PrepAway - Latest Free Exam Questions & Answers

Category: 70-647 (v.2)

Exam 70-647: Pro: Windows Server 2008, Enterprise Administrator (update November 6th, 2015)

You need to modify the domain and forest functional levels to support the installation of the RODC

Your network consists of one Active Directory domain. All domain controllers run Windows Server
2003. The functional level of the forest is Windows 2000. The functional level of the domain is
Windows 2000 mixed. You install a domain controller that runs Windows Server 2008. You plan to
deploy a read-only domain controller (RODC). You need to modify the domain and forest functional
levels to support the installation of the RODC. What should you do?

You need to implement an update management solution for the new branch office to meet the following requiremen

Your Company has one main office and 100 branch offices. The network consists of one Active
Directory domain. All domain controllers run Windows Server 2008. The wide area network (WAN)
links from the branch offices to the main office are unreliable. A local administrator manages each
branch office. Your company plans to add a new branch office. You create a new organizational unit
(OU) that contains all the computer accounts for the new branch office. You configure a server in the
main office to test all new software updates. You install Microsoft Windows Server Update Services
(WSUS) 3.0. You need to implement an update management solution for the new branch office to
meet the following requirements:
• Only approved updates must be installed in the branch office.
• Client computers must be able to download updates if a WAN link fails.
• Each branch office administrator must be able to approve updates before installation.

You need to implement an authentication solution to meet the following requirements: Users in the ContosoSales

Your network consists of two Active Directory forests. The Active Directory forests are configured as
shown in the following table. (Click the Exhibit)

The servers in both forests run Windows Server 2008. A forest trust exists between the
fabrikam.com forest and the contoso.com forest. Fabrikam.com has a server named
server1.fabrikam.com. Contoso.com has a global group named ContosoSales. Users in the
ContosoSales global group access an application on server1.fabrikam.com. You discover that users
from other groups in the contoso.com domain can log on to servers in the fabrikam.com domain.
You need to implement an authentication solution to meet the following requirements:
Users in the ContosoSales global group must be able to access server1.fabrikam.com.
Users in the ContosoSales global group must be denied access to all other servers in the
fabrikam.com forest.
All other users in the contoso.com domain must be able to access only resources in the contoso.com
forest.
What should you do?

What should you include in your plan?

Your network consists of one Active Directory domain. All servers run Windows Server 2008.
You need to plan access restriction policies for the network. The plan must support the following
restrictions:
Only computers that run Windows Vista must be able to access the network.
Only computers that have Windows Firewall enabled must be able to access the network.
What should you include in your plan?

You need to migrate the Fabrikam domain resources to the Contoso forest

You are the enterprise administrator for a company named Contoso, Ltd. Contoso acquires a
company named Fabnkam, Inc. Contoso and Fabrikam each have one Active Directory forest that
contains two domains. All domain controllers run Windows Server 2008. You need to migrate the
Fabrikam domain resources to the Contoso forest. What should you do?

What should you recommend?

Your network consists of one Active Directory domain. The domain contains servers that run
Windows Server 2008. The relevant servers are configured as shown in the following table. (Click the
Exhibit)

You install an application named Application1 on Server3. User-specific settings for the application
are stored in a configuration file named Application1.ini. When multiple users run Application1
concurrently, Application1.ini is overwritten and the application fails. You need to recommend a
solution that enables users to successfully run Application1 on Server3. What should you
recommend?

You need to ensure that remote users can connect to the file servers

Your network is connected to the Internet through a firewall. Remote users connect to Microsoft
Windows SharePoint Services (WSS) located on the internal network by using HTTPS. Users require
access to file servers located on the internal network. You need to ensure that remote users can
connect to the file servers. The solution must not require that any additional TCP ports be opened on
the firewall. What should you do?

You need to link the new GPOs to meet the following requirements: • All users must have access to a USB prin

Your network consists of one Active directory domain. The functional level of the domain is Windows
Server 2008. The domain is configured as shown in the exhibit. (Click the Exhibit button.)
You create four Group Policy objects (GPOs) as shown in the following table. (Click the Exhibit)
You need to link the new GPOs to meet the following requirements:
• All users must have access to a USB printer device.
• All users except the department managers must be denied access to USB flash drives.
• Both department managers must have access to USB flash drives and a USB printer device.
• Only users in the sales department must have the custom database application installed.
• Only users in the engineering department must have the line-of-business application installed.
You must achieve this goal by using the minimum amount of administrative effort.
What should you do?


Page 11 of 34« First...910111213...2030...Last »