PrepAway - Latest Free Exam Questions & Answers

Category: 70-744 (v.1)

Exam 70-744: Securing Windows Server 2016 (update August 9th, 2017)

Which server role should you deploy?

Note: This question is part of a series of questions that use the same scenario. For your
convenience, the scenario is repeated in each question. Each question presents a different goal
and answer choices, but the text of the scenario is exactly the same in each question in this series.
Start of repeated scenario
Your network contains an Active Directory domain named contoso.com. The functional level of the
forest and the domain is Windows Server 2008 R2. The domain contains the servers configured as
shown in the following table.

All servers run Windows Server 2016. All client computers run Windows 10. You have an
organizational unit (OU) named Marketing that contains the computers in the marketing department.
You have an OU named Finance that contains the computers in the finance department. You have
an OU named AppServers that contains application servers. A Group Policy object (GPO) named
GP1 is linked to the Marketing OU. A GPO named GP2 is linked to the AppServers OU. You install
Windows Defender on Nano1.
End of repeated scenario
You need to ensure that you can deploy a shielded virtual machine to Server4. Which server role
should you deploy?

Which tool should you use?

Note: This question Is part of a series of questions that use the same or similar answer choices.
An answer choice may be correct for more than one question in the series. Each question is
Independent of the other questions in this series. Information and details provided in a question
apply only to that question. Your network contains an Active Directory domain named contoso.com.
The domain contains a server named Server1 that runs Windows Server 2016. Server1 has a
shared folder named Share1. You need to encrypt the contents of Share1. Which tool should you
use?

Which two actions should you perform?

Your network contains an Active Directory domain named conioso.com. The domain contains 1,000
client computers that run Windows 8.1 and 1,000 client computers that run Windows 10. You deploy
a Windows Server Update Services (WSUS) server. You create a computer group tor each
organizational unit (OU) that contains client computers. You configure all of the client computers to
receive updates from WSUS. You discover that all of the client computers appear m the
Unassigned Computers computer group in the Update Services console. You need to ensure that
the client computers are added automatically to the computer group that corresponds to the location
of the computer account in Active Directory. Which two actions should you perform? Each correct
answer presents part of the solution.

Which two actions should you perform?

Your network contains an Active Directory forest named contoso.com. The forest functional level

is Windows Server 2012. All servers run Windows Server 2016. You create a new bastion forest
named admin.contoso.com. The forest functional level of admin.contoso.com is Windows Server
2012 R2. You need to implement a Privileged Access Management (PAM) solution. Which two
actions should you perform? Each correct answer presents part of the solution.

Does this meet the goal?

Note: This question is part of a series of questions that present the same scenario. Each question
In the series contains a unique solution that might meet the stated goals. Some question sets might
have more than one correct solution, while others might not have a correct solution. After you
answer a question in this section, you will NOT be able to return to It. As a result, these questions
will not appear in the review screen. Your network contains an Active Directory forest named
contoso.com. All servers run Windows Server 2016. The forest contains 2,000 client computers
that run Windows 10. All client computers are deployed (rom a customized Windows image. You
need to deploy 10 Pnvileged Access Workstations (PAWs). The solution must ensure that
administrators can access several client applications used by all users. Solution: You deploy 10
physical computers and configure each wie as a virtualization host. You deploy the operating
system on each host by using the customized Windows image. On each host you create a guest
virtual machine and configure the virtual machine as a PAW. Does this meet the goal?

You need to export the SCM Pnnt Server Secunty baseline…

Hotspot Question
Your network contains an Active Directory domain named contoso.com. You have an
organizational unit (OU) named Secure that contains all servers. You install Microsoft Security
Compliance Manager (SCM) 4.0 on a server named Server1. You need to export the SCM Pnnt
Server Secunty baseline and to deploy the baseline to a server named Server2. What should you
do? To answer, select the appropnate options in the answer area.

Which tool should you use?

Note: This question is part of a series of question that use the same or similar answer choices. An
answer choice may be correct for more than one question in the series. Each question is
Independent of the other questions in this series. Information and details provided in a question
apply only to that question. Your network contains an Active Directory domain named contoso.com.
The domain contains a file server named Server1 that runs Windows Server 2016. Server1 has a
volume named Volume1. Dynamic Access Control is configured. A resource property named
Property1 was created in the domain. You need to ensure that Property1 is set to a value of Big for
all of the files in Volume1 that are larger than 10 MB. Which tool should you use?


Page 6 of 6« First...23456