to force a domain controller to register all service location (SRV) resource records in DNS.
Which command should you run()
A.ipconfig.exe /registerdns
B.net.exe stop dnscache & net.exe start dnscache
C.net.exe stop netlogon & net.exe start netlogon
D.regsvr32.exe dnsrslvr.dll
Your network contains an Active Directory domain named contoso.com. You remove several computers from the network.
You need to ensure that the host (A) records for the removed computers are automatically deleted from the contoso.com DNS zone.
What should you do()
A.Configure dynamic updates.
B.Configure aging and scavenging.
C.Create a scheduled task that runs the Dnscmd /ClearCache command.
D.Create a scheduled task that runs the Dnscmd /ZoneReload contoso.com command.
You have an Active Directory domain named contoso.com.
You have a domain controller named Server1 that is configured as a DNS server.
Server1 hosts a standard primary zone for contoso.com. The DNS configuration of Server1 is shown in the exhibit. (Click the Exhibit button.)
You discover that stale resource records are not automatically removed from the contoso.com zone.
You need to ensure that the stale resource records are automatically removed from the contoso.com zone.
What should you do()
A.Set the scavenging period of Server1 to 0 days.
B.Modify the Server Aging/Scavenging properties.
C.Configure the aging properties for the contoso.com zone.
D.Convert the contoso.com zone to an Active Directory-integrated zone.
Your network contains a domain controller that is configured as a DNS server. The server hosts an Active Directory-integrated zone for the domain.
You need to reduce how long it takes until stale records are deleted from the zone.
What should you do()
A.From the configuration directory partition of the forest, modify the tombstone lifetime.
B.From the configuration directory partition of the forest, modify the garbage collection interval.
C.From the aging properties of the zone, modify the no-refresh interval and the refresh interval.
D.From the start of authority (SOA) record of the zone, modify the refresh interval and the expire interval.
Your network contains an Active Directory domain named contoso.com. The domain contains the servers shown in the following table.
Server name Operating system Role
DC1 Windows Server 2008 Domain controller
DC2 Windows Server 2008 R2 Domain controller
DNS1 Windows Server 2008 DNS server DNS2 Windows Server 2008 R2 DNS server
The functional level of the forest is Windows Server 2003. The functional level of the domain is Windows Server 2003.
DNS1 and DNS2 host the contoso.com zone.
All client computers run Windows 7 Enterprise.
You need to ensure that all of the names in the contoso.com zone are secured by using DNSSEC.
What should you do first()
A.Change the functional level of the forest.
B.Change the functional level of the domain.
C.Upgrade DC1 to Windows Server 2008 R2.
D.Upgrade DNS1 to Windows Server 2008 R2.
Your company has a main office and a branch office.
The network contains an Active Directory domain named contoso.com. The DNS zone for contoso.com is configured as an Active Directory-integrated zone and is replicated to all domain controllers in the domain.
The main office contains a writable domain controller named DC1. The branch office contains a read-only domain controller (RODC) named RODC1. All domain controllers run Windows Server 2008 R2 and are configured as DNS servers.
You uninstall the DNS server role from RODC1.
You need to prevent DNS records from replicating to RODC1.
What should you do()
A.Modify the replication scope for the contoso.com zone.
B.Flush the DNS cache and enable cache locking on RODC1.
C.Configure conditional forwarding for the contoso.com zone.
D.Modify the zone transfer settings for the contoso.com zone.
Your network contains an Active Directory domain named contoso.com.
You create a GlobalNames zone. You add an alias (CNAME) resource record named Server1 to the zone.
The target host of the record is server2.contoso.com.
When you ping Server1, you discover that the name fails to resolve. You successfully resolve server2.contoso.com.
You need to ensure that you can resolve names by using the GlobalNames zone.
What should you do()
A.From the command prompt, use the netsh tool.
B.From the command prompt, use the dnscmd tool.
C.From DNS Manager, modify the properties of the GlobalNames zone.
D.From DNS Manager, modify the advanced settings of the DNS server.
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1. DC1 hosts a standard primary zone for contoso.com.
You discover that non-domain member computers register records in the contoso.com zone.
You need to prevent the non-domain member computers from registering records in the contoso.com
zone. All domain member computers must be allowed to register records in the contoso.com zone. What should you do first()
A.Configure a trust anchor.
B.Run the Security Configuration Wizard (SCW).
C.Change the contoso.com zone to an Active Directory-integrated zone.
D.Modify the security settings of the %SystemRoot%\System32\Dns folder.
最新试题
Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Serever 2008 Standart. You need to install an enterprise subordinate certification authority (CA) that support private key archival. You must achieve this goal by using the minimum amount of administrative effort.What do you do first()
Your network contains an Active Directory domain. A user named User1 takes a leave of absence for one year. You need to restrict access to the User1 user account while User1 is away. What should you do()
Your network contains an Active Directory domain named contoso.com. Contoso.com contains three servers.The servers are configure as shown in the following table. Server name Server roel Service Server1 Certification authority (CA) Server2 Certificate Enrollment Web Service Server3 Certificate Enrollment Policy Web Service You need to ensure that users can manually enroll and renew their certificates by using the Certificate Enrollment Web Service. Which two actions should you perform()
You have an enterprise subordinate certification authority (CA) configured for key archival. Three key recovery agent certificates are issued. The CA is configured to use two recovery agents. You need to ensure that all of the recovery agent certificates can be used to recover all new private keys. What should you do()
Your network contains an Active Directory forest. All domain controllers run Windows Server 2008 Standard. The functional level of the domain is Windows Server 2003. You have a certification authority (CA). The relevant servers in the domain are configured as shown in the following table: Server name Operating system Server role Server1 Windows Server 2003 Enterprise root CA Server2 Windows Server 2008 Enterprise subordinate CA Server3 Windows Server 2008 R2 Web Server You need to ensure that you can install the Active Directory Certificate Services (AD CS) Certificate Enrollment Web Service on the network. What should you do()
You create a new Active Directory domain. The functional level of the domain is Windows Server 2008 R2. The domain contains five domain controllers. You need to monitor the replication of the group policy template files. Which tool should you use()
Your network contains an Active Directory domain named contoso.com. You have a management computer named Computer1 that runs Windows 7. You need to forward the logon events of all the domain controllers in contoso.com to Computer1. All new domain controllers must be dynamically added to the subscription. What should you do()
Your network contains an Active Directory domain that contains five domain controllers. You have a management computer that runs Windows 7. From the Windows 7 computer, you need to view all account logon failures that occur in the domain. The information must be consolidated on one list. Which command should you run on each domain controller()
You need to receive an e-mail message whenever a domain user account is locked out. Which tool should you use()
Your network contains an Active Directory domain named contoso.com. The domain contains five domain controllers.You add a logoff script to an existing Group Policy object (GPO). You need to verify that each domain controller successfully replicates the updated group policy. Which two objects should you verify on each domain controller()