Lesson 06 Exercises for Manage GPOs Questions and Answers Flashcards
Question 1 : You are the network administrator for a large organization that has multiple sites and multiple OUs.
You have a site named SalesSite that is for the sales building across the street. In the domain, there is an OU for all salespeople called Sales.
You set up a GPO for the SalesSite, and you need to be sure that it applies to the Sales OU.
The Sales OU GPOs cannot override the SalesSite GPO.
What do you do?
On the GPO, disable the Block Child Inheritance setting.
On the GPO, set the Enforce setting.
On the GPO, set the priorities to 1.
On the Sales OU, set the Inherit Parent Policy settings.
On the GPO, set the Enforce setting.
Question 2 : GPOs assigned at which of the following level(s) will override GPO settings at the domain level?
OU
Site
Domain
Both OU and site
OU
Question 3 : A system administrator wants to ensure that only the GPOs set at the OU level affect the Group Policy settings for objects within the OU.
Which option can they use to do this (assuming that all other GPO settings are the defaults)?
The Enforced option
The Block Policy Inheritance option
The Disable option
The Deny permission
The Block Policy Inheritance option
Question 4 : Ann is a system administrator for a medium-sized Active Directory environment. She has determined that several new applications that will be deployed throughout the organization use registry-based settings.
She would like to do the following:
- Control these registry settings using Group Policy
- Create a standard set of options for these applications and allow other system administrators to modify them using the standard Active Directory tools
Which of the following options can she use to meet these requirements?
(Choose all that apply.)
Implement the inheritance functionality of GPOs.
Implement delegation of specific objects within Active Directory.
Implement the No Override functionality of GPOs.
Create administrative templates.
Provide administrative templates to the system administrators who are responsible for creating Group Policy for the applications.
Create administrative templates.
Provide administrative templates to the system administrators who are responsible for creating Group Policy for the applications.
Question 5 : You need to take the following steps to accomplish this task:
- Click Start > Administrative Tools.
- Double-click on Group Policy Management to open the Group Policy Management
console. - In the left pane, expand ucertify.com > Construction.
- Right-click on South America. A context menu appears.
- Select Create a GPO in this domain, and Link it here. A New GPO dialog box appears.
- In the Name field, type Test CA1.
- Click OK to accomplish this task.
- Close all the opened windows.
Question 6 : You work for an organization with a single Windows Server 2012 R2 Active Directory domain.
The domain has OUs for Sales, Marketing, Admin, R&D, and Finance.
You need only the users in the Finance OU to get Windows Office 2013 installed automatically onto their computers.
You create a GPO named OfficeApp.
What is the next step in getting all of the Finance users Office 2013?
Edit the GPO, and assign the Office application to the user’s account. Link the GPO to the Finance OU.
Edit the GPO, and assign the Office application to the user’s account. Link the GPO to the domain.
Edit the GPO, and assign the Office application to the computer account. Link the GPO to the domain.
Edit the GPO, and assign the Office application to the computer account. Link the GPO to the Finance OU.
Edit the GPO, and assign the Office application to the computer account. Link the GPO to the Finance OU.
Question 7 : To disable GPO settings for a specific security group, which of the following permissions should you apply?
Deny Write
Allow Write
Enable Apply Group Policy
Deny Apply Group Policy
Deny Apply Group Policy
Question 8 : A system administrator is planning to implement Group Policy objects in a new Windows Server 2012 R2 Active Directory environment.
In order to meet the needs of the organization, he decides to implement a hierarchical system of Group Policy settings.
At which of the following levels is he able to assign Group Policy settings?
(Choose all that apply.)
Sites
Domains
Organizational units
Local system
Sites
Domains
Organizational units
Local system
Question 9 : You are the network administrator for a large organization that uses Windows Server 2012 R2 domain controllers and DNS servers.
All of your client machines currently have the Windows XP operating system.
You want to be able to have client computers edit the domain-based GPOs by using the ADMX files that are located in the ADMX Central Store.
How do you accomplish this task?
(Choose all that apply.)
Upgrade your clients to Windows 8.
Upgrade your clients to Windows 7.
Add the client machines to the ADMX edit utility.
In the ADMX store, choose the box Allow All Client Privileges.
Upgrade your clients to Windows 8.
Upgrade your clients to Windows 7.
Question 10 : You are the administrator for an organization that has multiple locations.
You are running Windows Server 2012 R2, and you have only one domain with multiple OUs set up for each location.
One of your locations, Boston, is connected to the main location by a 256Kbps ISDN line.
You configure a GPO to assign a sales application to all computers in the entire domain.
You have to be sure that Boston users receive the GPO properly.
What should you do?
Disable the Slow Link Detection setting in the GPO.
Link the GPO to the Boston OU.
Change the properties of the GPO to publish the application to the Boston OU.
Have the users in Boston run the GPResult/force command.
Disable the Slow Link Detection setting in the GPO.
Question 11 : You are hired as a consultant to the ABC Company.
The owner of the company complains that she continues to have desktop wallpaper that she did not choose.
When you speak with the IT team, you find out that a former employee created 20 GPOs and they have not been able to figure out which GPO is changing the owner’s desktop wallpaper.
How can you resolve this issue?
Run the RSoP utility against all forest computer accounts.
Run the RSoP utility against the owner’s computer account.
Run the RSoP utility against the owner’s user account.
Run the RSoP utility against all domain computer accounts.
Run the RSoP utility against the owner’s user account.