Microsoft 70-413: Designing and Implementing a Server Infrastructure

Pataasin ang iyong marka sa homework at exams ngayon gamit ang Quizwiz!

What is the default data-collection interval for the ServerDiscovery task?

1 day

What is the default file age for data deduplication?

5 days

How many days of data collection is recommended for performance reports?

7

Your network contains an Active Directory domain named domain01.com. Your company plans to open a branch office. The branch office will have 10 client computers that run Windows 8 and at least one server that runs Windows Server 2012. The server will host BranchCache files and manage print queues for the network print devices in the branch office. You need to recommend a solution to ensure that the users in the branch office can print if the branch office server fails. What should you recommend?

Branch Office Direct Printing

You need to move the DHCP database. Assuming a standard Windows directory and Program Files path structure and that you've changed the path in the DHCP Manager, what's the default path where the DHCP database is found?

C:\ Windows\ system32\ dhcp

You've configured cache locking and have received reports that clients are receiving stale DNS query responses. Which registry key do you need to change in order to change the TTL ratio that remains locked?

CacheLockingPercent

Which type of profile can you use to determine whether a machine is deployed to be highly available?

Capability

You have a computer configured and need to take an image of it to use as the reference image for deployments. What type of boot image do you need to create to obtain the image?

Capture image

You need to recommend which changes must be implemented to the network before you can deploy the new web application. What should you include in the recommendation?

Change the forest functional level to Windows Server 2008 R2

You are evaluating the implementation of data deduplication on the planned Windows Server 2012 file servers. The planned servers will have the identical disk configurations as the current servers. You need to identify which volumes can be enabled for data deduplication. Which volumes should you identify?

DATA

Your company has 100 users in the sales department. Each sales user has a domain-joined laptop computer that runs either Windows 7 or Windows 8. The sales users rarely travel to the company's offices to connect directly to the corporate network. You need to recommend a solution to ensure that you can manage the sales users' laptop computers when the users are working remotely. What solution should you include in the recommendation?

Deploy the Remote Access server role on a server on the internal network.

You need to edit an image to change its configuration. The first step is to mount the image. What tool would you use?

Deployment Image Servicing and Management (DISM)

You are planning the implementation of two new servers that will be configured as RADIUS servers. You need to recommend which configuration must be performed on the VPN servers. The solution must meet the technical requirements. What should you do on each VPN server?

Enable DirectAccess

Internet must be routed through the corporate network. You need to recommend a solution for the planned DirectAccess deployment that meets the security policy requirement. What should you include in the recommendation?

Enable force tunneling

Your network contains an Active Directory domain named domain01.com. The domain contains an organizational unit (OU) named OU1. You have a Group Policy object (GPO) named GPO1 that is linked to domain01.com. GPO1 contains custom security settings. You need to design a Group Policy strategy to meet the following requirements: The security settings in GPO1 must be applied to all client computers. Only GPO1 and other GPOs that are linked to OU1 must be applied to the client computers in OU1. What should you include in the design?

Enable the Block Inheritance option at the domain level. Enable the Enforced option on GPO1

When configuring an NLB configuration, what do you first need to do?

Enable the Network Load Balancing feature.

Which of the following isn't a valid criterion for grouping events?

Event Region

In which step of DirectAccess deployment do you configure things such as the DNS server and related servers to be used by DirectAccess clients?

Infrastructure deployment

One of the technical requirements states that DHCP IP address leases must be logged centrally. Which of the following solutions can be used for logging the IP address leases and the name of the user the IP address was leased to?

IP Address Management (IPAM)

You need to grant access for viewing audit information within IPAM. To which group should you add a user to, to grant that user the minimum level of permission for this task?

IPAM IP Audit Administrators

Your company has a main office that contains several servers and several users. The main office contains a file server named Server1 that runs Windows Server 2012. The users access a large report file that is created on Server1 each day. The company plans to open a new branch office. The branch office will contain only client computers. You need to implement a solution to reduce the amount of bandwidth used by the client computers in the branch office to download the report each day. What should you do?

Install the BranchCache for network files role service on Server1. Configure the client computers to use Branchcache in distributed mode

What type of domain migration automatically retains user passwords?

Intraforest

While implementing split scope, you notice that the secondary server is responding to numerous DHCP requests first. What's the best way to handle this situation?

Introduce a delay for DHCP offers from the secondary using the DHCP management console.

Your network contains an Active Directory forest named domain01.com. The forest contains a single domain and two sites named Montreal and Vancouver. Montreal contains an IP Address Management (TPAM) server named Server1 that is used to manage all of the DHCP servers and the DNS servers in the site. Vancouver contains several DHCP servers and several DNS servers. In Vancouver, you install the IP Address Management (IPAM) Server feature on a server named Server2. You need to recommend which configurations must be performed to ensure that the DHCP servers and the DNS servers in Vancouver are managed by Server2. What should you recommend

Replicate the IPAM database from Server1 to Server2 On Server2, change the manageability status of the DNS servers and the DHCP servers in Vancouver

You're deploying Windows Server 2012 using WDS and have multiple locations that need an image, so you need to configure a multisite topology. Which of the following steps is key when working with a multisite topology?

Prestaging the client within WDS on the correct server

You are planning the decommissioning of research.domain01.com. You need to ensure that an administrator named Admin5 in the research department can manage the user accounts that are migrated to domain01.com. The solution must minimize the number of permissions assigned to Admin5. What should you do before you migrate the user accounts?

Run the New-Object cmdlet, and then run the Add-ADPrincipalGroupMembership cmdlet

You need to recommend a management solution for the GPOs. The solution must meet the technical requirements. What should you include in the recommendation?

Microsoft Baseline Security Analyzer (MBSA)

Your network contains an Active Directory forest named domain01.com. The forest contains five domains. You need to ensure that the CountryCode attribute is replicated to the global catalog. What should you do?

Modify the schema partition

There are four steps involved in planning for server virtualization. Which of the following is not one of those steps?

Optimize workload resources

When WDS and DHCP operate on the same server, which DHCP option needs to be configured for WDS?

Option 60

Which tool is used to edit or change service templates?

Service Template Designer

Your company plans to hire 100 sales representatives who will work remotely. Each sales representative will be given a laptop that will run Windows 7. A corporate image of Windows 7 will be applied to each laptop. While the laptops are connected to the corporate network, they will be joined to the domain. The sales representatives will not be local administrators. Once the laptops are configured, each laptop will be shipped by courier to a sales representative. The sales representative will use a VPN connection to connect to the corporate network. You need to recommend a solution to deploy the VPN settings for the sales representatives. The solution must meet the following requirements: Ensure that the VPN settings are the same for every sales representative. Ensure that when a user connects to the VPN, an application named App1 starts. What is the best approach to achieve the goal?

The Add-VpnConnection cmdlet

This type of migration from Forefront UAG has the least downtime.

Side-by-side

What information should the EKU field on a certificate store?

The Server Authentication object identifier

You are deploying an Active Directory network for a company named Domain101.com. The company has an Internet accessible website named www.domain101.com. The Domain101.com domain is hosted by the company's ISP. The Domain101.com DNS zone contains many records for Internet accessible resources. You need to design an Active Directory infrastructure. You need to plan Active Directory forest and domain names with a DNS infrastructure that enables users to resolve the names of Internet resources that use the Domain101.com DNS suffix. Administrative effort associated with the management of DNS records should be minimized. How should you configure the Active Directory?

You should create a single-domain forest named Domain101.local

Your company has a main office and a branch office. The network contains an Active Directory domain named domain01.com. The main office contains domain controllers that run Windows Server 2012. The branch office contains a read-only domain controller (RODC) that runs Windows Server 2012. You need to recommend a solution to control which Active Directory attributes are replicated to the RODC. What should you include in the recommendation?

The filtered attribute set

You need to deploy an IPv4-based Teredo solution. In the firewall, which protocol and ports should be allowed for Teredo?

UDP/ 3544

You have configured a deployment and began the deployment to a client computer and want the client computer to boot from the hard drive after installation. Which command creates this configuration?

wdsutil /set-server /resetbootprogram:yes

iSCSI requires that which two roles or services be available?

iSCSI Target and iSCSI Initiator

Your network contains an Active Directory domain named domain01.com. All domain controllers run Windows Server 2012 R2. The forest functional level is Windows Server 2012. Your company plans to deploy an application that will provide a search interface to users in the company. The application will query the global catalog for the Employee-Number attribute. You need to recommend a solution to ensure that the application can retrieve the Employee-Number value from the global catalog. What should you include in the recommendation?

the Dsmod command

You work for a company named Domain101.com. Your role of Network Administrator includes the management of the company's Windows 2012 Active Directory Domain Services (AD DS) domain. All servers in the network run Windows Server 2012. You want to delegate control of a custom task on several organizational units (OUs) to a user named Mia. However you discover that the custom task that you want to delegate is not listed in the list of tasks. How can you add the custom task to the list of available tasks to delegate?

By adding the custom task to the Delegwiz.inf file.

When do IPAM servers exchange information on the servers under their respective management?

Never, IPAM servers don't exchange information

A new company registers the domain name of domain01.com. The company has a web presence on the Internet. All Internet resources have names that use a DNS suffix of domain01.com. A third-party hosts the Internet resources and is responsible for managing the domain01.com DNS zone on the Internet. The zone contains several hundred records. The company plans to deploy an Active Directory forest. You need to recommend an Active Directory forest infrastructure to meet the following requirements: Ensure that users on the internal network can resolve the names of the company's Internet resources. Minimize the amount of administrative effort associated with the addition of new Internet servers. What should you recommend?

A forest that contains a single domain named domain01.com

Which of the following are not eligible for data deduplication?

ext3

You have a shared folder that is accessed by using the path \\domain01.com\shares\software. The folder will be replicated to a local file server in each branch office by using Distributed File System (DFS) replication. You need to recommend an Active Directory site design to meet the following requirements: Ensure that users in the branch offices will be authenticated by a domain controller in the closest regional datacenter. Ensure that users automatically connect to the closest file server when they access \\domain01.com\shares\software. How many Active Directory sites should you recommend?

111

Your company is a hosting provider that provides cloud-based services to multiple customers. Each customer has its own Active Directory forest located in your company's datacenter. You plan to provide VPN access to each customer. The VPN solution will use RADIUS for authentication services and accounting services. You need to recommend a solution to forward authentication and accounting messages from the perimeter network to the Active Directory forest of each customer. What should you recommend?

A RADIUS server for each customer and one RADIUS proxy

sites. The sites are located in different cities and connect to each other by using low-latency WAN links. In each site, you plan to implement Microsoft System Center 2012 Configuration Manager and to deploy multiple servers. You need to recommend which Configuration Manager Component must be deployed to each site for the planned deployment. What should you include in the recommendation?

A distribution group point

Your network contains an Active Directory forest named domain01.com. You plan to add a new domain named child.domain01.com to the forest. On the DNS servers in child.domain01.com, you plan to create conditional forwarders that point to the DNS servers in domain01.com. You need to ensure that the DNS servers in domain01.com can resolve names for the servers in child.domain01.com. What should you create on the DNS servers in domain01.com?

A zone delegation

Your network contains a server named Server1 that runs Windows Server 2012. Server1 has the Network Policy Server server role installed. You configure Server1 as part of a Network Access Protection (NAP) solution that uses the 802.lx enforcement method, You add a new switch to the network and you configure the switch to use 802.lx authentication. You need to ensure that only compliant client computers can access network resources through the new switch. What should you do on Server1?

Add the IP address of each new switch to a remediation server group.

The Windows Server Migration Tools are added with which command?

Add-PSSnapin Microsoft.Windows.ServerManager.Migration

Which command adds the iSCSI Target Server role to Windows Server 2012?

Add-WindowsFeature fs-iscsitarget-server

When creating a Scheduled Cast multicast deployment, with which of the following methods can you begin deployment?

At a future time and/ or when a threshold of clients request an image

Which type of packet tracing log overwrites any existing log file found in the same location?

Circular

DHCP1. All client computers are part of the 131.107.0.0/16 IPv4 subnet. You plan to implement changes to the network subnets to include a separate subnet for each floor of the office building. The subnets will connect by using routers. You need to recommend changes to the DHCP infrastructure to ensure that all of the client computers can receive their IP configuration by using DHCP. What should you recommend?

Configure each router to forward requests for IP addresses to DHCP1. Create a scope for each

You are configuring a network for a company that has multiple buildings in a campus layout. The network consists of a Windows Server 2012 Active Directory Domain Services (AD DS) domain. A single datacenter hosts most of the company's servers. You are deploying client computers to 8 new buildings. Each building will have a separate subnet. A router in each building will connect each subnet to the datacenter. You want to manage IP address deployment from a single highly available DHCP server in the datacenter. Your solution must minimize costs. How should you configure the infrastructure?

Configure the routers to forward DHCP requests to the datacenter DHCP server and configure a separate DHCP scope for each building

Your network contains an Active Directory forest named domain01.com. The forest contains one domain. Your company plans to open a new division named Division1. A group named Division1Admins will administer users and groups for Division1. You identify the following requirements for Division1: All Division1 users must have a complex password that is 14 characters. Division1Admins must be able to manage the user accounts for Division1. Division1Admins must be able to create groups, and then delete the groups that they create. Division1Admins must be able to reset user passwords and force a password change at the next logon for all Division1 users. You need to recommend changes to the forest to support the Division1 requirements. What should you recommend?

Create a new child domain named divisionl.domain01.com. Move all of the Division1 user accounts to the new domain. Add the Division1Admin members to the Domain Admins group. Configure the password policy in a Group Policy object (GPO).

Your company has a main office and 20 branch offices. All of the offices connect to each other by using a WAN link. The network contains an Active Directory forest named domain01.com. The forest contains a domain for each office. The forest root domain contains all of the server resources. Each branch office contains two domain controllers for the branch office domain and one domain controller for the domain01.com domain. Each branch office has a support technician who is responsible for managing the accounts of their respective office only. You recently updated all of the WAN links to high-speed WAN links. You need to recommend changes to the Active Directory infrastructure to meet the following requirements: Reduce the administrative overhead of moving user accounts between the offices. Ensure that the support technician in each office can manage the user accounts of their respective office. What should you include in the recommendation?

Create shortcut trusts between each child domain. In the main office, add a domain controller to each branch office domain

Your network contains an Active Directory domain named domain01.com. The domain contains servers that run either Windows Server 2008 R2 or Windows Server 2012. All client computers on the internal network are joined to the domain. Some users establish VPN connections to the network by using Windows computers that do not belong to the domain. All client computers receive IP addresses by using DHCP. You need to recommend a Network Access Protection (NAP) enforcement method to meet the following requirements: Verify whether the client computers have up-to-date antivirus software. Provides a warning to users who have virus definitions that are out-of-date. Ensure that client computers that have out-of-date virus definitions can connect to the network. Which NAP enforcement method should you recommend?

DHCP

You plan to deploy multiple servers in a test environment by using Windows Deployment Services (WDS). You need to identify which network services must be available in the test environment to deploy the servers. Which network services should you identify?

DHCP and WINS

You have a server named Server1 that runs Windows Server 2012. Server1 has the DNS Server server role installed. You need to recommend changes to the DNS infrastructure to protect the cache from cache poisoning attacks. What should you configure on Server1?

DNS cache locking

Your network contains an internal network and a perimeter network. The internal network contains an Active Directory forest named domain01.com. The forest contains a Microsoft Exchange Server 2010 organization. All of the domain controllers in domain01.com run Windows Server 2012. The perimeter network contains an Active Directory forest named litware.com. You deploy Microsoft Forefront Unified Access Gateway (UAG) to litware.com. All of the domain controllers in litware.com run Windows Server 2012. Some users connect from outside the network to use Outlook Web App. You need to ensure that external users can authenticate by using client certificates. What should you do?

Deploy UAG to domain01.com

What is a domain trust between forests called?

External trust

Logical networks are managed through which workspace?

Fabric

You need to recommend a fault-tolerant solution for the VPN. The solution must meet the technical requirements. What should you include in the recommendation?

Failover Clustering

Your network contains an Active Directory domain named domain01.com. All client computers run either Windows 7 or Windows 8. Some users work from customer locations, hotels, and remote sites. The remote sites often have firewalls that limit connectivity to the Internet. You need to recommend a VPN solution for the users. Which protocol should you include in the recommendation?

L2TP/IPSec

You need to recommend changes to the DNS environment that support the implementation of the sales.domain01.com domain. The solution must ensure that the users in all of the domains can resolve both Internet names and the names of the servers in all of the internal domains. What should you recommend?

On the DNS servers in domain01.com, configure a reverse lookup zone. On the DNS servers in sales.domain01.com, configure a conditional forwarder to domain01.com

Which of the following isn't identified as a certificate scenario for Remote Access?

PPTP

You implement and authorize the new DHCP servers. You import the server configurations and the scope configurations from PA1 and AMI. You need to ensure that clients can obtain DHCP address assignments after you shut down PA1 and AMI. The solution must meet the technical requirements. What should you do?

Run the Get-DhcpServerv4Lease cmdlet and the Add-DhcpServerv4Lease cmdlet. Activate the scopes

Your network contains an Active Directory domain named domain01.com. All servers run Windows Server 2008 R2. All domain controllers are installed on physical servers. The network contains several Hyper-V hosts. The network contains a Microsoft System Center 2012 infrastructure. You plan to use domain controller cloning to deploy several domain controllers that will run Windows Server 2012. You need to recommend which changes must be made to the network infrastructure before you can use domain controller cloning. What should you recommend?

Upgrade the domain controller that has the infrastructure master operations master role to Windows Server 2012. Install the Windows Deployment Services server role on a server that runs Windows Server 2012.

Your network contains an Active Directory forest named domain01.com. The forest is managed by using Microsoft System Center 2012. Web developers must be able to use a self-service portal to request the deployment of virtual machines based on predefined templates. The requests must be approved by an administrator before the virtual machines are deployed. You need to recommend a solution to deploy the virtual machines. What should you include in the recommendation?

Virtual Machine Manager (VMM) service template, an Operations Manager dashboard, and an Orchestrator runbook

Along with the remote registry server, the MAP toolkit typically uses which type of communication to collect information?

WMI

When two servers in a RADIUS server group have the same priority, which setting is used to determine how often requests are sent to each server?

Weight

You work for a company named Domain101.com. Your role of Network Administrator includes the management of the company's Windows 2012 Active Directory Domain Services (AD DS) domain. All servers in the network run Windows Server 2012. All client computers run either Windows 7 or Windows 8. All client computers run Windows Defender. Currently all client computers are configured to download the latest Windows Defender antivirus definitions every night. You want to implement a centralized solution for the management of the Windows Defender updates. Your solution must reduce the bandwidth used for downloading the updates and minimize costs. What should you use to manage the Windows Defender antivirus definitions?

Windows Server Update Services (WSUS)

Your network contains multiple servers that run Windows Server 2012. All client computers run Windows 8. You need to recommend a centralized solution to download the latest antivirus definitions for Windows Defender. What should you include in the recommendation?

Windows Server Update Services (WSUS)

Your network contains an Active Directory forest named domain01.com. The forest functional level is Windows Server 2012. The forest contains an Active Directory domain. The domain contains a global security group named GPO_Admins that is responsible for managing Group Policies in the forest. A second forest named fabrikam.com contains three domains. The forest functional level is Windows Server 2003. You need to design a trust infrastructure to ensure that the GPO_Admins group can create, edit, and link Group Policies in every domain of the fabrikam.com forest. What should you include in the design?

one-way forest trust


Kaugnay na mga set ng pag-aaral

Quiz 2 (chapter 6 and 7)neuroscience

View Set

Chapter 12 Personal finance terms

View Set

History of Healthcare in America

View Set

Psychology: Development Issues, Prenatal Development and the Newborn (Module 13)

View Set

Earth and Space Science chapter 17 Test

View Set