PrepAway - Latest Free Exam Questions & Answers

Tag: Exam 70-417 (May 5th, 2014)

Exam 70-417: Upgrading Your Skills to MCSA Windows Server 2012 (May 5th, 2014)

You need to ensure that you can assign classifications to Folder1 from Windows Explorer manually

You have a server named Server1 that runs Windows Server 2012 R2.
You install the File and Storage Services server role on Server1.
From Windows Explorer, you view the properties of afolder named Folder1 and you discover that the
Classification tab is missing.
You need to ensure that you can assign classifications to Folder1 from Windows Explorer manually.
What should you do?

Which two actions should you perform?

Your network contains an Active Directory domain named adatum.com. All domain controllers run Windows
Server 2008 R2.
The domain contains a file server named Server6 that runs Windows Server 2012 R2. Server6 contains a
folder named Folder1. Folder1 is shared as Share1. The NTFS permissions on Folder1 are shown in the
exhibit. (Click the Exhibit button.)

The domain contains two global groups named Group1 and Group2.
You need to ensure that only users who are members of both Group1 and Group2 are denied access to
Folder1.
Which two actions should you perform? (Each correctanswer presents part of the solution.
Choose two.)

Which two actions should you perform?

Your network contains an Active Directory domain named contoso.com. The domain contains a file server
named Server1 and a domain controller named DC1. All servers run Windows Server 2012 R2.
A Group Policy object (GPO) named GPO1 is linked tothe domain.
Server1 contains a folder named Folder1. Folder1 isshared as Share1.
You need to ensure that authenticated users can request assistance when they are denied access to the
resources on Server1.
Which two actions should you perform? (Each correctanswer presents part of the solution.
Choose two.)

You need to ensure that you can configure access-denied assistance on Server1 manually by using File Server Re

Your network contains an Active Directory domain named contoso.com. The domain contains a file server
named Server1. The File Server Resource Manager role service is installed on Server1. All servers run
Windows Server 2012 R2.
A Group Policy object (GPO) named GPO1 is linked tothe organizational unit (OU) that contains Server1. The
following graphic shows the configured settings in GPO1.

Server1 contains a folder named Folder1. Folder1 isshared as Share1.
You attempt to configure access-denied assistance on Server1, but the Enable access- denied assistance
option cannot be selected from File Server ResourceManager.
You need to ensure that you can configure access-denied assistance on Server1 manually by using File Server
Resource Manager.
What should you do?

You need to ensure that all users from the Internetare pre-authenticated before they can access App1

DRAG DROP
Your network contains an Active Directory domain named contoso.com. The domain contains two servers
named Server1 and Server3. The network contains a standalone
server named Server2. All servers run Windows Server 2012 R2. The servers are configured as shown in the
following table.

Server3 hosts an application named App1. App1 is accessible internally by using the URL https://
app1.contoso.com. App1 only supports Integrated Windows authentication.
You need to ensure that all users from the Internetare pre-authenticated before they can access App1.
What should you do? To answer, drag the appropriateservers to the correct actions. Each server may beused
once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

How should you configure the certificate request?

DRAG DROP
Your network contains an Active Directory domain named contoso.com. The domain contains a server named
Server1 that runs Windows Server 2012 R2.
You plan to install the Active Directory FederationServices server role on Server1 to allow for Workplace Join.
You run nslookup enterpriseregistration and you receive the following results:

You need to create a certificate request for Server1 to support the Active Directory Federation Services (AD
FS) installation.
How should you configure the certificate request? To answer, drag the appropriate names to the correct
locations. Each name may be used once, more than once, or not at all. You may need to drag the split bar
between panes or scroll to view content.

Which Windows PowerShell command should you run?

You deploy an Active Directory Federation Services (AD FS) 2.1 infrastructure. The infrastructure usesActive
Directory as the attribute store.
Some users report that they fail to authenticate tothe AD FS infrastructure.
You discover that only users who run third-party web browsers experience issues.
You need to ensure that all of the users can authenticate to the AD FS infrastructure successfully.
Which Windows PowerShell command should you run?

Which rule types should you configure on each side of the federated trust?

DRAG DROP
Your network contains two Active Directory forests named contoso.com and adatum.com. All domain
controllers run Windows Server 2012 R2.
A federated trust exists between adatum.com and contoso.com. The trust provides adatum.com users with
access to contoso.com resources.
You need to configure Active Directory Federation Services (AD FS) claim rules for the federated trust.
The solution must meet the following requirements:
In contoso.com, replace an incoming claim type named Group with an outgoing claim type named Role.
In adatum.com, allow users to receive their tokens for the relying party by using their Active Directory group
membership as the claim type.
The AD FS claim rules must use predefined templates.
Which rule types should you configure on each side of the federated trust?
To answer, drag the appropriate rule types to the correct location or locations. Each rule type may beused
once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

Which two actions should you perform?

Your network contains an Active Directory domain named contoso.com. The domain contains servers named
Server1 and Server2 that run Windows Server 2012 R2. Server1 has the Active Directory Federation Services
server role installed.Server2 is a file server.
Your company introduces a Bring Your Own Device (BYOD) policy.
You need to ensure that users can use a personal device to access domain resources by using Single Sign-On
(SSO) while they are connected to the internal network.
Which two actions should you perform? (Each correctanswer presents part of the solution.
Choose two.)


Page 6 of 13« First...45678...Last »