6. Your network consists of Windows 2000 file servers, Windows 2000 print servers, Windows 2000 professional computers, Windows 2000 file servers. You must prevent any unsigned drivers from being installed on any computer in your Windows 2000 network. What should you do?
Options
A. Configure a Group policy for the Domain that blocks all unsigned drivers
B. Configure a Group policy for the Default Domain Controller to block all unsigned drivers
C. Configure the Windows 2000 file servers, Windows 2000 print servers, Windows 2000 professional computers and Windows 2000 file servers to block unsigned drivers
Correct Answer: Configure the Windows 2000 file servers, Windows 2000 print servers, Windows 2000 professional computers and Windows 2000 file servers to block unsigned drivers
7. You have configured a Group Policy Object (GPO) for the marketing oranization unit (OU) to prevent users from accessing My Network Places and from running System in Control Panel. You want the Managers Domain Local Group to be able to access My Network Places, but you still want to prevent them from running System in Control Panel. What should you do?
Options
A. Add the Managers group to the access control list of the GPO. Disable the permission of the managers group to read and apply the Group Policy
B. Add the Managers group to the access control list of the GPO. Deny the permission of the managers group to read and apply the Group Policy
C. Create a second GPO in the OU. Add the Managers group to the access control list. Allow the managers group to apply the Group Policy. Deny the Authenticated Users group permission to read and apply the Group Policy. Configure the new GPO to deny the ability to run system Control Policy Panel. Give the original GPO a higher priority than the new GPO
D. Create a second GPO in the OU. Add the Managers group to the access control list. Allow the managers group to apply the Group Policy. Disable the Authenticated Users group permission to read and apply the Group Policy. Configure the new GPO to allow access to My Network Places. Give the original GPO a higher priority than the new GPO
Correct Answer: Create a second GPO in the OU. Add the Managers group to the access control list. Allow the managers group to apply the Group Policy. Disable the Authenticated Users group permission to read and apply the Group Policy. Configure the new GPO to allow access to My Network Places. Give the original GPO a higher priority than the new GPO
8. Your Windows 2000 Server computer uses a non-Plug and Play ISA modem configured to use IRQ 5. You add a PCI modem and restart the computer. Device Manager reports an IRQ conflict between the two modems. Both modem are trying to use IRQ 5. You want to resolve the problem. What should you do?
Options
A. Use Device Manager to change the IRQ for the original modem to IRQ 9
B. Use Device Manager to change the IRQ for the original modem to IRQ 10
C. Edit the CMOS settings on the computer to reserve IRQ 5 for non-Plug and Play devices
D. Edit the CMOS settings on the computer to reserve IRQ 10 for non-Plug and Play devices
Correct Answer: Edit the CMOS settings on the computer to reserve IRQ 5 for non-Plug and Play devices
9. You install the Routing and Remote Access service on a Windows 2000 Server computer in your network. Your network is not directly connected to the Internet and uses the private IP address range 192.168.0.0. When you use Routing and Remote Access to dial in to the server, your computer connects successfully, but you are unable to access any resources. When you try to piiig servers by using their IP addresses, you receive the following message: "Request timed out." When you run the ipconfig command, it shows that your dial-up connection has been given the IP address 169.254.75.182. What should you do to resolve the problem?
Options
A. Configure the remote access server with the address of a DHCP server
B. Authorize the remote access server to receive multiple addresses from a DHCP server
C. Configure the remote access server to act as a DHCP Relay Agent
D. Ensure that the remote access server is able to connect to a DHCP server that has a scope for its subnet
Correct Answer: Ensure that the remote access server is able to connect to a DHCP server that has a scope for its subnet
10. You are the network administrator for your company. Mike Nash is a member of the Administration group, and Nate Sun is a member of the Intern group. Both groups are in the same domain. On the intranet server, the Administration group is placed in the Security group, and the Intern group is placed in the Nonsecurity group. The Security group is then granted Full Control permission for the Sales virtual directory. Nate needs to update new sales information that is located on the Sales virtual directory. What should you do so that Nate can perform this task?
Options
A. Enable Anonymous access for the intranet server
B. Enable Anonymous access for the Sales virtual directory