You need to ensure that the password of User1 is no longer cached on RODC1
Your network contains an Active Directory domain named contoso.com.
The domain has a branch site that contains a read-only domain controller (RODC) named
RODC1.
A user named User1 is a member of the Allowed RODC Password Replication Group. User1
frequently logs on to a computer in the branchsite.
You remove User1 from the Allowed RODC Password Replication Group.
You need to ensure that the password of User1 is no longer cached on RODC1.
What should you do?
You need to configure the MS-AdamSyncConfig.xml file to synchronize data from contoso.com to fabrikam.com
HOTSPOT
Your network contains an Active Directory domain named contoso.com. The domain
contains a domain controller named DC1.
You install Active Directory Lightweight Directory Services (AD LDS) on a member server
named Server2. On Server2, you create a directory partition named fabrikam.com.
You need to configure the MS-AdamSyncConfig.xml file to synchronize data from
contoso.com to fabrikam.com.
What should you do? (To answer, select the appropriate options in the answer area.)
Which two tools should you use?
Your network contains 50 domain controllers that runs Windows Server 2008 R2.
You need to create a script that resets the Directory Services Restore Mode (DSRM)
password on all of the domain controllers. The solution must NOT maintain passwords in the
script.
Which two tools should you use? (Each correct answer presents part of the solution. Choose
two.)
identify the maximum amount of time required to replicate the record to each server.
HOTSPOT
Your network contains an Active Directory domain named contoso.com. All servers are
located in the same Active Directory site. The domain contains two domain controllers
named DC1 and DC2. Both domain controllers host an Active Directory-integrated zone for
contoso.com.
The Start of Authority (SOA) record of the contoso.com zone is shown in the exhibit. (Click
the Exhibit button.)
You have a member server named Server1. Server1 hosts a secondary zone of
contoso.com.
On DC1, you add a new record to the contoso.com zone.
In the table below, identify the maximum amount of time required to replicate the record to
each server. Make only one selection in each column.
You need to ensure a user is able to modify records in the nwtraders.com zone
Your network consists of an Active Directory forest that contains one domain named
contoso.com. All domain controllers run Windows Server 2008 R2 and are configured as
DNS servers. You have two Active Directory-integrated zones: contoso.com and
nwtraders.com.
You need to ensure a user is able to modify records in the nwtraders.com zone. The solution
must prevent the user from modifying the SOA record in the contoso.com zone.
What should you do?
complete each statement according to the information presented in the exhibit.
Which three actions should you perform in sequence?
DRAG DROP
Your network contains an Active Directory domain named contoso.com. The domain
contains three domain controllers named DC1, DC2 and DC3.
You need to create a zone named adatum.com that replicates between DC1 and DC2 only.
The zone data for adatum.com must be writable on both DC1 and DC2.
Which three actions should you perform in sequence? (To answer, move the appropriate
three actions from the list of actions to the answer area and arrange them in the correct
order.)
What command should you run?
HOTSPOT
Your network contains an Active Directory domain named contoso.com. All domain
controllers run Windows Server 2008 R2. The domain contains a domain controller named
DC1. DC1 hosts an Active Directory-integrated zone for contoso.com.
You enable record scavenging for contoso.com by using the default settings. You configure
scavenging to run every seven days.
After 30 days, you discover that some DNS records of computers that were removed from
the network are still present in the contoso.com zone.
You need to ensure that the scavenging process can remove the stale records.
What command should you run? (To answer, select the appropriate options in the answer
area.)
What should you configure on Server2?
Your network contains an Active Directory domain named contoso.com. The domain
contains two member servers named Server1 and Server2.
You configure Server1 as a standalone root certification authority (CA).
You identify the following requirements for the public key infrastructure (PKI):
The root CA must be offline once the PKI is deployed.
Users must be able to enroll for certificates automatically.
You need to configure Server2 to meet the PKI requirements.
What should you configure on Server2?
Server1 can communicate with the enterprise C
HOTSPOT
Your network contains an Active Directory forest named contoso.com.
The forest contains an enterprise certification authority (CA). The enterprise CA is
inaccessible from the internet.
You have a server named Server1 that runs Windows Server 2008 R2. Server1 is accessible
from the Internet. Server1 can communicate with the enterprise CA.
You need to ensure that laptops that are joined to the domain can renew their certificates
automatically from the Internet.
Which two role services should you install on Server1? (To answer, select the two
appropriate role services in the answer area.)