Dumps4cert.com : Latest Dumps with PDF and VCE Files
2018 Aug Microsoft Official New Released 70-412
100% Free Download! 100% Pass Guaranteed!

Configuring Advanced Windows Server 2012 R2 Services

Question No: 191 – (Topic 3)

Your network contains one Active Directory domain named contoso.com. The domain contains three users named User1, User2, and User3.

You need to ensure that the users can log on to the domain by using the user principal names (UPNs) shown in the following table.

Dumps4Cert 2018 PDF and VCE

What should you use?

  1. the Set-ADDomain cmdlet

  2. the Add-DNSServerSecondaryZone cmdlet

  3. the Setspn command

  4. the Set-ADUser cmdlet

Answer: D Explanation:

The Set-ADUser cmdlet modifies the properties of an Active Directory user. You can modify commonly used property values by using the cmdlet parameters.

Parameters include: UserPrincipalName

Each user account has a user principal name (UPN) in the format lt;usergt;@lt;DNS-domain- namegt;. A UPN is a friendly name assigned by an administrator that is shorter than the LDAP distinguished name used by the system and easier to remember. The UPN is independent of the user object#39;s DN, so a user object can be moved or renamed without affecting the user logon name. When logging on using a UPN, users no longer have to choose a domain from a list on the logon dialog box.

Reference: Technet, Set-ADUser https://technet.microsoft.com/en-us/library/ee617215.aspx

Question No: 192 HOTSPOT – (Topic 3)

You have a server named Server1 that runs Windows Server 2012 R2.

Server1 has access to disks that connect to a RAID controller, iSCSI disks, and disks connected to a SCSI controller.

You plan to use a tiered storage space on Server1.

You need to identify which storage controller and volume type you must use for the tiered storage space.

Which storage components should you use?

To answer, select the appropriate options in the answer area.

Dumps4Cert 2018 PDF and VCE

Dumps4Cert 2018 PDF and VCE

Answer:

Dumps4Cert 2018 PDF and VCE

Explanation:

Dumps4Cert 2018 PDF and VCE

Box 1, Storage controller: SCSI Storage Spaces requirements include:

  • Serial ATA (SATA) or Serial Attached SCSI (SAS) connected disks, optionally in a just-a- bunch-of-disks (JBOD) enclosure

    Note: RAID adapters, if used, must have all RAID functionality disabled

    Box 2, Storage volume type:

  • Storage pools. A collection of physical disks that enable you to aggregate disks, expand capacity in a flexible manner, and delegate administration.

  • Storage spaces. Virtual disks created from free space in a storage pool. Storage spaces have such attributes as resiliency level, storage tiers, fixed provisioning, and precise administrative control.

Illustration:

Dumps4Cert 2018 PDF and VCE

http://www.miru.ch/wp-content/uploads/2013/07/071813_2125_Creatingati1.png

Question No: 193 – (Topic 3)

You have a failover cluster named Cluster1 that contains four nodes. All of the nodes run Windows Server 2012 R2.

You need to force every node in Cluster1 to contact immediately the Windows Server Update Services (WSUS) server on your network for updates.

Which tool should you use?

  1. The Add-CauClusterRole cmdlet

  2. The Wuauclt command

  3. The Wusa command

  4. The Invoke-CauScan cmdlet

Answer: A Explanation:

The Add-CauClusterRole cmdlet adds the Cluster-Aware Updating (CAU) clustered role that provides the self-updating functionality to the specified cluster. When the CAU clustered role has been added to a cluster, the failover cluster can update itself on the schedule that is specified by the user, without requiring an external computer to coordinate the cluster updating process.

Incorrect:

Not B. The wuauclt utility allows you some control over the functioning of the Windows Update Agent. It is updated as part of Windows Update.

The following are the command line for wuauclt.

OptionDescription

/a /ResetAuthorization

Initiates an asynchronous background search for applicable updates. If Automatic Updates is disabled, this option has no effect.

/r /ReportNow

Sends all queued reporting events to the server asynchronously.

/? /h /help

Shows this help information.

Not D.

The Invoke-CauScan cmdlet performs a scan of cluster nodes for applicable updates and returns a list of the initial set of updates that would be applied to each node in a specified cluster.

Note: The Invoke-CauRun cmdlet performs a scan of cluster nodes for applicable updates and installs those updates via an Updating Run on the specified cluster.

Reference: Add-CauClusterRole

http://technet.microsoft.com/en-us/library/hh847235(v=wps.620).aspx

Question No: 194 – (Topic 3)

Your network contains one Active Directory forest named contoso.com. The forest contains two child domains and six domain controllers. The domain controllers are configured as shown in the following table.

Dumps4Cert 2018 PDF and VCE

For the contoso.com domain, a company policy states that administrators must be able to retrieve a list of all the users who have not logged on to the network in the last seven days from any domain controller.

You need to ensure that the users’ last logon information from the last seven days is replicated to all of the domain controllers.

What should you use?

  1. Set-ADSite

  2. Set-ADReplicationSite

  3. Set-ADDomain

  4. Set-ADReplicationSiteLink

  5. Set-ADGroup

  6. Set-ADForest

  7. Netdom

Answer: C Explanation:

The Set-ADDomain LastLogonReplicationInterval parameter specifies the time, in days, within which the last logon time of an account must be replicated across all domain controllers in the domain. This parameter sets the LastLogonReplicationInterval property for a domain. The LDAP display name (ldapDisplayName) for this property is msDS- LogonTimeSyncInterval. The last logon replication interval must be at least one day.

Setting the last logon replication interval to a low value can significantly increase domain- wide replication.

Reference: Technet, Set-ADDomain

https://technet.microsoft.com/en-us/library/ee617212.aspx

Question No: 195 – (Topic 3)

You have two Windows Server Update Services (WSUS) servers named Server01 and Server02. Server01 synchronizes from Microsoft Update. Server02 synchronizes updates from Server01. Both servers are members of the same Active Directory domain.

You configure Server01 to require SSL for all WSUS metadata by using a certificate issued by an enterprise root certification authority (CA).

You need to ensure that Server02 synchronizes updates from Server01. What should you do on Server02?

  1. From a command prompt, runwsusutil.exe configuresslproxy server02 443.

  2. From a command prompt, runwsusutil.exe configuressl server01.

  3. From a command prompt, runwsusutil.exe configuresslproxy server01 443.

  4. From the Update Services console, modify the Update Source and Proxy Server options.

Answer: C Explanation:

We configure server02 to use server01 as an proxy for the updates through the wsusutil.exe configuresslproxy lt;ssl_proxy_ip_or_namegt; lt;portgt;

Server01 is the ssl_proxy and the port is 443 (the sll port).

Reference: A work-around when using different proxies for HTTP and SSL in WSUS 3.0 SP1

http://blogs.technet.com/b/craigf/archive/2009/05/04/a-work-around-when-using-different- proxies-for-http-and-ssl-in-wsus-3-0-sp1.aspx

Question No: 196 – (Topic 3)

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2.

Server1 is an enterprise root certification authority (CA) for contoso.com.

You need to ensure that the members of a group named Group1 can request code signing certificates. The certificates must be issued automatically to the members.

Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

  1. From Certificate Templates, modify the certificate template.

  2. From Certification Authority, add a certificate template to be issued.

  3. From Certificate Authority, modify the CA properties.

  4. From Certificate Templates, duplicate a certificate template.

  5. From Certificate Authority, stop and start the Active Directory Certificate Services (AD CS) service.

Answer: A,D Explanation: Explanation/Reference:

Best Practices include: Duplicate new templates from existing templates closest in function to the intended template.

New certificate templates are duplicated from existing templates. Many settings are copied from the original template. Because of this, duplicating one template to another of a totally different type may carry over some unintended settings. When duplicating a template, examine the subject type of the original template and ensure that you duplicate one that has a similar function to that of the intended template. Although most settings for certificate templates can be edited once the template is duplicated, the subject type cannot be changed.

Reference: Deploying Certificate Templates https://technet.microsoft.com/en-us/library/cc770794(v=ws.10).aspx

Question No: 197 – (Topic 3)

Your network contains one Active Directory forest named contoso.com. The forest contains two child domains and six domain controllers. The domain controllers are configured as shown in the following table.

Dumps4Cert 2018 PDF and VCE

You create a trust between contoso.com and a domain in another forest at a partner company.

You need to prevent the sales.contoso.com and the manufacturing.contoso.com names from being used in authentication requests across the forest trust.

What should you use?

  1. Set-ADSite

  2. Set-ADReplicationSite

  3. Set-ADDomain

  4. Set-ADReplicationSiteLink

  5. Set-ADGroup

  6. Set-ADForest

  7. Netdom

Answer: G Explanation:

The Netdom trust command establishes, verifies, or resets a trust relationship between domains.

Parameters include /RemoveTLNEX:

Removes the specified top level name exclusion (DNS Name Suffix) from the forest trust info from the specified trust. Valid only for a forest transitive non-Windows realm trust and can only be performed on the root domain for a forest.

Reference: Netdom trust

https://technet.microsoft.com/sv-se/library/Cc835085(v=WS.10).aspx

Question No: 198 HOTSPOT – (Topic 3)

Your network contains an Active Directory domain named adatum.com. All servers run Windows Server 2012 R2. All domain controllers have the DNS Server server role installed.

You have a domain controller named DC1.

On DC1, you create an Active Directory-integrated zone named adatum.com and you sign the zone by using DNSSEC.

You deploy a new read-only domain controller (RODC) named RODC1. You need to ensure that the contoso.com zone replicates to RODC1.

What should you configure on DC1?

To answer, select the appropriate tab in the answer area.

Dumps4Cert 2018 PDF and VCE

Answer:

Dumps4Cert 2018 PDF and VCE

Explanation:

Dumps4Cert 2018 PDF and VCE

For additional servers to host a zone, zone transfers are required to replicate and synchronize all copies of the zone used at each server configured to host the zone.

Dumps4Cert 2018 PDF and VCE

Question No: 199 – (Topic 3)

Your network contains an Active Directory domain named adatum.com. The domain contains a file server named Server1 that runs Windows Server 2012 R2.

All client computers run Windows 7.

You need to ensure that user settings are saved to \\Server1\Users\. What should you do?

  1. From the properties of each user account, configure the User profile settings.

  2. From a Group Policy object (GPO), configure the Folder Redirection settings.

  3. From the properties of each user account, configure the Home folder settings.

  4. From a Group Policy object (GPO), configure the Drive Maps preferences.

Answer: B Explanation:

User settings and user files are typically stored in the local user profile, under the Users folder. The files in local user profiles can be accessed only from the current computer, which makes it difficult for users who use more than one computer to work with their data and synchronize settings between multiple computers. Two technologies exist to address this problem: Roaming Profiles and Folder Redirection.

Folder Redirection lets administrators redirect the path of a folder to a new location. The location can be a folder on the local computer or a directory on a network file share. Users can work with documents on a server as if the documents were based on a local drive. The documents in the folder are available to the user from any computer on the network. Folder Redirection is located under Windows Settings in the console tree when you edit domain- based Group Policy by using the Group Policy Management Console (GPMC).

Reference: Folder Redirection Overview https://technet.microsoft.com/en-us/library/cc732275.aspx

Question No: 200 – (Topic 3)

You have five servers that run Windows Server 2012 R2. The servers have the Failover Clustering feature installed. You deploy a new cluster named Cluster1. Cluster1 is configured as shown in the following table.

Dumps4Cert 2018 PDF and VCE

Server1, Server2, and Server3 are configured as the preferred owners of the cluster roles. Dynamic quorum management is disabled.

You plan to perform hardware maintenance on Server3.

You need to ensure that if the WAN link between Site1 and Site2 fails while you are performing maintenance on Server3, the cluster resource will remain available in Site1.

What should you do?

  1. Add a file share witness in Site1.

  2. Enable DrainOnShutdown on Cluster1.

  3. Remove the node vote for Server4 and Server5.

  4. Remove the node vote for Server3.

Answer: C Explanation:

Recommended Adjustments to Quorum Voting

When enabling or disabling a given WSFC (Windows Server Failover Clustering) node’s vote, follow these guidelines:

  • Exclude secondary site (here site2) nodes (here server4 and server5). In general, do not give votes to WSFC nodes that reside at a secondary disaster recovery site. You do not want nodes in the secondary site to contribute to a decision to take the cluster offline when there is nothing wrong with the primary site.

    Reference: WSFC Quorum Modes and Voting Configuration (SQL Server)

    100% Dumps4cert Free Download!
    70-412 PDF
    100% Dumps4cert Pass Guaranteed!
    70-412 Dumps

    Dumps4cert ExamCollection Testking
    Lowest Price Guarantee Yes No No
    Up-to-Dated Yes No No
    Real Questions Yes No No
    Explanation Yes No No
    PDF VCE Yes No No
    Free VCE Simulator Yes No No
    Instant Download Yes No No