What should you configure?
Your network contains an Active Directory domain named contoso.com. The domain
contains a domain controller named DC1 that hosts the primary DNS zone for contoso.com.
All client computers are configured to use DC1 as the primary DNS server.
You need to configure DC1 to resolve any DNS requests that are not for the contoso.com
zone by querying the DNS server of your Internet Service Provider (ISP).
What should you configure?
You need to ensure that Computer1 can receive an IP address from DC1
Your network contains an Active Directory domain named contoso.com. The domain
contains a domain controller named DC1 that runs Windows Server 2012 R2 and a client
computer named Computer1 that runs windows 8.
DC1 is configured as a DHCP server as shown in the exhibit.(Click the Exhibit button.)
Computer1 is configured to obtain an IP address automatically.
You notice that Computer1 is unable to obtain an IP address from DC1
You need to ensure that Computer1 can receive an IP address from DC1.
What should you do?
You need to ensure that User1 can connect to Server1 and authenticate to the domain
Your network contains an Active Directory domain named contoso.com. The domain
contains a server named Server1 that runs Windows Server 2012 R2 and has the Remote
Access server role installed.
A user named User1 must connect to the network remotely. The client computer of User1
requires Challenge Handshake Authentication Protocol (CHAP) for remote connections.
CHAP is enabled on Server1.
You need to ensure that User1 can connect to Server1 and authenticate to the domain.
What should you do from Active Directory Users and Computers?
Which two configurations should you identify?
Your network contains an Active Directory forest named contoso.com. All domain controllers
currently run Windows Server 2008 R2.
You plan to install a new domain controller named DC4 that runs Windows Server 2012 R2.
The new domain controller will have the following configurations:
• Schema master
• Global catalog server
• DNS Server server role
• Active Directory Certificate Services server role
You need to identify which configurations cannot be fulfilled by using the Active Directory
Domain Services Configuration Wizard.
Which two configurations should you identify? (Each correct answer presents part of the
solution. Choose two.)
You need to ensure that when users join computers to the domain, the computer accounts are automatically creat
Your network contains an Active Directory domain named adatum.com.
You discover that when users join computers to the domain, the computer accounts are
created in the Computers container.
You need to ensure that when users join computers to the domain, the computer accounts
are automatically created in an organizational unit (OU) named All_Computers.
What should you do?
What command should you run?
You need to ensure that users from Group1 can modify the Security settings of OU1 only
Your network contains an Active Directory domain named contoso.com.
You log on to a domain controller by using an account named Admin1.Admin1 is a member
of the Domain Admins group.
You view the properties of a group named Group1 as shown in the exhibit. (Click the Exhibit button.)
Group1 is located in an organizational unit (OU) named OU1.
You need to ensure that users from Group1 can modify the Security settings of OU1 only.
What should you do from Active Directory Users and Computers?
Which two actions should you perform?
Your network contains an Active Directory forest named contoso.com. The forest contains a
single domain. All servers runs Windows Server 2012 R2. The domain contains two domain
controllers named DC1 and DC2.Both domain controllers are virtual machines on a Hyper-V
host.
You plan to create a cloned domain controller named DC3 from an image of DC1.
You need to ensure that you can clone DC1.
Which two actions should you perform? (Each correct answer presents part of the solution.
Choose two.)
What should you configure in the GPO?
HOTSPOT
Your network contains an Active Directory domain named contoso.com. Domain controllers
run either Windows Server 2008 R2 or Windows Server 2012 R2.All client computers run
Windows 8.
All computer accounts are located in an organizational unit (OU) named OU1.
You create a Group Policy object (GPO) that contains several AppLocker rules. You link the
GPO to OU1.
You need to ensure that the AppLocker rules apply to all of the client computers.
What should you configure in the GPO?
To answer, select the appropriate service in the answer area.
You need to ensure that when users attempt to execute App1, the certificate for App1 is verified against a cer
Your network contains an Active Directory domain named contoso.com.
You create a software restriction policy to allow an application named App1 by using a
certificate rule.
You need to ensure that when users attempt to execute App1, the certificate for App1 is
verified against a certificate revocation list (CRL).
What should you do?