Subject: NT Server in the Enterprise

You have a printer and a security problem. Marie, Joe and Peter have to print the monthly checks for the employees. For security reasons not even the administrators arte allowed to manage print jobs. Only the person who submitted the job, is able to manage it.

 a. remove all perrmissions from the printer, give creator owner print permission, make a group PrintCheck,   assign Marie, Joe and Peter to the group, give PrintCheck Manage Documents right

 b. remove all perrmissions from the printer, give creator owner manage documents, make a group PrintCheck,   assign Marie, Joe and Peter to the group, give PrintCheck Print right (I chose this, but i am not sure)

 c. create group, assign Maria, Joe and Peter to group, give group print right

d. create group, assign Maria, Joe and Peter to group, give group manage documents

 

You want to audit changes in the directory services (which means SAM). You have the picture from policy editor and you are asked to what box you have to check. (user and group management)

 Your NT Server often records errors. You are asked to create a file which contains the memory dump for a technician in another city. What do you have to configure to have the NT server create such a dump and where will it be stored?

 There was a question about a single person, who should be the only one to have access to a directory.

Three answers were not very reasonable. The only possible answer was to create a local group with the adequate permissions for the directory and put the user in this group. (although microsoft usually follows the rule of resource - local group -global group - user

 Maria, Joe, Peter are users in domain A. All members of a global group GlobA.(Only) Maria needs read access for a directory in domain B. Local group LocB in B has change permission.

 a. put GlobA in LocB

b. create LocB2 with read permission, put Maria in LocB2. (*)

 

Three domains A, B, C.User in A need access to resources only on A. Users in B need access to resources in A. Users in C need access to resources in A. Users in B and C need access to resources in each other.

 Result: Create 2 one-way trusts, where A trusts C and A trusts B. Create one 2-way trustbetwwen C and B.

 One very time consuming questions because of two exhibits.

Maria -(domain A) wants to access directory in domain B

Maria in group2, group3, group4.

Maria cannot access folder. What to do?

 First exhibit - Share rights

 Share Premissions of folder (local groups in B)

Lgroup1 Read

Lgroup2 Change

Lgroup3 Read

Lgroup4 No Access

Lgroup5 Read

Second exhibit:

domain A domain B

(contains global groups)

Ggroup1 Lgroup2 : Ggroup1, Ggroup2

Ggroup2 Lgroup3 Ggroup3

Ggroup3 Lgroup4: Ggroup4

Ggroup4

Ggroup5

answer: remove Maria from Ggroup4

 

You have a new NT server. You do not want the server to participate in user authentication. You want the server to provide resources for the users in the domain. How to install the server?

 a. member server that joins domain (*)

b. member server with server service disabled

c. BDC in trusting domain