Fiszki
Windows Serwer 2012 R2 70-411
Test w formie fiszek Ogromny test z administracji systemem Windows Server 2012. Pytania o Windows Serwer 2012 R2 - Egzamin 70-411
Ilość pytań: 211
Rozwiązywany: 8531 razy
Your network contains an Active Directory forest named contoso.com. All domain controllers run Windows Server 2008 R2.
The schema is upgraded to Windows Server 2012 R2.
Contoso.com contains two servers. The servers are configured as shown in the following table.
Server1 and Server2 host a load-balanced application pool named AppPool1.
You need to ensure that AppPool1 uses a group Managed Service Account as its identity.
Which three actions should you perform?
To answer, move the three appropriate actions from the list of actions to the answer area and arrange them in the correct order.
1 Install a domain controller that runs Windows Server 2012 R2
2 Run the New-ADServiceAccount cmdlet
3 Modify the settings of Apppool1
You are a network administrator ot an Active Directory domain named contoso.com.
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Web Server (IIS) server role installed.
Server1 will host a web site at URL https://secure.contoso.com. The application pool identity
account ot the web site will be set to a domain user account named AppPool1.
You need to identity the setspn.exe command that you must run to configure the appropriate
Service Principal Name (SPN) for the web site.
What should you run?
To answer, drag the appropriate objects to the correct location. Each object may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
-r
https/secure.contoso.com
AppPool1
-s
http/secure.contoso.com
http/contoso
https/contoso
https/secure.contoso.com
AppPool1
-s
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed.
You need to configure Server1 to meet the following requirements:
■ Ensure that old fiies in a folder named Foider1 are archived automaticaiiy to a folder named Archive1.
■ Ensure that all storage reports are saved to a network share.
Which two nodes should you configure?
To answer, select the appropriate two nodes in the answer area.
Wpisz 1-13
Your network contains an Active Directory domain named contoso.com. The domain contains servers named Server1 and Server2. Both servers have the DFS Replication role service installed.
You need to configure the DFS Replication environment to meet the following requirements:
Increase the quota limit ot the staging folder.
■ Configure the staging folder cleanup process to provide the highest amount ot free space possible.
Which cmdlets should you use to meet each requirement?
To answer, select the appropriate options in the answer area.
Wpisz 1-4
Increase the quota limit… 2
Configure the staging folder... 4
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2.
You need to audit successful and failed attempts to read data from USB drives on the servers.
Which two objects should you configure?
To answer, select the appropriate two objects in the answer area.
1 Audit Handle Manipulation
2 Audit Removable Storage
You have a server named Server4 that runs Windows Server 2012 R2. Server4 has the Windows
Deployment Services server role installed.
Server4 is configured as shown in the exhibit. (Click the Exhibit button.)
To answer, complete each statement according to the information presented in the exhibit. Each
correct selection is worth one point.
Combo Box 1 BoorImage1, BootImage2, and BootImage3
Combo Box 2 BootImage2
Your network contains an Active Directory domain named contoso.com.
The domain contains three member servers named Server1, Server2, and Server3. All servers run Windows Server
2012 R2 and have the Windows Server Update Services (WSUS) server role installed.
Server1 and Server2 are configured as replica servers that use Server3 as an upstream server.
You remove Servers from the network.
You need to ensure that WSUS on Server2 retrieves updates from Server1.
The solution must ensure that Server1 and Server2 have the latest updates from Microsoft.
Which command should you run on each server? To answer, select the appropriate command to run on each server in the answer area.
Your network contains an Active Directory domain named contoso.com. The domain contains a
member server named Server1. Server1 runs Windows Server 2012 R2.
You enable the EventLog-Application event trace session.
You need to set the maximum size ot the log file used by the trace session to 10 MB.
From which tab should you perform the configuration? To answer, select the appropriate tab in
the answer area.
Trace Providers
Security
Stop Condition
Trace Session
Your network contains an Active Directory domain named contoso.com.
You have several Windows PowerShell scripts that execute when client computers start.
When a client computer starts, you discover that it takes a long time before users are prompted to
log on.
You need to reduceExplanation:
Lets the system run startup scripts simultaneously rather than waiting for each to finish
http : //technet. microsoft. com/en-us/library/cc939423 . aspx
Directs the system to wait for logon scripts to finish running before it starts the Windows
Explorer interface program and creates the desktop.
It you enable this policy, Windows Explorer does not start until the logon scripts have finished
running. This setting assures that logon script processing is complete before the user starts
working, but it can delay the appearance of the desktop.
It you disable this policy or do not configure it, the logon scripts and Windows Explorer are not
synchronized and can run simultaneously.
This policy appears in the Computer Configuration and User Configuration folders. The policy
set in Computer Configuration takes precedence over the policy set in User Configuration.
By default, the Fast Logon Optimization feature is set for both domain and workgroup members.
This setting causes policy to be applied asynchronously when the computer starts and the user
logs on. The result is similar to a background refresh. The advantage is that it can reduce the
amount of time it takes for the logon dialog box to appear and the amount of time it takes for the
desktop to become available to the user. Of course, it also means that the user may log on and
start working before the absolute latest policy settings have been applied to the system.
Depending on your environment, you may want to disable Fast Logon Optimization. You can do
this with Group Policy, using the Always wait for the network at computer startup and logon
policy setting. the amount of time it takes for the client computers to start. The solution
must not prevent scripts from completing successfully.
Which setting should you configure?
To answer, select the appropriate setting in the answer area.
Hot Area.
Run logon scripts synchronously
Specyfy maximum wait time for Group Policy scripts
Display instructions in stratup scripts as they run
Run startup scripts asynchronously
Ryn windows powershell scripts first at computer startup
allow logon scripts when NetBIOS or WINS is disabled
Run startup scripts asynchronously
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2.
The domain contains an organizational unit (OU) named 0U1. 0U1 contains an OU named 0U2. 0U2 contains a user named user1.
User1 is the member ot a group named Group1. Group1 is in the Users container.
You create five Group Policy objects (GPO). The GPOs are configured as shown in the
following table.
The Authenticated Users group is assigned the default permissions to all ot the GPOs.
There are no site-level GPOs.
You need to identify which three GPOs will be applied to User1 and in which order the GPOs
will be applied to User1.
Which three GPOs should you identify in sequence?
To answer, move the appropriate three GPOs from the list ot GPOs to the answer area and arrange them in the correct order.
Your network contains a RADIUS server named Server1.
You install a new server named Server2 that runs Windows Server 2012 R2 and has Network
Policy Server (NPS) installed.
You need to ensure that all accounting requests for Server2 are forwarded to Server1.
On Server2, you configure a Connection Request Policy.
What else should you configure on Server2?
To answer, select the appropriate node in the answer area.
Remote RADIUS Server Groups
Health Polices
Network Polices
Radius Clients
Connection Request Policies
Remote RADIUS Server Groups
Your network contains an Active Directory domain named contoso.com. The domain contains
two servers named Server1 and Server2.
Server1 has the Network Policy Server server role
installed. Server2 has the DHCP Server server role installed. Both servers run Windows Server
2012 R2.
You are configuring Network Access Protection (NAP) to use DHCP enforcement.
You configure a DHCP scope as shown in the exhibit. (Click the Exhibit button.)
You need to ensure that non-compliant NAP clients receive different DHCP options than
compliant NAP clients.
What should you configure on each server?
To answer, select the appropriate options for each server in the answer area
Health Polices
Server options
a policy
Identity-Type
a User class
a Vendor class
filters
Ms-Service class
Service-Type
Your network contains an Active Directory domain named contoso.com. The domain contains the users shown in the following table.
User1, User2, and User3 plan to connect to the network by using a VPN. You need to identify which network policy will apply to each user.
What should you identify?
To answer, select the appropriate policy for each user in the answer area
Wpisz 1-3
Your network contains an Active Directory forest named contoso.com. The forest contains a Network Policy
Server (NPS) server named NPS1 and a VPN server named VPN1. VPN1 forwards all authentication
requests to NPS1.
A partner company has an Active Directory forest named adatum.com. The adatum.com forest contains an
NPS server named NPS2.
You plan to grant users from adatum.com VPN access to your network.
You need to authenticate the users from adatum.com on VPN1.
What should you create on each NPS server?
To answer, drag the appropriate objects to the correct NPS servers. Each object may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
Select and Place:
NPS1
NPS1
NPS2
Nie potrzebne
a connection request policy
a remote RADIUS server group
a RADIUS client
a network policy
NPS1
a connection request policy
NPS1
a remote RADIUS server group
Nie potrzebne
a network policy
Your network contains an Active Directory forest named contoso.com. The forest functional level is Windows Server 2012 R2. The forest contains a single domain.
You create a Password Settings object (PSO) named PSO1.
You need to delegate the rights to apply PSO1 to the Active Directory objects in an organizational unit named OU1.
What should you do?
From Active Directory Users and Computers, run the Delegation of Control Wizard
From Active Directory Administrative Center, modify the security settings of OU1
From Group Policy Management, create a Group Policy object (GPO) and link the GPO to OU1
From Active Directory Administrative Center, modify the security settings of PSO1
From Active Directory Administrative Center, modify the security settings of PSO1
Your network contains an Active Directory domain named contoso.com.
You create a user account named User1. The properties of User1 are shown in the exhibit. (Click the Exhibit button.)
You plan to use the User1 account as a service account. The service will forward authentication requests to other servers.
You need to ensure that you can view the Delegation tab from the properties of the User1 account.
What should you do first?
Modify the user principal name (UPN) of User1
Configure the Name Mappings of User1
Modify the Security settings of User1
Configure a Service Principal Name (SPN) for User1
Configure a Service Principal Name (SPN) for User1
Your network contains an Active Directory domain named contoso.com. The domain contains an
organizational unit (OU) named IT and an OU named Sales.
All of the help desk user accounts are located in the IT OU.
All of the sales user accounts are located in the
Sales OU. The Sales OU contains a global security group named G_Sales. The IT OU contains a global
security group named G_HelpDesk.
You need to ensure that members ot GJHelpDesk can perform the following tasks:
■ Reset the passwords ot the sales users.
■ Force the sales users to change their password at their next logon.
What should you do?
Run the Set-ADAccountPasswordcmdlet and specify the -identity parameter
Right-click the Sales OU and select Delegate Control
Run the Set-ADFineGrainedPasswordPolicycmdlet and specify the -identity parameter
Right-click the IT OU and select Delegate Control
Right-click the Sales OU and select Delegate Control
Your company deploys a new Active Directory forest named contoso.com. The first domain controller in the
forest runs Windows Server 2012 R2. The forest contains a domain controller named DC10.
On DC10, the disk that contains the SYSVOL folder fails.
You replace the failed disk. You stop the Distributed File System (DFS) Replication service.
You restore the SYSVOL folder.
You need to perform a non-authoritative synchronization of SYSVOL on DC 10.
Which tool should you use before you start the DFS Replication service on DC10?
Dfsgui.msc
Ldp
Dfsmgmt.msc
Adsiedit.msc
Your network contains an Active Directory domain named contoso.com. Domain controllers run either
Windows Server 2003, Windows Server 2008 R2, or Windows Server 2012 R2.
A support technician accidentally deletes a user account named User1.
You need to use tombstone reanimation to restore the User1 account.
Which tool should you use?
Esentutl
Ntdsutil
Ldp
Active Directory Administrative Center
Your network contains an Active Directory domain named contoso.com. The domain contains six domain
controllers. The domain controllers are configured as shown in the following table
The network contains a server named Server1 that has the Hyper-V server role installed. DC6 is a virtual
machine that is hosted on Server1.
You need to ensure that you can clone DC6.
What should you do?
Transfer the schema master to DC4
Transfer the PDC emulator to DC5
Transfer the schema master to DC6
Transfer the PDC emulator to DC2
Transfer the PDC emulator to DC2