PrepAway - Latest Free Exam Questions & Answers

Category: 70-417 (v.6)

Exam 70-417: Upgrading Your Skills to MCSA Windows Server 2012 (update October 20th, 2016)

What command should you run?

HOTSPOT
Your network contains an Active Directory domain named contoso.com. The domain contains a DNS
server named Server1. Server1 is configured to resolve single-label names for DNS clients.
You need to view the number of queries for single-label names that are resolved by Server1.
What command should you run?
To answer, select the appropriate options in the answer area.

Which cmdlet should you run on each server?

HOTSPOT
Your network contains an Active Directory domain named contoso.com. The domain contains a domain
controller named DC1 and a server named Server1. Both servers run Windows Server 2012 R2.
You configure the classification of a share on Server1 as shown in the Share1 Properties exhibit. (Click
the Exhibit button.)

You configure the resource properties in Active Directory as shown in the Resource Properties exhibit.
(Click the Exhibit button.)

You need to ensure that the Impact classification can be assigned to Share1 immediately.
Which cmdlet should you run on each server?
To answer, select the appropriate cmdlet for each server in the answer area.

Your user account is assigned the certificate manager role and the auditor role on the contoso.com C

Your network contains an Active Directory domain named contoso.com. The domain contains a server
named Server1 that runs Windows Server 2012 R2. Server1 is an enterprise root certification authority
(CA) for contoso.com.
Your user account is assigned the certificate manager role and the auditor role on the contoso.com CA.
Your account is a member of the local Administrators group on Server1.
You enable CA role separation on Server1.You need to ensure that you can manage the certificates on the CA.
What should you do?

You need to ensure that a user named User1 can decrypt private keys archived in the Active Directory Certifica

Your network contains an Active Directory domain named adatum.com. The domain contains a server
named CA1 that runs Windows Server 2012 R2. CA1 has the Active Directory Certificate Services server
role installed and is configured to support key archival and recovery.
You need to ensure that a user named User1 can decrypt private keys archived in the Active Directory
Certificate Services (AD CS) database. The solution must prevent User1 from retrieving the private keys
from the AD CS database.
What should you do?

Which type of trust policy should you create?

Your network contains an Active Directory forest named adatum.com. The forest contains an Active
Directory Rights Management Services (AD RMS) cluster.
A partner company has an Active Directory forest named litwareinc.com. The partner company does not
have AD RMS deployed.
You need to ensure that users in litwareinc.com can consume rights-protected content from
adatum.com.
Which type of trust policy should you create?

You need to verily whether the replica of VMS on Server1 is functional

Your network contains two servers named Server1 and Server2 that run Windows Server 2012 R2.
Server1 and Server2 have the Hyper-V server role installed. Server1 and Server2 are configured as
Hyper-V replicas of each other.Server2 hosts a virtual machine named VM5. VM5 is replicated to Server1.
You need to verily whether the replica of VMS on Server1 is functional. The solution must ensure that
VMS remains accessible to clients.
What should you do from Hyper-V Manager?

Which command should you run?

Your network contains an Active Directory domain named contoso.com. The domain contains a file
server named File1 that runs a Server Core Installation of Windows Server 2012 R2.
File1 has a volume named D that contains home folders. File1 creates a shadow copy of volume D twice
a day.
You discover that volume D is almost full.
You add a new volume named H to File1.
You need to ensure that the shadow copies of volume D are stored on volume H.
Which command should you run?

What should you run on Server1?

Your network contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the
Active Directory Certificate Services server role installed and is configured as a standalone certification
authority (CA).
You install a second server named Server2. You install the Online Responder role service on Server2.You need to ensure that Server1 can issue an Online Certificate Status Protocol (OCSP) Response Signing
certificate to Server2.
What should you run on Server1?

Which three actions should you perform in sequence?

DRAG DROP
Your network contains an Active Directory domain named adatum.com. The domain contains three
servers. The servers are configured as shown in the following table.

Server1 is configured as shown in the exhibit. (Click the Exhibit button.)

Template1 contains custom cryptography settings that are required by the corporate security team.
On Server2, an administrator successfully installs a certificate based on Template1.The administrator reports that Template1 is not listed in the Certificate Enrollment wizard on Server3,
even after selecting the Show all templates check box.
You need to ensure that you can install a server authentication certificate on Server3. The certificate
must comply with the cryptography requirements.
Which three actions should you perform in sequence?
To answer, move the appropriate three actions from the list of actions to the answer area and arrange
them in the correct order.


Page 20 of 35« First...10...1819202122...30...Last »