You need to ensure that RODC1 has a directory partition of contoso.com
Your network contains an Active Directory forest named contoso.com. The functional level of the forestis
Windows Server 2008 R2. The DNS zone for contoso.com is Active Directory-integrated.
You deploy a read-only domain controller (RODC) named RODC1.
You install the DNS Server server role on RODC1.
You discover that RODC1 does not have any application directory partitions.
You need to ensure that RODC1 has a directory partition of contoso.com.
What should you do?
Which tool should you use?
Your network contains an Active Directory forest named contoso.com.
You need to identify whether a fine-grained password policy is applied to a specific group.
Which tool should you use?
Which tool should you use?
Your network contains an Active Directory domain named contoso.com.
You need to create one password policy for administrators and another password policy for all other users.
Which tool should you use?
which group should you add the users?
Your network contains two Active Directory forests named contoso.com and fabrikam.com. Each forest
contains one domain. A two-way forest trust exists between the forests.
You plan to add users from fabrikam.com to groups in contoso.com.
You need to identify which group you must use to assign users in fabrikam.com access to the shared folders in
contoso.com.
To which group should you add the users?
Which tools should you use?
Your network contains an Active Directory domain. The domain contains 5,000 user accounts.
You need to disable all of the user accounts that have a description of Temp.
You must achieve this goal by using the minimum amount of administrative effort.
Which tools should you use? (Each correct answer presents part of the solution. Choose two.)
You need to ensure that access to the file shares onServer1 is audited
Your network contains an Active Directory domain. The domain contains two file servers. The file serversare
configured as shown in the following table.
You create a Group Policy object (GPO) named GPO1 and you link GPO1 to OU1.
You configure the advanced audit policy.
You discover that the settings are not applied to Server1. The settings are applied to Server2.
You need to ensure that access to the file shares onServer1 is audited.
What should you do?
You need to prevent the GPO from being applied to the members of Group1 only
Your network contains an Active Directory domain named contoso.com.
You have an organizational unit (OU) named Sales and an OU named Engineering. Each OU contains over 200
user accounts.
The Sales OU and the Engineering OU contain severaluser accounts that are members of a universal group
named Group1.
You have a Group Policy object (GPO) linked to the domain.
You need to prevent the GPO from being applied to the members of Group1 only.
What should you do?
You need to ensure that the settings in GPO1 supersede the settings in GPO2
Your network contains an Active Directory domain.
You have two Group Policy objects (GPOS) named GPO1and GPO2. GPO1 and GPO2 are linked to the
Finance organizational unit (OU) and contain multiple settings.
You discover that GPO2 has a setting that conflicts with a setting in GPO1. When the policies are applied, the
setting in GPO2 takes effect.
You need to ensure that the settings in GPO1 supersede the settings in GPO2. The solution must ensure that
all non-conflicting settings in both GPOs are applied.
What should you do?
You need to ensure that Server1 receives zone updates from DC1
You have a domain controller named DC1 that runs Windows Server 2008 R2. DC1 is configured as a DNS
server for contoso.com.
You install the DNS server server role on a member server named server1 and then you create a standard
secondary zone for contoso.com. You configure DC1 asthe master server for the zone.
You need to ensure that Server1 receives zone updates from DC1.
What should you do
Which tool should you use?
A corporate network includes an Active Directory-integrated zone. AIl DNS servers that host the zone are
domain controllers.
You add multiple DNS records to the zone.
You need to ensure that the new records are available on all DNS servers as soon as possible.
Which tool should you use?