You need to ensure that the users in west.contoso.com are directed to the AD RMS cluster…
Your network contains an Active directory forest named contoso.com. The forest contains two child
domains named east.contoso.com and west.contoso.com.
You install an Active Directory Rights Management Services (AD RMS) cluster in each child domain.
You discover that all of the users in the contoso.com forest are directed to the AD RMS cluster in
east.contoso.com.
You need to ensure that the users in west.contoso.com are directed to the AD RMS cluster in
west.contoso.com and that the users in east.contoso.com are directed to the AD RMS cluster in
east.contoso.com.
What should you do?
You need to ensure that when Admin1 opens the Certification Authority console on Server1, the error message do
You have a server named Server1 that runs Windows Server 2012 R2.
From Server Manager, you install the Active Directory Certificate Services server role on Server1.
A domain administrator named Admin1 logs on to Server1.
When Admin1 runs the Certification Authority console, Admin1 receive the following error message.
You need to ensure that when Admin1 opens the Certification Authority console on Server1, the
error message does not appear.
What should you do?
Which tool should you use?
Your network contains an Active Directory domain named contoso.com.
A previous administrator implemented a Proof of Concept installation of Active Directory Rights
Management Services (AD RMS).
After the proof of concept was complete, the Active Directory Rights Management Services server
role was removed.
You attempt to deploy AD RMS.
During the configuration of AD RMS, you receive an error message indicating that an existing AD
RMS Service Connection Point (SCP) was found.
You need to remove the existing AD RMS SCP.
Which tool should you use?
Which two actions should you perform on Server1?
Your network contains an Active Directory domain named contoso.com. The domain contains a
member server named Server1 that has the Active Directory Federation Services server role
installed. All servers run Windows Server 2012.
You complete the Active Directory Federation Services Configuration Wizard on Server1.
You need to ensure that client devices on the internal network can use Workplace Join.
Which two actions should you perform on Server1? (Each correct answer presents part of the
solution. Choose two.)
Which four actions should you perform in sequence?
DRAG DROP
Your network contains an Active Directory domain named contoso.com.
You need to ensure that third-party devices can use Workplace Join to access domain resources on
the Internet.
Which four actions should you perform in sequence?
To answer, move the appropriate four actions from the list of actions to the answer area and
arrange them in the correct order.
Which tab should you use to configure the required CDP entry?
HOTSPOT
Your company has a primary data center and a disaster recovery data center.
The network contains an Active Directory domain named contoso.com. The domain contains a
server named that runs Windows Server 2012 R2. Server1 is located in the primary data center.
Server1 has an enterprise root certification authority (CA) for contoso.com.
You deploy another server named Server2 to the disaster recovery data center.
You plan to configure Server2 as a secondary certificate revocation list (CRL) distribution point.
You need to configure Server2 as a CRL distribution point (CDP).
Which tab should you use to configure the required CDP entry? To answer, select the appropriate
tab in the answer area.
You need to ensure that only Scope1, Scope3, and Scope5 assign the same DNS servers to DHCP clients
Your network contains an Active Directory domain named contoso.com. The domain contains a
server named Server3 that runs Windows Server 2012 R2 and has the DHCP Server server role
installed.
DHCP is configured as shown in the exhibit. (Click the Exhibit button.)
You need to ensure that only Scope1, Scope3, and Scope5 assign the same DNS servers to DHCP
clients. The solution must minimize administrative effort.
What should you do?
Which two actions should you perform?
Your network contains an Active Directory domain named contoso.com. The domain contains a
server named Server1 that runs Windows Server 2012 R2. Server1 has the Active Directory
Certificate Services server role installed and is configured as an enterprise certification authority
(CA).
You need to ensure that all of the users in the domain are issued a certificate that can be used for
the following purposes:
Email security
Client authentication
Encrypting File System (EFS)
Which two actions should you perform? (Each correct answer presents part of the solution. Choose
two.)
You need to assign a user named User1 permission to add and delete records from the contoso.com zone only
Your network contains an Active Directory domain named contoso.com. The domain contains a
server named Server1 that runs Windows Server 2012 R2 and has the DNS Server server role
installed.
Server1 has a zone named contoso.com. The zone is configured as shown in the exhibit. (Click the
Exhibit button.)
You need to assign a user named User1 permission to add and delete records from the contoso.com
zone only.
What should you do first?
You need to identify which Group Policy object (GPO) name prefix must be used for IPAM Group Policies
Your network contains an Active Directory domain named contoso.com. The domain contains a
server named Server1 that runs Windows Server 2012 R2 and has the DHCP Server server role
installed.
An administrator installs the IP Address Management (IPAM) Server feature on a server named
Server2. The administrator configures IPAM by using Group Policy based provisioning and starts
server discovery.
You plan to create Group Policies for IPAM provisioning.
You need to identify which Group Policy object (GPO) name prefix must be used for IPAM Group
Policies.
What should you do on Server2?