QUESTION 211

Your network contains an Active Directory forest that contains two domains. The forest contains five domain controllers. The domain controllers are configured as shown in the following table.

 

clip_image002

 

You need to configure DC5 as a global catalog server. Which tool should you use?

 

A.

Active Directory Domains and Trusts

B.

Active Directory Users and Computers

C.

Active Directory Administrative Center

D.

Active Directory Sites and Services

 

Correct Answer: D

Explanation:

If you have more than one domain in your forest and you have a significant user population in a site, you canoptimize the speed and efficiency of domain logons and directory searches by adding a global catalog server tothe site. If you have a single-domain forest, global catalog servers are not required for logons, but directory searchesare directed to the global catalog. In this case, you can enable the global catalog on all domain controllers forfaster directory searches. You can use the same user interface (UI) in the Active Directory Sites and Services snap-in to add or removethe global catalog. Enabling the global catalog can cause additional replication traffic. However, global catalogremoval occurs gradually in the background and does not affect replication or performance. Membership in the Enterprise Admins group in the forest or the Domain Admins group in the forest rootdomain, or equivalent, is the minimum required to complete this procedure. To add or remove the global catalogOpen Active Directory Sites and Services. To open Active Directory Sites and Services, click Start, click Administrative Tools, and then click Active Directory Sites and Services.

To open Active Directory Sites and Services in Windows Server?2012, click Start , type dssite.msc. In the console tree, click the server object to which you want to add the global catalog or from which youwant to remove the global catalog.

Where?

Active Directory Sites and Services\Sites\SiteName\Servers

In the details pane, right-click NTDS Settings of the selected server object, and then click Properties. Select the Global Catalog check box to add the global catalog, or clear the check box to remove theglobal catalog.

Global catalog servers and sites

To optimize network performance in a multiple-site environment, consider adding global catalog servers in sitesaccording to the needs in the sites for fast search responses and domain logons. It is recommended to makeall domain controllers be global catalog severs if possible. In a single-site, multiple-domain environment, asingle global catalog server is usually sufficient to cover common Active Directory queries and logons.

 

 

 

 

 

 

QUESTION 212

You work as an administrator at ENSUREPASS.com. The ENSUREPASS.com network consists of a single domain named ENSUREPASS.com. All servers on the ENSUREPASS.com network have Windows Server 2012 installed.

You have received instructions to install the Remote Desktop Services server role on a server, named ENSUREPASS-SR07. You want to achieve this remotely from a server, named ENSUREPASS-SR06.

Which of the following actions should you take?

 

A.

You should consider accessing the Server Manager console on ENSUREPASS-SR07.

B.

You should consider accessing the Server Manager console on ENSUREPASS-SR06.

C.

You should consider accessing the TS Manager console on ENSUREPASS-SR07.

D.

You should consider accessing the TS Manager console on ENSUREPASS-SR06.

 

Correct Answer: B

Explanation:

Windows Server 2012 delivers capabilities to manage many servers and the devices connecting them, whether they are physical or virtual, on-premises or off. With Windows Server 2012 R2, you can rely on new management capabilities for connecting to multiple machines through a single interface, robust automation to help improve compliance, increasing efficiency through automation and creating unified experiences across physical and virtual platforms.

 

clip_image003

 

http://www.microsoft.com/en-us/server-cloud/windows-server/server-management-automation.aspx

http://www.techieshelp.com/windows-server-2012-install-and-configure-remote-desktop-services/ http://technet.microsoft.com/en-us/library/cc742813.aspx

http://technet.microsoft.com/en-us/library/hh831809.aspx

http://technet.microsoft.com/en-us/library/hh831456.aspx

 

 

QUESTION 213

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 runs Windows Server 2012 R2. You need to create 3-TB virtual hard disk (VHD) on Server1. Which tool should you use?

 

A.

File Server Resource Manager (FSRM)

B.

New-StoragePool

C.

Diskpart

D.

Share and Storage Management

 

Correct Answer: C

Explanation:

Diskpart – “create vdisk file=c:\test.vhd maximum=3000000 type=expandable”

 

clip_image005

 

http://www.hyper-v.nu/archives/hvredevoort/2012/01/windows-8-storage-and-hyper-v-part-2-vhdx-andpowershell/

http://www.hyper-v.nu/archives/hvredevoort/2012/04/windows-8-storage-and-hyper-v-part-3-the-art-ofcreating-a-vhd-2/

http://technet.microsoft.com/library/hh831487

QUESTION 214

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. You create a new inbound rule by using Windows Firewall with Advanced Security. You need to configure the rule to allow Server1 to accept unsolicited inbound packets that are received through a network address translation (NAT) device on the network. Which setting in the rule should you configure?

 

A.

Edge traversal

B.

Authorized computers

C.

Interface types

D.

Remote IP address

 

Correct Answer: A

Explanation:

Edge traversal – This indicates whether edge traversal is enabled (Yes) or disabled (No). When edge traversalis enabled, the Application, service, or port to which the rule App1ies is globally addressable and accessiblefrom outside a network address translation (NAT) or edge device.

 

clip_image007

Select one of the following options from the list:

Block edge traversal (default) – Prevent Applications from receiving unsolicited traffic f
rom the Internet througha NAT edge device.

Allow edge traversal – Allow Applications to receive unsolicited traffic directly from the Internet through aNAT edge device.

Defer to user – Let the user decide whether to allow unsolicited traffic from the Internet through a NAT edgedevice when an Application requests it.

Defer to Application – Let each Application determine whether to allow unsolicited traffic from the Internetthrough a NAT edge device.

http://technet.microsoft.com/en-us/library/cc731927.aspx

http://technet.microsoft.com/en-us/library/dd421713%28v=ws.10%29.aspx

 

 

QUESTION 215

DRAG DROP

You have a server named Server1 that runs Windows Server 2012 R2. You need to create a new volume on Server1. The new volume must have the following configurations:

 

– Be stored on a new virtual hard disk

– Be assigned the drive letter G

– Have the NTFS file system

 

In which order should you run the Diskpart commands?

 

To answer, move all the Diskpart commands from the list of commands to the answer area and arrange them in the correct order.

 

clip_image009

 

Correct Answer:

 

clip_image011

 

Explanation:

clip_image013

 

 

 

 

 

 

 

 

 

QUESTION 216

HOTSPOT

Your network contains an Active Directory domain named contoso.com. The network contains a DHCP server named DHCP1. You add a new network segment to the network. On the new network segment, you deploy a new server named Server1 that runs Windows Server 2012 R2. You need to configure Server1 as a DHCP Relay Agent. Which server role should you install on Server1? To answer, select the appropriate role in the answer area.

 

clip_image015

 

Correct Answer:

 

clip_image017

 

Explanation:

If you opt to create a centralized or hybrid DHCP infrastructure, you will need a DHCP relay agent on every subnet that does not have a DHCP server on it. Many routers are capable of functioning as DHCP relay agents, but in situations where they are not, you can configure a Windows Server 2012 computer to function as a relay agent.

http://my.safaribooksonline.com/book/certification/9780735673151/4dot-deploying-and-configuring-core- network-services/objective_42_configure_servers_html

 

 

QUESTION 217

You work as an administrator at ENSUREPASS.com. The ENSUREPASS.com network consists of a single domain named ENSUREPASS.com. All servers on the ENSUREPASS.com network have Windows Server 2012 installed.

You are in the process of installing a Server Core installation of Windows Server 2012 on a new ENSUREPASS.com server, named ENSUREPASS-SR13.

Which of the following is TRUE with regards to a installing a Server Core installation of Windows Server 2012? (Choose all that apply.)

 

A.

The Server Graphical Shell is installed, but not enabled.

B.

Server roles can be configured locally via the command prompt using Windows PowerShell.

C.

Server roles can be configured locally via Server Manager.

D.

You are able to access the Microsoft Management Console locally.

E.

The Desktop Experience is not available.

 

Correct Answer: BE

Explanation:

A. There is no Windows shell and very limited GUI functionality B. The Server Core interface is a command prompt with PowerShell support.

C. Only Remotely using Server Manager

D. Microsoft Management Console is not available locally

E. Desktop Experience is not available

Server Core is a minimal server installation option for computers running on the operating system. Server Core provides a low-maintenance server environment with limited functionality.

The minimal nature of Server Core creates limitations:

There is no Windows shell and very limited GUI functionality. The Server Core interface is a command prompt with PowerShell support.

There is limited MSI support (unattended mode only).

Server Graphical Shell is not installed

Microsoft Management Console: not available locally.

Desktop Experience: not available.

http://msdn.microsoft.com/en-us/library/windows/desktop/hh846323%28v=vs.85%29.aspx http://technet.microsoft.com/en-us/library/hh831786.aspx

http://technet.microsoft.com/en-us/library/jj574205.aspx

http://technet.microsoft.com/en-us/library/ee441255%28v=ws.10%29.aspx

 

 

QUESTION 218

You have a server named Server1 that runs a Server Core installation of Windows Server 2012 R2. Server1 is configured to obtain an IPv4 address by using DHCP. You need to configure the IPv4 settings of the network connection on Server1 as follows:

 

– IP address: 10.1.1.1

– Subnet mask: 255.255.240.0

– Default gateway: 10.1.1.254

 

What should you run?

 

A.

Set-NetlPInterface

B.

netcfg.exe

C.

New-NetlPAddress

D.

msconfig.exe

 

Correct Answer: C

Explanation:

A. The Set-NetIPInterface cmdlet modifies IP interface properties such as is DHCP, IPv6 neighbor discovery settings, router settings and Wake on LAN (WoL) settings. The NetIPInterface object is automatically created by the computer and thus the NetIPInterface object has no New or Remove verbs.

C. The New-NetIPAddress cmdlet creates IP address and the configuration properties of that IP address. To create a specific IP address object, the required parameters include an IP address (IPv4 or IPv6) and an interface (InterfaceIndex or InterfaceAlias). It is also recommended to define the prefix length, alsoknown as a subnet mask, and default gateway. If DHCP is enabled on the interface to which this cmdlet is configured to, then DHCP will automatically be disabled.

 

clip_image018

 

D. System Configuration Utility (Msconfig.exe) automates the routine troubleshooting steps that Microsoft Product Support Services technicians use when diagnosing Windows configuration issues. You can use this tool to modify the system configuration through a process of elimination with check boxes, reducing the risk of typing errors.

http://technet.microsoft.com/en-us/library/hh826125(v=wps.620).aspx http://technet.microsoft.com/en-us/library/hh826150%28v=wps.620%29.aspx http://windows.microsoft.com/en-us/windows7/change-tcp-ip-settings

 

 

 

 

 

 

 

 

 

 

QUESTION 219

Your network contains an Active Directory domain named adatum.com. The domain contains the servers shown in the following table.

 

clip_image020

 

You need to ensure that you can use Server Manager on DC1 to manage DC2. Which two tasks should you perform? (Each correct answer presents part of the solution. Choose two.)

 

A.

Install Microsoft .NET Framework 4 on DC2.

B.

Install Remote Server Administration Tools on DC1.

C.

Install Remote Server Administration Tools on DC2.

D.

Install Windows Management Framework 3.0 on DC2.

 

Correct Answer: AD

Explanation:

Windows Management Framework 3.0 To use this release of Server Manager to access and manage remote servers that are running Windows Server 2008 or Windows Server 2008 R2, you must first install .NET Framework 4.0, and then install Windows Management Framework 3.0 on those servers. Note: In Windows Server 2012 R2, you can use Server Manager to perform management tasks on remote servers. Remote management is enabled by default on servers that are running Windows Server 2012 R2. To manage a server remotely by using Server Manager, you add the server to the Server Manager server pool. You can use Server Manager to manage remote servers that are running Windows Server 2008 and Windows Server 2008 R2, but the following updates are required to fully manage these older operating systems (see above). Reference: Configure Remote Management in Server Manager

 

 

QUESTION 220

You have a file server named Server1 that runs Windows Server 2012 R2. Server1 contains a folder named Folder1. You share Folder1 as Share1 by using Advanced Sharing. Access-based enumeration is enabled. Share1 contains an application named Appl.exe. You configure the NTFS permissions on Folder1 as shown in the following table.

 

clip_image022

 

The members of Group2 report that they cannot make changes to the files in Share1. The members of Group1 and Group2 run Appl.exe successfully. You need to ensure that the members of Group2 can edit the files in Share1. What should you do?

 

A.

Edit the Share permissions.

B.

Disable access-based enumeration.

C.

Replace the NTFS permissions on all of the child objects.

D.

Edit the NTFS permissions.

 

Correct Answer: A

Explanation:

Suppose you’ve shared a folder on a Windows Server 2012 R2 system and you’ve created the share as a readonlyshare, but the NTFS permissions for the folder are Full Control for the Everyone group. When conflicts likethis arise between share and NTFS permissions, the most restrictive permission set wins out.

There are a number of additional settings that you can enable for the share. ABE allows users to see just thefiles and folders to which they have been granted access and not even be able to see that other itemsexist.

http://blogs.technet.com/b/keithmayer/archive/2012/10/21/
ntfs-shared-folders-a-whole-loteasier- in-windowsserver-2012.aspx

http://www.techrepublic.com/blog/networking/how-to-share-a-folder-in-windows- server2012/6057

http://www.techrepublic.com/blog/networking/windows-server-2012-tips-for-setting-sharevs- ntfspermissions/6204

 

Free VCE & PDF File for Microsoft 70-410 Real Exam

Instant Access to Free VCE Files: MCSE|MCSA|MCITP…
Instant Access to Free PDF Files: MCSE|MCSA|MCITP…