PrepAway - Latest Free Exam Questions & Answers

Author: seenagape

You need to successfully run the adprep

You are the network administrator for the Baldwin Museum of Science. The network consists of a single Active Directory forest. The forest functional level is Windows 2000. The forest consists of a forest root domain named baldwinmuseumofscience.com and two child domains named child1.baldwinmuseumofscience.com, and child2.baldwinmuseumofscience.com. The functional level of all three domains is Windows 2000 native. All domain controllers in the forest run Windows 2000 Server. Your user account that has administrative privileges is in the child1.baldwinmuseumofscience.com domain and is a member of the following groups: Schema Admins, Domain Admins, and Domain Users. You need to successfully run the adprep.exe /forestprep command. What should you do?

You need to identify the cause of the failure and update your test plan

You are the network administrator for your company. You need to test a new application.

The application requires 2 processors and 2 GB of RAM. The application also requires shared folders and installation of software on client computers. You install the application on a Windows Server 2003 Web Edition computer and install the application on 20 test client computers. You then discover that only some of the client computers can connect and run the application.

You turn off some computers and discover that the computer that failed to open the application can now run the application. You need to identify the cause of the failure and update your test plan.

What should you do?

You need to change the password for the cluster service account by using the minimum amount of administrative

You are a network administrator for your company. The network consists of a single Active Directory domain. The domain contains a Windows Server 2003 two-node server cluster. The security team states that the password for the cluster service account must be changed because one of the administrators has left the company.

You fill out the necessary change control paperwork. You need to provide the process for changing the password in the change control form. You need to change the password for the cluster service account by using the minimum amount of administrative effort.

What should you do?

You need to install the application on the Terminal Services servers

You have a Windows Server 2003 Active Directory directory service environment that has two domain controllers, two Terminal Services servers, and two file servers. You deploy an application to the Terminal Services servers and the file servers by using a Group Policy object (GPO). The application is installed on the file servers. However, it is not installed on the Terminal Services servers. You need to install the application on the Terminal Services servers. What should you do?

What should you do?

You are a network administrator for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. Client computers run Windows 2000 Professional, Windows XP Professional, or Windows NT Workstation 4.0.The company wants to increase the security of the communication on the network by using IPSec as much as possible. The company does not want to upgrade the Windows NT Workstation 4.0 client computers to another operating system. The servers use a custom IPSec policy named Domain Servers. The rules of the Domain Servers IPSec policy are shown in the exhibit.

You create a new Group Policy object (GPO) and link it to the domain. You configure the GPO to assign the predefined IPSec policy named Client (Respond Only).

After these configuration changes, users of the Windows NT Workstation 4.0 computers report that they cannot connect to the servers in the domain.You want to ensure that Windows NT Workstation 4.0 client computers can connect to servers in the domain.

What should you do?

Exhibit:

You need to apply the public key Group Policy change to DC1 immediately

You have a single Active Directory directory service forest named contoso.com. You have a domain controller named DC1 in the Domain Controllers organizational unit (OU). You change a public key Group Policy setting in the Default Domain Controllers Policy. You need to apply the public key Group Policy change to DC1 immediately. What should you do?

Which three actions should you take? (Each correct answer presents part of the solution

You are the systems engineer for your company. The company has a main office in Los Angeles and two branch offices, one in Chicago and one in New York. The offices are connected to one another by dedicated T1 lines. Each office has its own local IT department and administrative staff. The company network consists of a single Active Directory domain. All servers run Windows Server 2003. All client computers run Windows XP Professional. All servers support firmware- based console redirection by means of the serial port. The server hardware does not support any other method of console redirection and cannot be upgraded to do so.

The company is currently being reorganized. The IT departments from each branch office are being relocated to a new central data center in the Los Angeles office. Several servers from each branch office are also being relocated to the Los Angeles data center. Each branch office will retain 10 servers. A new written security policy includes the following requirements:

All servers must be remotely administered for all administrative tasks. All servers must be administered from the Los Angeles office.

All remote administration connections must be authenticated and encrypted. Your current network configuration already adheres to the new written security policy for day-to- day server administration tasks performed on the servers. You need to plan a configuration for out-of-band management tasks for each office that meets the new security requirements.

Which three actions should you take? (Each correct answer presents part of the solution. Choose three.)

You need to configure the permissions for the help desk employees as defined by the written domain administrat

You are the network administrator for your company. The network consists of a single Active Directory
domain. The company’s written domain administration policy requires that help desk employees must have
the ability to reset passwords. The help desk employees must be able to reset passwords for all user
accounts except for members of the Domain Admins global group and members of the Executives global
group. The help desk employees must not have any other administrative rights in the domain. All help desk
employees are members of the Help Desk global group. All members of the Domain Admins group are
located in an organizational unit (OU) named AdminsOU. All members of the Executives group are located
in an OU named ExecutiveOU. All other user accounts are located in an OU named EmployeesOU. The
relevant portion of the OU design for the domain is shown in the exhibit.

You need to configure the permissions for the help desk employees as defined by the written domain administration
policy. What should you do?

Which two actions should you take? (Each correct answer presents part of the solution

You are the senior systems engineer for your company. The network consists of a single Active Directory domain. All servers run Windows Server 2003. Client computers in the sales department run Windows NT Workstation 4.0 with the Active Directory Client Extensions software installed. All other client computers run Windows XP Professional. All servers are located in an organizational unit (OU) named Servers. All client computers are located in an OU named Desktops. Four servers contain confidential company information that is used by users in either the finance department or the research department. Users in the sales department also store files and applications on these servers. The company’s written security policy states that for auditing purposes, all network connections to these resources must require authentication at the protocol level. The written security policy also states that all network connections to these resources must be encrypted. The company budget does not allow for the purchase of any new hardware or software. The applications and data located on these servers may not be moved to any other server in the network. You define and assign the appropriate permissions to ensure that only authorized users can access the resources on the servers. You now need to ensure that all connections made to these servers by the users in the finance department and in the research department meet the security guidelines stated by the written security policy. You also need to ensure that all users in the sales department can continue to access their resources.

Which two actions should you take? (Each correct answer presents part of the solution. Choose two.)