PrepAway - Latest Free Exam Questions & Answers

Category: 70-744 (v.1)

Exam 70-744: Securing Windows Server 2016 (update August 9th, 2017)

Does this meet the goal?

Note: This question is part of a series of questions that present the same scenario. Each
question in the series contains a unique solution that might meet the stated goals. Some
question sets might have more than one correct solution, while others might not have a
correct solution. After you answer a question In this section, you will NOT be able to return
to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory forest named contoso.com. All servers run Windows
Server 2016. The forest contains 2,000 client computers that run Windows 10. All client computers
are deployed from a customized Windows image. You need to deploy 10 Privileged Access
Workstations (PAWs). The solution must ensure that administrators can access several client
applications used by all users.
Solution: You deploy one physical computer and configure it as a Hyper-V host that runs Windows
Server 2016. You create 10 virtual machines and configure each one as a PAW.
Does this meet the goal?

Solution: …… Does this meet the goat?

Note: This question is part of a series of questions that present the same scenario. Each
question in the series contains a unique solution that might meet the stated goals. Some
question sets might have more than one correct solution, while others might not have a
correct solution. After you answer a question In this section, you will NOT be able to return

to it. As a result, these questions will not appear in the review screen.
Yout network contains an Active Directory domain named contoso.com. The domain contains a
computer named Computer1 that runs Windows 10. Computer1 connects to a home network and
a corporate network. The corporate network uses the 172.16.0.0/24 address space internally.
Computer1 runs an application named App1 that listens to port 8080. You need to prevent
connections to App1 when Computer1 is connected to the home network.
Solution: ……
Does this meet the goat?

You need to ensure that a user named Used can perform t…

Your network contains an Active Directory domain named contoso.com. You install the Windows
Server Update Services server role on a member server named Server1. Server1 runs Windows
Server 2016. You need to ensure that a user named Used can perform the following tasks:
– View the Windows Server Update Services (WSUS) configuration.
– Generate WSUS update reports.
The solution must use the principle of least privilege. What should you do on Server1?

Does this meet the goat?

Note: This question is part of a series of questions that present the same scenario. Each
question in the series contains a unique solution that might meet the stated goals. Some
question sets might have more than one correct solution, while others might not have a
correct solution. After you answer a question in this section, you will NOT be able to return
to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contoso.com. All servers run Windows
Server 2016. All client computers run Windows 10. The relevant objects in the domain are
configured as shown in the following table.

You need to assign User1 the right to restore files and folders on Server1 and Server2.
Solution: You create a Group Policy object (GPO), you link the GPO to the Servers OU, and then
you modify the Users Rights Assignment in the GPO.
Does this meet the goat?

Which tool should you use?

Note: This question is part of a series of questions that use the same or similar answer
choices. An answer choice may be correct for more than one question in the series. Each
question is independent of the other questions in this series. Information and details
provided in a question apply only to that question.
Your network contains an Active Directory domain named contoso.com. The domain contains a
server named Server1 that runs Windows Server 2016. Server1 has a volume named Volume1. A
central access policy named Policyl is deployed to the domain. You need to apply Policyl to
Volume1. Which tool should you use?

Does this meet the goal?

Note: This question is part of a scries of questions that present the same scenario. Each
question in the series contains a unique solution that might meet the stated goals. Some
question sets might have more than one correct solution, while others might not have a
correct solution. After you answer a question in this section, you will NOT be able to return
to it. As a result, these questions will not appear In the review screen.
Your network contains an Active Directory domain named contoso.com. The domain contains
mulbple Hyper-V hosts. You need to deploy several critical line-of-business applications to the
network; to meet the following requirements:
– The resources of the applications must be isolated from the physical
host.
– Each application must be prevented from accessing the resources of the
other applications.
– The configurations of the applications must be accessible only from the
operating system that hosts the application.
Solution: You deploy a separate Windows container for each application.
Does this meet the goal?

Does this meet the goal?

Note: This question is part of a series of questions that present the same scenario. Each
question in the series contains a unique solution that might meet the stated goals. Some
question sets might have more than one correct solution, while others might not have a
correct solution. After you answer a question in this section, you will NOT be able to return
to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contow.com. All servers run Windows

Server 2016. All client computers run Windows 10. The relevant objects in the domain are
configured as shown in the following table.

You need to assign User1 the right to restore files and folders on Server1 and Server2.
Solution: You create a Group Policy object (GPO), link it to the Operations Users OU, and modify
the Users Rights Assignment in the GPO.
Does this meet the goal?

You need to configure Server22 as a Host Guardian Servi…

Your network contains an Active Directory forest named contoso.com. The forest functional level
is Windows Server 2012. The forest contains a single domain. The domain contains multiple HyperV hosts. You plan to deploy guarded hosts. You deploy a new server named Server22 to a
workgroup. You need to configure Server22 as a Host Guardian Service server. What should you
do before you initialize the Host Guardian Service on Server22?

Which tool should you use?

Note: This question is part of a series of questions that use the same or simitar answer

choices. An answer choice may be correct for more than one question in the series. Each
question is independent of the other questions in this series. Information and details
provided in a question apply only to that question.
Your network contains an Active Directory domain named contoso.com. The domain contains a
server named Server1 that runs Windows Server 2016. Server1 has a shared folder named Share1.
You need to ensure that all access to Share1 uses SMB Encryption. Which tool should you use?


Page 3 of 612345...Last »