PrepAway - Latest Free Exam Questions & Answers

Category: 70-411 (v.9)

Exam 70-411: Administering Windows Server 2012 (update June 27th, 2017)

You need to provide an Administrator named Admin1 with …

Your network contains an Active Directory domain named contoso.com. The domain contains more than 100 Group Policy objects (GPOs). Currently, there are no
enforced GPOs. You need to provide an Administrator named Admin1 with the ability to create GPOs in the domain. The solution must not provide Admin1 with the
ability to link GPOs. What should you use?

How should you configure the filter?

Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012. You
have a Group Policy object (GPO) named GPO1 that contains several custom Administrative templates. You need to filter the GPO to display only settings that will
be removed from the registry when the GPO falls out of scope. The solution must only display settings that are either enabled or disabled and that have a comment.
How should you configure the filter?
To answer, select the appropriate options below. Select three.

What should you identify?

Your network contains an Active Directory domain named contoso.com. The functional level of the forest is Windows Server 2008 R2. Computer accounts for the
marketing department are in an organizational unit (OU) named Departments\\Marketing\\Computers. User accounts for the marketing department are in an OU
named Departments\\Marketing\\Users. All of the marketing user accounts are members of a global security group named MarketingUsers. All of the marketing
computer accounts are members of a global security group named MarketingComputers. In the domain, you have Group Policy objects (GPOs) as shown in the
exhibit. You create two Password Settings objects named PSO1 and PSO2. PSO1 is applied to MarketingUsers. PSO2 is applied to MarketingComputers. The
minimum password length is defined for each policy as shown in the following table.

You need to identify the minimum password length required for each marketing user. What should you identify?

How can you resolve this problem and allow Site-WS43 to…

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All servers in the Site.com
domain have Microsoft Windows Server 2012 R2 installed and all client computers have Windows 8 Pro installed.
You connect a new client computer named Site-WS43 to the domain and want to ping a domain controller named Site-DC07 from Site-WS43. However, when you
attempt to run the ping Site-dc07 command from the command prompt, you receive “Request timed out” messages.
How can you resolve this problem and allow Site-WS43 to ping Site-DC07 successfully?

you need to take before you can create PSOs?

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. The Site.com network has
two domain controllers named Site-SR01 and Site SR02 that have Windows Server 2008 installed.
You add a new Windows Server 2012 R2 domain controller named CertKingdom-SR06 to the network. You now want to use Active Directory Administrative Center
on Site-SR06 to implement Password Settings objects (PSOs). However, you are unable to create a PSO. Which of the following actions do you need to take before
you can create PSOs?

Which action should you take?

You work as a Network Administrators at Site.com. All servers on the Site.com network have Windows Server 2012 R2 installed. The network has a server named
Site-SR34 that is configured as a Network Policy Server (NPS).
The network contains several wireless access points (WAPs). You want to secure the wireless network by using certificate-based mutual authentication.

Which action should you take?

Which of the following actions should you take?

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All servers on the network
have Windows Server 2012 R2 installed.
DirectAccess is enabled on the network using the default configuration. You want the DirectAccess clients to use DirectAccess whenever they access the Internet.
Which of the following actions should you take?

How can you ensure that you are able to complete the Co…

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All servers on the network
have Windows Server 2012 R2 installed.
You plan to enable external users to connect to the network using a VPN connection. You are deploying Network Access Protection to ensure system health
compliance for users that connect over a VPN connection.

You install a Windows Server 2012 R2 computer named Site-SR16 and install the Network Policy Server role. You want to configure Site-SR16 as a Network
Access Protection (NAP) health policy server for the VPN connections.
You run the Configure NAP wizard to create a VPN Enforcement policy. However, you are unable to complete the wizard.
How can you ensure that you are able to complete the Configure NAP wizard to configure VPN Enforcement?


Page 20 of 24« First...10...1819202122...Last »