NOS 230 Ch 1-5 Quizzes
Under the Computer Configuration, which folder contains settings related to the Regional and Language Options, User Accounts, and Personalization options?
Control Panel
GPOs set at the domain level should contain settings that you want to apply to all objects in the domain.
False
Kerberos policies, found in a GPO, control settings related to user authentication and logon.
False
Security Principals define which resources users can access and what level of access they have.
False
The Backup Operators group is a group in local computers only.
False
The GPO policy defines which objects a GPO affects.
False
The dcpromo.exe command is the preferred method for installing Active Directory on Server Core.
False
The recommended minimum number of Active Directory domain controllers in a domain environment is three.
False
The second DC is always configured as a GC server.
False
When a client wants to connect to a service, it finds the service based solely on the instance name.
False
Windows creates two built-in user accounts automatically: Administrator and User.
False
Built-in user accounts include only the Administrator account created during Windows installation.
False, Administrator and Guest
For security reasons, it's best to delete an account that will be inactive for an extended period.
False, its best to disable
What mode of the Resultant Set of Policy (RSoP) snap-in produces a database of policy results that you browse in a similar manner to using the Group Policy Management Editor?
Logging
What permission is given to the Enterprise Domain Controllers universal group on all GPOs by default, and grants permission to view settings and back up a GPO?
Read
If a central store for policy definition files has been created, where should the PolicyDefinitions folder reside?
SYSVOL folder
Select the specific Windows folder that is a shared folder containing file-based information that is replicated to other domain controllers.
SYSVOL folder
Which type of ticket below is requested by an account when it wants to access a network resource, such as a shared folder?
Service ticket
In the User Configuration node, where are policies that determine whether a user can publish DFS root folders in Active Directory?
Shared Folders
Which of the following statements is not true regarding the built-in Administrator account?
The Administrator account can be deleted
Which of the following statements is true regarding the built-in Guest account?
The Guest account should be renamed if it will be used
After a template account has been created, what can be done to ensure that the template account does not pose a security risk?
The account should be disabled
Which of the following scenarios is not ideal for the deployment of a single domain structure?
The domain structure must be able to utilize different name identities
After running the Security Configuration and Analysis snap-in with a template, what does a check mark in a green circle mean?
The template policy and current computer policy are the same
A service account is a user account that Windows services use to log on to a computer or domain with a specific set of rights and permissions.
True
Account policies set in GPOs linked to an OU containing computer accounts affect only local user accounts defined in the computer's SAM database.
True
Active Directory's use of multimaster replication ensures that changes to AD objects are automatically replicated to all domain controllers.
True
Command scripts are just a series of commands saved in a file with a .bat extension.
True
Dsquery can be used for displaying a list of objects based on particular criteria or piping data to commands such as dsmod for further processing.
True
GPO enforcement is configured on a GPO, not on an Active Directory container.
True
The Default Domain Policy is linked to the domain object and specifies default settings that affect all users and computers in the domain.
True
The Group Policy Results wizard will show administrators which policy settings apply only to a user, computer, or both.
True
The Knowledge Consistency Checker (KCC) runs on every DC to determine the replication topology.
True
The Restricted Groups policy, under Security Settings, Controls group membership for both domain groups and local SAM groups.
True
User account properties are not static and can require modification.
True
What folder within the Computer Configuration node contains settings related to Event Viewer, File Explorer, Windows PowerShell, and Windows Update?
Windows Components
The folders containing Group Policy Templates (GPTs) can be found under what folder on a domain controller?
%systemroot%\SYSVOL\sysvol\domain\Policies
By default, how many previous logons are cached locally to a computer?
10
A service ticket by default lasts for how long?
10 hours
A user's profile is stored in what directory on a local computer by default?
C:\Users\logonname
Select the command that is used to import settings from a backed-up GPO to an existing GPO.
a. Import-GPO
What Active Directory object enables an administrator to configure password settings for users or groups that are different from those defined in a GPO linked to the domain?
password settings object
An Active Directory object's security settings are composed of three components, what term is used to refer to these three components?
security descriptor
When a client computer wants to connect to a service instance, what specific name type does it use to find the service?
service principal name
To find a full list of policies and preferences that can have background processing disabled, where should you look?
a. Computer Configuration\Policies\Administrative Templates\System\Group Policy
The gpupdate command in conjunction with which option below causes synchronous processing during the next computer restart or user logon?
d. /sync
Select the specific tab within the Group Policy Management Console that will allow you to view which policies affect a domain or OU and where the policies are inherited from.
b. Group Policy Inheritance
Select the term used to describe forcing inheritance of settings on all child objects in the GPO's scope, even if a GPO with conflicting settings is linked to a container at a deeper level.
c. GPO enforcement