(Sample) MCSE 2003 AD Exam Questions and Answers
70-291 level questions
· (1x) Delegation of management tasks for an OU to a group simulation - create an account and do three delegations per a table of info in the question
· (1x) Which DCs are the time-source for clients in D2 and D3?
Three domains, D1, D2, and D3, where D2 and D3 are children of D1
S1.D1 PDCE, RID
S2.D1 schema
S3.D2 PDCE, RID
S4.D3 PDCE, RID
70-294 level questions:
· Q: You have three DCs. One has been down for a week. You find you
can no longer create users. What do you do?
A: Seize the RID Master role
· Q: Universal Group Caching Server placement: WAN links and pros and cons of placement insofar as replication vs lookup traffic
· Q: You have one domain. It contains one top level OU named Branch Offices, and eleven branch OUs under it. How to give branch office OU Admins rights to create and edit and link GPOs, but not give them rights to apply block inheritance?
· There exist two entites. One is a group of three NT domains: the parent (Domain_NT41) is an account domain, and it's two child domains (Domain_NT42 and Domain_NT43)are resource domains. The other is a 2003 forest consisting of one domain (Domain_2003), containing both accounts and resources. Trusts need to be designed btwn them to allow Domain_2003's accounts access to Domain_NT42's resources and the Users in the NT domains to access resources in Domain_2003. Q: Describe the trusts needed.
· You have three sites and two domains in one forest. The network is
NOT meshed. Site bridging is OFF.
Site 1 contains: DomainA_DC1 and DomainB_DC1
Site 2 contains: DomainA_DC2
Site 3 contains: DomainA_DC3 and DomainB_DC2
Q: DomainB_DC1 and DomainB_DC2 are not replicating, what to do?
A) Add a DomainB DC to site 2
B) Create a site bridge with all three sites
C) Create a site link with site 1 and site 3
· Q: ADPrep: What is the sequence to run in (forest or domains first?) and what permissions are required to run it in the domains and forest?
· Four IT groups. 3 Sites. IT users from the four groups log on across all three sites - GPOs are linked to the sites to deploy logon scripts. Q: How to use GPOs with security group filters to run the correct script based on group membership?
· Simulation question:
Disable a schema class
Make a schema class visable
Give a user rights to manage schema
· Drag 'n drop GPO placements
· You have ONE DC. NTDS.dit and SYSVOL are on differenet drives. You loose the SYSVOL drive. You know the GPO's SIDs. Q: How to restore SYSVOL?
· Software Publishing. Know it.
·