100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

Networking with Windows Server 2016 - Chapter 3 Exam Questions Answered Correctly Latest Version ()

Rating
-
Sold
-
Pages
4
Grade
A+
Uploaded on
28-12-2024
Written in
2024/2025

Networking with Windows Server 2016 - Chapter 3 Exam Questions Answered Correctly Latest Version () You have delegated a subdomain to a zone on another server. Several months later, you hear that DNS clients can't resolve host records in the subdomain. You discover that the IP address scheme was changed recently in the building where the server hosting the subdomain is located. What can you do to make sure DNS clients can resolve hostnames in the subdomain? - Answers Edit the NS record in the delegated zone on the parent DNS server. You have an Active Directory-integrated zone named on the DNS1 server. The forest root Active Directory domain is . Why is the _msdcs subdomain zone delegated on the DNS1 server? - Answers To change the replication scope of _msdcs Which of the following are true about a stub zone? (Choose all that apply.) - Answers It's not authoritative for the zone. It contains SOA and NS records. You have seven DNS servers that hold an Active Directory-integrated zone named . Three of the DNS servers are in the Chicago site, which is connected to three other sites through a WAN link with limited bandwidth. Only users in the Chicago site need access to resources in the zone. Where should you store the zone? - Answers Custom application partition You have a primary zone stored in the file. Some devices that aren't domain members are creating dynamic DNS records in the zone. You want to make sure only domain members can create dynamic records in the zone. What should you do first? - Answers Configure the Store the zone in Active Directory option. Which of the following is not an advantage of using Active Directory-integrated zones? - Answers Can be stored on member servers You have a DNS server running Windows Server 2016. You would like to configure the DNS server to respond to requests based on the source of the query and include the capability to filter malicious queries. Which feature should you enable? - Answers DNS Policy You have a DNS server that has multiple network interface cards; one is an internal interface and the second is an external interface that faces the Internet. You would like to enable recursion for your internal DNS clients and disable it for any Internet clients. Which Windows Server 2016 DNS feature will allow you to specify which DNS queries will use recursion and which DNS queries will not? - Answers DNS recursion scope You have decided to create multiple zone scopes to configure your DNS server to respond to clients based on whether the client is on your internal network or an external network. What specific configuration can you use to implement this policy? - Answers Split-brain DNS If you disable the option to use root hints when no forwarders are available, what are you doing? - Answers Domain Name System Security Extension (DNSSEC) provides specific features and protocols for validating server responses. Which of the following methods are used by DNSSEC to ensure that the data they receive from DNS queries is accurate and secure? - Answers Authenticated zone signing Origin authentication of DNS data Which of the following records is returned when the requested resource record doesn't exist and is used to fulfill the authenticated denial of existence security feature of DNSSEC? - Answers Which of the following uses digital signatures contained in DNSSEC-related resource records to verify DNS responses? - Answers Which of the following protects against DNS cache poisoning by enabling a DNS server to randomize the source port when performing DNS queries? - Answers Zone signing You have noticed that your server's DNS cache locking value is configured to 100. What effect does this have on the DNS server's cached data? - Answers The data cannot be overwritten. You're in charge of a small group of DNS servers running Windows Server 2016. After careful review of your current security policies, you have decided you need to protect your servers from DNS amplification attacks. What specific feature can be used in Windows Server 2016 to provide you the resources to complete this task? - Answers Response Rate Limiting You have noticed that one of your DNS servers has possibly been compromised. You believe that a cached DNS entry for your domain is being targeted by an attacker. What new feature in Windows Server 2016 could you use on your DNS server to help prevent a man-in-the-middle attack in which your cached DNS entry for your domain is altered by an attacker? - Answers You want to give a junior administrator access to DNS servers so that he can configure zones

Show more Read less
Institution
Networking With Windows Server 2016 - Chapter 3
Course
Networking with Windows Server 2016 - Chapter 3








Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
Networking with Windows Server 2016 - Chapter 3
Course
Networking with Windows Server 2016 - Chapter 3

Document information

Uploaded on
December 28, 2024
Number of pages
4
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

Networking with Windows Server 2016 - Chapter 3 Exam Questions Answered Correctly Latest Version
(2024-2025)

You have delegated a subdomain to a zone on another server. Several months later, you hear that DNS
clients can't resolve host records in the subdomain. You discover that the IP address scheme was
changed recently in the building where the server hosting the subdomain is located. What can you do to
make sure DNS clients can resolve hostnames in the subdomain? - Answers Edit the NS record in the
delegated zone on the parent DNS server.

You have an Active Directory-integrated zone named csmtech.local on the DNS1 server. The forest root
Active Directory domain is csmtech.local. Why is the _msdcs subdomain zone delegated on the DNS1
server? - Answers To change the replication scope of _msdcs

Which of the following are true about a stub zone? (Choose all that apply.) - Answers It's not
authoritative for the zone.

It contains SOA and NS records.

You have seven DNS servers that hold an Active Directory-integrated zone named csmpub.local. Three of
the DNS servers are in the Chicago site, which is connected to three other sites through a WAN link with
limited bandwidth. Only users in the Chicago site need access to resources in the csmpub.local zone.
Where should you store the csmpub.local zone? - Answers Custom application partition

You have a primary zone stored in the myzone.local.dns file. Some devices that aren't domain members
are creating dynamic DNS records in the zone. You want to make sure only domain members can create
dynamic records in the zone. What should you do first? - Answers Configure the Store the zone in Active
Directory option.

Which of the following is not an advantage of using Active Directory-integrated zones? - Answers Can be
stored on member servers

You have a DNS server running Windows Server 2016. You would like to configure the DNS server to
respond to requests based on the source of the query and include the capability to filter malicious
queries. Which feature should you enable? - Answers DNS Policy

You have a DNS server that has multiple network interface cards; one is an internal interface and the
second is an external interface that faces the Internet. You would like to enable recursion for your
internal DNS clients and disable it for any Internet clients. Which Windows Server 2016 DNS feature will
allow you to specify which DNS queries will use recursion and which DNS queries will not? - Answers
DNS recursion scope

You have decided to create multiple zone scopes to configure your DNS server to respond to clients
based on whether the client is on your internal network or an external network. What specific
configuration can you use to implement this policy? - Answers Split-brain DNS

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
TutorJosh Chamberlain College Of Nursing
View profile
Follow You need to be logged in order to follow users or courses
Sold
332
Member since
1 year
Number of followers
16
Documents
28218
Last sold
2 hours ago
Tutor Joshua

Here You will find all Documents and Package Deals Offered By Tutor Joshua.

3.6

53 reviews

5
18
4
14
3
12
2
0
1
9

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions