QUESTION 311

Your network contains an Active Directory domain named contoso.com. You have a Group Policy object (GPO) named GPO1 that contains several user settings. GPO1 is linked to an organizational unit (OU) named OU1. The help desk reports that GPO1App1ies to only some of the users in OU1. You open Group Policy Management as shown in the exhibit. (Click the Exhibit button.)

 

clip_image002

 

You need to configure GPO1 to Apply to all of the users in OU1. What should you do?

 

A.

Modify the Security settings of GPO1.

B.

Disable Block Inheritance on OU1.

C.

Modify the GPO status of GPO1.

D.

Enforce GPO1.

 

Correct Answer: A

 

 

 

 

 

 

 

 

 

 

 

 

 

 < /font>

QUESTION 312

Your network contains an Active Directory domain named contoso.com. The domain contains an Application server named Server1. Server1 runs Windows Server 2012 R2. Server1 is configured as an FTP server. Client computers use an FTP Application named App1.exe. App1.exe uses TCP port 21 as the control port and dynamically requests a data port. On Server1, you create a firewall rule to allow connections on TCP port 21. You need to configure Server1 to support the client connections from App1.exe. What should you do?

 

A.

Run netshadvfirewall set global statefulftp enable.

B.

Create an inbound firewall rule to allow App1.exe.

C.

Create a tunnel connection security rule.

D.

Run Set-NetFirewallRule -DisplayNameDynamicFTP -Profile Domain

 

Correct Answer: A

Explanation:

http://technet.microsoft.com/en-us/library/cc771920%28v=ws.10%29.aspx#BKMK_set_2a

The netsh firewall context is supplied only for backward compatibility. We recommend that you do not use this context on a computer that is running Windows Vista or a later version of Windows

In the netsh advfirewall firewall context, the add command only has one variation, the add rule command.

Netsh advfirewall set global statefulftp:

Configures how Windows Firewall with Advanced Security handles FTP traffic that uses an initial connection on one port to request a data connection on a different port.

When statefulftp is enabled, the firewall examines the PORT and PASV requests for these other port numbers and then allows the corresponding data connection to the port number that was requested.

Syntax

set global statefulftp { enable | disable | notconfigured }

Parameters

statefulftp can be set to one of the following values:

enable

The firewall tracks the port numbers specified in PORT command requests and in the responses to PASV requests, and then allows the incoming FTP data traffic entering on the requested port number.

disable

This is the default value. The firewall does not track outgoing PORT commands or PASV responses, and so incoming data connections on the PORT or PASV requested port is blocked as an unsolicited incoming connection.

notconfigured

Valid only when netsh is configuring a GPO by using the set store command.

 

 

QUESTION 313

You work as an administrator at ENSUREPASS.com. The ENSUREPASS.com network consists of a single domain named ENSUREPASS.com. All servers in the ENSUREPASS.com domain, including domain controllers, have Windows Server 2012 R2 installed.

You have configured a server, named ENSUREPASS-SR07, as a VPN server. You are required to configure new firewall rules for workstation connections.

You want to achieve this using the least amount of administrative effort.

Which of the following actions should you take?

 

A.

You should consider making use of the Enable-NetFirewallRule cmdlet.

B.

You should consider making use of the New-NetFirewallRule cmdlet.

C.

You should consider making use of dism.exe from the command prompt.

D.

You should consider making use of dsadd.exe from the command prompt.

Correct Answer: B

Explanation:

New-NetFirewallRule – Creates a new inbound or outbound firewall rule and adds the rule to the target computer.

You can’t Enable what doesn’t exist yet… you must use New-NetFirewallRule

 

clip_image003

 

http://technet.microsoft.com/en-us/library/jj554908%28v=wps.620%29.aspx http://blogs.technet.com/b/heyscriptingguy/archive/2012/11/13/use-powershell-to-create-new-windows- firewall-rules.aspx

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

QUESTION 314

HOTSPOT

Your company has a main office and a sales office. The main office has 2,000 users. The sales office has 20 users. All client computers in the sales office run Windows 8. The sales office contains a print server named App1 that runs Windows Server 2012 R2. App1 has a shared printer named Printer1. Printer1 connects to a network-attached print device. You plan to connect all of the users in the sales office to Printer1 on App1. You need to ensure that if App1 fails, the users can continue to print to Printer1. What should you configure on App1?To answer, select the appropriate option in the answer area.

 

clip_image005

 

Correct Answer:

clip_image007

 

 

 

 

 

 

 

QUESTION 315

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 runs Windows Server 2012 and has the HyperV server role installed. On Server1, an administrator creates a virtual machine named VM1. A user named User1 is the member of the local Administrators group on Server1. User1 attempts to modify the settings of VM1 as shown in the following exhibit. (Click the Exhibit button.)

 

clip_image009

 

You need to ensure that User1 can modify the settings of VM1 by running the Set-Vm cmdlet. What should you instruct User1 to do?

 

A.

Import the Hyper-V module.

B.

Install the Integration Services on VM1.

C.

Run Windows PowerShell with elevated privileges.

D.

Modify the membership of the local Hyper-V Administrators group.

 

Correct Answer: C

Explanation:

clip_image011

 

 

 

 

 

 

 

 

 

 

 

 

QUESTION 316

DRAG DROP

You have a Hyper-V host named Server1. A technician creates a virtual machine named VM1 on Server1 by using the New Virtual Machine Wizard. You start VM1 and you discover that there is no option to start by using PXE. You need to ensure that you can start VM1 by using PXE. Which three actions should you perform in sequence? (To answer, move the appropriate three actions from the list of actions to the answer area and arrange them in the correct order.)

 

clip_image013

 

Correct Answer:

clip_image015

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

QUESTION 317

HOTSPOT

You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the HyperV server role installed. You need to implement NIC teaming on Server1. Which two network connections should you include on the NIC team? (To answer, select the two appropriate network connections in the answer area.)

 

clip_image017

 

Correct Answer:

clip_image019

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

QUESTION 318

You have a server named Server1 that runs Windows Server 2012 R2. On Server1, you open Computer Management as shown in the exhibit. (Click the Exhibit button.)

 

clip_image021

 

You need to ensure that you can create a 3-TB volume on Disk 1. What should you do first?

 

A.

Create a storage pool.

B.

Convert the disk to a GPT disk.

C.

Create a VHD, and then attach the VHD.

D.

Convert the disk to a dynamic disk.

 

Correct Answer: B

Explanation:

clip_image023

 

 

 

QUESTION 319

You have 3 server named Server1. Server1 runs a Server Core installation of Windows Server 2012 R2. The local area connection on Server1 has the following configuration:

IP address: 10.1.1.1

 

– Subnet mask: 255.255.240.0

– Default gateway: 10.1.1.254

– Preferred DNS server: <none>

 

The network contains a DNS server that has an IPv4 address of 10.1.1.200. You need to configure Server1 to use 10.1.1.200 as the preferred DNS server. The solution must not change any other settings on Server1.

Which command should you run?

 

A.

sconfig.cmd

B.

net.exe

C.

Set-NetIPInterface

D.

netsh.exe

 

Correct Answer: A

Explanation:

In Windows Server 2012 R2, you can use the Server Configuration tool (Sconfig.cmd) to configure and manage several common aspects of Server Core installations. Network settings You can configure the IP address to be assigned automatically by a DHCP Server or you can assign a static IP address manually. This option allows you to configure DNS Server settings for the server as well.

 

clip_image025

 

Sconfig.cmd interface

 

 

 

 

 

 

QUESTION 320

You work as an administrator at ENSUREPASS.com. The ENSUREPASS.com network consists of a single domain named ENSUREPASS.com. All servers in the ENSUREPASS.com domain, including domain controllers, have Windows Server 2012 R2 installed.

ENSUREPASS.com has a domain controller, named ENSUREPASS-DC01. You have been instructed to make sure that the Group Policy Administrative Templates are available centrally.

Which of the following actions should you take?

 

A.

You should consider copying the policies folder to the PolicyDefinitions folder in the ENSUREPASS.com

domain’s SYSVOL folder.

B.

You should consider copying the PolicyDefinitions folder to the policies folder in the ENSUREPASS.com

domain’s SYSVOL folder.

C.

You should consider copying the PolicyDefinitions folder to the policies folder in the ENSUREPASS.com

domain’s systemroot folder.

D.

You should consider copying the PolicyDefinitions folder to the policies folder in the ENSUREPASS.com

 

domain’s logonserver folder.

 

Correct Answer: B

Explanation:

PolicyDefinitions folder within the SYSVOL folder hierarchy. By placing the ADMX files in this directory, they are replicated to every DC in the domain; by extension, the ADMX-aware Group Policy Management Console in Windows Vista, Windows 7, Windows Server 2008 and R2 can check this folder as an additional source of ADMX files, and will report them accordingly when setting your policies.

By default, the folder is not created. Whether you are a single DC or several thousand, I would strongly recommend you create a Central Store and start using it for all your ADMX file storage. It really does work well.

The Central Store To take advantage of the benefits of .admx files, you must create a Central Store in the SYSVOL folder on a domain controller. The Central Store is a file location that is checked by the Group Policy tools. The Group Policy tools use any .admx files that are in the Central Store. The files that are in the Central Store are later replicated to all domain controllers in the domain.

To create a Central Store for .admx and .adml files, create a folder that is named PolicyDefinitions in the following location: \\FQDN\SYSVOL\FQDN\policies

Note: FQDN is a fully qualified domain name.

http://tigermatt.wordpress.com/tag/policydefinitions/

http://support.microsoft.com/kb/929841/en-us

http://www.virtuallyimpossible.co.uk/how-to-create-a-group-policy-central-store/ http://support.microsoft.com/kb/2741591/en-us

 

Free VCE & PDF File for Microsoft 70-410 Real Exam

Instant Access to Free VCE Files: MCSE|MCSA|MCITP…
Instant Access to Free PDF Files: MCSE|MCSA|MCITP…