تاریخ به روز رسانی: 2015 , Aug 27
تعداد سوالات: 118
ورژن: 31.0
منبع: Actual Test
You work as the network administrator for a Microsoft Windows Server 2008 domain named ABC.com. ABC.com has a Development division which utilizes two organizational units (OU) named DevelopUsers and DevelopComputers for user and computer account storage. The Development division user and computer accounts are configured as members of global security groups named DevUsers and DevComputers.
During the course of the week you configure two Password Settings objects for Development division members named CredSettings01 and CredSettings02. You additionally configure a minimum password length of 10 for CredSettings01 and 9 for CredSettings02. ABC.com wants you to determine the required password length minimum for Development division users.
What minimum password length should be configured for CredSettings01 applied to DevUsers?
A. You should configure the minimum password length to 9.
B. You should configure the minimum password length to 10.
C. You should configure the minimum password length to 5.
D. You should configure the minimum password length to 4.
You administrate an Active Directory domain named ABC.com. The domain has a Microsoft Windows Server 2012 R2 server named ABC-SR01 that hosts the File Server Resource Manager role service.
You are configuring quota threshold and want to receive an email alert when 80% of the quota has been reached.
Where would you enable the email alert?
A. You should consider creating a Data Collector Set (DCS).
B. You should use Windows Resource Monitor.
C. You should use the File Server Resource Manager.
D. You should use Disk Quota Tools.
E. You should use Performance Logs and Alerts.
To make use of email alerts, you need to configure the SMTP Server address details in the File Server Resource Manager options.
You work as a network administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain name ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 R2 installed.
The computer accounts for all file servers are located in an organizational unit (OU) named DataOU.
You are required to track user access to shared folders on the file servers.
Which of the following actions should you consider?
A. You should configure auditing of Account Logon events for the DataOU.
B. You should configure auditing of Object Access events for the DataOU.
C. You should configure auditing of Global Object Access Auditing events for the DataOU.
D. You should configure auditing of Directory Service Access events for the DataOU.
E. You should configure auditing of Privilege Use events for the DataOU.
You are the administrator of an Active Directory Domain Services (AD DS) domain named ABC.com. The domain has a Microsoft Windows Server 2012 R2 server named ABC-SR05 that hosts the File and Storage Services server role.
ABC-SR05 hosts a shared folder named userData. You want to receive an email alert when a multimedia file is saved to the userData folder.
Which tool should you use?
A. You should use File Management Tasks in File Server Resource Manager.
B. You should use File Screen Management in File Server Resource Manager.
C. You should use Quota Management in File Server Resource Manager.
D. You should use File Management Tasks in File Server Resource Manager.
E. You should use Storage Reports in File Server Resource Manager.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 R2 installed and all client computers have Windows 8 Pro installed.
BitLocker Drive Encryption (Bitlocker) is enabled on all client computers. ABC.com wants you to implement BitLocker Network Unlock.
Which of the following servers would you required to implement BitLocker Network Unlock?
A. A Domain Controller.
B. A DHCP server.
C. A DNS Server.
D. A Windows Deployment Server.
E. An Application Server.
F. A Web Server.
G. A File and Print Server.
H. A Windows Server Update Services server.
BitLocker Network Unlock requires a Windows Server 2012 R2 server running the Windows Deployment Services (WDS) role in the environment.
You administer a Microsoft Windows Server 2012 R2 domain named ABC.com. The ABC.com domain has two server computers named ABC-SR11 and ABC-SR12, both of which host the DFS replication roles and are members of the same DFS Replication group.
ABC.com is to relocate ABC-SR12 to a new office that will be connected to the main office by a VPN connection across the internet.
You need to configure the amount of network bandwidth that can be consumed by the replication between the two servers.
Which of the following actions should you take?
A. You should configure the Quota Size of Staging Folder and Conflict and Deleted Folder.
B. You should configure the replication group schedule.
C. You should configure the replication filters.
D. You should configure the replication topology.
You administer a Microsoft Windows Server 2012 R2 domain named ABC.com. The ABC.com domain has several administrative templates that are applied via a Group Policy object (GPO). You must provide a solution for reviewing active and inactive Group Policy settings containing comments.
You open the Group Policy settings. How would you apply the appropriate filters to accomplish this task? (Choose all that apply)
A. You should select the Enable Keyword Filters option.
B. You should select the Enable Requirements Filters option.
C. You should set the Managed Filter Options to Yes.
D. You should set the Commented Filter Options to Yes.
E. You should set the Configured Filter Options to Yes.
F. You should set the Managed Filter Options to Any.
G. You should set the Commented Filter Options to Any.
H. You should set the Configured Filter Options to Any.
I. You should set the Managed Filter Options to No.
J. You should set the Commented Filter Options to No.
You administer a Microsoft Windows Server 2012 R2 domain named ABC.com. ABC.com makes use of Windows Power Shell scripts for configuring settings for network users. These settings are applied when the users log on to their client computers.
You notice users are able to use their client computers before the scripts have finished running. ABC.com wants you to make sure the scripts are finished running before the users can use their computers.
What action should you take?
A. You should open Group Policy Management Editor and enable the Run logon scripts asynchronously policy.
B. You should open Group Policy Management Editor and enable the Run logon scripts synchronously policy.
C. You should open Group Policy Management Editor and enable the Run Windows PowerShell scripts first at user logon, logoff.
D. You should open Group Policy Management Editor and enable the Run startup scripts asynchronously policy.
E. You should open Group Policy Management Editor and configure the Specify maximum wait time for Group Policy scripts setting.
Logon scripts are applied when the users log on to their client computers. The “Run Logon Scripts Synchronously” policy waits for the logon script to finish running before Windows Explorer is allowed to start, effectively preventing the user from using the computer before the script has finished processing.
Your role of Network Administrator at ABC.com includes the management of an Active Directory Domain Services (AD DS) domain named ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 R2 installed.
You discover that group policy settings that should apply to all domain computers are not being applied. You troubleshoot the issue and discover that the Default Domain Controllers and Default Domain group policy objects (GPOs) are corrupted.
You do not have a backup of the GPOs.
How can you recover the Default Domain Controllers and Default Domain group policy objects?
A. You should run the dcdiag.exe utility.
B. You should run the dcgpofix.exe utility.
C. You should run the ntdsutil.exe utility.
D. You should run the dcpromo.exe utility.
You administer a Microsoft Windows Server 2012 R2 domain named ABC.com. The ABC.com domain has a server named ABC-SR07 that hosts the DNS and Web Server (IIS) roles.
You create a managed service account named ABCwebsrv that will be used by the World Wide Web Publishing Service. However, when you specify the ABC\ABCwebsrv account as the logon account for the World Wide Web Publishing Service, you receive an error message stating “The account name is invalid or does not exist, or the password is invalid for the account name specified.” Which of the following actions should you take for the World Wide Web Publishing Service to usethe ABCwebsrv account?
A. You should delete and recreate the ABCwebsrv service account.
B. You should specify the service account as ABCwebsrv@ABC.com.
C. You should specify the service account as ABC\ABCwebsrv$.
D. You should change the password used by the service account.
You must use a dollar sign ($) at the end of the service account name when you are configuring a service to run under the managed service account.
You work as a Network Administrator at ABC.com where you manage a Windows Server 2012 R2 Active Directory Domain Services (AD DS) domain named ABC.com. The network has an existing Password Settings object (PSO) named pwrdpol.
How would you review the settings applied by the pwrdpol PSO? (Choose all that apply. Each correct answer is a complete solution)
A. You should run the Resultant Set of Policy (RSoP) wizard.
B. You should run the Get-ADFineGrainedPasswordPolicy pwrdpol cmdlet.
C. You should use the Group Policy Management mmc.
D. You should use the Active Directory Administrative Center.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. The ABC.com domain has a Microsoft Windows Server 2012 R2 domain controller named ABC-DC03. You are required to relocate the Active Directory database on ABC-DC03 to a new volume.
Which of the following actions should you take to move the Active Directory database?
A. You should stop the Active Directory Domain Services (AD DS) service, run Ntdsutil.exe at an elevated command prompt and enter the partition management command.
B. You should stop the Active Directory Domain Services (AD DS) service, run Ntdsutil.exe at an elevated command prompt and enter the files command.
C. You should stop the Active Directory Domain Services (AD DS) service, run Dsmgmt.exe at an elevated command prompt and enter the pa m command.
D. You should stop the Active Directory Domain Services (AD DS) service and open the command prompt in elevated mode. Then run the ldifde –f command.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 R2 installed.
ABC.com has a main office in New York and a branch office in Atlanta. You work in the New York office. The two offices are connected by a WAN connection. The main office has a domain controller named ABC-DC01.
You need to deploy a Read Only Domain Controller (RODC) in the Atlanta office. You open Active Directory Administration Center on ABC-DC01 and create a staged RODC account by selecting the “Pre-create a Read-only domain controller account” option.
During the resulting wizard, you delegate an Atlanta office user named Mia permission to install and administer the RODC. You then export the settings to an installation file and send the file to Mia.
Mia needs to promote the RODC using the installation file.
How should Mia promote the RODC using the installation file?
A. She should run the Add-WindowsFeature PowerShell cmdlet.
B. She should run the Install-ADDSDomainController PowerShell cmdlet.
C. She should run the dcpromo.exe command.
D. She should run the Add-ADDSReadOnlyDomainControllerAccount PowerShell cmdlet.
You administer a Microsoft Windows Server 2008 R2 domain named ABC.com. The ABC.com network has two Windows Server 2012 servers named ABC-SR07 and ABC-SR08. ABC-SR07 and ABC-SR08 are configured as a Network Load Balancing (NLB) cluster that hosts the Web Server (IIS) service role. The network also has a Microsoft SQL Server 2012 database server named ABC-DB10 that runs Windows Server 2012.
The network users access the application pool KingApp to access a Web site named TestWeb. The TestWeb application uses a database as a data store. You are required to create an account named ABCApplication for the TestWeb identity whilst ensuring users are required to provide their individual credentials.
What action should be taken?
A. You should consider utilizing separate Service Principal Name (SPN) with a delegation setting for ABC-DC03.
B. You should consider creating a delegation setting for ABC-DC03 and ABC-DC02 with matching Service Principal Name (SPN).
C. You should consider creating a Service Principal Name (SPN) for ABC-DC03 with delegation settings for ABC-DC01.
D. You should consider creating a Service Principal Name (SPN) for ABCApplication with delegation settings for ABC-DC01 and ABC-DC02.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 R2 installed and all client computers have Microsoft Windows 8 Pro installed.
You have been charged with using tombstone reanimation to recover a user account named Mia Hamm that was deleted from Active Directory.
Which of the following actions should be taken to recover the user account?
A. You should make use of Windows Backup.
B. You should make use of System Restore.
C. You should make use of the Ldifde utility.
D. You should make use of the Ldp utility.
E. You should make use of the Dsdbutil utility.
F. You should make use of the Dsmgmt utility.
You work as the network administrator for a Microsoft Windows Server 2008 domain named ABC.com. ABC.com has a Financial division which utilizes two organizational units (OU) named FinUsers and FinComputers for user and computer account storage. The Development division user and computer accounts are configured as members of global security groups named DevUsers and DevComputers.
You configure two Password Settings objects for Financial division members named Credential01 and Credential02. You additionally configure a minimum password length of 4 for CredSettings01 and 7 for CredSettings02. ABC.com wants you to determine the required password length minimum for Development division users.
What minimum password length should be configured for CredSettings02 applied to FinUsers?
A. You should configure the minimum password length to 9.
B. You should configure the minimum password length to 10.
C. You should configure the minimum password length to 7.
D. You should configure the minimum password length to 4.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 R2 installed.
You want to clone a domain controller to create another domain controller.
Which two of the following steps should you perform first? (Choose two).
A. You should run the Install-ADDSDomainController PowerShell cmdlet.
B. You should run the New-ADDCCloneConfigFile PowerShell cmdlet.
C. You should run the sysprep.exe /oobe command.
D. You should run the dcpromo.exe /adv command.
E. You should place a DCCloneConfig.xml file in the %Systemroot%\NTDS folder.
F. You should place an Unattend.xml file in the %Systemroot%\SYSVOL folder.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. The ABC.com network has a Windows Server 2012 R2 domain controller named ABC-DC10 which hosts the Web Server, DNS and DHCP services.
You create a snapshot backup of ABC-DC10 using the Ntdsutil utility and mount the snapshot.
How would you access the contents of the snapshot?
A. You should run the Ntdsutil.exe utility with the partition management parameter.
B. You should run the Dsamain.exe utility with the /allowupgrade parameter.
C. You should run the Dsamain.exe /dbpath command from the command prompt.
D. You should run the Ntdsutil.exe utility with the files parameter.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com.
The network has a Server 2012 R2 server named ABC-SR09. ABC-SR09 runs a custom line-ofbusiness (LOB) application used by all company users.
You create a Data Collector Set (DCS) to monitor performance counters for ABC-SR09.
You need to ensure that when the size of the folder containing the performance log data reaches 500MB, previous data is deleted.
How can you meet this requirement?
A. You should configure the Maximum root path size setting in the Data Manager settings of the Data Collector Set.
B. You should configure a quota on the folder in File Server Resource Manager (FSRM).
C. You should configure a file screen on the folder in File Server Resource Manager (FSRM).
D. You should configure the Maximum folders size setting in the Data Manager settings of the Data Collector Set.
You administer a Microsoft Windows Server 2012 R2 domain named ABC.com. The ABC.com domain has a server named ABC-SR01 that you use for administrative tasks.
You want to create a solution on ABC-SR01 that keeps a record of the registry entries and starts an application if the free space on the hard drive falls below 12 percent.
Which of the following actions should be taken?
A. You should create a Data Collector Set (DCS) and configure it to collect System configuration information. Then create a Data Collector Performance Counter Alert.
B. You should create a Performance Counter and Configure Performance Alerts.
C. You should create a Data Collector Set (DCS) and configure it to collect Performance Counter. Then configure a Performance Alert.
D. You should create a Data Collector Set (DCS) and configure it to collect Configuration data. Then create a Data Collector Performance Counter Alert.