Latest MCSE 70-412 Real Exam Download 31-40

QUESTION 31

Your network contains two Active Directory forests named contoso.com and fabrikam.com. A two- way forest trust exists between the forests.

The contoso.com forest contains an enterprise certification authority (CA) named CAl.

You implement cross-forest certificate enrollment between the contoso.com forest and the fabrikam.com forest.

On CA1, you create a new certificate template named Template1.

You need to ensure that users in the fabrikam.com forest can request certificates that are based on

Template1.

Which tool should you use?
A. Sync-ADObject

B. Pkiview.msc

C. CertificateServices.ps1

D. Certutil

E. PKISync.ps1

Answer: E


QUESTION 32

Your network contains an Active Directory domain named contoso.com.

A previous administrator implemented a Proof of Concept installation of Active Directory Rights

Management Services (AD RMS).

After the proof of concept was complete, the Active Directory Rights Management Services server role was removed.

You attempt to deploy AD RMS.

During the configuration of AD RMS, you receive an error message indicating that an existing AD RMS Service Connection Point (SCP) was found.

You need to remove the existing AD RMS SCP.
A. Certification Authority

B. Authorization Manager

C. ADSI Edit

D. Active Directory Domains and Trusts

Answer: C


QUESTION 33

Your network contains an Active Directory domain named contoso.com. The domain contains two Active

Directory sites named Site1 and Site2.

You need to configure the replication between the sites to occur by using change notification. Which attribute should you modify?

Hot Area:

clip_image001

Answer:

clip_image002


QUESTION 34

Your network contains an Active Directory domain named contoso.com. The domain contains a main office and a branch office. An Active Directory site exists for each office.

All domain controllers run Windows Server 2012. The domain contains two domain controllers. The domain controllers are configured as shown in the following table.

clip_image003

DC1 hosts an Active Directory-integrated zone for contoso.com. You add the DNS Server server role to DC2.

You discover that the contoso.com DNS zone fails to replicate to DC2.

You verify that the domain, schema, and configuration naming contexts replicate from DC1 to DC2. You need to ensure that DC2 replicates the contoso.com zone by using Active Directory replication. Which tool should you use?

A. Dnslint

B. A DNS Manager

C. Active Directory Users and Computers

D. Dnscmd

Answer: A


QUESTION 35

Your network contains an Active Directory forest named adatum.com. The forest contains a single domain. The domain contains four servers. The servers are configured as shown in the following table.

clip_image004

You need to update the schema to support a domain controller that will run Windows Server 2012. On which server should you run adprep.exe?

A. DC1

B. DC2

C. DC3

D. Server1

Answer: C


QUESTION 36

Your network contains an Active Directory domain named contoso.com. The domain contains domain controllers that run either Windows Server 2003, Windows Server 2008 R2, or Windows Server 2012.

You plan to implement a new Active Directory forest. The new forest will be used for testing and will be isolated from the production network.

In the test network, you deploy a server named Server1 that runs Windows Server 2012.

You need to configure Server1 as a new domain controller in a new forest named contoso.test. The solution must meet the following.

clip_image005

clip_image006

Select two options below.

A. There is no need to set the Forest Functional Level.
B. Set Forest Functional Level to Windows 2003.

C. Set Forest Functional Level to Windows 2008

D. Set Forest Functional Level to Windows 2008 R2.
E. Set Forest Functional Level to Windows 2012.

F. There is no need to set the Domain Functional Level.
G. Set Domain Functional Level to Windows 2003.

H. Set Domain Functional Level to Windows 2008

I. Set Domain Functional Level to Windows 2008 R2. J. Set Domain Functional Level to Windows 2012.

Answer: BG


QUESTION 37

Your network contains two Active Directory forests named contoso.com and fabrikam.com. The contoso. com forest contains two domains named corp.contoso.com and contoso.com.

You establish a two-way forest trust between contoso.com and fabrikam.com.

Users from the corp.contoso.com domain report that they cannot log on to client computers in the fabrikam. com domain by using their corp.contoso.com user account.

When they try to log on, they receive following error message: "The computer you are signing into is protected by an authentication firewall. The specified account is not allowed to authenticate to the computer."

Corp.contoso.com users can log on successfully to client computers in the contoso.com domain by using their corp.contoso.com user account credentials.

You need to allow users from the corp.contoso.com domain to log on to the client computers in the fabrikam.com forest.

What should you do?

A. Configure Windows Firewall with Advanced Security.
B. Enable SID history.

C. Configure forest-wide authentication.

D. Instruct the users to log on by using a user principal name (UPN).

Answer: C


QUESTION 38

You have a server named Server1 that runs Windows Server 2012 and is used for testing.

A developer at your company creates and installs an unsigned kernel-mode driver on Server1. The developer reports that Server1 will no longer start.

You need to ensure that the developer can test the new driver. The solution must minimize the amount of data loss.

Which Advanced Boot Option should you select?
A. Disable Driver Signature Enforcement

B. Disable automatic restart on system failure

C. Last Know Good Configuration (advanced)
D. Repair Your Computer

Answer: A


QUESTION 39

You have a server named Server 1 that runs Windows Server 2012. Server1 has five network adapters. Three of the network adapters are connected to a network named LAN1. The two other network adapters are connected to a network named LAN2. You create a network adapter team named Team1 from two of the adapters connected to LAN1. You create a network adapter team named Team2 from the two adapters connected to LAN2. A company policy states that all server IP addresses must be assigned by using a reserved address in DHCP. You need to identify how many DHCP reservations you must create for Server1. How many reservations should you identify?

A. 2

B. 3

C. 5

D. 7

Answer: B


QUESTION 40

Your network contains an Active Directory domain named contoso.com. The domain contains servers named Server1 and Server2 that run Windows Server 2012. Server1 has the IP Address Management (IPAM) Server feature installed. You install the IPAM client on Server2. You open Server Manager on Server2 as shown in the exhibit. (Click the Exhibit button.)

clip_image007

You need to manage IPAM from Server2. What should you do first?

A. On Server2, open Computer Management and connect to Server1.

B. On Server1, add the Server2 computer account to the IPAM ASM Administrators group.
C. On Server2, add Server1 to Server Manager.

D. On Server1, add the Server2 computer account to the IPAM MSM Administrators group.

Answer: C

 

Download Latest 70-412 Real Free Tests , help you to pass exam 100%.

Leave a Reply