You need to ensure that all domain controllers can resolve names from the dev.contoso.com zone
Your network consists of an Active Directory forest that contains two domains. All servers
run Windows Server 2008 R2. All domain controllers are configured as DNS Servers.
You have a standard primary zone for dev.contoso.com that is stored on a member server.
You need to ensure that all domain controllers can resolve names from the dev.contoso.com
zone.
What should you do?
Which command should you run on the new domain controller?
Your company has an Active Directory domain. You install a new domain controller in the
domain. Twenty users report that they are unable to log on to the domain.
You need to register the SRV records.
Which command should you run on the new domain controller?
You need to minimize the amount of time it takes for client computers to download a certificate revocation lis
You have a Windows Server 2008 R2 that has the Active Directory Certificate Services
server role installed.
You need to minimize the amount of time it takes for client computers to download a
certificate revocation list (CRL).
What should you do?
Which tool should you use?
You want users to log on to Active Directory by using a new Principal Name (UPN).
You need to modify the UPN suffix for all user accounts.
Which tool should you use?
You need to log changes made to the Description attribute on all group objects in OU1 only
Your network consists of a single Active Directory domain. All domain controllers run
Windows Server 2008 R2. Auditing is configured to log changes made to the Managed By
attribute on group objects in an organizational unit named OU1.
You need to log changes made to the Description attribute on all group objects in OU1 only.
What should you do?
You need to ensure that unauthorized users are not able to access the shared folder that contains confidential
Your company uses shared folders. Users are granted access to the shared folders by using
domain local groups. One of the shared folders contains confidential data.
You need to ensure that unauthorized users are not able to access the shared folder that
contains confidential data.
What should you do?
You need to ensure that only the Security Manager is authorized to revoke certificates that are supplied by Se
Your company has an Active Directory domain. You install an Enterprise Root certification
authority (CA) on a member server named Server1.
You need to ensure that only the Security Manager is authorized to revoke certificates that
are supplied by Server1.
What should you do?
What is the minimal forest functional level that you should use?
You need to deploy a read-only domain controller (RODC) that runs Windows Server 2008
R2.
What is the minimal forest functional level that you should use?
You need to prevent the new attributes from being replicated to the Global Catalog
Your company has three Active Directory domains in a single forest. You install a new Active
Directory enabled application. The application ads new user attributes to the Active Directory
schema.
You discover that the Active Directory replication traffic to the Global Catalogs has
increased.
You need to prevent the new attributes from being replicated to the Global Catalog.
You must achieve this goal without affecting application functionality.
What should you do?
Which object’s properties should you modify?
HOTSPOT
Your network contains an Active Directory forest named contoso.com. The forest contains
two sites named Seattle and Montreal. The Seattle site contains two domain controllers. The
domain controllers are configured as shown in the following table.
The Montreal site contains a domain controller named DC3. DC3 is the only global catalog
server in the forest.
You need to configure DC2 as a global catalog server.
Which object’s properties should you modify? To answer, select the appropriate object in the
answer area.