Deck 9: LPIC-3 Exam 300: Mixed Environments
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Question
Unlock Deck
Sign up to unlock the cards in this deck!
Unlock Deck
Unlock Deck
1/52
Play
Full screen (f)
Deck 9: LPIC-3 Exam 300: Mixed Environments
1
What is the true of the following share's access properties? ![<strong>What is the true of the following share's access properties? </strong> A) @managers copies the permissions of the share [managers]. @managers copies the permissions of the share [managers]. B) The alice and bob users can manipulate files regardless of the file system permissions. The alice and bob users can manipulate files regardless of the file system permissions. C) @managers will be resolved as a Unix group. will be resolved as a Unix group. D) @managers is a builtin default Samba group. is a builtin default Samba group. E) the parameter admin users can be applied only to print shares. the parameter admin users can be applied only to print shares.](https://d2lvgg3v3hfg70.cloudfront.net/C1610/11ec4dba_16a3_ebf0_b9c8_f7bb69387747_C1610_00.jpg)
A) @managers copies the permissions of the share [managers]. @managers copies the permissions of the share [managers].
B) The alice and bob users can manipulate files regardless of the file system permissions. The alice and bob users can manipulate files regardless of the file system permissions.
C) @managers will be resolved as a Unix group. will be resolved as a Unix group.
D) @managers is a builtin default Samba group. is a builtin default Samba group.
E) the parameter admin users can be applied only to print shares. the parameter admin users can be applied only to print shares.
![<strong>What is the true of the following share's access properties? </strong> A) @managers copies the permissions of the share [managers]. @managers copies the permissions of the share [managers]. B) The alice and bob users can manipulate files regardless of the file system permissions. The alice and bob users can manipulate files regardless of the file system permissions. C) @managers will be resolved as a Unix group. will be resolved as a Unix group. D) @managers is a builtin default Samba group. is a builtin default Samba group. E) the parameter admin users can be applied only to print shares. the parameter admin users can be applied only to print shares.](https://d2lvgg3v3hfg70.cloudfront.net/C1610/11ec4dba_16a3_ebf0_b9c8_f7bb69387747_C1610_00.jpg)
A) @managers copies the permissions of the share [managers]. @managers copies the permissions of the share [managers].
B) The alice and bob users can manipulate files regardless of the file system permissions. The alice and bob users can manipulate files regardless of the file system permissions.
C) @managers will be resolved as a Unix group. will be resolved as a Unix group.
D) @managers is a builtin default Samba group. is a builtin default Samba group.
E) the parameter admin users can be applied only to print shares. the parameter admin users can be applied only to print shares.
@managers will be resolved as a Unix group. will be resolved as a Unix group.
2
What is true about the option create mask in smb.conf ?
A) Each permission bit that is set (1) create mask cannot be set on a file created by Samba even if the client requests it to be set. Each permission bit that is set (1) create mask cannot be set on a file created by Samba even if the client requests it to be set.
B) Each permission bit that is cleared (0) in create mask is only set on a file created by Samba if the client explicitly sets the bit. Each permission bit that is cleared (0) in is only set on a file created by Samba if the client explicitly sets the bit.
C) each permission bit that is set (1) in create mask is always set on a file created by Samba regardless of the permissions set by the client. each permission bit that is set (1) in is always set on a file created by Samba regardless of the permissions set by the client.
D) Each permission bit that is cleared (0) in create mask is always cleared on a file created by Samba even if the client explicitly sets the bit. is always cleared on a file created by Samba even if the client explicitly sets the bit.
A) Each permission bit that is set (1) create mask cannot be set on a file created by Samba even if the client requests it to be set. Each permission bit that is set (1) create mask cannot be set on a file created by Samba even if the client requests it to be set.
B) Each permission bit that is cleared (0) in create mask is only set on a file created by Samba if the client explicitly sets the bit. Each permission bit that is cleared (0) in is only set on a file created by Samba if the client explicitly sets the bit.
C) each permission bit that is set (1) in create mask is always set on a file created by Samba regardless of the permissions set by the client. each permission bit that is set (1) in is always set on a file created by Samba regardless of the permissions set by the client.
D) Each permission bit that is cleared (0) in create mask is always cleared on a file created by Samba even if the client explicitly sets the bit. is always cleared on a file created by Samba even if the client explicitly sets the bit.
Each permission bit that is cleared (0) in create mask is always cleared on a file created by Samba even if the client explicitly sets the bit. is always cleared on a file created by Samba even if the client explicitly sets the bit.
3
Which of the following sections must exist in a Samba configuration file in order to create dynamic shares for printers?
A) [print$]
B) [printcap]
C) [printer]
D) [printers]
E) [spooler]
A) [print$]
B) [printcap]
C) [printer]
D) [printers]
E) [spooler]
[printers]
4
By configuring Pluggable Authentication Module (PAM) and Name Service Switch (NSS) technologies to use OpenLDAP, what authentication service can be replaced?
A) Microsoft NT Domain
B) Samba
C) Network Information Service (NIS)
D) Active Directory (AD)
A) Microsoft NT Domain
B) Samba
C) Network Information Service (NIS)
D) Active Directory (AD)
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
5
CIFS relies upon which port for direct hosting without requiring NetBIOS?
A) 139
B) 443
C) 137
D) 445
A) 139
B) 443
C) 137
D) 445
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
6
Which option for the pam_ldap module specifies a file from the module's global settings can be read?
A) default
B) global
C) config
D) include
A) default
B) global
C) config
D) include
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
7
Which parameter in smb.conf defines the directory containing secrets.tdb?
A) passdb dir
B) private dir
C) secrets dir
D) samba dir
E) database dir
A) passdb dir
B) private dir
C) secrets dir
D) samba dir
E) database dir
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
8
How can consistent UIDs and GIDs be assured on several UNIX/Linux systems that are sharing information over protocols other than SMB/CIFS, for example NFS?
A) By specifying a common OpenLDAP idmap backend in smb.conf . By specifying a common OpenLDAP idmap backend in smb.conf .
B) By specifying a common Kerberos realm in smb.conf . By specifying a common Kerberos realm in
C) By specifying a common domain name in smb.conf . By specifying a common domain name in
D) By specifying a common password server in smb.conf . By specifying a common password server in
E) By specifying a common winbind ID range in smb.conf . By specifying a common winbind ID range in
A) By specifying a common OpenLDAP idmap backend in smb.conf . By specifying a common OpenLDAP idmap backend in smb.conf .
B) By specifying a common Kerberos realm in smb.conf . By specifying a common Kerberos realm in
C) By specifying a common domain name in smb.conf . By specifying a common domain name in
D) By specifying a common password server in smb.conf . By specifying a common password server in
E) By specifying a common winbind ID range in smb.conf . By specifying a common winbind ID range in
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
9
For Samba 3 to be able to work as a PDC, some modifications are needed in its main configuration file. Which of the following options describe the required actions for this task?
A) The Samba server has to be a logon server. This can be configured by the domain logons directive. The Samba server has to be a logon server. This can be configured by the domain logons directive.
B) The Samba server needs to have the logon and the account scripts, to properly setup the PDC environment. The Samba server needs to have the logon and the account scripts, to properly setup the PDC environment.
C) The Samba server must be a Domain Master Browser. To configure this, the domain master directive must be set to yes . The Samba server must be a Domain Master Browser. To configure this, the domain master directive must be set to yes .
D) The time server = yes directive needs to be configured, so samba will behave as a WINS server and also a Time server. The time server = yes directive needs to be configured, so samba will behave as a WINS server and also a Time server.
E) the security - user directive must be set. the security - user directive must be set.
A) The Samba server has to be a logon server. This can be configured by the domain logons directive. The Samba server has to be a logon server. This can be configured by the domain logons directive.
B) The Samba server needs to have the logon and the account scripts, to properly setup the PDC environment. The Samba server needs to have the logon and the account scripts, to properly setup the PDC environment.
C) The Samba server must be a Domain Master Browser. To configure this, the domain master directive must be set to yes . The Samba server must be a Domain Master Browser. To configure this, the domain master directive must be set to yes .
D) The time server = yes directive needs to be configured, so samba will behave as a WINS server and also a Time server. The time server = yes directive needs to be configured, so samba will behave as a WINS server and also a Time server.
E) the security - user directive must be set. the security - user directive must be set.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
10
Which of the following ports are open by default on a Samba 4 Active Directory Domain Controller?
A) 443/TCP
B) 138/TCP
C) 389/TCP
D) 445/TCP
E) 53/TCP
A) 443/TCP
B) 138/TCP
C) 389/TCP
D) 445/TCP
E) 53/TCP
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
11
When a Windows domain controller is used, which of the following entities is assigned a Windows Security Identifier?
A) Users
B) Servers
C) Groups
D) Departments
E) Companies
A) Users
B) Servers
C) Groups
D) Departments
E) Companies
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
12
What must be done to ensure the Samba password is kept synchronized when a user changes their Linux password?
A) Samba and linux passwords can only be kept in sync when Samba uses the passwdsam password backend, which reads the password from /etc/passwd . Samba and linux passwords can only be kept in sync when Samba uses the passwdsam password backend, which reads the password from /etc/passwd .
B) /usr/bin/passwd should be replaced by a symlink to /usr/bin/smbpasswd . /usr/bin/passwd should be replaced by a symlink to /usr/bin/smbpasswd
C) In /etc/nsswitch.conf , the samba service should be added to password and shadow before the file service. In /etc/nsswitch.conf , the samba service should be added to password and shadow before the file service.
D) pam_smbpass.so should be added to the password type of the appropriate PAM configuration.
E) Winbindd must be running on the Linux server in order to replicate the password changes back to Samba.
A) Samba and linux passwords can only be kept in sync when Samba uses the passwdsam password backend, which reads the password from /etc/passwd . Samba and linux passwords can only be kept in sync when Samba uses the passwdsam password backend, which reads the password from /etc/passwd .
B) /usr/bin/passwd should be replaced by a symlink to /usr/bin/smbpasswd . /usr/bin/passwd should be replaced by a symlink to /usr/bin/smbpasswd
C) In /etc/nsswitch.conf , the samba service should be added to password and shadow before the file service. In /etc/nsswitch.conf , the samba service should be added to password and shadow before the file service.
D) pam_smbpass.so should be added to the password type of the appropriate PAM configuration.
E) Winbindd must be running on the Linux server in order to replicate the password changes back to Samba.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
13
After configuring a Unix client to authenticate with a Microsoft Active Directory server, login attempts are unsuccessful. Which of the following is most likely the cause?
A) Unix Client support is disabled in the Active Directory configuration.
B) The PAM library is searching the directory with the default search filter.
C) The slapd daemon is not running on the client. The slapd daemon is not running on the client.
D) The user account in the Active Directory has the remote login setting disabled. The user account in the Active Directory has the remote login setting disabled.
A) Unix Client support is disabled in the Active Directory configuration.
B) The PAM library is searching the directory with the default search filter.
C) The slapd daemon is not running on the client. The slapd daemon is not running on the client.
D) The user account in the Active Directory has the remote login setting disabled. The user account in the Active Directory has the remote login setting disabled.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
14
In order to generate an individual log file for each of the machines connecting to a Samba server, which of the following statements must be used in the Samba configuration file?
A) log file = /var/log/samba/log.%c
B) log file = /var/log/samba/log.%M
C) log file = /var/log/samba/log.%m
D) log file = /var/log/samba/log.%I
A) log file = /var/log/samba/log.%c
B) log file = /var/log/samba/log.%M
C) log file = /var/log/samba/log.%m
D) log file = /var/log/samba/log.%I
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
15
Which service unifies Linux and Windows account management by allowing a Linux system to include Windows domain users in the Linux user database?
A) Winbind
B) PAM
C) NIS
D) OpenLDAP
A) Winbind
B) PAM
C) NIS
D) OpenLDAP
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
16
Microsoft file system are not case sensitive to file names. Linux file systems are case sensitive to file names. Which of the following configuration directives defines how Samba handles file name mapping in this situation?
A) name map
B) case map
C) case sensitive
D) case on
A) name map
B) case map
C) case sensitive
D) case on
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
17
What a benefits of using Single Sign-On (SSO)?
A) Reduce IT costs due to lower number of IT help desk about passwords.
B) Reduce time spent re-entering passwords for the same identity.
C) Reduce number of passwords to remember.
D) Reduce password complexity.
E) Reduce number of services used by users.
A) Reduce IT costs due to lower number of IT help desk about passwords.
B) Reduce time spent re-entering passwords for the same identity.
C) Reduce number of passwords to remember.
D) Reduce password complexity.
E) Reduce number of services used by users.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
18
The [homes] section of smb.conf contains the parameter browseable = no . What are the resulting consequences?
A) When browsing the Samba server, there is no visible share called homes . When browsing the Samba server, there is no visible share called homes .
B) The homes share can be directly accessed by specifically opening this share by its UNC path . The homes share can be directly accessed by specifically opening this share by its UNC path
C) When browsing the Samba server, users can open the homes share but they cannot see the content of their home directories.
D) If the Samba server is part of an Active Directory Domain, only users in the group SeBrowsingUsers can browse the homes share. If the Samba server is part of an Active Directory Domain, only users in the group SeBrowsingUsers can browse the homes share.
E) When browsing the Samba server, there is no visible share named after the current user.
A) When browsing the Samba server, there is no visible share called homes . When browsing the Samba server, there is no visible share called homes .
B) The homes share can be directly accessed by specifically opening this share by its UNC path . The homes share can be directly accessed by specifically opening this share by its UNC path
C) When browsing the Samba server, users can open the homes share but they cannot see the content of their home directories.
D) If the Samba server is part of an Active Directory Domain, only users in the group SeBrowsingUsers can browse the homes share. If the Samba server is part of an Active Directory Domain, only users in the group SeBrowsingUsers can browse the homes share.
E) When browsing the Samba server, there is no visible share named after the current user.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
19
Which of the following commands is used to join a properly configured Samba server as member to an Active Directory domain?
A) net ads join member
B) net rpc join -member
C) net domain join member
D) net domain join -member
E) net ads member join
A) net ads join member
B) net rpc join -member
C) net domain join member
D) net domain join -member
E) net ads member join
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
20
Which of the following commands delete the user account joeuser from a Samba server?
A) ambadduser -d joeuser
B) smbluser joeuser
C) smbpasswd -x joeuser
D) pdbedit -r joeuser
E) pdbedit -x joeuser
A) ambadduser -d joeuser
B) smbluser joeuser
C) smbpasswd -x joeuser
D) pdbedit -r joeuser
E) pdbedit -x joeuser
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
21
After successfully connecting to a remote CIFS share using smbclient , the command mget MyFiles is issued to retrieve the folder , including all of its contents. Instead of transferring the folder, smbclient returns the error: NT_STATUS_NO_SUCH_FILE listing \MyFiles What should be done in order to download the contents of the folder?
A) The command recurse should be used to toggle recursion for mget and mput . The command recurse should be used to toggle recursion for mget and mput .
B) To provide a target for the file transfer, the local folder MyFiles has to be created in advance. To provide a target for the file transfer, the local folder has to be created in advance.
C) The command rget should be used instead of mget to perform recursive operations. rget should be used instead of to perform recursive operations.
D) The server has to support recursion for the given share which, on Samba, is enabled by setting recursion = true . The server has to support recursion for the given share which, on Samba, is enabled by setting recursion = true
E) smbclient should be used invoked with the -recurse or -r parameter. should be used invoked with the -recurse or -r parameter.
A) The command recurse should be used to toggle recursion for mget and mput . The command recurse should be used to toggle recursion for mget and mput .
B) To provide a target for the file transfer, the local folder MyFiles has to be created in advance. To provide a target for the file transfer, the local folder has to be created in advance.
C) The command rget should be used instead of mget to perform recursive operations. rget should be used instead of to perform recursive operations.
D) The server has to support recursion for the given share which, on Samba, is enabled by setting recursion = true . The server has to support recursion for the given share which, on Samba, is enabled by setting recursion = true
E) smbclient should be used invoked with the -recurse or -r parameter. should be used invoked with the -recurse or -r parameter.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
22
Which of the following commands regenerates slapd indices based on the current database?
A) slapd index
B) sindexd
C) slapindex
D) There is no index command. Indexing is handled by the slapd daemon . There is no index command. Indexing is handled by the slapd daemon .
A) slapd index
B) sindexd
C) slapindex
D) There is no index command. Indexing is handled by the slapd daemon . There is no index command. Indexing is handled by the slapd daemon .
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
23
Which of the following commands, included in Samba 3, can be used to search for all available workgroups/domains and NetBIOS names?
A) nmblookup
B) findsmb
C) smbget
D) winbrowse
A) nmblookup
B) findsmb
C) smbget
D) winbrowse
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
24
Which of the following parameters can be used in a Samba configuration in order to execute scripts on the server?
A) add printer script
B) add user script
C) add group script
D) add user to group script
E) add share script
A) add printer script
B) add user script
C) add group script
D) add user to group script
E) add share script
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
25
Which of the following options must be set in smb.conf in order to actively configure Samba as Directory domain controller?
A) active directory logons = yes
B) security = adds
C) server role = active directory domain controller
D) ad server mode = domain controller
A) active directory logons = yes
B) security = adds
C) server role = active directory domain controller
D) ad server mode = domain controller
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
26
Which of the following commands converts user accounts from the smbpasswd to the passdb.tdb backend?
A) pdbedit -i smbpasswd:smbpasswd -e tdbsam:passdb.tdb
B) pdbedit -f smbpasswd -t passdb.tdb
C) tdbtool -i smbpasswd:smbpasswd >passdb.tdb
D) smbpasswd -e tdbsam:passdb.tdbE) tdbrestore -i smbpasswd:smbpasswd - o passdb.tdb
A) pdbedit -i smbpasswd:smbpasswd -e tdbsam:passdb.tdb
B) pdbedit -f smbpasswd -t passdb.tdb
C) tdbtool -i smbpasswd:smbpasswd >passdb.tdb
D) smbpasswd -e tdbsam:passdb.tdb
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
27
Which of the following statements are true regarding pass-through authentication in OpenLDAP?
A) It only works with plaintext passwords.
B) it is configured in the slapd.conf file and applies to all users within the directory. it is configured in the slapd.conf file and applies to all users within the directory.
C) it is indicated using the (SASL) scheme in a user's userPassword attribute. it is indicated using the (SASL) scheme in a user's userPassword attribute.
D) it is defined for an LDAP subtree and applies to all of the users within that tree.
E) It requires all users to use Kerberos authentication.
A) It only works with plaintext passwords.
B) it is configured in the slapd.conf file and applies to all users within the directory. it is configured in the slapd.conf file and applies to all users within the directory.
C) it is indicated using the (SASL) scheme in a user's userPassword attribute. it is indicated using the (SASL) scheme in a user's userPassword attribute.
D) it is defined for an LDAP subtree and applies to all of the users within that tree.
E) It requires all users to use Kerberos authentication.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
28
Fill in the blank. In smb.conf , what is the numeric value for the directory mask directive to ensure directories created within a share will have full permissions for all users?
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
29
When upgrading a Samba 3 to a Samba 4 Active Directory domain using samba-tool domain classicupgrade , which of the following statements are true?
A) All machines have to rejoin the new domain.
B) The profiles of the users remain unchanged.
C) Samba configures its internal NTP server to synchronize the systems clocks of all domain members.
D) The user accounts and machine accounts are migrated into the new database.
E) A basic set of DNS records required for AD operation are provisioned.
A) All machines have to rejoin the new domain.
B) The profiles of the users remain unchanged.
C) Samba configures its internal NTP server to synchronize the systems clocks of all domain members.
D) The user accounts and machine accounts are migrated into the new database.
E) A basic set of DNS records required for AD operation are provisioned.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
30
Fill in the blank. Which option is smb.conf limits the maximum number of jobs allowed in a samba printer queue at any given moment? (Specify ONLY the option name without any values or parameters.)
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
31
After adding a remote CIFS share to /etc/fstab , the share is mounted to the correct location in the file system. There, all files belong to the user and group root and are not readable or writable by any other users on the system. What should be done in order to permit distinct local user access to the mounted files?
A) The option root squash = yes should be added to the share in the Samba server's smb.conf to allow full access by the client. The option root squash = yes should be added to the share in the Samba server's smb.conf to allow full access by the client.
B) The mount.cifs options uid, gid, file_mode and dir_mode should be used to specify the ownership and permissions of the mount. The mount.cifs options uid, gid, file_mode and dir_mode should be used to specify the ownership and permissions of the mount.
C) The user should be added to the local user group smbusers , as mount.cifs by default restricts access to all CIFS mounts to member of this group in addition to the root account. The user should be added to the local user group smbusers , as by default restricts access to all CIFS mounts to member of this group in addition to the root account.
D) The mount.cifs command should always be executed by user who will use the mount afterwards. The user should be granted the required permission in /etc/sudoers. command should always be executed by user who will use the mount afterwards. The user should be granted the required permission in /etc/sudoers.
A) The option root squash = yes should be added to the share in the Samba server's smb.conf to allow full access by the client. The option root squash = yes should be added to the share in the Samba server's smb.conf to allow full access by the client.
B) The mount.cifs options uid, gid, file_mode and dir_mode should be used to specify the ownership and permissions of the mount. The mount.cifs options uid, gid, file_mode and dir_mode should be used to specify the ownership and permissions of the mount.
C) The user should be added to the local user group smbusers , as mount.cifs by default restricts access to all CIFS mounts to member of this group in addition to the root account. The user should be added to the local user group smbusers , as by default restricts access to all CIFS mounts to member of this group in addition to the root account.
D) The mount.cifs command should always be executed by user who will use the mount afterwards. The user should be granted the required permission in /etc/sudoers. command should always be executed by user who will use the mount afterwards. The user should be granted the required permission in /etc/sudoers.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
32
Which of the following statements is true regarding DNS in an Active Directory Domain?
A) When resolving DNS names? all domain members must query a domain controller or a DNS server that serves the exact same zone content.
B) It is not possible to use secondary DNS servers in conjunction with an Active Directory domain.
C) DNS name resolution is not mandatory in an Active Directory Domain, as long as a WINS server can be reached.
D) Active Directory only uses A and AAAA records no other record types to serve important information regarding the domain.
A) When resolving DNS names? all domain members must query a domain controller or a DNS server that serves the exact same zone content.
B) It is not possible to use secondary DNS servers in conjunction with an Active Directory domain.
C) DNS name resolution is not mandatory in an Active Directory Domain, as long as a WINS server can be reached.
D) Active Directory only uses A and AAAA records no other record types to serve important information regarding the domain.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
33
Fill in the blank. Which option must be specified in smb.conf in order to make Samba create machine accounts automatically when a client joins the domain?
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
34
It is found that changes made to an OpenLDAP directory are no longer being replicated to the slave server at 192.168.0.3. Tests prove that the slave server is listening on the correct port and changes are being recorded properly to the replication log file. Which of the following files should be checked for replication errors.
A) replication.err
B) replication.rej
C) 192.168.0.3:389.rej
D) 192.168.0.3:389.err
A) replication.err
B) replication.rej
C) 192.168.0.3:389.rej
D) 192.168.0.3:389.err
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
35
Which of the following Samba variables must be used to pass the machine name to the script specified in add machine script within a Samba configuration file?
A) %m
B) %w
C) %p
D) %q
E) %u
A) %m
B) %w
C) %p
D) %q
E) %u
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
36
Fill in the blank. Which file stores the global Kerberos configuration needed for OpenLDAP integration with Active Directory and Kerberos? (Specify the file name only without any path .)
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
37
When preparing the delivery of printer drivers from samba to Windows clients, which of the following requirements have to be fulfilled?
A) The driver must be associated with the printer either by Samba's rpcclient command by the Windows Add Printer wizard. The driver must be associated with the printer either by Samba's rpcclient command by the Windows Add Printer wizard.
B) The driver has to be put on a Samba share called print$. The driver has to be put on a Samba share called print$.
C) The driver has to be put on the NETLOGON share in a sub-directory with the same name as the printer. The driver has to be put on the NETLOGON share in a sub-directory with the same name as the printer.
D) The driver's file name must be specified with the nt driver option in the printers share declaration. The driver's file name must be specified with the nt driver option in the printers share declaration.
A) The driver must be associated with the printer either by Samba's rpcclient command by the Windows Add Printer wizard. The driver must be associated with the printer either by Samba's rpcclient command by the Windows Add Printer wizard.
B) The driver has to be put on a Samba share called print$. The driver has to be put on a Samba share called print$.
C) The driver has to be put on the NETLOGON share in a sub-directory with the same name as the printer. The driver has to be put on the NETLOGON share in a sub-directory with the same name as the printer.
D) The driver's file name must be specified with the nt driver option in the printers share declaration. The driver's file name must be specified with the nt driver option in the printers share declaration.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
38
In the example below, what is the missing argument that is required to use secret as the password to authenticate the replication push with a slave directory server? 
A) secure
B) master
C) credentials
D) password

A) secure
B) master
C) credentials
D) password
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
39
Which of the following values for the option TLSVerifyClient instructs OpenLDAP to request a valid certificate from a client on order to serve the client's request and terminate the connection if the client does not provide a valid certificate?
A) never
B) allow
C) try
D) demand
E) require
A) never
B) allow
C) try
D) demand
E) require
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
40
Which of the following commands sets up Samba 4 as an Active Domain Directory Controller for a new domain?
A) samldap-domainadd
B) net ads prepare domain
C) smbcontrol dcpromo
D) samba-tool domain provision
A) samldap-domainadd
B) net ads prepare domain
C) smbcontrol dcpromo
D) samba-tool domain provision
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
41
By default, Samba tries to automatically detect the correct character set to use with a connecting client. Which parameter in smb.conf forces Samba to use only ASCII?
A) global charset = ASCII
B) unicode = no
C) ASCII = yes
D) force charset = ASCII
E) reduce charset = yes
A) global charset = ASCII
B) unicode = no
C) ASCII = yes
D) force charset = ASCII
E) reduce charset = yes
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
42
Which type of files will be stored inside the directory specified below? 
A) Configuration files
B) TDB files
C) WNS name cache files
D) Samba print spool files
E) Content of file shares

A) Configuration files
B) TDB files
C) WNS name cache files
D) Samba print spool files
E) Content of file shares
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
43
Which of the following options can be used to limit access to a Samba share?
A) untrusted users
B) write list
C) valid users
D) valid groups
E) accept list
A) untrusted users
B) write list
C) valid users
D) valid groups
E) accept list
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
44
Which of the following configuration options enables an OpenLDAP server to act as a syncrepl provider?
A) syncrole provider
B) syncproto syncrepl
C) replication syncprovider
D) overlay syncprov
E) provide syncrepl
A) syncrole provider
B) syncproto syncrepl
C) replication syncprovider
D) overlay syncprov
E) provide syncrepl
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
45
What is the effect of the following line within a global section of a Samba configuration file? 
A) After its start, nmbd forces an election in order to become the master browser. After its start, nmbd forces an election in order to become the master browser.
B) The os level is set to the highest possible value 255 in order to become the master browser. The os level is set to the highest possible value 255 in order to become the master browser.
C) nmbd forces an election every minute in order to become the master browser. forces an election every minute in order to become the master browser.
D) The local nmbd becomes the master browser for all available workgroups in the local network. The local becomes the master browser for all available workgroups in the local network.
E) The line has no effect as long as local master is not set to no . The line has no effect as long as local master is not set to no .

A) After its start, nmbd forces an election in order to become the master browser. After its start, nmbd forces an election in order to become the master browser.
B) The os level is set to the highest possible value 255 in order to become the master browser. The os level is set to the highest possible value 255 in order to become the master browser.
C) nmbd forces an election every minute in order to become the master browser. forces an election every minute in order to become the master browser.
D) The local nmbd becomes the master browser for all available workgroups in the local network. The local becomes the master browser for all available workgroups in the local network.
E) The line has no effect as long as local master is not set to no . The line has no effect as long as local master is not set to no .
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
46
Fill in the blank. Which command, included with OpenLDAP, generates password hashes suitable for use in slapd.conf ? (Specify ONLY the command without any path or parameters.)
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
47
Fill in the blank. Which parameter must be added to the name resolve order directive in order to use broadcasts in Samba name resolution? (Specify ONLY the parameter name.)
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
48
After installing a network with one Samba server and several clients, users are complaining that they receive an Unable to browse the network error when trying to visit a public share. What is the most likely cause of this?
A) The user entered the wrong username and/or password.
B) The nmbd process id not running on the Samba server.
C) The user hasn't mapped the share to a local drive letter yet.
D) The Samba server is not configured as a Domain Master Browser.
A) The user entered the wrong username and/or password.
B) The nmbd process id not running on the Samba server.
C) The user hasn't mapped the share to a local drive letter yet.
D) The Samba server is not configured as a Domain Master Browser.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
49
Which of the following groups must map to Linux GIDs on a Samba server operating as a PDC?
A) Domain Root
B) Domain Users
C) Domain Guests
D) Domain Controllers
E) Domain Operators
A) Domain Root
B) Domain Users
C) Domain Guests
D) Domain Controllers
E) Domain Operators
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
50
Which of the following statements are true regarding the smbpasswd command?
A) The -d parameter deletes an account from the Samba database. The -d parameter deletes an account from the Samba database.
B) The -a parameter adds an account to the Samba database. If the account already exists, this parameter is ignored. -a parameter adds an account to the Samba database. If the account already exists, this parameter is ignored.
C) The -x parameter removes an account from the Samba database. -x parameter removes an account from the Samba database.
D) The -e parameter excludes an account from the Samba database. -e parameter excludes an account from the Samba database.
E) smbpasswd changes only passwords stored on Samba domain controllers and not on DCs running Windows. changes only passwords stored on Samba domain controllers and not on DCs running Windows.
A) The -d parameter deletes an account from the Samba database. The -d parameter deletes an account from the Samba database.
B) The -a parameter adds an account to the Samba database. If the account already exists, this parameter is ignored. -a parameter adds an account to the Samba database. If the account already exists, this parameter is ignored.
C) The -x parameter removes an account from the Samba database. -x parameter removes an account from the Samba database.
D) The -e parameter excludes an account from the Samba database. -e parameter excludes an account from the Samba database.
E) smbpasswd changes only passwords stored on Samba domain controllers and not on DCs running Windows. changes only passwords stored on Samba domain controllers and not on DCs running Windows.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
51
Which of the following properties does the configuration option cachesize in slapd.conf refer to?
A) The number of entries to be cached.
B) The size of the cache in bytes.
C) The size of the cache in bits.
D) The minimum cache size in bytes.
E) The maximum cache size in bytes.
A) The number of entries to be cached.
B) The size of the cache in bytes.
C) The size of the cache in bits.
D) The minimum cache size in bytes.
E) The maximum cache size in bytes.
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck
52
Which directive in smb.conf ensures a Samba server will win broadcast elections for the master browser?
A) os level = 255
B) os level = 31
C) os level = 15
D) os level = 0
A) os level = 255
B) os level = 31
C) os level = 15
D) os level = 0
Unlock Deck
Unlock for access to all 52 flashcards in this deck.
Unlock Deck
k this deck