PrepAway - Latest Free Exam Questions & Answers

Category: 70-640 (v.4)

Exam 70-640: TS: Windows Server 2008 Active Directory, Configuring (updated May 5th, 2015)

You need to configure DC2 as the only global catalog server in the forest

Your network contains an Active Directory forest named contoso.com. The forest contains a
single domain. The domain contains two domain controllers named DC1 and DC2 that run
Windows Server 2008 R2. DC1 is configured as a global catalog server.
You need to configure DC2 as the only global catalog server in the forest. The solution must
maintain DC1 in the domain. What should you do?

You need to apply desktop restrictions to the sales managers group

Your company has an Active Directory domain that has an organizational unit named Sales.
The Sales organizational unit contains two global security groups named sales managers
and sales executives.
You need to apply desktop restrictions to the sales managers group. You must not apply
these desktop restrictions to the sales executive group.
You create a GPO named DesktopLockdown and link it to the Sales organizational unit.
What should you do next?

You need to install the AD CS server role as an EnterpriseC

Your company has an Active Directory forest. You plan to install an Enterprise certification
authority (CA) on a dedicated stand-alone server.
When you attempt to add the Active Directory Certificate Services (AD CS) server role, you
find that the EnterpriseCA option is not available.
You need to install the AD CS server role as an EnterpriseCA.
What should you do first?

You need to resolve the issue that causes Applicationl to fail

Your network contains an Active Directory forest. The functional level of the forest is
Windows Server 2008 R2.
Your company’s corporate security policy states that the password for each user account
must be changed at least every 45 days.

You have a user account named Service 1. Servicel is used by a network application named
Application1.
Every 45 days, Applicationl fails.
After resetting the password for Servicel, Applicationl runs properly.
You need to resolve the issue that causes Applicationl to fail. The solution must adhere to
the corporate security policy.
What should you do?

You need to deploy certificates based on Version 1 templates to all of the computers in the domain

Your network contains an Active Directory domain named contoso.com.
The domain contains an enterprise certification authority (CA).
You need to deploy certificates based on Version 1 templates to all of the computers in the
domain. The solution must minimize administrative effort.
You create a Group Policy object (GPO) named GPOl and link the GPO to the domain.
What should you do next?

identify which toot you must use to replicate the record to each server.

HOTSPOT
Your network contains an Active Directory domain named contoso.com. The domain
contains two domain controllers named DC1 and DC2. Both domain controllers host an
Active Directory-integrated zone for contoso.com. Each domain controller is located in a
different city.
You have a member server named Serverl. Serverl hosts a stub zone for contoso.com.
On DC1, you add a name server (NS) record to the contoso.com zone.
In the table below, identify which toot you must use to replicate the record to each server.
Make only one selection in each column. Each correct selection is worth one point.

Which tool should you use?

Your network contains an Active Directory forest named contoso.com. The forest contains a
single domain and 10 domain controllers. All of the domain controllers run Windows Server
2008 R2 Service Pack 1 (SP1).
The forest contains an application directory partition named dc=app1,dc=contoso,dc=com. A
domain controller named DC1 has a copy of the application directory partition.
You need to configure a domain controller named DC2 to receive a copy of
dc=app1,dc=contoso,dc=com.
Which tool should you use?


Page 3 of 6212345...102030...Last »