Ensurepass

QUESTION 31

Your network contains an Active Directory forest named adatum.com. The forest contains a single domain. The domain contains four servers. The servers are configured as shown in the following table.

 

clip_image001

 

You need to update the schema to support a domain controller that will run Windows Server 2012. On which server should you run adprep.exe?

 

A.      DC1

B.      DC2

C.      DC3

D.      Server1

 

Correct Answer: C

 

 

QUESTION 32

Your network contains an Active Directory domain named contoso.com. The domain contains domain controllers that run either Windows Server 2003, Windows Server 2008 R2, or Windows Server 2012. You plan to implement a new Active Directory forest. The new forest will be used for testing and will be isolated from the production network. In the test network, you deploy a server named Server1 that runs Windows Server 2012. You need to configure Server1 as a new domain controller in a new forest named contoso.test. The solution must meet the following.

 

clip_image003

clip_image005

 

Select two options below.

 

A.      There is no need to set the Forest Functional Level.

B.      Set Forest Functional Level to Windows 2003.

C.      Set Forest Functional Level to Windows 2008

D.      Set Forest Functional Level to Windows 2008 R2.

E.       Set Forest Functional Level to Windows 2012.

F.       There is no need to set the Domain Functional Level.

G.      Set Domain Functional Level to Windows 2003.

H.      Set Domain Functional Level to Windows 2008

I.        Set Domain Functional Level to Windows 2008 R2.

J.        Set Domain Functional Level to Windows 2012.

 

Correct Answer: BG

 

 

QUESTION 33

Your network contains two Active Directory forests named contoso.com and fabrikam.com. The contoso.com forest contains two domains named corp.contoso.com and contoso.com. You establish a two-way forest trust between contoso.com and fabrikam.com. Users from the corp.contoso.com domain report that they cannot log on to client computers in the fabrikam.com domain by using their corp.contoso.com user account. When they try to log on, they receive following error message:

 

“The computer you are signing into is protected by an authentication firewall. The specified account is not allowed to authenticate to the computer.”

 

Corp.contoso.com users can log on successfully to client computers in the contoso.com domain by using their corp.contoso.com user account credentials. You need to allow users from the corp.contoso.com domain to log on to the client computers in the fabrikam.com forest. What should you do?

 

A.      Configure Windows Firewall with Advanced Security.

B.      Enable SID history.

C.      Configure forest-wide authentication.

D.      Instruct the users to log on by using a user principal name (UPN).

 

Correct Answer: C

 

 

QUESTION 34

You have a server named Server1 that runs Windows Server 2012 and is used for testing. A developer at your company creates and installs an unsigned kernel-mode driver on Server1. The developer reports that Server1 will no longer start. You need to ensure that the developer can test the new driver. The solution must minimize the amount of data loss. Which Advanced Boot Option should you select?

 

A.      Disable Driver Signature Enforcement

B.      Disable automatic restart on system failure

C.      Last Know Good Configuration (advanced)

D.      Repair Your Computer

 

Correct Answer: A

 

 

QUESTION 35

You have a server named Server 1 that runs Windows Server 2012. Server1 has five network adapters. Three of the network adapters are connected to a network named LAN1. The two other network adapters are connected to a network named LAN2. You create a network adapter team named Team1 from two of the adapters connected to LAN1. You create a network adapter team named Team2 from the two adapters connected to LAN2. A company policy states that all server IP addresses must be assigned by using a reserved address in DHCP. You need to identify how many DHCP reservations you must create for Server1. How many reservations should you identify?

 

A.      2

B.      3

C.      5

D.      7

 

Correct Answer: B

 

 

QUESTION 36

Your network contains an Active Directory domain named contoso.com. The domain contains servers named Server1 and Server2 that run Windows Server 2012. Server1 has the IP Address Management (IPAM) Server feature installed. You install the IPAM client on Server2. You open Server Manager on Server2 as shown in the exhibit.

 

clip_image007

 

You need to manage IPAM from Server2. What should you do first?

 

A.      On Server2, open Computer Management and connect to Server1.

B.      On Server1, add the Server2 computer account to the IPAM ASM Administrators group.

C.      On Server2, add Server1 to Server Manager.

D.      On Server1, add the Server2 computer account to the IPAM MSM Administrators group.

 

Correct Answer: C

 

 

QUESTION 37

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012. Server1 has the IP Address Management (IPAM) Server feature installed. IPAM is configured currently for Group Policy-based provisioning. You need to change the IPAM provisioning method on Server1. What should you do?

 

A.      Run the ipamgc.exe command.

B.      Run the Set-IPAMConfiguration cmdlet.

C.      Reinstall the IP Address Management (IPAM) Server feature.

D.      Delete IPAM Group Policy objects (GPOs) from the domain.

Correct Answer: C

 

 

QUESTION 38

Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 and a member server named Server1. Server1 has the IP Address Management (IPAM) Server feature installed. On DC1, you configure Windows Firewall to allow all of the necessary inbound ports for IPAM. On Server1, you open Server Manager as shown in the exhibit.

 

clip_image009

 

You need to ensure that you can use IPAM on Server1 to manage DNS on DC1. What should you do?

 

A.      Modify the outbound firewall rules on Server1.

B.      Add Server1 to the Remote Management Users group.

C.      Add Server1 to the Event Log Readers group.

D.      Modify the inbound firewall rules on Server1.

 

Correct Answer: C

 

 

QUESTION 39

Your network contains an Active Directory domain named contoso.com. The domain contains four servers. The servers are configured as shown in the following table.

 

clip_image011

 

You plan to deploy an enterprise certification authority (CA) on a server named Server5. Server5 will be used to issue certificates to domain-joined computers and workgroup computers. You need to identify which server you must use as the certificate revocation list (CRL) distribution point for Server5. Which server should you identify?

 

A.        Server1

B.        Server3

C.        Server4

D.        Server2

 

Correct Answer: B

 

 

QUESTION 40

Your network contains three Active Directory forests. Each forest contains an Active Directory Rights Management Services (AD RMS) root cluster. All of the users in all of the forests must be able to access protected content from any of the forests. You need to identify the minimum number of AD RMS trusts required. How many trusts should you identify?

 

A.      2

B.      3

C.      4

D.      6

 

Correct Answer: D

 

 

Comments are closed.