You need to ensure that users in the remote clinic can always quickly and successfully log on to the domain
You are the network administrator for Alpine Ski House. The network consists of a single Active Directory forest that contains five domains. The functional level of the forest is Windows 2000. You have not configured any universal groups in the forest. One domain is a child domain named child1.alpineskihouse.com that contains two domain controllers and 50 client computers. The functional level of the domain is Windows Server 2003. The network includes an Active Directory site named Site1 that contains two domain controllers. Site1 represents a remote clinic, and the location changes every few months. All of the computers in child1.alpineskihouse.com are located in the remote clinic. The single WAN connection that connects the remote clinic to the main network is often saturated or unavailable. Site1 does not include any global catalog servers. You create several new user accounts on the domain controllers located in Site1. You need to ensure that users in the remote clinic can always quickly and successfully log on to the domain. What should you do?
Which port should you open on the firewall?
Your companys DNS server runs Windows Server 2003. Client computers on a network segment that is protected by an internal firewall cannot resolve any host names.
You need to ensure that DNS clients can resolve host names.
Which port should you open on the firewall?
You need to install Active Directory on a server named Server1 to create the new child domain
You have a single Active Directory directory service domain. You are preparing to create a child domain. Your user account is in a global security group named Server Administrators. The Server Administrators group is in the local Administrators group on all servers. You need to install Active Directory on a server named Server1 to create the new child domain. What should you do?
You need to ensure that DC1 passes all DNS queries to the forwarder only
Your company has a single Active Directory directory service domain. The forest functional level is set to Windows Server 2003. A domain controller named DC1 runs Active DirectoryCintegrated DNS.
You configure an external DNS server as a forwarder on DC1. You need to ensure that DC1 passes all DNS queries to the forwarder only.
What should you do on DC1?
You need to make Server1 an
You have a single Active Directory directory service domain. There is a branch office that connects to the main office through a low-bandwidth WAN link. The first domain controller is named DC1 and is located in the main office. The branch office has a single server named Server1. Server1 runs Windows Server 2003. You are preparing to install Active Directory on Server1. You back up the system state of DC1, and you send the backup to the administrator at the branch office. You need to make Server1 an
additional domain controller in your domain, while minimizing the bandwidth usage between the two offices. What should you do?
Which IP addressing scheme should you use?
Your company has a main office and two branch offices. All servers run Windows Server 2003. All client computers have dynamically assigned IP addresses. The main office has 50 servers and no client computers.
The branch offices each have 200 client computers and no servers. You are planning a network infrastructure strategy. You need to minimize unused IP addresses.
Which IP addressing scheme should you use?
What should you do?
You are a network administrator for Litware, Inc. The network consists of a single Active Directory forest that contains two domains named litwareinc.com and dev. litwareinc.com. All domain controllers run Windows Server 2003. The functional level of the forest is Windows Server 2003. Litware, Inc., acquires a company named Graphic Design Institute. The Graphic Design Institute network consists of a single Active Directory forest that contains a single domain named graphicdesigninstitute. com. All domain controllers run Windows Server 2003. The functional level of the forest is Windows Server 2003. Users in the litwareinc.com domain require access to file and print resources stored on a computer named server1.graphicdesigninstitute.com. Users in the graphicdesigninstitute.com domain require access to all computers in the litwareinc.com forest. You must provide administrators with the ability to grant users access to the required resources. What should you do?
Which command-line utility should you use on the RRAS server?
All servers in your environment run Windows Server 2003. You have a Routing and Remote Access service (RRAS) server that is a member of the domain. The RRAS server uses the NAT/Basic Firewall routing protocol.
Users report intermittent Internet connectivity failures. You need to troubleshoot the failures.
Which command-line utility should you use on the RRAS server?
You need to ensure that membership of the HRManagers group on each application server is as secure as possible
You are the network administrator for your company. Your network consists of a single Active Directory domain. All the user accounts, groups, and application servers of the human resources (HR) department are located in an organizational unit (OU) named HR. The managers in the HR department need access to the application servers to perform administrative tasks. A local group named HRManagers exists on each application server. The HRManagers local groups supply the permissions that the HR managers require. For security reasons, the company wants user accounts for managers in the HR department to be the only members of the HRManagers groups. You need to ensure that membership of the HRManagers group on each application server is as secure as possible. What should you do?
You need to ensure that portable client computers can connect to the wireless network
Your company has a single Active Directory directory service domain with an Enterprise root certification authority (CA). All servers run Windows Server 2003.
All portable client computers run Windows XP SP3 and connect to the network through wireless access points. The wireless network uses 802.1x authentication. You are designing a security plan for the wireless network.
You need to ensure that portable client computers can connect to the wireless network. You issue and install computer certificates on each portable client computer.
What should you do next?
