You need to add SERVER1 as a new domain controller in the contoso.com domain
Your network contains an Active Directory forest.
The forest contains two domains named contoso.com and fabrikam.com.
The forest functional level is Windows 2000.
The contoso.com domain contains domain controllers that run either Windows Server 2008 or Windows Server
2008 R2.
The domain functional level is Windows Server 2008.
The fabrikam.com domain contains domain controllersthat run either Windows 2000 Server or Windows
Server 2003.
The domain functional level is Windows 2000 native.
The contoso.com domain contains a member server named SERVER1 that runs Windows Server 2012.
You need to add SERVER1 as a new domain controller in the contoso.com domain.
What should you do first?
You need to prepopulate the password for User1 on DC2
Your network contains an Active Directory domain named adatum.com.
The domain contains two domain controllers that runWindows Server 2012.
The domain controllers are configured as shown in the following table.
You log on to DC1 by using a user account that is amember of the Domain Admins group, and then you create
a new user account named User1.
You need to prepopulate the password for User1 on DC2.
What should you do first?
Which tool should you use?
Your network contains two Active Directory forests named contoso.com and adatum.com.
A two- way forest trust exists between the forests.
The contoso.com forest contains an enterprise certification authority (CA) named SERVER1.
You implement cross-forest certificate enrollment between the contoso.com forest and the adatum.com forest.
On SERVER1, you create a new certificate template named Template1.
You need to ensure that users in the adatum.com forest can request certificates that are based on Template1.
Which tool should you use?
You need to ensure that only between 20:00 and 08:00, the domain controllers in the Montreal office replicate
Your company has offices in Montreal, New York, andAmsterdam.
The network contains an Active Directory forest named contoso.com.
An Active Directory site exists for each office.
All of the sites connect to each other by using theDEFAULTIPSITELINK site link.
You need to ensure that only between 20:00 and 08:00,
the domain controllers in the Montreal office replicate the Active Directory changes to the domain controllers in
the Amsterdam office.
The solution must ensure that the domain controllers in the Montreal and the New York offices can replicate the
Active Directory changes any time of day.
What should you do?
What else should you do?
You have a server named Server1 that has the ActiveDirectory Certificate Services server role installed.
Server1 uses a hardware security module (HSM) to protect the private key of Server1.
You need to ensure that the Active Directory Certificate Services (AD CS) database, log files, and private key
are backed up.
You perform regular backups of the HSM module by using a backup utility provided by the HSM manufacturer.
What else should you do?
Which tool should you use?
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012.
The domain contains a domain controller named DC1 that is configured as an Enterprise Root Certification
Authority (CA).
All users in the domain are issued a smart card andare required to log on to their domain-joined client
computer by using their smart card.
A user named User1 resigned and started to work fora competing company.
You need to prevent User1 immediately from logging on to any computer in the domain. The solution mustnot
prevent other users from logging on to the domain.
Which tool should you use?
Which cmdlet should you run next?
Your company has a main office and a branch office.
The main office contains a file server named SERVER1.
SERVER1 has the BranchCache for Network Files role service installed.
The branch office contains a server named SERVER2.
SERVER2 is configured as a BranchCache hosted cacheserver.
You need to preload the data from the file shares on SERVER1 to the cache on SERVER2.
You generate hashes for the file shares on SERVER1.
Which cmdlet should you run next?
What should you configure?
You have a file server named SERVER1 that runs Windows Server 2012.
Data Deduplication is enabled on drive D of SERVER1.
You need to exclude D:\Folder1 from Data Deduplication.
What should you configure?
Which two actions should you perform?
Your network contains an Active Directory domain named contoso.com.
The network contains a file server named SERVER1 that runs Windows Server 2012.
You create a folder named Folder1.
You share Folder1 as Share1.
The NTFS permissions on Folder1 are shown in the Folder1 exhibit. (Click the Exhibitbutton.)
The Everyone group has the Full control Share permission to Folder1.
You configure a central access policy as shown in the Central Access Policy exhibit. (Click the Exhibitbutton.)
Members of the IT group report that they cannot modify the files in Folder1.
You need to ensure that the IT group members can modify the files in Folder1.
The solution must use central access policies to control the permissions.
Which two actions should you perform? (Each correctanswer presents part of the solution. Choose two.)
NTFS Permissions (exhibit):
Central Access Policy (exhibit):
What should you modify in the image?
Your network contains an Active Directory domain named contoso.com.
You are creating a custom Windows Recovery Environment (Windows RE) image.
You need to ensure that when a server starts from the custom Windows RE image, a drive is mapped
automatically to a network share.
What should you modify in the image?