PrepAway - Latest Free Exam Questions & Answers

Author: seenagape

You need to ensure that when users log on to clientcomputers, they are added automatically to the local Admini

Your network contains an Active Directory domain named contoso.com.
You have an organizational unit (OU) named Sales and an OU named Engineering.
You need to ensure that when users log on to clientcomputers, they are added automatically to the local
Administrators group. The users must be removed from the group when they log off of the client computers.
What should you do?

You need to transfer a complete copy of the zone from Server1 to Server2

Your network contains an Active Directory forest named contoso.com. The forest contains two member servers
named Server1 and Server2. Server1 and Server2 havethe DNS Server server role installed.
Server1 hosts a standard primary zone for contoso.com. Server2 is configured as a secondary name server for
contoso.com.
You experience issues with the copy of the zone on Server2,
You verify that both copies of the zone have the same serial number.
You need to transfer a complete copy of the zone from Server1 to Server2.
What should you do on Server2?

You need to restore the deleted user account

Your network contains an Active Directory domain. The domain contains two Active Directory sites namedSite1
and Site2. Site1 contains two domain controllers named DC1 and DC2. Site2 contains two domain controller
named DC3 and DC4,
The functional level of the domain is Windows Server 2008 R2. The functional level of the forest is Windows
Server 2003.
Active Directory replication between Site1 and Site2 occurs from 20:00 to 01:00 every day.
At 07:00, an administrator deletes a user account while he is logged on to DC1.
“A Composite Solution With Just One Click” – Certification Guaranteed 266 Microsoft 70-640 Exam
You need to restore the deleted user account. You want to achieve this goal by using the minimum amount of
administrative effort.
What should you do?

You need to ensure that RODC1 has a copy of the DNSapplication directory partition of contoso.com

Your network contains an Active Directory forest named contoso.com. The functional level of the forestis
Windows Server 2008 R2
The DNS zone for contoso.com is Active Directory-integrated.
You deploy a read-only domain controller (RODC) named RODC1. You install the DNS Server server role on
RODC1.
You discover that RODC1 does not have any DNS application directory partitions.
You need to ensure that RODC1 has a copy of the DNSapplication directory partition of contoso.com.
What should you do? (Each correct answer presents acomplete solution. Choose two.)

You need to export the token-signing certificate from ADFS1, and then import the certificate to ADFS2 and ADFS

Your network contains three servers named ADFS1, ADFS2, and ADFS3 that run Windows Server 2008 R2.
ADFS1 has the Active Directory Federation Services (AD FS) Federation Service role service installed.
You plan to deploy AD FS 2.0 on ADFS2 and ADFS3.
You need to export the token-signing certificate from ADFS1, and then import the certificate to ADFS2 and
ADFS3.

Which tool should you use?

Your network contains an Active Directory domain named contoso.com. The functional level of the forestis
Windows Server 2008 R2.
The Default Domain Controller Policy Group Policy object (GPO) contains audit policy settings.
On a domain controller named DC1, an administrator configures the Advanced Audit Policy Configuration
settings by using a local GPO.
You need to identify what will be audited on DC1.
Which tool should you use?