You enable key archival on the C
Your network contains an Active Directory domain named adatum.com. All servers run
Windows Server 2008 R2 Enterprise. All client computers run Windows 7 Professional.
The network contains an enterprise certification authority (CA).
You enable key archival on the C
You need to ensure that the domain controllers can acquire new account-identifier pools successfully
Your network contains an Active Directory forest. The forest contains one domain named
contoso.com.
You discover the following event in the Event log of domain controllers: βThe request for a
new accountidentifier pool failed. The operation will be retried until the request succeeds.
The error is β %1 ββ
You need to ensure that the domain controllers can acquire new account-identifier pools
successfully.
What should you do?
You need to ensure that the stale DNS records are deleted from contoso.com
Your network contains an Active Directory domain named contoso.com. Contoso.com
contains two domain controllers named DC1 and DC2. DC1 and DC2 are configured as DNS
servers and host the Active Directoryintegrated zone for contoso.com.
From DNS Manager on DC1, you enable scavenging for the contoso.com zone.
You discover stale DNS records in the zone.
You need to ensure that the stale DNS records are deleted from contoso.com.
What should you do?
Which tool should you use?
A corporate network includes an Active Directory-integrated zone. AIl DNS servers that host
the zone are domain controllers.
You add multiple DNS records to the zone.
You need to ensure that the new records are available on all DNS servers as soon as
possible.
Which tool should you use?
You need to ensure that Server1 receives zone updates from DC1
You have a domain controller named DC1 that runs Windows Server 2008 R2. DC1 is
configured as a DNS server for contoso.com.
You install the DNS server server role on a member server named server1 and then you
create a standard secondary zone for contoso.com. You configure DC1 as the master server
for the zone.
You need to ensure that Server1 receives zone updates from DC1.
What should you do?
You need to ensure that the settings in GPO1 supersede the settings in GPO2
Your network contains an Active Directory domain.
You have two Group Policy objects (GPOS) named GPO1 and GPO2. GPO1 and GPO2 are
linked to theFinance organizational unit (OU) and contain multiple settings.
You discover that GPO2 has a setting that conflicts with a setting in GPO1. When the
policies are applied, the setting in GPO2 takes effect.
You need to ensure that the settings in GPO1 supersede the settings in GPO2. The solution
must ensure that all non-conflicting settings in both GPOs are applied.
What should you do?
You need to prevent the GPO from being applied to the members of Group1 only
Your network contains an Active Directory domain named contoso.com.
You have an organizational unit (OU) named Sales and an OU named Engineering. Each
OU contains over 200 user accounts.
The Sales OU and the Engineering OU contain several user accounts that are members of a
universal group named Group1.
You have a Group Policy object (GPO) linked to the domain.
You need to prevent the GPO from being applied to the members of Group1 only.
What should you do?
You need to ensure that access to the file shares on Server1 is audited
Your network contains an Active Directory domain. The domain contains two file servers.
The file servers are configured as shown in the following table.
You create a Group Policy object (GPO) named GPO1 and you link GPO1 to OU1.
You configure the advanced audit policy.
You discover that the settings are not applied to Server1. The settings are applied to
Server2.
You need to ensure that access to the file shares on Server1 is audited.
What should you do?
Which tools should you use?
Your network contains an Active Directory domain. The domain contains 5,000 user
accounts.
You need to disable all of the user accounts that have a description of Temp.
You must achieve this goal by using the minimum amount of administrative effort.
Which tools should you use? (Each correct answer presents part of the solution. Choose
two.)
which group should you add the users?
Your network contains two Active Directory forests named contoso.com and fabrikam.com.
Each forest contains one domain. A two-way forest trust exists between the forests.
You plan to add users from fabrikam.com to groups in contoso.com.
You need to identify which group you must use to assign users in fabrikam.com access to
the shared folders in contoso.com.
To which group should you add the users?