QUESTION 111
Your network contains an Active Directory domain named contoso.com. The domain contains
three Active Directory sites.
The Active Directory sites are configured as shown in the following table.
The sites connect to each other by using the site links shown in the following table.
You need to design the Active Directory site topology to meet the following requirements:
Ensure that all replication traffic between Site2 and Site3 replicates through Site1 if a
domain controller in Site1 is available.
Ensure that the domain controllers between Site2 and Site3 can replicate if all of the domain
controllers in Site1 are unavailable.
What should you do?
A. Delete Link3.
B. Create one SMTP site link between Site1 and Site3.
Create one SMTP site link between Site1 and Site2.
C. Create one site link bridge.
D. Modify the cost of Link2.
Correct Answer: D
QUESTION 112
Your company has a main office and a branch office. The network contains an Active Directory
domain named contoso.com. The domain contains three domain controllers.
The domain controllers are configured as shown in the following table.
The domain contains two global groups.
The groups are configured as shown in the following table.
You need to ensure that the RODC is configured to meet the following requirements:
Cache passwords for all of the members of Branch1Users.
Prevent the caching of passwords for the members of Helpdesk.
What should you do?
A. Create a Password Settings object (PSO) for the Helpdesk group.
B. Install the BranchCache feature on RODC1.
C. Modify the membership of the Allowed RODC Password Replication group of RODC1.
D. Modify the membership of the Denied RODC Password Replication group of RODC1.
Correct Answer: D
QUESTION 113
Your network contains an Active Directory domain named contoso.com. Your company has an
enterprise root certification authority (CA) named CA1. You plan to deploy Active Directory
Federation Services (AD FS) to a server named Server1. The company purchases a Microsoft
Office 365 subscription. You plan register the company’s SMTP domain for Office 365 and to
configure single sign-on for all users. You need to identify which certificate or certificates are
required for the planned deployment. Which certificate or certificates should you identify? (Each
correct answer presents a complete solution. Choose all that apply.)
A. a server authentication certificate that is issued by a trusted third-party root CA and that
contains the subject name server1.contoso.com
B. a server authentication certificate that is issued by CA1 and that contains the subject name
Server1
C. a server authentication certificate that is issued by a trusted third-party root CA and that
contains the subject name Server1
D. a server authentication certificate that is issued by CA1 and that contains the subject name
server1.contoso.com
E. self-signed server authentication certificates for server1.contoso.com
Correct Answer: DE
QUESTION 114
Your network contains an Active Directory domain named contoso.com. The network contains a
server named Server1 that has the Hyper-V server role installed. Server1 hosts a virtual machine
named VM1. You deploy a new standalone server named Server2. You install the Hyper-V server
role on Server2. Another administrator named Admin1 plans to create a replica of VM1 on
Server2. You need to ensure that Admin1 can configure Server2 to receive a replica of VM1. To
which group should you add Admin1?
A. Server Operators
B. Domain Admins
C. Hyper-V Administrators
D. Replicator
Correct Answer: C
QUESTION 115
Your network contains a server named Server1 that runs Windows Server 2012. Server1 is
configured as a Hyper-V host. Server1 hosts a virtual machine named VM1. VM1 is configured as
a file server that runs Windows Server 2012. VM1 connects to a shared storage device by using
the iSCSI Initiator. You need to back up the files and the folders in the shared storage used by
VM1. The solution must ensure that open files are included in the backup. What should you do?
A. From Hyper-V Manager, create a snapshot of VM1.
B. From Server1, perform a backup by using Windows Server Backup.
C. From VM1, perform a backup by using Windows Server Backup.
D. From Microsoft System Center 2012 Virtual Machine Manager (VMM), create a copy of VM1.
Correct Answer: C
QUESTION 116
Your network contains an Active Directory domain named contoso.com. You deploy Active
Directory Certificate Services (AD CS). Your company, which is named Contoso, Ltd., has a partner
company named Fabrikam, Inc. Fabrikam also deploys AD CS. Contoso and Fabrikam plan to
exchange signed and encrypted email messages. You need to ensure that the client computers in
both Contoso and Fabrikam trust each other’s email certificates. The solution must prevent other
certificates from being trusted. What should you do? (More than one answer choice may achieve
the goal. Select the BEST answer.)
A. Implement an online responder in each company.
B. Exchange the root certification authority (CA) certificates of both companies, and then deploy the certificates to the Trusted Root Certification Authorities store by using Group Policy objects (GPOs).
C. Exchange the root certification authority (CA) certificates of both companies, and then deploy the certificates to the Enterprise Trust store by using Group Policy objects (GPOs).
D. Implement cross-certification in each company.
Correct Answer: D
QUESTION 117
Your network contains an Active Directory domain. All servers run Windows Server 2012 R2.
The domain contains the servers shown in the following table.
You need to recommend which servers will benefit most from implementing data deduplication.
Which servers should you recommend?
A. Server1 and Server2
B. Server1 and Server3
C. Server1 and Server4
D. Server2 and Server3
E. Server2 and Server4
F. Server3 and Server4
Correct Answer: D
QUESTION 118
Your network contains an Active Directory forest named adatum.com. All domain controllers run
Windows Server 2008 R2. The functional level of the domain and the forest is Windows Server
2008. You deploy a new Active Directory forest named contoso.com. All domain controllers run
Windows Server 2012 R2. The functional level of the domain and the forest is Windows Server
2012 R2. You establish a two-way, forest trust between the forests. Both networks contain
member servers that run either Windows Server 2012 R2, Windows Server 2012, Windows
Server 2008 R2 or Windows Server 2008. You plan to use the Active Directory Migration Tool 3.2
(ADMT 3.2) to migrate user accounts from adatum.com to contoso.com. SID history will be used
in contoso.com and passwords will be migrated by using a Password Export Server (PES). You
need to recommend which changes must be implemented to support the planned migration.
Which two changes should you recommend? Each correct answer presents part of the solution.
A. In the contoso.com forest, deploy a domain controller that runs Windows Server 2008 R2.
B. In the adatum.com forest, upgrade the functional level of the forest and the domain.
C. In the contoso.com forest, downgrade the functional level of the forest and the domain.
D. In the adatum.com forest, deploy a domain controller that runs Windows Server 2012 R2.
Correct Answer: AC
QUESTION 119
Your network contains an Active Directory forest. The forest contains a single domain. The forest
has five Active Directory sites. Each site is associated to two subnets. You add a site named Site6
that contains two domain controllers. Site6 is associated to one subnet. You need to verify
whether replication to the domain controllers in Site6 completes successfully. Which two possible
commands can you use to achieve the goal? Each correct answer presents a complete solution.
A. Get-ADReplicationSubnet
B. Get-ADReplicationUpToDatenessVectorTable
C. repadmin /showattr
D. Get-ADReplicationSite1ink
E. repadmin /showrepl
Correct Answer: BE
QUESTION 120
Your company has a main office and a branch office. The network contains an Active Directory
domain named contoso.com. The main office contains domain controllers that run Windows
Server 2012. The branch office contains a read-only domain controller (RODC) that runs Windows
Server 2012. You need to recommend a solution to control which Active Directory attributes are
replicated to the RODC. What should you include in the recommendation?
A. The partial attribute set
B. The filtered attribute set
C. Application directory partitions
D. Constrained delegation
Correct Answer: B
Instant Access to Download Testing Software & PDF File for Microsoft 70-413 Real Exam
Instant Access to Try Microsoft 70-413 Free Demo
70-410 Dumps VCE PDF
70-411 Dumps VCE PDF
70-412 Dumps VCE PDF
70-413 Dumps VCE PDF
70-414 Dumps VCE PDF
70-417 Dumps VCE PDF
70-461 Dumps VCE PDF
70-462 Dumps VCE PDF
70-463 Dumps VCE PDF
70-464 Dumps VCE PDF
70-465 Dumps VCE PDF
70-480 Dumps VCE PDF
70-483 Dumps VCE PDF
70-486 Dumps VCE PDF
70-487 Dumps VCE PDF