You need to ensure that a user named Contoso\User1 can promote DC10 to a RODC in the contoso.com domain
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows
Server 2012 R2.
In a remote site, a support technician installs a server named DC10 that runs Windows Server 2012 R2. DC10 is
currently a member of a workgroup.
You plan to promote DC10 to a read-only domain controller (RODC).
You need to ensure that a user named Contoso\User1 can promote DC10 to a RODC in the contoso.com
domain. The solution must minimize the number of permissions assigned to User1.
What should you do?
You need to change the precedence order of the GPOs
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100
Group Policy objects (GPOs). Currently, there are no enforced GPOs.
You have two GPOs linked to an organizational unit (OU) named OU1.
You need to change the precedence order of the GPOs.
What should you use?
You need to recreate the Default Domain Policy GPO
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100
Group Policy objects (GPOs). Currently, there are no enforced GPOs.
A network administrator accidentally deletes the Default Domain Policy GPO.
You do not have a backup of any of the GPOs.
You need to recreate the Default Domain Policy GPO.
What should you use?
You need to configure GPO1 to apply settings to Group1 only
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100
Group Policy objects (GPOs). Currently, there are no enforced GPOs.
The domain contains a top-level organizational unit (OU) for each department. A group named Group1
contains members from each department.
You have a GPO named GPO1 that is linked to the domain.
You need to configure GPO1 to apply settings to Group1 only.
What should you use?
You need to ensure that the existing GPOs are applied to users and computers
Your network contains an Active Directory domain named contoso.com. The domain contains more than 100
Group Policy objects (GPOs). Currently, there are no enforced GPOs.
The domain is renamed to adatum.com.
Group Policies no longer function correctly.
You need to ensure that the existing GPOs are applied to users and computers. You want to achieve this goal
by using the minimum amount of administrative effort.
What should you use?
which group should you add User2?
Your network contains an Active Directory domain named contoso.com. The domain contains a server named
Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server role installed.
You log on to Server1 by using a user account named User2.
From the Remote Access Management Console, you run the Getting Started Wizard and you receive a warning
message as shown in the exhibit. (Click the Exhibit button.)
You need to ensure that you can configure DirectAccess successfully. The solution must minimize the number
of permissions assigned to User2.
To which group should you add User2?
You need to install and configure the Web Application Proxy role service
Your network contains an Active Directory domain named contoso.com.
You need to install and configure the Web Application Proxy role service.
What should you do?
You need to configure Server1 to perform network address translation (NAT)
Your network contains an Active Directory domain named contoso.com. The domain contains a server named
Server1. Server1 is configured as a VPN server.
You need to configure Server1 to perform network address translation (NAT).
What should you do?
You need to view the time-to-live (TTL) value of a name server (NS) record that is cached by the DNS Server se
You have a DNS server named Served that has a Server Core Installation on Windows Server 2012 R2.
You need to view the time-to-live (TTL) value of a name server (NS) record that is cached by the DNS Server
service on Server1.
What should you run?
What should you modify?
HOTSPOT
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server
role installed.
You need to configure the ports on Server1 to ensure that client computers can establish VPN connections to
Server1 by using TCP port 443.
What should you modify? To answer, select the appropriate object in the answer area.