Microsoft 70-647 Windows Enterprise Administrator Exam Set 11

You work as an enterprise administrator at YYY.com. The YYY.com network has a forest with two domains named YYY.com and intl.YYY.com. All servers in the YYY.com network run Windows Server 2008. The YYY.com domain has two has domain controllers named ABC-SR05 and ABC-SR06 and the intl.YYY.com domain has two domain controllers named ABC-SR07 and ABC-SR08. Active Directory-integrated DNS zones are hosted on the domain controllers for their respective domains. You need to develop a name resolution strategy that allows clients to use the DNS server in their domain to resolve names in either domain. Which of the following options would you choose to accomplish this task? (Each correct option will form a part of the answer. Select TWO.)


Options are :

  • By installing a DHCP Relay Agent in the intl.YYY.com domain.
  • By adding the intl.YYY.com DNS zone to the ForestDNSZones partition.
  • By adding the YYY.com DNS zone to the ForestDNSZones partition.
  • By creating a stub DNS zone for YYY.com on ABC-SR07.
  • By installing a DHCP server in the YYY.com domain.
  • By configuring conditional forwarders on ABC-SR05 to point to ABC-SR07.

Answer :By adding the intl.YYY.com DNS zone to the ForestDNSZones partition. By adding the YYY.com DNS zone to the ForestDNSZones partition.

Microsoft 70-243 Administering Deploying System Manager Exam Set 1

You work as an enterprise administrator at YYY.com. The network consists of a single Active Directory Domain Services (AD DS) domain named YYY.com. All servers on the network run Windows Server 2008 R2. YYY.com has its main office in Chicago and branch offices in Boston, Atlanta, Miami and Dallas. Each branch office is connected to the main office by a slow WAN link. The Chicago office has writeable domain controllers running Windows Server 2008 R2. Each branch office has a Read Only Domain Controller (RODC) running Windows Server 2008 R2. The company hires two IT Technicians in the Boston and Atlanta branch offices. The IT Technicians will provide technical support for the computers in the branch offices. The company plans to hire more IT Technicians in the future. You need to configure password replication to enable the IT Technicians in the Boston and Atlanta branch offices to log on to all computers in their respective office. You need to minimize the number of locations that the passwords are replicated to. How should you configure the password replication to meet the requirements whilst ensuring that administrative effort is minimized when extra IT Technicians are hired?


Options are :

  • You should add the computer accounts and the IT Technician's user accounts for the Boston and Atlanta branch offices to a single global group. Add the global group to the Password Replication Policy for each office.
  • You should enable Universal Group Membership Caching in the Boston and Atlanta branch offices. Instruct the IT Technicians to log on to each client computer.
  • You should add the computer accounts and the IT Technician's user accounts for the Boston and Atlanta branch offices to a global group for each office. Add the global groups to the Password Replication Policy for each office.
  • You should add the computer accounts and the IT Technician's user accounts for the Boston and Atlanta branch offices to the Password Replication Policy for each office.

Answer :You should add the computer accounts and the IT Technician's user accounts for the Boston and Atlanta branch offices to a global group for each office. Add the global groups to the Password Replication Policy for each office.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008. You want to plan a backup strategy for the domain controllers that allows you to recover Active Directory objects that were accidently deleted. Which of the following options would you choose to accomplish the assigned task?


Options are :

  • Ensure that your backup schedule includes regular backups of the System State data on the domain controllers.
  • Schedule regular backups of the ntds.dat file on the existing domain controllers.
  • Configure the existing domain controllers to be Read Only Domain Controllers (RODCs).
  • Install Active Directory Lightweight Directory Services (AD LDS).

Answer :Ensure that your backup schedule includes regular backups of the System State data on the domain controllers.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com and a workgroup named ABCGROUP. All servers in the YYY.com network run Windows Server 2008 and all the client computers run Windows Vista. The YYY.com network has five servers named ABC-SR04, ABC-SR05, ABCSR06, ABC-SR07 and ABC-SR08. ABC-SR04 and ABC-SR05 are configured as domain controllers with ABC-SR04 having the Active Directory Domain Services (AD DS) installed and ABC-SR05 having the Dynamic Host Configuration Protocol (DHCP) service installed. ABC-SR06 and ABC-SR07 are configured as VPN servers with the Routing and Remote Access Services (RRAS) installed and ABC-SR08 is configured as a RADIUS server with the Network Policy Service (NPS) installed. You configure ABC-SR06 and ABC-SR07 as RADIUS clients. You now need to configure the protocols and authentication methods for the VPN connections. You also want to configure access permissions for specific user groups. Which of the following options would you choose to accomplish this task with minimal administrative effort? Select all that apply. Each selected option will form a part of the answer.


Options are :

  • Create a local computer policy on ABC-SR06.
  • Create a network policy on ABC-SR08.
  • Create a local computer policy on ABC-SR08.
  • Create a network policy on ABC-SR06.
  • Create a local computer policy on ABC-SR07.
  • Create a network policy on ABC-SR07.

Answer :Create a network policy on ABC-SR08.

Microsoft 70-647 Windows Enterprise Administrator Exam Set 7

You work as an enterprise administrator at YYY.com. The YYY.com network consists of a single Active Directory Domain Services (AD DS) named YYY.com. YYY.com has its headquarters in Chicago and branch offices in Boston and Atlanta. The Boston and Atlanta offices are connected to the Chicago by reliable WAN links. All servers in the Chicago office run Windows Server 2008 R2. All servers in the branch offices run Windows Server 2003 R2. All client computers in the domain run Windows 7 Professional. The branch offices each have two Windows Server 2003 R2 servers. The servers in each office are both configured as Domain Controllers and File and Print servers The company is concerned about the lack of physical security of the branch office servers. They have released a new security policy that states that only the passwords of the branch office users should be replicated to the branch office servers.Furthermore, the data stored on the servers must be protected in the event of server hardware theft. Which two of the following actions should you perform to comply with the company security policy? (Choose two).


Options are :

  • You should replace the branch office servers with Windows Server 2008 R2 read-only domain controllers (RODCs) and configure password replication policies for each branch office.
  • You should encrypt the data using Encrypting File System (EFS).
  • You should disable Universal Group Caching on the branch office servers.
  • You should replace the branch office servers with Windows Server 2008 R2 writeable domain controllers and configure fine grained password policies for each branch office.
  • You should encrypt the data using BitLocker Drive Encryption.

Answer :You should replace the branch office servers with Windows Server 2008 R2 read-only domain controllers (RODCs) and configure password replication policies for each branch office. You should encrypt the data using BitLocker Drive Encryption.

You work as an enterprise administrator at YYY.com. The company network consists of a single Active Directory Domain Services (AD DS) domain named YYY.com. The company is in the process of implementing a PKI (Public Key Infrastructure). You have installed a Windows Server 2008 R2 server named ABC-RootCA which runs the Active Directory Certificate Services (AD CS) role and is configured as a root certification authority for the domain. You install a second Windows Server 2008 R2 server named ABC-CA1. ABC-CA1 runs the Active Directory Certificate Services (AD CS) role and is configured as a subordinate CA to ABC-RootCA. A Windows Server 2008 R2 server named ABC-Web1 runs the Web Server role and is used to provide an interface to the certification authority. A company security policy states that all network devices should receive certificates from the certification authority. You configure the certification authority to assign certificates to all domain servers and client computers through Active Directory. You now need to configure the network routers to automatically request certificates using Simple Certificate Enrollment Protocol (SCEP). How would you accomplish this task?


Options are :

  • You should install Active Directory Domain Services (AD DS) on ABC-RootCA.
  • You should install and configure the AD CS Online Responder service on ABC-CA1.
  • You should install and configure the Network Device Enrollment Service on ABC-Web1.
  • You should create computer objects in Active Directory for the network routers.

Answer :You should install and configure the Network Device Enrollment Service on ABC-Web1.

You work as an enterprise administrator at YYY.com. The YYY.com network has a forest named and YYY.com that runs at the forest functional level of Windows Server 2003. YYY.com has a subsidiary company named TestLabs, Inc. The TestLabs, Inc. network has a forest named and testlabs.com that runs at the forest functional level of Windows Server 2003. All domain controllers on both the YYY.com network and the TestLabs, Inc. network run Windows Server 2008. YYY.com users do not have access to network resources in TestLabs, Inc. TestLabs, Inc. has a file server named TESTLABSSR07. YYY.com users must be able to access shared folders on TESTLABSSR07. However, YYY.com users must not be able to access any other network resources in TestLabs, Inc. Which of the following options would you choose to accomplish this task? (Each correct option will form a part of the answer. Select TWO.)


Options are :

  • By setting the Allowed to Authenticate right on the computer object for the testlabs.com infrastructure operations master object.
  • By creating a forest trust between YYY.com and testlabs.com.
  • By raising the forest functional level of YYY.com and testlabs.com to Windows Server 2008. B. By raising the domain functional level of all domains in YYY.com and testlabs.com to Windows Server 2008.
  • By setting the Allowed to Authenticate for TESTLABS-SR07.

Answer :By setting the Allowed to Authenticate right on the computer object for the testlabs.com infrastructure operations master object. By setting the Allowed to Authenticate for TESTLABS-SR07.

70-513 WCF Development with Microsoft .NET Framework 4 Exam Set 1

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008. YYY.com has its headquarters in Chicago and and sub-divisions in Boston, Atlanta, Miami and Dallas. Each sub-division is organized into a separate site. The YYY.com network has four domain controllers named ABC-DC01, ABC-DC02, ABC-DC03 and ABC-DC04 that are installed in the Chicago office. You have to install a domain controller in the each of the locations at Boston, Atlanta, Miami and Dallas divisions that will be used to authenticate users in the respective division and will allow for the application of Group Policy objects (GPOs) linked to the domain. However, the domain controllers must not store the log on credentials of all YYY.com users. Which of the following solutions would apply?


Options are :

  • Create organizational units for each of the Boston, Atlanta, Miami and Dallas offices and the domain user accounts for the branch office users to that OU.
  • Create organizational units for each of the Boston, Atlanta, Miami and Dallas divisions and add the domain controller computer account to that OU.
  • Install a server core installation of Windows Server 2008 in the Boston, Atlanta, Miami and Dallas divisions.
  • Install a writeable domain controller in the Boston, Atlanta, Miami and Dallas divisions..
  • Install a read-only domain controller (RODC) in the Boston, Atlanta, Miami and Dallas divisions

Answer :Install a read-only domain controller (RODC) in the Boston, Atlanta, Miami and Dallas divisions

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named and YYY.com. All servers in the YYY.com network run Windows Server 2008. The YYY.com network has two file servers named ABC-SR07 and ABC-SR08. YYY.com has a subsidiary company named TestLabs, Inc. The TestLabs, Inc. network has a forest named and testlabs.com. TestLabs, Inc. users must be able to access shared folders on ABC-SR07 and ABC-SR08 while YYY.com users do not need access to any network resources at testlabs.com. How would you accomplish this task? (Each correct option will form a part of the answer. Select TWO.)


Options are :

  • By configuring domain-wide authentication on the trust.
  • By establishing a one-way forest trust from testlabs.com to YYY.com
  • By establishing a one-way forest trust from YYY.com to testlabs.com.
  • By establishing a two-way forest trust between YYY.com and testlabs.com.
  • By configuring a fine-grained password policy.
  • By configuring selective authentication on the trust.

Answer :By establishing a one-way forest trust from testlabs.com to YYY.com By configuring selective authentication on the trust.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com that runs at the domain functional level of Windows Server 2008. Which of the following options can be used for tracking any modification to Active Directory Objections?


Options are :

  • Enable auditing of the ntds.dat file in the Default Domain Group Policy.
  • Configure the Default Domain Controllers Group Policy to audit Directory Services
  • Configure the Default Domain Group Policy to audit Directory Services.
  • Enable auditing of the ntds.dat file in the Default Domain Group Policy.
  • Configure a Group Policy to run the Security Configuration Wizard on all computers in the ABC network.

Answer :Configure the Default Domain Controllers Group Policy to audit Directory Services

Microsoft 70-243 Administering Deploying System Manager Exam Set 3

You work as an enterprise administrator at YYY.com. The network consists of a single Active Directory Domain Services (AD DS) domain named YYY.com. All servers on the network run Windows Server 2008 R2. YYY.com has its main office in Chicago and branch offices in Boston, Atlanta, Miami and Dallas. Each office is configured as a separate Active Directory site. All offices are connected to each other by slow WAN links. Four domain controllers named ABC-DC01, ABC-DC02, ABC-DC03 and ABC-DC04 are installed in the Chicago office. The Chicago office domain controllers are located in the default Domain Controllers container in Active Directory. To improve logon times for the branch offices, you been assigned the task of deploying domain controllers in the branch offices. The domain controllers in each office must authenticate users from the local office only. Branch office users should authenticate to the head office domain controllers only if the branch office domain controller fails. Which of the following options would you choose to accomplish this task?


Options are :

  • Configure the branch office domain controllers as DNS servers
  • Install Active Directory Federation Services (ADFS) on the domain controllers in the branch offices.
  • Increase the cost of the site links between the branch offices.
  • Configure the branch office domain controllers as Global Catalog servers.
  • Apply a Group Policy Object (GPO) to modify the default DNS SRV record registration for the branch office domain controllers.

Answer :Apply a Group Policy Object (GPO) to modify the default DNS SRV record registration for the branch office domain controllers.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008. The YYY.com network has a file server named ABC-SR07 that hosts a shared folder named ABCDocs. Several Microsoft Word documents are stored in the ABCDocs share. You want to enable document version history on these documents. You also want the documents in the ABCDocs share to be accessed through a Web page. Which of the following roles or services would you install on ABC-SR07 to achieve the desired results cost effectively?


Options are :

  • SMTP Server role.
  • FTP Server role.
  • Microsoft Windows SharePoint Services (WSS) 3.0.
  • Microsoft Office SharePoint Server (MOSS) 2007.
  • Application Server role.
  • File and Print Services role.

Answer :Microsoft Windows SharePoint Services (WSS) 3.0.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008. The YYY.com network has two domain controllers named ABC-DC01 and ABC-DC02. ABC-DC01 hosts the relative identifier (RID) operations master role. ABC-SR01 suffers a catastrophic failure. How would you restore the RID master role?


Options are :

  • By using ntdsutil to seize the RID operations master role to ABC-DC02.
  • By using Active Directory Sites and Services to assign the RID operations master role to ABC-DC02.
  • By performing an authoritative restore of Active Directory on TESTLKING-DC02.
  • By installing a new domain controller named ABC-DC03 and forcing replication from ABC-DC02.
  • By installing a new domain controller named ABC-DC03 and running the dcpromo /adv command.

Answer :By using ntdsutil to seize the RID operations master role to ABC-DC02.

70-646 Pro Windows Server 2008,Server Administrator Test Set 1

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. The network is based in a large site in Miami. The Miami network contains 200 servers running Windows Server 2008 R2 and 10,000 client computers running Windows 7 Enterprise. All client computers are configured as DHCP clients. YYY.com is planning to open another office in Dallas. The Dallas office network will contain 2,000 client computers running Windows 7 Enterprise. The two offices will be connected by a reliable WAN link. The network routers in each office support DHCP relay. You need to configure a DHCP infrastructure in the Dallas office to support 2,000 client computers. Client computers must be able to obtain IP address configuration if a single server fails. DHCP traffic over the WAN link must be minimized. How should you configure the DHCP infrastructure?


Options are :

  • You should install two servers configured as a failover cluster using Microsoft Clustering Service (MSCS). Add the DHCP service to the cluster.
  • Configure failover clustering using Microsoft Clustering Service (MSCS) by configuring the DHCP server in the Miami office as a passive node and a DHCP server in the Dallas office as an active node.
  • You should install two servers running the DHCP Server role. Configure the two servers as a Network Load Balancing cluster.
  • You should install a single DHCP server in the Dallas office and configure a second DHCP scope for the Dallas network on the Miami DHCP server.
  • You should install two servers running the DHCP Server role. Load balance the servers using DNS Round Robin.

Answer :You should install two servers configured as a failover cluster using Microsoft Clustering Service (MSCS). Add the DHCP service to the cluster.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008 R2. YYY.com has its headquarters in Chicago and branch offices in Boston, Atlanta, Miami and Dallas. The Boston, Atlanta, Miami and Dallas offices are connected to the Chicago office by unreliable WAN links. The branch office computers are managed by the local administrator of the branch office. You are designing a Windows Update infrastructure for the company. You have installed a Windows Server 2008 R2 server named ABC-WSUS1 in the Chicago office. ABC-WSUS1 runs Microsoft Windows Server Update Services (WSUS) 3.0 and is configured to download Windows Updates from Microsoft. All client computers in the Chicago office are configured to download updates from ABC-WSUS1. You need to configure the Windows Update infrastructure for the branch offices. You want branch office administrators to approve their own updates. Branch office client computers must be able to download and install updates if the WAN link between the branch office and the Chicago office fails. You install a Windows Server 2008 R2 server running Microsoft Windows Server Update Services (WSUS) 3.0 in each branch office. Which three of the following actions should you perform to configure the Windows Update infrastructure? (Choose three).


Options are :

  • Configure the branch office servers to download updates from ABC-WSUS1.
  • Configure the branch office servers to download updates from Microsoft.
  • Configure the branch office servers as child servers.
  • Configure the branch office servers as replica servers.
  • Configure the branch office client computers to download updates from the local WSUS server.
  • Configure the branch office client computers to download updates from ABC-WSUS1.

Answer :Configure the branch office servers to download updates from Microsoft. Configure the branch office servers as child servers. Configure the branch office client computers to download updates from the local WSUS server.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008. YYY.com has its headquarters in Chicago and branch offices in Boston, Atlanta, Miami and Dallas. The YYY.com network has four domain controllers named ABCDC01, ABC-DC02, ABC-DC03 and ABC-DC04 that are installed in the Chicago office. You have been instructed to plan the installation of a domain controller in each of the Boston, Atlanta, Miami and Dallas offices. Your solution must ensure that the least amount of network bandwidth is used when Active Directory Domain Services (AD DS) is installed on the new domain controllers. How would you accomplish this task?


Options are :

  • By using the Media feature Install option to install AD DS on the new domain controllers.
  • By disabling the Global Catalog option on the new domain controllers.
  • By installing a Server Core installation of Windows Server 2008 on the new domain controllers.
  • By running the dcpromo /adv command on the new domain controllers.
  • By blocking GPO processing on the new domain controllers.
  • By installing the new domain controllers as read-only domain controllers (RODCs).

Answer :By using the Media feature Install option to install AD DS on the new domain controllers.

Microsoft 70-647 Windows Enterprise Administrator Exam Set 1

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008 and all client computers run Windows 2000 Professional. YYY.com has its headquarters in Chicago and branch offices in Boston, Atlanta, Miami and Dallas. Each office has a DNS server. How can you perform installation of Active Directory Domain Services (AD DS) with a name resolution strategy that allows for quick response times and uses secure dynamic updates.


Options are :

  • Implement an Active Directory-integrated (ADI) DNS zone.
  • Implement conditional forwarders on all DNS servers.
  • Implement a GlobalNames zone (GNZ).
  • Implement a standard primary zone in each office.

Answer :Implement an Active Directory-integrated (ADI) DNS zone.

You work as an enterprise administrator at YYY.com. The company has a main office in Chicago and branch offices in Boston, Atlanta, Miami and Dallas. Each office is configured as a separate Active Directory site in a single Active Directory Domain Services (AD DS) domain named YYY.com. All servers in each office run Windows Server 2008 R2. All client computers in each office run Windows 7 Enterprise. Each office has an IT department. The IT Managers in each office are members of the Domain Admins group. You download the Administrative Template (admx) files required to manage the Windows 7 client computers using Group Policy Objects (GPOs). You also create a custom admx file. You need to ensure that your admx files are available when IT Managers in any office create or edit GPOs. You also need to ensure that admx files created by any other IT Manager are available in any office. How should you distribute the admx files?


Options are :

  • You should import the admx files into the Default Domain Policy.
  • You should create a central store by creating a PolicyDefinitions folder in a network shared folder that is accessible to all offices.
  • You should create a central store by creating a PolicyDefinitions folder in the SYSVOL\domain\Policies folder on a domain controller.
  • You should import the admx files into the Default Domain Controllers Policy.

Answer :You should create a central store by creating a PolicyDefinitions folder in the SYSVOL\domain\Policies folder on a domain controller.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008 and all client computers run Windows Vista with Service Pack 1 (SP1) installed. The YYY.com network has four servers named ABC-SR04, ABC-SR05, ABC-SR06 and ABC-SR07. ABC-SR04 is configured as a domain controller with the Active Directory Domain Services (AD DS) installed, ABC-SR05 is configured as a VPN server with the Routing and Remote Access services (RASS) installed, ABC-SR06 is configured as a terminal server with the Terminal Services server role installed and ABC-SR07 is configured as a Web server with the Web Server (IIS) server role installed. YYY.com users connect to ABC-SR04 via VPN connections when they work from remote locations. You have been assigned the task of configuring ABC-SR06 to allow remote users to run TS RemoteApp applications. You must also allow remote users to access the RemoteApp applications from Web page which has been customized to provide access to TS RemoteApp applications? Which of the following options would you choose?


Options are :

  • By Installing the TS Web Access role service on ABC-SR07.
  • By Installing the TS Session Broker role service On ABC-SR04.
  • By Installing the TS Gateway role service on ABC-SR06.
  • By Installing the TS Session Broker role service on ABC-SR06 and ABC-SR07.
  • By Installing the Web Server (IIS) server role on ABC-SR06.

Answer :By Installing the TS Web Access role service on ABC-SR07.

Microsoft Windows Server 2016 Certification: Exam 70-741 Set 2

You work as a Network Administrator at YYY.com. The network consists of a two Active Directory domains named YYY.com and Corp.YYY.com. All servers in the YYY.com domain run Windows Server 2008 R2. All servers in the Corp.YYY.com domain run Windows Server 2003. The functional level of both domains is Windows 2000 Native. The functional level of the forest is Windows 2000. The YYY.com domain contains a research department. You have been asked to implement a stricter password policy for the research department users than for the rest of the company users. Your solution should use the minimum administrative effort. Which of the following actions should you perform to support multiple password policies in the YYY.com domain?


Options are :

  • Raise the domain functional level of both domains to Windows Server 2003.
  • Raise the domain functional level of the Tesking.com domain to Windows Server 2008.
  • Upgrade the domain controllers in the Corp.YYY.com domain to Windows Server 2008 R2. Raise domain functional level of both domains to Windows Server 2008.
  • Upgrade the domain controllers in the Corp.YYY.com domain to Windows Server 2008 R2. Raise the forest functional level to Windows Server 2008.

Answer :Raise the domain functional level of the Tesking.com domain to Windows Server 2008.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008. The YYY.com network has two servers named ABC-SR05 and ABC-SR06. ABC-SR05 is configured as an Enterprise Root Certification Authority (CA) and has the Active Directory Certificate Services (AD CS) installed while ABC-SR06 is a file server. The YYY.com network also has two Web servers named ABC-SR07 and ABC-SR08. ABC-SR07 hosts YYY.com's intranet Web site while ABC-SR08 hosts a replica of the intranet Web site. You want YYY.com users to use any of the Web servers when they connect to the intranet Web site. However, YYY.com users must use secure HTTP and a single URL to connect to the intranet Web site. How would you accomplish the given task? (Each correct option will form a part of the answer. Select THREE.)


Options are :

  • By configuring ABC-SR07 and TRESABCING-SR08 as a failover cluster.
  • By installing Internet Information Services (IIS) on ABC-SR07 and TRESABCING-SR08.
  • By installing the Web server certificate on ABC-SR07 and TRESABCING-SR08.
  • By using ABC-SR05 to issue a Web server certificate for the intranet Web site
  • By installing the Web server certificate on ABC-SR05.
  • By configuring ABC-SR07 and TRESABCING-SR08 as a Network Load Balancing cluster.

Answer :By installing the Web server certificate on ABC-SR07 and TRESABCING-SR08. By using ABC-SR05 to issue a Web server certificate for the intranet Web site By configuring ABC-SR07 and TRESABCING-SR08 as a Network Load Balancing cluster.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008 and all client computers run Windows Vista with Service Pack 1 (SP1) installed. The YYY.com network has two servers named ABC-SR05 and ABC-SR06. ABC-SR05 is configured with Network Policy and Access Services (NPAS) while ABC-SR06 is configured with Windows SharePoint services (WSS). The YYY.com network also has two file servers named ABC-SR07 and ABC-SR08. YYY.com supports several remote users that connect the network when they work from remote locations. These users complain that they can use their Web browsers to connect to sharepoint sites on ABCSR06 that use the HTTPS protocol but the firewall at some of the customer locations prevents them from connecting to files on ABC-SR07 and ABC-SR08. You decide to implement a VPN access solution to overcome this problem. What actions should you take?


Options are :

  • Configure IPsec tunnel mode connection on ABC-SR05.
  • Configure Secure Socket Tunneling Protocol (SSTP) connection on ABC-SR05.
  • Configure a L2TP VPN connection on ABC-SR05.
  • Configure IPsec tunnel mode connection on ABC-SR07 and ABC-SR08.
  • Configure Secure Socket Tunneling Protocol (SSTP) connection on ABC-SR07 and ABCSR08.
  • Configure a PPTP VPN connection on ABC-SR07 and ABC-SR08.

Answer :Configure Secure Socket Tunneling Protocol (SSTP) connection on ABC-SR05.

70-247 Configuring and Deploying a Private Cloud Exam Set 4

You work as an enterprise administrator at YYY.com. The network consists of a single Active Directory Domain Services (AD DS) domain named YYY.com. All servers on the network run Windows Server 2008 R2. The network contains 500 client computers running Windows XP Professional and 2000 client computers running Windows 7 Enterprise. The Active Directory contains 6 top level organizational units (OUs) based on company department. Each departmental OU contains two OUs named UserAccounts and ComputerAccounts. The UserAccounts OUs contain the user account objects for the users in the department. The ComputerAccounts OUs contain the computer account objects for the users in the department. The computer account objects for all domain servers are located in a top level OU named Servers. You need to apply a logon script to all domain users when they log on to a client computer. You create a Group Policy Object (GPO) named XPScript that assigns the Windows XP logon script. You create a second Group Policy Object (GPO) named Win7Script that assigns the Windows 7 logon script. You need to apply the XPScript GPO to users logging on to any Windows XP Professional computer in the domain. You need to apply the Win7Script GPO to users logging on to any Windows 7 Professional computers in the domain. The logon scripts must not apply if a user logs on to a server.Which three of the following steps should you perform to implement the GPOs to meet the requirements while minimizing the number of GPO links?


Options are :

  • Link the GPOs to each top level OU.
  • Link the GPOs to the UserAccounts OUs.
  • Apply WMI (Windows Management Instrumentation) filters to the GPOs.
  • Link the GPOs to the domain.
  • Link the GPOs to the ComputerAccounts OUs.
  • Enable loopback processing in the GPOs.

Answer :Apply WMI (Windows Management Instrumentation) filters to the GPOs. Link the GPOs to the domain. Enable loopback processing in the GPOs.

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008. YYY.com users have the same domain user account name as their e-mail addresses. YYY.com is acquired by another company and the new owners want to have YYY.com rebranded with the name TestLabs, Inc. The domain name, user accounts and email addresses will be changed to testlabs.com to reflect the rebranding. How can you ensure that users can log on to their computers once the rebranding has been implemented?


Options are :

  • By creating an UPN suffix.
  • By creating a new forward lookup zone for testlabs.com.
  • By renaming the domain to testlabs.com.
  • By creating a new DNS zone for testlabs.com.

Answer :By creating an UPN suffix.

You work as an enterprise administrator at YYY.com. The company network consists of a single Active Directory Domain Services (AD DS) domain named YYY.com. The company has a main office and two branch offices. The three offices are connected by fast WAN links. The main office has four domain controllers running Windows Server 2008 R2. The branch offices each have two domain controllers running Windows Server 2008 R2. An Active Directory site exists for each office. Each office has a site link to the other two offices. The site links are configured with the default cost. Site link bridging is disabled. You want to ensure that the branch office domain controllers replicate with domain controllers in the main office only. The branch office domain controllers should only replicate with the other branch office domain controllers if a WAN link fails. What should you do?


Options are :

  • You should enable site link bridging.
  • You should lower the cost of the site link between the branch offices.
  • You should increase the cost of the site links between the branch offices and the main office.
  • You should increase the cost of the site link between the branch offices.
  • You should delete the site link between the branch offices

Answer :You should increase the cost of the site link between the branch offices.

70-642 Windows Server 2008 Network Infrastructure Exam Set 5

You work as an enterprise administrator at YYY.com. The YYY.com network has a domain named YYY.com. All servers in the YYY.com network run Windows Server 2008 R2 and all client computers run Windows 7 Enterprise. Your environment includes servers running Remote Desktop Session Host (RDSH), App-V and Med-V. The Sales department at YYY.com needs to run two versions of the same Sales application on the client computers in the department. One is the current version of the Sales application and one is an older version. However, the two versions of the Sales applications cannot be used simultaneously on the same client computer. Which three of the following options could you choose to allow the two versions of the Sales application to be used on the same client computer simultaneously? (Each answer presents a complete solution. Choose three.)


Options are :

  • Install both versions of the Sales application on a Remote Desktop Session Host Server. Publish both versions as RemoteApps
  • Use the App-V sequencer to virtualize both versions of the Sales application. Deploy the App-V packages to the client computers.
  • Install one version of the Sales application on a Remote Desktop Session Host Server and publish it as a RemoteApp. Install the other version on the client computers.
  • Deploy both versions of the Sales application in a MED-V virtual desktop and publish the virtual desktop to the users.
  • Install one version of the Sales application on the client computers. Create a Group Policy object (GPO) to assign the other version to the Sales users.
  • Deploy one version of the Sales application in a MED-V virtual desktop and publish the virtual desktop to the users. Install the other version on the client computers.

Answer :Use the App-V sequencer to virtualize both versions of the Sales application. Deploy the App-V packages to the client computers. Install one version of the Sales application on a Remote Desktop Session Host Server and publish it as a RemoteApp. Install the other version on the client computers. Deploy one version of the Sales application in a MED-V virtual desktop and publish the virtual desktop to the users. Install the other version on the client computers.

Comment / Suggestion Section
Point our Mistakes and Post Your Suggestions