• Shuffle
    Toggle On
    Toggle Off
  • Alphabetize
    Toggle On
    Toggle Off
  • Front First
    Toggle On
    Toggle Off
  • Both Sides
    Toggle On
    Toggle Off
  • Read
    Toggle On
    Toggle Off
Reading...
Front

Card Range To Study

through

image

Play button

image

Play button

image

Progress

1/41

Click to flip

Use LEFT and RIGHT arrow keys to navigate between flashcards;

Use UP and DOWN arrow keys to flip the card;

H to show hint;

A reads text to speech;

41 Cards in this Set

  • Front
  • Back
  • 3rd side (hint)

Your network contains an Active Directory domain named adatum.com. The domaincontains a server named Server1 that runs Windows Server 2012 R2.On a server named Corel, you perform a Server Core Installation of Windows Server 2012R2.You join Corel to the adatum.com domain.You need to ensure that you can use Event Viewer on Server1 to view the event logs onCorel.What should you do on Corel?

Enable-NetFirewallRule cmdlet


When WDS and DHCP are installed on the same client, which option must WDS listen to?

60- PXEClient


Integrated service

OS shutdown


Time Sync


Data Exchange


Heartbeat


Backup (snapshot)


Guest Service



Single-root I/O

allows net adapter to separate access to its resources among various PCIe hardware functions.


Bypass the sotware switch layer of Hyper-V.


Must recreate switch when SR I/O is enabled.

Virtual Machine Chimney

offload external virtual network processing from multiple virtual network adapters to a physical network adapter on the management operating system

GPO application rule

if object is in the OU listed in GPO, and also listed in the security filtering, then the GPO will apply



Application restriction (AppLocker) overrides what?

Software Restriction Policy

Steps to install Domain Controller

1. Install-WindowsFeature


2. Install-ADForrest


3. Install-ADDSDomainController


4. Install-ADDomain (if needed)

make forrest before controller!!!

how to bring disk online

set-disk

not initialize-disk

add-netlbfoTeamMember

add NIC to team

Add-NetLBFOTeamNic

add the VLAN interface (imagine virtual NIC)

how to make Child domain controller authoritative

create a Delegation on Parent domain controller


password management
AD Administrative Center


Host to client remoting, what to set?

Host: winrm


Client: none unless off (PSRemoting listener on by default)


Creating a Storage Pool

1. Create Storage Pool


2. Create VHD/ Storage Space (partition)


3. Create Volume/ "Virtual Disk" (format)



Server Core set IPv6 DNS address?

Set-DnsClientServerAddress

GPO options under Computer Config only?

Applocker (Application Control)


User Rights


Password Requirement


Auditing


Firewall

what does Show Advance Feature in ADUC do?

Lost and Found folder


Security tab under OU properties

Can't delete printer from server. Why?

profile is set by Local Group Policy Object (aka Group Policy Object)

Which GPO to rename admin?

Security

Restricted Group vs Preference Local Users and Groups

Restricted- overrides Preferences; set group and members




Preference- same as Restricted, but can create/replace/update/delete users and groups

In-place upgrade from 08

Run from Setup.exe (not boot)




Server core 08 >> Server Core 12


Standard 08 >> GUI 12




switch between Server Core/GUI after upgrade to 12



Starter GPO

only has Administrative Template




to copy from GPO: New-GPStarterGPO + Copy-GPO




to copy from Starter: Copy/Paste



Move GPO

Same domain: Copy/Paste


Different domain: Backup/Import

Dynamic Link

Allow Inbound, good for App connection

netlogon.dns

SRV record

Cache.dns

root hint

ntdsutil

transfer master roles


RODC Install From Media (IFM)


cleanup decommissioned server


view/manage AS DS and LDS


set DSRM password



set-ADDomain

set domain DNS suffix


remove, add, replace, clear obj


manage by


last logon replication interval

dsadd

add user, computer, "contact", OU, group




quota = max number of obj a security principal can hold

dsamain

For DS/LDS, define:


DBPath


LogPath


IDAPPort


SSLPort


GCPort (global catalog)


GCSSLPort


AllowUpgrade


AllowNonAdminAccess


dsmgmt

similar, but less powerful ntdsutil


view, manage:


LDAP policies


metedata cleanup


master roles


SID cleanup


DSRM password

net user

view, add, or modify user accounts




similar, less powerful DSAdd


Can't add to non-default OU



set-ADForest

set forest-wide UPN/SPN suffixes



How to modify app access with Firewall

1. find out computers using apps


2. local path of app



how to set authentication timer

keboros policy

how to include/exclude AppLocker policy for local admin

Enforcement policy

ADFS Bring-Your-Own-Device setup?

configure ADFS Device Registry Service


Enable Device Registry Service

Hyper-V Host Bus Adaptors (HBA) available on Windows Server?

12 and 08



Printer Pool?

Same Model


Same driver


Appear as one printer

Connection security rules

between two computers


Does not "allow" connection (i.e. Firewall), simply secure


IPSec