PrepAway - Latest Free Exam Questions & Answers

Category: 70-640 (v.3)

Exam 70-640: TS: Windows Server 2008 Active Directory, Configuring (updated October 10th, 2013)

You need to ensure that the user can log on to the domain

Your company has a main officeand a branch office.
The branch officehas an Active Directory sitethat containsa read-only domain controller (RODC).
A user from the branch office reports that his account is locked out.
From a writable domain controller in the main office, you discover that the user’s account is not locked
out.
You need to ensure that the user can log on to the domain.
What should you do?

Which two actionsshould you perform?

Your network contains a single Active Directory domain.
The domain contains five read-only domain controllers (RODCs)and five writable domain controllers.
All serversrun Windows Server 2008.
You plan to install a new RODCthat runs Windows Server 2008 R2.
You need to ensure that you can add the new RODC to thedomain.
You want to achieve this goal by using the minimum amount of administrative effort.
Which two actionsshould you perform?
(Each correct answer presents part of the solution. Choose two.)

You need to ensure that App1 can use Server2 for authentication

Your network contains an Active Directory domainnamed contoso.com.
The domain contains a server named Server1.
Server1has the Active Directory Federation Services (AD FS) role installed.
You have an applicationnamed App1that is configured to use Server1 for AD FS authentication.
You deploya new servernamed Server2.
Server2is configured as an AD FS 2.0 server.
You need to ensure that App1 can use Server2 for authentication.
What should you do on Server2?

What should you create on Server1?

Your network contains an Active Directory domainnamed contoso.com.
The domain contains a servernamed Server1.
The Active Directory Federation Services (AD FS) role is installed on Server1.
Contoso.comis defined as an account store.
A partner companyhas a Web-based applicationthat uses AD FS authentication.
The partner company plans to provide users from contoso.com access to the Web application.
You need to configure AD FS on contoso.com to allow contoso.com users to be authenticated by the
partner company.
What should you create on Server1?

Which format should you useto export the certificate?

Your network contains two serversnamed Server1and Server2that run Windows Server 2008 R2.
Server1has the Active Directory Federation Services (AD FS) Federation Service role service installed.
You plan to deploy AD FS 2.0 on Server2.
You need to export the token-signing certificate from Server1, and then import the certificate to
Server2.
Which format should you useto export the certificate?

You need to add Server2 to the existing AD FS farm

Your network contains two serversnamed Server1and Server2that run Windows Server 2008 R2.
Server1has Active Directory Federation Services (AD FS) 2.0 installed.
Server1is a memberof an AD FS farm.
The AD FS farm is configured to use a configuration database that is stored on a separate Microsoft
SQL Server.
You install AD FS 2.0 on Server2.
You need to add Server2 to the existing AD FS farm.
What should you do?

Which cmdlet should you add to the script?

Your network containsan Active Directory forest.
You set the Windows PowerShell execution policyto allow unsigned scripts on a domain controller in
the network.
You create a Windows PowerShell scriptnamed new-users.ps1that contains the following lines:
new-aduser user1
new-aduser user2
new-aduser user3
new-aduser user4
new-aduser user5
On the domain controller, you double-click the script and the script runs.
You discover that the script fails to create the user accounts.
You need to ensure that the script creates the user accounts.
Which cmdlet should you add to the script?


Page 21 of 49« First...10...1920212223...3040...Last »