Frage 1
Frage
where can you view audit events?
Antworten
-
in the C:\Temp\Logs folder as text files
-
in System logs in Events Viewer
-
in Security logs in Event Viewer
-
by using audit/logs at the command line
Frage 2
Frage
Auditing is used for what purpose?
Frage 3
Frage
why would auditing include logon and logoff times?
Antworten
-
these are simply default audit types for accounts
-
logon and logoff times can help track user's work hours
-
logon and logoff times can help pinpoint who was logged on during a failure
-
logon and logoff events can track system usage for capacity planning
Frage 4
Frage
why is it a good idea (other that the effect on system performance) to set up auditing for only those objects that you really need to focus on?
Antworten
-
object auditing is complex and requires a lot of time to set up
-
searching through too many events makes finding problems more difficult
-
by enabling objects auditing, you also enable many other events
-
auditing too many events adds an extra layer of complexity to management tasks
Frage 5
Frage
why is choosing what to audit, instead of auditing everything that a user does, a good idea?
Antworten
-
high level of auditing can affect system preformance
-
auditing sets up an air of suspicion for users
-
extensive audit trails often lead to too much troubleshooting
-
auditing requires a high level of expertise to set up and maintain
Frage 6
Frage
which utility do you use to access advance audit policy settings?
Antworten
-
Local Policy Editor
-
Group Policy Editor
-
Domain Policy Editor
-
Schema Policy Editor
Frage 7
Frage
what is one of the primary advantages to using Active Directory to store DNS information?
Antworten
-
fault tolerance
-
zero configuration
-
low maintenance
-
reverse zone lookups
Frage 8
Frage
which type of DNS zone resolves host names to IP addresses?
Antworten
-
forward lookup zone
-
reverse lookup zone
-
backward lookup zone
-
null lookup zone
Frage 9
Frage
when resetting audit settings back to basic mode, what file must you remove as part of the process?
Antworten
-
policies.txt
-
audit.txt
-
policies.csv
-
audit.csv
Frage 10
Frage
which TCP/UDP port does the DNS service use to communicate?
Frage 11
Frage
what is the first and most important step in installing and deploying DNS in your network?
Antworten
-
setting up Active Directory so that DNS can be integrated into it
-
planning the infrastructure and service requirements
-
configuring the forward and reverse lookup zones correctly
-
splitting the network into subdomains
Frage 12
Frage
which one of the following is an example of an FQDN?
Frage 13
Frage
what is the primary advantage of a caching-only DNS server?
Antworten
-
it requires no maintenance
-
it provides DNS to a select few DNS clients
-
is speeds DNS queries by building a DNS request cache
-
it increases network traffic only on external networks
Frage 14
Frage
authorization is used for what purpose?
Antworten
-
to grant access to a user
-
to verify a user's identity
-
to determine security restrictions
-
to calculate effective permissions
Frage 15
Frage
why are success audits as important as failure audits?
Antworten
-
successes are important to troubleshooting for establishing baselines of normal behavior
-
successes are included by default and can be filtered out
-
successes can point to security breaches as well as normal behavior
-
successes allow you to track activity such as new account creation
Frage 16
Frage
authentication is used for what purpose?
Antworten
-
to grant access to a user
-
to verify a user's identity
-
to determine security restrictions
-
to calculate effective permissions
Frage 17
Frage
why would you implement a caching-only DNS server on your network?
Antworten
-
to speed DNS queries and decrease network traffic
-
to avoid installing and configuring a full-blown DNS server
-
to reduce the amount of maintenance for administrator
-
to reduce complexity in a network environment
Frage 18
Frage
what is the primary advantage of a caching-only DNS server?
Antworten
-
it requires no maintenance
-
it provides DNS to a select few DNS clients
-
it speeds DNS queries by building a DNS request cache
-
it increases network traffic only on external networks
Frage 19
Frage
by using the Active Directory-integrated zone, DNS follows what kind of model?
Antworten
-
master-slave
-
multi-master
-
primary-secondary
-
forward-reverse
Frage 20
Frage
what type of structure does DNS have?
Antworten
-
hierarchical distributed
-
flat distributed
-
top-down distributed
-
wheel-spoke distributed
Frage 21
Frage
A specific, individual computer or other network device in a domain is known as what?
Antworten
-
server
-
entity
-
top-level system
-
host
Frage 22
Frage
the Domain Name System (DNS) works much like a phone book to associate URLs (names) with what kinds of numbers?
Antworten
-
ID numbers
-
World Wide Web number
-
domain addresses
-
IP addresses
Frage 23
Frage
which of the following is an example of a second-level domain?
Antworten
-
blah.com
-
.net
-
server1
-
corporate.local
Frage 24
Frage
which of the following is an example of a top-level domain?
Antworten
-
.local
-
.net
-
.business
-
microsoft.com
Frage 25
Frage
which auditing feature allows you to define computer-wide system access control lists for the file system or the registry?
Frage 26
Frage
What type of audit event notifies you that an account failed to log on?
Antworten
-
DS access
-
object access
-
privilege use
-
logon/logoff
Frage 27
Frage
Why should you avoid using basic audit policy settings and advanced audit policy settings together?
Antworten
-
that amount of auditing will fill out event logs too quickly
-
the two audit setting ranges have too much redundancy or overlap between them
-
setting too many policies can put your system in an 'out of compliance" state
-
Audit policies might cause conflicts or erratic behavior.
Frage 28
Frage
By using what type of policy can you track, limit, or deny a user's ability to use removable storage devices such as USB drives in Windows Server 2012 R2?
Antworten
-
USB Storage Access
-
Removable Storage Access
-
Removable Device Access
-
Storage Device Audit
Frage 29
Frage
Which command do you use to manage auditing at the command prompt?
Antworten
-
Audit.exe
-
AdPolicy.exe
-
Auditpol.exe
-
Policy.exe
Frage 30
Frage
Before Windows 2008 R2, only nine basic audit settings existed. Windows Server 2012 introduces a total of how many audit subsettings?
Frage 31
Frage
What does the acronym FQDN stand for?
Frage 32
Frage
A stub zone is a zone copy that contains only what type of records?