Strona 17

Windows Serwer 2012 R2 70-411

Pytanie 129
You have a server named Server1 that has the Network Policy and Access Services server role installed. You plan to configure Network Policy Server (NPS) on Server1 to use certificate-based authentication for VPN connections. You obtain a certificate for NPS. You need to ensure that NPS can perform certificate-based authentication. To which store should you import the certificate? To answer, select the appropriate store in the answer area.
Certificates (Local Computer) / Personal
Certificates - Current User / Personal
Pytanie 130
Your network contains an Active Directory domain named contoso.com. The domain contains a member server that runs Windows Server 2012 R2 and has the Windows Deployment Services (WDS) server role installed. You create a new muiticast session in WDS and connect 50 client computers to the session. When you open the Windows Deployment Services console, you discover that all ot the computers are listed as pending devices. You need to ensure that any ot the computers on the network can join a muiticast transmission without requiring administrator approval. What should you configure? To answer, select the appropriate tab in the answer area.
PXE Response
Network
DHCP
General
Boot
TFTP
AD DS
Multicast
Advanced
Client
Pytanie 131
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The domain contains a server named Server1 that has the Network Policy Server server role and the Remote Access server role installed. The domain contains a server named Server2 that is configured as a RADIUS server. Server1 provides VPN access to external users. You need to ensure that all of the VPN connections to Server1 are logged to the RADIUS server on Server2. What should you run?
Set-RemoteAccessAccounting -AccountingOnOffMsg Enabled -AccountingOnOffMsg Enabled
Set-RemoteAccessAccounting -EnableAccountingType lnbox -AccountingOnOffMsg Enabled
Add-RemoteAccessRadius -ServerNameServer1 -AccountingOnOffMsg Enabled -SharedSecret "Secret" -Purpose Accounting
Add-RemoteAccessRadius -ServerName Server2 -AccountingOnOffMsg Enabled -SharedSecret "Secret" -Purpose Accounting
Pytanie 132
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. On all of the domain controllers, Windows is installed in C:\Windows and the Active Directory database is located in D:\Windows\NTDS\. All of the domain controllers have a third-party application installed. The operating system fails to recognize that the application is compatible with domain controller cloning. You verify with the application vendor that the application supports domain controller cloning. You need to prepare a domain controller for cloning. What should you do?
In D:\Windows\NTDS\, create an XML file named DCCIoneConfig.xml and add the application information to the file
In D:\Windows\NTDS\, create an XML file named CustomDCCIoneAllowList.xml and add the application information to the file
In the root of a USB flash drive, add the application information to an XML file named DefaultDCCIoneAllowList.xml
In C:\Windows\System32\Sysprep\Actionfiles\, add the application information to an XML file named Respecialize.xml
Pytanie 133
Your network contains an Active Directory domain named contoso.com. You create a user account named User1. The properties of User1 are shown in the exhibit. (Click the Exhibit button.) You plan to use the User1 account as a service account. The service will forward authentication requests to other servers. You need to ensure that you can view the Delegation tab from the properties of the User1 account. What should you do first?
Modify the Security settings of User1
Configure the Name Mappings of User1
Configure a Service Principal Name (SPN) for User1
Modify the user principal name (UPN) of User1
Pytanie 134
Your network contains an Active Directory forest named contoso.com. The forest functional level is Windows Server 2012 R2. The forest contains a single domain. You create a Password Settings object (PSO) named PS01. You need to delegate the rights to apply PS01 to the Active Directory objects in an organizational unit named 0U1. What should you do?
From Active Directory Users and Computers, run the Delegation of Control Wizard
From Group Policy Management, create a Group Policy object (GPO) and link the GPO to OU1
From Active Directory Administrative Center, modify the security settings of 0U1
From Active Directory Administrative Center, modify the security settings of PS01
Pytanie 135
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The domain contains two servers. The servers are configured as shown in the following table. All client computers run Windows 8 Enterprise. You plan to deploy Network Access Protection (NAP) by using IPSec enforcement. A Group Policy object (GPO) named GP01 is configured to deploy a trusted server group to all ot the client computers. You need to ensure that the client computers can discover HRA servers automatically. Which three actions should you perform? (Each correct answer presents part ot the solution. Choose three.)
In a GPO, modify the Request Policy setting for the NAP Client Configuration
On all ot the client computers, configure the EnableDiscovery registry key
On DC1, create a service location (SRV) record
On DC1, create an alias (CNAME) record
On Server2, configure the EnableDiscovery registry key
Pytanie 136
Your network contains two Active Directory forests named contoso.com and adatum.com. The contoso.com forest contains a server named Server1.contoso.com. The adatum.com forest contains a server named server2. adatum.com. Both servers have the Network Policy Server role service installed. The network contains a server named Server3. Server3 is located in the perimeter network and has the Network Policy Server role service installed. You plan to configure Server3 as an authentication provider for several VPN servers. You need to ensure that RADIUS requests received by Server3 for a specific VPN server are always forwarded to Server1 .contoso.com. Which two should you configure on Server3? (Each correct answer presents part ot the solution. Choose two.)
Network policies
Connection authorization policies
Remote RADIUS server groups
Connection request policies
Remediation server groups
Przejdź na Memorizer+
W trybie testu zyskasz:
Brak reklam
Quiz powtórkowy - pozwoli Ci opanować pytania, których nie umiesz
Więcej pytań na stronie testu
Wybór pytań do ponownego rozwiązania
Trzy razy bardziej pojemną historię aktywności
Aktywuj