MCTS 70-640 Exam

FREE MCTS 70-640 MCQ Question and Answers

0%

Your IT manager is worried that someone is attempting to log on to the computers at your organization using legitimate domain user names and a variety of passwords. Which auditing procedure should you keep an eye on for these actions?

Correct! Wrong!

Explanation:
In Windows Server 2008, the Account Logon audit category produces events for credential verification. These things happen on the machine that controls the credentials.

In which of the subsequent circumstances might AD LDS be used?

Correct! Wrong!

Explanation:
Using AD LDS (Active Directory Lightweight Directory Service) is typically the traditional solution for a DMZ (Demilitarized Zone), such as a web server.

With new users joining and leaving your IT organization every year, things are always changing. The deactivation of user accounts for workers who have left the organization is one of your frequent chores. What command is available for deleting user accounts?

Correct! Wrong!

Explanation:
A command-line utility called Ldifde is preinstalled on Windows Server 2008. If the AD DS or Active Directory Lightweight Directory Services (AD LDS) server role is installed, it is accessible. You must launch the ldifde command from an elevated command prompt in order to utilize ldifde. Click Start, then right-click Command Prompt, and then select Run as Administrator to launch an elevated command prompt.

You must unlock the account that a user has locked (again!) for them to resume normal operations. Which of the following scenarios could result in a user account being unlocked?

Correct! Wrong!

Explanation:
A native mechanism for unlocking accounts is not provided by the command line or Windows PowerShell. However, VBScript can be used to unlock accounts.

The server manager is a fantastic tool for controlling the majority of your server settings and setup from a single location. Which of the following features of the server manager is used to manage the public key infrastructure?

Correct! Wrong!

Explanation:
For managing and issuing digital certificates used in software security systems that make use of public key technologies, AD CS offers customizable services.
You can encrypt and digitally sign documents and messages using the digital certificates that AD CS offers. These digital certificates can be applied to network accounts for computers, users, or devices to authenticate them. Digital certificates are employed to offer:
1. Utilizing encryption to maintain privacy
2. Integrity via electronic signatures
3. authentication on a computer network by connecting certificate keys to user, computer, or device accounts.

These trusts are occasionally required when users require access to resources that are housed in a Windows NT 4.0 domain or a domain that is part of an unaffiliated Active Directory Domain Services (AD DS) forest.

Correct! Wrong!

Explanation:
You can establish an external trust to establish a nontransitive, one-way or two-way relationship with domains outside of your forest.

Forest Trusts. There are four trust types in Windows Server 2008 that must be explicitly created. What kind of trust is NOT one of the following?

Correct! Wrong!

Explanation:
Real trust exists when a domain or forest has confidence in another forest or domain that is not powered by Windows Active Directory. Domain communication between platforms is made possible by realm-trusts. By default, this trust is one-way. One must build trust in the other direction in order to establish two-way trust.