Latest MCSE 70-412 Real Exam Download 11-20


QUESTION 11

Your network contains an Active Directory domain named adatum.com. The domain contains two domain controllers that run Windows Server 2012. The domain controllers are configured as shown in the following table.

clip_image001

You log on to DC1 by using a user account that is a member of the Domain Admins group, and then you create a new user account named User1.

You need to prepopulate the password for User1 on DC2. What should you do first?

What should you do first?

A. Connect to DC2 from Active Directory Users and Computers.

B. Add DC2 to the Allowed RODC Password Replication Policy group.

C. Add the User1 account to the Allowed RODC Password Replication Policy group.

D. Run Active Directory Users and Computers as a member of the Enterprise Admins group.

Answer: C


QUESTION 12

Your company has offices in Montreal, New York, and Amsterdam.

The network contains an Active Directory forest named contoso.com. An Active Directory site exists for each office. All of the sites connect to each other by using the DEFAULTIPSITELINK site link.

You need to ensure that only between 20:00 and 08:00, the domain controllers in the Montreal office replicate the Active Directory changes to the domain controllers in the Amsterdam office. The solution must ensure that the domain controllers in the Montreal and the New York offices can replicate the Active Directory changes any time of day.

What should you do?

A. Create a new site link that contains Montreal and Amsterdam. Remove Amsterdam from

DEFAULTIPSITELINK. Modify the schedule of DEFAULTIPSITELINK.

B. Create a new site link that contains Montreal and Amsterdam. Create a new site link bridge.

Modify the schedule of DEFAU LTIPSITELINK.

C. Create a new site link that contains Montreal and Amsterdam. Remove Amsterdam from

DEFAULTIPSITELINK. Modify the schedule of the new site link.

D. Create a new site link that contains Montreal and Amsterdam. Create a new site link bridge.

Modify the schedule of the new site link.

Answer: C


QUESTION 13

Your network contains two Active Directory forests named contoso.com and adatum.com. A two- way forest trust exists between the forests.

The contoso.com forest contains an enterprise certification authority (CA) named Server1.

You implement cross-forest certificate enrollment between the contoso.com forest and the adatum.com forest.

On Server1, you create a new certificate template named Template1.

You need to ensure that users in the adatum.com forest can request certificates that are based on

Template1.

Which tool should you use?
A. DumpADO.ps1

B. Repadmin

C. Add-CATemplate

D. Certutil

E. PKISync.ps1

Answer: E


QUESTION 14

You have a server named Server1 that has the Active Directory Certificate Services server role installed.

Server1 uses a hardware security module (HSM) to protect the private key of Server1.

You need to ensure that the Active Directory Certificate Services (AD CS) database, log files, and private key are backed up.

You perform regular backups of the HSM module by using a backup utility provided by the HSM

manufacturer.

What else should you do?

A. Run the certutil.exe command and specify the -backupkey parameter.
B. Run the certutil.exe command and specify the -backupdb parameter.
C. Run the certutil.exe command and specify the -backup parameter.

D. Run the certutil.exe command and specify the -dump parameter.

Answer: B


QUESTION 15

Your network contains an Active Directory domain named contoso.com. All servers run Windows Server

2012.

The domain contains a domain controller named DC1 that is configured as an enterprise root certification authority (CA).

All users in the domain are issued a smart card and are required to log on to their domain-joined client computer by using their smart card.

A user named User1 resigned and started to work for a competing company.

You need to prevent User1 immediately from logging on to any computer in the domain. The solution must not prevent other users from logging on to the domain.

Which tool should you use?

A. Active Directory Sites and Services

B. Active Directory Administrative Center

C. Server Manager

D. Certificate Templates

Answer: B


QUESTION 16

Your company has a main office and a branch office.

The main office contains a file server named Server1. Server1 has the BranchCache for Network Files role service installed. The branch office contains a server named Server2. Server2 is configured as a BranchCache hosted cache server.

You need to preload the data from the file shares on Server1 to the cache on Server2. You generate hashes for the file shares on Server1.

Which cmdlet should you run next?

A. Add-BCDataCacheExtension

B. Set-BCCache

C. Publish-BCFileContent

D. Export-BCCachePackage

Answer: D


QUESTION 17

Your company has a main office and a branch office. The main office is located in Detroit. The branch office is located in Seattle.

The network contains an Active Directory domain named adatum.com. Client computers run either

The main office contains 1,000 client computers and 50 servers. The branch office contains 20 client computers.

All computer accounts for the branch office are located in an organizational unit (OU) named

SeattleComputers. A Group Policy object (GPO) named GPO1 is linked to the SeattleComputers OU. You need to configure BranchCache for the branch office.

Hot Area:

clip_image002

Answer:

clip_image003


QUESTION 18

You have a file server named Server1 that runs Windows Server 2012.

Data Deduplication is enabled on drive D of Server1.

You need to exclude D:Folder1 from Data Deduplication. What should you configure?

A. Disk Management in Computer Management

B. File and Storage Services in Server Manager

C. the classification rules in File Server Resource Manager (FSRM)
D. the properties of D:Folder1

Answer: B


QUESTION 19

Your network contains an Active Directory domain named contoso.com. The network contains a file server named Server1 that runs Windows Server 2012.

You create a folder named Folder1. You share Folder1 as Share1. The NTFS permissions on Folder1 are shown in the Folder1 exhibit. (Click the Exhibit button.)

clip_image004

The Everyone group has the Full control Share permission to Folder1.

You configure a central access policy as shown in the Central Access Policy exhibit. (Click the Exhibit button.)

clip_image005

Members of the IT group report that they cannot modify the files in Folder1.

You need to ensure that the IT group members can modify the files in Folder1. The solution must use central access policies to control the permissions.

Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

A. On the Classification tab of Folder1, set the classification to Information Technology.

B. On the Security tab of Folder1, add a conditional expression to the existing permission entry for the IT

group.

C. On Share 1, assign the Change Share permission to the IT group.

D. On the Security tab of Folder1, remove the permission entry for the IT group.

E. On the Security tab of Folder1, assign the Modify permission to the Authenticated Users group.

Answer: AD


QUESTION 20

Your network contains an Active Directory domain named contoso.com.

You are creating a custom Windows Recovery Environment (Windows RE) image.

You need to ensure that when a server starts from the custom Windows RE image, a drive is mapped automatically to a network share.

What should you modify in the image?

A. startnet.cmd

B. Xsl-mApp1ngs.xml

C. Win.ini

D. smb.types.ps1xml

Answer: A

 

Download Latest 70-412 Real Free Tests , help you to pass exam 100%.

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>