You need to meet the following requirements: All of the user settingsin the Group Policy objects (GPOs)…
Your network contains an Active Directory domainnamed contoso.com.
You have an organizational unit(OU) named Salesand an OUnamed Engineering.
Users in the Sates OU frequently log on to client computers in the Engineering OU.
You need to meet the following requirements:
All of the user settingsin the Group Policy objects (GPOs) linked to boththe Sales OUand the
Engineering OU must be applied to sales users when they log on to client computers in the
Engineering OU.
Only the policy settingsin the GPOs linked to the Sales OU must be applied to sales users when
they log on to client computers in the Sales OU.
Policy settingsin the GPOs linked to the Sales OU must not be applied to users in the Engineering
OU.
What should you do?
Which toolshould you use?
You have an Active Directory domainnamed contoso.com.
You need to view the account lockout threshold and duration for the domain.
Which toolshould you use?
You need to create a DNS zone that is available on DC1 and DC2
Your network contains an Active Directory forest.
The forest contains two domainsnamed contoso.comand east.contoso.com.
The contoso.comdomain contains a domain controllernamed DC1.
The east.contoso.comdomain contains a domain controllernamed DC2.
DC1 and DC2 have the DNS Server server role installed.
You need to create a DNS zone that is available on DC1 and DC2.
The solution must ensure that zone transfers are encrypted.
What should you do?
Which snap-inshould you use?
Your network contains an Active Directory domainnamed adatum.com.
All serversrun Windows Server 2008 R2.
The network contains an enterprise certification authority (CA).
You need to ensure that all of the members of a group named Managers can view the event log entries
for Certificate Services.
Which snap-inshould you use?
Which snap-inshould you use?
Your network contains an Active Directory domainnamed adatum.com.
All serversrun Windows Server 2008 R2 Enterprise.
All client computersrun Windows 7 Professional.
The network contains an enterprise certification authority (CA).
You need to approve a pending certificate request.
Which snap-inshould you use?
You need to ensure that the settings in the GPO are notprocessed by user accounts or computer accounts in the
Your network contains an Active Directory domainnamed contoso.com.
You have an organizational unit(OU) named Salesand an OUnamed Engineering.
You have aGroup Policy object(GPO) linked to the domain.
You need to ensure that the settings in the GPO are notprocessed by user accounts or computer
accounts in the Sales OU.
You must achieve this goal by using the minimum amount of administrative effort.
What should you do?
You need to ensure that the new zone is replicated to only four of the domain controllers
A corporate network includes a single Active Directory Domain Services (AD DS) domain.
The domain contains 10 domain controllers.
The domain controllersrun Windows Server 2008 R2and are configured as DNS servers.
You plan to create an Active Directory-integrated zone.
You need to ensure that the new zone is replicated to only four of the domain controllers.
What should you dofirst?
Which toolshould you use?
Your network contains an Active Directory forestnamed fabrikam.com.
The forestcontains the following domains:
Fabrikam.com
Eu.fabrikam.com
Na.fabrikam.com
Eu.contoso.com
Na.contoso.com
You need to configure the forest to ensure that the administrators of any of the domains can specify a
user principal name (UPN) suffix of contoso.com when they create user accounts from Active Directory
Users and Computers.
Which toolshould you use?
You need to determine which domain controller holds theInter-Site Topology Generator role for the Toronto site
A corporate network includes a single Active Directory Domain Services (AD DS) domainand two AD DS
sites.
The AD DS sitesare named Torontoand Montreal.
Each sitehas multiple domain controllers.
You need to determine which domain controller holds theInter-Site Topology Generator role for the
Toronto site.
What should you do?
Which toolshould you use?
Your network contains an Active Directory domain.
The domain contains five sites.
One of the sitescontains a read-only domain controller (RODC) named RODC1.
You need to identify which user accounts can have theirpassword cached on RODC1.
Which toolshould you use?