Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains a server named DHCP1 that runs Windows Server and has the DHCP Server role installed. DHCP1 has a static IPv4 address of 10.10.10.5/24.
DHCP1 is authorized in AD DS and contains an active scope for a subnet of 10.10.20.0/24.
Client computers on the 10.10.20.0/24 subnet receive APIPA addresses. You verify that the DHCP Server service is running, and the scope has available IP addresses.
You need to ensure that the computers on 10.10.20.0/24 can obtain IPv4 address leases from DHCP1.
What should you do?
Answer : C
Your network contains an Active Directory Domain Services (AD DS) domain.
The domain contains the sites shown in the following table.
You plan to move a domain controller named DC2 to Site2.
You need to ensure that the client computers in Site2 locate DC2 by using AD DS site awareness. The solution must NOT affect other client computers on 10.40.0.0/16.
What should you do?
Answer : A
You have a Remote Desktop Services (RDS) farm deployment.
Administrators connect to the farm by using Remote Desktop from domain-joined workstations on the internal network.
You need to enable administrators to connect to the RDS farm by using Remote Desktop from the internet. The solution must prevent opening internal RDP ports to the internet.
Which role should you add to the deployment?
Answer : E
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory Domain Services (AD DS) forest. The forest contains three Active Directory sites named Site1, Site2, and Site3. Each site contains two domain controllers. The sites are connected by using DEFAULTIPSITELINK.
You open a new branch office that contains only client computers.
You need to ensure that the client computers in the new office are primarily authenticated by the domain controllers in Site1.
Solution: You configure the Try Next Closest Site Group Policy Object (GPO) setting in a GPO that is linked to Site1.
Does this meet the goal?
Answer : B
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory Domain Services (AD DS) forest. The forest contains three Active Directory sites named Site1, Site2, and Site3. Each site contains two domain controllers. The sites are connected by using DEFAULTIPSITELINK.
You open a new branch office that contains only client computers.
You need to ensure that the client computers in the new office are primarily authenticated by the domain controllers in Site1.
Solution: You create an organizational unit (OU) that contains the client computers in the new branch office. You configure the Try Next Closest Site Group Policy Object (GPO) setting in a GPO that is linked to the new OU.
Does this meet the goal?
Answer : B
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory Domain Services (AD DS) forest. The forest contains three Active Directory sites named Site1, Site2, and Site3. Each site contains two domain controllers. The sites are connected by using DEFAULTIPSITELINK.
You open a new branch office that contains only client computers.
You need to ensure that the client computers in the new office are primarily authenticated by the domain controllers in Site1.
Solution: You create a new subnet object that is associated to Site1.
Does this meet the goal?
Answer : A
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory Domain Services (AD DS) forest. The forest contains three Active Directory sites named Site1, Site2, and Site3. Each site contains two domain controllers. The sites are connected by using DEFAULTIPSITELINK.
You open a new branch office that contains only client computers.
You need to ensure that the client computers in the new office are primarily authenticated by the domain controllers in Site1.
Solution: You create a new site named Site4 and associate Site4 to DEFAULTIPSITELINK.
Does this meet the goal?
Answer : B
Overview -
Contoso, Ltd. is a company that has a main office in Seattle and two branch offices in Los Angeles and Montreal.
Existing Environment -
AD DS Environment -
The network contains an on-premises Active Directory Domain Services (AD DS) forest named contoso.com. The forest contains two domains named contoso.com and canada.contoso.com.
The forest contains the domain controllers shown in the following table.
All the domain controllers are global catalog servers.
Server Infrastructure -
The network contains the servers shown in the following table.
A server named Server4 runs Windows Server and is in a workgroup. Windows Defender Firewall on Server4 uses the private profile.
Server2 hosts three virtual machines named VM1, VM2, and VM3.
VM3 is a file server that stores data in the volumes shown in the following table.
Group Policies -
The contoso.com domain has the Group Policies Objects (GPOs) shown in the following table.
Existing Identities -
The forest contains the users shown in the following table.
The forest contains the groups shown in the following table.
Current Problems -
When an administrator signs in to the console of VM2 by using Virtual Machine Connection, and then disconnects from the session without signing out, another administrator can connect to the console session as the currently signed-in user.
Requirements -
Technical Requirements -
Contoso identifies the following technical requirements:
Change the replication schedule for all site links to 30 minutes.
Promote Server1 to a domain controller in canada.contoso.com.
Install and authorize Server3 as a DHCP server.
Ensure that User1 can manage the membership of all the groups in Contoso\OU3.
Ensure that you can manage Server4 from Server1 by using PowerShell remoting.
Ensure that you can run virtual machines on VM1.
Force users to provide credentials when they connect to VM2.
On VM3, enable Data Deduplication on all volumes that support the feature.
You need to meet the technical requirements for VM3.
On which volumes can you enable Data Deduplication?
Answer : A
You have a Windows Server failover cluster (WSFC) named Cluster1 that has two nodes and uses Storage Spaces Direct. The nodes contain a non-primordial storage pool named Pool1. Pool1 is read-only and contains no virtual disks.
You delete Cluster1 and redeploy the cluster by using the same nodes.
During the redeployment, Windows Admin Center reports a storage error.
You need to remove the stale storage configuration so that the disks can be reused for the redeployment.
Which two actions should you perform? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
Answer : AB
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains the following servers:
Server1: Has the DES Namespaces role service installed
Server2: Has the DFS Namespaces role service installed
Server3: Hosts a file share named \\Server3\Share1
Server4: Hosts a file share named \\Server4\Share2
You need to publish both files shares in a single DFS namespace named Corp. Corp must remain available if either Server1 or Server2 is unavailable.
What should you do?
Answer : B
HOTSPOT -
You have an on-premises file server that runs Windows Server and contains an SMB share for general-purpose document storage.
You plan to migrate the documents to Azure Files by using a file-copy process before user cutover.
You need to create an Azure Files share for the migration phase. The solution must meet the following requirements:
Support read and write access during an availability zone outage.
Minimize redundancy costs, while meeting the availability requirement.
Minimize SSD-based performance costs.
What should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer :
DRAG DROP -
You have a file server that runs Windows Server and has the File Server Resource Manager role service installed. The server hosts a file share named D:\Shares\Contracts.
You need to configure File Server Resource Manager (FSRM). The solution must meet the following requirements:
Prevent users from saving .mp3 and .mp4 files.
Automatically set the DataUse value for contract files.
Move files that have DataUse-Archive and have NOT been accessed for 365 days to a folder named D:\Expired.
Which FSRM feature should you use for each requirement? To answer, drag the appropriate features to the correct requirements. Each feature may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Answer :
DRAG DROP -
Your network contains an on-premises Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains three file servers named Serverl1, Server2, and Server3.
You have a domain-based Distributed File System (DFS) share named \\contoso.com\shares\Projects. Projects has folder targets on each file server. DFS Replication replicates Projects between the servers.
You need to migrate the replication for Projects from DFS Replication to Azure File Sync by using an existing Azure Files share. The solution must meet the following requirements:
Preserve the current domain UNC path.
After the migration, sync the changes from all the servers by using Azure File Sync.
Ensure that the Azure Files share contains the Projects data before DFS Replication is retired.
What should you do? To answer, drag the appropriate actions to the correct requirements. Each action may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Answer :
DRAG DROP -
You have a file server that runs Windows Server and contains a deduplicated NTFS volume named Volume01.
Volume01 contains file shares for a team at your company.
During a recent period of peak usage, the Data Deduplication default schedules paused. During the pause, administrators deleted many optimized files, and storage diagnostics reported bad sectors on the underlying disks.
You need to run Data Deduplication on Volume01 to meet the following requirements:
Reclaim free space.
Validate and repair data integrity issues.
Which job should you run for each requirement? To answer, drag the appropriate jobs to the correct requirements. Each job may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Answer :
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains a management server named Server1 and a privileged user named Admin1.
Admin1 uses Server1 to run Active Directory Users and Computers and Group Policy Management Console (GPMC).
You apply a security baseline to all privileged users to prevent credential caching and delegation.
After applying the baseline, Admin1 cannot open either console. The consoles return logon and access denied errors.
You run klist tgt as Admin1, and receive the following error message.
0x80009030e: No credentials are available in the security package
You need to restore AD DS management access for Admin1 without changing domain-wide or server-wide authentication settings.
What should you do?
Answer : B
Have any questions or issues ? Please dont hesitate to contact us