Deck 7: Managing Ous and Active Directory Accounts
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Unlock Deck
Sign up to unlock the cards in this deck!
Unlock Deck
Unlock Deck
1/39
Play
Full screen (f)
Deck 7: Managing Ous and Active Directory Accounts
1
The Administrator account should not be re-named,but should at least used a secure password.
False
2
When creating a new user,the "User must change password at next logon" option is enabled by default.
True
3
After a template account has been created,what can be done to ensure that the template account does not pose a security risk?
A) The account should be placed in an isolated OU
B) A specialized GPO should be applied to the OU the template account is located in,to limit risk
C) The account should be disabled
D) The account should be removed from the "Domain Users" group
A) The account should be placed in an isolated OU
B) A specialized GPO should be applied to the OU the template account is located in,to limit risk
C) The account should be disabled
D) The account should be removed from the "Domain Users" group
C
4
A valid comma separated value file that can be imported using csvde must have what option below on the first line?
A) The FQDN of the target domain
B) The distinguished name of the first object to imported
C) Set variable parameters
D) A header record
A) The FQDN of the target domain
B) The distinguished name of the first object to imported
C) Set variable parameters
D) A header record
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
5
An explicit "allow" permission will override an inherited "deny" permission.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
6
Information within an OU can be hidden using permissions,and administration of an OU can be delegated to a non-administrative account.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
7
Permission inheritance can be configured such that permissions are only inherited by specific types of child object types.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
8
What special identity group is used when a user accesses an FTP server that doesn't require user account logon?
A) IIS_IUSR
B) Anonymous logon
C) Everyone
D) Domain Users
A) IIS_IUSR
B) Anonymous logon
C) Everyone
D) Domain Users
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
9
Which statement is true regarding the use of the Logon Hours option under a user's account?
A) The Logon Hours forces a user to log off during "Logon denied" periods
B) Logon Hours can't be changed during weekends
C) The Logon Hours can't be used to disconnect a user that has already logged in
D) Logon hours can be set for specific days of the month,as well as holidays
A) The Logon Hours forces a user to log off during "Logon denied" periods
B) Logon Hours can't be changed during weekends
C) The Logon Hours can't be used to disconnect a user that has already logged in
D) Logon hours can be set for specific days of the month,as well as holidays
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
10
Select below the built-in group that facilitates anonymous access to web resources by Internet Information Services
A) IIS_ANON
B) Users
C) IIS_IUSRS
D) Anonymous logon
A) IIS_ANON
B) Users
C) IIS_IUSRS
D) Anonymous logon
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
11
Which special identity group specifically includes any user account (except the Guest)logged into a computer or domain with a valid username and password?
A) Anonymous Logon
B) Authenticated Users
C) Everyone
D) System
A) Anonymous Logon
B) Authenticated Users
C) Everyone
D) System
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
12
How can the output of a command be redirected to a file instead of being displayed on screen?
A) Type the > character followed by the file name at the end of the command
B) Use the -out option
C) Place the output file in { } brackets.
D) Add "echo file" at the end of the command.
A) Type the > character followed by the file name at the end of the command
B) Use the -out option
C) Place the output file in { } brackets.
D) Add "echo file" at the end of the command.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
13
Select the special character below that can't be used within a username:
A) !
B) #
C) .
D) ?
A) !
B) #
C) .
D) ?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
14
By default,the Windows password policy requires a minimum password of what length?
A) 4 characters
B) 6 characters
C) 7 characters
D) 9 characters
A) 4 characters
B) 6 characters
C) 7 characters
D) 9 characters
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
15
What is a downlevel user logon name used for?
A) Logging into older Windows OSs or using older Windows applications
B) Assigning access to lower security shared folders
C) Logging into servers further down in the domain structure
D) Logging into servers that are marked as "Down" in Server Manager
A) Logging into older Windows OSs or using older Windows applications
B) Assigning access to lower security shared folders
C) Logging into servers further down in the domain structure
D) Logging into servers that are marked as "Down" in Server Manager
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
16
The default location for computer accounts that are created automatically after joining the domain can be changed using which command?
A) netdom computer account location
B) redircmp
C) Add-Computer -OU
D) djoin OU
A) netdom computer account location
B) redircmp
C) Add-Computer -OU
D) djoin OU
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
17
Which of the following statements is true regarding the built-in Guest account?
A) After Windows installation,the Guest account is enabled by default
B) The Guest account requires a password
C) The Guest account should be renamed if it will be used
D) The Guest account is not included in the Everyone group
A) After Windows installation,the Guest account is enabled by default
B) The Guest account requires a password
C) The Guest account should be renamed if it will be used
D) The Guest account is not included in the Everyone group
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
18
When creating a new user,the "User cannot change password" option can't be used in conjunction with what other option?
A) Password never expires
B) Account is disabled
C) User logon name (Pre-Windows 2000)
D) User must change password at next logon
A) Password never expires
B) Account is disabled
C) User logon name (Pre-Windows 2000)
D) User must change password at next logon
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
19
Select the true statement regarding the conversion of group scope:
A) Universal groups that are members of other universal groups can be converted to domain local groups
B) Universal groups can be members of global groups
C) Domain local groups can be converted to universal,as long as the domain local group does not contain other domain local groups
D) Global groups can't be converted to universal groups
A) Universal groups that are members of other universal groups can be converted to domain local groups
B) Universal groups can be members of global groups
C) Domain local groups can be converted to universal,as long as the domain local group does not contain other domain local groups
D) Global groups can't be converted to universal groups
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
20
A user's profile is stored in what directory on a local computer by default?
A) C:/Documents and Settings
B) C:/System32/Users
C) C:/System32/Profiles
D) C:/Users
A) C:/Documents and Settings
B) C:/System32/Users
C) C:/System32/Profiles
D) C:/Users
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
21
The ________ command removes,or deletes,objects from Active Directory.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
22
How often is the password for a computer account changed by Active Directory?
A) 10 days
B) 15 days
C) 30 days
D) 60 days
Enter the appropriate word(s)to complete the statement.
A) 10 days
B) 15 days
C) 30 days
D) 60 days
Enter the appropriate word(s)to complete the statement.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
23
In a single domain environment,what is the Microsoft recommended best practice for assigning access to resources?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
24
If a user is created without a password and the domain's password policy requires a non-blank password,what is the result?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
25
What are the two different ways that responsibility for an OU can be delegated to a non-administrator user?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
26
How does piping work on the command line?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
27
What is the potential security risk of utilizing a naming standard for user accounts?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
28
What is the most typically used group type conversion?
A) Distribution group -> security group
B) Security group -> distribution group
C) Universal group -> domain local group
D) Domain local group -> global group
A) Distribution group -> security group
B) Security group -> distribution group
C) Universal group -> domain local group
D) Domain local group -> global group
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
29
Using ______________,a computer joining the domain doesn't have to be connected to the network when the join occurs.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
30
When a user leaves a company,why is it preferable to disable the user rather than delete the user?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
31
The _____________ determines the reach of a group's application in a domain or forest: which security principals in a forest can be group members and to which forest resources a group can be assigned rights or permissions.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
32
The _____________ cmdlet within PowerShell can be used to rename an object in Active Directory.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
33
What components make up an object's distinguished name (DN)?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
34
Which of the following statements is not true regarding the built-in Administrator account?
A) The local Administrator has full access to a local computer,a domain Administrator has full access to a domain
B) The domain Administrator account in the forest root domain has full access to all aspects of the forest.
C) The Administrator account can't be renamed,but it can be deleted.
D) The Administrator account can be disabled.
A) The local Administrator has full access to a local computer,a domain Administrator has full access to a domain
B) The domain Administrator account in the forest root domain has full access to all aspects of the forest.
C) The Administrator account can't be renamed,but it can be deleted.
D) The Administrator account can be disabled.
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
35
How can an administrator make a user template account easily recognizable?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
36
How can an administrator enable or disable accounts using the command line?
A) Use the Enable-ADAccount cmdlet
B) Use the Disable-ADAccount cmdlet
C) Use the dsmod user command
D) Use the chmod user command
A) Use the Enable-ADAccount cmdlet
B) Use the Disable-ADAccount cmdlet
C) Use the dsmod user command
D) Use the chmod user command
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
37
What different types of objects can be members of a distribution group?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
38
An authenticated user can add up to how many computer accounts to the domain,by default?
A) 1
B) 5
C) 10
D) 15
A) 1
B) 5
C) 10
D) 15
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck
39
How are Active Directory objects added to special identity groups?
Unlock Deck
Unlock for access to all 39 flashcards in this deck.
Unlock Deck
k this deck