Windows 10 70-697: Configuring Windows Devices

Ace your homework & exams now with Quizwiz!

A company has 100 client computers that run Windows 10 Enterprise. A new company policy requires that all client computers have static IPv6 addresses. You need to assign static IPv6 addresses to the client computers. Which Network Shell (netsh) command should you run? A. add address B. set interface C. set global D. set address

A

At home, you use a Windows 10 desktop computer. At work, you use a Windows 10 laptop that is connected to a corporate network. You use the same Microsoft account to log on to both computers. You have a folder with some personal documents on your desktop computer. The folder must be available and synced between both computers. You need to ensure that the latest version of these files is available. What should you do? A. Create a folder by using OneDrive for Windows. Move all of the personal documents to the new folder. B. Move the folder to the Libraries folder. Go to PC Settings. Under Sync your settings, enable App settings. C. Right-click the folder and click Properties. Under Security, provide Full Control for the Microsoft account. D. Right-click the folder and select Share With, and then select Homegroup (view and edit).

A

HOTSPOT You administer Windows 10 Enterprise computers in your company network, including a computer named Wst1. Wst1 is configured with multiple shared printer queues. Wst1 indicates hardware errors. You decide to migrate the printer queues from Wst1 to a new computer named Client1. You export the printers on Wst1 to a file. You need to import printers from the file to Client1. From the Print Management console, which Print Management node should you select? To answer, select the appropriate node in the answer area. A. Print Management B. All Printers C. All Drivers D. Printers Not Ready E. Printers With Jobs F. Client1 (local) G. Drivers H. Forms

A

HOTSPOT You provide support for a small company. The company purchases a Windows 10 laptop for an employee who travels often. The company wants to use BitLocker to secure the hard drive for the laptop in case it is lost or stolen. While attempting to enable BitLocker, you receive the following error message: This device can't use a Trusted Platform Module. Your administrator must set the "Allow BitLocker without a compatible TPM" option in the "Require additional authentication at startup" policy for OS volumes. A supported configuration for BitLocker is possible on this laptop. A. Yes B. No

A

IPv6 has a vastly larger address space than IPv4. This expansion provides flexibility in allocating addresses and routing traffic and eliminates the primary need for network address translation (NAT). Do you know how many more bits there are in an IPv4 address compared to an IPv6 address? A. 4 times more B. 6 times more C. Twice as many D. 8 times more

A

You administer laptop and desktop computers that run Windows 8 Pro. Your company uses Active Directory Domain Services (AD DS) and Active Directory Certificate Services (AD CS). Your company decides that access to the company network for all users must be controlled by two-factor authentication. You need to configure the computers to meet this requirement. What should you do? A. Install smart card readers on all computers. Issue smart cards to all users. B. Enable the Password must meet complexity requirements policy setting. Instruct users to logon by using the domain \username format for their username and their strong password. C. Create an Internet Protocol security (IPsec) policy that requires the use of Kerberos to authenticate all traffic. Apply the IPsec policy to the domain. D. Issue photoidentification to all users. Instruct all users to set up and use PIN Logon.

A

You are a systems administrator of a small branch office. Computers in the office are joined to a Windows 8 HomeGroup. The HomeGroup includes one shared printer and several shared folders. You join a new computer to the HomeGroup and try to access the HomeGroup shared folders. You discover that the shared folders are unavailable, and you receive an error message that indicates the password is incorrect. You need to reconfigure the new computer in order to access the HomeGroup resources. What should you do? A. Adjust the time settings on the new computer to match the time settings of the HomeGroup computers. B. Change the HomeGroup password and re-enter it on the computers of all members of the HomeGroup. C. Change the default sharing configurationfor the shared folders on the HomeGroup computers. D. Reset your account password to match the HomeGroup password.

A

You are an IT consultant for small and mid-sized business. One of your clients wants to start using Virtual Smart Cards on its Windows 10 Enterprise laptops and tablets. Before implementing any changes, the client wants to ensure that the laptops and tablets support Virtual Smart Cards. You need to verify that the client laptops and tablets support Virtual Smart Cards. What should you do? A. Ensure that each laptop and tablet has a Trusted Platform Module (TPM) chip of version 1.2 or greater. B. Ensure that BitLocker Drive Encryption is enabled on a system drive of the laptops and tablets. C. Ensure that each laptop and tablet can read a physical smart card. D. Ensure that the laptops and tablets are running Windows 10 Enterprise edition.

A

You are using sysprep to prepare a system for imaging. You want to enable end users to customize their Windows operating system, create user accounts, name the computer, and other tasks. Which sysprep setting should you use? A. /oobe B. /audit C. /generalize D. /unattend

A

You are using sysprep to prepare a system for imaging. You want to reset the security ID (SID) and clear the event logs. Which option should you use? A. /generalize B. /oobe C. /audit D. /unattend

A

You have an image of Windows 10 Enterprise named Image1. Image1 has version number 1.0.0.0 of a custom, line-of-business universal app named App1. You deploy Image1 to Computer1 for a user named User1. You need to update App1 to version 1.0.0.1 on Computer1 for User1 only. A. Add-AppxPackage -path B. Add-AppxProvisionedPackage -MainPackage C. Set-AppxProvisionedDataFile -dependancypath

A

You have set up a new wireless network for one of your prestigious clients. The director wants to ensure that only certain designated wireless laptops can connect to the new network to prevent misuse. What do you need to do? A. Use MAC address control B. Use IPv4 address control C. Use WEP D. Use WPA

A

You manage Microsoft Intune for a company named Contoso. Intune client computers run Windows 10 Enterprise. You notice that there are 25 mandatory updates listed in the Intune administration console. You need to prevent users from receiving prompts to restart Windows following the installation of mandatory updates. Which policy template should you use? A. Microsoft Intune Agent Settings B. Windows Configuration Policy C. Microsoft Intune Center Settings D. Windows Custom Policy (Windows 10 and Windows 10 Mobile)

A

You support Windows 10 Enterprise computers that are members of an Active Directory domain. Your company policy defines the list of approved Windows Store apps that are allowed for download and installation. You have created a new AppLocker Packaged Apps policy to help enforce the company policy. You need to test the new AppLocker Packaged Apps policy before you implement it for the entire company. What should you do? A. From Group Policy, enforce the new AppLocker policy in Audit Only mode. B. From Group Policy, run the Group Policy Results Wizard. C. From Group Policy, run the Group Policy Modeling Wizard. D. From PowerShell, run the Get-AppLockerPolicy -Effective command to retrieve the AppLocker effective policy.

A

Your network contains an Active Directory domain. The domain contains 100 Windows 10 client computers. All of the computers secure all connections to computers on the internal network by using IPSec. The network contains a server that runs a legacy application. The server does NOT support IPSec. You need to ensure that some of the Windows 8 computers can connect to the legacy server. The solution must ensure that all other connections are secured by using IPSec. What should you do? A. Modify the settings of the Domain Profile. B. Create a connection security rule. C. Create an inbound firewall rule. D. Modify the settings of the Private Profile.

A

DRAG DROP You manage 50 computers that run Windows 10 Enterprise. You have a Microsoft Azure RemoteApp deployment. The deployment consists of a hybrid collection named Collection1. All computers have the Hyper-V feature installed and have a virtual machine that runs Windows 7. You plan to install applications named App1 and App2 and make them available to all users. App1 is a 32-bit application. App2 is a 64-bit application. You need to identify the installation method for each application. The solution needs to minimize the number of installations. Which deployment method should you identify for each application? To answer, drag the appropriate deployment methods to the correct applications. Each deployment method may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point. A. Azure RemoteApp B. Client Hyper-V C. Local Installation

A, A

You administer computers that run Windows 8 Pro and are members of an Active Directory domain. The computers are encrypted with BitLocker and are configured to store BitLocker encryption passwords in Active Directory. A user reports that he has forgotten the BitLocker encryption password for volume E on his computer. You need to provide the user a BitLocker recovery key to unlock the protected volume. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.) A. Ask the user for his computer name. B. Ask the user to run the manage-bde-unlock E:-pw command. C. Ask the user for his logon name. D. Ask the user for a recovery keyID for the protected volume.

A, B

You are the desktop administrator for a small company. Your workgroup environment consists of Windows 10 Enterprise computers. You want to prevent 10 help desk computers from sleeping. However, you want the screens to shut off after a certain period of time if the computers are not being used. You need to configure and apply a standard power configuration scheme for the 10 help desk computers on your network. Which two actions should you perform? Each correct answer presents part of the solution. A. Import the power scheme by using POWERCFG /IMPORT on each of the remaining help desk computers. Set the power scheme to Active by using POWERCFG /S. B. Use POWERCFG /X on one help desk computer to modify the power scheme to meet the requirements. Export the power scheme by using POWERCFG /EXPORT. C. Use POWERCFG /S on one help desk computer to modify the power scheme to meet the requirements. Export the power scheme by using POWERCFG /EXPORT. D. Import the power scheme by using POWERCFG /IMPORT on each of the remaining help desk computers. Set the power scheme to Active by using POWERCFG /X.

A, B

You have a desktop computer that runs Windows 8 Enterprise. You add three new 3-terabyte disks. You need to create a new 9-terabyte volume. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.) A. From Disk Management, create a new spanned volume. B. From Disk Management, convert all of the 3-terabyte disks to GPT. C. From PowerShell, run the New-VirtualDisk cmdlet. D. From Disk Management, bring all disks offline. E. From Diskpart, run the Convert MBR command. F. From PowerShell, run the Add-PhysicalDisk cmdlet.

A, B

DRAG DROP You plan to deploy a Microsoft Azure RemoteApp collection by using a custom template image. The image will contain Microsoft Word and Excel Office 365 ProPlus programs. You need to install the Word and Excel programs. The solution must minimize the amount of Internet traffic used during installation. Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. A. Download the Office Deployment Tool. B. Modify the Click-to-Run for Office 365 Configuration.xml file. C. Run setup.exe /configure D. Download the Office 365 Deployment Readiness Tool. E. Run setup.exe /packager F. Run setup.exe /download

A, B, F, C

A company has an Active Directory Domain Services (AD DS) domain. All client computers run Windows 10 Enterprise. Some computers have a Trusted Platform Module (TPM) chip. You need to configure a single Group Policy object (GPO) that will allow Windows BitLocker Drive Encryption on all client computers. Which two actions should you perform? Each correct answer presents part of the solution. A. Enable the Require additional authentication at startup policy setting. B. Enable the Enforce drive encryption type on operating system drives policy setting. C. Enable the option to allow BitLocker without a compatible TPM. D. Configure the TPM validation profile to enable Platform Configuration Register indices (PCRs) 0, 2, 4, and 11.

A, C

You have a Windows 10 Enterprise computer named Computer1. Computer1 has File History enabled. You create a folder named Folder1 in the root of the C: drive. You need to ensure that Folder1 is protected by File History. What are two possible ways to achieve the goal? Each correct answer presents a complete solution. A. From File Explorer, include Folder1 in an existing library. B. Modify the Advanced settings from the File History Control Panel item. C. From the Settings app, modify the Backup options. D. From File Explorer, modify the system attribute of Folder1.

A, C

Your company has a main office that has a connection to the Internet. The company has 100 Windows 10 Pro client computers that run Microsoft Office 2010. You purchase a subscription to Office 365 for each user. You download the Office Deployment Tool for Clickto- Run. You need to deploy Office 365 Pro Plus to the computers. The solution must minimize the amount of traffic over the Internet connection. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.) A. On a file server, run setup.exe and specify the /download parameter. B. On each client computer, run setup.exe and specify the /configure parameter. C. On a file server, run setup.exe and specify the /configure parameter. D. On each client computer, run setup.exe and specify the /download parameter.

A, C

DRAG DROP You administer Windows 10 Enterprise computers. Your company has a team of technical writers that is preparing technical manuals and help files. The team manager wants to ensure that the technical writers are able to restore any documents that been modified within the last year. You need to ensure that the technical writers can restore Microsoft Word files to any previous versions for up to one year. Which three actions should you perform in sequence? A. Create a network share, configure NTFS, and then share permissions. B. Turn on System Protection and create a restore point. C. Turn on File History. D. Configure the Keep Saved Versions setting

A, D, C

HOTSPOT You have a server that runs Windows Server 2012 R2 server named Server1. Server1 has Remote Desktop Services (RDS) installed. You create a session collection named Session1 and publish a RemoteApp in Session1. Server1 has an application named App1. The executable for App1 is C:\Apps\App1.exe. You need to ensure that App1 is available as a RemoteApp in Session1. What command should you run? To answer, select the appropriate options in the answer area. A. Get-RDRemoteApp -CollectionName "Session1" -FilePath "C:\Apps\App1.exe" B. New-RDRemoteApp -CollectionName "Session1" -FilePath "C:\Apps\App1.exe" C. Set-RDRemoteApp -InformationVariable "Session1" -FileVirtualPath "C:\Apps\App1.exe" D. Set-RDSessionCollectionConfiguration -UserGroup "Session1" -RequiredCommandLine "C:\Apps\App1.exe"

B

You administer Windows 10 Enterprise desktop computers that are members of an Active Directory domain. You want to create an archived copy of user profiles that are stored on the desktops. You create a standard domain user account to run a backup task. You need to grant the backup task user account access to the user profiles. What should you do? A. Add the backup task account to the Remote Management Users group on a domain controller. B. Add the backup task account to the Backup Operators group on every computer. C. Add the backup task account to the Backup Operators group on a domain controller. D. Set the backup task account as NTFS owner on all the profiles.

B

You administer computers that run Windows 8 Enterprise in an Active Directory domain in a single Active Directory Site. All user account objects in Active Directory have the Manager attribute populated. The company has purchased a subscription to Windows Intune. The domain security groups are synchronized with the Microsoft Online directory. You create a Windows Intune group that specifies a manager as a membership criterion. You notice that the group has no members. You need to ensure that users that meet the membership criteria are added to the Windows Intune group. What should you do? A. Force Active Directory replication within thedomain. B. Ensure that all user accounts are identified as synchronized users. C. Ensure that the user who is performing the search has been synchronized with the Microsoft Online directory. D. Synchronize the Active Directory Domain Service (AD DS) with the Microsoft Online directory.

B

You are a system administrator for a department that has Windows 10 Enterprise computers in a domain configuration. You deploy an application to all computers in the domain. You need to use group policy to restrict certain groups from running the application. What should you do? A. Set up DirectAccess. B. Configure AppLocker. C. Disable BitLocker. D. Run the User State Management Tool.

B

You are a systems administrator for your company. The company has employees who work remotely by using a virtual private network (VPN) connection from their computers, which run Windows 8 Pro. These employees use an application to access the company intranet database servers. The company recently decided to distribute the latest version of the application through using a public cloud. Some users report that every time they try to download the application by using Internet Explorer, they receive a warning message that indicates the application could harm their computer. You need to recommend a solution that prevents this warning message from appearing, without compromising the security protection of the computers. What should you do? A. Publish the application through a public file transfer protocol (FTP) site. B. Publish the application through an intranet web site. C. Instruct employees to disable the SmartScreen Filter from within the Internet Explorer settings. D. Publish the application to Windows Store.

B

You deploy several tablet PCs that run Windows 10 Enterprise. You need to minimize power usage when the user presses the sleep button. What should you do? A. In Power Options, configure the sleep button setting to Sleep. B. In Power Options, configure the sleep button setting to Hibernate. C. Configure the active power plan to set the system cooling policy to passive. D. Disable the C-State control in the computer's BIOS.

B

You have a Windows 8.1 Enterprise client computer named Computer1. The Storage Spaces settings of Computer1 are configured as shown in the following exhibit. (Click the Exhibit button.) You plan to create a three-way mirror storage space in the storage pool and to set the size of the storage space to 50 GB. You need to identify the minimum number of disks that must be added to the storage pool for the planned mirror. How many disks should you identify? A. 1 B. 3 C. 4 D. 5

B

You have a client Windows 10 Enterprise computer. The computer is joined to an Active Directory domain. The computer does not have a Trusted Platform Module (TPM) chip installed. You need to configure BitLocker Drive Encryption (BitLocker) on the operating system drive. Which Group Policy object (GPO) setting should you configure? A. Allow access to BitLocker-protected fixed data drives from earlier version of Windows. B. Require additional authentication at startup. C. Allow network unlock at startup. D. Configure use of hardware-based encryption for operating system drives.

B

You manage a network that includes Windows 10 Enterprise computers. All of the computers on the network are members of an Active Directory domain. The company recently proposed a new security policy that prevents users from synchronizing applications settings, browsing history, favorites, and passwords from the computers with their Microsoft accounts. You need to enforce these security policy requirements on the computers. What should you do? A. On the Group Policy Object, configure the Accounts: Block Microsoft accounts Group Policy setting to Users can't add Microsoft accounts. B. On the Group Policy Object, configure the Accounts: Block Microsoft accounts Group Policy setting to Users can't add or log on with Microsoft accounts. C. From each computer, navigate to Change Sync Settings and set the Sync Your Settings options for Apps, Browser, and Passwords to Off. D. From each computer, navigate to Change Sync Settings and set the Sync Your Settings option to Off.

B

You purchase a new Windows 10 Enterprise desktop computer. You have four external USB hard drives. You want to create a single volume by using the four USB drives. You want the volume to be expandable, portable and resilient in the event of failure of an individual USB hard drive. You need to create the required volume. What should you do? A. From Control Panel, create a new Storage Space across 4 USB hard drives. Set resiliency type to Threeway mirror. B. From Control Panel, create a new Storage Space across 4 USB hard drives. Set resiliency type to Parity. C. From Disk Management, create a new spanned volume. D. From Disk Management, create a new striped volume.

B

You support Windows 10 Enterprise computers that are members of an Active Directory domain. Recently, several domain user accounts have been configured with super-mandatory user profiles. A user reports that she has lost all of her personal data after a computer restart. You need to configure the user's computer to prevent possible user data loss in the future. What should you do? A. Remove the .man extension from the user profile name. B. Configure Folder Redirection by using the domain group policy. C. Configure the user's documents library to include folders from network shares. D. Add the .dat extension to the user profile name.

B

You support Windows 10 Enterprise computers. Your company has started testing Application Virtualization (App-V) applications on several laptops. You discover that the App-V applications are available to users even when the laptops are offline. You need to ensure that the App-V applications are available to users only when they are connected to the company network. What should you do? A. Change user permissions to the App-V applications. B. Disable the Disconnected operation mode. C. Configure mandatory profiles for laptop users. D. Reset the App-V client FileSystem cache.

B

You support desktop computers and tablets that run Windows 8 Enterprise. All of the computers are able to connect to your company network from the Internet by using DirectAccess. Your company wants to deploy a new application to the tablets. The deployment solution must meet the following requirements: The application is able to access files stored on an internal solid-state drive (SSD) on the tablets. The application is isolated from other applications. The application uses the least amount of disk space on the tablet. You need to deploy the new application to the tablets. What should you do? A. Deploy the application as an Application Virtualization (App-V) package. Install the App-V 4.6 client on the tablets. B. Deploy the application as a published application on the Remote Desktop server. Create a Remote Desktop connection on the tablets. C. Install the application on a local drive on the tablets. D. Install the application in a Windows To Go workspace. E. Install Hyper-V on tablets. Install the application on a virtual machine. F. Publish the application to Windows Store. G. Install the application within a separate Windows 8 installation in a virtual hard disk (VHD) file. Configure the tablets with dual boot. H. Install the application within a separate Windows 8 installation in a VHDX file. Configure tablets with dual boot.

B

Your network contains an Active Directory domain named contoso.com. The domain contains Windows 10 Enterprise client computers. Your company has a subscription to Microsoft Office 365. Each user has a mailbox that is stored in Office 365 and a user account in the contoso.com domain. Each mailbox has two email addresses. You need to add a third email address for each user. What should you do? A. From Active Directory Users and Computers, modify the E-mail attribute for each user. B. From Microsoft Azure Active Directory Module for Windows PowerShell, run the Set-Mailbox cmdlet. C. From Active Directory Domains and Trust, add a UPN suffix for each user. D. From the Office 365 portal, modify the Users settings of each user.

B

DRAG DROP You administer 50 laptops that run Windows 7 Professional 32-bit. You want to install Windows 8 Pro 64-bit on every laptop. Users will keep their own laptops. You need to ensure that user application settings, Windows settings, and user files are maintained after Windows 8 Pro is installed. Which four actions should you perform in sequence? A. Run the Scanstate.exe c:\store /i:migdocs.xml /i:migapp.xml /v:13 /c /hardlink /nocompress command B. Copy the User State Migration Tool (USMT) files and tools to the source computer C. Run the Scanstate.exe c:\store /i>migdocs.xml /i:migapp.xml /v:13 /c command D. Install Windows 8 Pro on the existing Windows partition with no formatting or repartitioning. Install standard operating environment applications. E. Run the Loadstate.exe c:\store /i:migdocs.xml /i:migapp.xml /v:13 /c /hardlink /nocompress command F. Install Windows 8 Pro by deleting all existing partitions and creating a new one. Install standard operating environment applications.

B, A, F, E

DRAG DROP You have a Windows 8 computer. You need to migrate from Windows 8 to Windows 10 while retaining as much data as possible. You load the Windows 10 media into the DVD drive. Which three actions should you perform next in sequence? A. Under installation options, choose Keep personal files. B. Run the Setup.exe file from the DVD. C. Enter the license key. D. Under installation options, choose Windows settings.

B, C, A

DRAG DROP You manage Microsoft Intune for a company named Contoso. You have an administrative computer named Computer1 that runs Windows 10 Enterprise. You need to add a Windows Store universal app named App1 to the Company Portal Apps list for all users. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. A. From the Microsoft Intune administration console, manage the deployment settings of App1. B. Log on to Computer1 by using your domain account. C. On Computer1, run the Add Software - Microsoft Intune Software Publisher wizard. D. From the Windows Store, install App1 on Computer1. E. Log on to Computer1 by using the built-in Administrator account.

B, C, A

You have a computer named Computer1 that runs Windows 10 Enterprise. You add a 1 TB hard drive and create a new volume that has the drive letter D. You need to limit the amount of space that each user can consume on D: to 200 GB. Members of the Administrators group should have no limit. Which three actions should you perform? Each correct answer presents part of the solution. A. Run fsutil quota violations D:. B. Enable the Deny disk space to users exceeding quota limit setting. C. Enable the Enable Quota Management setting. D. Set a default quota limit. E. Run convert D: /FS:NTFS. F. Add a quota entry.

B, C, D

DRAG DROP Your network contains an Active Directory domain and 100 Windows 10 Enterprise client computers. All software is deployed by using Microsoft Application Virtualization (App-V) 5.0. Users are NOT configured as local administrators. Your company purchases a subscription to Microsoft Office 365 that includes Office 365 ProPlus. You need to create an App-V package for Office 365 ProPlus. Which three actions should you perform in sequence? A. Run the App-V Sequencer. B. Download the Office Deployment Tool for Click-to-Run. C. Run Setup /Download. D. Run the Office Customization Tool (OCT). E. Run Setup /Packager. F. Run Setup /Admin.

B, C, E

Employees are permitted to bring personally owned portable Windows 10 Enterprise computers to the office. They are permitted to install corporate applications by using the management infrastructure agent and access corporate email by using the Mail app. An employee's personally owned portable computer is stolen. You need to protect the corporate applications and email messages on the computer. Which two actions should you perform? Each correct answer presents part of the solution. A. Prevent the computer from connecting to the corporate wireless network. B. Change the user's password. C. Disconnect the computer from the management infrastructure. D. Initiate a remote wipe.

B, D

DRAG DROP You administer Windows 8 Pro computers in your company network. You discover that Sleep, Shut down and Restart are the only options available when you select the Power button as shown in the following exhibit (Click the Exhibit button.) You need to enable hibernation on the computer. Which three steps should you perform in sequence? A. Change When I press the power button menu settings. B. From the Charm Bar, open Change PC settings. C. Select Don't require a password. D. Select What the power button does.

B, D, A

DRAG DROP You administer computers that run Windows 8. The computers on your network are produced by various manufacturers and often require custom drivers. You need to design a recovery solution that allows the repair of any of the computers by using a Windows Recovery Environment (WinRE). In which order should you perform the actions? A. Create a bootable WinRE Recovery media. B Extract WinRE files from the WIndows Assessment and Deployment Kit (ADK). C. Unmount the image file. D. Add additional drivers. E. Mount the WinRE image file. F. Commit the changes.

B, E, D, F, C, A

A company has 10 portable client computers that run Windows 10 Enterprise. The portable client computers have the network connections described in the following table. Network name....Connection type....Network profile CorpWired ....Wired .....Private CorpWifi ....Wireless .....Public HotSpot .....Public Hotspot .....Public None of the computers can discover other computers or devices, regardless of which connection they use. You need to configure the connections so that the computers can discover other computers or devices only while connected to the CorpWired or CorpWifi connections. What should you do on the client computers? A. For the CorpWifi connection, select Yes, turn on sharing and connect to devices. B. Turn on network discovery for the Public profile. C. Change the CorpWired connection to public. Turn on network discovery for the Public profile. For the HotSpot connection, select No, don't turn on sharing or connect to devices. D. For the CorpWired connection, select Yes, turn on sharing and connect to devices. E. Turn on network discovery for the Private profile.

C

You administer a Windows 10 Enterprise computer that runs Hyper-V. The computer hosts a virtual machine with multiple snapshots. The virtual machine uses one virtual CPU and 512 MB of RAM. You discover that the virtual machine pauses automatically and displays the state as paused-critical. You need to identify the component that is causing the error. Which component should you identify? A. no virtual switch defined B. insufficient memory C. insufficient hard disk space D. insufficient number of virtual processors

C

You administer a Windows 10 Enterprise computer. The computer has File History turned on, and system protection turned on for drive C. You accidentally delete a folder named Libraries\Customers by using the Shift+Delete keyboard shortcut. You need to restore the most recent version of the folder to its original location. Which approach should you use to restore the folder? A. Recycle Bin B. the latest restore point C. File History D. a manually selected restore point

C

You have 100 client Windows 10 computers. Users are NOT configured as local administrators. You need to prevent the users from running applications that they downloaded from the Internet, unless the applications are signed by a trusted publisher. What should you configure in the Security settings from the Action Center? A. Virus protection B. User Account Control C. WindowsSmartScreen settings D. Network Access Protection

C

You have a Microsoft Intune subscription. You have three security groups named Security1, Security2 and Security3. Security1 is the parent group of Security2. Security2 has 100 users. You need to change the parent group of Security2 to be Security3. What should you do first? A. Edit the properties of Security1. B. Edit the properties of Security2. C. Delete security2. D. Remove all users from Security2.

C

You have a computer named Computer1 that runs Windows 10 Enterprise. You plan to install the most recent updates to Computer1. You need to ensure that you can revert to the current state of Computer1 in the event that the computer becomes unresponsive after the update. What should you include in your solution? A. The Reset this PC option from the Recovery section of the Settings app B. The Sync your settings options from the Accounts section of the Settings app C. The Backup and Restore (Windows 7) control panel item D. The Refresh your PC option from the PC Settings

C

You have a computer named Computer1 that runs Windows 10 Enterprise. Computer1 is a member of an Active Directory domain named contoso.com. You have a line-of-business universal app named App1. App1 is developed internally. You need to ensure that you can run App1 on Computer1. The solution must meet the following requirements: Minimize costs to deploy the app. Minimize the attack surface on Computer1. What should you do? A. Have App1 certified by the Windows Store. B. Sign App1 with a certificate issued by a third-party certificate authority. C. From the Update & Security setting on Computer1, enable the Sideload apps setting. D. Run the Add-AppxProvisionedPackage cmdlet.

C

You plan to deploy a Microsoft Azure RemoteApp collection by using a custom template image. The image will contain Microsoft Office 365 ProPlus apps. You need to ensure that multiple users can run Office 365 ProPlus from the custom template image simultaneously. What should you include in the configuration file? A. <Property Name = "FORCEAPPSHUTDOWN" Value = "FALSE" /> B. <Product ID = "0365ProPlusRetail" /> C. <Property Name = "SharedComputerLicensing" Value = "1" /> D. <Property Name = "AUTOACTIVATE" Value = "1" />

C

You support laptops that run Windows 8 Pro and are part of a workgroup. An employee is unable to start Windows Mobility Center on his laptop. You need to make it possible for the employee to use Windows Mobility Center on the laptop. What should you do? A. Use Add features to Windows 8 to add Windows Mobility Center. B. Use Programs and Features to repair theinstallation of Windows Mobility Center. C. Use Local Group Policy Editor to set Turn off Windows Mobility Center to Not Configured. D. Use Turn Windows features on or off in Programs and Features to enable Windows Mobility Center.

C

Your Windows 10 Enterprise work computer is a member of an Active Directory domain. You use your domain account to log on to the computer. You use your Microsoft account to log on to a home laptop. You want to access Windows 10 Enterprise apps from your work computer by using your Microsoft account. You need to ensure that you are able to access the Windows 10 Enterprise apps on your work computer by logging on only once. What should you do? A. Add the Microsoft account as a user on your work computer. B. Enable Remote Assistance on your home laptop. C. Connect your Microsoft account to your domain account on your work computer. D. Install SkyDrive for Windows on both your home laptop and your work computer.

C

Your company has Windows 10 client computers. All of the computers are managed by using Windows Intune. You need to provide a user with the ability to deploy software to the computers by using Windows Intune. The solution must minimize the number of permissions assigned to the user. Which role should you use? A. User management administrator from the Windows Intune account portal B. Global administrator from the Windows Intune account portal C. Service administrator from the Windows Intune administrator console D. Service administrator from the Windows Intune account portal

C

Your network contains an Active Directory domain and 100 Windows 10 client computers. All software is deployed by using Microsoft Application Virtualization (App-V) 5.0. Users are NOT configured as local administrators. Your company purchases a subscription to Microsoft Office 365 that includes Office 365 ProPlus. You need to create an App-V package for Office 365 ProPlus. What should you do? A. Run the Office Customization Tool (OCT), run the App-V Sequencer and then run Setup /Packager. B. Download the Office Deployment Tool for Click-to-Run, run the App-V Sequencer and then run Setup / Admin. C. Download the Office Deployment Tool for Click-to-Run, run Setup /Download and then run Setup / Packager. D. Run the Office Customization Tool (OCT), run Setup /Download and then run the App-V Sequencer.

C

DRAG DROP You manage update compliance for Windows 10 desktop computers that are part of a domain. You need to configure new desktops to automatically receive updates from an intranet resource that you manage. Which three actions should you perform in sequence? A. Configure a computer group and put all Windows 8.1 desktops into the OU. Enable client-side targeting in the GPO. B. On the desktop computer, run the command gpupdate /force. C. Create a GPO that enables automatic updates. Configure the GPO to use an internal server as the update repository. D. On the desktop, under Update and Recovery, select Install updates automatically (recommended)

C, B, D

You work for a small company that uses Windows 10 computers. The computers are joined to a homegroup. You want to share an existing folder named Research. It is located in the Documents folder. You need to give users the ability to change the files in this folder. Which three actions should you perform in sequence? A. Under Permission level, choose Read / Write. B. Under Choose People to Share With, add the home group. C. Right-click the Research folder. D. Enable sharing of the Documents folder in the homegroup settings. E. Under Share With, choose HomeGroup (view and edit).

C, B, E

You administer a group of 10 client computers that run Windows 10. The client computers are members of a local workgroup. Employees log on to the client computers by using their Microsoft accounts. The company plans to use Windows BitLocker Drive Encryption. You need to back up the BitLocker recovery key. Which two options can you use? (Each correct answer presents a complete solution. Choose two.) A. Save the recovery key to a file on the BitLocker-encrypted drive. B. Save the recovery key in the Credential Store. C. Save the recovery key to OneDrive. D. Print the recovery key.

C, D

You administer computers that run Windows 8 Enterprise and are members of an Active Directory domain. Some volumes on the computers are encrypted with BitLocker. The BitLocker recovery passwords are stored in Active Directory. A user forgets the BitLocker password to local drive E: and is unable to access the protected volume. You need to provide a BitLocker recovery key to unlock the protected volume. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.) A. Ask the user to run the manage-bde-protectors-disable e: command. B. Ask the user for his or her logon name. C. Ask the user to runthe manage-bde-unlock E:-pw command. D. Ask the user for his or her computer name. E. Ask the user for a recovery key ID for the protected drive.

C, D

A company has Windows 10 Enterprise client computers. The client computers are connected to a corporate private network. Users are currently unable to connect from their home computers to their work computers by using Remote Desktop. You need to ensure that users can remotely connect to their office computers by using Remote Desktop. Users must not be able to access any other corporate network resource by using the local Windows installation from their home computers. Which setting should you configure on the home computers? A. Virtual Private Network connection B. Remote Desktop local resources C. DirectAccess connection D. Remote Desktop Gateway IP address

D

A company has an Active Directory Domain Services (AD DS) domain. All client computers run Windows 10. A local printer is shared from a client computer. The client computer user is a member of the Sales AD security group. You need to ensure that members of the Sales security group can modify the order of documents in the print queue, but not delete the printer share. Which permission should you grant to the Sales group? A. Manage queue B. Manage this printer C. Print D. Manage documents E. Manage spooler

D

A company has client computers that run Windows 10. The client computer systems frequently use IPSec tunnels to securely transmit data. You need to configure the IPSec tunnels to use 256-bit encryption keys. Which encryption type should you use? A. 3DES B. DES C. RSA D. AES

D

Group Policy is a set of rules which control the working environment of user accounts and computer accounts. Group Policy provides the centralized management and configuration of operating systems, applications and users' settings in an Active Directory environment. In other words, Group Policy in part controls what users can and can't do on a computer system. Which one of these policies requires a reboot? A. Turn off Windows Defender B. Turn off Autoplay for non-volume devices C. Disable Active Desktop D. Turn off Data Execution Prevention for Explorer

D

Which term is used to refer to installing apps directly to a device without going through the Windows Store? A. SQL Injection B. BranchCache C. DLL Hijack D. Sideloading

D

You have a Windows 10 Enterprise computer named Computer1 that has the Hyper-V feature installed. Computer1 hosts a virtual machine named VM1. VM1 runs Windows 10 Enterprise. VM1 connects to a private virtual network switch. From Computer1, you need to remotely execute Windows PowerShell cmdlets on VM1. What should you do? A. Run the winrm.exe command and specify the -s parameter. B. Run the Powershell.exe command and specify the -Command parameter. C. Run the Receive-PSSession cmdlet and specify the -Name parameter. D. Run the Invoke-Command cmdlet and specify the -VMName parameter.

D

You have a Windows 10 Enterprise computer. The computer has a shared folder named C:\Marketing. The shared folder is on an NTFS volume. The current NTFS and share permissions are configured as follows. Group name....NTFS permission.......Shared folder permission Everyone ....Read and Execute.....Read Marketing ....Modify .........Full Control UserA is a member of both the Everyone group and the Marketing group. UserA must access C:\Marketing from across the network. You need to identify the effective permissions of UserA to the C:\Marketing folder. What permission should you identify? A. Full Control B. Read and Execute C. Read D. Modify

D

You have a computer named Computer1 that runs Windows 10 Enterprise. Computer1 is configured to receive Windows updates from the Internet. If a user is logged on to Computer1, you need to prevent Computer1 from automatically restarting without the logged on user's consent after the installation of the Windows updates. What should you do? A. Enable the Defer upgrades setting. B. Edit the Automatic App Update scheduled task. C. Configure the Choose how updates are delivered setting. D. Configure the Choose how updates are installed setting.

D

DRAG DROP A local printer named PRINTER1 is shared from a client computer named COMPUTER1 that run a 32-bit version of Windows 10. A workgroup contains client computers that run a 64-bit version of Windows 10. Computers in the workgroup can't currently print to PRINTER1. You need to ensure that the workgroup computers can print to PRINTER1. Which three actions should you perform in sequence? A. Connect the workgroup computers to PRINTER1. B. Add the driver on COMPUTER1. C. Obtain the 32-bit driver for PRINTER1. D. Obtain the 64-bit driver for PRINTER1. E. Install the driver on one computer in the workgroup.

D, B, A

You have an Active Directory domain named contoso.com that contains a deployment of Microsoft System Center 2012 Configuration Manager Service Pack 1 (SP1). You have a Microsoft Intune subscription that is synchronized to contoso.com by using the Microsoft Azure Active Directory Synchronization Tool (DirSync.) You need to ensure that you can use Configuration Manager to manage the devices that are registered to your Microsoft Intune subscription. Which two actions should you perform? Each correct answer presents a part of the solution. A. In Microsoft Intune, create a new device enrollment manager account. B. Install and configure Azure Active Directory Synchronization Services (AAD Sync.) C. In Microsoft Intune, configure an Exchange Connector. D. In Configuration Manager, configure the Microsoft Intune Connector role. E. In Configuration Manager, create the Microsoft Intune subscription.

D, E

You use a Windows 8.1 tablet. The tablet receives Windows Update updates automatically from the Internet. The tablet has Wi-Fi and is connected to a 3G mobile broadband Wi-Fi hot spot. You need to minimize data usage while connected to this hot spot. What should you do? A. Turn on Airplane Mode. B. Disable File and Print Sharing for mobile broadband connections. C. Configure the interface metric of IP settings for Wi-Fi connection as 1. D. Edit the Inbound Rule of Windows Firewall, and then disable Internet Control Message Protocol (ICMP) traffic. E. Configure the broadband connection as a metered network.

E

Your network contains an Active Directory domain named contoso.com. Contoso.com is synchronized to a Microsoft Azure Active Directory. You have a Microsoft Intune subscription. Your company plans to implement a Bring Your Own Device (BYOD) policy. You will provide users with access to corporate data from their personal iOS devices. You need to ensure that you can manage the personal iOS devices. What should you do first? A. Install the Company Portal app from the Apple App Store. B. Create a device enrollment manager account. C. Set a DNS alias for the enrollment server address. D. Configure the Intune Service to Service Connector for Hosted Exchange. E. Enroll for an Apple Push Notification (APN) certificate.

E

DRAG DROP You have a Windows 10 Enterprise computer. You have a 1-terabyte external hard drive. You purchase a second 1-terabyte external hard drive. You need to create a fault-tolerant volume that includes both external hard drives. You also need to ensure that additional external hard drives can be added to the volume. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. A. Restore your data from the backup. B. From Storage Spaces, create a new storage pool. Set the Resiliency Type to two-way mirror. C. From Storage Spaces, create a new storage pool. Set the Resiliency Type to parity. D. From Storage Spaces, create a new storage pool. Set the Resiliency Type to three-way mirror. E. Back up the existing data on your original external hard drive. F. From Disk Management, create and format a new volume on the second external drive. G. From Disk Management, create a mirrored volume containing the two external drives.

E, B, A

DRAG DROP You administer desktop computers that run Windows 8 Enterprise and are members of an Active Directory domain. A new security policy states that all traffic between computers in the research department must be encrypted and authenticated by using Kerberos V5. You need to configure the requested traffic authentication settings by using Windows Firewall with Advanced Settings. Which three actions should you perform in sequence? A. Select require authentication for inbound and outbound connection, and then for authentication method, select Computer (Kerberos V5). B. Select Allow on app or feature through Windows Firewall. C. Click to expand Inbound Rule, and then select New Rule. D. Select the rule type Isolation, and then add the IP addresses of the research department computers. E. Click to expand Outbound Rule, and then select New Rule. F. Click to expand Connection Security Rule, and then select New Rule. G. Select the rule type Server-to-Server, and then add the IP addresses of the research department computers.

F, D, A


Related study sets

CE 499 Hazardous (and Universal) Waste Management

View Set

Bio 1101: Unit 3- Endocrine System Quiz

View Set

Physics P1: Radio Waves and Microwaves

View Set

IGCSE Biology - Comparison of plant and animal cells

View Set