nerdexam
Mile2_Security

ML0-320 · Question #118

How does a system administrator prevent Idp.exe and user2sid.exe tools from retrieving domain usernames, SIDs, and other information from a Windows 2000 Domain Controller if no username and password…

The correct answer is B. Remove the Everyone group from the Pre-Windows 2000 Compatible Access group C. Set RestrictAnonymous registry key to two. See the full explanation below for the reasoning.

Question

How does a system administrator prevent Idp.exe and user2sid.exe tools from retrieving domain usernames, SIDs, and other information from a Windows 2000 Domain Controller if no username and password are supplied? Choose two.

Options

  • AAdd the Everyone group to the Pre-Windows 2000 Compatible Access group
  • BRemove the Everyone group from the Pre-Windows 2000 Compatible Access group
  • CSet RestrictAnonymous registry key to two
  • DSet RestrictAnonymous registry key to zero

How the community answered

(27 responses)
  • A
    11% (3)
  • B
    81% (22)
  • D
    7% (2)

Community Discussion

No community discussion yet for this question.

Full ML0-320 Practice