PrepAway - Latest Free Exam Questions & Answers

Category: 70-411 (v.9)

Exam 70-411: Administering Windows Server 2012 (update June 27th, 2017)

Which of the following statements is true?

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All servers in the Site.com
domain have Microsoft Windows Server 2012 R2 installed.
A group policy object (GPO) is assigned to an organizational unit (OU) named Sales. The GPO assigns several settings to the computers in the Sales department.
You unlink the GPO from the Sales OU.
You discover that some of the settings applied by the GPO are still in effect on the Sales computers while other setting applied by the GPO have been removed.
Which of the following statements is true?

How can you view the administrative templates in the GPO?

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All servers in the Site.com
domain have Microsoft Windows Server 2012 R2 installed.
All user and computer accounts for the company’s Sales department are located in an organizational unit named Sales.
You must configure group policy object (GPO) for the Sales OU. You download updated administrative template files. You then configure a Central Store on a
domain controller. However, when you open a new GPO for editing using the Group Policy Editor console, you discover that no administrative templates are listed
under Computer Configuration \\ Administrative Templates.
How can you view the administrative templates in the GPO?

Which of the following actions need to be taken if you …

You are hired by Site.com to administrate an Active Directory domain named Site.com which encompasses a RADIUS server by the name of Site-SR08 running an
installation of Windows Server 2012.
Your senior network administrator has provisioned a VPN server added to the network named Site-VPN05 and thereafter orders the creation of numerous network
policies on Site-SR08.
Which of the following actions need to be taken if you are assigned the task of having Site configured to accept appeals for authentication from Site-VPN05?

you need to do first?

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All servers in the Site.com
domain have Microsoft Windows Server 2012 R2 installed.
Site.com has a main office and a branch office. The two offices are connected by a WAN link.
A server in the main office named Site-SR21 runs the DNS Server role and hosts an Active Directory Integrated primary zone for Site.com. You install a server
named Site-SR22 in the branch office. Site-SR22 runs the DNS Server role. You plan to configure a secondary zone for Site.com on Site-SR22.
What do you need to do first?

what is the name of the DirectAccess connection?

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All domain controllers in
the Site.com domain have Microsoft Windows Server 2012 R2 installed. You implement DirectAccess. You leave the connection name as the default when you run
the DirectAccess wizard.
You want to view the properties of a DirectAccess connection. In the Networks window, what is the name of the DirectAccess connection?

Which of the following cmdlets should you use?

Your role of Network Administrator at Site.com includes the management of the Active Directory Domain Services (AD DS) domain named Site.com. All servers in
the Site.com domain have Microsoft Windows Server 2012 R2 installed. Site.com has a Sales department and a Production department. An OU exists for each
department. The OUs contain the user and computer accounts for the respective departments. A shadow group named SalesSG is configured for the Sales OU and
contains all objects within the Sales OU. A password settings object (PSO) named SalesPSO is applied to the SalesSG group and applies a minimum password
length of 6 characters.
You want to modify the PSO to require a minimum password length of 8 characters.
Which of the following cmdlets should you use?

What should you modify?

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All servers in the Site.com
domain have Microsoft Windows Server 2012 R2 installed.
Site.com has a Research department. All user and computer accounts in the Research department are located in an organizational unit (OU) named ResearchOU.
A server in the Research department named Site-SR23 runs the File and Storage Services role and the File Server Resource Manager role service. Sensitive
information is stored in shared folders on Site-SR23.
All users in the Research department are members of a global security group named ResearchUsers.
The ResearchUsers group has full control access to a folder named D:\\Data which is shared as \\\\Site-SR23\\Data.

You link a group policy object (GPO) to the ResearchOU. The GPO configures the Audit File System and Audit File Share settings to Success and Failure. You
need to ensure that all file deletions in \\\\Site-SR23\\Data by members of the ResearchUsers group are logged.
You delete a test file in the shared folder and verify that an event log entry is added. You discover that when a user in the ResearchUsers group deletes a file, no
event log entry is
added.
What should you modify?

What should you do?

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All servers in the Site.com
domain have Microsoft Windows Server 2012 R2 installed.
Site.com has a Research department.
A server in the Research department named Site-SR25 runs the File and Storage Services role and the File Server Resource Manager role service. Sensitive
information is stored in shared folders on Site-SR25. You want to be notified by e-mail when an executable file is stored in a shared folder on Site-SR25. The
notification must include information about the user who stored the file and the exact location of the file.
What should you do?

How can you limit the amount of bandwidth used by DFS r…

You work as a Network Administrator at Site.com. Site.com has an Active Directory Domain Services (AD DS) domain named Site.com. All servers in the Site.com
domain have Microsoft Windows Server 2012 R2 installed.
Site.com has a main office and a branch office. The two offices are connected by a slow WAN link.
A server in the main office named Site-SR21 runs the File and Storage Services and Distributed File System roles. A server in the branch office named Site-SR22
also runs the File and Storage Services and Distributed File System roles. Shared folders on Site-SR21 and Site-SR22 are replicated to each other using DFS
Replication (DFSR).
You discover that DFS replication between the two servers is using too much bandwidth over the WAN link.
How can you limit the amount of bandwidth used by DFS replication?

Which of the following commands will need to be run if …

You are hired by Site.com to administrate a DNS server named Site-SR08 which is currently equipped with a Server Core Installation on Windows Server 2012.
Which of the following commands will need to be run if you are required to have the time-to-live (TTL) value of a name server (NS) record displayed, taking into
account that the time-to-live (TTL) value is currently being cached by the DNS Server service on Site-SR08?


Page 23 of 24« First...10...2021222324