Cram Flashcards
What provides the finest granularity for delegating administration over users and groups?
Organizational Unit (OU)
Which build in accounts have the most permissions?
Local System then Network Service and Local Service
What are the supported upgrade paths from Windows Server 2012 R2 Standard to Windows Server 2016?
Windows Server 2016 Standard and Windows Server 2016 Datacenter
What uses port 443?
Secure Sockets Layer (SSL), Transport Layer Security (TLS) and Secure Socket Tunneling Protocol (SSTP)
What port does SSL use?
Port 443
What port does TLS use?
Port 443
What port dose Simple Mail Transport Protocol (SMTP) use?
Port 25
What uses port 25?
SMTP
What port(s) does FTP use?
Ports 20 and 21
What uses port 143?
Internet Message Application Protocol (IMAP)
What port does Internet Message Application Protocol (IMAP) use?
Port 143
What are two uses of Digital Certificates?
- Authenticate clients and servers on the web
- Secure email and provide proof of origin.
What tool can be install on a client which will allow one to remotely administer the server?
Remote Server Administration Tool or RSAT
What uses Port 1723
Point-to-Point Tunneling Protocol (PPTP)
Which port does Point-to-Point Tunneling Protocol (PPTP) operate over?
Port 1723
Which port does Layer 2 Tunneling Protocol (L2TP) operate over?
Port 1701, but it also requires port 500 for Internet Key Exchange (IKE) messages
What uses Port 1701?
Layer 2 Tunneling Protocol (L2TP), which also requires port 500 for Internet Key Exchange (IKE) messages
What is the DirectAccess feature?
Is a Windows 7 (and later) feature that allows remote user to access intranet resources over the internet.
NOTE: Alternative to VPN and offers better security. Also allows Administrators to remotely manage client computers.
What server role supports Remote Application (RemoteApp)
Remote Desktop Services (RDS).
Note that if needed to support remote clients , you would also need to install Remote Access role to support secure connections into the network.
What is the result of taking ownership of a file?
You can manage permissions for the file.
When are file/folder permissions evaluated?
When the user attempts to access
What does special printer permissions allow?
Allows users to change the owner of a printer
What does manage document printer permissions allow?
Allows users to manage all jobs in the print queue
What does “print” printer permissions allow?
Allows users to print, cancel, pause, or restart print jobs they own
What does “Manage Printers” printer permissions allow?
Allows user to modify or delete preferences for printers
How are permission to the folder determined when both shared folder permissions and NTFS permissions apply?
The more restrictive permission is always the overriding permission.
True of False “Explicit Allow permissions take precedence over inherited Deny permissions”.
True
True of False “Inherited Allow permissions take precedence over explicit Deny permissions.”
False
True of False “Inherited permissions always take precedence over explicit permissions”
False
True of False “Explicit permission always take precedence over inherited permissions”
True
When creating a VM, what’s the benefit of a fixed-sized hard disk over dynamically expanded hard disk?
Provides better performance
What are five VHDX specific features?
- Supports virtual disk of up to 64 TB
- Required for Gen 2 VM
- Supports online resizing for the virtual disk
- Requires at least Server 2012
- Uses a 4 KB block size internally
What are seven requirements for nested virtualization?
- Intel VT-x physical CPUs
- Host VM must run Server 2016 or Win 10
- Two or more virtual CPUs on the host VM
- Virtual network adapter
- MAC address Spoofing enable
- Host VM has at least 4 GB virtual memory
- Dynamic memory disabled
Where should you filter group policy settings for a specific set of users?
In Security Group
In AD what represents the largest logical structure?
A Forest. Which can contain multiple domains, sites, and OUs
What objects can be global group members?
- Global groups
- Computers
- Users in the same domain
Note: a global group can be a member of a global group in the same domain of domain local or universal groups in any domain
What objects can be Domain Local Groups members?
- users
- computer
- global groups
- universal groups (from any domain in the same forest or any trusted domain)
What objects can be universal group members?
users
global groups
universal groups - in any domain in same forest.
Note: universal groups can be members of domain local groups or other universal groups
Where can you create OUs?
At the domain root or as a child of an existing OU
In an AD network, where does a transitive trust relationship exists?
Between all domains in the forest
What determines which site a client computer belongs to?
A client computer’s IP address. NOTE: Sites define the physical topology of an AD network
What does the AD Domain and Trusts tool allow you to do ?
It allows you to configure domain trust and raise the domain and forest functional level
What is a Shortcut Trust?
Is a establishment between two domains in different trees that are part of the same forest.
Note: can be created as a one way or two way trust. Applies to any child domains of the domains in the trust
What should you use to configure the replication topology?
Sites. Sites are defined based on IP subnets, and subnets connected by high-speed reliable connections
Which GPO is applied first when a user logs on?
A local GPO is applied first. GPO’s are applied in the following order:
- Local GPOs
- GPOs linked to the Site
- GPOs linked to the Domain
- GPOs linked to an OU
What is the GPO Loopback Policy replace mode?
A OU link setting - contains computer object that are applied. any policy settings that are defined in the GPO that is linked to the OU containing the user account are ignored