PrepAway - Latest Free Exam Questions & Answers

Author: seenagape

You need to deploy a new Enterprise Intermediate CA certificate to all computers in the domain

Your company has an Active Directory domain. All servers run Windows Server 2008 R2. Your company uses an Enterprise Root certification authority (CA) and an Enterprise Intermediate CA.

The Enterprise Intermediate CA certificate expires.

You need to deploy a new Enterprise Intermediate CA certificate to all computers in the domain.

What should you do?

What should you create on Server1?

Your network contains three servers named Server1, Server2, and Server3 that have the Network Policy Server (NPS) role service installed. On Server1, you configure a Remote RADIUS Server Group that contains Server2 and Server3. On Server2 and Server3, you configure Server1 as a RADIUS client. You configure Server2 and Server3 to authenticate remote users. You need to configure Server1 to forward RADIUS authentication requests to Server2 and Server3. What should you create on Server1?

Which command should you run on Server2?

Your network contains two servers named Server1 and Server2 that run a Server Core installation of Windows Server 2008 R2. Server1 and Server2 are configured as DNS servers. Server1 has an IP address of 10.0.0.1. Server2 has an IP address of 10.0.0.2. Server1 contains a standard primary zone named contoso.com. Zone transfers are enabled for contoso.com. You need to ensure that Server2 hosts a copy of the contoso.com zone. Which command should you run on Server2?

Which three tasks should you perform next? (Each correct answer presents part of the solution

You have a Windows Server 2008 R2 Enterprise Root certification authority (CA).

You need to grant members of the Account Operators group the ability to only manage Basic EFS certificates.

You grant the Account Operators group the Issue and Manage Certificates permission on the CA.

Which three tasks should you perform next? (Each correct answer presents part of the solution.
Choose three.)

You need to implement a certification authority (CA) server that meets the following requirements:

You have an Active Directory domain that runs Windows Server 2008 R2.

You need to implement a certification authority (CA) server that meets the following requirements:

* Allows the certification authority to automatically issue certificates
* Integrates with Active Directory Domain Services

What should you do?

You need to configure the contoso

Your company has two domain controllers that are configured as internal DNS servers. All zones on the DNS servers are Active Directory-integrated zones. The zones allow all dynamic updates.

You discover that the contoso.com zone has multiple entries for the host names of computers that do not exist.

You need to configure the contoso.com zone to automatically remove expired records.

What should you do?

Which server role, role service, or feature should you install?

Your network contains an Active Directory forest. The forest contains a member server named Server1 that runs Windows Server 2008 R2. You configure Server1 as a VPN server. You need to ensure that only client computers that have up-to-date virus definitions can establish VPN connections to Server1. Which server role, role service, or feature should you install?