PrepAway - Latest Free Exam Questions & Answers

Category: 70-640 (v.2)

Exam 70-640: TS: Windows Server 2008 Active Directory, Configuring (updated March 29, 2013)

You need to implement a certification authority (CA) server that meets the following requirements: Allows the

You have an Active Directory domain that runs Windows Server 2008 R2.
You need to implement a certification authority (CA) server that meets the following requirements:
Allows the certification authority to automaticallyissue certificates
Integrates with Active Directory Domain Services
What should you do?

You need to grant members of the Account Operators group the ability to only manage Basic EFS certificates

You have a Windows Server 2008 R2 Enterprise Root certification authority (CA).
You need to grant members of the Account Operators group the ability to only manage Basic EFS certificates.
You grant the Account Operators group the Issue andManage Certificates permission on the CA.
Which three tasks should you perform next? (Each correct answer presents part of the solution.
Choose three.)

Your company uses an Enterprise Root certification authority (CA) andan Enterprise Intermediate C

Your company has an Active Directory domain. All servers run Windows Server 2008 R2. Your company uses
an Enterprise Root certification authority (CA) andan Enterprise Intermediate CA.
The Enterprise Intermediate CA certificate expires.
You need to deploy a new Enterprise Intermediate CAcertificate to all computers in the domain.
What should you do?

You need to ensurethat the French-language version of the templates is available

Your company has recently acquired a new subsidiarycompany in Quebec. The Active Directory administrators
of the subsidiary company must use the French-language version of the administrative templates.
You create a folder on the PDC emulator for the subsidiary domain in the path %systemroot%\SYSVOL\domain
\Policies\PolicyDefinitions\FR . You need to ensurethat the French-language version of the templates is
available.
What should you do?

Which two actions shouldyou perform?

The default domain GPO in your company is configured by using the following account policy settings:
– Minimum password length: 8 characters
– Maximum password age: 30 days
– Enforce password history: 12 passwords remembered
– Account lockout threshold: 3 invalid logon attempts
– Account lockout duration: 30 minutes
You install Microsoft SQL Server on a computer named Server1 that runs Windows Server 2008 R2. The SQL
Server application uses a service account named SQLSrv. The SQLSrv account has domain user rights.
The SQL Server computer fails after running successfully for several weeks. The SQLSrv user account isnot
locked out.
You need to resolve the server failure and prevent recurrence of the failure. Which two actions shouldyou
perform? (Each correct answer presents part of the solution. Choose two.)

You need to set up a transitive forest trust between Forest1 and Forest2, What should you do first?

Your company has two Active Directory forests namedForest1 and Forest2, The forest functional level and the
domain functional level of Forest1 are set to Windows Server 2008.
The forest functional level of Forest2 is set to Windows 2000, and the domain functional levels in Forest2 are
set to Windows Server 2003.
You need to set up a transitive forest trust between Forest1 and Forest2,
What should you do first?

You need to decrease the amount of time it takes for the branch office users to logon

Your company has an Active Directory forest that contains two domains, The forest has universal groupsthat
contain members from each domain. A branch office has a domain controller named DC1, Users at the branch
office report that the logon process takes too long,
You need to decrease the amount of time it takes for the branch office users to logon.
What should you do?

You need to ensure that the user is able to connect to the new server

Your company has an Active Directory domain. The main office has a DNS server named DNS1 that is
configured with Active Directory-integrated DNS. The branch office has a DNS server named DNS2 that
contains a secondary copy of the zone from DNS1. The two offices are connected with an unreliable WAN link.
You add a new server to the main office. Five minutes after adding the server, a user from the branch office
reports that he is unable to connect to the new server. You need to ensure that the user is able to connect to
the new server.
What should you do?


Page 9 of 44« First...7891011...203040...Last »