MCSE 70-294 Practice Exam -1 Quiz

Reviewed by Editorial Team
The ProProfs editorial team is comprised of experienced subject matter experts. They've collectively created over 10,000 quizzes and lessons, serving over 100 million users. Our team includes in-house content moderators and subject matter experts, as well as a global network of rigorously trained contributors. All adhere to our comprehensive editorial guidelines, ensuring the delivery of high-quality content.
Learn about Our Editorial Process
| By Vaibhav Agarwal
V
Vaibhav Agarwal
Community Contributor
Quizzes Created: 58 | Total Attempts: 624,400
| Attempts: 1,012 | Questions: 39
Please wait...
Question 1 / 39
0 %
0/100
Score 0/100
1. Type the command used to de-promote a domain controller from the ADS.

Explanation

Since the question statement is referring to a command and not an application, the correct answer is DCPROMO

Submit
Please wait...
About This Quiz
Windows Server Quizzes & Trivia

MCSE 70-294 Practice Exam - 1: "Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure". This MCSE 70-294 practice exam tests you on tests you... see moreabout Active Directory. You are required to be comfortable with Windows Server 2003 forests, domains, sites, Group Policies, and trusts. Also, try free MCSE practice questions and other resources from our free online MCSE school. see less

2. You are the network administrator responsible for desktop configuration in your company. You are required to deploy three different configurations of Microsoft Office XP Professional to different groups of users. You identify the software distribution point as \\SRVMET\officexp. What should you do to accomplish your goal?

Explanation

.msi file is a basic installable form of a push installation. .mst is used to obtain variants of configurations from the .msi file.

Submit
3. After completing the delegation administration to two users who will be assisting you in daily administration tasks, you want to track the changes made to Active Directory by these users. You perform the following actions � Create a Group Policy Object (GPO) called AcctManage GPO for the Domain Controllers container � Assign the Read and Apply Group Policy permissions to Samantha and Raul. What else should you do?

Explanation

You should configure the Audit Directory Services Access and Account Management policies in the AcctManageGPO.This will allow you to track successful and failed audit attempts, if configured, to be logged in the Directory Service event log.

Submit
4. You are required to configure the following for your network: � All servers should receive automatic updates. � Client computers should receive updates from servers after having tested the updates. Which tool should you use to accomplish this?

Explanation

Microsoft Software Update is used to synchronize updates with the Windows Update Web site and places them on the said server.

Submit
5. View Exhibit. Shown in the exhibit are three sites Site A, Site B and Site C. Each site has 2 DCs each. There are persistent links configured between each two sites BA, BC and AC. For the purpose of replication, it is required that only A_DC2 replicates with C_DC2 and B_DC2, whereas the only C_DC2 replicates with B_DC2. How would you achieve this?

Explanation

Configuring A_DC2, B_DC2 and C_DC2 as preferred bridgehead servers would ensure that during replication between sites only the DCs configured, as preferred bridgehead servers will be looked up for replication.

Submit
6. You are the administrator for MetroTech.com that has an Active Directory infrastructure that consists of a single domain that resides on three domain controllers. During the latest replication, one of the OUs residing on one of the domain controller was not replicated to the other domain controllers. As a work around you instruct a junior administrator to perform a manual replication and he receives �access is denied� when the replication is attempted. What could the problem be?

Explanation

The Replication Synchronization permission for the relevant OU has to be assigned to the administrator without which he cannot carry out the replication task.

Submit
7. You are the network administrator for MetroTech. The company's network consists of a single Active Directory forest that contains three domains: MetroTech.com, east. MetroTech.com, and west. MetroTech.com. The forest operates at the Windows Server 2003 forest functional level. The root domain contains administrative user accounts and computer accounts for three domain controllers and a member server hosting Routing and Remote Access Service (RRAS). Both child domains contain user accounts and computer accounts for client computers, file servers, application servers, and print servers. Each child domain contains user accounts for users in the sales, marketing, and accounting departments. You want to define MetroTech 's organizational unit (OU) structure to allow the creation of group policies that achieve the following goals: � Group policies can be applied to all users in each child domain and configured so that they are not overridden. � Group policies can be applied to users in each department in each domain. � All Group Policy Objects (GPOs) will be linked to OU objects. � A minimal number of OU objects will be created. � A minimal number of GPO links will be used. Which OU structure can be created to meet these goals

Explanation

You should create a parent OU container in each child domain. Then, you should create a child OU container below each parent container named for each of the three departments: Sales, Eng, and Manu. This design will allow group policies to be created for all users and configured so that they cannot be overridden.

Submit
8. Your network consists of two domain controllers running Microsoft Windows Server 2003 and 5,000 workstation computers running Microsoft Windows 2000 Professional. There are 2 sites and organizational units (OUs) are set up for Accounting and Human Resources (HR). There is a domain controller at each site. You have three links configured between the Site A and Site B: 56 Kbps (slow link), 512 Kbps, and T1. Group Policy settings are applied at the site, domain, and organizational unit (OU) levels. You want to determine the effects of software deployment options settings on individual computers. You want to customize how group policy is applied to computers in the domain. You also want to allow the processing of software installation policy Group Policy object (GPO) settings over slow link connections. How can you accomplish this?

Explanation

To accomplish customizing how group policy is applied to computers in the domain and allowing the processing of software installation policy GPO settings over slow link connections, you should go to the Computer Configuration Administrative Templates, click System, and then Group Policy. Under the Software Installation policy properties setting, select Enabled, and then select Allow processing across a slow network connection. This will enable the background refresh of group policy and ensure that software deployment options settings are applied to individual computers even over slow network connections.

Submit
9. You wish to audit resource access of certain folders create and accessed by users belonging to a specific OU. You are required to use Group Policy Editor for computers in that OU. How can you achieve the said goal?

Explanation

If you enable Audit object access, events relating to users accessing resources will be logged. This includes accessing folders on a computer. You can configure Success or Failure audits, or both.

Submit
10. Keeping in view that Internet access ahs been hampering the network performance, your company�s written policies have been revised as follows: � Provide a way to allow the users to only run line of business applications that have been installed on their computers in the d:\userapps folder. � Prevent users from running any other applications. � The solution should not affect anyone in the Support Managers global group. What is the best way to accomplish your goal?

Explanation

A Software Restriction Policy, which is implemented with a Group Policy object (GPO), can be used to control which software each user can run.

Submit
11. Your Windows Server 2003 AD network has one root and 5 child domains spread across as many locations. The network has a special set of users who will require unconditional access on all resource servers across domains and the network. These servers and users are spread across all locations in the network. Which of the following groups will be ideal to grant security access to the said users?

Explanation

In the said situation, it would be ideal to create Universal group and make the special users a part of the Universal group and then provide resource access to the group.

Submit
12. You have just physically removed one of the DCs from the AD as it has suffered hardware failure and cannot be recovered. You now need to remove all reference of this object from the AD. You decide to use NTDSUTIL for this purpose. Which of the following are the most suitable NTDSUTIL command options to be chosen in this situation?

Explanation

Use the Active Directory Diagnostic Tool and the Metadata Cleanup to remove the failed domain controller (DC) object metadata from the Active Directory database.

Submit
13. You have just enabled your DC that was running as GC (Global Catalog) server to also function as Infrastructure master to ensure all domain related changes get replicated as quickly as possible. You have at least 10 DCs in the domain. But you hear complaints form administrators that this has not affected the functioning for the better at all. Many changes that were made were not replicated and hence not reflected. What could the problem be?

Explanation

The infrastructure master role is responsible for reflecting changes made in the local domain to the other domains in the network. Unless there is only one domain controller in the domain, you should not host eh GC and the IM in the same DC.

Submit
14. Which of the following should be done to restore Active Directory to a DC from a tape backup?

Explanation

Performing an authoritative restore ensures that the restored data is replicated throughout the domain by assigning the highest USN to the updated information.

Submit
15. You are in the process of configuring user security settings using a Group Policy Object (GPO). You would like to deploy a script to the users that will run a program that will check each client computer to which they log on for the presence a specific software. It is also required that when the user logs on to the computer, you would like to verify if all the pre-requisites for this script to be run is available and only then run the script. What should you do?

Explanation

WMI filters contain WQL based queries, which are evaluated dynamically at the computer startup or user logon, and depending on their outcome, allow or disallow the GPO settings to be applied.

Submit
16. You had recently deployed a MS Office package using MSI file to the Finance OU. Users in the Finance department have requested increased functionality from the application. You decide to distribute an upgrade to the Finance users. After distributing the upgrade, you discover that other departments as well are allowed access to the said package. Which of the following will help to troubleshoot the problem?

Explanation

By running Resultant Set of Policy (RSoP) in logging mode, you can determine why the other users received the upgrade.

Submit
17. As a part of the internal audit exercise, your organization has decided that a couple of employees from each department will be grouped under a department called audit to ensure the audit exercise will be carried out smoothly. In accordance you will be required to deploy policies that will affect this group and provide them necessary permissions and access rights across the network. As a senior administrator of MetroTech.com forest, you decide to deploy a few of the team members of the IT department on to the task of managing the network scenario.Which of the following would be an ideal way of managing this scenario?

Explanation

The most efficient way to provide a solution for the management of the Audit users is to create a new organizational unit (OU) under MetroTech.com named Audit and move the research users into it. Delegate the appropriate level of permissions at the Audit OU to the IT users who will manage the users and computers. Create and link a GPO to the Audit OU that will restrict the client computers and distribute the applications.

Submit
18. Your company�s Active Directory structure consists of a single domain and a single site. You have organizational units (OUs) set up for each department. You want to configure settings for audit policies and user rights assignments for computers in the domain. How can you accomplish this?

Explanation

To configure local account policies, such as password policy, account lockout policy, and Kerberos policy, you should use Computer Configuration, Windows Settings, and Security Settings, from the Group Policy Object Editor. You should select the Default Domain Policy Group Policy object Editor in this scenario.

Submit
19. You are the administrator for a single Active Directory domain called MetroTech.com. Your network is a Windows Server 2003/Windows XP platform. Each department has been assigned one OU. You are currently administering the Sales OU. You have a team of junior administrators. One of your junior administrator has reported that she is unable to modify existing Group Policy Objects (GPOs) links for the OU. The other administrators are not experiencing this problem. You need to achieve the following goals: � Provide this administrator with the ability to manage GPOs linked to the Sales OU. � Retain the exclusive ability to create new GPOs to yourselves. Which of the following would help you achieve the said goals?

Explanation

You should use the Delegation of Control wizard to assign the Manage Group Policy links setting to this administrator for the Sales OU.

Submit
20. Your software development team has a proposed design for an application that will be configured to send Company related news to all users who are logged on to the network. This application will be using the ADS to store its data. You are required to allow the team the relevant permissions to create the application directory partition as required by the application to function accurately. Which of the following choices would help you achieve the same in this situation?

Explanation

For the team to be able to successfully create the application directory partition that is required, you must first create a cross-reference object that will hold all relevant information pertaining to the application directory partition and then delegate permissions to the team over the cross-reference object.

Submit
21. You have for some time now been receiving Hard disk space related error messages on your DC that is running a Windows Server 2003 domain. Active Directory is generating numerous errors due to the lack of hard drive space. You decide to install and configure a new HDD to rectify the problem. Which of the following should you first perform before you move the Active Directory to the new HDD?

Explanation

Active Directory is a combination of database and log files. To move the database, you must restart in Directory Service Restore Mode, not in either Safe Mode or Normal mode.

Submit
22. The Finance OU of your company�s AD domain contains two child OUs named Accounts and Audit. You need to deploy a new line of Finance applications to the Finance department. The applications need to be installed on all the computers in Finance and should be available to any user who logs on to a Finance computer, including managers from other departments. If a member of the Finance department logs on to a computer that is not in the Finance department, the applications cannot be installed due to the limited amount of licenses that you have. What is the best way to provide a solution?

Explanation

To install the Finance applications on all of the computers in the Finance department and make those applications available to anyone who logs on to a Finance computer, you should create and link a Group Policy object on the Finance OU that assigns the Finance applications to the computers.

Submit
23. View Exhibit. The newly acquired domain shown in the exhibit needs to be allowed to access a file server in �Insure.MetroTech.com� child domain. For this purpose, you are required to build the relevant trust relationship between the domains. Which of the following choices would be an appropriate direction of trust here?View Exhibit

Explanation

Since the new domain here needs to b e the trusted domain and the child of the existing infrastructure needs to be the trusting domain, it is appropriate for Insure.MetroTech.com to be establishing external trust with the new domain.

Submit
24. Ywhile calculating the combined effect of Local permissions and Share permissions to arrive at NTFS permissions, which of the following statements can be considered true?

Explanation

To determine the appropriate NTFS permission, you must determine how the combined share and NTFS permissions will interact to create the resulting access permission. When combining both sets of permissions, the resulting permission is the more restrictive of the NTFS and the share permission.

Submit
25. You are the network administrator for your company. The company's network consists of three Active Directory domains: Metro.com, mktg. Metro.com, and sales. Metro.com. All servers run Windows Server 2003, and all client computers run Windows XP Professional. All domains are located in the Los Angeles site. Each domain contains organizational units (OUs) Group policy objects (GPOs) exist with the GPO A user named Jane, a member of the S2 OU, logs on to a computer in the S2 OU. What are her effective settings?

Explanation

Jane's effective settings will be a combination of the settings from the Metro GPO and the S2 GPO.

Submit
26. Which of the following are ideal situations to perform a non-authoritative restore on a DC?

Explanation

You should perform a non-authoritative restore when you want to only restore data and not the Active Directory related information. Any AD related updation requires an authoritative restore.

Submit
27. Recently the management modified the written security policy requiring the local administrator account on all servers to be disabled. You configure the Default Domain Policy GPO to disable these accounts. When you complete this task, you discover that you are unable to log on to the domain controllers using the domain administrative account. No other account has the log on locally user right on the company's domain controllers. You must take corrective action to allow you to access the domain administrative account. What should you do first?

Explanation

You should restart one of the domain controllers in Safe mode, create a new user account with the appropriate permissions for modifying group policy, restart using the new user account, and remove the restrictions from the Default Domain Policy GPO.

Submit
28. Your company has just purchased new software that will be used by the test & QA team. The software is under free trial for a period of 30 days. Within this period you are required to deploy it to users in the test and QA team if they volunteer to assess the software only. You need to configure a GPO to install the application based on the user's choice. No modifications should be made to a user's computers unless the user chooses to participate in the assessment. How should the software installation GPO be configured?

Explanation

You should configure the GPO to publish the application and link the software installation GPO to the Draft OU.
Using Group Policy Software Installation helps administrators to specify how applications are installed and maintained within your organization. There are two primary methods for deploying software using Group Policy Objects (GPOs): assigning the software or publishing the software

Submit
29. Your DC that is also a GC currently is suffering performance wise. You have decided to introduce a new DC into the AD network, move the GC to this new DC and clean the disk space on the original GC so it can be used as a file server. You will be using the Active Directory Sites and Services tool for this purpose.What should you do? (Choose all that apply)

Explanation

You need to ensure that the new DC will be the GC and the old DC will no longer be the GC and as a result will be containing that much free space. For this purpose you must use Active directory sites and services and:
On the old DC use the NTDS settings to uncheck GC settings
On the new DC check the NTDS settings to check the GC settings

Submit
30. Which of the following statements that relate to preferred Bridgehead servers are true?

Explanation

The preferred bridgehead server is a server that replicates across the WAN and then replicates the changes down to the other domain controllers that are in the same site. They are capable of replication across WAN links and Ethernet Links as well.

Submit
31. View the exhibit.Which of the following statements are true?

Explanation

As per the exhibit, MetrTech.com has an implicit bi-directional trust with its child domains A.MetroTech.com and B.MetroTech.com. Infinity.com is the trusting domain and B.MetroTech.com is the domain being trusted by Infintiy.com.

Submit
32. You are the network administrator for MetroData. All servers run Windows Server 2003, and all client computers run Windows XP Professional. All domains operate at the Windows 2003 native domain functional level. Each domain has helpdesk personnel that are members of a global group named HDesk. An OU named Contract is located in MetroData.com, which contains the user accounts for all contract employees. You want to delegate the ability to reset passwords for users accounts located in the Contract OU to the helpdesk personnel in each domain. Which of the following should you perform? Choose two. Each correct answer represents part of the solution.

Explanation

You should create a universal group named U-HDesk in premier.com and add the three HDesk groups to this group. On the Contract OU, you should delegate the Reset passwords on user accounts permission to the U-HDesk universal group.

Submit
33. Active Directory configuration consists of a single forest, single domain, and single site. You want to configure group policy so that the user�s local data that is important will be backed up regularly as part of the network backup procedure. What is the best way to accomplish this? (Choose all that apply.)

Explanation

When you enable the "Move the contents of My Documents to the new location", the user no longer has to back documents that are placed in the My Documents folder on his local computer.

Submit
34. You have an AD forest that has 3 levels of hierarchy under the root with a implicit bi-directional trust between all the levels. You have now configured a single direction external trust with the last level of domains and a domain of a company that you have recently acquired. Once the merger is complete, you are required to re-name this domain. Which of the following is true about the after effects of re-naming the new domain?

Explanation

You should delete and recreate the two-way trust relationship between the domains because the previously created trust relationships will not be valid anymore after the new domain gets renamed.

Submit
35. Your company�s written policy states that all the computers in the network must have the company logo as their computer�s wallpaper. Users in the design department report that their client computers are not displaying the new custom wallpaper. You restart one of the computers and verify that the correct settings are not applied on the computer. How can you troubleshoot this problem? Choose all that apply. Each answer is a unique solution.

Explanation

You could open the Group Policy Management Console (GPMC) and run Resultant Set of Policy (RSoP) in logging mode, or you could use the Run command to execute the Gpresults.exe command.

Submit
36. MetroTech Finance has an AD structure that contains Windows Server 2003 forest/domain. They have just acquired a small subsidiary that will be treated as a child domain under the root. This organization has so far been running on Windows NT 4.0 network. Although there are plans for upgrade in the near future, you will be required to manage the existing setup as is. Each of the organization has offices spread across different geographical location and each office has a finance department. A part of each of the finance team is dedicated for auditing and is entitled to resources access across the network. You will be needed to work out a security strategy that will need to meet with the needs and will also specifically satisfy these goals: � The finance department's employees in each office should be able to access resources in the other office. � Administrators in each office will be responsible for managing the users in the group or groups. Which of the following will help you achieve the said strategy with minimum efforts? Choose all that apply. Each answer is part of the solution.

Explanation

You should first create a global group for the finance department in each domain. You can then add individual members to these global groups. Global group members are not replicated to every global catalog in the forest. Because the majority of the finance employees are auditors, global groups can prevent frequent membership changes from being replicated to the global catalog.

Submit
37. Which of the following can the Universal group be a parent to?

Explanation

Universal groups can contain user accounts, global groups, and other universal groups from any domain in the forest as members. Local groups are usually not made members of Universal groups

Submit
38. Which of the following admin groups will be able to run "adprep /forestprep" successfully?

Explanation

The Enterprise Admins group and the Schema Admins group are forest level groups and can hence run the forest prep commands successfully.

Submit
39. Jake, one of the users who is transferred from one department to the other informs you that he can still open Active Directory Users and Computers from his desktop. What should you do to determine the problem? (Choose all that apply.)

Explanation

You should take the three following actions:
o Using Jake 's user account, run Gpresult and determine if the Software Installation policy was applied.
o From the domain controller used during Jake 's most recent logon, run the GPOTool tool and verify that there is no version mismatch on this policy.
Open the GPO containing the Software Installation policy, check the package properties, and ensure that the Uninstall this application when it falls out of the scope of management option

Submit
View My Results

Quiz Review Timeline (Updated): Mar 22, 2022 +

Our quizzes are rigorously reviewed, monitored and continuously updated by our expert board to maintain accuracy, relevance, and timeliness.

  • Current Version
  • Mar 22, 2022
    Quiz Edited by
    ProProfs Editorial Team
  • Jan 25, 2007
    Quiz Created by
    Vaibhav Agarwal
Cancel
  • All
    All (39)
  • Unanswered
    Unanswered ()
  • Answered
    Answered ()
Type the command used to de-promote a domain controller from the ADS.
You are the network administrator responsible for desktop...
After completing the delegation administration to two users who will...
You are required to configure the following for your network: ...
View Exhibit. Shown in the exhibit are three sites Site A, Site B and...
You are the administrator for MetroTech.com that has an Active...
You are the network administrator for MetroTech. The company's network...
Your network consists of two domain controllers running Microsoft...
You wish to audit resource access of certain folders create and...
Keeping in view that Internet access ahs been hampering the network...
Your Windows Server 2003 AD network has one root and 5 child domains...
You have just physically removed one of the DCs from the AD as it has...
You have just enabled your DC that was running as GC (Global Catalog)...
Which of the following should be done to restore Active Directory to a...
You are in the process of configuring user security settings using a...
You had recently deployed a MS Office package using MSI file to the...
As a part of the internal audit exercise, your organization has...
Your company�s Active Directory structure consists of a single domain...
You are the administrator for a single Active Directory domain called...
Your software development team has a proposed design for an...
You have for some time now been receiving Hard disk space related...
The Finance OU of your company�s AD domain contains two child OUs...
View Exhibit. The newly acquired domain shown in the exhibit needs to...
Ywhile calculating the combined effect of Local permissions and Share...
You are the network administrator for your company. The company's...
Which of the following are ideal situations to perform a...
Recently the management modified the written security policy requiring...
Your company has just purchased new software that will be used by the...
Your DC that is also a GC currently is suffering performance wise. You...
Which of the following statements that relate to preferred Bridgehead...
View the exhibit.Which of the following statements are true?
You are the network administrator for MetroData. All servers run...
Active Directory configuration consists of a single forest, single...
You have an AD forest that has 3 levels of hierarchy under the root...
Your company�s written policy states that all the computers in the...
MetroTech Finance has an AD structure that contains Windows Server...
Which of the following can the Universal group be a parent to?
Which of the following admin groups will be able to run "adprep...
Jake, one of the users who is transferred from one department to the...
Alert!

Advertisement