What should you include in the recommendation?
Testlet: Litware, Inc
You need to recommend a VPN solution for the new sales office. The solution must support the company’s
planned changes.
What should you include in the recommendation?\r\n
COMPANY OVERVIEW
Litware, Inc. is a manufacturing company that has amain office and two branch office.
The main office is located in Montreal. The branch offices are located in Seattle and New York.
The main office has 4,000 users. The branch officeseach have 500 users.
PLANNED CHANGES
Litware plans to open a new sales office. The salesoffice will have a direct connection to the Internet. The
sales office will have a single server.
The sales office requires a connection to the Montreal office. The connection to the Montreal office must
use either TCP port 80 or TCP port 443.
The network currently contains a Fibre Channel Storage Area Network (SAN). A new iSCSI SAN will be
implemented during the next month. The current SAN and the new SAN are from different manufacturers.
Both SANs use a virtual disk service (VDS) interface.
EXISTING ENVIRONMENT
All servers run Windows Server 2008 R2. All client computers run Windows 7 Enterprise.
The main office has a single DHCP server. The IP addresses for all of the client computers must be
assigned from the DHCP server.
All software is installed from a central software distribution point in the main office. Software deployments
for the branch offices frequently fail due to bandwidth limitations.
Existing Active Directory/Directory Services
The network contains a single Active Directory domain named litwareinc.com. Each office has two domain
controllers.
Current Administration Model
Currently, all help desk users have full administrator rights to the servers. The help desk users use Remote
Desktop to log on to the servers and perform tasks such as managing Active Directory user accounts and
creating DHCP reservations.
TECHNICAL REQUIREMENTS
Windows Firewall must be managed by using the minimum amount of administrative effort. Windows
Firewall configurations must be duplicated easily between servers that have the same server role.
Litware must centralize the monitoring of critical system events. The monitoring solution must use the
existing infrastructure.
Litware plans to prevent help desk users from interactively logging on to servers. Help desk users must not
have full administrator rights to the servers.
The software deployment process must be updated to meet the following requirements:
Application source files must be centrally managed.
Software deployments to the offices in Seattle and New York must remain unaffected if a WAN link fails.
The SANs must be administered by using a single tool.
What should you include in the recommendation?
Testlet: Litware, Inc
You need to recommend a solution for managing all of the servers. The solution must meet the company’s
technical requirements.
What should you include in the recommendation?\r\n
COMPANY OVERVIEW
Litware, Inc. is a manufacturing company that has amain office and two branch office.
The main office is located in Montreal. The branch offices are located in Seattle and New York.
The main office has 4,000 users. The branch officeseach have 500 users.
PLANNED CHANGES
Litware plans to open a new sales office. The salesoffice will have a direct connection to the Internet. The
sales office will have a single server.
The sales office requires a connection to the Montreal office. The connection to the Montreal office must
use either TCP port 80 or TCP port 443.
The network currently contains a Fibre Channel Storage Area Network (SAN). A new iSCSI SAN will be
implemented during the next month. The current SAN and the new SAN are from different manufacturers.
Both SANs use a virtual disk service (VDS) interface.
EXISTING ENVIRONMENT
All servers run Windows Server 2008 R2. All client computers run Windows 7 Enterprise.
The main office has a single DHCP server. The IP addresses for all of the client computers must be
assigned from the DHCP server.
All software is installed from a central software distribution point in the main office. Software deployments
for the branch offices frequently fail due to bandwidth limitations.
Existing Active Directory/Directory Services
The network contains a single Active Directory domain named litwareinc.com. Each office has two domain
controllers.
Current Administration Model
Currently, all help desk users have full administrator rights to the servers. The help desk users use Remote
Desktop to log on to the servers and perform tasks such as managing Active Directory user accounts and
creating DHCP reservations.
TECHNICAL REQUIREMENTS
Windows Firewall must be managed by using the minimum amount of administrative effort. Windows
Firewall configurations must be duplicated easily between servers that have the same server role.
Litware must centralize the monitoring of critical system events. The monitoring solution must use the
existing infrastructure.
Litware plans to prevent help desk users from interactively logging on to servers. Help desk users must not
have full administrator rights to the servers.
The software deployment process must be updated to meet the following requirements:
Application source files must be centrally managed.
Software deployments to the offices in Seattle and New York must remain unaffected if a WAN link fails.
The SANs must be administered by using a single tool.
What should you recommend implementing in the new sales office?
Testlet: Litware, Inc
You need to recommend an IP addressing strategy forthe client computers in the new sales office.
What should you recommend implementing in the new sales office?\r\n
COMPANY OVERVIEW
Litware, Inc. is a manufacturing company that has amain office and two branch office.
The main office is located in Montreal. The branch offices are located in Seattle and New York.
The main office has 4,000 users. The branch officeseach have 500 users.
PLANNED CHANGES
Litware plans to open a new sales office. The salesoffice will have a direct connection to the Internet. The
sales office will have a single server.
The sales office requires a connection to the Montreal office. The connection to the Montreal office must
use either TCP port 80 or TCP port 443.
The network currently contains a Fibre Channel Storage Area Network (SAN). A new iSCSI SAN will be
implemented during the next month. The current SAN and the new SAN are from different manufacturers.
Both SANs use a virtual disk service (VDS) interface.
EXISTING ENVIRONMENT
All servers run Windows Server 2008 R2. All client computers run Windows 7 Enterprise.
The main office has a single DHCP server. The IP addresses for all of the client computers must be
assigned from the DHCP server.
All software is installed from a central software distribution point in the main office. Software deployments
for the branch offices frequently fail due to bandwidth limitations.
Existing Active Directory/Directory Services
The network contains a single Active Directory domain named litwareinc.com. Each office has two domain
controllers.
Current Administration Model
Currently, all help desk users have full administrator rights to the servers. The help desk users use Remote
Desktop to log on to the servers and perform tasks such as managing Active Directory user accounts and
creating DHCP reservations.
TECHNICAL REQUIREMENTS
Windows Firewall must be managed by using the minimum amount of administrative effort. Windows
Firewall configurations must be duplicated easily between servers that have the same server role.
Litware must centralize the monitoring of critical system events. The monitoring solution must use the
existing infrastructure.
Litware plans to prevent help desk users from interactively logging on to servers. Help desk users must not
have full administrator rights to the servers.
The software deployment process must be updated to meet the following requirements:
Application source files must be centrally managed.
Software deployments to the offices in Seattle and New York must remain unaffected if a WAN link fails.
The SANs must be administered by using a single tool.
What should you include in the recommendation?
Testlet: Litware, Inc
You need to recommend a process for monitoring the servers. The process must meet the company’s technical
requirements.
What should you include in the recommendation?\r\n
COMPANY OVERVIEW
Litware, Inc. is a manufacturing company that has amain office and two branch office.
The main office is located in Montreal. The branch offices are located in Seattle and New York.
The main office has 4,000 users. The branch officeseach have 500 users.
PLANNED CHANGES
Litware plans to open a new sales office. The salesoffice will have a direct connection to the Internet. The
sales office will have a single server.
The sales office requires a connection to the Montreal office. The connection to the Montreal office must
use either TCP port 80 or TCP port 443.
The network currently contains a Fibre Channel Storage Area Network (SAN). A new iSCSI SAN will be
implemented during the next month. The current SAN and the new SAN are from different manufacturers.
Both SANs use a virtual disk service (VDS) interface.
EXISTING ENVIRONMENT
All servers run Windows Server 2008 R2. All client computers run Windows 7 Enterprise.
The main office has a single DHCP server. The IP addresses for all of the client computers must be
assigned from the DHCP server.
All software is installed from a central software distribution point in the main office. Software deployments
for the branch offices frequently fail due to bandwidth limitations.
Existing Active Directory/Directory Services
The network contains a single Active Directory domain named litwareinc.com. Each office has two domain
controllers.
Current Administration Model
Currently, all help desk users have full administrator rights to the servers. The help desk users use Remote
Desktop to log on to the servers and perform tasks such as managing Active Directory user accounts and
creating DHCP reservations.
TECHNICAL REQUIREMENTS
Windows Firewall must be managed by using the minimum amount of administrative effort. Windows
Firewall configurations must be duplicated easily between servers that have the same server role.
Litware must centralize the monitoring of critical system events. The monitoring solution must use the
existing infrastructure.
Litware plans to prevent help desk users from interactively logging on to servers. Help desk users must not
have full administrator rights to the servers.
The software deployment process must be updated to meet the following requirements:
Application source files must be centrally managed.
Software deployments to the offices in Seattle and New York must remain unaffected if a WAN link fails.
The SANs must be administered by using a single tool.
What should you include in the recommendation?
Testlet: Litware, Inc
You need to recommend a strategy for managing Windows Firewall that meets the company’s technical
requirements.
What should you include in the recommendation?\r\n
COMPANY OVERVIEW
Litware, Inc. is a manufacturing company that has amain office and two branch office.
The main office is located in Montreal. The branch offices are located in Seattle and New York.
The main office has 4,000 users. The branch officeseach have 500 users.
PLANNED CHANGES
Litware plans to open a new sales office. The salesoffice will have a direct connection to the Internet. The
sales office will have a single server.
The sales office requires a connection to the Montreal office. The connection to the Montreal office must
use either TCP port 80 or TCP port 443.
The network currently contains a Fibre Channel Storage Area Network (SAN). A new iSCSI SAN will be
implemented during the next month. The current SAN and the new SAN are from different manufacturers.
Both SANs use a virtual disk service (VDS) interface.
EXISTING ENVIRONMENT
All servers run Windows Server 2008 R2. All client computers run Windows 7 Enterprise.
The main office has a single DHCP server. The IP addresses for all of the client computers must be
assigned from the DHCP server.
All software is installed from a central software distribution point in the main office. Software deployments
for the branch offices frequently fail due to bandwidth limitations.
Existing Active Directory/Directory Services
The network contains a single Active Directory domain named litwareinc.com. Each office has two domain
controllers.
Current Administration Model
Currently, all help desk users have full administrator rights to the servers. The help desk users use Remote
Desktop to log on to the servers and perform tasks such as managing Active Directory user accounts and
creating DHCP reservations.
TECHNICAL REQUIREMENTS
Windows Firewall must be managed by using the minimum amount of administrative effort. Windows
Firewall configurations must be duplicated easily between servers that have the same server role.
Litware must centralize the monitoring of critical system events. The monitoring solution must use the
existing infrastructure.
Litware plans to prevent help desk users from interactively logging on to servers. Help desk users must not
have full administrator rights to the servers.
The software deployment process must be updated to meet the following requirements:
Application source files must be centrally managed.
Software deployments to the offices in Seattle and New York must remain unaffected if a WAN link fails.
The SANs must be administered by using a single tool.
Which GPO or GPOs should you modify?
Testlet: Fabrikam Inc
You need to configure Internet Explorer to meet thecompany’s technical requirements.
Which GPO or GPOs should you modify?\r\n
COMPANY OVERVIEW
Fabrikam Inc. is a manufacturing company that has amain office and a branch office.
PLANNED CHANGES
You plan to deploy a failover cluster named Cluster1 in the branch office. Cluster1 will be configuredto meet
the following requirements:
The cluster will host eight virtual machines (VMs).
The cluster will consist of two nodes named Node1 and Node2.
The quorum mode for the cluster will be set to Nodeand Disk Majority.
A user named Admin1 will configure the virtual switch configuration of the VMs.
The cluster nodes will use shared storage on an iSCSI Storage Area Network (SAN).
You plan to configure a VM named File2 as a file server. Users will store confidential files on File2.
You plan to deploy a Microsoft Forefront Threat Management Gateway (TMG) server in each site. The
Forefront TMG server will be configured as a Web proxy.
EXISTING ENVIRONMENT
The research department is located in the branch office. Research users frequently travel to the main office.
Existing Active Directory/Directory Services
The network contains a single-domain Active Directory forest named fabrikam.com. The functional level of
the forest is Windows Server 2008.
The relevant organizational units (OUs) for the domain are configured as shown in the following table.
The relevant sites for the network are configured shown in the following table.
The relevant group policy objects (GPOs) are configured as shown in the following table.
Existing Network Infrastructure
All users run windows server 2008 R2. The relevant servers are configured as shown in following table.
WSUS2 is configured as a downstream replica server.
File1 contains a share named Templates. Users access the Templates share by using the path \\fabrikam.
com\dfs\templates.
File1 has the Distributed File System (DFS) Replication role service and the DFS Namespaces role service
installed.
TECHNICAL REQUIREMENTS
Fabrikam must meet the following requirements:
Minimize the cost of IT purchases.
Minimize the potential attack surface on the servers.
Minimize the number of rights assigned to administrators.
Minimize the number of updates that must be installed on the servers.
Ensure that Internet Explorer uses the local ForeFront TMG server to connect to the Internet.
Ensure that all client computers continue to receive updates from WSUS if a WSUS server fails.
Prevent unauthorized users from accessing the data stored on the VMs by making offline copies of the
VM files.
Fabrikam must meet the following requirements for the Templates share:
Ensure that users access the files in the Templatesshare from a server in their local site.
Ensure that users always use the same UNC path to access the Templates share, regardless of the site
in which the users are located.
Which number should you recommend?
Testlet: Fabrikam Inc
You need to recommend the minimum number of logicalunit numbers (LUNs) that must be provisioned for
Cluster1. The recommendation must support the company’s planned changes.
Which number should you recommend?\r\n
COMPANY OVERVIEW
Fabrikam Inc. is a manufacturing company that has amain office and a branch office.
PLANNED CHANGES
You plan to deploy a failover cluster named Cluster1 in the branch office. Cluster1 will be configuredto meet
the following requirements:
The cluster will host eight virtual machines (VMs).
The cluster will consist of two nodes named Node1 and Node2.
The quorum mode for the cluster will be set to Nodeand Disk Majority.
A user named Admin1 will configure the virtual switch configuration of the VMs.
The cluster nodes will use shared storage on an iSCSI Storage Area Network (SAN).
You plan to configure a VM named File2 as a file server. Users will store confidential files on File2.
You plan to deploy a Microsoft Forefront Threat Management Gateway (TMG) server in each site. The
Forefront TMG server will be configured as a Web proxy.
EXISTING ENVIRONMENT
The research department is located in the branch office. Research users frequently travel to the main office.
Existing Active Directory/Directory Services
The network contains a single-domain Active Directory forest named fabrikam.com. The functional level of
the forest is Windows Server 2008.
The relevant organizational units (OUs) for the domain are configured as shown in the following table.
The relevant sites for the network are configured shown in the following table.
The relevant group policy objects (GPOs) are configured as shown in the following table.
Existing Network Infrastructure
All users run windows server 2008 R2. The relevant servers are configured as shown in following table.
WSUS2 is configured as a downstream replica server.
File1 contains a share named Templates. Users access the Templates share by using the path \\fabrikam.
com\dfs\templates.
File1 has the Distributed File System (DFS) Replication role service and the DFS Namespaces role service
installed.
TECHNICAL REQUIREMENTS
Fabrikam must meet the following requirements:
Minimize the cost of IT purchases.
Minimize the potential attack surface on the servers.
Minimize the number of rights assigned to administrators.
Minimize the number of updates that must be installed on the servers.
Ensure that Internet Explorer uses the local ForeFront TMG server to connect to the Internet.
Ensure that all client computers continue to receive updates from WSUS if a WSUS server fails.
Prevent unauthorized users from accessing the data stored on the VMs by making offline copies of the
VM files.
Fabrikam must meet the following requirements for the Templates share:
Ensure that users access the files in the Templatesshare from a server in their local site.
Ensure that users always use the same UNC path to access the Templates share, regardless of the site
in which the users are located.
What should you include in the recommendation?
Testlet: Fabrikam Inc
You need to recommend a strategy for delegating administrative rights to Admin1. The strategy must support
the company’s planned changes.
What should you include in the recommendation?\r\n
COMPANY OVERVIEW
Fabrikam Inc. is a manufacturing company that has amain office and a branch office.
PLANNED CHANGES
You plan to deploy a failover cluster named Cluster1 in the branch office. Cluster1 will be configuredto meet
the following requirements:
The cluster will host eight virtual machines (VMs).
The cluster will consist of two nodes named Node1 and Node2.
The quorum mode for the cluster will be set to Nodeand Disk Majority.
A user named Admin1 will configure the virtual switch configuration of the VMs.
The cluster nodes will use shared storage on an iSCSI Storage Area Network (SAN).
You plan to configure a VM named File2 as a file server. Users will store confidential files on File2.
You plan to deploy a Microsoft Forefront Threat Management Gateway (TMG) server in each site. The
Forefront TMG server will be configured as a Web proxy.
EXISTING ENVIRONMENT
The research department is located in the branch office. Research users frequently travel to the main office.
Existing Active Directory/Directory Services
The network contains a single-domain Active Directory forest named fabrikam.com. The functional level of
the forest is Windows Server 2008.
The relevant organizational units (OUs) for the domain are configured as shown in the following table.
The relevant sites for the network are configured shown in the following table.
The relevant group policy objects (GPOs) are configured as shown in the following table.
Existing Network Infrastructure
All users run windows server 2008 R2. The relevant servers are configured as shown in following table.
WSUS2 is configured as a downstream replica server.
File1 contains a share named Templates. Users access the Templates share by using the path \\fabrikam.
com\dfs\templates.
File1 has the Distributed File System (DFS) Replication role service and the DFS Namespaces role service
installed.
TECHNICAL REQUIREMENTS
Fabrikam must meet the following requirements:
Minimize the cost of IT purchases.
Minimize the potential attack surface on the servers.
Minimize the number of rights assigned to administrators.
Minimize the number of updates that must be installed on the servers.
Ensure that Internet Explorer uses the local ForeFront TMG server to connect to the Internet.
Ensure that all client computers continue to receive updates from WSUS if a WSUS server fails.
Prevent unauthorized users from accessing the data stored on the VMs by making offline copies of the
VM files.
Fabrikam must meet the following requirements for the Templates share:
Ensure that users access the files in the Templatesshare from a server in their local site.
Ensure that users always use the same UNC path to access the Templates share, regardless of the site
in which the users are located.
You need to configure Windows Update to meet the company’s technical requirements
Testlet: Fabrikam Inc
You need to configure Windows Update to meet the company’s technical requirements.
What should you do?\r\n
COMPANY OVERVIEW
Fabrikam Inc. is a manufacturing company that has amain office and a branch office.
PLANNED CHANGES
You plan to deploy a failover cluster named Cluster1 in the branch office. Cluster1 will be configuredto meet
the following requirements:
The cluster will host eight virtual machines (VMs).
The cluster will consist of two nodes named Node1 and Node2.
The quorum mode for the cluster will be set to Nodeand Disk Majority.
A user named Admin1 will configure the virtual switch configuration of the VMs.
The cluster nodes will use shared storage on an iSCSI Storage Area Network (SAN).
You plan to configure a VM named File2 as a file server. Users will store confidential files on File2.
You plan to deploy a Microsoft Forefront Threat Management Gateway (TMG) server in each site. The
Forefront TMG server will be configured as a Web proxy.
EXISTING ENVIRONMENT
The research department is located in the branch office. Research users frequently travel to the main office.
Existing Active Directory/Directory Services
The network contains a single-domain Active Directory forest named fabrikam.com. The functional level of
the forest is Windows Server 2008.
The relevant organizational units (OUs) for the domain are configured as shown in the following table.
The relevant sites for the network are configured shown in the following table.
The relevant group policy objects (GPOs) are configured as shown in the following table.
Existing Network Infrastructure
All users run windows server 2008 R2. The relevant servers are configured as shown in following table.
WSUS2 is configured as a downstream replica server.
File1 contains a share named Templates. Users access the Templates share by using the path \\fabrikam.
com\dfs\templates.
File1 has the Distributed File System (DFS) Replication role service and the DFS Namespaces role service
installed.
TECHNICAL REQUIREMENTS
Fabrikam must meet the following requirements:
Minimize the cost of IT purchases.
Minimize the potential attack surface on the servers.
Minimize the number of rights assigned to administrators.
Minimize the number of updates that must be installed on the servers.
Ensure that Internet Explorer uses the local ForeFront TMG server to connect to the Internet.
Ensure that all client computers continue to receive updates from WSUS if a WSUS server fails.
Prevent unauthorized users from accessing the data stored on the VMs by making offline copies of the
VM files.
Fabrikam must meet the following requirements for the Templates share:
Ensure that users access the files in the Templatesshare from a server in their local site.
Ensure that users always use the same UNC path to access the Templates share, regardless of the site
in which the users are located.
You need to protect the confidential data files on File2 against unauthorized offline access
Testlet: Fabrikam Inc
You need to protect the confidential data files on File2 against unauthorized offline access.
What should you use?\r\n
COMPANY OVERVIEW
Fabrikam Inc. is a manufacturing company that has amain office and a branch office.
PLANNED CHANGES
You plan to deploy a failover cluster named Cluster1 in the branch office. Cluster1 will be configuredto meet
the following requirements:
The cluster will host eight virtual machines (VMs).
The cluster will consist of two nodes named Node1 and Node2.
The quorum mode for the cluster will be set to Nodeand Disk Majority.
A user named Admin1 will configure the virtual switch configuration of the VMs.
The cluster nodes will use shared storage on an iSCSI Storage Area Network (SAN).
You plan to configure a VM named File2 as a file server. Users will store confidential files on File2.
You plan to deploy a Microsoft Forefront Threat Management Gateway (TMG) server in each site. The
Forefront TMG server will be configured as a Web proxy.
EXISTING ENVIRONMENT
The research department is located in the branch office. Research users frequently travel to the main office.
Existing Active Directory/Directory Services
The network contains a single-domain Active Directory forest named fabrikam.com. The functional level of
the forest is Windows Server 2008.
The relevant organizational units (OUs) for the domain are configured as shown in the following table.
The relevant sites for the network are configured shown in the following table.
The relevant group policy objects (GPOs) are configured as shown in the following table.
Existing Network Infrastructure
All users run windows server 2008 R2. The relevant servers are configured as shown in following table.
WSUS2 is configured as a downstream replica server.
File1 contains a share named Templates. Users access the Templates share by using the path \\fabrikam.
com\dfs\templates.
File1 has the Distributed File System (DFS) Replication role service and the DFS Namespaces role service
installed.
TECHNICAL REQUIREMENTS
Fabrikam must meet the following requirements:
Minimize the cost of IT purchases.
Minimize the potential attack surface on the servers.
Minimize the number of rights assigned to administrators.
Minimize the number of updates that must be installed on the servers.
Ensure that Internet Explorer uses the local ForeFront TMG server to connect to the Internet.
Ensure that all client computers continue to receive updates from WSUS if a WSUS server fails.
Prevent unauthorized users from accessing the data stored on the VMs by making offline copies of the
VM files.
Fabrikam must meet the following requirements for the Templates share:
Ensure that users access the files in the Templatesshare from a server in their local site.
Ensure that users always use the same UNC path to access the Templates share, regardless of the site
in which the users are located.