PrepAway - Latest Free Exam Questions & Answers

Tag: Exam 70-413 (update August 30th, 2016)

Exam 70-413: Designing and Implementing a Server Infrastructure (update August 30th, 2016)

Which objects should you create?

###BeginCaseStudy###
Topic 5, Alpine Ski
Overview
Alpine Ski House provides vacation travel accommodations. Its main office is in Vancouver. Alpine Ski House
also has branch offices in Montreal, Denver, and New York.
An additional sales office is located in Los Angeles. This office has client devices only.
All servers in each office run Windows Server 2012 R2. All client devices in each office run Windows 8.1.
Alpine Ski House plans to acquire another company named Margie’s Travel. Margies Travel has an AD DS
domain named margiestravel.com.
Danner and New York
The Denver and New York offices have their own child domain named us.alpineskihouse.com. The domain
controllers are displayed in the following table:

Vancouver and Montreal
Alpine Ski House has an Active Directory Domain Services (AD DS) domain named aplineskihouse.com for the
Vancouver and Montreal offices. The forest and domain functional levels are set to Windows Server 2008.
The domain controllers in the domain contain Dynamic Host Configuration Protocol (DHCP) servers and DNS
servers. The domain controllers are displayed in the following table:

The Vancouver office also has a certification authority (CA) installed on a server named ALP-CA01.
Business Requirements
Growth
An additional branch office is planned in an extremely remote, mountainous location that does not have
traditional access to the Internet.
The remote branch office location will use a high-latency, low-bandwidth satellite connection to the Denver
and Vancouver offices.
The Los Angeles office will be expanded to include sales and billing staff. The Los Angeles location will not
contain IT staff.
File Management
Currently, each office has a dedicated file share that is hosted on a domain controller. The company plans to
implement a new file sharing capability to synchronize data between offices and to maximize performance
for locating files that are saved in a different branch office. Sales users in the Los Angeles office must also be
able to retrieve file data from each branch office.
Recovery time objective
The business requires that the data stored in AD DS must be recovered within an hour. This data includes
user accounts, computer accounts, groups, and other objects. Any customized attributes must also be
recovered. The current backup solution uses a tape drive, which requires a minimum of two hours between
notification and recovery.Office 365
Alpine Ski House purchased Office 365 Enterprise E3 licenses for all users in the organization.
Technical Requirements
Existing environment
Users in the Montreal office of Alpine Ski House report slow times to log on to their devices. An
administrator determines that users in the Montreal location occasionally authenticate to a domain
controller with an IP address of 172.16.0.10/24. All authentication requests must first be attempted in the
same location as the client device that is being authenticated.
Growth
The remote branch office must have a single domain controller named REMOTEDC01.us.aplineskihouse.com.
The replication between domains must either use best-effort or low-cost replication. After the expansion,
authentication must occur locally.
Any server placed in the Los Angeles office must not contain cached passwords.
File management
Where possible, the new file management solution must be centralized. If supported, the data must be
stored in a single location in each branch office.
Acquisition
After acquiring Margie’s Travel, all AD DS objects, including user account passwords, must be a migrated to
the alpineskihouse.com domain. Alpine Ski House plans to use the Active Directory Migration Tool (ADMT) to
complete the migration process.
The password complexity requirements for the margiestravel.com domain are unknown. Users should not be
forced to change their passwords after migrating their user accounts. Some computer objects will be
renamed during the migration.
Office 365
Alpine Ski House must use Microsoft Azure to facilitate directory synchronization (DirSync) with Office 365.
The DirSync utility must be installed on a virtual machine in Microsoft Azure.

###EndCaseStudy###

DRAG DROP
You need to resolve the Apline Ski House authentication issue.
Which objects should you create? To answer, drag the appropriate object to the correct office.

Which three actions should you perform in sequence?

###BeginCaseStudy###
Topic 6, Contoso Ltd, Case B
Background
OverviewContoso, Ltd., is a software development company. Contoso has a main office in London and two branch
offices, one in Madrid and the other in Dublin. The company is in the process of adopting Microsoft Azure to
host business critical resources and applications.
Contoso has an Active Directory Domain Services (AD DS) domain named contoso.com. All devices in the
three offices are members of the domain. Each office has a dedicated organizational unit (OU) in the root of
the domain named London. Madrid, and Dublin, respectively. Each office OU has three child OUs named
Computers, Users, and Groups.
The local Administrator account is disabled on all client devices in the domain by using a Group Policy object
(GPO) named SecurityConflguration that is linked to the root of the domain. Contoso’s security department
also has a GPO named WSUSConfiguration. WSUSConfiguration defines the configuration of Windows
Update Services on the Windows Server Update Services (WSUS) server named WSUS1.
You have a GPO named RemoteSales that uses a WMI filter. The GPO prevents users from launching
applications that are not approved.
DNS Services
Contoso uses a DNS service that is installed on two domain controllers in the main office. The domain
controllers are named DO and DC2. Both DO and DC2 run Windows Server 2008 R2. Both domain controllers
host Active Directory integrated zones named contoso.com and lab.contoso.com. The zones are configured
to allow only secure updates.
Research
Contoso creates a new research department to develop integration between Contoso’s software and public
cloud services.
Finance Department
Users in the finance department use a client-server application named App1. App1 uses custom Active
Directory attributes to store encryption keys. App1 is a business critical application that must be migrated to
Windows Azure.
A server named SERVER2 hosts Appl. SERVER2 runs Windows Server 2008 R2. The disk configuration for
SERVER2 is shown in the following table:

A server named SERVER1 hosts a database that is used by Appl. SERVER1 runs Windows Server 2008 R2 and
SQL Server 2008 R2. The disk configuration for SERVER1 is shown in the following table:

The Contoso management team plans to increase the use of Appl. To accommodate these plans, the size of
the datable must be increased
Sales Department
Users in the sales department use laptop computers when they travel. Salespeople use a legacy application
named ContosoSales on their laptop computers. Salespeople can use a pool of shared desktop computers in
each office.
The ContosoSales app is dependent on a specific registry key that is frequently overwritten by third-party
applications. This causes the ContosoSales app to stop working.
Business Requirements
All DNS servers must be placed in a physically secure location.
Software development department
All software developers must migrate their servers and workstations to the DNS domain lab.contoso.com to
ensure that frequent changes to DNS do not interfere with the production environment.
Finance department
All servers that host App1 must be migrated to Windows Azure. A new Azure virtual machine (VM) named
CL0UD2 must be deployed to Windows Azure.
Sales department
Users in the sales department should not be able to run applications on their laptop computers that are not
approved by the security department. Users in the sales department should have no such restrictions while
they work on the desktop computers in the office.
Technical Requirements
App1 requirements
You have the following requirements: The size of the database for App1 must be increased to 8 TB.
 The encryption keys for App1 should not be replicated to the offices where physical
server security is not guaranteed.
 The amount of disk space that is used by Windows Azure must be minimized.
Infrastructure requirements
You have the following requirements:
 The lab.contoso.com DNS domain zone must not be replicated or transferred to DNS
servers outside of the London office.
 A new DNS domain zone named research.contoso.com must be deployed for users in
the research department.
 The research.contoso.com DNS domain zone must be protected by using DNS
Security Extensions {DNSSEC).
 All computers in the London and Madrid offices must install Windows Updates from
the server WSUS1.
 A new domain controller for the contoso.com domain must be deployed in the
Madrid office.
 Replication traffic must be minimized when the new domain controllers are
deployed.
 New WMI filters must not conflict with existing WMI filters.

###EndCaseStudy###

DRAG DROP
You need to configure DNS for the Dublin office.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list
of actions to the answer area and arrange them in the correct order.

You need to plan the migration of App1

###BeginCaseStudy###
Topic 6, Contoso Ltd, Case B
Background
OverviewContoso, Ltd., is a software development company. Contoso has a main office in London and two branch
offices, one in Madrid and the other in Dublin. The company is in the process of adopting Microsoft Azure to
host business critical resources and applications.
Contoso has an Active Directory Domain Services (AD DS) domain named contoso.com. All devices in the
three offices are members of the domain. Each office has a dedicated organizational unit (OU) in the root of
the domain named London. Madrid, and Dublin, respectively. Each office OU has three child OUs named
Computers, Users, and Groups.
The local Administrator account is disabled on all client devices in the domain by using a Group Policy object
(GPO) named SecurityConflguration that is linked to the root of the domain. Contoso’s security department
also has a GPO named WSUSConfiguration. WSUSConfiguration defines the configuration of Windows
Update Services on the Windows Server Update Services (WSUS) server named WSUS1.
You have a GPO named RemoteSales that uses a WMI filter. The GPO prevents users from launching
applications that are not approved.
DNS Services
Contoso uses a DNS service that is installed on two domain controllers in the main office. The domain
controllers are named DO and DC2. Both DO and DC2 run Windows Server 2008 R2. Both domain controllers
host Active Directory integrated zones named contoso.com and lab.contoso.com. The zones are configured
to allow only secure updates.
Research
Contoso creates a new research department to develop integration between Contoso’s software and public
cloud services.
Finance Department
Users in the finance department use a client-server application named App1. App1 uses custom Active
Directory attributes to store encryption keys. App1 is a business critical application that must be migrated to
Windows Azure.
A server named SERVER2 hosts Appl. SERVER2 runs Windows Server 2008 R2. The disk configuration for
SERVER2 is shown in the following table:

A server named SERVER1 hosts a database that is used by Appl. SERVER1 runs Windows Server 2008 R2 and
SQL Server 2008 R2. The disk configuration for SERVER1 is shown in the following table:

The Contoso management team plans to increase the use of Appl. To accommodate these plans, the size of
the datable must be increased
Sales Department
Users in the sales department use laptop computers when they travel. Salespeople use a legacy application
named ContosoSales on their laptop computers. Salespeople can use a pool of shared desktop computers in
each office.
The ContosoSales app is dependent on a specific registry key that is frequently overwritten by third-party
applications. This causes the ContosoSales app to stop working.
Business Requirements
All DNS servers must be placed in a physically secure location.
Software development department
All software developers must migrate their servers and workstations to the DNS domain lab.contoso.com to
ensure that frequent changes to DNS do not interfere with the production environment.
Finance department
All servers that host App1 must be migrated to Windows Azure. A new Azure virtual machine (VM) named
CL0UD2 must be deployed to Windows Azure.
Sales department
Users in the sales department should not be able to run applications on their laptop computers that are not
approved by the security department. Users in the sales department should have no such restrictions while
they work on the desktop computers in the office.
Technical Requirements
App1 requirements
You have the following requirements: The size of the database for App1 must be increased to 8 TB.
 The encryption keys for App1 should not be replicated to the offices where physical
server security is not guaranteed.
 The amount of disk space that is used by Windows Azure must be minimized.
Infrastructure requirements
You have the following requirements:
 The lab.contoso.com DNS domain zone must not be replicated or transferred to DNS
servers outside of the London office.
 A new DNS domain zone named research.contoso.com must be deployed for users in
the research department.
 The research.contoso.com DNS domain zone must be protected by using DNS
Security Extensions {DNSSEC).
 All computers in the London and Madrid offices must install Windows Updates from
the server WSUS1.
 A new domain controller for the contoso.com domain must be deployed in the
Madrid office.
 Replication traffic must be minimized when the new domain controllers are
deployed.
 New WMI filters must not conflict with existing WMI filters.

###EndCaseStudy###

You need to plan the migration of App1. What should you do?

How should you complete the relevant Windows PowerShell commands?

###BeginCaseStudy###
Topic 6, Contoso Ltd, Case B
Background
OverviewContoso, Ltd., is a software development company. Contoso has a main office in London and two branch
offices, one in Madrid and the other in Dublin. The company is in the process of adopting Microsoft Azure to
host business critical resources and applications.
Contoso has an Active Directory Domain Services (AD DS) domain named contoso.com. All devices in the
three offices are members of the domain. Each office has a dedicated organizational unit (OU) in the root of
the domain named London. Madrid, and Dublin, respectively. Each office OU has three child OUs named
Computers, Users, and Groups.
The local Administrator account is disabled on all client devices in the domain by using a Group Policy object
(GPO) named SecurityConflguration that is linked to the root of the domain. Contoso’s security department
also has a GPO named WSUSConfiguration. WSUSConfiguration defines the configuration of Windows
Update Services on the Windows Server Update Services (WSUS) server named WSUS1.
You have a GPO named RemoteSales that uses a WMI filter. The GPO prevents users from launching
applications that are not approved.
DNS Services
Contoso uses a DNS service that is installed on two domain controllers in the main office. The domain
controllers are named DO and DC2. Both DO and DC2 run Windows Server 2008 R2. Both domain controllers
host Active Directory integrated zones named contoso.com and lab.contoso.com. The zones are configured
to allow only secure updates.
Research
Contoso creates a new research department to develop integration between Contoso’s software and public
cloud services.
Finance Department
Users in the finance department use a client-server application named App1. App1 uses custom Active
Directory attributes to store encryption keys. App1 is a business critical application that must be migrated to
Windows Azure.
A server named SERVER2 hosts Appl. SERVER2 runs Windows Server 2008 R2. The disk configuration for
SERVER2 is shown in the following table:

A server named SERVER1 hosts a database that is used by Appl. SERVER1 runs Windows Server 2008 R2 and
SQL Server 2008 R2. The disk configuration for SERVER1 is shown in the following table:

The Contoso management team plans to increase the use of Appl. To accommodate these plans, the size of
the datable must be increased
Sales Department
Users in the sales department use laptop computers when they travel. Salespeople use a legacy application
named ContosoSales on their laptop computers. Salespeople can use a pool of shared desktop computers in
each office.
The ContosoSales app is dependent on a specific registry key that is frequently overwritten by third-party
applications. This causes the ContosoSales app to stop working.
Business Requirements
All DNS servers must be placed in a physically secure location.
Software development department
All software developers must migrate their servers and workstations to the DNS domain lab.contoso.com to
ensure that frequent changes to DNS do not interfere with the production environment.
Finance department
All servers that host App1 must be migrated to Windows Azure. A new Azure virtual machine (VM) named
CL0UD2 must be deployed to Windows Azure.
Sales department
Users in the sales department should not be able to run applications on their laptop computers that are not
approved by the security department. Users in the sales department should have no such restrictions while
they work on the desktop computers in the office.
Technical Requirements
App1 requirements
You have the following requirements: The size of the database for App1 must be increased to 8 TB.
 The encryption keys for App1 should not be replicated to the offices where physical
server security is not guaranteed.
 The amount of disk space that is used by Windows Azure must be minimized.
Infrastructure requirements
You have the following requirements:
 The lab.contoso.com DNS domain zone must not be replicated or transferred to DNS
servers outside of the London office.
 A new DNS domain zone named research.contoso.com must be deployed for users in
the research department.
 The research.contoso.com DNS domain zone must be protected by using DNS
Security Extensions {DNSSEC).
 All computers in the London and Madrid offices must install Windows Updates from
the server WSUS1.
 A new domain controller for the contoso.com domain must be deployed in the
Madrid office.
 Replication traffic must be minimized when the new domain controllers are
deployed.
 New WMI filters must not conflict with existing WMI filters.

###EndCaseStudy###

HOTSPOT
You need to configure Windows Updates.
How should you complete the relevant Windows PowerShell commands? To answer, select the Windows
PowerShell segments in the answer area.

Evaluate the Assertion and Reason statements and choose the correct answer option.

###BeginCaseStudy###
Topic 6, Contoso Ltd, Case B
Background
OverviewContoso, Ltd., is a software development company. Contoso has a main office in London and two branch
offices, one in Madrid and the other in Dublin. The company is in the process of adopting Microsoft Azure to
host business critical resources and applications.
Contoso has an Active Directory Domain Services (AD DS) domain named contoso.com. All devices in the
three offices are members of the domain. Each office has a dedicated organizational unit (OU) in the root of
the domain named London. Madrid, and Dublin, respectively. Each office OU has three child OUs named
Computers, Users, and Groups.
The local Administrator account is disabled on all client devices in the domain by using a Group Policy object
(GPO) named SecurityConflguration that is linked to the root of the domain. Contoso’s security department
also has a GPO named WSUSConfiguration. WSUSConfiguration defines the configuration of Windows
Update Services on the Windows Server Update Services (WSUS) server named WSUS1.
You have a GPO named RemoteSales that uses a WMI filter. The GPO prevents users from launching
applications that are not approved.
DNS Services
Contoso uses a DNS service that is installed on two domain controllers in the main office. The domain
controllers are named DO and DC2. Both DO and DC2 run Windows Server 2008 R2. Both domain controllers
host Active Directory integrated zones named contoso.com and lab.contoso.com. The zones are configured
to allow only secure updates.
Research
Contoso creates a new research department to develop integration between Contoso’s software and public
cloud services.
Finance Department
Users in the finance department use a client-server application named App1. App1 uses custom Active
Directory attributes to store encryption keys. App1 is a business critical application that must be migrated to
Windows Azure.
A server named SERVER2 hosts Appl. SERVER2 runs Windows Server 2008 R2. The disk configuration for
SERVER2 is shown in the following table:

A server named SERVER1 hosts a database that is used by Appl. SERVER1 runs Windows Server 2008 R2 and
SQL Server 2008 R2. The disk configuration for SERVER1 is shown in the following table:

The Contoso management team plans to increase the use of Appl. To accommodate these plans, the size of
the datable must be increased
Sales Department
Users in the sales department use laptop computers when they travel. Salespeople use a legacy application
named ContosoSales on their laptop computers. Salespeople can use a pool of shared desktop computers in
each office.
The ContosoSales app is dependent on a specific registry key that is frequently overwritten by third-party
applications. This causes the ContosoSales app to stop working.
Business Requirements
All DNS servers must be placed in a physically secure location.
Software development department
All software developers must migrate their servers and workstations to the DNS domain lab.contoso.com to
ensure that frequent changes to DNS do not interfere with the production environment.
Finance department
All servers that host App1 must be migrated to Windows Azure. A new Azure virtual machine (VM) named
CL0UD2 must be deployed to Windows Azure.
Sales department
Users in the sales department should not be able to run applications on their laptop computers that are not
approved by the security department. Users in the sales department should have no such restrictions while
they work on the desktop computers in the office.
Technical Requirements
App1 requirements
You have the following requirements: The size of the database for App1 must be increased to 8 TB.
 The encryption keys for App1 should not be replicated to the offices where physical
server security is not guaranteed.
 The amount of disk space that is used by Windows Azure must be minimized.
Infrastructure requirements
You have the following requirements:
 The lab.contoso.com DNS domain zone must not be replicated or transferred to DNS
servers outside of the London office.
 A new DNS domain zone named research.contoso.com must be deployed for users in
the research department.
 The research.contoso.com DNS domain zone must be protected by using DNS
Security Extensions {DNSSEC).
 All computers in the London and Madrid offices must install Windows Updates from
the server WSUS1.
 A new domain controller for the contoso.com domain must be deployed in the
Madrid office.
 Replication traffic must be minimized when the new domain controllers are
deployed.
 New WMI filters must not conflict with existing WMI filters.

###EndCaseStudy###

This question consists of two statements: One is named Assertion and the other is named Reason. Both of
these statements may be true; both may be false; or one may be true, while the other may be false.
To answer this question, you must first evaluate whether each statement is true on its own. If both
statements are true, then you must evaluate whether the Reason (the second statement) correctly explains
the Assertion (the first statement). You will then select the answer from the list of answer choices that
matches your evaluation of the two statements.
Assertion:
You must host the DNS zone research.contoso.com on MADSRV1.
Reason:
You must host Domain Name System Security Extensions (DNSSEQ zones on Active Directory Domain
Services-integrated DNS servers.
Evaluate the Assertion and Reason statements and choose the correct answer option.

Does this meet the goal?

###BeginCaseStudy###
Topic 6, Contoso Ltd, Case B
Background
OverviewContoso, Ltd., is a software development company. Contoso has a main office in London and two branch
offices, one in Madrid and the other in Dublin. The company is in the process of adopting Microsoft Azure to
host business critical resources and applications.
Contoso has an Active Directory Domain Services (AD DS) domain named contoso.com. All devices in the
three offices are members of the domain. Each office has a dedicated organizational unit (OU) in the root of
the domain named London. Madrid, and Dublin, respectively. Each office OU has three child OUs named
Computers, Users, and Groups.
The local Administrator account is disabled on all client devices in the domain by using a Group Policy object
(GPO) named SecurityConflguration that is linked to the root of the domain. Contoso’s security department
also has a GPO named WSUSConfiguration. WSUSConfiguration defines the configuration of Windows
Update Services on the Windows Server Update Services (WSUS) server named WSUS1.
You have a GPO named RemoteSales that uses a WMI filter. The GPO prevents users from launching
applications that are not approved.
DNS Services
Contoso uses a DNS service that is installed on two domain controllers in the main office. The domain
controllers are named DO and DC2. Both DO and DC2 run Windows Server 2008 R2. Both domain controllers
host Active Directory integrated zones named contoso.com and lab.contoso.com. The zones are configured
to allow only secure updates.
Research
Contoso creates a new research department to develop integration between Contoso’s software and public
cloud services.
Finance Department
Users in the finance department use a client-server application named App1. App1 uses custom Active
Directory attributes to store encryption keys. App1 is a business critical application that must be migrated to
Windows Azure.
A server named SERVER2 hosts Appl. SERVER2 runs Windows Server 2008 R2. The disk configuration for
SERVER2 is shown in the following table:

A server named SERVER1 hosts a database that is used by Appl. SERVER1 runs Windows Server 2008 R2 and
SQL Server 2008 R2. The disk configuration for SERVER1 is shown in the following table:

The Contoso management team plans to increase the use of Appl. To accommodate these plans, the size of
the datable must be increased
Sales Department
Users in the sales department use laptop computers when they travel. Salespeople use a legacy application
named ContosoSales on their laptop computers. Salespeople can use a pool of shared desktop computers in
each office.
The ContosoSales app is dependent on a specific registry key that is frequently overwritten by third-party
applications. This causes the ContosoSales app to stop working.
Business Requirements
All DNS servers must be placed in a physically secure location.
Software development department
All software developers must migrate their servers and workstations to the DNS domain lab.contoso.com to
ensure that frequent changes to DNS do not interfere with the production environment.
Finance department
All servers that host App1 must be migrated to Windows Azure. A new Azure virtual machine (VM) named
CL0UD2 must be deployed to Windows Azure.
Sales department
Users in the sales department should not be able to run applications on their laptop computers that are not
approved by the security department. Users in the sales department should have no such restrictions while
they work on the desktop computers in the office.
Technical Requirements
App1 requirements
You have the following requirements: The size of the database for App1 must be increased to 8 TB.
 The encryption keys for App1 should not be replicated to the offices where physical
server security is not guaranteed.
 The amount of disk space that is used by Windows Azure must be minimized.
Infrastructure requirements
You have the following requirements:
 The lab.contoso.com DNS domain zone must not be replicated or transferred to DNS
servers outside of the London office.
 A new DNS domain zone named research.contoso.com must be deployed for users in
the research department.
 The research.contoso.com DNS domain zone must be protected by using DNS
Security Extensions {DNSSEC).
 All computers in the London and Madrid offices must install Windows Updates from
the server WSUS1.
 A new domain controller for the contoso.com domain must be deployed in the
Madrid office.
 Replication traffic must be minimized when the new domain controllers are
deployed.
 New WMI filters must not conflict with existing WMI filters.

###EndCaseStudy###

You need To configure the Group Policy for salespeople.
Solution: You create a Group Policy Object (GPO) with an AppLocker policy. You link the GPO to the
Computers OU for each location.
Does this meet the goal?

Does this meet the goal?

###BeginCaseStudy###
Topic 6, Contoso Ltd, Case B
Background
OverviewContoso, Ltd., is a software development company. Contoso has a main office in London and two branch
offices, one in Madrid and the other in Dublin. The company is in the process of adopting Microsoft Azure to
host business critical resources and applications.
Contoso has an Active Directory Domain Services (AD DS) domain named contoso.com. All devices in the
three offices are members of the domain. Each office has a dedicated organizational unit (OU) in the root of
the domain named London. Madrid, and Dublin, respectively. Each office OU has three child OUs named
Computers, Users, and Groups.
The local Administrator account is disabled on all client devices in the domain by using a Group Policy object
(GPO) named SecurityConflguration that is linked to the root of the domain. Contoso’s security department
also has a GPO named WSUSConfiguration. WSUSConfiguration defines the configuration of Windows
Update Services on the Windows Server Update Services (WSUS) server named WSUS1.
You have a GPO named RemoteSales that uses a WMI filter. The GPO prevents users from launching
applications that are not approved.
DNS Services
Contoso uses a DNS service that is installed on two domain controllers in the main office. The domain
controllers are named DO and DC2. Both DO and DC2 run Windows Server 2008 R2. Both domain controllers
host Active Directory integrated zones named contoso.com and lab.contoso.com. The zones are configured
to allow only secure updates.
Research
Contoso creates a new research department to develop integration between Contoso’s software and public
cloud services.
Finance Department
Users in the finance department use a client-server application named App1. App1 uses custom Active
Directory attributes to store encryption keys. App1 is a business critical application that must be migrated to
Windows Azure.
A server named SERVER2 hosts Appl. SERVER2 runs Windows Server 2008 R2. The disk configuration for
SERVER2 is shown in the following table:

A server named SERVER1 hosts a database that is used by Appl. SERVER1 runs Windows Server 2008 R2 and
SQL Server 2008 R2. The disk configuration for SERVER1 is shown in the following table:

The Contoso management team plans to increase the use of Appl. To accommodate these plans, the size of
the datable must be increased
Sales Department
Users in the sales department use laptop computers when they travel. Salespeople use a legacy application
named ContosoSales on their laptop computers. Salespeople can use a pool of shared desktop computers in
each office.
The ContosoSales app is dependent on a specific registry key that is frequently overwritten by third-party
applications. This causes the ContosoSales app to stop working.
Business Requirements
All DNS servers must be placed in a physically secure location.
Software development department
All software developers must migrate their servers and workstations to the DNS domain lab.contoso.com to
ensure that frequent changes to DNS do not interfere with the production environment.
Finance department
All servers that host App1 must be migrated to Windows Azure. A new Azure virtual machine (VM) named
CL0UD2 must be deployed to Windows Azure.
Sales department
Users in the sales department should not be able to run applications on their laptop computers that are not
approved by the security department. Users in the sales department should have no such restrictions while
they work on the desktop computers in the office.
Technical Requirements
App1 requirements
You have the following requirements: The size of the database for App1 must be increased to 8 TB.
 The encryption keys for App1 should not be replicated to the offices where physical
server security is not guaranteed.
 The amount of disk space that is used by Windows Azure must be minimized.
Infrastructure requirements
You have the following requirements:
 The lab.contoso.com DNS domain zone must not be replicated or transferred to DNS
servers outside of the London office.
 A new DNS domain zone named research.contoso.com must be deployed for users in
the research department.
 The research.contoso.com DNS domain zone must be protected by using DNS
Security Extensions {DNSSEC).
 All computers in the London and Madrid offices must install Windows Updates from
the server WSUS1.
 A new domain controller for the contoso.com domain must be deployed in the
Madrid office.
 Replication traffic must be minimized when the new domain controllers are
deployed.
 New WMI filters must not conflict with existing WMI filters.

###EndCaseStudy###

You need To configure the Group Policy for salespeople.
Solution: You move all shared desktops to a separate organizational unit (OU). You create one Group Policy
object (GPO) that has an AppLocker policy rule and enable loopback policy processing within the GPO. You
link the GPO to the new OU.
Does this meet the goal?

Does this meet the goal?

###BeginCaseStudy###
Topic 7, Line-of-business applications
Business RequirementsLine-of-business applications
A line-of-business (LOB) application named App1 is deployed on LA-SVR01 and LA-SVR02.
Backups
All company data is temporarily backed up by using snapshots, and then archived to long-term media. When
possible, metadata and non-critical information must be stored by using AD DS.
Monitoring
System Center is used as the primary monitoring tool for server and application performance.
The company also plans to monitor core services, such as DNS, DHCP, and AD DS. Any additional monitoring
capabilities must be performed by using System Center.
Active Directory
The company plans to use Active Directory to store personal information for employees. Users in the branch
offices must not be able to view the confidential data that is stored for other users.
File shares
The NY-SVR05 server acts as the primary file server in the domain. File shares are replicated to LA-SRV03.
Client computers use NY-SRV05 to access file in the file share, BranchCache distributed mode is enabled in
each branch office. Each client computer has a 250-GB hard drive that is used by the Local Cache.
BranchCache must be able to use up to 10% of the 250-GB hard drive for the local cache.
Consolidation
The company plans to consolidate the amount of servers that are in both data centers. Company
management needs to generate a report that describes how consolidation will affect power and cooling costs
in the data center.
Technical Requirements
Server deployments
The existing Microsoft Azure environment does not have the ability to expand automatically. The Azure
environment must support the ability to deploy additional virtual machines (VMs) automatically. The onpremises deployment environments must deploy only to trusted computers. When possible, System Center
must be used to deploy and manage the on-premises and Azure environments. System Center must also be
used to migrate existing virtual machines from VMM to Azure.
Monitoring
The DHCP service must be monitored and reported if the service stops or restarts. Additionally, DHCP scope
and Network Access Protection (NAP) related events must be monitored.
Azure migrationThe company plans to migrate existing services, including System Center management servers, to Azure. To
reduce costs, the migration must use the minimum number of Azure VM instances to migrate the services.
App1
App1 uses a DNS application directory partition on LA-DC01 and NY-DC01. App1 uses IPv6 for network
connectivity and must resolve single-label names for resources in the woodgrovebank.com DNS zone.
GlobalNames zone has been created, but the zone has not been populated with resource records.
Active Directory Domain Services
The company plans to use the Employee-Number user property to store personal identification numbers.
File shares
Each branch office connects to the New York data center to retrieve file shares. BranchCache distributed
mode is enabled in each branch office. The cache on each client computer must be a single file.
Consolidation reports
The company requires a report that describes the impact of consolidation. The report must provide the
following information:
 An inventory of the existing physical server environment
 Visual charts that show the reduction of physical servers

###EndCaseStudy###

You have an IP Address Management (IPAM) server that runs Windows Server 2012 SP1. You need to
integrate the IPAM server with System Center Virtual Machine Manager (SCVMM).
Solution: You create a dedicated user account named IPAM_svc, and add it to the Local Administrators local
group on the SO/MM server.
Does this meet the goal?

Does this meet the goal?

###BeginCaseStudy###
Topic 7, Line-of-business applications
Business RequirementsLine-of-business applications
A line-of-business (LOB) application named App1 is deployed on LA-SVR01 and LA-SVR02.
Backups
All company data is temporarily backed up by using snapshots, and then archived to long-term media. When
possible, metadata and non-critical information must be stored by using AD DS.
Monitoring
System Center is used as the primary monitoring tool for server and application performance.
The company also plans to monitor core services, such as DNS, DHCP, and AD DS. Any additional monitoring
capabilities must be performed by using System Center.
Active Directory
The company plans to use Active Directory to store personal information for employees. Users in the branch
offices must not be able to view the confidential data that is stored for other users.
File shares
The NY-SVR05 server acts as the primary file server in the domain. File shares are replicated to LA-SRV03.
Client computers use NY-SRV05 to access file in the file share, BranchCache distributed mode is enabled in
each branch office. Each client computer has a 250-GB hard drive that is used by the Local Cache.
BranchCache must be able to use up to 10% of the 250-GB hard drive for the local cache.
Consolidation
The company plans to consolidate the amount of servers that are in both data centers. Company
management needs to generate a report that describes how consolidation will affect power and cooling costs
in the data center.
Technical Requirements
Server deployments
The existing Microsoft Azure environment does not have the ability to expand automatically. The Azure
environment must support the ability to deploy additional virtual machines (VMs) automatically. The onpremises deployment environments must deploy only to trusted computers. When possible, System Center
must be used to deploy and manage the on-premises and Azure environments. System Center must also be
used to migrate existing virtual machines from VMM to Azure.
Monitoring
The DHCP service must be monitored and reported if the service stops or restarts. Additionally, DHCP scope
and Network Access Protection (NAP) related events must be monitored.
Azure migrationThe company plans to migrate existing services, including System Center management servers, to Azure. To
reduce costs, the migration must use the minimum number of Azure VM instances to migrate the services.
App1
App1 uses a DNS application directory partition on LA-DC01 and NY-DC01. App1 uses IPv6 for network
connectivity and must resolve single-label names for resources in the woodgrovebank.com DNS zone.
GlobalNames zone has been created, but the zone has not been populated with resource records.
Active Directory Domain Services
The company plans to use the Employee-Number user property to store personal identification numbers.
File shares
Each branch office connects to the New York data center to retrieve file shares. BranchCache distributed
mode is enabled in each branch office. The cache on each client computer must be a single file.
Consolidation reports
The company requires a report that describes the impact of consolidation. The report must provide the
following information:
 An inventory of the existing physical server environment
 Visual charts that show the reduction of physical servers

###EndCaseStudy###

A company has offices in multiple geographic locations. The sites have high-latency, low-bandwidth
connections. You need to implement a multisite Windows Deployment Services (WDS) topology for
deploying standard client device images to all sites.Solution: At each site, you deploy a local WDS server that runs only the Transport role. You configure local
DHCP servers to direct local clients to the local WDS server.
Does this meet the goal?

You need to generate the required report Which tool should you use?

###BeginCaseStudy###
Topic 7, Line-of-business applications
Business RequirementsLine-of-business applications
A line-of-business (LOB) application named App1 is deployed on LA-SVR01 and LA-SVR02.
Backups
All company data is temporarily backed up by using snapshots, and then archived to long-term media. When
possible, metadata and non-critical information must be stored by using AD DS.
Monitoring
System Center is used as the primary monitoring tool for server and application performance.
The company also plans to monitor core services, such as DNS, DHCP, and AD DS. Any additional monitoring
capabilities must be performed by using System Center.
Active Directory
The company plans to use Active Directory to store personal information for employees. Users in the branch
offices must not be able to view the confidential data that is stored for other users.
File shares
The NY-SVR05 server acts as the primary file server in the domain. File shares are replicated to LA-SRV03.
Client computers use NY-SRV05 to access file in the file share, BranchCache distributed mode is enabled in
each branch office. Each client computer has a 250-GB hard drive that is used by the Local Cache.
BranchCache must be able to use up to 10% of the 250-GB hard drive for the local cache.
Consolidation
The company plans to consolidate the amount of servers that are in both data centers. Company
management needs to generate a report that describes how consolidation will affect power and cooling costs
in the data center.
Technical Requirements
Server deployments
The existing Microsoft Azure environment does not have the ability to expand automatically. The Azure
environment must support the ability to deploy additional virtual machines (VMs) automatically. The onpremises deployment environments must deploy only to trusted computers. When possible, System Center
must be used to deploy and manage the on-premises and Azure environments. System Center must also be
used to migrate existing virtual machines from VMM to Azure.
Monitoring
The DHCP service must be monitored and reported if the service stops or restarts. Additionally, DHCP scope
and Network Access Protection (NAP) related events must be monitored.
Azure migrationThe company plans to migrate existing services, including System Center management servers, to Azure. To
reduce costs, the migration must use the minimum number of Azure VM instances to migrate the services.
App1
App1 uses a DNS application directory partition on LA-DC01 and NY-DC01. App1 uses IPv6 for network
connectivity and must resolve single-label names for resources in the woodgrovebank.com DNS zone.
GlobalNames zone has been created, but the zone has not been populated with resource records.
Active Directory Domain Services
The company plans to use the Employee-Number user property to store personal identification numbers.
File shares
Each branch office connects to the New York data center to retrieve file shares. BranchCache distributed
mode is enabled in each branch office. The cache on each client computer must be a single file.
Consolidation reports
The company requires a report that describes the impact of consolidation. The report must provide the
following information:
 An inventory of the existing physical server environment
 Visual charts that show the reduction of physical servers

###EndCaseStudy###

You need to generate the required report
Which tool should you use?


Page 6 of 21« First...45678...20...Last »