feedburner
Enter your email address:

Delivered by FeedBurner

feedburner count
Custom Search

Test - 6

Overview
Real-Exams.com is a new Government-funded organization, established to
consolidate medical research performed at universities in to a single electronic
library.

The Company has been allocated a large budget to start the project, and more funds
will be made available as more universities integrate their research with
Real-Exams.com.

Physical Location
The Company has one office located in Dallas. The Office currently has 100 users.
Planned Changes

A New Office in Seattle will be opened soon. The Seattle office will have 100 users
when it opens. An additional 100 users will be hired in the Dallas office over the next
year. The number of users is expected to grow by 60 percent over the next five
years.

An external Network will be established to allow universities to share medical
research. At launch, the user population will be minimal. It is expected that the
external network will have more that 10,000 active users in the next two years.
Business Processes

Real-Exams.com will reorganize its internal staff to include the following
departments:
1. Accounting
2. Administration
3. Information Technology(IT)
4. Knowledge Management
5. Marketing
6. Projects

The Project department will work directly with universities to help them integrate
data with Real-Exams.com.

A separate project team will be dedicated to each university that partners with the
Company. This project team is in charge of making external security available,
creating user accounts, and establishing security for the university whose resources
are made available through the Company's external network.


1. The internal DNS structure must be secured to prevent unauthorized systems
from registering their names with DNS.
2. To reduce the impact that name resolution of Internet based resources might
have on WAN links, a solution must be identified that allows name resolution to
occur without generating excessive and unnecessary traffic. A single domain
controller in each office will be configured as a DNS server.
3. A single DHCP server will be present at each office. The DHCP server will
configure local client computers to have the appropriate IP settings, including the
address of a local DNS server. All users accessing the internal network must receive
their IP configurations from one of these DHCP servers.
4. An external DNS server will be required to perform only name resolution for the
namespace treyresearch.com. It will not be allowed to resolve any other name for
external users, including names of other Internet based hosts.


QUESTION NO: 1
You need to identify the features that will be available immediately after the domain
migration to the new environment is complete. Which feature or features will be
available? (Choose all that apply)

A. Global group nesting.
B. Universal group nesting.
C. Domain local group nesting.
D. Universal security groups.
E. Sid history attributes.

Answer: A, B, C, D, E

They all will be available.


QUESTION NO: 2
You are designing a NetBIOS naming strategy for the internal domain. What are
two possible NetBIOS domain names you can use to achieve your goal? (Each
correct answer presents a complete solution.) (Choose two)

A. ad
B. dallas
C. internal
D. external
E. Research

Answer: C, D

Explanation:
Answer: A, C
Internal is an appropriate name for an internal domain. "A" ad makes as much cense as "
C".

Incorrect Options:
B: Dallas would not correctly represent the internal name since it refers to a location
rather than a domain .
D: The question says you are designing a NetBIOS naming strategy for the INTENAL
domain. So an internal domain name of external is very misleading.
E: Research as we know from the case study is already registered by a different
company, and MS does not recommend creating an internal domain name with someone
else's registered domain name.


QUESTION NO: 4
You are designing the site topology for the internal domain. Which action or actions
should you perform? (Choose all that apply.)

A. Create a Single Site.
B. Create a site for each physical location.
C. Set the replication interval on the default IP site link to 60 Minutes.
D. Configure the schedule of the default IP site link to only allow replication between the
hours of 9:00 P.M and 5:00 A.M
E. Configure the schedule of the default IP site link to only allow replication between the
hours of 3:00 A.M and 11:00 A.M

Answer: B, D

Explanation:

The "How DFS Works - Storage Services: Windows Server 2003" white paper states the
following:
The DFS object stores the DFS metadata for a domain-based namespace. The DFS object
is created in Active Directory when you create a domain -based root, and Active
Directory replicates the entire DFS object to all domain controllers in a domain.
One of the goals in the case study says: "DFS replication must occur between the
hours of 9:00 PM and 5:00 AM." And since DFS is replicated with AD, you can't set the replication interval to every 60minutes.


QUESTION NO: 5
You are designing the DNS name resolution strategy for the internal network. What
should you do?

A. Configure all internal DNS servers to use the default root hints.
B. Disable recursion on the DNS server in Seattle. Configure the Seattle DNS to use
Dallas DNS server as a forwarder.
C. Create a root zone on the DNS server in Dallas. Configure the Seattle DNS server to
use the Dallas DNS server as a forwarder.
D. Create a root zone on the DNS server in both Dallas and Seattle.

Answer: B

Explanation:

when forwarders are configured this way in combination with disabling recursion, the
local DNS server is known as a slave server because in these cases, it is completely
dependent on the forwarder for queries that it cannot resolve locally.


When to Use Forwarders
In some cases, network administrators might not want DNS servers to communicate
directly with external servers. For example, if your organization is connected to the
Internet by means of a slow wide area link, you can optimize name resolution
performance by channeling all DNS queries through one forwarder. Through this method,
the server cache of the DNS forwarder has the maximum potential to grow and reduce the
need for external queries.


QUESTION NO: 6
You are designing a strategy to allow users to gain VPN access to the internal
network. What should you do?

A. Allow all inbound VPN traffic to pass through the internal firewall and the perimeter
firewall.
B. Allow all inbound VPN traffic to pass through the perimeter firewall only.
C. Allow all VPN traffic from the source IP address of 131.107.1.14 to pass through the
internal firewall.
D. Allow all VPN traffic from the source IP address of 191.168.1.0/24 to pass through
the perimeter firewall.

Answer: B

Explanation:

The case study states: "Planned VPN access will allow internal users access to internal
data while traveling." It also states: "Internal users will be granted VPN access by
connecting to VPN1." According to the planned network infrastructure exhibit, VPN1 is
located inside the perimeter firewall and outside the internal firewall. So, for the internal
users to access VPN1 while traveling, VPN traffic has to be allowed through the
perimeter firewall only.


QUESTION NO: 7
You are designing a strategy to allow internal users in Dallas to resolve domain
names. What are three possible ways to achieve the goal? (Each correct answer
presents a complete solution. Choose three)

A. Configure the internal DNS server to have a root zone.
B. Configure the Dallas DNS server to use the default root hints.
C. Configure the Dallas DNS server to forward all request for the external namespace to
the external DNS server.
D. Create a caching-only DNS server on the perimeter network.
E. Create a stub zone for the external namespace on the Dallas DNS server.

Answer: B, C, E

Explanation:

To perform recursion properly, the DNS server first needs to know where to begin
searching for names in the DNS domain namespace. This information is provided in the
form of root hints, a list of preliminary resource records used by the DNS service to
locate servers authoritative for the root of the DNS domain namespace tree.
A common use of forwarding is to allow DNS clients and servers inside a firewall to
resolve external names securely. When an internal DNS server or client communicates
with external DNS servers by making iterative queries, normally the ports used for DNS
communication with all external servers must be left open to the outside world through
the firewall. However, by configuring a DNS server inside a firewall to forward external
queries to a single DNS forwarder outside your firewall, and by then opening ports only
to this one forwarder, you can resolve names without exposing your network to outside
servers.

A stub zone is a copy of a zone that contains only the resource records needed to identify
an authoritative DNS server. An authoritative DNS server is a server that hosts resource
records for a particular DNS zone. Rather than a DNS server having to query the Internet
to locate an authoritative DNS server, the DNS server can simply refer to the list of name
servers (NS resource records) in the stub zone. Distributing a list of authoritative DNS
servers for a zone can be implemented by using stub zones. Unlike secondary zones,
which primarily are used for redundancy and load-balancing reasons, stub zones are used
to improve name resolution performance.


QUESTION NO: 8
You are designing the IP address assignment strategy for the VPN users. Which two
actions should you perform.(Each correct answer presents part of the solution.
(Choose two)

A. Configure VPN1 as a DHCP Relay Agent.
B. Configure VPN1 to assign IP Address by using DHCP server.
C. Configure VPN1 to have a static pool of IP Address from the network address of
131.107.1.0/24.
D. Configure VPN1 to have a static pool of IP Address from the network address of
192.168.1.0/24.
E. Configure the perimeter firewall to allow inbound DHCP traffic to be passed to VPN1.
F. Configure the interval firewall to allow DHCP broadcasts to be forwarded from the
external network to the internal network.

Answer: A, B

Explanation:

DHCP Relay Agent is a routing protocol configured in Routing and Remote Access that
allows DHCP clients to obtain an IP configuration from a DHCP server on a remote
subnet.

QUESTION NO: 9
You are designing the configuration of the external DNS server to meet the business
and technical requirements. What should you do?

A. Configure a root zone on the external DNS server.
B. Configure a stub zone for.com on the external dns server.
C. Configure the external DNS server to use the default root hints.
D. Configure the External DNS server to use the ISP'S DNS server as a forwarder.

Answer: A


QUESTION NO: 10
You need to identify the types of inbound traffic that should pass through the
perimeter firewall while maintaining the security of the network. Which inbound
traffic should be allowed? (Choose all that apply?)

A. VPN Traffic
B. DNS Traffic
C. LDAP Traffic
D. HTTP Traffic
E. HTTPS Traffic
F. Traffic from the network address of 192.168.10/24

Answer: A, C, D, E

Explanation:

The case study states: "Planned VPN access will allow internal users access to internal
data while traveling." It also states: "Internal users will be granted VPN access by
connecting to VPN1." According to the planned network infrastructure exhibit, VPN1 is
located inside the perimeter firewall and outside the internal firewall. So, for the internal
users to access VPN1 while traveling, VPN traffic has to be allowed through the
perimeter firewall only.

Lightweight Directory Access Protocol (LDAP) is the primary access protocol for
Active Directory. LDAP is an industry-standard protocol, established by the Internet
Engineering Task Force (IETF), which allows users to query and update information in a
directory service. Active Directory supports both LDAP version 2 and LDAP version 3.
Hypertext Transfer Protocol (HTTP) is the method by which Web pages are transferred over the network.


QUESTION NO: 11
You are designing a strategy to ensure that VPN users are able to access all internal
resources. What should you do?

A. Specify a static routing table entry on VPN1 for the Dallas network.
B. Specify a static routing table entry on VPN1 for the Seattle network.
C. Implement Internet Authentication Service (IAS) on VPN1.
D. Define a User Class option for Routing & Remote Access Clients on the DHCP
Server.

Answer: C

Explanation:

Internet Authentication Service (IAS) is the Microsoft implementation of a Remote
Authentication Dial-In User Service (RADIUS) server and proxy in Microsoft ®
and Windows Server 2003; Datacenter Edition. As a RADIUS server, IAS performs
centralized connection authentication, authorization, accounting, and auditing (AAAA)
for many types of network access, including wireless, authenticating switch, dial-up and
virtual private network (VPN) remote access, and router-to-router connections. As a
RADIUS proxy, IAS forwards authentication and accounting messages to other RADIUS
servers. IAS supports the Internet Engineering Task Force (IETF) standards for RADIUS
described in RFC 2865 and RFC 2866.

Since both Dallas and Seattle will be in the same domain and utilize the same DNS server
there is nothing special that needs to be done to allow VPN users (once authenticated via
IAS) access to all internal resources.


QUESTION NO: 12
You are designing a strategy to migrate user accounts. Which two actions should
you perform? (Each correct answer presents part of the solution. Choose two.)

A. Change the functional level.
B. Create an external trust relationship.
C. Run adprep to prepare the research.com forest.
D. Run adprep to prepare the research.com domain.

Answer: A, B

Explanation:

The target domain must be running in either Windows 2000 Native or Windows Server
2003 functional level. This is required because SID History cannot be stored in a classic
SAM, so all BDCs must be off the wire.

In this case, we are migrating from Windows 2000 to Windows Server 2003.
The source domain must trust the target domain. This ensures that the ADMT agent has
the proper security context.

Incorrect Options:

C and D: adprep is used for in-place upgrades.


QUESTION NO: 14
You are designing the top-level OU structure for the external domain. On which
factor/s should you base the top-level OU structure?

A. Physical locations
B. External partners and universities
C. The company's internal departments
D. The company's software deployment needs

Answer: B

Explanation:

The case study states: "External users and partners from universities will have access
only to external resources."





0 comments:

Post a Comment

Enter Valid e-mail to get all updates of this sites in mail

Enter your email address:

Delivered by FeedBurner

Cheapest predictive dialer for callcenter power dial

Power Dial predictive dialer for callcenter with less investment and more features based in the heart of Hyderabad AP India.Power Dial has setup more then 200 centers and more then 5000 seats supports is provided.
For best quotes, pricing and other details mail me asap at powerdial.hyd@gmail.com

Vivaan Kumar
http://powerdial.blogspot.com/
Cheapest Predictive Dialer power Dial
cheap pd power dial
predictive dialer
predictive dialer for callcenter with less investment power dial
predictive dialer for callcenter with low price
predictive dialer form india
predictive dialer from hyderabad
power dial predictive dialer