You discover that GPO2 has a setting that con?icts with a setting in GPO1
Your network contains an Active Directory domain.
You have two Group Policy objects (GPOS) named GPO1 and GPO2. GPO1 and GPO2 are linked to the Finance organizational unit (OU) and contain multiple settings.
You discover that GPO2 has a setting that con?icts with a setting in GPO1. When the policies are applied, the setting in GPO2 takes effect.
You need to ensure that the settings in GPO1 supersede the settings in GPO2. The solution must ensure that all non-con?icting settings in both GPOs are applied.
What should you do?
You need to prevent the GPO from being applied to the members of Group1 only
Your network contains an Active Directory domain named contoso.com.
You have an organizational unit (OU) named Sales and an OU named Engineering. Each OU contains over 200 user accounts.
The Sales OU and the Engineering OU contain several user accounts that are members of a universal group named Group1.
You have a Group Policy object (GPO) linked to the domain.
You need to prevent the GPO from being applied to the members of Group1 only.
What should you do?
The domain contains two ?le servers
Your network contains an Active Directory domain. The domain contains two ?le servers. The ?le servers are con?gured as shown in the following table.
You create a Group Policy object (GPO) named GPO1 and you link GPO1 to OU1.
You con?gure the advanced audit policy.
You discover that the settings are not applied to Server1. The settings are applied to Server2.
You need to ensure that access to the ?le shares on Server1 is audited.
What should you do?
Which tools should you use? (Each correct answer presents part of the solution
Your network contains an Active Directory domain. The domain contains 5,000 user accounts.
You need to disable all of the user accounts that have a description of Temp.
You must achieve this goal by using the minimum amount of administrative effort.
Which tools should you use? (Each correct answer presents part of the solution. Choose two.)
To which group should you add the users?
Your network contains two Active Directory forests named contoso.com and fabrikam.com. Each forest contains one domain. A two-way forest trust exists between the forests.
You plan to add users from fabrikam.com to groups in contoso.com.
You need to identify which group you must use to assign users in fabrikam.com access to the shared folders in contoso.com.
To which group should you add the users?
Which tool should you use?
Your network contains an Active Directory domain named contoso.com.
You need to create one password policy for administrators and another password policy for all other users.
Which tool should you use?
Which tool should you use?
Your network contains an Active Directory forest named contoso.com.
You need to identify whether a fine-grained password policy is applied to a specific group.
Which tool should you use?
You need to ensure that RODC1 has a copy of the DNS application directory partition of contoso
Your network contains an Active Directory forest named contoso.com. The functional level of the forest is Windows Server 2008 R2.
The DNS zone for contoso.com is Active Directory-integrated.
You deploy a read-only domain controller (RODC) named RODC1.
You install the DNS Server server role on RODC1.
You discover that RODC1 does not have any application directory partitions.
You need to ensure that RODC1 has a copy of the DNS application directory partition of contoso.com.
What should you do?
You need to ensure that the client computers can synchronize their clocks properly
Your network contains an Active Directory forest. The forest contains one domain named contoso.com.
You discover the following event in the Event log of client computers: “The time provider NtpClient was unable to find a domain controller to use as a time source. NtpClient will try again in %1 minutes.”
You need to ensure that the client computers can synchronize their clocks properly.
What should you do?
You need to run adprep /domainprep successfully
Your network contains an Active Directory forest. The forest contains one domain named contoso.com.
You attempt to run adprep /domainprep and the operation fails.
You discover that the first domain controller deployed to the forest failed.
You need to run adprep /domainprep successfully.
What should you do?