You administer a Microsoft Windows Server 2012 R2 domain named ABC.com. ABC.com has two servers named ABC-SR03 and ABC-SR04.
You are implementing a collector-initiated subscription on ABC-SR03 that will collect system events from all servers in the ABC.com domain.
You need to ensure that the system events from Edge 1 are collected on Admin1.
You open the Subscription Runtime Status for ABC-SR04 and notice an error stating: “The data area passed to the system call is too small”.
Which of the following actions should you take to collect the system events from ABC-SR04?
A. You should select the events for collection and reduce the number of events collected by restricting the time of the events or limiting the type of events.
B. You should specify the location of the log file where the collected events are to be stored in the Destination Log box.
C. You should open the Advanced Subscription Settings dialog box and configure the Event Delivery Optimization option.
D. You should use the Source initiated subscription method.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 R2 installed and the client computers have either Windows 7 Professional or Windows 8 Pro installed.
All client computer accounts are located in an organizational unit (OU) named ABC-Clients.
You discover that several computers on the network do not have the latest Windows updates installed. On investigation you note that computers that are not up to date are configured to download and install Windows updates from Microsoft when the user chooses to do so.
Company security policy states that all client computers must install Windows updates automatically.
You create a group policy object (GPO) and link it to the ABC-Clients OU.
Which of the following settings should you configure in the GPO?
A. You should configure the Automatic Updates detection frequency.
B. You should configure the Configure Automatic Updates.
C. You should configure the Turn on Software Notifications.
D. You should configure the Turn on recommended updates via Automatic Updates.
E. You should configure the Reschedule Automatic Updates scheduled installation.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 installed.
The ABC.com domain has a server named ABC-SR18 which hosts the Windows Server Update Services (WSUS) and Microsoft Forefront Threat Management Gateway (TMG). All client computers are connected to the Internet via ABC-SR18.
ABC.com receives an HTTP error when trying to utilize Windows Server Update Services configuration wizard Start Connecting functions.
Which of the following actions should you take to ensure ABC-DC01 is allowed to download updates from the Internet?
A. You should modify Products And Classifications option from the Update Services console.
B. You should modify Update Source and Proxy Server option from the Update Services console
C. You should modify Update Files And Languages option from the Update Services console.
D. You should modify Automatic Approvals option from the Update Services console.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 R2 installed.
The ABC.com domain has a member server named ABC-SR15 that is configured as a Windows Server Update Services (WSUS) server.
You want ABC-SR15 to use express installation files from the Microsoft Update servers.
Which of the following actions should you take?
A. You should open the Update Services console and configure the Classifications options in Products and Classifications.
B. You should make use of Background Intelligent Transfer Service (BITS).
C. You should open the Update Services console and modify the Update Source and Proxy Server options.
D. You should open the Update Services console and modify the Update Files option.
E. You should open the Update Services console and modify the Automatic Approvals option.
You work as a Network Administrator at ABC.com. ABC.com has a domain named ABC.com. All servers have Windows Server 2012 R2 installed.
You have an offline image of Windows Server 2012 R2 that you need to apply updates to using DISM. You only want to install updates that do not require a reboot.
Which of the following actions should you take?
A. You should run the DISM utility with the /Get-MountedWinInfo parameter.
B. You should run the DISM utility with the /PreventPending parameter.
C. You should run the DISM utility with the /Get-WimInfo parameter
D. You should run the DISM utility with the /Commit-Wim parameter.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers in the ABC.com domain have Microsoft Windows Server 2012 R2 installed. The ABC.com domain has a server named ABC-SR12 that hosts the Deployment Services (WDS) role.
You receive instruction to create an image of a Windows Server 2012 R2 virtual machine that is configured as an application server.
What action should you take?
A. You should use Windows Deployment Services (WDS) to create a discovery image.
B. You should use Windows Deployment Services (WDS) to create a boot image.
C. You should use Windows Deployment Services (WDS) to create a capture image.
D. You should use Windows Deployment Services (WDS) to create a custom install image.
E. You should use Windows Deployment Services (WDS) to create a deployment image.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. The servers on the ABC.com network have Windows Server 2012 R2 installed.
You implement DirectAccess. You leave the connection name as the default when you run the DirectAccess wizard.
You want to view the properties of a DirectAccess connection.
In the Networks window, what is the name of the DirectAccess connection?
A. VPN Connection.
B. Remote Access Connection.
C. Local Area Connection.
D. ABC.com.
E. Workplace Connection.
You work as a Network Administrator at ABC.com where you manage a Windows Server 2012 R2 Active Directory Domain Services (AD DS) domain named ABC.com.
You deploy a Routing and Remote Access (RRAS) server named ABC-SR21 on the domain. A remote user account named MiaHamm must be able to connect to ABC-SR21 by making use of a VPN connection.
Which of the following actions should you take to allow MiaHamm to connect to ABC-SR21?
A. You should configure MiaHamm as a RADIUS client.
B. You should add MiaHamm to the Remote Management Users group.
C. You should implement a network policy.
D. You should implement DirectAccess.
Logon scripts are applied when the users log on to their client computers. The “Run Logon Scripts Synchronously” policy waits for the logon script to finish running before Windows Explorer is allowed to start, effectively preventing the user from using the computer before the script has finished processing.
You work as a Network Administrator at ABC.com. Your duties include the management of the Active Directory Domain Services (AD DS) domain named ABC.com. All servers on the network have Windows Server 2012 R2 installed.
The corporate Web site www.ABC.com is hosted on a Windows Server 2012 R2 Web Server hosted on the corporate network. A public IP address is mapped to the private IP address of the Web Server to provide Internet access to the corporate Web site.
DirectAccess is enabled on the network using the default configuration to enable external users to access resources on the corporate network when they are away from the office.
Company security policy states that all connections from outside the office to www.ABC.com must come through the corporate firewall using the external IP address of the Web site.
How can you ensure that external users cannot connect to www.ABC.com using a DirectAccess connection?
A. You should run the Set-DAClientExperienceConfiguration cmdlet.
B. You should modify the Name Resolution Policy.
C. You should modify the external IP address assigned to the Web server.
D. You should run the Remove-DAEntryPointTableItem cmdlet.
You administer a Microsoft Windows Server 2012 domain named ABC.com. The ABC.com domain has a server named ABC-DC01 configured as a Dynamic Host Configuration Protocol (DHCP) and Domain Name System (DNS) server.
During the previous month a junior administrator removed a computer named ABC-SR01 from the domain but records for the computer still exists. ABC.com wants you to have all static resource information about ABC-SR01 to be removed.
Which of the following actions should you take to ensure records are automatically scavenged?
A. You should modify the Record time stamp value of the static resource record information.
B. You should modify Time –To-Live (TTL) and Security settings of the static resource record information.
C. You should modify Record Time stamp value and Expires after value of the static resource record information.
D. You should modify Security Settings and Record Time stamp values of static resource record information.
You administer a Microsoft Windows Server 2012 domain named ABC.com. A company Weyland Industries which has a domain named weyland.com entered into partnership with ABC.com.
During the course of the month you receive a request from Weyland Industries to configure ABC.com DNS servers to resolve requests from both weyland.com and ABC.com domains whilst ensuring administrative output is minimized and server names do not require changing.
Which of the following actions should you take?
A. You should consider creating an Active Directory-integrated zone.
B. You should consider creating a Stub zone.
C. You should consider creating a Standard Primary and Standard Secondary zone.
D. You should consider creating a Standard Primary and Reverse Lookup zone.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. The servers on the ABC.com network run either Windows Server 2008 R2 Service Pack 1 (SP1) or Windows Server 2012 R2.
A Windows Server 2012 R2 server named ABC-SR27 run the DNS Server role and hosts a primary zone for the ABC.com domain.
The company has recently opened a branch office. You install a Windows Server 2012 R2 server named ABC-SR56 in the branch office and install the DNS Server role.
To enable name resolution for branch office users, you want to configure ABC-SR56 to host a secondary DNS zone for the ABC.com domain.
How should you configure ABC-SR27?
A. On the General tab of the ABC.com zone properties, disable dynamic updates.
B. On the Zone Transfers tab of the ABC.com zone properties, add ABC-SR56.
C. On the Start of Authority (SOA) tab of the ABC.com zone properties, add ABC-SR56.
D. On the Forwarders tab of the ABC-SR27Server properties, add ABC-DNS6.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. The servers on the ABC.com network have Windows Server 2012 R2 installed and the client computers have either Windows 7 Enterprise or Windows 8 Enterprise installed.
A server named ABC-SR01 is having problems connecting to a server named ABC-SR04.
You suspect that ABC-SR01 has an invalid or out of date cached DNS record for ABC-SR04.
How can you view the DNS records cached on ABC-SR01?
A. You should use the ipconfig /all command.
B. You should use the ipconfig /flushdns command.
C. You should use the ipconfig /release command.
D. You should use the ipconfig /displaydns command.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. The servers on the ABC.com network have Windows Server 2012 R2 installed.
The ABC.com domain has several Group Policy objects (GPOs) none of which are enforced GPOs.
You need to view the setting of a GPO name DCAccess.
Which of the following actions should you take?
A. You should run the Gpupdate cmdlet.
B. You should run the Gpresult cmdlet.
C. You should run the Get-GPOReport cmdlet.
D. You should run the Set-GPInheritance cmdlet.
E. You should run the Set-GPPermission cmdlet.
F. You should run the Set-GPLink cmdlet.
G. You should run the New-GPStarterGPO cmdlet.
H. You should run the Remove-GPLink cmdlet.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. The servers on the ABC.com network have Windows Server 2012 R2 installed.
ABC.com has offices in several major cities. The Organizational Unit (OU) structure includes toplevel OUs for each office location. Each top-level OU contains child OUs for each company department in their respective offices. Each departmental OU contains the user accounts of the users working in that department in the relevant office.
Many Group Policy Objects (GPOs) are applied at the site level, domain level and OU level.
You create an OU named TestOU inside one of the departmental OUs. You want to ensure that no GPOs from the site level, domain level, location OU level or department OU level are applied to objects within TestOU.
How can you quickly achieve this goal?
A. You should run the Set-GPInheritance cmdlet.
B. You should run the Set-GPPermission cmdlet.
C. You should run the New-GPStarterGPO cmdlet.
D. You should run the Remove-GPLink cmdlet.
E. You should run the Set-GPLink cmdlet.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. The servers on the ABC.com network have Windows Server 2012 R2 installed.
You need to configure the order in which three group policy objects (GPOs) that are linked to the same Organization Unit (OU) are applied.
Which of the following actions should you take?
A. You should run the Gpupdate cmdlet.
B. You should run the Gpresult and Restore-GPO cmdlets.
C. You should run the Set-GPInheritance cmdlet.
D. You should run the Set-GPPermission cmdlet.
E. You should run the Set-GPLink cmdlet.
F. You should run the New-GPStarterGPO cmdlet.
G. You should run the Remove-GPLink cmdlet.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. The ABC.com network has several Group Policy objects (GPOs).
You must allow a junior technician named Rory Allen to create GPOs in the domain but he must not be able to link GPOs to any container.
Which of the following actions should you take?
A. You should run the Gpupdate cmdlet.
B. You should run the Set-GPPermission cmdlet.
C. You should run the Set-GPLink cmdlet.
D. You should run the Add-ADGroupMember cmdlet.
E. You should run the Remove-GPLink cmdlet.
F. You should run the Gpresult cmdlet.
You administer a Microsoft Windows Server 2012 domain named ABC.com. The ABC.com domain has a server named ABC-DC08 with an installation of Remote Access server role. ABCDC08 is currently making use of a network policy by the name of ABC-Policy01.
Which of the following configurations need to be set if you are assigned the task of confirming that ABC-Policy01 applies only to VPN connections making use of the L2TP protocol?
A. You will need to configure the Tunnel Type attributes for ABC-Policy01.
B. You will need to configure the Routing and Remote Access Service (RRAS) role service for ABC-Policy01.
C. You will need to adopt the TCP/IP Protocol Design for ABC-Policy01.
D. You will need to configure the NAS-Port-Type attributes for ABC-Policy01.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers on the network have Windows Server 2012 R2 installed and all client computers have Windows 7 Professional installed.
The network includes a server named ABC-DC12 that is configured as a domain controller. A server named ABC-SR27 is configured as a Network Policy Server (NPS) and a Health Registration Authority (HRA). A server named ABC-SR32 runs Certificate Services and is configured as an Enterprise Certification Authority (CA) for the ABC.com domain. The CA has been associated with the HRA on ABC-SR27.
The HRA has been configured with an SSL certificate and the appropriate DNS Service Locator (SRV) records have been configured.
You want to configure HRA automatic discovery on the client computers. You configure a Group Policy Object (GPO) to clear all trusted group configurations from the client computers.
What should you do next?
A. You should configure the EnableDiscovery registry key on ABC-SR32.
B. You should configure the EnableDiscovery registry key on ABC ABC-SR27.
C. You should configure the EnableDiscovery registry key on the client computers.
D. You should configure the EnableDiscovery registry key on a ABC-DC12.
You work as a Network Administrator at ABC.com. ABC.com has an Active Directory Domain Services (AD DS) domain named ABC.com. All servers on the network have Windows Server 2012 R2 installed and all client computers have Windows 8 Enterprise installed.
You plan to enable external users to connect to the network using a VPN connection.
You are deploying Network Access Protection to ensure system health compliance for users that connect over a VPN connection.
You install a Windows Server 2012 R2 computer named ABC-SR32 and install the Network Policy Server role. You want to configure ABC-SR32 as a Network Access Protection (NAP) health policy server for the VPN connections.
You run the Configure NAP wizard to create a VPN Enforcement policy. However, you are unable to complete the wizard.
How can you ensure that you are able to complete the Configure NAP wizard to configure VPN Enforcement?
A. Configure the IPSEC enforcement method first.
B. Install a computer certificate on ABCABC-SR32.
C. Install a System Health Agent on ABC-SR32.
D. Install a System Health Validator on ABC-SR32.