Microsoft 70-647 Windows Enterprise Administrator Exam Set 8

You have modified GPO settings for a test GPO assigned to a test OU. You are logged onto a test system, but the new settings are not applied. What can you do to see the results of the settings?


Options are :

  • Run the GPResults /Force command.
  • Wait 90 to 120 minutes.
  • Launch ADSIEdit, and refresh the screen.
  • Run the GPUpdate /Force command.

Answer :Run the GPUpdate /Force command.

70-642 Windows Server 2008 Network Infrastructure Exam Set 3

You manage a single Active Directory domain for a software company. All servers in the organization run Windows Server 2008 Enterprise Edition. All client computers run Windows Vista with Microsoft Visual Studio 2008 installed. Your product development team is working with an offline replica domain controller named HERA on which they are building a new client/server Web application. The team employs Active Directory snapshotting to save incremental copies of the Active Directory database for testing purposes. However, now the team needs to be able to view past instances of AD and compare the data to the current state of the directory database. Which of the following actions should you perform to meet the needs of your product development team? (Select two answers. Each correct choice represents a complete solution in itself.)


Options are :

  • Teach the team how to use the Ntdsutil command.
  • Teach the team how to use the Active Directory Database Mounting Tool.
  • Teach the team how to use the LDP.exe utility.
  • Teach the team how to use the Wbadmin command.

Answer :Teach the team how to use the Active Directory Database Mounting Tool. Teach the team how to use the LDP.exe utility.

You are a server administrator for your organization. You have deployed Windows Server 2008 on all domain controllers and installed Active Directory Domain Services (AD DS) and Active Directory Federation Services (AD FS) on a Windows Server 2008 server, named AD_Srv. You are installing the DNS server role on another Windows Server 2008 server. You need to grant a user permission to run Dnscmd.exe to view and modify the DNS server configuration. What should you do?


Options are :

  • Add the user to Network Configuration Operators group
  • Add the user to the Server Operators group
  • Add the user to the Account Operators group
  • Add the user to the Performance Log Users group

Answer :Add the user to Network Configuration Operators group

You are part of the IT management team for your company. The organization consists of a single Windows Server 2008 forest; the forest includes seven domains, a total of 70 domain controller, and 15,000 client computers. All of the client computers run Windows Vista with Service Pack 1. You are planning a solution to automate the deployment and management of software to all users in the forest. This solution must meet the following business goals: - The software must be centrally managed and controlled. - Software license usage must be metered. - Detailed reports must be generated concerning software deployment status, software usage, and so on. Which of the following actions should you perform in order to accomplish your goal?


Options are :

  • Deploy the software by using System Center Configuration Manager 2007.
  • Deploy the software by using Windows Server Update Services (WSUS).
  • Deploy the software by using System Center Operations Manager 2007.
  • Deploy the software by using Group Policy Software Installation.

Answer :Deploy the software by using System Center Configuration Manager 2007.

Microsoft 70-243 Administering Deploying System Manager Exam Set 2

You are the administrator for a company that manufactures industrial chemicals. All servers in the single domain run Windows Server 2008, and all clients run Windows Vista. You want to create a Terminal Services Farm that provides fault tolerance in the event that a server is unavailable. What must you configure to provide load balancing? (Choose all that apply.)


Options are :

  • Populate the Session Broker Computers Local Group.
  • Install the TS Licensing role.
  • Install Windows System Resource Manager 2007 (WSRM).
  • Install the TS Session Broker role service.
  • Populate the TS Web Access Computers Group.
  • Add the DNS entries for the terminal servers.

Answer :Populate the Session Broker Computers Local Group. Install the TS Session Broker role service. Add the DNS entries for the terminal servers.

You have shared a printer as clrLaser on a print server named PS1. You want users to be able to search for the printer in Active Directory Domain Services. What should you do?


Options are :

  • Right-click the printer in Print Management, and select Enable Searching.
  • Create a GPO, and apply it to the Printers container.
  • Right-click the printer in Active Directory, and select Enable Searching
  • Right-click the printer in Print Management, and select List in Directory.

Answer :Right-click the printer in Print Management, and select List in Directory.

You are a server manager for your organization. Your organization has a single Active Directory domain that contains Windows Server 2008 domain controllers and Windows Vista client computers. You have recently installed Microsoft System Center Configuration Manager 2007 on a Windows Server 2008 server. You plan to use Configuration Manager 2007 to apply software updates to client computers in your organization. What must you do to apply software updates on client computers?


Options are :

  • Install Windows Server Update Services (WSUS) 3.0.
  • Configure the software Distribution component settings.
  • Configure a distribution point.
  • Install Windows Installer 2.0.

Answer :Install Windows Server Update Services (WSUS) 3.0.

Microsoft 70-243 Administering Deploying System Manager Exam Set 3

You are a server administrator for your organization. You have deployed Windows Server 2008 on the domain controllers. The client computers in your organization run Windows XP Service Pack 3 (SP3) or Windows Vista SP1. You have deployed Active Directory Domain Services (AD DS) and Active Directory Certificate Services (AD CS) on a Windows Server 2008 domain controller. You are setting up AD DS auditing. You need to enable and view all four directory service policy subcategories on a Windows Server 2008 domain controller. What should you do?


Options are :

  • Enable the Audit object access audit policy, and run GPedit.msc to view the audit policy subcategories.
  • Enable the global Audit directory service access audit policy, and run GPedit.msc to view the audit policy subcategories.
  • Enable the Directory Service Changes audit policy subcategory, and run Auditpol.exe to view the audit policy subcategories.
  • Enable the Directory Service Access audit policy subcategory, and run Auditpol.exe to view the audit policy subcategories.

Answer :Enable the Directory Service Access audit policy subcategory, and run Auditpol.exe to view the audit policy subcategories.

You work as a Network Administrator for ABCInc. The company has a Windows Server 2008 network environment. The network is configured as a Windows Active Directory-based single forest network. The functional level of the forest is Windows Server 2008. You are creating DFS Namespace on the network. Which of the following types of namespaces can you configure on the domain? Each correct answer represents a complete solution. Choose two.


Options are :

  • Stand-alone
  • Domain
  • Forest
  • Enterprise

Answer :Stand-alone Domain

You are a server administrator for your organization. Your organization has a main office in Sydney and a branch office in Melbourne. You have deployed Windows Server 2008 on all servers in both offices. You also used Server Manager to install BitLocker on a Windows Server 2008 server in the branch office to encrypt data that will be used by various applications. Your organization wants you to manage the BitLocker encryption from the main office rather than traveling to the branch office. How can you enable this functionality without enabling BitLocker encryption on any servers at the main office?


Options are :

  • run the ServerManagerCmd -install RSAT-BitLocker command
  • run the ServerManagerCmd -install BitLocker command
  • run the Scwcmd command
  • run the ServerManagerCmd -resultPath command

Answer :run the ServerManagerCmd -install RSAT-BitLocker command

70-642 Windows Server 2008 Network Infrastructure Exam Set 5

You want to enable users to remotely access TS RemoteApp programs over the Internet using TS Gateway. Which operating systems would support this functionality? (Choose all that apply.)


Options are :

  • Windows Vista SP1
  • Windows Server 2008
  • Windows Server 2003 SP1
  • Windows XP SP1

Answer :Windows Vista SP1 Windows Server 2008

You work as a Network Administrator for ABCInc. The company has a Windows Server 2008 network environment. The network is configured as a Windows Active Directory-based single forest network. The functional level of the forest is Windows Server 2008. Rick, your assistant, is configuring DFS structure on a member server running Windows Server 2008 Standard edition. He wants to create two namespaces on the server. He tells you that he has created one namespace, but is not able to create the second one on the same volume of the server. What is the most likely cause of the issue?


Options are :

  • Windows Server 2008 Standard edition does not support multiple namespaces.
  • The File Services Server role is not enabled on the server.
  • DFS Replication is not enabled on the server.
  • The volume on which Rick is trying to create the namespace is not an NTFS volume.

Answer :Windows Server 2008 Standard edition does not support multiple namespaces.

You work as the network administrator at YYY.com. The YYY.com network has an Active Directory domain named YYY.com. The YYY.com network servers run Windows Server 2008 and the workstations run Windows Vista. YYY.com has its headquarters in London and quite a few branch offices around the globe. However, each of these branch offices contains a file server. You have received instruction from the CIO to implement a data recovery strategy for the YYY.com network. You design a solution that backs up data to a USB device using Windows Server Backup. Which of the following is TRUE with regards to this scenario? (Choose two.)


Options are :

  • It prevents you from scheduling backups.
  • Servers can be recovered completely.
  • Servers are prevented from being recovered completely.
  • It enables you to schedule backups.

Answer :Servers can be recovered completely. It enables you to schedule backups.

70-247 Configuring and Deploying a Private Cloud Exam Set 1

You are the administrator of a company that manufactures aerospace components. Your company has a single Active Directory forest that has a tree with three domains. All servers run Windows Server 2003 or Windows Server 2008 and all client computers use Windows XP Professional and Windows Vista. All servers in the root domain are running Windows Server 2008. You have several file servers in different locations that your users need to access. All of your users actively use the file servers to store and share files. You want to do the following: - Create quotas for a soft and hard space limit on the data volumes of all file servers - Generate storage reports to identify duplicate files and dormant files - Incur minimal costs for hardware or operating system upgrades What should you configure?


Options are :

  • Upgrade all file servers to Windows Server 2008 and install FSRM on a server in the root domain.
  • Upgrade all file servers to Windows Server 2008 and install AD FS on a server in the root domain.
  • Install AD FS on a server in the root domain and use the existing servers in the tree.
  • Upgrade all file servers to Windows Server 2008 and install a domain DFS root.
  • Install a domain DFS root and use the existing servers in the tree.
  • Install FSRM on a server in the root domain and use the existing servers in the tree.

Answer :Install FSRM on a server in the root domain and use the existing servers in the tree.

You are the network administrator for your organization. Your organization's network has a single Active Directory domain. You have deployed Windows Server 2008 domain controllers and Windows Vista client computers in your organization. You have installed the Terminal Services and Application Server role services on a Windows Server 2008 server named WS08-TAS. You notice that the performance of WS08-TAS is noticeably slower when remote users are accessing the server or when multiple applications are opened on the server. The Reliability and Performance Monitor shows the following information: - Processor: %Processor Time - 85 - Memory: Pages/Sec - 9 - System: Processor Queue Length - 1 - Paging File: % Usage - 50 - Paging File\: Usage Peak - 50 - PhysicalDisk: % Disk Time - 45 - PhysicalDisk: Avg. Disk Queue Length - 1 What should you do to improve system performance?


Options are :

  • Increase the amount of RAM.
  • Upgrade disk subsystem to RAID5.
  • Upgrade the disk subsystem to RAID1.
  • Upgrade the processor.

Answer :Upgrade the processor.

You work as the network administrator at YYY.com. The YYY.com network has an Active Directory domain named YYY.com. All servers on the YYY.com network run Windows Server 2008 and all workstations run Windows Vista. The management at YYY.com has informed you of their intention to establish a satellite office. The new satellite office will be linked to YYY.com's headquarters via a WAN link that has limited bandwidth, and will not be linked to the Internet. The management at YYY.com has also informed you that 50 Windows Server 2008 servers will be deployed in the satellite office, and will not be linked to the Internet. Furthermore, management has stipulated that the deployment and activation should be automated. Which of the following should be implemented in the satellite office? (Choose all that apply.)


Options are :

  • A DHCP server.
  • Windows Deployment Services (WDS).
  • Key Management Service (KMS).
  • Multiple Activation Key (MAK) Independent Activation.
  • Windows System Resource Manager (WSRM).
  • The Hyper-V feature.

Answer :A DHCP server. Windows Deployment Services (WDS). Key Management Service (KMS).

Microsoft Windows Server 2016 Certification: Exam 70-741 Set 5

You work as the network administrator at YYY.com. The YYY.com network has an Active Directory forest named YYY.com. All servers on the YYY.com network have Windows Server 2008 installed and all workstations have Windows Vista Service Pack 1 installed. The YYY.com's Sales representatives connect remotely to the network via their laptops. You have to make sure that classified data is stored in an encrypted format and is accessible to the Sales representatives via the Internet. You also have to make sure that encryption is used over the Internet for the Sales representatives. Which combination of the following actions should you take? (Choose two.)


Options are :

  • You should consider making use of Microsoft Point-to-Point Encryption (MPPE).
  • You should consider making use of Encrypting File System (EFS) to encrypt the folders that store sensitive files.
  • You should consider making use of Internet Protocol security (IPsec).
  • You should consider instructing remote users to make use of Secure Socket Transmission Protocol (SSTP) when accessing files.
  • You should consider making use of Point-to-Point Tunneling Protocol (PPTP).

Answer :You should consider making use of Encrypting File System (EFS) to encrypt the folders that store sensitive files. You should consider instructing remote users to make use of Secure Socket Transmission Protocol (SSTP) when accessing files.

You manage a single Windows Server 2008 domain for your company. You have an extranet partner relationship with another company. The partner organization is also organized as a single Windows Server 2008 domain. You need to give a portion of the extranet partner's user population access to a SharePoint Server 2007 Web application that exists on your company's intranet. The collaboration/business requirements for the solutions are that (a) No additional domain user accounts in the local domain must be created to accommodate the partner company's users, (b) all interorganization traffic needs to occur over TCP 443, and (c) access to Microsoft Office documents must be IRM-protected. Which of the following Microsoft technologies must be configured in order to enact this solution? (Choose two answers. Each correct choice represents a part of a single solution.)


Options are :

  • Active Directory Lightweight Directory Services (AD LDS)
  • Active Directory Federation Services (AD FS)
  • Active Directory Domain Services (AD DS)
  • Active Directory Rights Management Services (AD RMS)

Answer :Active Directory Federation Services (AD FS) Active Directory Rights Management Services (AD RMS)

You work as the network administrator at YYY.com. The YYY.com network has an Active Directory domain named YYY.com. All servers on the YYY.com network run Windows Server 2008 R2 and all workstations run Windows 7. The YYY.com Active Directory has two organizational units (OU) named ABC_Emp and ABC_Comp. The user accounts reside in the ABC_Emp OU and the computer accounts reside in the ABC_Comp OU. You have received instruction form the CIO to install a new accounting application that is available to YYY.com's users via an icon pinned to the Start menu. You also have to make sure that offline remote users are able to access the new application. Which of the following actions should you take?


Options are :

  • You should create a new Starter Group Policy object (GPO).
  • You should configure Shared Folders permissions for the Marketing global group.
  • You should make use of Credential Roaming on the Managers OU.
  • You should create and configure a new Group Policy object (GPO) to assign the application to the computer accounts in ABC_Comp.

Answer :You should create and configure a new Group Policy object (GPO) to assign the application to the computer accounts in ABC_Comp.

70-646 Pro Windows Server 2008 - Server Administrator Exam Set 5

Your company has a single Active Directory domain with branch offices in three cities. Each city is configured as an Active Directory site. All servers run Windows Server 2008, and all client computers run Windows Vista. Each office has a file server with shared folders. You want users in each office to be able to access and update the data in each file server's shared folder on a local server in each office. You also want to prevent a server that was offline for a long time from overwriting fresh data when it comes back online with stale data. Your solution should minimize hardware expenses. What should you configure?


Options are :

  • Implement Cluster Continuous Replication (CCR).
  • Implement a Network Load Balancing cluster.
  • Implement a single copy cluster (SCC).
  • Implement Distributed File System (DFS) Namespaces and DFS Replication.

Answer :Implement Distributed File System (DFS) Namespaces and DFS Replication.

You plan to deploy 10 Windows Server 2008 servers and 75 Windows Vista workstations to a secure remote facility that is a part of your organization. This secure remote facility is not connected to the Internet. A low-speed WAN connection will link the headquarters with the secure remote facility. You plan to deploy operating systems in the remote facility by using Windows Deployment Services (WDS). However, you need to determine the appropriate Windows Activation model for your infrastructure. Network traffic over the WAN must be strictly limited. Which of the following actions should you perform?


Options are :

  • Use RIS instead of WDS as an operating system deployment method.
  • Implement a VA 1.0 volume license key infrastructure
  • Implement a MAK activation infrastructure for the secure remote facility.
  • Implement a KMS activation infrastructure for the secure remote facility.

Answer :Implement a KMS activation infrastructure for the secure remote facility.

You manage a single Windows Server 2008 domain for a dry goods importer. All client computers in the domain run Windows Vista with Service Pack 1. Your development team has developed a custom inventory tracking application. In order to ensure centralized control over application updates, you decide to deploy this application via Terminal Services RemoteApp technology. To this end, you provision a Terminal Service member server named APP01 that hosts a TS Web Access site and publish the custom application via the TS Web Access interface. However, your users claim to have difficulty locating the TS Web Access site on the corporate intranet. Accordingly, you need to simplify the users' path to using the custom application. Which of the following represent valid approaches to solving the problem? (Select two answers. Each correct choice represents a complete solution in itself.)


Options are :

  • Publish the RemoteApp in a shared folder and notify the user population of the folder's location.
  • Publish the RemoteApp as a Start menu shortcut to all users.
  • Distribute the RemoteApp as an .RDP file to all users.
  • Distribute the RemoteApp as an .EXE installer to all users.

Answer :Publish the RemoteApp as a Start menu shortcut to all users. Distribute the RemoteApp as an .RDP file to all users.

70-647 Pro Windows Server 2008 Enterprise Administrator Exam Set 1

You have been having problems with a SQL Server machine. You've found that when a specific critical event is recorded, within 30 minutes the SQL Server machine stops responding to all queries. You want to be notified when this critical event occurs. What could you do?


Options are :

  • Create an event task to send you an email if the event occurs.
  • Configure an event subscription to forward this event to your system.
  • Create an event task to forward this event to your system.
  • Configure an event subscription to send you an email if the event occurs.

Answer :Create an event task to send you an email if the event occurs.

You work as the network administrator at YYY.com. The YYY.com network has an Active Directory domain named YYY.com. All servers on the YYY.com network has Windows Server 2008 R2 installed and all workstations have Windows 7 installed. YYY.com has workstations in excess of 2,500. When YYY.com acquires some new applications, you are instructed to make sure that it is installed on YYY.com's workstations. You have been informed that applications should only be installed on workstations that meet the hardware requirements. Furthermore, you are told that reports should be generated for the success or failure of the installation and that the installation should not take place during normal work time. Which of the following actions should you take?


Options are :

  • You should consider making use of the Microsoft System Center Configuration Manager (SCCM) 2007.
  • You should consider making use of an ADML file.
  • You should consider making use of Windows Deployment Services (WDS).
  • You should consider making use of roaming user profiles.

Answer :You should consider making use of the Microsoft System Center Configuration Manager (SCCM) 2007.

You work as the network administrator at YYY.com. The YYY.com network has an Active Directory domain named YYY.com. All servers on the YYY.com network have Windows Server 2008 installed and all workstations have Windows Vista installed. The YYY.com network has 20 SharePoint sites configured. YYY.com contains a server, named ABC-SR12, which is configured to run the Windows SharePoint Services (WSS) role. You have been instructed to improve ABC-SR12's performance, and to also make sure that system resources are equally assigned to each SharePoint site if the CPU surpasses 80% utilization. Which combination of the following actions should you take? (Choose two.)


Options are :

  • You should consider setting up the use of a separate application pool for each SharePoint site.
  • You should consider making use of Windows System Resource Manager (WSRM).
  • You should consider deploying a Group Policy Object (GPO) container.
  • You should consider deploying AD RMS.
  • You should consider making use of Microsoft System Center Configuration Manager (SCCM).

Answer :You should consider setting up the use of a separate application pool for each SharePoint site. You should consider making use of Windows System Resource Manager (WSRM).

Microsoft 70-647 Windows Enterprise Administrator Exam Set 7

You manage a domain of 500 users, and you've decided to allow Sally to manage all the users and computers in the Sales organizational unit. How should you grant her the appropriate permissions?


Options are :

  • Right-click the Sales OU, and select Delegation of Control Wizard.
  • Add Sally's user account to the Domain Admins group
  • Right-click the domain, and select Delegation of Control Wizard.
  • Right-click Sally's user account, and select Delegation of Control Wizard.

Answer :Right-click the Sales OU, and select Delegation of Control Wizard.

You work as the network administrator at YYY.com. The YYY.com network has an Active Directory domain named YYY.com. Servers on the YYY.com network run Windows Server 2003 and all workstations run Windows Vista. YYY.com's domain controllers have Windows Server 2008 installed. YYY.com also has a firewall server,named ABC-SR13 that has Microsoft Internet Security and Acceleration (ISA) Server 2006 installed. The Terminal Server component is currently deployed on the Windows Server 2003 servers. You have received instructions to make sure that the open ports on the ABC-SR13 should be kept to a minimum. You also have to make sure that the remote connections to the Terminal Server servers should be encrypted and that workstations are unable access the network when the firewall disabled. Which combination of the following actions should you take? (Choose two.)


Options are :

  • You should consider upgrading one of the Windows Server 2003 server to a 64-bit version of Windows Server 2008 Enterprise Edition.
  • You should consider upgrading one of the Windows Server 2003 servers to a 32-bit version of Windows Server 2008 Enterprise Edition.
  • You should consider making use of Trusted Platform Module (TPM) on the ISA Server.
  • You should consider upgrading one of the Windows Server 2003 servers to Windows Server 2008.
  • You should consider installing the Terminal Services Gateway (TS Gateway) role and Network Access Protection (NAP) on the upgraded server.

Answer :You should consider upgrading one of the Windows Server 2003 servers to Windows Server 2008. You should consider installing the Terminal Services Gateway (TS Gateway) role and Network Access Protection (NAP) on the upgraded server.

You work as the network administrator at YYY.com. All servers on the YYY.com network have Windows Server 2008 R2 installed. Due to company growth, there is a need for 3 additional file servers, which must be configured to connect to the existing Cisco switches. You have been instructed to design a strategy that assigns the file servers storage space as required, while improving the performance and fault tolerance of the servers. Your strategy should not require any changes to the current network setup. As part of your strategy, you upgrade the servers to Windows Server 2008 R2 Datacenter Edition. You have to make sure that your task is suitably completed. Which combination of the following actions should you take? (Choose two.)


Options are :

  • You should consider deploying Windows Server 2008 Standard Edition on each server
  • You should consider deploying the servers in a Node and File Share Disk Majority cluster.
  • You should consider installing a Fibre Channel (FC) storage area network (SAN).
  • You should consider deploying the servers in a failover cluster.
  • You should consider deploying Windows Server 2008 Enterprise Edition on all servers.
  • You should consider installing an iSCSI storage area network (SAN).

Answer :You should consider deploying the servers in a failover cluster. You should consider installing an iSCSI storage area network (SAN).

Microsoft 70-243 Administering Deploying System Manager Exam Set 1

After rebooting your DNS server that is also a domain controller, you having a wide variety of problems. A significant problem is that users aren't able to access any network resources, but you verify that they received the correct DHCP lease. You suspect that SRV records haven't been created. What can you do to create them?


Options are :

  • Stop and restart the NetSRV service.
  • Stop and restart the NetLogon service.
  • Stop and restart the SRV service.
  • Use the DNS Manager console to manually create the SRV records.

Answer :Stop and restart the NetLogon service.

You work as the network administrator at YYY.com. The YYY.com network has a domain named YYY.com. You are responsible for managing a Windows Server 2008 server, named ABC-SR11, which has the DHCP services role installed. You have been instructed to devise an unattended deployment solution that allows for the support of Windows Vista and Windows Server 2008 deployments. You also have to make sure that the PXE network card is supported on the workstations and that the amount of installed servers on the YYY.com network is kept to a minimum. Which of the following actions should you take?


Options are :

  • You should consider configuring ABC-SR11 to host the Windows Deployment Services (WDS) server role.
  • You should consider making use of Multiple Activation Key (MAK) Independent Activation.
  • You should consider making use of Key Management Service (KMS).
  • You should consider running the installation with the unattended command parameter specified.
  • You should consider installing the Windows Automated Installation Kit (WAIK).
  • You should consider deploying a new server.

Answer :You should consider configuring ABC-SR11 to host the Windows Deployment Services (WDS) server role.

Comment / Suggestion Section
Point our Mistakes and Post Your Suggestions