โ† All MCTS 70-640 Flashcard Decks

Research & Evidence-Based Practice Flashcards

7 cards from real MCTS 70-640 practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Research & Evidence-Based Practice flashcards as text
  1. When troubleshooting AD replication failures, which command-line tool provides the most comprehensive diagnostic report including replication status, connectivity, and DNS health?

    Answer: dcdiag.exe

    dcdiag.exe runs a comprehensive suite of tests covering DNS, replication, connectivity, and domain controller health.

  2. An administrator needs evidence of all changes made to AD objects over the past week. Which audit subcategory must be enabled to capture this data?

    Answer: Audit Directory Service Changes

    The 'Audit Directory Service Changes' subcategory logs old and new values whenever an AD object attribute is modified.

  3. After deploying a new GPO, users report it is not applying. Which tool produces a detailed HTML report documenting exactly which policies are applying and which are being blocked?

    Answer: gpresult /H report.html

    gpresult /H generates an HTML-formatted Resultant Set of Policy report showing applied, denied, and filtered GPOs for a specific user/computer.

  4. Which event ID in the Security log on a Windows Server 2008 domain controller indicates a successful account logon authenticated via Kerberos?

    Answer: 4768

    Event ID 4768 is generated when a Kerberos Authentication Service (AS) ticket is requested, indicating Kerberos-based authentication.

  5. A researcher wants to gather baseline data on AD replication latency across sites. Which repadmin command shows the last replication attempt and result for all domain controllers?

    Answer: repadmin /replsummary

    repadmin /replsummary provides a concise summary of the largest delta and failure counts per domain controller, ideal for baseline analysis.

  6. When performing a post-incident analysis of an account lockout, which tool can query all domain controllers to pinpoint the source machine causing the lockouts?

    Answer: Microsoft Account Lockout and Management Tools (LockoutStatus.exe)

    LockoutStatus.exe polls all domain controllers simultaneously and displays the lockout status and bad password source across all DCs.

  7. To verify that a Windows Server 2008 domain controller has properly registered all required SRV records in DNS, which dcdiag test should be run?

    Answer: dcdiag /test:DNS

    dcdiag /test:DNS validates that all required DNS records including SRV, A, and CNAME records are registered and resolvable.

Research & Evidence-Based Practice Flashcards โ€” MCTS 70-640 Study Cards with Answers