Information Technology Reference
In-Depth Information
2. Which MMC do you use to create OUs?
a. Active Directory Sites and Services
b. Active Directory Domains and Trusts
c. Active Directory Users and Computers
d. Computer Management
3. Which wizard is used to assign users the authority to perform certain tasks on Active
Directory objects?
4. User, computer, and group accounts can be referred to as which of the following?
a. Discretionary access accounts
b. Security descriptors
c. Local objects
d. Security principals
5. Which of the following must you modify if you want to change an Active Directory object's
permissions?
a. DACL
b. SACL
c. Object attributes
d. Object schema
6. An object's owner automatically has Full control permission for the object. True or False?
7. JDoe is a member of a group that has Full control permission for an OU, which the group
inherited from a parent OU. What is the best way to stop JDoe from having Write permis-
sion to this OU without affecting any other permissions?
a. Remove JDoe from the group.
b. Add a Deny ACE for JDoe to the parent OU.
c. Add an explicit Deny ACE for JDoe to the OU.
d. Add a Deny ACE for the group to the parent OU.
8. You're logged on as Administrator to a domain controller and are trying to troubleshoot a
problem with a user's access to Active Directory objects. You open Active Directory Users
and Computers to access an object's properties. However, you can't view the object's per-
missions. What is the most likely problem?
a. You don't have sufficient permissions to view the object's permissions.
b. You need to open Active Directory Domains and Trusts.
c. You need to enable Advanced Features.
d. You need to run the View Object Permissions Wizard.
9. A user's permissions to an object that are a combination of inherited and explicit permis-
sions assigned to the user's account and groups the user belongs to are referred to as which
of the following?
a. Inherited permissions
b. Effective permissions
c. Explicit permissions
d. Access permissions
10. Inherited permissions always override explicit permissions. True or False?
11. You're viewing the DACL for an OU and notice an inherited ACE for a user account that
gives the account permission to the OU that it shouldn't have. You want to remove the
Search WWH ::




Custom Search