70-413 Premium Bundle

70-413 Premium Bundle

Designing and Implementing a Server Infrastructure Certification Exam

4.5 
(10530 ratings)
0 QuestionsPractice Tests
0 PDFPrint version
November 21, 2024Last update

Microsoft 70-413 Free Practice Questions

Q1. - (Topic 8) 

Your network contains 50 servers that run Windows Server 2003 and 50 servers that run 

Windows Server 2008. 

You plan to implement Windows Server 2012 R2. 

You need to create a report that includes the following information: 

. The servers that run applications and services that can be moved to Windows 

Server 2012 R2 

. The servers that have hardware that can run Windows Server 2012 R2 

. The servers that are suitable to be converted to virtual machines hosted on Hyper-

V hosts that run Windows Server 2012 R2 

Solution: You install Windows Server 2012 R2 on a new server, and then you run the Windows Server Migration Tools. Does this meet the goal? 

A. Yes 

B. No 

Answer:

Q2. - (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The Active Directory site topology is configured as shown in the exhibit. (Click the Exhibit button.) 

DC1 and DC2 run Windows Server 2003 R2. All FSMO roles are located on DC2. 

You plan to deploy a read-only domain controller (RODC) to Site3. 

You need to recommend changes to the network to support the planned RODC 

implementation. 

What should you recommend? 

More than one answer choice may achieve the goal. Select the BEST answer. 

A. To Site1, add an RODC that runs Windows Server 2012. 

B. Replace DC2 with a domain controller that runs Windows Server 2012. 

C. To Site2, add an RODC that runs Windows Server 2012. 

D. Replace DC1 with a domain controller that runs Windows Server 2012. 

Answer:

Explanation: Each RODC requires a writable domain controller running Windows Server 

2012 for the same domain from which the RODC can directly replicate. 

Typically, this requires that a writable domain controller running Windows Server 2012 be 

placed in the nearest site in the topology. 

Reference: Active Directory Replication Considerations 

Q3. - (Topic 8) 

Your company has a main office and a branch office. 

The network contains an Active Directory domain named contoso.com. The domain contains three domain controllers. The domain controllers are configured as shown in the following table.

 

The domain contains two global groups. The groups are configured as shown in the following table. 

You need to ensure that the RODC is configured to meet the following requirements: 

. Cache passwords for all of the members of Branch1Users. 

. Prevent the caching of passwords for the members of Helpdesk. 

What should you do? 

A. Modify the password replication policy of RODC1. 

B. Modify the delegation settings of RODC1. 

C. Modify the membership of the Allowed RODC Password Replication group. 

D. Modify the membership of the Denied RODC Password Replication group. 

E. Modify the delegation settings of DC1 and DC2. 

F. Install the BranchCache feature on RODC1. 

G. Create a Password Settings object (PSO) for the Helpdesk group. 

H. Create a Password Settings object (PSO) for the Branch1Users group. 

Answer:

Explanation: The Password Replication Policy acts as an access control list (ACL). It determines if an RODC should be permitted to cache a password. After the RODC receives an authenticated user or computer logon request, it refers to the Password Replication Policy to determine if the password for the account should be cached. 

Reference: Password Replication Policy 

Q4. - (Topic 8) 

You deploy an Active Directory domain named contoso.com to the network. The domain is configured as an Active Directory-integrated zone. All domain controllers run Windows Server 

2012 and are DNS servers. 

You plan to deploy a child domain named operations.contoso.com. 

You need to recommend changes to the DNS infrastructure to ensure that users in the operations department can access the servers in the contoso.com domain. 

What should you include in the recommendation? 

A. A zone delegation for _msdcs.contoso.com 

B. Changes to the replication scope of contoso.com 

C. Changes to the replication scope of _msdcs.contoso.com 

D. Changes to the replication scope of operations.contoso.com 

Answer:

Explanation: 

Manually Create a Delegation for the Child Domain on the Parent (Root) DNS Server 

1. Right-click the root zone, click New Delegation, and then click Next. 

2. Type the domain name for the child domain, and then click Next. 

3. Add the child DNS server to host the new zone, and then click Next. NOTE: A domain controller that is a DNS server should have a static Transport Control Protocol/Internet Protocol (TCP/IP) address. Verify that this step is performed before you install DNS on the child domain controller. If no DNS TCP/IP address exists, DNS is installed as a root server. If you see that a "." folder is created after you install DNS, you must remove the root configuration. For additional information about how to do this, click the article number below to view the article in the Microsoft Knowledge Base: 229840 DNS Server's Root Hints and Forwarder Pages Are Unavailable 

4. On the child domain DNS server, right-click My Network Places, and then click Properties. 

5. Right-click the appropriate local connection, and then click Properties. 

6. Under Components checked are used by this connection, click Internet Protocol (TCP/IP), and then click Properties. 

7. Click Use the following DNS server addresses:, and then type the TCP/IP address of the parent (root) DNS server. 

Reference: How To Create a Child Domain in Active Directory and Delegate the DNS Namespace to the Child Domain 

http://support.microsoft.com/kb/255248 

Q5. - (Topic 8) 

Your network contains an Active Directory domain named contoso.com. 

On several organizational units (OUs), an administrator named Admin1 plans to delegate control of custom tasks. You need to ensure that Admin1 can delegate a custom task named Task1 by using the Delegation of Control Wizard. 

What should you do? 

A. Add a new class to the Active Directory schema. 

B. Configure a custom MMC console. 

C. Modify the Delegwiz.inf file. 

D. Configure a new authorization store by using Authorization Manager. 

Answer:

Explanation: 

To add a task to the Delegation Wizard, you must create a task template by using the 

following syntax in the Delegwiz.inf file 

;---------------------------------------------------------

[template1] 

AppliesToClasses=<comma delimited list of object types to which this 

template applies; for example, if "organizationalUnit" is in the list, 

this template will be shown when the Delegation Wizard is invoked on 

an OU> 

Description = "<task description which will appear in the wizard>" 

Etc. 

Reference: How to customize the task list in the Delegation Wizard http://support.microsoft.com/kb/308404 

Q6. - (Topic 8) 

Your network contains an Active Directory domain named contoso.com. 

Your company has 100 users in the sales department. Each sales user has a domain-joined laptop computer that runs either Windows 7 or Windows 8. The sales users rarely travel to the company's offices to connect directly to the corporate network. 

You need to recommend a solution to ensure that you can manage the sales users' laptop computers when the users are working remotely. 

What solution should you include in the recommendation? 

A. Deploy the Remote Access server role on a server on the internal network. 

B. Deploy the Network Policy and Access Services server role on a server on the internal network. 

C. Deploy a Microsoft System Center 2012 Service Manager infrastructure. 

D. Deploy a Microsoft System Center 2012 Operations Manager infrastructure. 

Answer:

Explanation: 

Incorrect: 

Not A: The Remote Access server role just give access to the remote computers, but you 

need to MANAGE their computers. 

Q7. - (Topic 8) 

Your company has a main office and a branch office. The main office contains 2,000 users. The branch office contains 800 users. Each office contains three IP subnets. 

The company plans to deploy an Active Directory forest. 

You need to recommend an Active Directory infrastructure to meet the following requirements: 

. Ensure that the users are authenticated by using a domain controller in their respective office. 

. Minimize the amount of Active Directory replication traffic between the offices. 

Which Active Directory infrastructure should you recommend? 

More than one answer choice may achieve the goal. Select the BEST answer. 

A. Two domains and one site 

B. Two domains and two sites 

C. One domain and two sites 

D. One domain and six sites 

Answer:

Explanation: 

To minimize the amount of replication traffic, create 2 sites. 

To ensure that users are authentication by using a local domain controller, use two 

domains. 

Reference: Active Directory Replication Traffic 

Q8. - (Topic 1) 

You are planning the decommissioning of research.contoso.com. 

You need to ensure that an administrator named Admin5 in the research department can manage the user accounts that are migrated to contoso.com. The solution must minimize the number of permissions assigned to Admin5. 

What should you do before you migrate the user accounts? 

A. Run the New-Object cmdlet, and then run the Add-ADPrincipalGroupMembershipcmdlet. 

B. Create a new organizational unit (OU), and then add Admin5 to the Account Operators group. 

C. Create a new organizational unit (OU), and then run the Delegation of Control Wizard. 

D. Run the New-Object cmdlet, and then run the Add-ADCentralAccessPolicyMembercmdlet. 

Answer:

Explanation: 

* Scenario: Decommission the research.contoso.com domain. All of the users and the Group Policy objects (GPOs) in research.contoso.com will be migrated to contoso.com. 

Reference: Delegation of Control Wizard 

http://technet.microsoft.com/en-us/library/dd145344.aspx 

Q9. - (Topic 8) 

Your company, which is named Contoso, Ltd., has a main office and two branch offices. The main office is located in North America. The branch offices are located in Asia and Europe. 

You plan to design an Active Directory forest and domain infrastructure. 

You need to recommend an Active Directory design to meet the following requirements: 

* The contact information of all the users in the Europe office must not be visible to the users in the other offices. 

* The administrators in each office must be able to control the user settings and the computer settings of the users in their respective office. 

The solution must use the least amount of administrative effort. 

What should you include in the recommendation? 

A. One forest that contains three domains 

B. Three forests that each contain one domain 

C. Two forests that each contain one domain 

D. One forest that contains one domain 

Answer:

Explanation: * The most basic of all Active Directory structures is the single domain model; this type of domain structure comes with one major advantage over the other models: simplicity. A single security boundary defines the borders of the domain, and all objects are located within that boundary. The establishment of trust relationships between other domains is not necessary, and implementation of technologies such as Group Policies is made easier by the simple structure. 

Q10. - (Topic 3) 

You need to recommend changes to the Active Directory site topology to support on the company's planned changes. 

What should you include in the recommendation? 

A. A new site 

B. A new site link bridge 

C. A new site link 

D. A new subnet 

Answer:

Explanation: 

* Scenario: 

The forest contains a child domain for each office. An Active Directory site exists for each 

office. 

* Sites overview 

Sites in AD DS represent the physical structure, or topology, of your network. AD DS uses 

network topology information, which is stored in the directory as site, subnet, and site link 

objects, to build the most efficient replication topology. The replication topology itself 

consists of the set of connection objects that enable inbound replication from a source 

domain controller to the destination domain controller that stores the connection object. 

The Knowledge 

Consistency Checker (KCC) creates these connection objects automatically on each 

domain controller. 

Reference: Understanding Sites, Subnets, and Site Links 

http://technet.microsoft.com/en-us/library/cc754697.aspx 

Q11. - (Topic 1) 

You implement and authorize the new DHCP servers. You import the server configurations and the scope configurations from PA1 and AM1. 

You need to ensure that clients can obtain DHCP address assignments after you shut down PA1 and AM1. The solution must meet the technical requirements. 

What should you do? 

A. Run the Get-DhcpServerv4Lease cmdlet and the Remove-DhcpServerv4Lease cmdlet. Run the Windows Server Migration Tools. 

B. Run the Get-DhcpServerv4Lease cmdlet and the Add-DhcpServerv4Lease cmdlet. Activate the scopes. 

C. Run the Get-DhcpServerv4FreeIPAddress cmdlet and the Invoke-DhcpServerv4FailoverReplication cmdlet. Run the Windows Server Migration Tools. 

D. Run the Get-DhcpServerv4FreeIPAddress cmdlet and the Invoke-DhcpServerv4FailoverReplication cmdlet Activate the scopes. 

Answer:

Explanation: The Get-DhcpServerv4Lease cmdlet gets one or more lease records from the Dynamic Host Configuration Protocol (DHCP) server service. The Add-DhcpServerv4Lease cmdlet adds a new IPv4 address lease on the Dynamic Host Configuration Protocol (DHCP) server service. This cmdlet is only supported for DHCP server service running on Windows Server. 2012. 

Q12. - (Topic 8) 

Your network contains an Active Directory forest named contoso.com. The forest contains one domain. 

Your company plans to open a new division named Division1. A group named Division1Admins will administer users and groups for Division1. 

You identify the following requirements for Division1: 

All Division1 users must have a complex password that is 14 characters. 

Division1Admins must be able to manage the user accounts for Division1. 

Division1Admins must be able to create groups, and then delete the groups that 

they create. 

Division1Admins must be able to reset user passwords and force a password 

change at the next logon for all Division1 users. 

You need to recommend changes to the forest to support the Division1 requirements. 

What should you recommend? 

More than one answer choice may achieve the goal. Select the BEST answer. 

A. In the forest create a new organizational unit (OU) named Division1 and delegate permissions for the OU to the Division1Admins group. Move all of the Division1 user accounts to the new OU. Create a fine-grained password policy for the Division1 users. 

B. Create a new child domain named divisionl.contoso.com. Move all of the Division1 user accounts to the new domain. Add the Division1Admin members to the Domain Admins group. Configure the password policy in a Group Policy object (GPO). 

C. Create a new forest. Migrate all of the Division1 user objects to the new forest and add the Division1Admins members to the Enterprise Admins group. Configure the password policy in a Group Policy object (GPO). 

D. In the forest create a new organizational unit (OU) named Division1 and add Division1Admins to the Managed By attribute of the new OU. Move the Division1 user objects to the new OU. Create a fine-grained password policy for the Division1 users. 

Answer:

Q13. HOTSPOT - (Topic 8) 

You run the ldifde command and receive the following output: 

The command completes successfully. 

Use the drop-down menus to select the answer choice that completes each statement. 

Answer:  

Q14. - (Topic 7) 

You need to limit the amount of disk space that is used on the client devices. 

Which Windows PowerShell cmdlet or cmdlets should you run? 

A. Add-BCDataCacheExtcnsion 

B. Set-BCDataCacheEntryMaxAge 

C. Disable-BC and Enablc-BCLocal 

D. Set-BCCache 

E. Clear-BCCache 

Answer:

Explanation: 

Scenario: File shares 

Each branch office connects to the New York data center to retrieve file shares. 

BranchCache distributed mode is enabled in each branch office. The cache on each client 

computer must be a single file. 

Reference: Set-BCCache 

Q15. - (Topic 8) 

A company has offices in multiple geographic locations. The sites have high-latency, low-bandwidth connections. You need to implement a multisite Windows Deployment Services (WDS) topology for deploying standard client device images to all sites. 

Solution: At each site, you install a WDS Server. You apply the same configuration settings to each WDS Server. You configure Distributed File Server Replication (DFSR) to synchronize install images. 

Does this meet the goal? 

A. Yes 

B. No 

Answer:

START 70-413 EXAM