Pytania i odpowiedzi

Windows Serwer 2012 R2 70-411

Zebrane pytania i odpowiedzi do zestawu. Ogromny test z administracji systemem Windows Server 2012. Pytania o Windows Serwer 2012 R2 - Egzamin 70-411
Ilość pytań: 211 Rozwiązywany: 12961 razy
Pytanie 121
Your company has two offices. The offices are located in Montreal and Seattle. The network contains an Active Directory domain named contoso.com. The domain contains servers named Server1 and Server2. Server1 is located in the Seattle office. Server2 is located in the Montreal office. Both servers run Windows Server 2012 R2 and have the Windows Server Update Services (WSUS) server role installed. You need to configure Server2 to download updates that are approved on Server1 only. What cmdlet should you run? To answer, select the appropriate options in the answer area. Wpisz 1-5
1 5
2 3
3 1
Pytanie 122
Your network contains an Active Directory domain named contoso.com. The domain contains three servers named Server2, Server3, and Server4. Server2 and Server4 host a Distributed File System (DFS) namespace named Namespace1. You open the DFS Management console as shown in the exhibit. (Click the Exhibit button.)
1 Server2 and Server3 only
2 Server2 only
Pytanie 123
Your network contains an Active Directory domain named contoso.com. You create an organizationai unit (OU) named OU1 and a Group Policy object (GPO) named GP01. You link GP01 to OU1. You move several file servers that store sensitive company documents to OU1. Each file server contains more than 40 shared folders. You need to audit all of the failed attempts to access the fiies on the file servers in OU1. The solution must minimize administrative effort. Which two audit policies should you configure in GP01 ? To answer, select the appropriate two objects in the answer area.
Object Access
Global Object Access Auditing
Pytanie 124
Your network contains an Active Directory domain named contoso.com. The domain contains 30 user accounts that are used for network administration. The user accounts are members of a domain global group named Group1. You identify the security requirements for the 30 user accounts as shown in the following table. You need to identify which settings must be implemented by using a Password Settings object (PSO) and which settings must be implemented by modifying the properties of the user accounts. What should you identify? To answer, configure the appropriate settings in the dialog box in the answer area. Wpisz 1-2
Minimum password length
1
Account is sensitiue and cannot be delegated
2
User cannot change passwor
2
Enforce password history
1
Pytanie 125
Your network contains 25 Web servers that run Windows Server 2012 R2. You need to configure auditing policies that meet the following requirements: ■ Generate an event each time a new process is created. ■ Generate an event each time a user attempts to access a file share. Whitch two auditing policies should you configure? To answer, select the appropriate two auditing policies in the answer area.
Detailed Tracking
Object Access
Pytanie 126
Your network contains an Active Directory domain named contoso.com. You need to create a certificate template for the BitLocker Drive Encryption (BitLocker) Network Unlock feature. Which Cryptography setting of the certificate template shouid you modify? To answer, select the appropriate setting in the answer area.
Minimum key size
Pytanie 127
You have a file server named Server1 that runs Windows Server 2012 R2. A user named Userl is assigned the modify NTFS permission to a folder named C:\shares and all of the subfolders of C:\shares. On Server1, you open File Server Resource Manager as shown in the exhibit. (Click the Exhibit button.) Wpisz od 1-4
1 3
2 4
Pytanie 128
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server role installed. You need to configure the ports on Server1 to ensure that client computers can establish VPN connections to Server1. The solution must NOT require the use of certificates or pre-shared keys. What should you modify? To answer, select the appropriate object in the answer area.
PPTP
Pytanie 129
You have a server named Server1 that has the Network Policy and Access Services server role installed. You plan to configure Network Policy Server (NPS) on Server1 to use certificate-based authentication for VPN connections. You obtain a certificate for NPS. You need to ensure that NPS can perform certificate-based authentication. To which store should you import the certificate? To answer, select the appropriate store in the answer area.
Certificates (Local Computer) / Personal
Pytanie 130
Your network contains an Active Directory domain named contoso.com. The domain contains a member server that runs Windows Server 2012 R2 and has the Windows Deployment Services (WDS) server role installed. You create a new muiticast session in WDS and connect 50 client computers to the session. When you open the Windows Deployment Services console, you discover that all ot the computers are listed as pending devices. You need to ensure that any ot the computers on the network can join a muiticast transmission without requiring administrator approval. What should you configure? To answer, select the appropriate tab in the answer area.
PXE Response
Pytanie 131
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The domain contains a server named Server1 that has the Network Policy Server server role and the Remote Access server role installed. The domain contains a server named Server2 that is configured as a RADIUS server. Server1 provides VPN access to external users. You need to ensure that all of the VPN connections to Server1 are logged to the RADIUS server on Server2. What should you run?
Add-RemoteAccessRadius -ServerName Server2 -AccountingOnOffMsg Enabled -SharedSecret "Secret" -Purpose Accounting
Pytanie 132
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. On all of the domain controllers, Windows is installed in C:\Windows and the Active Directory database is located in D:\Windows\NTDS\. All of the domain controllers have a third-party application installed. The operating system fails to recognize that the application is compatible with domain controller cloning. You verify with the application vendor that the application supports domain controller cloning. You need to prepare a domain controller for cloning. What should you do?
In D:\Windows\NTDS\, create an XML file named CustomDCCIoneAllowList.xml and add the application information to the file
Pytanie 133
Your network contains an Active Directory domain named contoso.com. You create a user account named User1. The properties of User1 are shown in the exhibit. (Click the Exhibit button.) You plan to use the User1 account as a service account. The service will forward authentication requests to other servers. You need to ensure that you can view the Delegation tab from the properties of the User1 account. What should you do first?
Configure a Service Principal Name (SPN) for User1
Pytanie 134
Your network contains an Active Directory forest named contoso.com. The forest functional level is Windows Server 2012 R2. The forest contains a single domain. You create a Password Settings object (PSO) named PS01. You need to delegate the rights to apply PS01 to the Active Directory objects in an organizational unit named 0U1. What should you do?
From Active Directory Administrative Center, modify the security settings of PS01
Pytanie 135
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The domain contains two servers. The servers are configured as shown in the following table. All client computers run Windows 8 Enterprise. You plan to deploy Network Access Protection (NAP) by using IPSec enforcement. A Group Policy object (GPO) named GP01 is configured to deploy a trusted server group to all ot the client computers. You need to ensure that the client computers can discover HRA servers automatically. Which three actions should you perform? (Each correct answer presents part ot the solution. Choose three.)
On all ot the client computers, configure the EnableDiscovery registry key
In a GPO, modify the Request Policy setting for the NAP Client Configuration
On DC1, create a service location (SRV) record
Pytanie 136
Your network contains two Active Directory forests named contoso.com and adatum.com. The contoso.com forest contains a server named Server1.contoso.com. The adatum.com forest contains a server named server2. adatum.com. Both servers have the Network Policy Server role service installed. The network contains a server named Server3. Server3 is located in the perimeter network and has the Network Policy Server role service installed. You plan to configure Server3 as an authentication provider for several VPN servers. You need to ensure that RADIUS requests received by Server3 for a specific VPN server are always forwarded to Server1 .contoso.com. Which two should you configure on Server3? (Each correct answer presents part ot the solution. Choose two.)
Remote RADIUS server groups
Connection request policies
Pytanie 137
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Network Policy and Access Services server role installed. Your company's security policy requires that certificate-based authentication must be used by some network services. You need to identify which Network Policy Server (NPS) authentication methods comply with the security policy. Which two authentication methods should you identify? (Each correct answer presents part ot the soiution. Choose two.)
PEAP-MS-CHAP v2
EAP-TLS
Pytanie 138
Your network contains an Active Directory domain named adatum.com. The domain contains a file server named Server1 that runs Windows Server 2012 R2. All client computers run Windows 7. You need to ensure that user settings are saved to \\Server1\Users\. What should you do?
From the properties of each user account, configure the User profile settings
Pytanie 139
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. An organizational unit (OU) named OU1 contains 200 client computers that run Windows 8 Enterprise. A Group Policy object (GPO) named GP01 is linked to OU1. You make a change to GP01. You need to force all of the computers in OU1 to refresh their Group Policy settings immediately. The solution must minimize administrative effort. Which tool should you use?
Group Policy Management Console (GPMC)
Pytanie 140
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012 R2. All client computers run Windows 8 Enterprise. DC1 contains a Group Policy object (GPO) named GP01. You need to update the PATH variable on all of the client computers. Which Group Policy preference should you configure?
Environment

Powiązane tematy

#windows #serwer #2012