PrepAway - Latest Free Exam Questions & Answers

Author: seenagape

What are two possible ways to achieve this goal? (Each correct answer presents a complete solution

Your company has an Active Directory domain named contoso.com. FS1 is a member server in contoso.com.

You add a second network interface card, NIC2, to FS1 and connect NIC2 to a subnet that contains computers in a DNS domain named fabrikam.com. Fabrikam.com has a DHCP server and a DNS server.

Users in fabrikam.com are unable to resolve FS1 by using DNS. You need to ensure that FS1 has an A record in the fabrikam.com DNS zone. What are two possible ways to achieve this goal? (Each correct answer presents a complete solution. Choose two.)

You need to prevent the users from accessing EFS-encrypted files when their smart cards are removed

Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2008 R2. All client computers run Windows 7.

You discover that users can use Encrypting File System (EFS) when the smart cards on their computers are removed.

You need to prevent the users from accessing EFS-encrypted files when their smart cards are removed. From the EFS properties, you click Require a smart card for EFS.

What should you do next?

You need to configure the contoso

Your company has a main office and five branch offices that are connected by WAN links. The company has an Active Directory domain named contoso.com. Each branch office has a member server configured as a DNS server. All branch office DNS servers host a secondary zone for contoso.com.

You need to configure the contoso.com zone to resolve client queries for at least four days in the event that a WAN link fails.

What should you do?

You need to ensure that all domain users can access the share

Your network contains an Active Directory domain. The domain contains a member server that runs Windows Server 2008 R2.

You have a folder named Data that is located on the C drive. The folder has the default NTFS permissions configured.

A support technician shares C:\Data by using the File Sharing Wizard and specifies the default settings.

Users report that they cannot access the shared folder. You need to ensure that all domain users can access the share.

What should you do?

You need to prevent the external partner from accessing the Web site

Your network contains a server that runs Windows Server 2008 R2. The server is configured as an enterprise root certification authority (CA).

You have a Web site that uses x.509 certificates for authentication. The Web site is configured to use a many-to-one mapping.

You revoke a certificate issued to an external partner. You need to prevent the external partner from accessing the Web site.

What should you do?

You need to ensure that User1 can upload files to C: \Data

Your network contains a server that runs Windows Server 2008 R2. You have a shared folder named Data that is located on the C drive. The permissions for the Data folder are configured as shown in the following table.

A user named User1 is a member of Group1 and Group3.

User1 reports that she cannot upload files to the share. You need to ensure that User1 can upload files to C: \Data. The solution must minimize the number of permissions assigned to all users.

What should you do?

You need to immediately prevent the employee from logging on to the domain

You have an enterprise subordinate certification authority (CA). The CA issues smart card logon certificates.

Users are required to log on to the domain by using a smart card. Your company’s corporate security policy states that when an employee resigns, his ability to log on to the network must be immediately revoked. An employee resigns.

You need to immediately prevent the employee from logging on to the domain.

What should you do?