Podsumowanie

Windows Serwer 2012 R2 70-411

Podsumowanie

Windows Serwer 2012 R2 70-411

Twój wynik

Rozwiąż ponownie
Moja historia
Pytanie 1
Your network contains an Active Directory forest named contoso.com. All domain controllers run Windows Server 2008 R2. The schema is upgraded to Windows Server 2012 R2. Contoso.com contains two servers. The servers are configured as shown in the following table. Server1 and Server2 host a load-balanced application pool named AppPool1. You need to ensure that AppPool1 uses a group Managed Service Account as its identity. Which three actions should you perform? To answer, move the three appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Pytanie 2
You are a network administrator ot an Active Directory domain named contoso.com. You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Web Server (IIS) server role installed. Server1 will host a web site at URL https://secure.contoso.com. The application pool identity account ot the web site will be set to a domain user account named AppPool1. You need to identity the setspn.exe command that you must run to configure the appropriate Service Principal Name (SPN) for the web site. What should you run? To answer, drag the appropriate objects to the correct location. Each object may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
-r
-s
AppPool1
https/contoso
https/secure.contoso.com
http/contoso
http/secure.contoso.com
Pytanie 3
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed. You need to configure Server1 to meet the following requirements: ■ Ensure that old fiies in a folder named Foider1 are archived automaticaiiy to a folder named Archive1. ■ Ensure that all storage reports are saved to a network share. Which two nodes should you configure? To answer, select the appropriate two nodes in the answer area. Wpisz 1-13
Pytanie 4
Your network contains an Active Directory domain named contoso.com. The domain contains servers named Server1 and Server2. Both servers have the DFS Replication role service installed. You need to configure the DFS Replication environment to meet the following requirements: Increase the quota limit ot the staging folder. ■ Configure the staging folder cleanup process to provide the highest amount ot free space possible. Which cmdlets should you use to meet each requirement? To answer, select the appropriate options in the answer area. Wpisz 1-4
Pytanie 5
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. You need to audit successful and failed attempts to read data from USB drives on the servers. Which two objects should you configure? To answer, select the appropriate two objects in the answer area.
Pytanie 6
You have a server named Server4 that runs Windows Server 2012 R2. Server4 has the Windows Deployment Services server role installed. Server4 is configured as shown in the exhibit. (Click the Exhibit button.) To answer, complete each statement according to the information presented in the exhibit. Each correct selection is worth one point.
Pytanie 7
Your network contains an Active Directory domain named contoso.com. The domain contains three member servers named Server1, Server2, and Server3. All servers run Windows Server 2012 R2 and have the Windows Server Update Services (WSUS) server role installed. Server1 and Server2 are configured as replica servers that use Server3 as an upstream server. You remove Servers from the network. You need to ensure that WSUS on Server2 retrieves updates from Server1. The solution must ensure that Server1 and Server2 have the latest updates from Microsoft. Which command should you run on each server? To answer, select the appropriate command to run on each server in the answer area.
Pytanie 8
Your network contains an Active Directory domain named contoso.com. The domain contains a member server named Server1. Server1 runs Windows Server 2012 R2. You enable the EventLog-Application event trace session. You need to set the maximum size ot the log file used by the trace session to 10 MB. From which tab should you perform the configuration? To answer, select the appropriate tab in the answer area.
Trace Session
Security
Trace Providers
Stop Condition
Pytanie 9
Your network contains an Active Directory domain named contoso.com. You have several Windows PowerShell scripts that execute when client computers start. When a client computer starts, you discover that it takes a long time before users are prompted to log on. You need to reduceExplanation: Lets the system run startup scripts simultaneously rather than waiting for each to finish http : //technet. microsoft. com/en-us/library/cc939423 . aspx Directs the system to wait for logon scripts to finish running before it starts the Windows Explorer interface program and creates the desktop. It you enable this policy, Windows Explorer does not start until the logon scripts have finished running. This setting assures that logon script processing is complete before the user starts working, but it can delay the appearance of the desktop. It you disable this policy or do not configure it, the logon scripts and Windows Explorer are not synchronized and can run simultaneously. This policy appears in the Computer Configuration and User Configuration folders. The policy set in Computer Configuration takes precedence over the policy set in User Configuration. By default, the Fast Logon Optimization feature is set for both domain and workgroup members. This setting causes policy to be applied asynchronously when the computer starts and the user logs on. The result is similar to a background refresh. The advantage is that it can reduce the amount of time it takes for the logon dialog box to appear and the amount of time it takes for the desktop to become available to the user. Of course, it also means that the user may log on and start working before the absolute latest policy settings have been applied to the system. Depending on your environment, you may want to disable Fast Logon Optimization. You can do this with Group Policy, using the Always wait for the network at computer startup and logon policy setting. the amount of time it takes for the client computers to start. The solution must not prevent scripts from completing successfully. Which setting should you configure? To answer, select the appropriate setting in the answer area. Hot Area.
Specyfy maximum wait time for Group Policy scripts
Run startup scripts asynchronously
Display instructions in stratup scripts as they run
Ryn windows powershell scripts first at computer startup
Run logon scripts synchronously
allow logon scripts when NetBIOS or WINS is disabled
Pytanie 10
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. The domain contains an organizational unit (OU) named 0U1. 0U1 contains an OU named 0U2. 0U2 contains a user named user1. User1 is the member ot a group named Group1. Group1 is in the Users container. You create five Group Policy objects (GPO). The GPOs are configured as shown in the following table. The Authenticated Users group is assigned the default permissions to all ot the GPOs. There are no site-level GPOs. You need to identify which three GPOs will be applied to User1 and in which order the GPOs will be applied to User1. Which three GPOs should you identify in sequence? To answer, move the appropriate three GPOs from the list ot GPOs to the answer area and arrange them in the correct order.
GPO2
GPO4
GPO1
GPO5
GPO3
Pytanie 11
Your network contains a RADIUS server named Server1. You install a new server named Server2 that runs Windows Server 2012 R2 and has Network Policy Server (NPS) installed. You need to ensure that all accounting requests for Server2 are forwarded to Server1. On Server2, you configure a Connection Request Policy. What else should you configure on Server2? To answer, select the appropriate node in the answer area.
Connection Request Policies
Health Polices
Radius Clients
Network Polices
Remote RADIUS Server Groups
Pytanie 12
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2. Server1 has the Network Policy Server server role installed. Server2 has the DHCP Server server role installed. Both servers run Windows Server 2012 R2. You are configuring Network Access Protection (NAP) to use DHCP enforcement. You configure a DHCP scope as shown in the exhibit. (Click the Exhibit button.) You need to ensure that non-compliant NAP clients receive different DHCP options than compliant NAP clients. What should you configure on each server? To answer, select the appropriate options for each server in the answer area
Server2
Server options
Service-Type
Ms-Service class
a policy
a User class
Server1
Health Polices
Identity-Type
filters
a Vendor class
Pytanie 13
Your network contains an Active Directory domain named contoso.com. The domain contains the users shown in the following table. User1, User2, and User3 plan to connect to the network by using a VPN. You need to identify which network policy will apply to each user. What should you identify? To answer, select the appropriate policy for each user in the answer area Wpisz 1-3
Pytanie 14
Your network contains an Active Directory forest named contoso.com. The forest contains a Network Policy Server (NPS) server named NPS1 and a VPN server named VPN1. VPN1 forwards all authentication requests to NPS1. A partner company has an Active Directory forest named adatum.com. The adatum.com forest contains an NPS server named NPS2. You plan to grant users from adatum.com VPN access to your network. You need to authenticate the users from adatum.com on VPN1. What should you create on each NPS server? To answer, drag the appropriate objects to the correct NPS servers. Each object may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. Select and Place:
NPS1
a connection request policy
NPS2
a RADIUS client
Nie potrzebne
a network policy
NPS1
a remote RADIUS server group
Pytanie 15
Your network contains an Active Directory forest named contoso.com. The forest functional level is Windows Server 2012 R2. The forest contains a single domain. You create a Password Settings object (PSO) named PSO1. You need to delegate the rights to apply PSO1 to the Active Directory objects in an organizational unit named OU1. What should you do?
From Group Policy Management, create a Group Policy object (GPO) and link the GPO to OU1
From Active Directory Administrative Center, modify the security settings of OU1
From Active Directory Users and Computers, run the Delegation of Control Wizard
From Active Directory Administrative Center, modify the security settings of PSO1
Pytanie 16
Your network contains an Active Directory domain named contoso.com. You create a user account named User1. The properties of User1 are shown in the exhibit. (Click the Exhibit button.) You plan to use the User1 account as a service account. The service will forward authentication requests to other servers. You need to ensure that you can view the Delegation tab from the properties of the User1 account. What should you do first?
Modify the user principal name (UPN) of User1
Configure the Name Mappings of User1
Modify the Security settings of User1
Configure a Service Principal Name (SPN) for User1
Pytanie 17
Your network contains an Active Directory domain named contoso.com. The domain contains an organizational unit (OU) named IT and an OU named Sales. All of the help desk user accounts are located in the IT OU. All of the sales user accounts are located in the Sales OU. The Sales OU contains a global security group named G_Sales. The IT OU contains a global security group named G_HelpDesk. You need to ensure that members ot GJHelpDesk can perform the following tasks: ■ Reset the passwords ot the sales users. ■ Force the sales users to change their password at their next logon. What should you do?
Right-click the Sales OU and select Delegate Control
Run the Set-ADAccountPasswordcmdlet and specify the -identity parameter
Run the Set-ADFineGrainedPasswordPolicycmdlet and specify the -identity parameter
Right-click the IT OU and select Delegate Control
Pytanie 18
Your company deploys a new Active Directory forest named contoso.com. The first domain controller in the forest runs Windows Server 2012 R2. The forest contains a domain controller named DC10. On DC10, the disk that contains the SYSVOL folder fails. You replace the failed disk. You stop the Distributed File System (DFS) Replication service. You restore the SYSVOL folder. You need to perform a non-authoritative synchronization of SYSVOL on DC 10. Which tool should you use before you start the DFS Replication service on DC10?
Dfsgui.msc
Dfsmgmt.msc
Adsiedit.msc
Ldp
Pytanie 19
Your network contains an Active Directory domain named contoso.com. Domain controllers run either Windows Server 2003, Windows Server 2008 R2, or Windows Server 2012 R2. A support technician accidentally deletes a user account named User1. You need to use tombstone reanimation to restore the User1 account. Which tool should you use?
Esentutl
Active Directory Administrative Center
Ntdsutil
Ldp
Pytanie 20
Your network contains an Active Directory domain named contoso.com. The domain contains six domain controllers. The domain controllers are configured as shown in the following table The network contains a server named Server1 that has the Hyper-V server role installed. DC6 is a virtual machine that is hosted on Server1. You need to ensure that you can clone DC6. What should you do?
Transfer the PDC emulator to DC5
Transfer the PDC emulator to DC2
Transfer the schema master to DC4
Transfer the schema master to DC6
Pytanie 21
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. An organizational unit (OU) named ResearchServers contains the computer accounts of all research servers. Ali domain users are configured to have a minimum password length of eight characters. You need to ensure that the minimum password length of the local user accounts on the research servers in the ResearchServers OU is 10 characters. What should you do?
Create a global group that contains the research servers. Create a Password Settings object (PSO) and assign the PSO to the group
Create and link a Group Policy object (GPO) to the ResearchServers OU
Create a universal group that contains the research servers. Create a Password Settings object (PSO) and assign the PSO to the group
Configure a local Group Policy object (GPO) on each research server
Pytanie 22
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Windows Deployment Services server role installed. Server1 contains two boot images and four install images. You need to ensure that when a computer starts from PXE, the available operating system images appear in a specific order. What should you do?
Modify the PXE Response Policy
Modify the properties ot the boot images
Create a new image group
Modify the properties ot the install images
Pytanie 23
Your network contains a domain controller named DC1 that runs Windows Server 2012 R2. You create a custom Data Collector Set (DCS) named DCS1. You need to configure DCS1 to collect the following information: ■ The amount ot Active Directory data replicated between DC1 and the other domain controllers ■ The current values ot several registry settings Which two should you configure in DCS1 ? (Each correct answer presents part ot the solution. Choose two.)
A performance counter
System configuration information
A Performance Counter Alert
Event trace data
Pytanie 24
You have a server that runs Windows Server 2012 R2. You have an offline image named Windows2012.vhd that confains an insfallafion of Windows Server 2012 R2. You plan to apply several updates to Windows2012.vhd. You need to mount Windows2012.vhd to D:\Mount. Which tool should you use?
Server Manager
Device Manager
Mountvol
Dism
Pytanie 25
You have a server named Server1 that runs Windows Server 2012 R2. You need to configure Server1 to create an entry in an event log when the processor usage exceeds 60 percent. Which type ot data collector should you create?
An event trace data collector
A performance counter alert
A performance counter data collector
A configuration data collector
Pytanie 26
Your network contains three Network Policy Server (NPS) servers named NPS1, NPS2, and NPS3. NPS1 is configured as a RADIUS proxy that forwards connection requests to a remote RADIUS server group named Group1. You need to ensure that NPS2 receives connection requests. NPS3 must oniy receive connection requests if NPS2 is unavailable. How should you configure Group1 ?
Change the Priority of NPS3 to 10
Change the Weight of NPS3 to 10
Change the Priority of NPS2 to 10
Change the Weight of NPS2 to 10
Pytanie 27
Your network contains an Active Directorydomain named contoso.com. Network Access Protection (NAP) is deployed to the domain. You need to create NAP event trace log files on a client computer. What should you run?
Register-EngineEvent
Register-ObjectEvent
tracert
logman
Pytanie 28
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. You create a central store for Group Policy. You receive a custom administrative template named Templatel .admx. You need to ensure that the settings in Templatel .admx appear in all new Group Policy objects (GPOs). What should you do?
Copy Templatel .admx to \\Contoso.com\NETLOGON
From the Default Domain Controllers Policy, add Templatel .admx to the Administrative Templates
Copy Templatel .admx to \\Contoso.com\SYSVOL\Contoso.com\Policies\PolicyDefinitions\
From the Default Domain Policy, add Templatel .admx to the Administrative Templates
Pytanie 29
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. A domain controller named DO has the ADMX Migrator tool installed. You have a custom Administrative Template file on DC1 named Templatel.adm. You need to add a custom registry entry to Templatel .adm by using the ADMX Migrator tool. Which action should you run first?
Generate ADMX from ADM
Load Template
NewCategory
New Policy Setting
Pytanie 30
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. An organizational unit (OU) named OU1 contains 200 client computers that run Windows 8 Enterprise. A Group Policy object (GPO) named GP01 is linked to OU1. You make a change to GP01. You need to force all of the computers in OU1 to refresh their Group Policy settings immediately. The solution must minimize administrative effort. Which tool should you use?
Server Manager
The Secedit command
The Gpupdate command
Group Policy Management Console (GPMC)
Pytanie 31
our network contains two servers named Server1 and Server2. Both servers run Windows Server 2012 R2 and have the DNS Server server role installed. Server1 hosts a primary zone for contoso.com. Server2 hosts a secondary zone for contoso.com. The zone is not configured to notify secondary servers of changes automatically. You update several records on Server1. You need to force the replication of the contoso.com zone records from Server1 to Server2. What should you do from Server2?
Right-click the contoso.com zone and click Reload
Right-click Server2 and click Refresh
Right-click the contoso.com zone and click Transfer from Master
Right-click Server2 and click Update Server Data Files
Pytanie 32
Your network contains two servers named Served and Server2 and have the DNS Server server role installed. Both servers run Windows Server 2012 R2 On Server1, you create a standard primary zone named contoso.com. You plan to create a standard primary zone for ad.contoso.com on Server2. You need to ensure that Server1 forwards all gueries for ad.contoso.com to Server2. What should you do from Server1 ?
Create a zone delegation that points to Server2
Add Server2 as a name server
Create a trust anchor named Server2
Create a conditional forward that points to Server2
Pytanie 33
You have a DNS server named Server1. Server1 has a primary zone named contoso.com. Zone Aging/Scavenging is configured for the contoso.com zone. One month ago, an administrator removed a server named Server2 from the network. You discover that a static resource record for Server2 is present in contoso.com. Resource records for decommissioned client computers are removed automatically from contoso.com. You need to ensure that the static resource records for all ot the servers are removed automatically from contoso.com. What should you modify?
The time-to-live (TTL) value ot the static resource records
The Expires after value ot contoso.com
The Record time stamp value ot the static resource records
The Security settings ot the static resource records
Pytanie 34
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. You enable and configure Routing and Remote Access (RRAS) on Server1. You create a user account named User1. You need to ensure that User1 can establish VPN connections to Server1. What should you do?
Modify the members ot the Remote Management Users group
Create a network policy
Create a connection request policy
Add a RADIUS client
Pytanie 35
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. The domain contains an Edge Server named Server1. Server1 is configured as a DirectAccess server. Server1 has the following settings: You run the Remote Access Setup wizard as shown in the following exhibit. (Click the Exhibit button.) You need to ensure that client computers on the Internet can establish DirectAccess connections to Server1. Which additional name suffix entry should you add from the Remote Access Setup wizard?
A Name Suffix value of Server1 .contoso.com and a DNS Server Address value ot 65.55.37.62
A Name Suffix value of Server1 .contoso.com and a blank DNS Server Address value
A Name Suffix value of dal.contoso.com and a DNS Server Address value ot 65.55.37.62
A Name Suffix value of dal.contoso.com and a blank DNS Server Address value
Pytanie 36
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the following role services installed: DirectAccess and VPN (RRAS) Network Policy Server Remote users have client computers that run either Windows XP, Windows 7, or Windows 8. You need to ensure that only the client computers that run Windows 7 or Windows 8 can establish VPN connections to Server1. What should you configure on Server1?
A constraint of a Network Policy Server (NPS) network policy
a condition of a Network Policy Server (NPS) connection request policy
A vendor-specific RADIUS attribute of a Network Policy Server (NPS) connection request policy
A condition of a Network Policy Server (NPS) network policy
Pytanie 37
You are a network administrator of an Active Directory domain named contoso.com. You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the DHCP Server server role and the Network Policy Server role service installed. You enable Network Access Protection (NAP) on all of the DHCP scopes on Server1. You need to create a DHCP policy that will apply to all of the NAP non-compliant DHCP clients. Which criteria should you specify when you create the DHCP policy?
The vendor class
The client identifier
The relay agent information
The user class
Pytanie 38
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2 and has the Network Policy Server role service installed. An administrator creates a RADIUS client template named Template1. You create a RADIUS client named Client1 by using Template 1. You need to modify the shared secret for Client1. What should you do first?
Configure the Advanced settings of Template1
Clear Select an existing template for Client1
Clear Enable this RADIUS client for Client1
Set the Shared secret setting of Template1 to Manual
Pytanie 39
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The domain contains a server named Server1 that has the Network Policy Server server role and the Remote Access server role installed. The domain contains a server named Server2 that is configured as a RADIUS server. Server1 provides VPN access to external users. You need to ensure that all of the VPN connections to Server1 are logged to the RADIUS server on Server2. What should you run?
Set-RemoteAccessAccounting -AccountingOnOffMsg Enabled -AccountingOnOffMsg Enabled
Add-RemoteAccessRadius -ServerName Server2 -AccountingOnOffMsg Enabled -SharedSecret "Secret" -Purpose Accounting
Set-RemoteAccessAccounting -EnableAccountingType Inbox -AccountingOnOffMsg Enabled
Add-RemoteAccessRadius-ServerNameServer1-AccountingOnOffMsgEnabled -SharedSecret "Secret" -Purpose Accounting
Pytanie 40
Your network contains four Network Policy Server (NPS) servers named Server1, Server2, Server3, and Server4. Server1 is configured as a RADIUS proxy that forwards connection requests to a remote RADIUS server group named Group1. You need to ensure that Server2 and Server3 receive connection requests. Server4 must only receive connection requests if both Server2 and Server3 are unavailable. How should you configure Group1?
Change the Weight of Server4 to 10
Change the Weight of Server2 and Server3 to 10
Change the Priority of Server2 and Server3 to 10
Change the Priority of Server4 to 10
Pytanie 41
Your network contains an Active Directory domain named adatum.com. A network administrator creates a Group Policy central store. After the central store is created, you discover that when you create new Group Policy objects (GPOs), the GPOs do not contain any Administrative Templates. You need to ensure that the Administrative Templates appear in new GPOs. What should you do?
Copy files from %Windir%\Policydefimtions to the central store
Configure all domain controllers as global catalog servers
Modify the Delegation settings of the new GPOs
Add your user account to the Group Policy Creator Owners group
Pytanie 42
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. The domain contains 500 client computers that run Windows 8 Enterprise. You implement a Group Policy central store. You have an application named App1. App1 requires that a custom registry setting be deployed to all of the computers. You need to deploy the custom registry setting. The solution must minimize administrator effort. What should you configure in a Group Policy object (GPO)?
The Software Installation settings
An application control policy
The Administrative Templates
The Group Policy preferences
Pytanie 43
Your network contains two Active Directory forests named contoso.com and dev.contoso.com. The contoso.com forest contains a domain controller named DC1. The dev.contoso.com forest contains a domain controller named DC2. Each domain contains an organizational unit (OU) named OU1. Dev.contoso.com has a Group Policy object (GPO) named GPO1. GPO1 contains 200 settings, including several settings that have network paths. GPO1 is linked to OU1. You need to copy GPO1 from dev.contoso.com to contoso.com. What should you do first on DC2?
Run the mtedit.exe command and specify the /Domain/contoso.com /DC:DC1 parameter
Run the Backup-Gpo cmdlet
From the Group Policy Management console, right-click GPO1 and select Copy
Run the Save-NetGpo cmdlet
Pytanie 44
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. Client computers run either Windows 7 or Windows 8. All of the client computers have an application named App1 installed.  The domain contains a Group Policy object (GPO) named GPO1 that is applied to all of the client computers. You need to add a system variable named App1Data to all of the client computers. Which Group Policy preference should you configure?
Environment
Data Sources
Services
IniFiles
Pytanie 45
Your network contains an Active Directory domain named contoso.com. All user accounts reside in an organizational unit (OU) named OU1. You create a Group Policy object (GPO) named GPO1. You link GPO1 to OU1. You configure the Group Policy preference of GPO1 to add a shortcut named Link1 to the desktop of each user. You discover that when a user deletes Link1, the shortcut is removed permanently from the desktop. You need to ensure that if a user deletes Link1, the shortcut is added to the desktop again. What should you do?
Enforce GPO1
Enable loopback processing in GPO1
Modify the Security Filtering settings of GPO1
Modify the Link1 shortcut preference of GPO1
Pytanie 46
You manage a server that runs Windows Server 2012 R2. The server has the Windows Deployment Services server role installed. You have a desktop computer that has the following configuration: Computer name: Computer1 Operating system: Windows 8 MAC address: 20-CF-30-65-D0-87 GUID: 979708BF-C04B-4525-9FE0-C4150BB6C618 You need to configure a pre-staged device for Computer1 in the Windows Deployment Services console. Which two values should you assign to the device ID? (Each correct answer presents a complete solution. Choose two.)
00000000-0000-0000-0000-C41S0BB6C618
20CF3065D08700000000000000000000
979708BFC04B45259FE0C4150BB6C618
979708BF-C04B-452S-9FE0-C4150BB6C618
0000000000000000000020CF306SD087
Pytanie 47
You have Windows Server 2012 R2 installation media that contains a file named Install.wim. You need to identify the permissions of the mounted images in Install.wim
Run dism.exe and specify the /get-mountedwiminfo parameter
Run dism.exe and specify the/get-imageinfo parameter
Run imagex.exe and specify the /ref parameter
Run imagex.exe and specify the /verify parameter
Pytanie 48
You have a server named Server1 that runs Windows Server 2012 R2. You create a Data Collector Set (DCS) named DCS1. You need to configure DCS1 to log data to D:\logs. What should you do?
Right-click DCS1 and click Save template. . .
Right-click DCS1 and click Data Manager. . .
Right-click DCS1 and click Properties
Right-click DCS1 and click Export list...
Pytanie 49
Your network contains an Active Directory domain named adatum.com. The domain contains a member server named Server1 and 10 web servers. All of the web servers are in an organizational unit (OU) named WebServers_OU. All of the servers run Windows Server 2012 R2. On Server1, you need to collect the error events from all of the web servers. The solution must ensure that when new web servers are added to WebServers_OU, their error events are collected automatically on Server1. What should you do?
On Server1, create a collector initiated subscription. From a Group Policy object (GPO), configure the Configure forwarder resource usage setting
On Server1, create a collector initiated subscription. From a Group Policy object (GPO), configure the Configure target Subscription Manager setting
On Server1, create a source computer initiated subscription. From a Group Policy object (GPO), configure the Configure target Subscription Manager setting
On Server1, create a source computer initiated subscription. From a Group Policy object (GPO), configure the Configure forwarder resource usage setting
Pytanie 50
Your network contains a Hyper-V host named Hyperv1. Hyperv1 runs Windows Server 2012 R2. Hyperv1 hosts four virtual machines named VM1, VM2, VM3, and VM4. All ot the virtual machines run Windows Server 2008 R2. You need to view the amount ot memory resources and processor resources that VM4 currently uses. Which tool should you use on Hyperv1 ?
Windows System Resource Manager (WSRM)
Resource Monitor
Task Manager
Hyper-V Manager
Pytanie 51
Your network contains an Active Directory domain named contoso.com. The domain contains a member server named Server1. Server1 runs Windows Server 2012 R2 and has the Hyper-V server role installed. Server1 hosts 10 virtual machines. A virtual machine named VM1 runs Windows Server 2012 R2 and hosts a processor-intensive application named App1. Users report that App1 responds more slowly than expected. You need to monitor the processor usage on VM1 to identify whether changes must be made to the hardware settings of VM1. Which performance object should you monitor on Server1 ?
Hyper-V Hypervisor Virtual Processor
Hyper-V Hypervisor Logical Processor
Hyper-V Hypervisor Root Virtual Processor
Processor
Process
Pytanie 52
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The functional level of both the domain and the forest is Windows Server 2008 R2. The domain contains a domain-based Distributed File System (DFS) namespace that is configured as shown in the exhibit. (Click the Exhibit button.) You need to enable access-based enumeration on the DFS namespace. What should you do first?
Raise the forest functional level
Install the File Server Resource Manager role service on Server3 and Server5
Raise the domain functional level
Delete and reoreate the namespace
Pytanie 53
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. A local account named Admin1 is a member ot the Administrators group on Server1. You need to generate an audit event whenever Admin1 is denied access to a file or folder. What should you run?
auditpol.exe /resourcesacl /set /type: key/user: admin1 /failure /access: ga
auditpol.exe /set /user: admin1 /category:
auditpol.exe /resourcesacl /set /type: file /user: admin1 /failure
auditpol.exe /set /user admin1 /failure: enable
Pytanie 54
You have a server named Server1 that runs Windows Server 2012 R2. An administrator creates a quota as shown in the Ouota exhibit. (Click the Exhibit button.) You need to ensure that D:\Folder1 can onlyconsume 100 MB of diskspace. What should you do?
From File Server Resource Manager, edit the existing quota
From the properties of drive D, enable quota management
From File Server Resource Manager, create a new quota
From the Services console, set the Startup Type of the Optimize drives service to Automatic
Pytanie 55
Your company has a main office and two branch offices. The main office is located in New York. The branch offices are located in Seattle and Chicago. The network contains an Active Directory domain named contoso.com. An Active Directory site exists for each office. Active Directory site links exist befween the main office and the branch offices. All servers run Windows Server 2012 R2. You implement a Distributed File System (DFS) replication group named Rep1Group. Rep1Group is used to replicate a folder on each file server. Rep1Group uses a hub and spoke topology. NYC-SVR1 is configured as the hub server. You need to ensure that replication can occur if NYC-SVR1 fails. What should you do?
Modify the properties of Rep1 Group
Create an Active Directory site link
Create a connection in Rep1Group
Create an Active Directory site link bridge
Pytanie 56
Your network contains an Active Directory domain named contoso.com. The domain contains a file server named Server1 that runs Windows Server 2012 R2. Server1 has a share named Share1. When users without permission to Share1 attempt to access the share, they receive the Access Denier message as shown in the exhibit. (Click the Exhibit button.) You deploy a new file server named Server2 that runs Windows Server 2012 R2. You need to configure Server2 to display the same custom Access Denied message as Server1. What should you install on Server2?
The Storage Services server role
The Remote Assistance feature
The Enhanced Storage feature
The File Server Resource Manager role service
Pytanie 57
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed. Each time a user receives an access-denied message after attempting to access a folder on Server1, an email notification is sent to a distribution list named DL1. You create a folder named Folder1 on Server1, and then you configure custom NTFS permissions for Folder1. You need to ensure that when a user receives an access-denied message while attempting to access Folder1, an email notification is sent to a distribution list named DL2. The solution must not prevent DL1 from receiving notifications about other access-denied messages. What should you do?
From the File Server Resource Manager console, modify the Access-Denied Assistance settings
From Server Manager, run the New Share Wizard to create a share for Folderl by selecting the SMB Share - Advanced option
From Server Manager, run the New Share Wizard to create a share for Folderl by selecting the SMB Share -Applications option
From the File Server Resource Manager console, modify the Email Notifications settings
Pytanie 58
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012 R2. DC1 is backed up daily. The domain has the Active Directory Recycie Bin enabled. During routime maintenance, you delete 500 inactive user accounts and 100 inactive groups. One of the deleted groups is named Group1. Some of the deleted user accounts are members of some of the deleted groups. For documentation purposes, you must provide a list of the members of Group1 before the group was deleted. You need to identify the names of the users who were members of Group1 prior to its deletion. You want to achieve this goal by using the minimum amount of administrative erfort. What should you do first?
Reactivate the tombstone of Group1
Perform an authoritative restore of Group1
Mount the most recent Active Directory backup
Use the Recycie Bin to restore Group1
Pytanie 59
Your network contains an Active Directory domain named contoso.com. The domain contains six domain controllers. The domain controllers are configured as shown in the following table. The network contains a server named Server1 that has the Hyper-v server role installed. DC6 is a virtual machinę that is hosted on Server1. You need to ensure that you can clone DC6. Which FSMO role should you transfer to DC2?
PDC emulator
Infrastructure master
Rid master
Domain naming master
Pytanie 60
Your network contains an Active Directory domain named contoso.com. All domain controllers run either Windows Server 2008 or Windows Server 2008 R2. You deploy a new domain controller named DC1 that runs Windows Server 2012 R2. You log on to DC1 by using an account that is a member of the Domain Admins group. You discover that you cannot create Password Settings objects (PSOs) by using Active Directory Administrative Center. You need to ensure that you can create PSOs from Active Directory Administrative Center. What should you do?
Raise the functional level of the domain
Transfer the PDC emulator operations master role to DC1
Modify the membership of the Group Policy Creator Owners group
Upgrade all of the domain controllers that run Window Server 2008
Pytanie 61
Your network contains an Active Directory forest named contoso.com. The functional level of the forest is Windows Server 2008 R2. All of the user accounts in the marketing department are members of a group named Contoso\MarketingUsers. All of the computer accounts in the marketing department are members of a group named Contoso\MarketingComputers. A domain user named User1 is a member of the Contoso\MarketingUsers group. A computer named Computer1 is a member of the Contoso\MarketingComputers group. You have five Password Settings objects (PSOs). The PSOs are defined as shown in the following table When User1 logs on to Computer1 and attempts to change her password, she receives an error message indicating that her password is too short. You need to tell User1 what her minimum password length is. What should you tell Userl ?
12
14
11
10
Pytanie 62
Your network contains an Active Directory domain named contoso.com. The Active Directory Recycle bin is enabled for contoso.com. A support technician accidentally deletes a user account named User1. You need to restore the User1 account. Which tool should you use?
Esentutl
Ntdsutil
Active Directory Administrative Center
Ldp
Pytanie 63
Your network contains an Active Directory forest named contoso.com. The forest contains a single domain. All domain controllers run Windows Server 2012 R2. The domain contains two domain controllers. The domain controllers are configured as shown in the following table. Active Directory Recycle Bin is enabled. You discover that a support technician accidentally removed 100 users from an Active Directory group named Group1 an hour ago. You need to restore the membership of Group1. What should you do?
Recover the items by using Active Directory Recycle Bin
Perform an authoritative restore
Perform tombstone reanimation
Modify the is Recycled attribute of Group1
Pytanie 64
Your network contains an Active Directory domain named contoso.com. The domain contains a read-only domain controller (RODC) named R0DC1. You create a global group named RODC_Admins. You need to provide the members ot RODC_Admins with the abilityto manage the hardware and the software on R0DC1. The solution must not provide RODC_Admins with the abilityto manage Active Directory objects. What should you do?
From Active Directory Users and Computers, configure the Member Ot settings ot the R0DC1 account
From Active Directory Site and Services, configure the Security settings ot the R0DC1 server object
From a command prompt, run the dsmgmt local roles command
From Windows PowerShell, run the Set-ADAccountControIcmdlet
Pytanie 65
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012 R2. You create an Active Directory snapshot ot DC1 each day. You need to view the contents of an Active Directory snapshot from two days ago. What should you do first?
Stop the Active Directory Domain Services (AD DS) service
Run the dsamain.exe command
Start the Volume Shadow Copy Service (VSS)
Run the ntdsutil.exe command
Pytanie 66
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. In a remote site, a support technician installs a server named DC10 that runs Windows Server 2012 R2. DC10 is currently a member of a workgroup. You plan to promote DC10 to a read-only domain controller (RODC). You need to ensure that a user named Contoso\User1 can promote DC10 to a RODC in the contoso.com domain. The solution must minimize the number of permissions assigned to User1. What should you do?
rom Ntdsutil, run the local roles command
Join DC10 to the domain. Run dsmod and specify the /server switch
From Active Directory Administrative Center, pre-create an RODC computer account
From Active Directory Users and Computers, run the Delegation of Control Wizard on the contoso.com domain object
Pytanie 67
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100 Group Policy objects (GPOs). Currently, there are no enforced GPOs. You have two GPOs linked to an organizational unit (OU) named 0U1. You need to change the precedence order of the GPOs. What should you use?
Gpfixup
Gpresult
Set-GPInheritance
Set-GPPermission
Gpedit.msc
Restore-GPO
Get-GPOReport
Gpupdate
Add-ADGroupMember
Dcgpofix
Import-GPO
Set-GPLink
Pytanie 68
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100 Group Policy objects (GPOs). Currently, there are no enforced GPOs. A network administrator accidentally deletes the Default Domain Policy GPO. You do not have a backup ot any ot the GPOs. You need to recreate the Default Domain Policy GPO. What should you use?
Dcgpofix
Gpedit.msc
Set-GPPermission
Gpresult
Gpfixup
Set-GPLink
Add-ADGroupMember
Gpupdate
Import-GPO
Get-GPOReport
Restore-GPO
Set-GPInheritance
Pytanie 69
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100 Group Policy objects (GPOs). Currently, there are no enforced GPOs. The domain contains a top-level organizational unit (OU) for each department. A group named Group1 contains members from each department. You have a GPO named GP01 that is linked to the domain. You need to configure GP01 to apply settings to Group1 only. What should you use?
Add-ADGroupMember
Import-GPO
Gpupdate
Set-GPlnheritance
Set-GPLink
Get-GPOReport
Gpresult
Gpedit.msc
Dcgpofix
Gpfixup
Set-GPPermission
Restore-GPO
Pytanie 70
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100 Group Policy objects (GPOs). Currently, there are no enforced GPOs. The domain is renamed to adatum.com. Group Policies no longer function correctly. You need to ensure that the existing GPOs are applied to users and computers. You want to achieve this goal by using the minimum amount of administrative effort. What should you use?
Set-GPPermission
Dcgpofix
Restore-GPO
Gpfixup
Set-GPLink
Get-GPOReport
Gpedit. msc
Gpresult
Gpupdate
Set-GPlnheritance
Add-ADGroupMember
Import-GPO
Pytanie 71
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server role installed. You log on to Server1 by using a user account named User2. From the Remote Access Management Console, you run the Getting Started Wizard and you receive a warning message as shown in the exhibit. (Click the Exhibit button.) You need to ensure that you can configure DirectAccess successfully. The solution must minimize the number ot permissions assigned to User2. To which group should you add User2?
Administrators
Enterprise Admins
Account Operators
Server Operators
Pytanie 72
Your network contains an Active Directory domain named contoso.com. You need to install and configure the Web Application Proxy role service. What should you do?
Install the Active Directory Federation Services server role and the Remote Access server role on the same server
Install the Active Directory Federation Services server role and the Remote Access server role on different servers
Install the Web Server (IIS) server role and the Application Server server role on different servers
Install the Web Server (IIS) server role and the Application Server server role on the same server
Pytanie 73
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 is configured as a VPN server. You need to configure Server1 to perform network address translation (NAT). What should you do?
From Network Connections, modify the Internet Protocol Version 6 (TCP/IPv6) setting of each network adapter
From Routing and Remote Access, add an IPv4 routing protocol
From Network Connections, modify the Internet Protocol Version 4 (TCP/IPv4) setting of each network adapter
From Routing and Remote Access, add an IPv6 routing protocol
Pytanie 74
You have a DNS server named Served that has a Server Core Installation on Windows Server 2012 R2. You need to view the time-to-live (TTL) value ot a name server (NS) record that is cached by the DNS Server service on Server1. What should you run?
dnscacheugc.exe
nslookup.exe
Show-DNSServerCache
ipconfig.exe /displaydns
Pytanie 75
You have a DNS server named DNS1 that runs Windows Server 2012 R2. On DNS1, you create a standard primary DNS zone named adatum.com. You need to change the frequency that secondary name servers will replicate the zone from DNS1. Which type ot DNS record should you modify?
Name server (NS)
Service location (SRV)
Host information (HINFO)
Start ot authority (SOA)
Pytanie 76
Your network contains an Active Directory domain named contoso.com. The domain contains three servers. The servers are configured as shown in the following table. You need to ensure that end-to-end encryption is used between clients and Server2 when the clients connect to the network by using DirectAccess. Which two actions should you perform? (Each correct answer presents part ot the solution. Choose two.)
From the Remote Access Management Console, modify the Application Servers settings
Restart the IPSec Policy Agent service on Server2
From the Remote Access Management Console, reload the configuration
From the Remote Access Management Console, modify the Infrastructure Servers settings
Add Server2 to a security group in Active Directory
Pytanie 77
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. All ot the DNS servers in both ot the domains run Windows Server 2012 R2. The network contains two servers named Server1 and Server2. Server1 hosts an Active Directory-integrated zone for contoso.com. Server2 hosts an Active Directory-integrated zone for fabrikam.com. Server1 and Server2 connect to each other by using a WAN link. Client computers that connect to Server1 for name resolution cannot resolve names in fabnkam.com. You need to configure Server1 to support the resolution ot names in fabnkam.com. The solution must ensure that users in contoso.com can resolve names in fabrikam.com if the WAN link fails. What should you do on Server1 ?
Create a conditional forwarder
Add a forwarder
Create a secondary zone
Create a stub zone
Pytanie 78
Your network contains two servers named Server1 and Server2. Both servers run Windows Server 2012 R2 and have the DNS Server role installed. On Server1, you create a standard primary zone named contoso.com. You need to ensure that Server2 can host a secondary zone for contoso.com. What should you do from Server1 ?
Create a zone delegation that points to Server2
Convert contoso.com to an Active Directory-integrated zone
Create a trust anchor named Server2
Add Server2 as a name server
Pytanie 79
Your network contains an Active Directory domain named contoso.com. The domain contains a Web server named www.contoso.com. The Web server is available on the Internet. You implement DirectAccess by using the default configuration. You need to ensure that users never attempt to connect to www.contoso.com by using DirectAccess. The solution must not prevent the users from using DirectAccess to access other resources in contoso.com.  Which settings should you configure in a Group Policy object (GPO)?
DNS Client
DirectAccess Client Experience Settings
Name Resolution Policy
Network Connections
Pytanie 80
Your network contains an Active Directory domain named contoso.com. All user accounts for the marketing department reside in an organizational unit (OU) named OU1. All user accounts for the finance department reside in an organizational unit (OU) named 0U2. You create a Group Policy object (GPO) named GP01. You link GP01 to OU2. You configure the Group Policy preference ot GP01 to add a shortcut named Linki to the desktop. You discover that when a user signs in, the Link1 is not added to the desktop. You need to ensure that when a user signs in, Link1 is added to the desktop. What should you do?
Enable loopback processing in GPO1
Modify the Security Filtering settings of GPO1
Enforce GPO1
Modify the Link1 shortcut preference of GPO1
Pytanie 81
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012 R2. All client computers run Windows 8 Enterprise. DC1 contains a Group Policy object (GPO) named GPO1. You need to deploy a VPN connection to all users. What should you configure from User Configuration in GPO1 ?
Policies/Administrative Templates/Network/Windows Connect Now
Preferences/Control Panel Settings/Network Options
Policies/Administrative Templates/Windows Components/Windows Mobility Center
Policies/Administrative Templates/Network/Network Connections
Pytanie 82
Your network contains an Active Directory domain named contoso.com. All client computers run Windows 8.1. The network contains a shared folder named FinancialData that contains five files. You need to ensure that the FinancialData folder and its contents are copied to all of the client computers. Which two Group Policy preferences should you configure? (Each correct answer presents part of the solution. Choose two.)
Folders
Environment
Network Shares
Files
Shortcuts
Pytanie 83
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. You have a Group Policy object (GPO) named GP01 that contains hundreds ot settings. GP01 is linked to an organizational unit (OU) named OUT. 0U1 contains 200 client computers. You plan to unlink GP01 from OU1. You need to identify which GPO settings will be removed from the computers after GP01 is unlinked from OUT. Which two GPO settings should you identify? (Each correct answer presents part ot the solution. Choose two.)
The managed Administrative Template settings
The System Services security settings
The Restricted Groups security settings
The Event Log security settings
The unmanaged Administrative Template settings
Pytanie 84
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. The domain contains 500 client computers that run Windows 8.1 Enterprise and Microsoft Office 2013. You implement a Group Policy central store. You need to modify the default Microsoft Office 2013 Save As location for all client computers. The solution must minimize administrative effort. What should you configure in a Group Policy object (GPO)?
The Administrative Templates
The Group Policy preferences
An application control policy
The Software Installation settings
Pytanie 85
Your network contains an Active Directorydomain named contoso.com. All domain controllers run Windows Server 2012 R2. The domain contains 200 Group Policy objects (GPOs). An administrator named Admin1 must be able to add new WMI filters from the Group Policy Management Console (GPMC). You need to delegate the required permissions to Admin1. The solution must minimize the number of permissions assigned to Admin1. What should you do?
From Group Policy Management, assign Creator Owner to Admin1 for the WMI Filters container
From Group Policy Management, assign Fuli control to Admin1 for the WMI Filters container
From Active Directory Users and Computers, add Admin1 to the Domain Admins group
From Active Directory Users and Computers, add Admin1 to the WinRMRemoteWMIUsers_group
Pytanie 86
Your network contains two DNS servers named Server1 and Server2 that run Windows Server 2012 R2. Server1 hosts a primary zone for contoso.com. Server2 hosts a secondary zone for contoso.com. You need to ensure that Server2 replicates changes to the contoso.com zone every five minutes. Which setting should you modify in the start of authority (SOA) record?
Expires after
Minimum (default) TTL
Refresh interval
Retry interval
Pytanie 87
Your network contains two Active Directory domains named contoso.com and adatum.com. The network contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the DNS Server server role installed. Server1 has a copy of the contoso.com DNS zone. You need to configure Server1 to resolve names in the adatum.com domain. The solution must meet the following requirements: Prevent the need to change the configuration of the current name servers that host zones for adatum.com. Minimize administrative effort. Which type of zone should you create?
Stub
Reverse lookup
Primary
Secondary
Pytanie 88
Your network contains an Active Directory domain named contoso.com. The domain contains six domain controllers named DC1, DC2, DC3, DC4, DC5, and DC6. Each domain controller has the DNS Server server role installed and hosts an Active Directory-integrated zone for contoso.com. You plan to create a new Active Directory-integrated zone named litwareinc.com that will be used for testing. You need to ensure that the new zone will be available only on DC5 and DC6. What should you do first?
Change the zone replication scope
Create an application directory partition
Create an Active Directory site link
Create an Active Directory connection object
Pytanie 89
Your network contains an Active Directory domain named contoso.com. The domain contains a server named NPS1 that has the Network Policy Server server role installed. All servers run Windows Server 2012 R2. You install the Remote Access server role on 10 servers. You need to ensure that all of the Remote Access servers use the same network policies. Which two actions should you perform? (Each correct answer presents part ot the solution. Choose two.)
On NPS1, create a remote RADIUS server group. Add all ot the Remote Access servers to the remote RADIUS server group
Configure each Remote Access server to use the Routing and Remote Access service (RRAS) to authenticate connection requests
On NPS1, create a new connection request policy and add a Tunnel-Type and a Service-Type condition
Configure each Remote Access server to use a RADIUS server named NPS1
On NPS1, create a RADIUS client template and use the template to create RADIUS clients
Pytanie 90
Your network contains a server named Server1 that has the Network Policy and Access Services server role installed. All ot the network access servers forward connection requests to Server1. You create a new network policy on Server1. You need to ensure that the new policy applies only to connection requests from the 192.168.0.0/24 subnet. What should you do?
Set the Called Station ID constraint to 192.168.0
Set the Client IP4 Address condition to 192.168.0.0/24
Set the Client IP4 Address condition to 192.168.0
Set the Called Station ID constraint to 192.168.0.0/24
Pytanie 91
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Network Policy and Access Services server role installed. You plan to deploy 802. 1x authentication to secure the wireless network. You need to identify which Network Policy Server (NPS) authentication method supports certificate-based mutual authentication for the 802.1x deployment. Which authentication method should you identify?
PEAP-MS-CHAPv2
MS-CHAP
EAP-TLS
MS-CHAP v2
Pytanie 92
Your network contains an Active Directory domain named contoso.com. The domain contains client computers that run either Windows XP or Windows 8. Network Policy Server (NPS) is deployed to the domain. You plan to create a system health validator (SHV). You need to identify which policy settings can be applied to all ot the computers. Which three policy settings should you identify? (Each correct answer presents part ot the solution. Choose three.)
Antivirus is up to date
Automatic updating is enabled
An antispyware application is on
Antispyware is up to date
A firewall is enabled for all network connections
Pytanie 93
You manage a server that runs Windows Server 2012 R2. The server has the Windows Deployment Services server role installed. You start a virtual machine named VM1 as shown in the exhibit. (Click the Exhibit button.) You need to configure a pre-staged device for VM1 in the Windows Deployment Services console. Which two values should you assign to the device ID? (Each correct answer presents a complete solution. Choose two.)
979708BF-C04B-4525-9FE0-C4150BB6C618
00155D000F1300000000000000000000
0000000000000000000000155D000F13
979708BFC04B45259FE0C4150BB6C618
00000000-0000-0000-0000-C4150BB6C618
Pytanie 94
You have a server named Server1 that runs Windows Server 2012 R2. On Server1, you configure a custom Data Collector Set (DCS) named DCS1. DCS1 is configured to store performance log data in C:\Logs. You need to ensure that the contents of C:\Logs are deleted automatically when the folder reaches 100 MB in size. What should you configure?
A File Server Resource Manager (FSRM) file screen on the C:\Logs folder
A schedule for DCS1
The Data Manager settings of DCS1
A File Server Resource Manager (FSRM) quota on the C:\Logs folder
Pytanie 95
You have Windows Server 2012 R2 installation media that contains a file named Install.wim. You need to identify which images are present in Install.wim. What should you do?
Run imagex.exe and specify the /verify parameter
Run dism.exe and specify the /get-mountedwiminfo parameter
Run dism.exe and specify the /get-imageinfo parameter
Run imagex.exe and specify the /ref parameter
Pytanie 96
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2008 R2. You plan to test Windows Server 2012 R2 by using native-boot virtual hard disks (VHDs). You attach a new VHD to Server1. You need to install Windows Server 2012 R2 in the VHD. What should you do?
Run imagex.exe and specify the /append parameter
Run imagex.exe and specify the /export parameter
Run dism.exe and specify the /append-image parameter
Run dism.exe and specify the /apply-image parameter
Pytanie 97
Your network contains an Active Directory domain named contoso.com. The domain contains a member server named Server1. All servers run Windows Server 2012 R2. You need to collect the error events from all of the servers on Server1. The solution must ensure that when new servers are added to the domain, their error events are collected automatically on Server1. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)
From a Group Policy object (GPO), configure the Configure target Subscription Manager setting
From a Group Policy object (GPO), configure the Configure forwarder resource usage setting
On Server1, create a source computer initiated subscription
On Server1, create a collector initiated subscription
Pytanie 98
Your network contains a Hyper-V host named Server1 that hosts 20 virtual machines. You need to view the amount of memory resources and processor resources each virtual machine uses currently. Which tool should you use on Server1 ?
Resource Monitor
Task Manager
Hyper-V Manager
Windows System Resource Manager (WSRM)
Pytanie 99
You have a server named WSUS1 that runs Windows Server 2012 R2. WSUS1 has the Windows Server Update Services server role installed and has one volume. You add a new hard disk to WSUS1 and then create a volume on the hard disk. You need to ensure that the Windows Server Update Services (WSUS) update files are stored on the new volume. What should you do?
From the Update Services console, run the Windows Server Update Services Configuration Wizard
From a command prompt, run wsusutil.exe and specify the export parameter
From a command prompt, run wsusutil.exe and specify the movecontent parameter
From the Update Services console, configure the Update Files and Languages option
Pytanie 100
Your company has a main office and two branch offices. The main office is located in Seattle. The two branch offices are located in Montreal and Miami. Each office is configured as an Active Directory site. The network contains an Active Directory domain named contoso.com. Network traffic is not routed between the Montreal office and the Miami office. You implement a Distributed File System (DFS) namespace named \\contoso.com\public. The namespace contains a folder named Folder1. Folder1 has a folder target in each office. You need to configure DFS to ensure that users in the branch offices only receive referrals to the target in their respective office or to the target in the main office. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)
Set the Advanced properties of the folder target in the Seattle office to First among targets of eguai cost
Set the Ordering method of \\contoso.com\public to Exclude targets outside of the clienfs site
Set the Advanced properties of the folder target in the Seattle office to Last among targets of eguai cost
Set the Advanced properties of the folder target in the Seattle office to Last among all targets
Set the Ordering method of \\contoso.com\public to Random order
Set the Ordering method of \\contoso.com\public to Lowest cost
Pytanie 101
You have a server named Server 1. You enable BitLocker Drive Encryption (BitLocker) on Server 1. You need to change the password for the Trusted Platform Module (TPM) chip. What should you run on Server1 ?
tpmvscmgr.exe
Set-TpmOwnerAuth
Manage-bde.exe
bdehdcfg.exe
Pytanie 102
You have a file server that has the File Server Resource Manager role service installed. You open the File Server Resource Manager console as shown in the exhibit. (Click the Exhibit button. You need to ensure that all ot the folders in Folder1 have a 100-MB quota limit. What should you do?
Modify the quota properties ot Folder1
Create a new quota for Folder1
Run the Update-FsrmAutoOuotacmdlet
Run the Update FsrmOuotacmdlet
Pytanie 103
Your network contains an Active Directory forest named contoso.com. The domain contains three servers. The servers are configured as shown in the following table. You need to identify which server role must be deployed to the network to support the planned implementation. Which role should you identify?
Windows Deployment Services
Active Directory Rights Management Services
Network Policy and Access Services
Volume Activation Services
Pytanie 104
Your network contains an Active Directory domain named contoso.com. The domain contains five servers. The servers are configured as shown in the following table. All desktop computers in contoso.com run Windows 8 and are configured to use BitLocker Drive Encryption (BitLocker) on all local disk drives. You need to deploy the Network Unlock feature. The solution must minimize the number ot features and server roles installed on the network. To which server should you deploy the feature?
Server5
Server1
Server3
Server2
Server4
Pytanie 105
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed. Server1 has a folder named Folder1 that is used by the human resources department. You need to ensure that an email notification is sent immediately to the human resources manager when a user copies an audio file or a video file to Folder1. What should you configure on Server1 ?
a file screen exception
a storage report task
a file screen
a file group
Pytanie 106
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1. You run ntdsutil as shown in the exhibit. (Click the Exhibit button.) You need to ensure that you can access the contents ot the mounted snapshot. What should you do?
From a command prompt, run dsamain.exe -dbpath c:\ $snap_201204131056_volumec$\windows\ntds\ntds. dit -Idapport 389
From the snapshot context of ntdsutil, run mount {79f94f82-5926-4f44-8af0-2f56d827a57d}
From a command prompt, run dsamain.exe -dbpath c:\ $snap_201204131056_volumec$\windows\ntds\ntds. dit -Idapport 33389
From the snapshot context of ntdsutil, run activate instance
Pytanie 107
Your network contains an Active Directory domain named contoso.com. The domain contains a read-only domain controller (RODC) named R0DC1. You create a global group named RODC_Admins. You need to provide the members of RODC_Admins with the ability to manage the hardware and the software on R0DC1. The solution must not provide RODC_Admins with the ability to manage Active Directory objects. What should you do?
From Active Directory Sites and Services, run the Delegation of Control Wizard
From a command prompt, run the dsadd computer command
From a command prompt, run the dsmgmt local roles command
From Active Directory Site and Services, configure the Security settings of the R0DC1 server object
Pytanie 108
Your network contains an Active Directory domain named contoso.com. The domain contains a virtual machine named Server1 that runs Windows Server 2012 R2. Server1 has a dynamically expanding virtual hard disk that is mounted to drive E. You need to ensure that you can enable BitLocker Drive Encryption (BitLocker) on drive E. Which command should you run?
manage-bde -lock e:
manage-bde -on e:
manage-bde -protectors -add c: -startup e:
manage-bde -protectors -add e: -startupkey c:
Pytanie 109
Your network contains an Active Directory domain named contoso.com. The domain contains a file server named Server1 that runs Windows Server 2012 R2. You view the effective policy settings ot Server1 as shown in the exhibit. (Click the Exhibit button.) On Server1, you have a folder named C:\Share1 that is shared as Share1. Sharel contains confidential data. A group named Groupi has fuli control ot the content in Share1. You need to ensure that an entry is added to the event log whenever a member ot Groupi deletes a file in Share1. What should you configure?
the Audit File Share setting ot Servers GPO
the Security settings ot C:\Share1
the Sharing settings ot C:\Share1
the Audit File System setting ot Servers GPO
Pytanie 110
You have a failover cluster that contains five nodes. All ot the nodes run Windows Server 2012 R2. All of the nodes have BitLocker Drive Encryption (BitLocker) enabled. You enable BitLocker on a Cluster Shared Volume (CSV). You need to ensure that all ot the cluster nodes can access the CSV Which cmdlet should you run next?
Enable BitLockerAutoUnlock
Remove-BitLockerKeyProtector
Add-BitLockerKeyProtector
Unblock-Tpm
Pytanie 111
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server role installed. You need to configure the ports on Server1 to ensure that client computers can establish VPN connections to Server1 by using TCP port 443. What should you modify? To answer, select the appropriate object in the answer area.
WAN Miniport (L2TP)
WAN Miniport (IKEv2)
WAN Miniport (PPPOE)
WAN Miniport (PPTP)
WAN Miniport (SSTP)
Pytanie 112
Your network contains an Active Directory domain named contoso.com. You have several Windows PowerShell scripts that execute when users log on to their client computer. You need to ensure that all of the scripts execute completely before the users can access their desktop. Which setting should you configure? To answer, select the appropriate setting in the answer area.
Run Windows PowerShell scripts first at computer startup
Run startup scripts asynchronously
Run logon scripts synchronously
Display instructions in shutdown scripts as they run
Allow togon scripts when NetBIOS or WINS is disabled
Run Windows PowerShell scripts first at user logon, logoff
Display instructions in startup scripts as they run
Specify maximum wait time for Group Policy scripts
Pytanie 113
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server role installed. You have a client named Client1 that is configured as an 802. IX supplicant. You need to configure Server1 to handle authentication requests from Client1. The solution must minimize the number ot authentication methods enabled on Server1. Which authentication method should you enable? To answer, select the appropriate authentication method in the answer area.
Encrypted authentication (CHAP)
Microsoft encrypted authentication version 2 (MS-CHAP v2)
Allow remote systems to connect without authentication
Extensible authentication protocot (EAP)
Unencrypted password (PAP)
Allow machine certificate authentication for IKEv2
Pytanie 114
Your network contains an Active Directory domain named contoso.com. All DNS servers host a DNS zone named adatum.com. The adatum.com zone is not Active Directory-integrated. An administrator modifies the start ot authority (SOA) record for the adatum.com zone. After the modification, you discover that when you add or modify DNS records in the adatum.com zone, the changes are not transferred to the DNS servers that host secondary copies ot the adatum.com zone. You need to ensure that the records are transferred to all the copies ot the adatum.com zone. What should you modify in the SOA record for the adatum.com zone? To answer, select the appropriate setting in the answer area.
Primary server
TTL for this record
Responsible person
Expires after
Refresh interval
Serial number
Retry interval
Pytanie 115
Your network contains an Active Directory domain named contoso.com. You implement DirectAccess. You need to view the properties ot the DirectAccess connection. Which connection properties should you view? To answer, select the appropriate connection properties in the answer area.
5
2
1
3
4
Pytanie 116
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has two network adapters and is located in a perimeter network. You need to install the RIP version 2 routing protocol on Server1. Which node should you use to add the RIP version 2 routing protocol? To answer, select the appropriate node in the answer area.
IPv4
IPv6/General
NAT
Network interfaces
IPv4/General
Ports
IGMP
Static Routes
IPv6/Static Routes
Remote Acces logging & Policies
Remote Access Clients (0)
IPv6/DHCP Relay Agent
DHCP Relay Agent
Pytanie 117
You have a server named Server1 that has the Web Server (IIS) server role installed. You obtain a Web Server certificate. You need to configure a website on Server1 to use Secure Sockets Layer (SSL). To which store should you import the certificate? To answer, select the appropriate store in the answer area.
Certificates (local Computer) \ Trusted Publishers
Certificates (local Computer) \ Trusted People
Certificates (local Computer) \ Third-Party Root Certification Authorities
Certificates (local Computer) \ Untrusted Certificates
Certificates - Current Use \ Third-Party Root Certification Authorities
Certificates - Current Use \ Enterprise Trust
Certificates - Current User \ Personal
Certificates (local Computer) \ Intermediate Certification Authorities
Certificates - Current Use \ Untrusted Certificates
Certificates (local Computer) \ Trusted Root certification Authorities
Certificates (local Computer) \ Enterprise Trust
Certificates - Current Use \ Trusted People
Certificates - Current Use \ Trusted Root certification Authorities
Certificates - Current Use \ Trusted Publishers
Certificates (local Computer) \ Personal
Certificates - Current Use \ Intermediate Certification Authorities
Pytanie 118
Your network contains an Active Directory named contoso.com. You have users named User1 and user2. The Network Access Permission for User1 is set to Control access through NPS Network Policy. The Network Access Permission for User2 is set to Allow access. A policy named Policyl is shown in the Policyl exhibit. (Click the Exhibit button. Wpisz yes/no
Pytanie 119
Your network contains an Active Directory domain named adatum.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 is configured as a Network Policy Server (NPS) server and as a DHCP server. You need to log all DHCP clients that have Windows Firewall disabled. Which three actions should you perform in sequence? To answer, move the three appropriate actions from the list ot actions to the answer area and arrange them in the correct order. Wpisz od 1-5
Pytanie 120
You have a WIM file that contains an image of Windows Server 2012 R2. Recently, a technician applied a Microsoft Standalone Update Package (MSU) to the image. You need to remove the MSU package from the image. Which three actions should you perform in sequence? To answer, move the appropriate three actions from the list of actions to the answer area and arrange them in the correct order. Wpisz od 1 do 5 (cyfry)
Pytanie 121
Your company has two offices. The offices are located in Montreal and Seattle. The network contains an Active Directory domain named contoso.com. The domain contains servers named Server1 and Server2. Server1 is located in the Seattle office. Server2 is located in the Montreal office. Both servers run Windows Server 2012 R2 and have the Windows Server Update Services (WSUS) server role installed. You need to configure Server2 to download updates that are approved on Server1 only. What cmdlet should you run? To answer, select the appropriate options in the answer area. Wpisz 1-5
Pytanie 122
Your network contains an Active Directory domain named contoso.com. The domain contains three servers named Server2, Server3, and Server4. Server2 and Server4 host a Distributed File System (DFS) namespace named Namespace1. You open the DFS Management console as shown in the exhibit. (Click the Exhibit button.)
Pytanie 123
Your network contains an Active Directory domain named contoso.com. You create an organizationai unit (OU) named OU1 and a Group Policy object (GPO) named GP01. You link GP01 to OU1. You move several file servers that store sensitive company documents to OU1. Each file server contains more than 40 shared folders. You need to audit all of the failed attempts to access the fiies on the file servers in OU1. The solution must minimize administrative effort. Which two audit policies should you configure in GP01 ? To answer, select the appropriate two objects in the answer area.
Account Logon
Detailed Tracking
Global Object Access Auditing
DS Access
Object Access
Account Management
Policy Change
Privilege Use
Logon/Logoff
System
Pytanie 124
Your network contains an Active Directory domain named contoso.com. The domain contains 30 user accounts that are used for network administration. The user accounts are members of a domain global group named Group1. You identify the security requirements for the 30 user accounts as shown in the following table. You need to identify which settings must be implemented by using a Password Settings object (PSO) and which settings must be implemented by modifying the properties of the user accounts. What should you identify? To answer, configure the appropriate settings in the dialog box in the answer area. Wpisz 1-2
User cannot change passwor
2
Minimum password length
1
Enforce password history
1
Account is sensitiue and cannot be delegated
2
Pytanie 125
Your network contains 25 Web servers that run Windows Server 2012 R2. You need to configure auditing policies that meet the following requirements: ■ Generate an event each time a new process is created. ■ Generate an event each time a user attempts to access a file share. Whitch two auditing policies should you configure? To answer, select the appropriate two auditing policies in the answer area.
Global Object Access Auditing
Object Access
System
DS Access
Detailed Tracking
Account Logon
Account Management
Privilege Use
Policy Change
Logon/Logoff
Pytanie 126
Your network contains an Active Directory domain named contoso.com. You need to create a certificate template for the BitLocker Drive Encryption (BitLocker) Network Unlock feature. Which Cryptography setting of the certificate template shouid you modify? To answer, select the appropriate setting in the answer area.
Minimum key size
Provider Category
Providers
Choose which cryptographic providers can be used for reguests
Pytanie 127
You have a file server named Server1 that runs Windows Server 2012 R2. A user named Userl is assigned the modify NTFS permission to a folder named C:\shares and all of the subfolders of C:\shares. On Server1, you open File Server Resource Manager as shown in the exhibit. (Click the Exhibit button.) Wpisz od 1-4
Pytanie 128
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server role installed. You need to configure the ports on Server1 to ensure that client computers can establish VPN connections to Server1. The solution must NOT require the use of certificates or pre-shared keys. What should you modify? To answer, select the appropriate object in the answer area.
L2TP
SSTP
PPPOE
PPTP
IKEv2
Pytanie 129
You have a server named Server1 that has the Network Policy and Access Services server role installed. You plan to configure Network Policy Server (NPS) on Server1 to use certificate-based authentication for VPN connections. You obtain a certificate for NPS. You need to ensure that NPS can perform certificate-based authentication. To which store should you import the certificate? To answer, select the appropriate store in the answer area.
Certificates - Current User / Personal
Certificates (Local Computer) / Personal
Pytanie 130
Your network contains an Active Directory domain named contoso.com. The domain contains a member server that runs Windows Server 2012 R2 and has the Windows Deployment Services (WDS) server role installed. You create a new muiticast session in WDS and connect 50 client computers to the session. When you open the Windows Deployment Services console, you discover that all ot the computers are listed as pending devices. You need to ensure that any ot the computers on the network can join a muiticast transmission without requiring administrator approval. What should you configure? To answer, select the appropriate tab in the answer area.
Boot
Advanced
DHCP
TFTP
AD DS
PXE Response
Multicast
Client
Network
General
Pytanie 131
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The domain contains a server named Server1 that has the Network Policy Server server role and the Remote Access server role installed. The domain contains a server named Server2 that is configured as a RADIUS server. Server1 provides VPN access to external users. You need to ensure that all of the VPN connections to Server1 are logged to the RADIUS server on Server2. What should you run?
Set-RemoteAccessAccounting -EnableAccountingType lnbox -AccountingOnOffMsg Enabled
Add-RemoteAccessRadius -ServerName Server2 -AccountingOnOffMsg Enabled -SharedSecret "Secret" -Purpose Accounting
Set-RemoteAccessAccounting -AccountingOnOffMsg Enabled -AccountingOnOffMsg Enabled
Add-RemoteAccessRadius -ServerNameServer1 -AccountingOnOffMsg Enabled -SharedSecret "Secret" -Purpose Accounting
Pytanie 132
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. On all of the domain controllers, Windows is installed in C:\Windows and the Active Directory database is located in D:\Windows\NTDS\. All of the domain controllers have a third-party application installed. The operating system fails to recognize that the application is compatible with domain controller cloning. You verify with the application vendor that the application supports domain controller cloning. You need to prepare a domain controller for cloning. What should you do?
In D:\Windows\NTDS\, create an XML file named CustomDCCIoneAllowList.xml and add the application information to the file
In the root of a USB flash drive, add the application information to an XML file named DefaultDCCIoneAllowList.xml
In D:\Windows\NTDS\, create an XML file named DCCIoneConfig.xml and add the application information to the file
In C:\Windows\System32\Sysprep\Actionfiles\, add the application information to an XML file named Respecialize.xml
Pytanie 133
Your network contains an Active Directory domain named contoso.com. You create a user account named User1. The properties of User1 are shown in the exhibit. (Click the Exhibit button.) You plan to use the User1 account as a service account. The service will forward authentication requests to other servers. You need to ensure that you can view the Delegation tab from the properties of the User1 account. What should you do first?
Configure the Name Mappings of User1
Configure a Service Principal Name (SPN) for User1
Modify the user principal name (UPN) of User1
Modify the Security settings of User1
Pytanie 134
Your network contains an Active Directory forest named contoso.com. The forest functional level is Windows Server 2012 R2. The forest contains a single domain. You create a Password Settings object (PSO) named PS01. You need to delegate the rights to apply PS01 to the Active Directory objects in an organizational unit named 0U1. What should you do?
From Active Directory Administrative Center, modify the security settings of PS01
From Active Directory Administrative Center, modify the security settings of 0U1
From Group Policy Management, create a Group Policy object (GPO) and link the GPO to OU1
From Active Directory Users and Computers, run the Delegation of Control Wizard
Pytanie 135
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The domain contains two servers. The servers are configured as shown in the following table. All client computers run Windows 8 Enterprise. You plan to deploy Network Access Protection (NAP) by using IPSec enforcement. A Group Policy object (GPO) named GP01 is configured to deploy a trusted server group to all ot the client computers. You need to ensure that the client computers can discover HRA servers automatically. Which three actions should you perform? (Each correct answer presents part ot the solution. Choose three.)
On DC1, create a service location (SRV) record
On all ot the client computers, configure the EnableDiscovery registry key
On DC1, create an alias (CNAME) record
In a GPO, modify the Request Policy setting for the NAP Client Configuration
On Server2, configure the EnableDiscovery registry key
Pytanie 136
Your network contains two Active Directory forests named contoso.com and adatum.com. The contoso.com forest contains a server named Server1.contoso.com. The adatum.com forest contains a server named server2. adatum.com. Both servers have the Network Policy Server role service installed. The network contains a server named Server3. Server3 is located in the perimeter network and has the Network Policy Server role service installed. You plan to configure Server3 as an authentication provider for several VPN servers. You need to ensure that RADIUS requests received by Server3 for a specific VPN server are always forwarded to Server1 .contoso.com. Which two should you configure on Server3? (Each correct answer presents part ot the solution. Choose two.)
Network policies
Connection authorization policies
Connection request policies
Remote RADIUS server groups
Remediation server groups
Pytanie 137
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Network Policy and Access Services server role installed. Your company's security policy requires that certificate-based authentication must be used by some network services. You need to identify which Network Policy Server (NPS) authentication methods comply with the security policy. Which two authentication methods should you identify? (Each correct answer presents part ot the soiution. Choose two.)
EAP-TLS
MS-CHAPv2
PEAP-MS-CHAP v2
Chap
MS-CHAP
Pytanie 138
Your network contains an Active Directory domain named adatum.com. The domain contains a file server named Server1 that runs Windows Server 2012 R2. All client computers run Windows 7. You need to ensure that user settings are saved to \\Server1\Users\. What should you do?
From the properties of each user account, configure the Home folder settings
From a Group Policy object (GPO), configure the Drive Maps preference
From the properties of each user account, configure the User profile settings
From a Group Policy object (GPO), configure the Folder Redirection settings
Pytanie 139
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. An organizational unit (OU) named OU1 contains 200 client computers that run Windows 8 Enterprise. A Group Policy object (GPO) named GP01 is linked to OU1. You make a change to GP01. You need to force all of the computers in OU1 to refresh their Group Policy settings immediately. The solution must minimize administrative effort. Which tool should you use?
Group Policy Management Console (GPMC)
Server Manager
Active Directory Users and Computers
The Gpupdate command
Pytanie 140
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012 R2. All client computers run Windows 8 Enterprise. DC1 contains a Group Policy object (GPO) named GP01. You need to update the PATH variable on all of the client computers. Which Group Policy preference should you configure?
Environment
Services
Ini Files
Data Sources
Pytanie 141
Your company has a main office and a branch office. The main office contains a server that hosts a Distributed File System (DFS) replicated folder. You plan to implement a new DFS server in the branch office. You need to recommend a solution that minimizes the amount of network bandwidth used to perform the initial synchronization of the folder to the branch office. You recommend using the Export-DfsrClone and Import-DfsrCIonecmdlets. Which additional command or cmdlet should you include in the recommendation?
ync-DfsReplicationGroup
Synchost.exe
Export-BcCachePackage
Robocopy.exe
Pytanie 142
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2. Both servers run Windows Server 2012 R2. Both servers have the File and Storage Services server role, the DFS Namespaces role service, and the DFS Replication role service installed. Server1 and Server2 are part of a Distributed File System (DFS) Replication group named Group1. Server1 and Server2 are separated by a low-speed WAN connection. You need to limit the amount of bandwidth that DFS can use to replicate between Server1 and Server2. What should you modify?
The referral ordering of the namespace
The schedule of the replication group
The cache duration of the namespace
The staging quota of the replicated folder
Pytanie 143
You have a file server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed. Files created by users in the human resources department are assigned the Department classification property automatically. You are configuring a file management task named Task1 to remove user files that have not bene accessed for 60 days or more. You need to ensure that Task1 only removes files that have a Department classification property of human resources. The solution must minimize administrative effort. What should you configure on Task1 ?
Create a condition
Configure a file screen
Create a custom action
Create a classification rule
Pytanie 144
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. You plan to use fine-grained password policies to customize the password policy settings of contoso.com. You need to identify to which Active Directory object types you can directly apply the finegrained password policies. Which two object types should you identify? (Each correct answer presents part ot the solution. Choose two.)
Global groups
computers
Domain local groups
Users
Universal groups
Pytanie 145
You have a cluster named Cluster1 that contains two nodes. Both nodes run Windows Server 2012 R2. Cluster1 hosts a virtual machine named VM1 that runs Windows Server 2012 R2. You configure a custom service on VM1 named Service1. You need to ensure that VM1 will be moved to a different node if Service1 fails. Which cmdlet should you run on Cluster1?
Add-ClusterVmMonitoredltem
Add-ClusterGenericServiceRole
Set-ClusterResourceDependency
Enable VmResourceMetering
Pytanie 146
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Windows Server Update Services server role installed. You need to configure Windows Server Update Services (WSUS) to support Secure Sockets Layer (SSL). Which three actions should you perform? (Each correct answer presents part ot the solution. Choose three.)
Install a server certificate
Run the iisreset.exe command
From Internet Information Services (IIS) Manager, modify the bindings ot the WSUS website
Run the wsusutil.exe command
From Internet Information Services (IIS) Manager, modify the connection strings ot the WSUS website
Pytanie 147
You have a server named Server1 that runs Windows Server 2012 R2. You discover that the performance of Server1 is poor. The results ot a performance report generated on Server1 are shown in the following table You need to identify the cause of the performance issue. What should you identify?
Driver malfunction
Excessive paging
Insufficient RAM
NUMAfragmentation
Pytanie 148
Your network contains an Active Directory domain named contoso.com. The domain contains two member servers named Server1 and Server2. All servers run Windows Server 2012 R2. Server1 and Server2 are nodes in a Hyper-V cluster named Cluster1. Cluster1 hosts 10 virtual machines. All of the virtual machines run Windows Server 2012 R2 and are members of the domain. You need to ensure that the first time a service named Service1 fails on a virtual machine, the virtual machine is moved to a different node. You configure Service1 to be monitored from Failover Cluster Manager. What should you configure on fhe virtual machine?
From the Recovery settings of Service1, set the First failure recovery action to Take No Action
From fhe General settings, modify fhe Startup type
From fhe General settings, modify the Service status
From the Recovery settings of Service1, set the First failure recovery action to Restart the Service
Pytanie 149
You have a DNS server named Server1 that runs Windows Server 2012 R2. On Server1, you create a DNS zone named contoso.com. You need to specify the email address of the person responsible for the zone. Which type of DNS record should you configure?
Mailbox(MB)
Host information (HINFO)
Start of authority (SOA)
Mail exchanger (MX)
Pytanie 150
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. All of the DNS servers in both of the domains run Windows Server 2012 R2. The network contains two servers named Server1 and Server2. Server1 hosts an Active Directory-integrated zone for contoso.com. Server2 hosts an Active Directory-integrated zone for fabrikam.com. Server1 and Server2 connect to each other by using a WAN link. Client computers that connect to Server1 for name resolution cannot resolve names in fabrikam.com. You need to configure Server1 to resolve names in fabrikam.com. The solution must NOT require that changes be made to the fabrikam.com zone on Server2. What should you create?
A zone delegation
A trust anchor
A secondary zone
A stub zone
Pytanie 151
Your network is configured as shown in the exhibit. (Click the Exhibit button.) Server1 regularly accesses Server2. You discover that all of the connections from Server1 to Server2 are routed through Router1. You need to optimize the connection path from Server1 to Server2. Which route command should you run on Server1?
Route add-p 10.10.10.12 MASK 255.255.255.0 10.10.10.1 METRIC 100
Route add -p 10.10.10.0 MASK 255.255.255.0 10.10.10.1 METRIC 50
Route add-p 10.10.10.12 MASK 255.255.255.0 10.10.10.0 METRIC 50
Route add-p 10.10.10.0 MASK 255.255.255.0 172.23.16.2 METRIC 100
Pytanie 152
Your network contains an Active Directory domain named adatum.com. You have a standard primary zone named adatum.com. You need to provide a user named User1 the ability to modify records in the zone. Other users must be prevented from modifying records in the zone. What should you do first?
Run the New Delegation Wizard for the zone
From the properties ot the zone, modify the start ot authority (SOA) record
Run the Zone Signing Wizard for the zone
From the properties ot the zone, change the zone type
Pytanie 153
Your network contains an Active Directory domain named contoso.com. The domain contains a file server named Server1 that runs Windows Server 2012 R2. You view the effective poiicy settings of Server1 as shown in the exhibit. (Click the Exhibit button.)
In Servers GPO, modify the Audit Policy settings
In Servers GPO, modify the Advanced Audit Configuration settings
On Server1, attach a task to the security log
On Server1, attach a task to the system log
Pytanie 154
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The network contains several group Managed Service Accounts that are used by four member servers. You need to ensure that if a group Managed Service Account resets a password of a domain user account, an audit entry is created. You create a Group Policy object (GPO) named GP01. What should you do next?
In GP01, configure the Advanced Audit Policy Configuration settings for Audit User Account Management. Link GP01 to the Domain Controllers organizational unit (OU)
In GP01, configure the Advanced Audit Policy Configuration settings for Audit User Account Management. Move the member servers to a new organizational unit (OU). Link GP01 to the new OU
In GP01, configure the Advanced Audit Policy Configuration settings for Audit Sensitive PriviIege Use. Link GP01 to the Domain Controllers organizational unit (OU)
In GP01, configure the Advanced Audit Policy Configuration settings for Audit Sensitive Privilege Use. Move the member servers to a new organizational unit (OU). Link GP01 to the new OU
Pytanie 155
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed. You configure a guota threshold as shown in the exhibit. (Click the Exhibit button.) You need to ensure that a user named User1 receives an email notification when the threshold is exceeded. What should you do?
Create a classification rule
Modify the members of the Performance Log Users group
Configure the File Server Resource Manager Options
Create a performance counter alert
Pytanie 156
Your company has a main office and a branch office. The main office is located in Seattle. The branch office is located in Montreal. Each office is configured as an Active Directory site. The network contains an Active Directorydomain named adatum.com. The Seattle office contains a file server named Server1. The Montreal office contains a file server named Server2. The servers run Windows Server 2012 R2 and have the File and Storage Services server role, the DFS Namespaces role service, and the DFS Replication role service installed. Server1 and Server2 each have a share named Share1 that is replicated by using DFS Replication. You need to ensure that users connect to the replicated folder in their respective office when they connect to \\contoso.com\Share1. Which three actions should you perform? (Each correct answer presents part of the solution. Choose three.)
Create a namespace
Modify the Referrals settings
Create a new topology
Create a replication connection
Share and publish the replicated folder
Pytanie 157
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed. Server1 has a folder named Folder1 that is used by the sales department. You need to ensure that an email notification is sent to the sales manager when a File Screening Audit report is generated. What should you configure on Server1 ?
a file screen exception
a storage report task
a file group
a file screen
Pytanie 158
Your network contains an Active Directory domain named adatum.com. The domain contains 10 domain controllers that run Windows Server 2012 R2. You plan to create a new Active Directory-integrated zone named contoso.com. You need to ensure that the new zone will be replicated to only four of the domain controllers. What should you do first?
Create an application directory partition
Create an Active Directory site link
Create an Active Directory connection object
Change the zone replication scope
Pytanie 159
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that has the Remote Access server role installed. DirectAccess is implemented on Server1 by using the default configuration. You discover that DirectAccess clients do not use DirectAccess when accessing websites on the Internet. You need to ensure that DirectAccess clients access all Internet websites by using their DirectAccess connection. What should you do?
Configure DirectAccess to enable force tunneling
Disable the DirectAccess Passive Mode policy setting in the DirectAccess Client Settings Group Policy object (GPO)
Configure a DNS suffix search list on the DirectAccess clients
Enable the Route all traffic through the internal network policy setting in the DirectAccess Server Settings Group Policy object (GPO)
Pytanie 160
Your network contains a single Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that hosts the primary DNS zone for contoso.com. All servers dynamically register their host names. You install three new Web servers that host identical copies of your company's intranet website. The servers are configured as shown in the following table You need to use DNS records to load balance name resolution queries for intranet.contoso.com between the three Web servers. What is the minimum number of DNS records that you should create manually?
4
3
1
2
Pytanie 161
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012 R2. You mount an Active Directory snapshot on DC1. You need to expose the snapshot as an LDAP server. Which tool should you use?
Ldp
Dsamain
ADSI Edit
Ntdsutil
Pytanie 162
Your network contains an Active Directorydomain named contoso.com. Domain controllers run either Windows Server 2008, Windows Server 2008 R2, or Windows Server 2012 R2. You have a Password Settings object (PSOs) named PS01. You need to view the settings of PS01. Which tool should you use?
Local Security Policy
Get-ADDefaultDomainPasswordPolicy
Get-ADAccountResultantPasswordReplicationPolicy
Active Directory Administrative Center
Pytanie 163
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. Administrators use client computers that run Windows 8 to perform all management tasks. A central store is configured on a domain controller named DC1. You have a custom administrative template file named App1.admx. App1.admx contains application settings for an application named App1. From a client computer named Computer1, you create a new Group Policy object (GPO) named GP01. You discover that the application settings for App1 fail to appear in GP01. You need to ensure that the App1 settings appear in all ot the new GPOs that you create. What should you do?
From the Defauit Domain Policy, add App1 .admx to the Administrative Templates
Copy App1 .admx to \\Contoso.com\SYSVOL\Contoso.com\Policies\PolicyDefinitions\
Copy App1 .admx to \\Contoso.com\SYSVOL\Contoso.com\StarterGPOs
From the Defauit Domain Controllers Policy, add App1 .admx to the Administrative Templates
Pytanie 164
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Windows Server Update Services server role installed. Server1 stores update files locally in C:\Updates. You need to change the location in which the update files are stored to D:\Updates. What should you do?
From the Update Services console, configure the Update Files and Languages option
From the Update Services console, run the Windows Server Update Services Configuration Wizard
From a command prompt, run wsusutil.exe and specify the movecontent parameter
From a command prompt, run wsusutil.exe and specify the export parameter
Pytanie 165
You have a server named Server1 that runs Windows Server 2012 R2. You create a custom Data Collector Set (DCS) named DCS1. You need to configure Server1 to start DCS1 automatically when the network usage exceeds 70 percent. Which type of data collector should you create?
A performance counter alert
A configuration data collector
A performance counfer data collector
An event trace data collector
Pytanie 166
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Network Policy Server server role installed. You need to allow connections that use 802.1x. What should you create?
A network policy that uses Microsoft Protected EAP (PEAP) authentication
A connection reguest policy that uses EAP-MSCHAP v2 authentication
A network policy that uses EAP-MSCHAP v2 authentication
A connection request policy that uses MS-CHAP v2 authentication
Pytanie 167
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Network Policy Server role service installed. You plan to configure Server1 as a Network Access Protection (NAP) health policy server for VPN enforcement by using the Configure NAP wizard. You need to ensure that you can configure the VPN enforcement method on Server1 successfully. What should you install on Server1 before you run the Configure NAP wizard?
A system health validator (SHV)
The Remote Access server role
A computer certificate
The Host Credential Authorization Protocol (HCAP)
Pytanie 168
Your network contains a single Active Directory domain named contoso.com. The domain contains a member server named Server1 that runs Windows Server 2012 R2. Server1 has the Windows Server updates Services server role installed and is configured to download updates from the Microsoft Update servers. You need to ensure that Server1 downloads express installation files from the Microsoft Update servers. What should you do from the Update Services console?
From the Products and Classifications options, configure the Products settings
From the Update Files and Languages options, configure the Update Files settings
From the Automatic Approvals options, configure the Update Rules settings
From the Products and Classifications options, configure the Classifications settings
Pytanie 169
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server role installed. On Server1, you create a network policy named Policy1. You need to configure Policy1 to ensure that users are added to a VLAN. Which attributes should you add to Policy1?
Tunnel-Type, Tunnel-Password, Tunnel-Server-Auth-ID, and Tunnel-Pvt-Group-ID
Tunnel-Type, Tunnel-Tag, Tunnel-Medium-Type, and Tunnel-Pvt-Group-ID
Tunnel-Tag, Tunnel-Server-Auth-ID, Tunnel-Preference, and Tunnel-Pvt-Group-ID
Tunnel-Tag, Tunnel-Password, Tunnel-Medium-Type, and Tunnel-Preference
Pytanie 170
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2 and has the Network Policy Server role service installed. You need to enable trace logging for Network Policy Server (NPS) on Server1. Which tool should you use?
The Network Policy Server console
The tracert.exe command
The netsh.exe command
The Server Manager console
Pytanie 171
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 has the DHCP Server server role and the Network Policy Server role service installed. Server1 contains three non-overlapping scopes named Scope1, Scope2, and Scope3. Server1 currently provides the same Network Access Protection (NAP) settings to the three scopes. You modify the settings of Scopel as shown in the exhibit. (Click the Exhibit button.) You need to configure Server1 to provide unique NAP enforcement settings to the NAP noncompliant DHCP clients from Scope1. What should you create?
A connection request policy that has the Service Type condition
A network policy that has the Identity Type condition
A network policy that has the MS-Service Class condition
A connection request policy that has the Identity Type condition
Pytanie 172
Your network contains a Network Policy Server (NPS) server named Server1. The network contains a server named SQL1 that has Microsoft SQL Server 2008 R2 installed. All servers run Windows Server 2012 R2. You configure NPS on Server1 to log accounting data to a database on SQL1. You need to ensure that the accounting data is captured if SQL1 fails. The solution must minimize cost. What should you do?
Implement Failover Clustering
Implement database mirroring
Modify the SQL Server Logging properties
Run the Accounting Configuration Wizard
Pytanie 173
Your network has a router named Router1 that provides access to the Internet. You have a server named Server1 that runs Windows Server 2012 R2. Server1 to use Router1 as the default gateway. A new router named Router2 is added to the network. Router2 provides access to the Internet. The IP address of the internal interface on Router2 is 10.1.14.254. You need to configure Server1 to use Router2 to connect to the Internet if Router1 fails. What should you do on Server1 ?
Add 10.1.14.254 as a gateway and set the metric to 500
Add a route for 10.1.14.0/24 that uses 10.1.14.254 as the gateway and set the metric to 500
Add a route for 10.1.14.0/24 that uses 10.1.14.254 as the gateway and set the metric to 1
Add 10.1.14.254 as a gateway and set the metric to 1
Pytanie 174
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1. DC1 is a DNS server for contoso.com. The properties ot the contoso.com zone are configured as shown in the exhibit. (Click the Exhibit button.) The domain contains a server named Server1 that is part of a workgroup named Workgroup. Server1 is configured to use DC1 as a DNS server. You need to ensure that Server1 dynamically registers a host (A) record in the contoso.com zone. What should you configure?
The primary DNS suffix of Server1
The Dynamie updates setting of the contoso.com zone
The Security settings of the contoso.com zone
The workgroup name of Server1
Pytanie 175
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. One of the domain controllers is named DC1. The DNS zone for the contoso.com zone is Active Directory-integrated and has the default settings. A server named Server1 is a DNS server that runs a UNIX-based operating system. You plan to use Server1 as a secondary DNS server for the contoso.com zone. You need to ensure that Server1 can host a secondary copy of the contoso.com zone. What should you do?
From DNS Manager, modify the Zone Transfers settings of the contoso.com zone
From DNS Manager, modify the Advanced settings of DC1
From Windows PowerShell, run the Set-DnsServerForwardercmdlet and specify the contoso.com zone as a target
From DNS Manager, modify the Security settings of DC1
Pytanie 176
Your network contains an Active Directory domain named contoso.com. The domain contains domain controllers that run Windows Server 2008, Windows Server 2008 R2 Windows Server 2012, and Windows Server2012 R2. A domain controller named DC1 runs Windows Server 2012 R2. DC1 is backed up daily. During routine maintenance, you delete a group named Group1. You need to recover Group1 and identity the names of the users who were members ot Group1 prior to its deletion. You want to achieve this goal by using the minimum amount ot administrative effort. What should you do first?
Mount the most recent Active Directory backup
Reactivate the tombstone of Group1
Use the Recycle Bin to restore Group1
Perform an authoritative restore ot Group1
Pytanie 177
Your network contains an Active Directory domain named adatum.com. All domain controllers run Windows Server 2012 R2. The domain contains a virtual machine named DC2. On DC2, you run Get-ADDCCIoningExcludedApplicationlist and receive the output shown in the following table. Name : App1 Type: Service You need to ensure that you can clone DC2. Which two actions should you perform? (Each correct answer presents part ot the solution. Choose two.)
OptionA
OptionB
OptionE
OptionD
OptionC
Pytanie 178
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2. Both servers run Windows Server 2012 R2. Both servers have the File and Storage Services server role, the DFS Namespace role service, and the DFS Replication role service installed. Server1 and Server2 are part of a Distributed File System (DFS) Replication group named Group1. Server1 and Server2 are connected by using a high-speed LAN connection. You need to minimize the amount of processor resources consumed by DFS Replication. What should you do?
Reduce the bandwidth usage
Disable Remote Differential Compression (RDC)
Modify the replication schedule
Modify the staging quota
Pytanie 179
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. All sales users have laptop computers that run Windows 8. The sales computers are joined to the domain. All user accounts for the sales department are in an organizational unit (OU) named Sales_OU. A Group Policy object (GPO) named GPO1 is linked to Sales_OU. You need to configure a dial-up connection for all of the sales users. What should you configure from User Configuration in GPO1 ?
Policies/Administrative Templates/Network/Network Connections
Policies/Administrative Templates/Network/Windows Connect Now
Policies/Administrative Templates/Windows ComponentsAA/indows Mobility Center
Preferences/Control Panel Settings/Network Options
Pytanie 180
Your network contains an Active Directory domain named contoso.com. A user named User1 creates a central store and opens the Group Policy Management Editor as shown in the exhibit. (Click the Exhibit button.) You need to ensure that the default Administrative Templates appear in GPO1. What should you do?
Copy files from %Windir%\Policydefinitions to the central store
Add User1 to the Group Policy Creator Owners group
Configure Security Filtering in GPO1
Link a WMI filter to GPO1
Pytanie 181
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed. Each time a user receives an access-denied message after attempting to access a folder on Server1, an email notification is sent to a distribution list named DL1. You create a folder named Folder1 on Server1, and then you configure custom NTFS permissions for Folder1. You need to ensure that when a user receives an access-denied message while attempting to access Folder1, an email notification is sent to a distribution list named DL2. The solution must not prevent DL1 from receiving notifications about other access-denied messages. What should you do?
From the File Server Resource Manager console, modifythe Email Notifications settings
From File Explorer, modifythe Classification tab ot Folder1
From the File Server Resource Manager console, set a folder management property
From File Explorer, modifythe Customize tab ot Folder1
Pytanie 182
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. An organizational unit (OU) named 0U1 contains 200 client computers that run Windows 8 Enterprise. A Group Policy object (GPO) named GP01 is linked to OU1. You make a change to GP01. You need to force all ot the computers in OU1 to refresh their Group Policy settings immediately. The solution must minimize administrative effort. Which tool should you use?
The Secedit command
Group Policy Object Editor
Server Manager
The lnvoke-GpUpdate cmdlet
Pytanie 183
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. You enable and configure Routing and Remote Access (RRAS) on Server1. You create a user account named User1. You need to ensure that User1 can establish VPN connections to Server1. What should you do?
Modify the Dial-in setting of User1
Modify the members of the Remote Management Users group
Create a connection request policy
Add a RADIUS client
Pytanie 184
Your network is configured as shown in the exhibit. (Click the Exhibit button.) Server1 regularly accesses Server2. You discover that all ot the connections from Server1 to Server2 are routed through Router1. You need to optimize the connection path from Server1 to Server2. Which route command should you run on Server1?
Route add -p 192.168.2.0 MASK 255.255.255.0 192.168.1.2 METRIC 100
Route add-p 192.168.2.12 MASK 255.255.255.0 192.168.2.1 METRIC 100
Route add -p 192.168.2.12 MASK 255.255.255.0 192.168.2.0 METRIC 50
Route add -p 192.168.2.0 MASK 255.255.255.0 192.168.2.1 METRIC 50
Pytanie 185
Your company has a main office and a branch office. The network contains an Active Directory domain named contoso.com. The main office contains a domain controller named DC1 that runs Windows Server 2012 R2. DC1 is a DNS server and hosts a primary zone for contoso.com. The branch office contains a member server named Server1 that runs Windows Server 2012 R2. Server1 is a DNS server and hosts a secondary zone for contoso.com. The main office connects to the branch office by using an unreliable WAN link. You need to ensure that Server1 can resolve names in contoso.com if the WAN link in unavailable for three days. Which setting should you modify in the start of authority (SOA) record?
Minimum (default) TTL
Retry interval
Expires after
Refresh interval
Pytanie 186
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. DirectAccess is deployed to the network. Remote users connect to the DirectAccess server by using a variety of network speeds. The remote users report that sometimes their connection is very slow. You need to minimize Group Policy processing across all wireless wide area network (WWAN) connections. Which Group Policy setting should you configure?
Configure Group Policy slow link detection
Configure wireless policy processing
Change Group Policy processing to run asynchronously when a slow network connection is detected
Configure Direct Access connections as a fast network connection
Pytanie 187
Your network contains an Active Directory domain named contoso.com. All user accounts reside in an organizational unit (OU) named 0U1. All of the users in the marketing department are members of a group named Marketing. All of the users in the human resources department are members of a group named HR. You create a Group Policy object (GPO) named GPO1. You link GP01 to 0U1. You configure the Group Policy preferences of GPO1 to add two shortcuts named Link1 and Link2 to the desktop of each user. You need to ensure that Link1 only appears on the desktop of the users in Marketing and that Link2 only appears on the desktop of the users inHR. What should you configure?
Group Policy Inheritance
WMI Filtering
Security Filtering
Item-level targeting
Pytanie 188
Your network contains an Active Directory domain named adatum.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 is configured as a Network Policy Server (NPS) server and as a DHCP server. You need to ensure that only computers that send a statement ot health are checked for Network Access Protection (NAP) health requirements. Which two settings should you configure? (Each correct answer presents part ot the solution. Choose two.)
The NAS Port Type constraints
The MS-Service Class conditions
The Health Policies conditions
The Called Station ID constraints
The NAP-Capable Computers conditions
Pytanie 189
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed. Each time a user receives an access-denied message after attempting to access a folder on Server1, an email notification is sent to a distribution list named DLL. You create a folder named Folder1 on Server1, and then you configure custom NTFS permissions for Folder1. You need to ensure that when a user receives an access-denied message while attempting to access Folder1, an email notification is sent to a distribution list named DL2. The solution must not prevent DL1 from receiving notifications about other access-denied messages. What should you do?
From the File Server Resource Manager console, create a local classification property
From the File Server Resource Manager console, set a folder management property
From Server Manager, run the New Share Wizard to create a share for Folderl by selecting the SMB Share - Applications option
From the File Server Resource Manager console, modify the Access-Denied Assistance settings
Pytanie 190
Your network contains a single Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. The domain contains 400 desktop computers that run Windows 8 and 10 desktop computers that run Windows XP Service Pack 3 (SP3). All new desktop computers that are added to the domain run Windows 8. All of the desktop computers are located in an organizational unit (OU) named OLU. You create a Group Policy object (GPO) named GPO1. GPO1 contains startup script settings. You link GP01 to OLU. You need to ensure that GPO1 is applied only to computers that run Windows XP SP3. What should you do?
Modify the Security settings ot OU1
Run the Set-GPlnheritance cmdlet and specify the -target parameter
Create and link a WML filter to GPO1
Run the Set-GPLink cmdlet and specify the -target parameter
Pytanie 191
Your network contains an Active Directory domain named contoso.com. The network contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Network Policy and Access Services server role installed. You plan to deploy additional servers that have the Network Policy and Access Services server role installed. You must standardize as many settings on the new servers as possible. You need to identify which settings can be standardized by using Network Policy Server (NPS) templates. Which three settings should you identify? (Each correct answer presents part ot the solution. Choose three.)
network policies
shared secrets
IPfilters
health policies
connection request policies
Pytanie 192
Your network contains an Active Directory domain named contoso.com. Network Policy Server (NPS) is deployed to the domain. You plan to deploy Network Access Protection (NAP). You need to configure the requirements that are validated on the NPS client computers. What should you do?
From the Network Policy Server console, configure a health policy
From a Group Policy object (GPO), configure the Network Access Protection Administrative Templates setting
From the Network Policy Server console, configure a network policy
From a Group Policy object (GPO), configure the NAP Client Configuration security setting
From the Network Policy Server console, configure a Windows Security Health Validator (WSHV) policy
Pytanie 193
Your network contains an Active Directory domain named adatum.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 is configured as a Network Policy Server (NPS) server and as a DHCP server. The network contains two subnets named Subnet1 and Subnet2. Server1 has a DHCP scope for each subnet. You need to ensure that noncompliant computers on Subnet1 receive different network policies than noncompliant computers on Subnet2. Which two settings should you configure? (Each correct answer presents part of the solution. Choose two.)
The NAP-Capable Computers conditions
The MS-Service Class conditions
The NAS Port Type constraints
The Health Policies conditions
The Called Station ID constraints
Pytanie 194
Your network contains an Active Directory forest named contoso.com. The forest contains a single domain. All domain controllers run Windows Server 2012 R2 and are configured as DNS servers. All DNS zones are Active Directory-integrated. Active Directory Recycle Bin is enabled. You need to modify the amount of time deleted objects are retained in the Active Directory Recycle Bin. Which naming context should you use? To answer, select the appropriate naming context in the answer area.
6
1
4
5
3
2
Pytanie 195
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that has the Network Policy Server server role installed. The domain contains a server named Server2 that is configured for RADIUS accounting. Server1 is configured as a VPN server and is configured to forward authentication requests to Server2. You need to ensure that only Server2 contains event information about authentication requests from connections to Server1. Which two nodes should you configure from the Network Policy Server console? To answer, select the appropriate two nodes in the answer area.
NPS(Local)
Health Policies
Remote RADIUS Servers
RADIUS Clients and Servers
Templates Management
Remote RADIUS Server Groups
RADIUS Clients
Policies
Connection Request Policies
Shared Secrets
Remediation Server Group
Network Access Protection
Network Policies
Pytanie 196
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1. You need to create an Active Directory snapshot on DC1. Which four commands should you run? To answer, move the four appropriate commands from the list of commands to the answer area and arrange them in the correct order.
Pytanie 197
You have a server named Servers that runs Windows Server 2012 R2. Servers has the Windows Deployment Services server role installed. Server5 contains several custom images of Windows 8. You need to ensure that when 32-bit client computers start by using PXE, the computers automatically install an image named Image1. What should you configure? To answer, select the appropriate tab in the answer area.
PXE Reaponse
DHCP
TFTP
Network
Client
ADDS
Pytanie 198
Your network contains an Active Directory domain named adatum.com. The domain contains a server named Server1. Your company implements DirectAccess. A user named User1 works at a customer's office. The customer's office contains a server named Server1. When User1 attempts to connect to Server1, User1 connects to Server1 in adatum.com. You need to provide User1 with the ability to connect to Server1 in the customer's office. Which Group Policy option should you configure? To answer, select the appropriate option in the answer area.
Frendly Name
Support Email Address
DirectAccess Passive Mode
User Interface
IPsecTunnel Endpoints
Prefer Local Names Allowed
Corporate Resources
Pytanie 199
Your network contains an Active Director domain named contoso.com. The domain contains a file server named Server1. All servers run Windows Server 2012 R2. You have two user accounts named User1 and User2. User1 and User2 are the members of a group named Group1. User1 has the Department value set to Accounting, user2 has thevDepartment value set to Marketing. Both users have the Employee Type value set to Contract Employee. You create the auditing entry as shown in the exhibit. (Click the Exhibit button.) To answer, complete each statement according to the information presented in the exhibit. Each correct selection is worth one point. Wpisz od 1-4
Pytanie 200
You have a server named LON-SVR1 that runs Windows Server 2012 R2. LON-SVR1 has the Remote Access server role installed. LON-SVRI is located in the perimeter network. The IPv4 routing table on LON-SVR1 is configured as shown in the following exhibit. (Click the Exhibit button.) Your company purchases an additional router named Router1. Router1 has an interface that connects to the perimeter network and an interface that connects to the Internet. The IP address ot the interface that connects to the perimeter network is 172.16.0.2. You need to ensure that LON-SVR1 will route traffic to the Internet by using Routerl if the current default gateway is unavailable. How should you configure the static route on LON-SVR1 ? To answer, select the appropriate static route in the answer area.
1
2
3
4
Pytanie 201
Your network contains a DNS server named Server1 that runs Windows Server 2012 R2. Server1 has a zone named contoso.com. The network contains a server named Server2 that runs Windows Server 2008 R2. Server1 and Server2 are members of an Active Directory domain named contoso.com. You change the IP address ot Server2. Several hours later, some users report that they cannot connect to Server2. On the affected users' client computers, you flush the DNS client resolver cache, and the users successfully connect to Server2. You need to reduce the amount of time that the client computers cache DNS records from contoso.com. Which value should you modify in the Start of Authority (SOA) record? To answer, select the appropriate setting in the answer area.
Expires after
Responsible person
Primary server
Minimum (default) TTL
Serial number
Retry interval
Refresh interval
TTL for this record
Pytanie 202
You have a server named Server5 that runs Windows Server 2012 R2. Servers has the Windows Deployment Services server role installed. You need to ensure that when client computers connect to Server5 by using PXE, the computers use an unattended file. What should you configure? To answer, select the appropriate tab in the answer area.
General
Client
ADDS
DHCP
Multicast
Boot
Network
Advanced
PXE Response
TFTP
Pytanie 203
You have a server named Server1 that runs Windows Server 2012 R2. You contigure Network Access Protection (NAP) on Server1. Your company implements a new security policy stating that all client computers must have the latest updates installed. The company informs all employees that they have two weeks to update their computer accordingly. You need to ensure that if the client computers have automatic updating disabled, they are provided with full access to the network until a specific date and time. Which two nodes should you contigure? To answer, select the appropriate two nodes in the answer area.
Network Policies
System Health Vaiidators
Remediation Srver Groups
Connection Reguest Policies
Remote RADIUS Server Groups
Health Policies
Templates Management
RADIUS Clients
Pytanie 204
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2 and has the Network Policy Server role service installed. An administrator creates a Network Policy Server (NPS) network policy named Policy1. You need to ensure that Policy1 applies to L2TP connections only. Which condition should you modify? To answer, select the appropriate object in the answer area.
Client IPv4 Address
NAS Identifier
Client Vendor
Access Client IPv4 Add...
MS-RAS Vendor ID
NAS Port Type
Service Type
Authentication Type
MS-Service class
Framed Protocol
Tunnel Type
Pytanie 205
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Network Policy and Access Services server role installed. All ot the VPN servers on your network use Server1 for RADIUS authentication. You create a security group named Group1. You need to configure Network Policy and Access Services (NPAS) to meet the following requirements: ■ Ensure that only the members ot Group1 can establish a VPN connection to the VPN servers. ■ Allow only the members ot Group1 to establish a VPN connection to the VPN servers if the members are using client computers that run Windows 8 or later. Which type ot policy should you create for each requirement? To answer, drag the appropriate policy types to the correct requirements. Each policy type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. Wpisz od 1 do 3
Pytanie 206
Your company has four offices. The offices are located in Montreal, Seattle, Sydney, and New York. The network contains an Active Directory domain named contoso.com. The domain contains a server named Server2 that runs Windows Server 2012 R2. Server2 has the DHCP Server server role installed. All client computers obtain their IPv4 and IPv6 addresses from DHCP. You need to ensure that Network Access Protection (NAP) enforcement for DHCP applies to all of the client computers except for the client computers in the New York office. Which nodes should you configure?
IPv4 / Server Options
IPv4 / Scope [192.168.0.0] Contoso New York
IPv6 / Scope [fddd:eef8:223b:ea3f::] Contoso New York
IPv4 / Policies
IPv6 / Server Options
IPv4
IPv6
Pytanie 207
Your network contains an Active Directory domain named contoso.com. All client computers are configured as DHCP clients. You link a Group Policy object (GPO) named GP01 to an organizational unit (OU) that contains all of the client computer accounts. You need to ensure that Network Access Protection (NAP) compliance is evaluated on all of the client computers. Which two settings should you configure in GP01 ? To answer, select the appropriate two settings in the answer area.
Network List Manager Policies
Event Log
Software Restriction Policies
Wired Network (IEEE 802.3) Policies
Network Access Protection
file system
Windows firewall with Advanced Security
Registry
Advanced Audit Policy Configuration
Public Key Policies
IP Security Policies on Active Directory
Local Policies
Application Control Policies
Account Policies
System Services
Pytanie 208
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the following BitLocker Drive Encryption (BitLocker) settings Wybieramy 1-2
Pytanie 209
Your network contains an Active Directory forest named contoso.com. The forest contains a single domain. The forest contains two Active Directory sites named Site1 and Site2. You plan to deploy a read-only domain controller (RODC) named DC10 to Site2. You pre-create the DC10 domain controller account by using Active Directory Users and Computers. You need to identify which domain controller will be used for initial replication during the promotion ot the RODC. Which tab should you use to identify the domain controller? To answer, select the appropriate tab in the answer area.
Managed By
Object
Location
General
Operating System
Attribute Editor
Security
Delegation
Passwond Replication Policy
Dial-in
Pytanie 210
Your network contains a RADIUS server named Admin1. You install a new server named Server2 that runs Windows Server 2012 R2 and has Network Policy Server (NPS) installed. You need to ensure that all accounting requests for Server2 are forwarded to Admin1. On Server2, you create a new remote RADIUS server group named Group1 that contains Admin1. What should you configure next on Server2? To answer, select the appropriate node in the answer area.
Remeditation Server Groups
Remote RADIUS Server Groups
Network Policies
Radius Clients
Health Policies
System Health Validators
Connection Request Policies
Pytanie 211
Your network contains an Active Directory domain named contoso.com. The domain contains two member servers named Server1 and Server2. All servers run Windows Server 2012 R2. You generalize Server2. You install the Windows Deployment Services (WDS) server role on Server1. You need to capture an image ot Server2 on Server1. Which three actions should you perform? To answer, move the three appropriate actions from the list ot actions to the answer area and arrange them in the correct order. Wpisz od 1-6