QUESTION 31

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2 and has the DHCP Server server role installed. You need to create an IPv6 scope on Server1. The scope must use an address space that is reserved for private networks. The addresses must be routable. Which IPV6 scope prefix should you use?

 

A.

2001:123:4567:890A::

B.

FE80:123:4567::

C.

FF00:123:4567:890A::

D.

FD00:123:4567::

 

Correct Answer: D

Explanation:

 clip_image001

 

 

 

 

 

QUESTION 32

Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012 R2. DC1 has the DNS Server server role installed.

 

The network contains client computers that run either Linux, Windows 7, or Windows 8.

 

You have a standard primary zone named adatum.com as shown in the exhibit. (Click the Exhibit button.)

 

clip_image003

 

You plan to configure Name Protection on all of the DHCP servers.

 

You need to configure the adatum.com zone to support Name Protection.

 

Which two configurations should you perform from DNS Manager? (Each correct answer presents part of the solution. Choose two.)

 

A.

Sign the zone.

B.

Store the zone in Active Directory.

C.

Modify the Security settings of the zone.

D.

Configure Dynamic updates.

E.

Add a DNS key record

 

Correct Answer: BD

Explanation:

http://technet.microsoft.com/en-us/library/ee941152(v=ws.10).aspx

http://blogs.technet.com/b/teamdhcp/archive/2009/01/29/what-is-name-protection.aspx

 

clip_image005

clip_image007

QUESTION 33

HOTSPOT

Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2. All servers run Windows Server 2012 R2.

 

You install the DHCP Server server role on both servers.

 

On Server1, you have the DHCP scope configured as shown in the exhibit. (Click the Exhibit button.)

 

clip_image009

 

You need to configure the scope to be load-balanced across Server1 and Server2.

 

What Windows PowerShell cmdlet should you run on Server1?

 

To answer, select the appropriate options in the answer area.

 

clip_image011

 

Correct Answer:

clip_image013

 

 

QUESTION 34

HOTSPOT

Your network contains an Active Directory domain named contoso.com. The domain contains two DHCP servers named Server1 and Server2. Both servers have multiple IPv4 scopes.

 

Server1 and Server2 are used to assign IP addresses for the network IDs of 172.20.0.0/16 and 131.107.0.0/16.

 

You install the IP Address Management (IPAM) Server feature on a server named IPAM1 and configure IPAM1 to manage Server1 and Server2.

 

Some users from the 172.20.0.0 network report that they occasionally receive an IP address conflict error message.

 

You need to identify whether any scopes in the 172.20.0.0 network ID conflict with one another.

 

What Windows PowerShell cmdlet should you run?

 

To answer, select the appropriate options in the answer area.

 

clip_image015

Correct Answer:

clip_image017

 

 

QUESTION 35

Your network contains two DNS servers named DN51 and DNS2 that run Windows Server 2012 R2. DNS1 has a primary zone named contoso.com. DNS2 has a secondary copy of the contoso.com zone. You need to log the zone transfer packets sent between DNS1 and DNS2. What should you configure?

 

A.

Monitoring from DNS Manager

B.

Logging from Windows Firewall with Advanced Security

C.

A Data Collector Set (DCS) from Performance Monitor

D.

Debug logging from DNS Manager

 

Correct Answer: D

Explanation:

Debug logging allows you to log the packets sent and received by a DNS server. Debug logging is disabled by default, and because it is resource intensive, you should only activate it temporarily when you need more specific detailed information about server performance.

Reference: Active Directory 2008: DNS Debug Logging Facts…

 

 

QUESTION 36

Your network contains an Active Directory forest named contoso.com. Users frequently access the website of an external partner company. The URL of the website is http://partners.adatum.com. The partner company informs you that it will perform maintenance on its Web server and that the IP addresses of the Web server will change. After the change is complete, the users on your internal network report that they fail to access the website. However, some users who work from home report that they can access the website. You need to ensure that your DNS servers can resolve partners.adatum.com to the correct IP address immediately. What should you do?

 

A.

Run dnscmd and specify the CacheLockingPercent parameter.

B.

Run Set-DnsServerGlobalQueryBlockList.

C.

Run ipconfig and specify the Renew parameter.

D.

Run Set-DnsServerCache.

 

Correct Answer: D

Explanation:

http://technet.microsoft.com/en-us/library/jj649852.aspx

Run Set-DnsServerCache with the -LockingPercent switch.

 

 

QUESTION 37

You have a server named Server1. You install the IP Address Management (IPAM) Server feature on Server1. You need to provide a user named User1 with the ability to set the access scope of all the DHCP servers that are managed by IPAM. The solution must use the principle of least privilege. Which user role should you assign to User1?

 

A.

DNS Record Administrator Role

B.

IPAM DHCP Reservations Administrator Role

C.

IPAM Administrator Role

D.

IPAM DHCP Administrator Role

 

Correct Answer: D

Explanation:

The IPAM DHCP administrator role completely manages DHCP servers.

 

clip_image018

 

 

 

 

 

 

 

 

 

 

 

 

 

QUESTION 38

Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 and a member server named Server1. Server1 has the IP Address Management (IPAM) Server feature installed.

 

On DC1, you configure Windows Firewall to allow all of the necessary inbound ports for IPAM.

 

On Server1, you open Server Manager as shown in the exhibit. (Click the Exhibit button.)

 

clip_image020

 

You need to ensure that you can use IPAM on Server1 to manage DNS on DC1.

 

What should you do?

 

A.

Modify the outbound firewall rules on Server1.

B.

Modify the inbound firewall rules on Server1.

C.

Add Server1 to the Remote Management Users group.

D.

Add Server1 to the Event Log Readers group.

 

Correct Answer: D

Explanation:

To access configuration data and server event logs, the IPAM server must be a member of the domain IPAM Users Group (IPAMUG). The IPAM server must also be a member of the Event Log Readers security group.

 

Ref:

http://technet.microsoft.com/en-us/library/jj878317.aspx
http://technet.microsoft.com/en-us/library/jj878313.aspx

QUESTION 39

You have a server named SCI that runs a Server Core Installation of Windows Server 2012 R2. Shadow copies are enabled on all volumes. You need to delete a specific shadow copy. The solution must minimize server downtime. Which tool should you use?

 

A.

Shadow

B.

Diskshadow

C.

Wbadmin

D.

Diskpart

 

Correct Answer: B

Explanation:

DiskShadow.exe is a tool that exposes the functionality offered by the Volume Shadow Copy Service (VSS).

The diskshadow command delete shadows deletes shadow copies.

 

clip_image021

 

 

QUESTION 40

You have 20 servers that run Windows Server 2012 R2. You need to create a Windows PowerShell script that registers each server in Windows Azure Backup and sets an encryption passphrase. Which two PowerShell cmdlets should you run in the script? (Each correct answer presents part of the solution. Choose two.)

 

A.

New-OBPolicy

B.

New-OBRetentionPolicy

C.

Add-OBFileSpec

D.

Start-OBRegistration

E.

Set OBMachineSetting

 

Correct Answer: DE

Explanation:

D: Start-OBRegistration

Registers the current computer with Windows Azure Online Backup using the credentials (username and password) created during enrollment.

E: The Set-OBMachineSetting cmdlet sets a OBMachineSetting object for the server that includes proxy server settings for accessing the internet, network bandwidth throttling settings, and the encryption passphrase that is required to decrypt the files during recovery to another server.

 

Incorrect:

Not C: TheAdd-OBFileSpeccmdlet adds theOBFileSpecobject, which specifies the items to include or exclude from a backup, to the backup policy (OBPolicyobject). TheOBFileSpecobject can include or exclude multiple files, folders, or volumes.

 

http://technet.microsoft.com/en-us/library/hh770416(v=wps.620).aspx

http://technet.microsoft.com/en-us/library/hh770425(v=wps.620).aspx

http://technet.microsoft.com/en-us/library/hh770424.aspx

http://technet.microsoft.com/en-us/library/hh770398.aspx

http://technet.microsoft.com/en-us/library/hh770409.aspx

 

Free VCE & PDF File for Microsoft 70-412 Real Exam

Instant Access to Free VCE Files: MCSE|MCSA|MCITP…
Instant Access to Free PDF Files: MCSE|MCSA|MCITP…