TestInside offers free demo for Access Routing and LAN Switching 642-061 exam ( Routing and Switching Solutions for System Engineers). You can check out the interface, question quality and usability of our practice exams before you decide to buy it. We are the only one site can offer demo for almost all products.
Download 642-061 Exam Pdf Demo
Download 642-061 Exam iEngine Demo
Why choose TestInside 642-061 braindumps
Quality and Value for the 642-061 Exam
100% Guarantee to Pass Your 642-061 Exam
Downloadable, Interactive 642-061 Testing engines
Verified Answers Researched by Industry Experts
Drag and Drop questions as experienced in the Actual Exams
Practice Test Questions accompanied by exhibits
Our Practice Test Questions are backed by our 100% MONEY BACK GUARANTEE.
TestInside 642-061 Exam Features
Quality and Value for the 642-061 Exam
TestInside Practice Exams for Cisco 642-061 are written to the highest standards of technical accuracy, using only certified subject matter experts and published authors for development.
100% Guarantee to Pass Your 642-061 Exam
If you prepare for the exam using our TestInside testing engine, we guarantee your success in the first attempt. If you do not pass the Access Routing and LAN Switching 642-061 exam (Routing and Switching Solutions for System Engineers) on your first attempt we will give you a FULL REFUND of your purchasing fee AND send you another same value product for free.
Cisco 642-061 Downloadable, Printable Exams (in PDF format)
Our Exam 642-061 Preparation Material provides you everything you will need to take your 642-061 Exam. The 642-061 Exam details are researched and produced by Professional Certification Experts who are constantly using industry experience to produce precise, and logical. You may get questions from different web sites or books, but logic is the key. Our Product will help you not only pass in the first try, but also save your valuable time.
642-061 Downloadable, Interactive Testing engines
We are all well aware that a major problem in the IT industry is that there is a lack of quality study materials. Our Exam Preparation Material provides you everything you will need to take a certification examination. Like actual certification exams, our Practice Tests are in multiple-choice (MCQs)
Our Cisco 642-061 Exam will provide you with exam questions with verified answers that reflect the actual exam. These questions and answers provide you with the experience of taking the actual test.
High quality and Value for the 642-061 Exam:100% Guarantee to Pass Your Access Routing and LAN Switching exam and get your Access Routing and LAN Switching Certification.
Wednesday, May 20, 2009
Thursday, May 14, 2009
Seven tips to help you pass Exam 70-293
One of the most difficult exams in the Windows 2000 track was 70-216, which focused on network infrastructure. When Windows Server 2003 came along, Microsoft updated the material and divided the content into two new exams: 70-291 and 70-293. Exam 70-293, Planning and Maintaining a Microsoft Windows Server 2003 Network Infrastructure, is an important requirement for MCSE certification (it is not required for MCSA). The objectives for this exam are divided into the following six major categories:
Planning and Implementing Server Roles and Server Security
Planning, Implementing, and Maintaining a Network Infrastructure
Planning, Implementing, and Maintaining Routing and Remote Access
Planning, Implementing, and Maintaining Server Availability
Planning and Maintaining Network Security
Planning, Implementing, and Maintaining Security Infrastructure
I have seven tips for ensuring that you pass exam 70-293.
Tip one: Take this exam second
Do not take this exam until you've taken exam 70-291 (or 70-292 if you were waived out of 70-291 due to already being an MCSA). I say this because there are significant overlaps in topics. If you look at the bottom three (of five) major topic areas on that exam, and compare them against counterparts on this exam, you'll find great similarity. Exam 70-291 topic areas include:
Implementing, Managing, and Maintaining Network Security
Implementing, Managing, and Maintaining Routing and Remote Access
Maintaining a Network Infrastructure
Exam 70-293 topic areas include:
Planning and Maintaining Network Security
Planning, Implementing, and Maintaining Routing and Remote Access
Planning, Implementing, and Maintaining a Network Infrastructure
The similarity goes beyond just the wording of the major topics and permeates the objectives and subobjectives as well. Within these three areas, exam 70-293 can be thought of as a superset, in many ways, of the content appearing on both exams. It is so much easier to add to what you already had to learn for 70-291 than to start studying for this exam from scratch.
Tip two: Skip this exam if you can
If you are certified as an MCSE, then you can take exam 70-296, Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Environment for an MCSE Certified on Windows 2000, and have it count as credit for this exam and a few others. Taking only 70-296 and 70-292, Managing and Maintaining a Microsoft Windows Server 2003 Environment for an MCSA Certified on Windows 2000, you can upgrade your MCSE from Windows 2000 to Windows Server 2003 in just two tests.
If you are not currently an MCSE, then you must take 70-293; there's no other way out of it. If you are already an MCSE, however, then you should avoid this exam unless you are a glutton for punishment.
Tip three: Know about software updates
With Windows Server 2003, Microsoft has included the Software Update Service (SUS) for centralized distribution of hot fixes and security updates. This allows administrators to update clients that do not access the Internet, as well as evaluate and test updates before making them available to network clients. By using SUS, a client updates its software from a server within the internal network instead of needing to access Microsoft to accomplish this. Be sure to read Microsoft's point of view on SUS.
Lumped in with updates, at least from an exam perspective, is the topic of Microsoft's Baseline Security Anaylzer (MBSA). This tool allows you to scan a computer and identify what is missing (service packs, security fixes, etc.). One good study resource for this topic is the TechNet Q&A on this tool.
Tip four: Know how to differentiate versions
There are four versions of Windows Server 2003 hitting the market: standard, Web, datacenter, and enterprise. Since Microsoft views those holding certifications as frontline marketing evangelists, they expect you to know how to differentiate between the four different versions.
Be ready for questions that require you to compare and contrast between features. Start your study with this grid, and note that the rightmost column, listing features, is a set of links. If you don't feel comfortable explaining what Enterprise UDDI Services are, for example, then click on that link and learn more about it. Be sure to also read the Top 10 Benefits of Windows Server 2003.
Tip five: Know server roles
It's vital that you understand server roles for this exam, so be sure to read Microsoft's information about server roles. Servers can perform Active Directory related (Domain controllers) or purely service-oriented (Web server, database server, etc.) roles. Within those that are Active Directory related, there are five Flexible Single Master Operations (FSMOs) roles:
Primary Domain Controller (PDC) emulator—used for backward compatibility
Relative ID (RID) Master—holds the pool of ID numbers to be used
Infrastructure Master—handles updates and name changes
Domain Naming Master—by default, the first domain controller in a forest
Schema Master—oversees all schema operations
The primary domain controller performing one of these roles is known as the role master. Microsoft recommends the PDC emulator and RID master be kept on the same domain controller, and the Domain Naming Master be stored on a Global Catalog server. Global Catalog servers respond to queries, and increasing the number of these to include one in each large office can decrease response time.
Tip six: Know security changes
By default, the Everyone group is now given Read permission when a file is shared. This differs from earlier versions of the Microsoft network operating systems in which Everyone was assigned Full Control permissions on all new shares.
Similar changes—or tweaks, really—have been made to some services, search ordering, etc. Begin your study of this information here, and then visit the Microsoft Technology Center on this topic.
Tip seven: Don't forget ipconfig
The ipconfig utility has been around for a number of years, and a number of operating system versions. Its primary purpose is simply to interact with IP configuration values—either showing them to you or allowing modification of them. When Microsoft released Windows 2000, they enhanced this utility but did not spend much time dwelling on it.
When Windows Server 2003, the utility is unchanged from Windows 2000, but not it is indeed test worthy. Not only should you know the basic switches (/all, being the most common), but you also need to know those that allow direct interaction with DNS (/registerdns, for example). Begin your study at Microsoft TechNet and follow the related topic links, as well.
Emmett's recommendation
The 70-293 exam is a requirement that must be taken for new MCSEs to become certified on Windows Server 2003. It is a very difficult exam and should be avoided by those who need not take it (MCSEs certified under Windows 2000 can take two upgrade exams and bypass this, and other, tests).
If you do take this exam, study for it earnestly and take it only after having already taken 70-291 or 70-292.
Planning and Implementing Server Roles and Server Security
Planning, Implementing, and Maintaining a Network Infrastructure
Planning, Implementing, and Maintaining Routing and Remote Access
Planning, Implementing, and Maintaining Server Availability
Planning and Maintaining Network Security
Planning, Implementing, and Maintaining Security Infrastructure
I have seven tips for ensuring that you pass exam 70-293.
Tip one: Take this exam second
Do not take this exam until you've taken exam 70-291 (or 70-292 if you were waived out of 70-291 due to already being an MCSA). I say this because there are significant overlaps in topics. If you look at the bottom three (of five) major topic areas on that exam, and compare them against counterparts on this exam, you'll find great similarity. Exam 70-291 topic areas include:
Implementing, Managing, and Maintaining Network Security
Implementing, Managing, and Maintaining Routing and Remote Access
Maintaining a Network Infrastructure
Exam 70-293 topic areas include:
Planning and Maintaining Network Security
Planning, Implementing, and Maintaining Routing and Remote Access
Planning, Implementing, and Maintaining a Network Infrastructure
The similarity goes beyond just the wording of the major topics and permeates the objectives and subobjectives as well. Within these three areas, exam 70-293 can be thought of as a superset, in many ways, of the content appearing on both exams. It is so much easier to add to what you already had to learn for 70-291 than to start studying for this exam from scratch.
Tip two: Skip this exam if you can
If you are certified as an MCSE, then you can take exam 70-296, Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Environment for an MCSE Certified on Windows 2000, and have it count as credit for this exam and a few others. Taking only 70-296 and 70-292, Managing and Maintaining a Microsoft Windows Server 2003 Environment for an MCSA Certified on Windows 2000, you can upgrade your MCSE from Windows 2000 to Windows Server 2003 in just two tests.
If you are not currently an MCSE, then you must take 70-293; there's no other way out of it. If you are already an MCSE, however, then you should avoid this exam unless you are a glutton for punishment.
Tip three: Know about software updates
With Windows Server 2003, Microsoft has included the Software Update Service (SUS) for centralized distribution of hot fixes and security updates. This allows administrators to update clients that do not access the Internet, as well as evaluate and test updates before making them available to network clients. By using SUS, a client updates its software from a server within the internal network instead of needing to access Microsoft to accomplish this. Be sure to read Microsoft's point of view on SUS.
Lumped in with updates, at least from an exam perspective, is the topic of Microsoft's Baseline Security Anaylzer (MBSA). This tool allows you to scan a computer and identify what is missing (service packs, security fixes, etc.). One good study resource for this topic is the TechNet Q&A on this tool.
Tip four: Know how to differentiate versions
There are four versions of Windows Server 2003 hitting the market: standard, Web, datacenter, and enterprise. Since Microsoft views those holding certifications as frontline marketing evangelists, they expect you to know how to differentiate between the four different versions.
Be ready for questions that require you to compare and contrast between features. Start your study with this grid, and note that the rightmost column, listing features, is a set of links. If you don't feel comfortable explaining what Enterprise UDDI Services are, for example, then click on that link and learn more about it. Be sure to also read the Top 10 Benefits of Windows Server 2003.
Tip five: Know server roles
It's vital that you understand server roles for this exam, so be sure to read Microsoft's information about server roles. Servers can perform Active Directory related (Domain controllers) or purely service-oriented (Web server, database server, etc.) roles. Within those that are Active Directory related, there are five Flexible Single Master Operations (FSMOs) roles:
Primary Domain Controller (PDC) emulator—used for backward compatibility
Relative ID (RID) Master—holds the pool of ID numbers to be used
Infrastructure Master—handles updates and name changes
Domain Naming Master—by default, the first domain controller in a forest
Schema Master—oversees all schema operations
The primary domain controller performing one of these roles is known as the role master. Microsoft recommends the PDC emulator and RID master be kept on the same domain controller, and the Domain Naming Master be stored on a Global Catalog server. Global Catalog servers respond to queries, and increasing the number of these to include one in each large office can decrease response time.
Tip six: Know security changes
By default, the Everyone group is now given Read permission when a file is shared. This differs from earlier versions of the Microsoft network operating systems in which Everyone was assigned Full Control permissions on all new shares.
Similar changes—or tweaks, really—have been made to some services, search ordering, etc. Begin your study of this information here, and then visit the Microsoft Technology Center on this topic.
Tip seven: Don't forget ipconfig
The ipconfig utility has been around for a number of years, and a number of operating system versions. Its primary purpose is simply to interact with IP configuration values—either showing them to you or allowing modification of them. When Microsoft released Windows 2000, they enhanced this utility but did not spend much time dwelling on it.
When Windows Server 2003, the utility is unchanged from Windows 2000, but not it is indeed test worthy. Not only should you know the basic switches (/all, being the most common), but you also need to know those that allow direct interaction with DNS (/registerdns, for example). Begin your study at Microsoft TechNet and follow the related topic links, as well.
Emmett's recommendation
The 70-293 exam is a requirement that must be taken for new MCSEs to become certified on Windows Server 2003. It is a very difficult exam and should be avoided by those who need not take it (MCSEs certified under Windows 2000 can take two upgrade exams and bypass this, and other, tests).
If you do take this exam, study for it earnestly and take it only after having already taken 70-291 or 70-292.
Microsoft 70-640Big5 Exam Demo
1. 您的公司 Contoso, Ltd. 有總公司辦公室與分公司辦公室,辦公室之間是以 WAN 連結彼此聯繫。Contoso 有 Active Directory 樹系,其中包含名稱為ad.contoso.com 的單一網域。
ad.contoso.com 網域包含名稱為DC1 的網域控制站,而該網域控制站位於總公司辦公室。DC1 是設為 ad.contoso.com DNS 區域的DNS 伺服器。此區域則是設定為標準主要區域。
您在分公司辦公室安裝了的新網域控制站,名稱為DC2,而且在DC2 上安裝了DNS。
現在您要確保當發生 WAN 連結失敗時,DNS 服務仍然可以更新記錄與解析 DNS 查詢。
請問您該怎麼做?
A. 在 DC2 上建立名稱為ad.contoso.com 的新虛設常式區域。
B. 設定DC2 上的DNS 伺服器將要求轉寄至 DC1。
C. 在 DC2 上建立名稱為ad.contoso.com 的新標準次要區域。
D. 將 DC1 上的ad.contoso.com 區域轉換為 Active Directory 整合區域。
Answer: D
2. 您的公司有一部 DNS 伺服器,其中有10 個 Active Directory 整合區域。
現在您需要將 DNS 伺服器的區域檔案複本提供給保全部門。
請問您該怎麼做?
A. 執行dnscmd /ZoneInfo 命令。
B. 執行ipconfig /registerdns 命令。
C. 執行dnscmd /ZoneExport 命令。
D. 執行ntdsutil > Partition Management > List 命令。
Answer: C
3. 您的公司有單一 Active Directory 網域,稱為intranet.adatum.com 。網域控制站執行 Windows Server 2008 與 DNS 伺服器角色。
所有電腦,包括非網域成員的電腦,都動態登錄 DNS 記錄。
現在您需要設定intranet.adatum.com 區域,僅允許網域成員電腦動態登錄DNS 記錄。
請問您該怎麼做?
A. 將動態更新設定為 [只有安全的]。
B. 啟用區域轉送至名稱伺服器。
C. 移除Authenticated Users 群組。
D. 取消Everyone 群組的 [建立所有的子物件] 權限。
Answer: A
4. 您的公司有總公司辦公室與分公司辦公室,而且有單一網域的 Active Directory 樹系。
總公司辦公室有兩個網域控制站:DC1 與 DC2,這兩個網域控制站都是執行 Windows Server 2008 。分公司辦公室有一個 Windows Server 2008 唯讀網域控制站(Read-only Domain Controller,RODC) ,名稱為 DC3。
所有網域控制站都有 DNS 伺服器角色,而且也都設定為Active Directory 整合區域。DNS 區域僅允許安全更新。
現在您需要在 DC3 上啟用動態 DNS 更新。
請問您該怎麼做?
A. 在 DC3 上執行 Ntdsutil.exe > DS Behavior 命令。
B. 在 DC3 上執行 Dnscmd.exe /ZoneResetType 命令。
C. 在 DC3 上將Active Directory 網域服務重新安裝為可寫入網域控制站。
D. 在 DC1 上建立自訂應用程式目錄分割,然後設定磁碟分割以儲存 Active Directory 整合區域。
Answer: C
5. 您有單一 Active Directory 網域。所有網域控制站都執行 Windows Server 2008 ,同時也都設定為 DNS 伺服器。網域包含 Active Directory 整合DNS 區域。
您需要確保在 DNS 區域中,會自動移除過時的 DNS 記錄。
請問您該怎麼做?
A. 在區域的內容中,啟用清除功能。
B. 在區域的內容中,停用動態更新功能。
C. 在區域的內容中,修改 SOA 記錄的 TTL 。
D. 在命令提示字元中執行ipconfig /flushdns 。
Answer: A
6. 您有一個執行 Windows Server 2008 的網域控制站,而且該網域控制站也設定為DNS 伺服器。
現在您需要記錄伺服器的所有輸入 DNS 查詢。
請問您應該在 DNS 管理員主控台中做什麼設定?
A. 啟用偵錯記錄。
B. 對簡單查詢啟用自動測試。
C. 對遞迴查詢啟用自動測試。
D. 設定事件記錄以記錄錯誤與警告。
Answer: A
7. 您的網路是由 contoso.com 的 Active Directory 樹系所組成。所有的伺服器都執行 Windows Server 2008 ,而且所有的網域控制站都設定為 DNS 伺服器。contoso.com DNS 區域儲存於 ForestDnsZones Active Directory 應用程式分割中。
您有一個成員伺服器包含dev.contoso.com 的標準主要 DNS 區域。
現在您需要確保所有網域控制站都能解析 dev.contoso.com 的名稱。
請問您該怎麼做?
A. 在 contoso.com 區域中建立 NS 記錄。
B. 在 contoso.com 區域中建立委派。
C. 在通用類別目錄伺服器上建立標準次要區域。
D. 修改contoso.com 區域中 SOA 記錄的內容。
Answer: B
8. 您的網路包含 Active Directory 樹系。所有網域控制站都執行 Windows Server 2008 ,同時也都設定為 DNS 伺服器。針對 contoso.com ,您有Active Directory 整合區域。
您還具有 Unix DNS 伺服器。
現在您需要設定Windows Server 2008 環境,才能允許contoso.com 區域進行區域轉送至 Unix DNS 伺服器。
請問您應該在 DNS 管理員主控台中做什麼?
A. 停用遞迴。
B. 建立虛設常式區域。
C. 建立次要區域。
D. 啟用次要 BIND。
Answer: D
9. 您的網路是由 Active Directory 樹系所組成,其中包含名稱為contoso.com 的網域。所有的網域控制站都執行 Windows Server 2008 ,而且都設定為 DNS 伺服器。您有兩個 Active Directory 整合區域:contoso.com 與 nwtraders.com 。
現在您需要確保使用者可以在contoso.com 區域中修改記錄,此外還要避免使用者修改 nwtraders.com 區域中的SOA 記錄。
請問您該怎麼做?
A. 在 DNS 管理員主控台中,修改contoso.com 區域的使用權限。
B. 在 DNS 管理員主控台中,修改nwtraders.com 區域的使用權限。
C. 在 Active Directory 使用者和電腦主控台中,執行委派控制精靈。
D. 在 Active Directory 使用者和電腦主控台中,修改網域控制站組織單位 (OU) 的使用權限。
Answer: A
10. 您的網路是由 Active Directory 樹系所組成,其中包含一個網域。所有網域控制站都執行 Windows Server 2008 ,同時也都設定為DNS 伺服器。您有一個 Active Directory 整合區域。
此外,您還有兩個Active Directory 站台,每個站台都包含五個網域控制站。
您在區域中加入了一個新的 NS 記錄。
現在您需要確保所有網域控制站都能立即接收到新的NS 記錄。
請問您該怎麼做?
A. 在 DNS 管理員主控台中,重新載入區域。
B. 在服務 (Services) 嵌入式管理單元中,重新啟動DNS 伺服器服務。
C. 在命令提示字元中,執行 repadmin /syncall 。
D. 在 DNS 管理員主控台中,增加SOA 記錄的版本編號。
Answer: C
11. 您有一個執行 Windows Server 2008 的網域控制站 DC1。DC1 是設定為contoso.com 的 DNS 伺服器。
您在名稱為Server1 的成員伺服器上安裝了DNS 伺服器角色,然後建立contoso.com 的標準次要區域。接著您將DC1 設定為這個區域的主要伺服器。
現在您需要確保Server1 能接收來自 DC1 的區域更新。
請問您該怎麼做?
A. 在 Server1 上,新增條件轉寄站。
B. 在 DC1 上修改 contoso.com 區域的使用權限。
C. 在 DC1 上修改 contoso.com 區域的區域轉送設定。
D. 將 Server1 電腦帳戶加入至 DNSUpdateProxy 群組中。
Answer: C
12. 您的網路包含單一Active Directory 網域。所有網域控制站都執行 Windows Server 2008 ,同時也都設定為 DNS 伺服器。一個名稱為DC1 的網域控制站有contoso.com 的標準主要區域。另一個名稱為 DC2 的網域控制站則有 contoso.com 的標準次要區域。
您需要確保contoso.com 區域的複寫已加密,而且不能遺失任何區域資料。
請問您該怎麼做?
A. 在兩部伺服器上,同時修改 DNS 伺服器接聽的介面。
B. 將主要區域轉換為 Active Directory 整合區域,並刪除次要區域。
C. 將主要區域轉換為 Active Directory 整合虛設常式區域,並刪除次要區域。
D. 設定標準主要區域的區域轉送設定,並修改次要區域上的主要伺服器清單。
Answer: B
13. 您的網路包含單一Active Directory 網域。網域中包含十個網域控制站。這些網域控制站都執行 Windows Server 2008 ,而且也設定為DNS 伺服器。
您打算要建立新的Active Directory 整合區域。
現在您需要確保新的區域僅複寫您網域控制站的其中四個控制站。
請問您首先該怎麼做?
A. 在 ForestDnsZones 應用程式目錄分割中建立新的委派。
B. 在 DomainDnsZones 應用程式目錄分割中建立新的委派。
C. 在命令提示字元中執行dnscmd,並指定/enlistdirectorypartition 參數。
D. 在命令提示字元中執行dnscmd,並指定/createdirectorypartition 參數。
Answer: D
14. 您的公司有名稱為 intranet.contoso.com 的單一 Active Directory 網域。所有的網域控制站都執行Windows Server 2008 。網域功能等級與樹系功能等級都設為Windows 2000 原生模式。
現在您需要確保使用者帳戶可以使用contoso.com 的 UPN 尾碼。
請問您首先該怎麼做?
A. 將 contoso.com 的樹系功能等級提升至Windows Server 2003 或 Windows Server 2008 。
B. 將 contoso.com 的網域功能等級提升至Windows Server 2003 或 Windows Server 2008 。
C. 在樹系中加入新的 UPN 尾碼。
D. 將預設網域控制站群組原則物件(Group Policy Object,GPO) 中的[主要DNS 尾碼] 選項變更為 contoso.com 。
Answer: C
15. 您的公司網路有具備單一父網域與單一子網域的Active Directory 樹系。子網域有兩個網域控制站,都是執行 Windows Server 2008 。
子網域中所有的使用者帳戶都已移轉到父網域。子網域已排定解除委任的時間。
現在您需要從 Active Directory 樹系移除這個子網域。有哪兩種方法可以達成這個目的?(每個正確答案都代表一個完整的解決方案。請選擇兩個答案)
A. 刪除子網域中每個網域控制站的電腦帳戶,然後移除父網域與子網域之間的信任關係。
B. 執行對子網域中的每個網域控制站都有個別回應檔的Dcpromo 工具。
C. 執行電腦管理主控台,同時終止子網域中兩個網域控制站上的網域控制站服務。
D. 在子網域中的兩個網域控制站上使用伺服器管理員,解除安裝Active Directory 網域服務角色。
Answer: BD
Microsoft 70-640Big5 Exam Demo
ad.contoso.com 網域包含名稱為DC1 的網域控制站,而該網域控制站位於總公司辦公室。DC1 是設為 ad.contoso.com DNS 區域的DNS 伺服器。此區域則是設定為標準主要區域。
您在分公司辦公室安裝了的新網域控制站,名稱為DC2,而且在DC2 上安裝了DNS。
現在您要確保當發生 WAN 連結失敗時,DNS 服務仍然可以更新記錄與解析 DNS 查詢。
請問您該怎麼做?
A. 在 DC2 上建立名稱為ad.contoso.com 的新虛設常式區域。
B. 設定DC2 上的DNS 伺服器將要求轉寄至 DC1。
C. 在 DC2 上建立名稱為ad.contoso.com 的新標準次要區域。
D. 將 DC1 上的ad.contoso.com 區域轉換為 Active Directory 整合區域。
Answer: D
2. 您的公司有一部 DNS 伺服器,其中有10 個 Active Directory 整合區域。
現在您需要將 DNS 伺服器的區域檔案複本提供給保全部門。
請問您該怎麼做?
A. 執行dnscmd /ZoneInfo 命令。
B. 執行ipconfig /registerdns 命令。
C. 執行dnscmd /ZoneExport 命令。
D. 執行ntdsutil > Partition Management > List 命令。
Answer: C
3. 您的公司有單一 Active Directory 網域,稱為intranet.adatum.com 。網域控制站執行 Windows Server 2008 與 DNS 伺服器角色。
所有電腦,包括非網域成員的電腦,都動態登錄 DNS 記錄。
現在您需要設定intranet.adatum.com 區域,僅允許網域成員電腦動態登錄DNS 記錄。
請問您該怎麼做?
A. 將動態更新設定為 [只有安全的]。
B. 啟用區域轉送至名稱伺服器。
C. 移除Authenticated Users 群組。
D. 取消Everyone 群組的 [建立所有的子物件] 權限。
Answer: A
4. 您的公司有總公司辦公室與分公司辦公室,而且有單一網域的 Active Directory 樹系。
總公司辦公室有兩個網域控制站:DC1 與 DC2,這兩個網域控制站都是執行 Windows Server 2008 。分公司辦公室有一個 Windows Server 2008 唯讀網域控制站(Read-only Domain Controller,RODC) ,名稱為 DC3。
所有網域控制站都有 DNS 伺服器角色,而且也都設定為Active Directory 整合區域。DNS 區域僅允許安全更新。
現在您需要在 DC3 上啟用動態 DNS 更新。
請問您該怎麼做?
A. 在 DC3 上執行 Ntdsutil.exe > DS Behavior 命令。
B. 在 DC3 上執行 Dnscmd.exe /ZoneResetType 命令。
C. 在 DC3 上將Active Directory 網域服務重新安裝為可寫入網域控制站。
D. 在 DC1 上建立自訂應用程式目錄分割,然後設定磁碟分割以儲存 Active Directory 整合區域。
Answer: C
5. 您有單一 Active Directory 網域。所有網域控制站都執行 Windows Server 2008 ,同時也都設定為 DNS 伺服器。網域包含 Active Directory 整合DNS 區域。
您需要確保在 DNS 區域中,會自動移除過時的 DNS 記錄。
請問您該怎麼做?
A. 在區域的內容中,啟用清除功能。
B. 在區域的內容中,停用動態更新功能。
C. 在區域的內容中,修改 SOA 記錄的 TTL 。
D. 在命令提示字元中執行ipconfig /flushdns 。
Answer: A
6. 您有一個執行 Windows Server 2008 的網域控制站,而且該網域控制站也設定為DNS 伺服器。
現在您需要記錄伺服器的所有輸入 DNS 查詢。
請問您應該在 DNS 管理員主控台中做什麼設定?
A. 啟用偵錯記錄。
B. 對簡單查詢啟用自動測試。
C. 對遞迴查詢啟用自動測試。
D. 設定事件記錄以記錄錯誤與警告。
Answer: A
7. 您的網路是由 contoso.com 的 Active Directory 樹系所組成。所有的伺服器都執行 Windows Server 2008 ,而且所有的網域控制站都設定為 DNS 伺服器。contoso.com DNS 區域儲存於 ForestDnsZones Active Directory 應用程式分割中。
您有一個成員伺服器包含dev.contoso.com 的標準主要 DNS 區域。
現在您需要確保所有網域控制站都能解析 dev.contoso.com 的名稱。
請問您該怎麼做?
A. 在 contoso.com 區域中建立 NS 記錄。
B. 在 contoso.com 區域中建立委派。
C. 在通用類別目錄伺服器上建立標準次要區域。
D. 修改contoso.com 區域中 SOA 記錄的內容。
Answer: B
8. 您的網路包含 Active Directory 樹系。所有網域控制站都執行 Windows Server 2008 ,同時也都設定為 DNS 伺服器。針對 contoso.com ,您有Active Directory 整合區域。
您還具有 Unix DNS 伺服器。
現在您需要設定Windows Server 2008 環境,才能允許contoso.com 區域進行區域轉送至 Unix DNS 伺服器。
請問您應該在 DNS 管理員主控台中做什麼?
A. 停用遞迴。
B. 建立虛設常式區域。
C. 建立次要區域。
D. 啟用次要 BIND。
Answer: D
9. 您的網路是由 Active Directory 樹系所組成,其中包含名稱為contoso.com 的網域。所有的網域控制站都執行 Windows Server 2008 ,而且都設定為 DNS 伺服器。您有兩個 Active Directory 整合區域:contoso.com 與 nwtraders.com 。
現在您需要確保使用者可以在contoso.com 區域中修改記錄,此外還要避免使用者修改 nwtraders.com 區域中的SOA 記錄。
請問您該怎麼做?
A. 在 DNS 管理員主控台中,修改contoso.com 區域的使用權限。
B. 在 DNS 管理員主控台中,修改nwtraders.com 區域的使用權限。
C. 在 Active Directory 使用者和電腦主控台中,執行委派控制精靈。
D. 在 Active Directory 使用者和電腦主控台中,修改網域控制站組織單位 (OU) 的使用權限。
Answer: A
10. 您的網路是由 Active Directory 樹系所組成,其中包含一個網域。所有網域控制站都執行 Windows Server 2008 ,同時也都設定為DNS 伺服器。您有一個 Active Directory 整合區域。
此外,您還有兩個Active Directory 站台,每個站台都包含五個網域控制站。
您在區域中加入了一個新的 NS 記錄。
現在您需要確保所有網域控制站都能立即接收到新的NS 記錄。
請問您該怎麼做?
A. 在 DNS 管理員主控台中,重新載入區域。
B. 在服務 (Services) 嵌入式管理單元中,重新啟動DNS 伺服器服務。
C. 在命令提示字元中,執行 repadmin /syncall 。
D. 在 DNS 管理員主控台中,增加SOA 記錄的版本編號。
Answer: C
11. 您有一個執行 Windows Server 2008 的網域控制站 DC1。DC1 是設定為contoso.com 的 DNS 伺服器。
您在名稱為Server1 的成員伺服器上安裝了DNS 伺服器角色,然後建立contoso.com 的標準次要區域。接著您將DC1 設定為這個區域的主要伺服器。
現在您需要確保Server1 能接收來自 DC1 的區域更新。
請問您該怎麼做?
A. 在 Server1 上,新增條件轉寄站。
B. 在 DC1 上修改 contoso.com 區域的使用權限。
C. 在 DC1 上修改 contoso.com 區域的區域轉送設定。
D. 將 Server1 電腦帳戶加入至 DNSUpdateProxy 群組中。
Answer: C
12. 您的網路包含單一Active Directory 網域。所有網域控制站都執行 Windows Server 2008 ,同時也都設定為 DNS 伺服器。一個名稱為DC1 的網域控制站有contoso.com 的標準主要區域。另一個名稱為 DC2 的網域控制站則有 contoso.com 的標準次要區域。
您需要確保contoso.com 區域的複寫已加密,而且不能遺失任何區域資料。
請問您該怎麼做?
A. 在兩部伺服器上,同時修改 DNS 伺服器接聽的介面。
B. 將主要區域轉換為 Active Directory 整合區域,並刪除次要區域。
C. 將主要區域轉換為 Active Directory 整合虛設常式區域,並刪除次要區域。
D. 設定標準主要區域的區域轉送設定,並修改次要區域上的主要伺服器清單。
Answer: B
13. 您的網路包含單一Active Directory 網域。網域中包含十個網域控制站。這些網域控制站都執行 Windows Server 2008 ,而且也設定為DNS 伺服器。
您打算要建立新的Active Directory 整合區域。
現在您需要確保新的區域僅複寫您網域控制站的其中四個控制站。
請問您首先該怎麼做?
A. 在 ForestDnsZones 應用程式目錄分割中建立新的委派。
B. 在 DomainDnsZones 應用程式目錄分割中建立新的委派。
C. 在命令提示字元中執行dnscmd,並指定/enlistdirectorypartition 參數。
D. 在命令提示字元中執行dnscmd,並指定/createdirectorypartition 參數。
Answer: D
14. 您的公司有名稱為 intranet.contoso.com 的單一 Active Directory 網域。所有的網域控制站都執行Windows Server 2008 。網域功能等級與樹系功能等級都設為Windows 2000 原生模式。
現在您需要確保使用者帳戶可以使用contoso.com 的 UPN 尾碼。
請問您首先該怎麼做?
A. 將 contoso.com 的樹系功能等級提升至Windows Server 2003 或 Windows Server 2008 。
B. 將 contoso.com 的網域功能等級提升至Windows Server 2003 或 Windows Server 2008 。
C. 在樹系中加入新的 UPN 尾碼。
D. 將預設網域控制站群組原則物件(Group Policy Object,GPO) 中的[主要DNS 尾碼] 選項變更為 contoso.com 。
Answer: C
15. 您的公司網路有具備單一父網域與單一子網域的Active Directory 樹系。子網域有兩個網域控制站,都是執行 Windows Server 2008 。
子網域中所有的使用者帳戶都已移轉到父網域。子網域已排定解除委任的時間。
現在您需要從 Active Directory 樹系移除這個子網域。有哪兩種方法可以達成這個目的?(每個正確答案都代表一個完整的解決方案。請選擇兩個答案)
A. 刪除子網域中每個網域控制站的電腦帳戶,然後移除父網域與子網域之間的信任關係。
B. 執行對子網域中的每個網域控制站都有個別回應檔的Dcpromo 工具。
C. 執行電腦管理主控台,同時終止子網域中兩個網域控制站上的網域控制站服務。
D. 在子網域中的兩個網域控制站上使用伺服器管理員,解除安裝Active Directory 網域服務角色。
Answer: BD
Microsoft 70-640Big5 Exam Demo
Monday, April 13, 2009
FREE Pass 640-822 exam
Access to the voice of the IT certification in order to reasonable! As we all know, the most popular certification
The market is in the Netherlands 640-822 (Cisco Internet networking equipment, part 1). It can be
Bring more job opportunities to choose you! However, if we can find a useful training materials, and how
We successfully passed to the 640-822 exam easily? That is why Pass4sure.nl is so popular,
Today! IT certification authority Pass4sure.nl material suppliers.
At 640-822 (Cisco Internet networking equipment, part 1) examination of research and practice
Pass4sure.nl guide the composition of supplies from the current and active Information Technology experts,
Who has entered the IT industry of high achievement. Pass4sure 640-822 exam professional
Certification training materials widely Word!
* In preparation for 640-802 exam, most candidates tend to attach importance to
In theoretical research, not practice, as a result, they are difficult to
Examination. In fact, the practice is also very important, if not more important, because the purpose of the study
Theoretical knowledge is practice, and practice, the theory of knowledge is boring,
It is difficult to remember. Therefore, we suggest our customers to use the Q & A and study guide in conjunction with
Preparation for the laboratory to provide laboratory instructions, programs and tutorials. Twice and then can be
Half efforts.
* Free Trial Download
* Before you decide to buy, you also can get our free 640-822 exam (640-822
Preparation of the laboratory) presentation, testing the quality of our exam 640-822 exam preparation real problem.
The market is in the Netherlands 640-822 (Cisco Internet networking equipment, part 1). It can be
Bring more job opportunities to choose you! However, if we can find a useful training materials, and how
We successfully passed to the 640-822 exam easily? That is why Pass4sure.nl is so popular,
Today! IT certification authority Pass4sure.nl material suppliers.
At 640-822 (Cisco Internet networking equipment, part 1) examination of research and practice
Pass4sure.nl guide the composition of supplies from the current and active Information Technology experts,
Who has entered the IT industry of high achievement. Pass4sure 640-822 exam professional
Certification training materials widely Word!
* In preparation for 640-802 exam, most candidates tend to attach importance to
In theoretical research, not practice, as a result, they are difficult to
Examination. In fact, the practice is also very important, if not more important, because the purpose of the study
Theoretical knowledge is practice, and practice, the theory of knowledge is boring,
It is difficult to remember. Therefore, we suggest our customers to use the Q & A and study guide in conjunction with
Preparation for the laboratory to provide laboratory instructions, programs and tutorials. Twice and then can be
Half efforts.
* Free Trial Download
* Before you decide to buy, you also can get our free 640-822 exam (640-822
Preparation of the laboratory) presentation, testing the quality of our exam 640-822 exam preparation real problem.
Subscribe to:
Posts (Atom)