PrepAway - Latest Free Exam Questions & Answers

What should you configure?

You have a file server named Server1 that runs Windows Server 2012 R2.
You need to ensure that a user named User1 can use Windows Server Backup to create a
complete backup of Server1.
What should you configure?

PrepAway - Latest Free Exam Questions & Answers

A.
The local groups by using Computer Management

B.
The Role Assignment by using Authorization Manager

C.
A task by using Authorization Manager

D.
The User Rights Assignment by using the Local Group Policy Editor

125 Comments on “What should you configure?

  1. Jony says:

    On exam had these questions (now atleast i know answers)

    QUESTION 446
    Note: This question is part of a series of questions that use the same or similar answer choices.
    An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series. Information and details provided in a question apply only to that question.
    Your network contains one Active Directory domain named contoso.com.
    The domain contains 10 domain controllers and a read-only domain controller (RODC) named RODC01.
    You have a domain controller named DC5 that has the Server Graphical Shell disabled.
    You create an orgranizational unit (OU) named OU1.
    From DC5, you you need to create 50 new users accounts in OU1.
    What tool should you use?
    A. the ntdsutil command.
    B. the Set-ADDomain cmdlet.
    C. the Install-ADDSDornain cmdlet.
    D. the dsadd command.
    E. the dsamain command.
    F. the dsmgmt command.
    G. the net user command.
    H. the Set ADForest cmdle
    Answer: D

    QUESTION 447
    Note: This question is part of a series of questions that use the same or similar answer choices.
    An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series. Information and details provided in a question apply only to that question.
    Your network contains one Active Directory domain named contoso.com.
    The domain contains 10 domain controllers and a read-only domain controller (RODC) named RODC01.
    The domain contains an administrator account named Admin1.
    You need to prevent Admin1 from creating more than 100 objects in the domain partition.
    Which tool should you use?
    A. the ntdsutil command.
    B. the Set-ADDomain cmdlet.
    C. the Install-ADDSDornain cmdlet.
    D. the dsadd command.
    E. the dsamain command.
    F. the dsmgmt command.
    G. the net user command.
    H. the Set ADForest cmdlet.
    Answer: D

    Explanation: DSadd quota

    QUESTION 448
    Note: This question is part of a series of questions that use the same or similar answer choices.
    An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series. Information and details provided in a question apply only to that question.
    Your network contains one Active Directory domain named contoso.com.
    The domain contains 10 domain controllers and a read-only domain controller (RODC) named RODC01.
    You plan to replace a domain controller named DC1.
    DC1 has the schema operations master role.
    You need to transfer the schema master role to another domain controller named DC10 before you remove Active Directory from DC1.
    Which tool should you use?
    A. the ntdsutil command.
    B. the Set-ADDomain cmdlet.
    C. the Install-ADDSDornain cmdlet.
    D. the dsadd command.
    E. the dsamain command.
    F. the dsmgmt command.
    G. the net user command.
    H. the Set ADForest cmdlet.
    Answer: A

    QUESTION 449
    Note: This question is part of a series of questions that use the same or similar answer choices.
    An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series. Information and details provided in a question apply only to that question.
    Your network contains one Active Directory domain named contoso.com.
    The domain contains 10 domain controllers and a read-only domain controller (RODC) named RODC01.
    You need to ensure that when administrators create users in contoso.com, the default user principal name (UPN) suffix is litwareinc.com.
    Which cmdlet should you use?
    A. the ntdsutil command.
    B. the Set-ADDomain cmdlet.
    C. the Install-ADDSDornain cmdlet.
    D. the dsadd command.
    E. the dsamain command.
    F. the dsmgmt command.
    G. the net user command.
    H. the Set ADForest cmdlet.
    Answer: H
    Explanation:
    Set-ADForest -Identity fabrikam.com -UPNSuffixes @{replace=”fabrikam.com”,”fabrikam”,”corp.fabrikam.com”} – set for all Forest




    2



    0
  2. Jony says:

    Your network contains one Active Directory domain named contoso.com.
    The domain contains 10 domain controllers and a read-only domain controller (RODC) named RODC01.
    You need to add an RODC to the domain by using the Install From Media (IFM) option.
    Which tool should you use to create the media?
    A. the ntdsutil command.
    B.the Set-ADDomain cmdlet.
    C.the Install-ADDSDornain cmdlet.
    D.the dsadd command.
    E.the dsamain command.
    F. the dsmgmt command.
    G.the net user command.
    H.the Set ADForest cmdlet.

    Answer : A




    1



    0
  3. Jony says:

    Your network contains one Active Directory domain named contoso.com. The domain contains 2,000 client computers used by students. You recently discover an increase in calls to the helpdesk that relate to security policy to meet the following requirement:
    Modify the UserName of the built-in account named Administrator
    Support a time mismatch between client computers and domain controllers of up to three minutes.
    Which Two security settings should you modify?
    A. Account Policies
    B. Password Policy
    C. Account Lockout Policy
    D. Kerberos Policy
    E. Local Policies
    F. Audit Policy
    G. User Rights Assignment
    H. Security Options

    Answer: D and H




    1



    0
  4. Jony says:

    Your network contains an Active Directory domain named contoso.com.
    You create a software restriction policy to allow an application named App1 by using a certificate rule.
    You need to prevent the software restriction policy from applying to users that are members of the local Administrators group.
    What should you do?
    A. Modify the rule for App1
    B. Modify the Enforcement Properties
    C. Modify the Security Levels.
    D. Modify the Trusted Publishers Properties

    Answer B




    0



    0
      1. Jobby says:

        It’s B

        GPEDIT.MSC > Computer Configuration > Windows Settings > Security Settings > Software Restriction Policies > Enforcement:

        – Apply software restriction policies to the following users: All users except local admin.

        Done 🙂




        0



        0
  5. Jony says:

    RODC comes with a number of features that focus on heightened security with limited functionality to remote
    office users.
    Which of the following is (or are) feature(s) of RODC?

    A.All of these
    B.Filtered Attribute Sets
    C.Unidirectional Replication
    D.Read-only DNS

    Answer A

    https://technet.microsoft.com/en-us/library/ee221010(v=ws.10).aspx

    Complete the missing word from the sentence below that is describing one of the new roles in Server 2008:
    By using___ , you can augment an organization’s security strategy by protecting information through persistent
    usage policies, which remain with the information, no matter where it is moved

    A. AD FS
    B. AD RMS
    C. RODC
    D. AD LDS

    Answer B

    https://technet.microsoft.com/en-us/library/cc835490(WS.10).aspx

    Sometimes its important to remove an RODC from your forest or domain.
    However, its important that you follow a simple rule whilst removing RODC’s. What is this rule?

    A.All RODC’s must be detached before removing a final writable domain controller
    B.All writable domain controllers must be removed before RODC’s can be detached
    C.Your forest must only consist of RODC’s if you want to remove them
    D.There are no rules for removing RODC’s

    Answer A

    http://www.howtogeek.com/112564/how-to-create-advanced-firewall-rules-in-the-windows-firewall/

    You have a server named Server1 that Runs Windows Server 2012 R2.
    You configure IPSec rules for connections to Server1.
    On Server1, you plan to create an inbound firewall rule that contains the following settings:

    • Allows inbound connections to an application named App1.exe
    • Applies to the domain profile
    • Overrides any block rules

    You need to identify the minimum information required to create the rule.
    Which two pieces of information should you identify?

    Each correct answer presents part of the solution.
    A. the list of Active Directory users who are authorized to use the application.
    B. the list of computers that are authorized to use the application.
    C. the hash of the application.
    D. the local path of the application.
    E. the name at the IPSec policies that apply to Server1

    Answer B,D




    0



    0
    1. Wpeel says:

      Can anyone explane;

      Sometimes its important to remove an RODC from your forest or domain.
      However, its important that you follow a simple rule whilst removing RODC’s. What is this rule?

      A.All RODC’s must be detached before removing a final writable domain controller
      B.All writable domain controllers must be removed before RODC’s can be detached
      C.Your forest must only consist of RODC’s if you want to remove them
      D.There are no rules for removing RODC’s
      answer A I think D because I can’t find the simple rule in:

      https://technet.microsoft.com/en-us/library/cc835490(WS.10).aspx




      0



      0
          1. Michael W says:

            Can you remove the last domain controller in a domain if there are unoccupied (or disabled) RODC accounts in the domain?
            As for all previous versions of Windows Server, it is a requirement that all other domain controllers have been removed from the domain before you can remove the last domain controller. For Windows Server 2008, this requirement includes the removal of all RODCs and the removal of any precreated but unused RODC accounts.
            https://technet.microsoft.com/en-us/library/cc754956(v=ws.10).aspx




            0



            0
  6. Jony says:

    The domain contains an organizational unit (OU) named Groups that contains a universal security named Group1.
    You run the following command from Windows PowerShell.
    Get-ADGroup Group1 –properties managedby | New-ADGroup –name “Group2” –SamAccountName group2 –groupcategory distribution –groupscope global
    You need to identify which properties of Group1 will be copied to Group2.
    What should you identify?
    To answer, select the appropriate options in the answer area.

    The group type
    [x]Will be different from Group1
    []Will be the same as Group1

    The group scope
    [x]Will be different from Group1
    []Will be the same as Group1

    The managed by attribute
    []Will be different from Group1
    [x]Will be the same as Group1

    The permission assigned to group1
    [x]Will be different from Group1
    []Will be the same as Group1

    Answer: different, different, same, different.




    0



    0
  7. Jony says:

    Your network contains an active directory domain named contoso.com. The domain consists 20 member Servers and 5 domain controllers. All servers run Windows Server 2012 R2. The domain contains 500 client computers.
    You plan to deploy a domain controller for contoso.com in Microsoft Azure.
    You need to prepare the conversation for planned deployment. The solution should ensure that the domain controller hosted in Azure always have the same IP address.
    Witch two actions should you perform? Each correct answer is a part of the solution.
    A. From an Azure virtual machine run the Set-AzureStaticVNetIP cmdlet
    B. Deploy a Side by side virtual private network (VPN)
    C. From Azure virtual machine run the Set –NetIPAuthentication cmdlet
    D. From an domain controller run the Set-NetIPAdresses cmdlet
    E. From an domain controller run adprep.exe

    Answer? A,B – need explanation




    0



    0
  8. Jony says:

    You have a server named Server1 that runs Windows Server 2012 R2.
    You apply a security policy to server1 by using the Security Configuration Wizard (CWM).
    You plan to roll back the security policy.
    You need to identify the settings that are prevented from rolling back running the CWM
    Witch settings should you identify.

    A. The secure startup order
    B. The outbound authentication methods
    C. The network security rules
    D. The system access control list (SAClist)

    Answer?




    0



    0
    1. Jony says:

      Ansver is D

      Explanation:
      System Keeps Auditing After Rollback
      In the auditing section of SCW there is an option to include the SCWAudit.inf template. If you do so, SCW configures System Access Control Lists (SACL) on a number of files. Without this template SCW will configure the system to perform object access auditing but since no files have SACLs on them by default, no file access will actually be audited.
      If you apply a policy with this option turned on and you subsequently roll back the policy the SACLs will remain on the system. Consequently, if the system is configured to perform Object Access Auditing you will find auditing events in the Security Event Log. This is by design. SCW is not designed to roll back ACLs. To clear these SACLs you would need to manually restore any pre-existing SACLs. As long as these were defined in a security template doing so is a simple matter of re-applying that security template




      0



      0
    2. DP says:

      Answer: D
      Explanation:
      System Keeps Auditing After Rollback
      In the auditing section of SCW there is an option to include the SCWAudit.inf template. If you do
      so, SCW configures System Access Control Lists (SACL) on a number of files. Without this
      template SCW will configure the system to perform object access auditing but since no files have
      SACLs on them by default, no file access will actually be audited.
      If you apply a policy with this option turned on and you subsequently roll back the policy the
      SACLs will remain on the system. Consequently, if the system is configured to perform Object
      Access Auditing you will find auditing events in the Security Event Log. This is by design. SCW is
      not designed to roll back ACLs. To clear these SACLs you would need to manually restore any
      pre- existing SACLs. As long as these were defined in a security template doing so is a simple
      matter of re-applying that security template.
      http://blog.netwrix.com/2015/06/19/configure-audit-policy-and-security-using-securityconfiguration-wizard/




      0



      0
  9. Jony says:

    Be familiar with DNScmd
    You will need to complete command from 3 parts using mixed powershell and DNScmd commands.
    Correct are: DNScmd; /name and 0.0.10.in-addr.arpa.
    dnscmd /name dnssvr1.contoso.com /recordadd test ptr 0.0.10.in-addr.arpa




    0



    0
  10. Jony says:

    You have a server named Server1 that runs Windows Server 2012 R2.
    Server1 has three physical network adapters named NIC1, NIC2, and NIC3.

    On Server1, you create a NIC team named Team1 by using NIC1 and NIC2. You configure Team1 to
    accept network traffic on VLAN 10.
    You need to ensure that Server1 can accept network traffic on VLAN 10 and VLAN 11. The solution
    must ensure that the network traffic can be received on both VLANs if a network adapter fails.
    What should you do?

    A.From Server Manager, change the load balancing mode of Team1.
    B.Run the New-NetLbfoTeamcmdlet.
    C.from Server Manager, change the Teaming mode of Team1
    D.Run the Add-NetLbfoTeamMembercmdlet.

    Answer: C




    0



    0
  11. Jonathan says:

    You guys know the answer to the following question?

    You have a server named Server 1 that runs Windows Server 2012. SERVER1 has five network adapters.
    Three of the network adapters are connected to a network named LAN1.
    The two other network adapters are connected to a network named LAN2.
    You create a network adapter team named Team1 from two of the adapters connected to LAN1.
    You create a network adapter team named Team2 from the two adapters connected to LAN2.
    A company policy states that all server IP addresses must be assigned by using a reserved address in DHCP.
    You need to identify how many DHCP reservations youmust create for SERVER1.
    How many reservations should you identify?

    A.
    2

    B.
    3

    C.
    5

    D.
    7

    Im getting mixed answers of 3 and 5




    0



    0
    1. TechGuy says:
  12. grande says:

    Based on discussions here and there… I think I’d go with 3. There are a total of 5 network adapters, 3 on the LAN1 network and 2 on the LAN2 network. 2 of the 3 adapters on LAN1 are made into a ‘network adapter team’ so that means LAN 1 will have a total of 2 IP addresses. Both adapters on LAN2 are made into an adapter team so that means one more IP address required. Adds up to a total of 3 DHCP reservations required.

    “The teaming of network cards is simply joining them into one logical entity, with a single IP address”

    http://www.serverwatch.com/server-tutorials/how-to-team-your-network-cards-in-windows-server-2012.html




    0



    0
  13. iRock says:

    You have a server that runs server core of windows 2012 r2 server. you need to ensure that windows updates are installed only by using manual installation on server1. which 3 steps will you perform.

    options given
    ————-
    scregedit.wsf /au 1
    wuauclt /selfupdatemanaged
    uninstall-windowsfeature
    netstop wuauserv
    wuauclt /selfupdateunmanaged
    net start wuauserv

    Answers Please……?




    0



    0
  14. iRock says:

    New question
    =============

    Your network contains one Active Directory domain named contoso.com. you deploy a new virtual machine in microsoft azure and then you run the active directory domain configuration wizard as show in the exhibit. (click the exhibit button) you need to ensure that all of the users in contoso.com are replicated to the new domain controller in azure.

    What should you do?

    A. Modify the Deployment Configuration.
    B. Set up directory integration.
    C. Configuration Azure Active Directory Connect.
    D. Select the Domain Name System (DNS) server check box.




    0



    0
    1. Legend says:

      B and C are related with azure service: Azure Active Directory, but the question is asking about replication on a domain controller installed on VM hosted on azure which is different, so I think both answers are wrong, who can confirm that?




      0



      0
      1. Moli says:

        I got the solution….You have to check the Wizard to understand the Question…

        As Legend statet already its about a DC in a Azure VM and this has nothing to do with AAD (Azure Active Directory) to the AAD we talk about sync Users and not replicate which a DC does….In the Wizard they choose to make a new forest, thats why the GC and RODC options are greyed out. and this is just when you choose in the deployment configuration to create a new forest…if you would choose to add a DC to an existing domain, all of these three options are greyed out and this would exactly be what we need…we have to add this new DC in Azure VM to an existing Domain, to replicate the users from contoso.com. They did choose the wrong option in Deployment configuration tab of the wizard.

        So the correct Answer is: C…Modify the Deployment configuration

        I hope i could clarify a little bit and here is the link, you can check and proof it:
        https://technet.microsoft.com/en-us/windows-server-docs/identity/ad-ds/deploy/ad-ds-installation-and-removal-wizard-page-descriptions?f=255&MSPPError=-2147217396

        You will see the screenshots and the options are different, depending on what you choose in the Deployment Configuration.

        This Question is also in the 70-417 exam.




        0



        0
        1. Moli says:

          One important thing is missing…without the Screenshot to the Question it is not easy to understand….You will need the picture from the exam in which the GC and RODC options are greyed out, which states that they choosed the wrong deployment configuration but in our case all 3 option must be greyed out, because we should add a DC to an existing Domain….you can validate in test Lab.

          Peace




          0



          0
  15. iRock says:

    New question
    ===========

    you create an OU named tempusers. you add several test users to that OU. you want to delete the ou and receive an error.

    remove-adorganizationunit -identity “ou=tempusrs, dc=contoso,dc=com” – recursive.

    a) remove all the users from ou
    b) modify the rights to your user account
    c) set the confirm parameters to $true
    d) set the protectfromaccidential deletion to $false




    0



    0
  16. iRock says:

    i have contoso.com domain consist of two child domain east.contoso.com and west.contoso.com.GP applied on following
    OU
    market.east.contoso.com
    west.contoso.com
    contose.com
    forest.contoso.com
    east.contoso.com
    GP is deleted,in which i have deleted GPO manually
    select Three




    0



    0
  17. zak says:

    passed my exam today 820/1000. got all the RODC questions that Jony listed.. so thank you for those. also got the replicating to AD in azure, I gave the answer as B (Directory Integration), not sure it was right or not.




    0



    0
  18. zak says:

    I would say all except a couple of the questions were in the exam from this site, including the 5/6 Jony posted regarding the RODC. There was a question also from above that talks about Azure AD integration.

    a couple of questions which didn’t feature on this site were about how to restrict some members of the domain admins group from accessing the DC (sorry don’t remember the question format, and a group policy question about preventing authenticated users from joining computers to the domain.




    0



    0
  19. piet says:

    Your directory contains one AD domain named contoso.com.The domain contains 10 DC that run WS2012R2. 8 DC are writable DC.
    You need to deploy several read-only DC in contoso by using pre-staged computer accounts.
    Which two tasks should you perform?Each correct answer presents part of solution.
    A: Run the Add-AddsReadOnlyDomainControlleraccount cmdlet.
    B:Create an authentication policy silo.
    C:Create an authentication policy.
    D:Run the Install-AddsDomainControler cmdlet.
    E:Run the adprep /rodcprep command
    F:Join the servers to contoso.com.




    0



    0
      1. karl says:

        “Before install a RODC in a domain environment it need to meet the following requirements,
        Forest function level should be windows 2003 server or higher
        Needs at least one writable domain controller running windows server 2008 or higher
        If forest have any DC running windows server 2003 we need to adjust permissions on DNS application directory partition to allow them to replicate to RODC. It can be done by running adprep /RODCprep from windows 2012 server installation disk \support\adprep folder….
        …As we can see here its runs with windows server 2012 R2 so we do not need to prepare domain with adprep /RODCprep”
        http://www.rebeladmin.com/2014/10/step-by-step-guide-to-install-read-only-domain-controller-rodc/

        A: Stage RODC: Add-addsreadonlydomaincontrolleraccount
        D: Attach RODC: Install-AddsDomaincontroller




        0



        0
  20. piet says:

    the company has 2 LAN, LAN 1 has IP 10.1.1.0/27, and LAN 1 and LAN 2 is communicated by the router. LAN 2 needs to meet requirements below:
    1, it contains at least 50 IP addresses,
    2, priviate IPs,
    3 can communicate with LAN 1.
    So which IP and mask should be used.




    0



    0
  21. qabas says:

    Your network contains one Active Directory domain named contoso.com. you deploy a new virtual machine in microsoft azure and then you run the active directory domain configuration wizard as show in the exhibit. (click the exhibit button) you need to ensure that all of the users in contoso.com are replicated to the new domain controller in azure.

    What should you do?

    A. Modify the Deployment Configuration.
    B. Set up directory integration.
    C. Configuration Azure Active Directory Connect.
    D. Select the Domain Name System (DNS) server check box.
    ???




    0



    0
  22. qabas says:

    ou have 10 domain controller in a domain. you need to prevent several members of domain admin groups from logging on the domain controller. which two object shoudl you create and configure.

    A. GPO to the domain
    B. authentication policy
    C. authentication policy silo
    D. a central access policy
    E. a user certificate

    please provide answer




    0



    0
  23. jj says:

    Your directory contains one AD domain named contoso.com.The domain contains 10 DC that run WS2012R2. 8 DC are writable DC.
    You need to deploy several read-only DC in contoso by using pre-staged computer accounts.
    Which two tasks should you perform?Each correct answer presents part of solution.
    A: Run the Add-AddsReadOnlyDomainControlleraccount cmdlet.
    B:Create an authentication policy silo.
    C:Create an authentication policy.
    D:Run the Install-AddsDomainControler cmdlet.
    E:Run the adprep /rodcprep command
    F:Join the servers to contoso.com.

    A and D
    https://books.google.it/books?id=L5d7BAAAQBAJ&pg=PA234&lpg=PA234&dq=deploy+read-only+DC+by+using+pre-staged+computer+accounts&source=bl&ots=efdHJnE2lj&sig=vlQoEEDZXQdwazhoKi5XuidCGoU&hl=it&sa=X&ved=0CEMQ6AEwBGoVChMI_rPPuviZyAIVwQ8sCh3RwAij#v=onepage&q=deploy%20read-only%20DC%20by%20using%20pre-staged%20computer%20accounts&f=false




    0



    0
  24. Dubai says:

    Hello Guys, Please help me. I studied all the 282 questions here and i memorize 100% of all the questions + Jony’s posted question and answer. So my question is, Is it enough to pass the exam with all of that question will appear on the exam? Please help me to answer that. I will sit on the exam on the 7th of October so plss help.

    With regards to other questions here, how many are 100% correct answer here out of 282 question? because I have read some of the comments to the answer but some of according to the comment some of those questions here is wrong so kindly please help me..

    Thank you.

    Regards,
    Dubai




    0



    0
  25. SAME SAME says:

    Hello Guys, I am going to take the exam on wednesday. Is this website is valid? I have read all of the questions and answers here and I noticed that it is Kathleen dumps. Is is still valid? Is all the questions is correct here?

    Thanks guys for the answer. Cheers




    0



    0
  26. Legend says:

    Passed today, 9xx score, but many new questions. [about 15 the same, 10 similar, and 22 new]

    What I have remember:

    1 new RODC question, about adding new domain to vm on azure subscription, you should pick which tool you will use, the answers where the same like the other RODC questions.

    Question about configuring SAM account

    How would you change mode on NIC teaming

    What command you will use to allow user User1 to manage linked/unlinked GPOs, one of the options was Set-GpPermission.




    0



    0
  27. Flippo says:

    This week passed with 780 in Netherlands.
    Got almost all questions that are posted above here in Q286.
    RODS, Azure questions also (are 70-411 questions ..?).
    90% Of the other questions from the other 285 questions. Can’t remember these new ones.
    Good luck to you all!




    0



    0
  28. Shadi says:

    Thanks for sharing…I passed this week with 720, like 95% of the questions from this dump and the comments here.

    please advise witch dump to use for 70-411

    Good luck to you all,




    0



    0
  29. BedfordDiego says:

    Passed today with 900, this dump and all additional questions here from Jony are valid.
    Got 2 new questions, one was:

    You have win2012 R2 DHCP servers with 50 leases. You want to convert leases into reservations using PowerShell command. What do you need to have to accomplish this
    A) Computer names
    B) Computer GUIDs
    C) Computer MAC Addresses
    D) Hardware information (?)

    I chose C, but am not 100% sure.




    0



    0
  30. robort says:

    QUESTION 449
    Note: This question is part of a series of questions that use the same or similar answer choices.
    An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series. Information and details provided in a question apply only to that question.
    Your network contains one Active Directory domain named contoso.com.
    The domain contains 10 domain controllers and a read-only domain controller (RODC) named RODC01.
    You need to ensure that when administrators create users in contoso.com, the default user principal name (UPN) suffix is litwareinc.com.
    Which cmdlet should you use?
    A. the ntdsutil command.
    B. the Set-ADDomain cmdlet.
    C. the Install-ADDSDornain cmdlet.
    D. the dsadd command.
    E. the dsamain command.
    F. the dsmgmt command.
    G. the net user command.
    H. the Set ADForest cmdlet.
    Answer: E dsamain




    0



    0
  31. MRK says:

    Passed today with 88X.
    All questions came from this dump & v5 + the questions Jony posted here regarding Azure.
    1 new question regarding Domain & Domain Controller policies and when to apply which one.
    They give 3 examples and you have to select either Domain Policiy or Domain Controller Policy.

    Also, be sure to UNDERSTAND the answers, not just memorize them, some questions are altered or switched around!




    0



    0
  32. shaker007 says:

    Passed today with 8XX in Ghana…. Had MRK’s question regarding Domain & Domain Controller Policy and when to apply it…….and just about 3 new questions..this dump is very valid.




    0



    0
  33. shawn says:

    The new question about LAN and submasking: you have 2 LANs. LAN1 has IP 10.1.1.0/27
    LAN2 should communicate with LAN1 thru a router (as you wrote). Drop in the box the correct IP address and mask.

    The answer: The first and easiest step is to identify the mask bits. In this case it is 27.
    you MUST select the same mask as /27 gives you at LAN1, so that’s 255.255.255.224 (because there must be communication between the LANs!)
    LAN1’s mask gives you the hosts per subnet, that is 30 (32 minus broadcast and minus the subnet ID, that’s why it is 30)
    So LAN1 can have the hosts from 10.1.1.1-10.1.1.30 (10.1.1.0 is for the subnet, 10.1.1.31 is the broadcast).
    The next usable subnet with the /27 mask is 10.1.1.32/27.

    So the correct answer is: 10.1.1.32 with mask of 255.255.255.224




    0



    0
    1. alex says:

      Your argument regarding the length of the mask is not valid. Since you have a router the mask could be any length. You have just calculated the next network on the same range however without any specific requirements any network could potentially communicate with 10.1.1.0/27 since there is router.




      0



      0
  34. geekrescue says:

    Your network contains one Active Directory domain named contoso.com. you deploy a new virtual machine in microsoft azure and then you run the active directory domain configuration wizard as show in the exhibit. (click the exhibit button) you need to ensure that all of the users in contoso.com are replicated to the new domain controller in azure.
    What should you do?
    A. Modify the Deployment Configuration.
    B. Set up directory integration.
    C. Configuration Azure Active Directory Connect.
    D. Select the Domain Name System (DNS) server check box.
    Answer: C?

    Im confused if its C or B.

    https://azure.microsoft.com/en-us/documentation/articles/active-directory-aadconnect/#how-azure-ad-connect-works




    0



    0
  35. james says:

    Your network contains one Active Directory domain named contoso.com. you deploy a new virtual machine in microsoft azure and then you run the active directory domain configuration wizard as show in the exhibit. (click the exhibit button) you need to ensure that all of the users in contoso.com are replicated to the new domain controller in azure.

    What should you do?

    A. Modify the Deployment Configuration.
    B. Set up directory integration.
    C. Configuration Azure Active Directory Connect.
    D. Select the Domain Name System (DNS) server check box.

    Ans: C? https://azure.microsoft.com/en-us/documentation/articles/active-directory-aadconnect/




    0



    0
    1. Moli says:

      But the question is not to sync the users to AAD (Azure Active Directory)…they ask to ensure that all of the users replicate to the new domain controller in the Azure VM.

      So B and C cannot be the answer as it has to do with AAD and not AD on a DC!
      D for DNS check box i would also say not

      So for me it would be just the A as an option. Otherwise if they would ask to sync the Users to AAD, then i would also say C.




      0



      0
  36. Peggy says:

    i have contoso.com domain consist of two child domain east.contoso.com and west.contoso.com.GP applied on following
    OU
    A. name Corporate site
    B. contoso.com
    C. east.contoso.com
    D. east.contoso.com Marketing OU
    E. contoso.com ALLUsers OU

    GP is deleted,in which i have deleted GPO manually
    select Three




    1



    0
  37. PASS says:

    you have a server named server1 that runs windows server 2012 r2. Server1 has the DHCP server server role installed. You need to convert 20 ip address leases to reservation by using windows power shell. Which value should you use when running the
    Add-DhcpServer4Reservation cmdlet?
    A. the MAC addresses
    B. the computer names
    c. the hardware IDs
    D. the SMSBOIS GUIDs

    Answer: ???




    0



    0
  38. PASS says:

    you have a server named server1 that runs windows server 2012 r2. Server1 contains a volume named data. Data contains a shared folder named server1 that contains shared files. Several users access the files. You enable shadow copies on the data values. A user named user1 deletes a file named Budget.xls fro share1. You need to recover the file. The solution must not override changes to the other files in share1. What should you do first?

    A. from the properties of the data volume, open the Shadow Copies tab, select the shadow copy, and then click Revert.
    B. from the properties of the data volume,open the Previous Versions tab, and then open folder. Browse to the share1 folder.
    C. from the properties of the share1 folder, open the Previous Versions tab, and then click Restore.
    D. from the properties of the share1 folder, open the Sharing tab, click Advanced Sharing, and then click Caching.

    Answer: ???




    0



    0
  39. Blog yang bagus ngomong-ngomong saya berbagi info untuk menjadi dewa poker kunjungi aaja pokertogelmania.

    Info carea main domino hingga prediksi togel. Mungkin juga sahabat adda
    yang perlu info review situs adu Ԛ terpopuler ddi Indonesia visit pokertogelmania.




    0



    0

Leave a Reply