Ensurepass

Configuring Advanced Windows Server 2012 Services

 

QUESTION 91

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server3 that runs Windows Server 2012 R2 and has the DHCP Server server role installed.

 

DHCP is configured as shown in the exhibit. (Click the Exhibit button.)

 

clip_image002

 

Scope1, Scope2, and Scope3 are configured to assign the IP addresses of two DNS servers to DHCP clients. The remaining scopes are NOT configured to assign IP addresses of DNS servers to DHCP clients.

 

You need to ensure that only Scope1, Scope3, and Scopes assign the IP addresses of the DNS servers to the DHCP clients. The solution must minimize administrative effort.

 

What should you do?

 

A.

Create a superscope and a filter.

B.

Create a superscope and scope-level policies.

C.

Configure the Server Options.

D.

Configure the Scope Options.

 

Correct Answer: D

 

 

 

 

 

 

 

 

QUESTION 92

Your network contains two Active Directory forests named contoso.com and adatum.com. Each forest contains one domain. Contoso.com has a two-way forest trust to adatum.com. Selective authentication is enabled on the forest trust. Contoso contains 10 servers that have the File Server role service installed. Users successfully access shared folders on the file servers by using permissions granted to the Authenticated Users group. You migrate the file servers to adatum.com. Contoso users report that after the migration, they are unable to access shared folders on the file servers. You need to ensure that the Contoso users can access the shared folders on the file servers. What should you do?

 

A.

Disable selective authentication on the existing forest trust.

B.

Disable SID filtering on the existing forest trust.

C.

Run netdom and specify the /quarantine attribute.

D.

Replace the existing forest trust with an external trust.

 

Correct Answer: B

Explanation:

http://technet.microsoft.com/en-us/library/cc794713(v=ws.10).aspx

 

clip_image003

 

 

QUESTION 93

Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. The functional level of the forest is Windows Server 2003.

 

You have a domain outside the forest named adatum.com.

 

You need to configure an access solution to meet the following requirements:

 

clip_image005Users in adatum.com must be able to access resources in contoso.com.

clip_image005[1]Users in adatum.com must be prevented from accessing resources in fabrikam.com.

clip_image005[2]Users in both contoso.com and fabrikam.com must be prevented from accessing resources in adatum.com.

 

What should you create?

 

A.

a one-way realm trust from contoso.com to adatum.com

B.

a one-way realm trust from adatum.com to contoso.com

C.

a one-way external trust from contoso.com to adatum.com

D.

a one-way external trust from adatum.com to contoso.com

 

Correct Answer: C

Explanation:

In a One-way: incoming trust, users in your (trusted) domain can be authenticated in the other (trusting) domain. Users in the other domain cannot be authenticated in your domain.

 

 

QUESTION 94

Your network contains an Active Directory forest named contoso.com. The forest contains a single domain. The forest functional level is Windows Server 2012 R2. You have a domain controller named DC1. On DC1, you create a new Group Policy object (GPO) named GPO1. You need to verify that GPO1 was replicated to all of the domain controllers. Which tool should you use?

 

A.

Group Policy Management

B.

Active Directory Sites and Services

C.

DFS Management

D.

Active Directory Administrative Center

 

Correct Answer: A

Explanation:

http://social.technet.microsoft.com/Forums/en-US/winserverTS/thread/3e580e00-d619-4d25-b22d-18f0170279c4

http://technet.microsoft.com/en-us/library/jj134176.aspx

 

 

QUESTION 95

Your network contains an Active Directory forest named contoso.com. The forest contains two domains named contoso.com and child1.contoso.com. The domains contain three

domain controllers. The domain controllers are configured as shown in the following table.

 

clip_image007

 

You need to ensure that the KDC support for claims, compound authentication, and kerberos armoring setting is enforced in both domains.

 

Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

A.

Raise the domain functional level of contoso.com.

B.

Raise the domain functional level of child1.contoso.com.

C.

Raise the forest functional level of contoso.com.

D.

Upgrade DC11 to Windows Server 2012 R2.

E.

Upgrade DC1 to Windows Server 2012 R2.

 

Correct Answer: AE

Explanation:

The root domain in the forest must be at Windows Server 2012 level. First upgrade DC1 to this level, then raise the contoso.com domain functional level to Windows Server 2012.

 

 

QUESTION 96

Your company recently deployed a new Active Directory forest named contoso.com. The forest contains two Active Directory sites named Site1 and Site2. The first domain controller in the forest runs Windows Server 2012 R2. You need to force the replication of the SYSVOL folder from Site1 to Site2. Which tool should you use?

 

A.

Active Directory Sites and Services

B.

DFS Management

C.

Repadmin

D.

Dfsrdiag

 

Correct Answer: D

Explanation:

D. In Windows Server 2012 R2, Windows Server 2008 R2, or Windows Server 2008, you can force replication immediately by using DFS Management, as described in Edit Replication Schedules. You can also force replication by using the Dfsrdiag SyncNow command. You can force polling by using the Dfsrdiag PollAD command.

http://technet.microsoft.com/en-us/library/cc773238(v=ws.10).aspx#BKMK_072

 

 

QUESTION 97

Your network contains an Active Directory forest named contoso.com. The forest contains a single domain. The forest contains three Active Directory sites named SiteA, SiteB, and SiteC. The sites contain four domain controllers. The domain controllers are configured as shown in the following table.

 

clip_image009

 

An IP site link exits between each site.

 

You discover that the users in SiteC are authenticated by the domain controllers in SiteA and SiteB.

 

You need to ensure that the SiteC users are authenticated by the domain controllers in SiteB, unless all of the domain controllers in SiteB are unavailable.

 

What should you do?

A.

Create an SMTP site link between SiteB and SiteC.

B.

Create additional connection objects for DC3 and DC4.

C.

Decrease the cost of the site link between SiteB and SiteC.

D.

Create additional connection objects for DC1 and DC2.

 

Correct Answer: C

Explanation:

By decreasing the site link cost between SiteB and SiteC the SiteC users would be authenticated by SiteB rather than by SiteA.

 

 

QUESTION 98

Your network contains an Active Directory forest. The forest contains one domain named adatum.com. The domain contains three domain controllers. The domain controllers are configured as shown in the following table.

 

clip_image011

 

DC2 has all of the domain-wide operations master roles. DC3 has all of the forest-wide operation master roles.

 

You need to ensure that you can use Password Settings objects (PSOs) in the domain.

 

What should you do first?

 

A.

Uninstall Active Directory from DC1.

B.

Change the domain functional level.

C.

Transfer the domain-wide operations master roles.

D.

Transfer the forest-wide operations master roles.

 

Correct Answer: A

 

 

QUESTION 99

You have a server named FS1 that runs Windows Server 2012 R2. You install the File and Storage Services server role on FS1. From Windows Explorer, you view the properties of a shared folder named Share1 and you discover that the Classification tab is missing. You need to ensure that you can assign classifications to Share1 from Windows Explorer manually. What should you do?

 

A.

From Folder Options, select Show hidden files, folders, and drives.

B.

From Folder Options, clear Use Sharing Wizard (Recommend).

C.

Install the File Server Resource Manager role service.

D.

Install the Enhanced Storage feature.

 

Correct Answer: C

 

QUESTION 100

Your network contains two servers named Server1 and Server2 that run Windows Server 2012 R2. Server1 and Server2 are configured as shown in the following table.

 

clip_image013

 

You need to ensure that when new targets are added to Server1, the targets are registered on Server2 automatically.

 

What should you do on Server1?

 

A.

Configure the Discovery settings of the iSCSI initiator.

B.

Configure the security settings of the iSCSI target.

C.

Run the Set-Wmilnstance cmdlet.

D.

Run the Set-IscsiServerTarget cmdlet.

 

Correct Answer: C

Explanation:

http://blogs.technet.com/b/filecab/archive/2012/06/08/iscsi-target-cmdlet-reference.aspx

11.Manage iSNS server registration

The iSNS server registration can be done using the following cmdlets, which manages the WMI objects.

To add an iSNS server:

Set-WmiInstance -Namespace root\wmi -Class WT_iSNSServer -Arguments @{ServerName=”ISNSservername”}

 

Free VCE & PDF File for Microsoft 70-412 Actual Tests

Instant Access to Free VCE Files: MCSE|MCSA|MCITP…
Instant Access to Free PDF Files: MCSE|MCSA|MCITP…