Technology & Digital Applications Flashcards
7 cards from real MCTS 70-640 practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Technology & Digital Applications flashcards as text
What is the primary function of Active Directory Federation Services (AD FS) in Windows Server 2008?
Answer: Providing single sign-on access to applications across organizational boundaries
AD FS enables federated identity, allowing users to authenticate once and access resources in partner organizations or web applications using claims-based identity.
In AD FS terminology, what is the role of a 'claims provider'?
Answer: The organization that authenticates the user and issues claims
A claims provider authenticates users and issues security tokens containing claims (attributes) about those users.
What is the purpose of AD Rights Management Services (AD RMS) in an enterprise environment?
Answer: Protecting sensitive documents and email by enforcing usage policies regardless of location
AD RMS uses encryption and usage policies to protect documents and email so that access restrictions persist even when content is moved or forwarded.
Which AD RMS component issues end-user licenses that allow a specific user to access rights-protected content?
Answer: Root Cluster
The AD RMS Root Cluster (and subordinate licensing clusters) issue use licenses that grant specific users rights to decrypt and use protected content.
An AD FS deployment requires a server that accepts authentication requests from external users on behalf of the internal AD FS server. Which component fulfills this role?
Answer: Federation Service Proxy
The Federation Service Proxy sits in the DMZ and forwards authentication requests from external clients to the internal Federation Service.
What is a 'super users group' in AD RMS, and why is it important?
Answer: A group whose members have full owner rights to all protected content, enabling recovery
Members of the AD RMS super users group receive full control over all protected content, which is critical for eDiscovery, compliance, and content recovery.
In AD FS, what is a 'relying party trust'?
Answer: A configuration entry representing an application or partner that accepts claims from the Federation Service
A relying party trust defines the application or partner organization that will consume tokens issued by the AD FS Federation Service.