Quality Control & Assurance Flashcards
7 cards from real MCTS 70-640 practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Quality Control & Assurance flashcards as text
A compliance officer asks you to produce a report showing all changes made to user account properties in the past week. Which log should you review?
Answer: Security event log with Audit Account Management enabled
With Audit Account Management enabled, the Security event log records all changes to user accounts including attribute modifications.
You run 'repadmin /showrepl' and see the error 'The target principal name is incorrect.' What is the most likely cause?
Answer: The Kerberos tickets on the source DC are stale or the computer account password is out of sync
This error typically indicates a Kerberos authentication failure caused by a mismatched computer account password or stale tickets between DCs.
During a quality review, you discover that the SYSVOL folder is not replicating between domain controllers. In Windows Server 2008 domain functional level, which service handles SYSVOL replication?
Answer: Distributed File System Replication (DFSR)
Windows Server 2008 domain functional level migrates SYSVOL replication from FRS to the more reliable DFSR.
An administrator needs to check whether all Active Directory integrated DNS zones are consistent across all DNS servers. Which tool helps verify DNS data consistency?
Answer: dcdiag /test:DNS /DnsAll
dcdiag /test:DNS /DnsAll performs comprehensive DNS diagnostic tests including zone delegation, dynamic updates, and record consistency.
Which Windows Server 2008 feature allows you to set different password and account lockout policies for different groups of users within the same domain?
Answer: Fine-Grained Password Policies
Fine-Grained Password Policies (FGPP) allow different Password Settings Objects to be applied to different users or global security groups in the same domain.
You need to verify that the PDC Emulator FSMO role is functioning correctly. Which event in the PDC's event log indicates a successful time synchronization with an external time source?
Answer: Event ID 37 in the System log from W32Time source
Event ID 37 from the Windows Time (W32Time) source indicates that the time service successfully synchronized with a configured time source.
A newly promoted domain controller is not appearing as a global catalog server after 24 hours. What should you verify first?
Answer: Verify that the Global Catalog checkbox is enabled in Active Directory Sites and Services for that DC's NTDS Settings
The Global Catalog must be explicitly enabled per DC by checking the 'Global Catalog' checkbox on the NTDS Settings object in Active Directory Sites and Services.