PrepAway - Latest Free Exam Questions & Answers

Category: 70-294

Exam 70-294: Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure

Which two actions should you take to minimize the number of trust relationships that must be maintained in the

You are the network administrator for Contoso, Ltd. The network consists of a single Active Directory forest
that contains a single domain named contoso.com. The functional level of the forest is Windows Server
2003. Your company purchases a company named Fabrikam, Inc. The Fabrikam, Inc., network consists of
one Windows NT 4.0 account domain and two Windows NT 4.0 resource domains, as shown in the exhibit.
(Click the Exhibit button.) All file resources are stored on file servers in the contoso.com domain and in the
FABRESOURCE1 domain. You need to accomplish the following goals: You need to minimize the number
of trust relationships that must be maintained in the network environment. Users in each company must be
able to access the file resources on the file servers in the other company’s domain.Which two actions
should you take? (Each correct answer presents part of the solution. Choose two.)

What should you do to ensure that the company password requirements are enforced?

You are the network administrator for your company. The network consists of a single Active Directory domain that contains four domain controllers. All servers run Windows Server 2003. All user accounts are located in an organizational unit (OU) named CompanyUsers. A written company policy requires all users to use strong passwords. User passwords must contain a mixture of letters, numbers, or special characters. Passwords must be at least 10 characters long. Passwords must be changed at least every 60 days, and the new password cannot be the same as the old one. To enforce this requirement, you create a Group Policy object (GPO) named Password Policies and link the GPO to the CompanyUsers OU. The settings in the Password Policy section of the Password Policies GPO are shown in the exhibit. (Click the Exhibit button.) You discover that users are creating simple passwords that do not meet the complexity requirements. You need to ensure that the company password requirements are enforced. What should you do?

Which two additional courses of action should you take?

You are the network administrator for Contoso, Ltd. The network consists of a single Active Directory forest, as shown in the exhibit. (Click the Exhibit button.) A domain controller named dc1.corp.contoso.com runs Windows 2000 Server. All other domain controllers run Windows Server 2003. Contoso, Ltd., is engaged in a joint venture with Litware, Inc. The network at Litware, Inc., consists of a single Active Directory forest named litwareinc.com that contains one domain. The functional level of the litwareinc. com forest is Windows Server 2003. You need to ensure that the users at Contoso, Ltd., can log on to the litwareinc.com forest. You upgrade dc1.corp.contoso.com to Windows Server 2003. Which two additional courses of action should you take? (Each correct answer presents part of the solution. Choose two.)

which domain controller should you place the RID Master role?

You have a single Active Directory directory service domain. Your domain controllers are configured as shown in the following table. File and print services are on servers in Site1. Microsoft Exchange Server is installed on servers in Site2. The HR and user provisioning applications will be placed on servers in Site3. You are planning placement of the RID Master FSMO role. You need to ensure proper functionality of these applications within their sites during an extended WAN outage. On which domain controller should you place the RID Master role?

You must ensure that the changes made to Active Directory at Site1 between 8:00 A.M. and 6:00

You are the network administrator for your company. The network consists of a single Active Directory
domain with three sites named Site1, Site2, and Site3.
Site links are configured between the sites so that Site1 and Site3 are connected by using Site2. The site
links are configured as shown in the following table.
All user and group accounts are managed by network administrators at Site1. Users at Site3 report that it
takes more than a day for changes made to Active Directory at Site1 to be visible in the domain at Site3.
You must ensure that the changes made to Active Directory at Site1 between 8:00 A.M. and 6:00

What should you do to avoid affecting user accounts in other OUs?

You are the network administrator for your company. The network consists of a single Active Directory domain. The domain contains an organizational unit (OU) named Sales. You create three Group Policy objects (GPOs) that have four configuration settings, as shown in the following table. The ScreenSaver GPO has the No Override setting enabled. The Sales OU has the Block Policy inheritance setting enabled. The priority for GPOs linked to the Sales OU specifies first priority for the Display and Wallpaper GPO and second priority for the Wallpaper GPO. For user accounts in the Sales OU, you want the Screen Saver tab to be hidden and the desktop wallpaper to be Autumn.jpg. You log on to a test computer by using a user account from the Sales OU, but you do not receive the settings you wanted. You need to configure the settings to hide the Screen Saver tab and set the desktop wallpaper to Autumn.jpg for the user accounts in the Sales OU. You want to avoid affecting user accounts in other OUs. exhibit What should you do?

Which action or actions should you take to configure Active Directory to allow Mikhail to perform his responsi

You are a network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. The functional level of the domain is Windows Server 2003. The organizational unit (OU) structure is shown in the exhibit. (Click the Exhibit button.) Your company uses an X.500 directory service enabled product to support a sales and marketing application. The application is used only by users in the sales department and the marketing department. The application uses InetOrgPerson objects as user accounts. InetOrgPerson objects have been created in Active Directory for all Sales and Marketing users. These users are instructed to log on by using their InetOrgPerson object as their user account. Microsoft Identity Integration Server is configured to copy changes to InetOrgPerson objects from Active Directory to the X.500 directory service enabled product. All InetOrgPerson objects for marketing employees are located in the Marketing OU. All InetOrgPerson objects for sales employees are located in the Sales OU. Mikhail is another administrator in your company. Mikhail is responsible for managing the objects for users who require access to the X.500 directory service enabled product. You need to configure Active Directory to allow Mikhail to perform his responsibilities. Which action or actions should you take? (Choose all that apply.)

What should you do to ensure that the new tax application is installed on the computers running Terminal Servi

You are the network administrator for your company. The network consists of a single Active Directory domain. The domain includes an organizational unit (OU) named TerminalServers and a global group named Accounting. The TerminalServers OU contains all of the Windows Server 2003 computer accounts running Terminal Services. Members of the Accounting group connect to terminal servers to access their software applications. You create a Group Policy object (GPO) and link it to the TerminalServers OU. You configure the GPO to publish a software installation package that installs the most recent tax application. Users in the Accounting group report that the new tax application is not installed on any of the terminal servers. You log on to one of the servers running Terminal Services and attempt to use Add or Remove Programs in Control Panel. When you select Add New Programs, you receive the following error message: "Applications are not available to install from the network in this mode." You need to ensure that the new tax application is installed on the computers running Terminal Services. What should you do?

What should you do to allow the sales and research departments to administer their own Active Directory user?

You have a single Active Directory directory service domain. You have several domain security policies in place. The relevant part of the network consists of the servers shown in the following table. You create two global security groups named Sales Admins and Research Admins. You add the users in the sales and research departments into their respective groups. You need to allow the sales and research departments to administer their own Active Directory user, computer, and group objects, while maintaining the existing security policies of the company. exhibit What should you do?

What should you do to improve logon performance for users in the New York office without increasing WAN traffi

You are the network administrator for Blue Yonder Airlines. The company has offices in Toronto, New York, and Chicago. The network connections are shown in the exhibit. (Click the Exhibit button.) The network consists of two Active Directory domains. User objects for users in the Toronto office and the New York office are stored in the blueyonderairlines.com domain. User objects for users in the Chicago office are stored in the production.blueyonderairlines.com domain. Active Directory is configured as shown in the following table. Users in the New York office frequently report that they cannot log on to the network, or that logging on takes a very long time. You notice increased global catalog queries to servers in the Toronto office during peak logon times. You need to improve logon performance for users in the New York office without
increasing WAN traffic that is due to replication. What should you do?


Page 1 of 1712345...10...Last »