Fiszki

Windows Serwer 2012 R2 70-411

Test w formie fiszek Ogromny test z administracji systemem Windows Server 2012. Pytania o Windows Serwer 2012 R2 - Egzamin 70-411
Ilość pytań: 211 Rozwiązywany: 8537 razy
Your network contains an Active Directory forest named contoso.com. The functional level of the forest is Windows Server 2008 R2. All of the user accounts in the marketing department are members of a group named Contoso\MarketingUsers. All of the computer accounts in the marketing department are members of a group named Contoso\MarketingComputers. A domain user named User1 is a member of the Contoso\MarketingUsers group. A computer named Computer1 is a member of the Contoso\MarketingComputers group. You have five Password Settings objects (PSOs). The PSOs are defined as shown in the following table When User1 logs on to Computer1 and attempts to change her password, she receives an error message indicating that her password is too short. You need to tell User1 what her minimum password length is. What should you tell Userl ?
12
10
14
11
10
Your network contains an Active Directory domain named contoso.com. The Active Directory Recycle bin is enabled for contoso.com. A support technician accidentally deletes a user account named User1. You need to restore the User1 account. Which tool should you use?
Active Directory Administrative Center
Ldp
Ntdsutil
Esentutl
Active Directory Administrative Center
Your network contains an Active Directory forest named contoso.com. The forest contains a single domain. All domain controllers run Windows Server 2012 R2. The domain contains two domain controllers. The domain controllers are configured as shown in the following table. Active Directory Recycle Bin is enabled. You discover that a support technician accidentally removed 100 users from an Active Directory group named Group1 an hour ago. You need to restore the membership of Group1. What should you do?
Perform an authoritative restore
Perform tombstone reanimation
Recover the items by using Active Directory Recycle Bin
Modify the is Recycled attribute of Group1
Recover the items by using Active Directory Recycle Bin
Your network contains an Active Directory domain named contoso.com. The domain contains a read-only domain controller (RODC) named R0DC1. You create a global group named RODC_Admins. You need to provide the members ot RODC_Admins with the abilityto manage the hardware and the software on R0DC1. The solution must not provide RODC_Admins with the abilityto manage Active Directory objects. What should you do?
From Active Directory Site and Services, configure the Security settings ot the R0DC1 server object
From Windows PowerShell, run the Set-ADAccountControIcmdlet
From a command prompt, run the dsmgmt local roles command
From Active Directory Users and Computers, configure the Member Ot settings ot the R0DC1 account
From a command prompt, run the dsmgmt local roles command
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012 R2. You create an Active Directory snapshot ot DC1 each day. You need to view the contents of an Active Directory snapshot from two days ago. What should you do first?
Run the ntdsutil.exe command
Start the Volume Shadow Copy Service (VSS)
Stop the Active Directory Domain Services (AD DS) service
Run the dsamain.exe command
Run the dsamain.exe command
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. In a remote site, a support technician installs a server named DC10 that runs Windows Server 2012 R2. DC10 is currently a member of a workgroup. You plan to promote DC10 to a read-only domain controller (RODC). You need to ensure that a user named Contoso\User1 can promote DC10 to a RODC in the contoso.com domain. The solution must minimize the number of permissions assigned to User1. What should you do?
Join DC10 to the domain. Run dsmod and specify the /server switch
rom Ntdsutil, run the local roles command
From Active Directory Administrative Center, pre-create an RODC computer account
From Active Directory Users and Computers, run the Delegation of Control Wizard on the contoso.com domain object
From Active Directory Administrative Center, pre-create an RODC computer account
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100 Group Policy objects (GPOs). Currently, there are no enforced GPOs. You have two GPOs linked to an organizational unit (OU) named 0U1. You need to change the precedence order of the GPOs. What should you use?
Set-GPInheritance
Restore-GPO
Gpfixup
Gpresult
Gpedit.msc
Set-GPLink
Import-GPO
Dcgpofix
Get-GPOReport
Add-ADGroupMember
Set-GPPermission
Gpupdate
Set-GPLink
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100 Group Policy objects (GPOs). Currently, there are no enforced GPOs. A network administrator accidentally deletes the Default Domain Policy GPO. You do not have a backup ot any ot the GPOs. You need to recreate the Default Domain Policy GPO. What should you use?
Set-GPLink
Dcgpofix
Set-GPPermission
Gpresult
Get-GPOReport
Gpfixup
Add-ADGroupMember
Set-GPInheritance
Gpupdate
Restore-GPO
Import-GPO
Gpedit.msc
Dcgpofix
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100 Group Policy objects (GPOs). Currently, there are no enforced GPOs. The domain contains a top-level organizational unit (OU) for each department. A group named Group1 contains members from each department. You have a GPO named GP01 that is linked to the domain. You need to configure GP01 to apply settings to Group1 only. What should you use?
Gpresult
Restore-GPO
Gpedit.msc
Set-GPPermission
Get-GPOReport
Import-GPO
Dcgpofix
Set-GPlnheritance
Gpupdate
Add-ADGroupMember
Set-GPLink
Gpfixup
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100 Group Policy objects (GPOs). Currently, there are no enforced GPOs. The domain is renamed to adatum.com. Group Policies no longer function correctly. You need to ensure that the existing GPOs are applied to users and computers. You want to achieve this goal by using the minimum amount of administrative effort. What should you use?
Dcgpofix
Gpresult
Import-GPO
Set-GPLink
Set-GPlnheritance
Gpedit. msc
Restore-GPO
Gpupdate
Set-GPPermission
Add-ADGroupMember
Get-GPOReport
Gpfixup
Gpfixup
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server role installed. You log on to Server1 by using a user account named User2. From the Remote Access Management Console, you run the Getting Started Wizard and you receive a warning message as shown in the exhibit. (Click the Exhibit button.) You need to ensure that you can configure DirectAccess successfully. The solution must minimize the number ot permissions assigned to User2. To which group should you add User2?
Administrators
Server Operators
Enterprise Admins
Account Operators
Account Operators
Your network contains an Active Directory domain named contoso.com. You need to install and configure the Web Application Proxy role service. What should you do?
Install the Active Directory Federation Services server role and the Remote Access server role on the same server
Install the Active Directory Federation Services server role and the Remote Access server role on different servers
Install the Web Server (IIS) server role and the Application Server server role on different servers
Install the Web Server (IIS) server role and the Application Server server role on the same server
Install the Active Directory Federation Services server role and the Remote Access server role on different servers
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 is configured as a VPN server. You need to configure Server1 to perform network address translation (NAT). What should you do?
From Routing and Remote Access, add an IPv6 routing protocol
From Network Connections, modify the Internet Protocol Version 4 (TCP/IPv4) setting of each network adapter
From Routing and Remote Access, add an IPv4 routing protocol
From Network Connections, modify the Internet Protocol Version 6 (TCP/IPv6) setting of each network adapter
From Routing and Remote Access, add an IPv4 routing protocol
You have a DNS server named Served that has a Server Core Installation on Windows Server 2012 R2. You need to view the time-to-live (TTL) value ot a name server (NS) record that is cached by the DNS Server service on Server1. What should you run?
dnscacheugc.exe
nslookup.exe
ipconfig.exe /displaydns
Show-DNSServerCache
Show-DNSServerCache
You have a DNS server named DNS1 that runs Windows Server 2012 R2. On DNS1, you create a standard primary DNS zone named adatum.com. You need to change the frequency that secondary name servers will replicate the zone from DNS1. Which type ot DNS record should you modify?
Name server (NS)
Host information (HINFO)
Service location (SRV)
Start ot authority (SOA)
Start ot authority (SOA)
Your network contains an Active Directory domain named contoso.com. The domain contains three servers. The servers are configured as shown in the following table. You need to ensure that end-to-end encryption is used between clients and Server2 when the clients connect to the network by using DirectAccess. Which two actions should you perform? (Each correct answer presents part ot the solution. Choose two.)
From the Remote Access Management Console, modify the Infrastructure Servers settings
From the Remote Access Management Console, modify the Application Servers settings
From the Remote Access Management Console, reload the configuration
Restart the IPSec Policy Agent service on Server2
Add Server2 to a security group in Active Directory
From the Remote Access Management Console, modify the Application Servers settings
Add Server2 to a security group in Active Directory
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. All ot the DNS servers in both ot the domains run Windows Server 2012 R2. The network contains two servers named Server1 and Server2. Server1 hosts an Active Directory-integrated zone for contoso.com. Server2 hosts an Active Directory-integrated zone for fabrikam.com. Server1 and Server2 connect to each other by using a WAN link. Client computers that connect to Server1 for name resolution cannot resolve names in fabnkam.com. You need to configure Server1 to support the resolution ot names in fabnkam.com. The solution must ensure that users in contoso.com can resolve names in fabrikam.com if the WAN link fails. What should you do on Server1 ?
Add a forwarder
Create a secondary zone
Create a stub zone
Create a conditional forwarder
Create a secondary zone
Your network contains two servers named Server1 and Server2. Both servers run Windows Server 2012 R2 and have the DNS Server role installed. On Server1, you create a standard primary zone named contoso.com. You need to ensure that Server2 can host a secondary zone for contoso.com. What should you do from Server1 ?
Add Server2 as a name server
Convert contoso.com to an Active Directory-integrated zone
Create a zone delegation that points to Server2
Create a trust anchor named Server2
Add Server2 as a name server
Your network contains an Active Directory domain named contoso.com. The domain contains a Web server named www.contoso.com. The Web server is available on the Internet. You implement DirectAccess by using the default configuration. You need to ensure that users never attempt to connect to www.contoso.com by using DirectAccess. The solution must not prevent the users from using DirectAccess to access other resources in contoso.com.  Which settings should you configure in a Group Policy object (GPO)?
DirectAccess Client Experience Settings
Name Resolution Policy
DNS Client
Network Connections
Name Resolution Policy
Your network contains an Active Directory domain named contoso.com. All user accounts for the marketing department reside in an organizational unit (OU) named OU1. All user accounts for the finance department reside in an organizational unit (OU) named 0U2. You create a Group Policy object (GPO) named GP01. You link GP01 to OU2. You configure the Group Policy preference ot GP01 to add a shortcut named Linki to the desktop. You discover that when a user signs in, the Link1 is not added to the desktop. You need to ensure that when a user signs in, Link1 is added to the desktop. What should you do?
Enforce GPO1
Enable loopback processing in GPO1
Modify the Security Filtering settings of GPO1
Modify the Link1 shortcut preference of GPO1
Modify the Security Filtering settings of GPO1

Powiązane tematy

#windows #serwer #2012

Inne tryby