70-417 Premium Bundle

70-417 Premium Bundle

Upgrading Your Skills to MCSA Windows Server 2012 Certification Exam

4.5 
(13830 ratings)
0 QuestionsPractice Tests
0 PDFPrint version
November 21, 2024Last update

Microsoft 70-417 Free Practice Questions

Q1. Select the missing tool name from the sentence below: 

You can use the __.exe tool to create installation media for additional domain controllers that you are creating in a domain. By using the Install from Media (IFM) option, you can minimize the replication of directory data over the network. This helps you install additional domain controllers in remote sites more efficiently. 

A. Dsutil 

B. Ntfrsutl 

C. Mqtgsvc 

D. Ntdsutil 

Answer:

Explanation: 

http://technet.microsoft.com/en-us/library/cc770654(v=ws.10).aspx 

Q2. RAG DROP 

Your network contains an Active Directory domain named contoso.com. All client computers run Windows 8. 

Group Policy objects (GPOs) are linked to the domain as shown in the exhibit. (Click the Exhibit button.) 

GPO2 contains computer configurations only and GPO3 contains user configurations only. 

You need to configure the GPOs to meet the following requirements: 

. Ensure that GPO2 only applies to the computer accounts in OU2 that have more than one processor. . Ensure that GPO3 only applies to the user accounts in OU3 that are members of a security group named SecureUsers. 

Which setting should you configure in each GPO? 

To answer, drag the appropriate setting to the correct GPO. Each setting may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer:  

Q3. A user from your organisation has reported to the IT helpdesk that they are receiving the following message: 

"Your account is configured to prevent you from using the computer. Please try another computer." 

What should you do to enable them to log on to their computer? 

A. Use the Dsmove command 

B. Click the Log On To button on the Account tab of her user account 

C. None of these 

D. Click the Allowed To Join Domain button in the New Computer dialog box 

Answer:

Explanation: 

The error message is about the user account configuration. This can be set here: 

Q4. Your network contains an Active Directory domain named contoso.com. 

The domain contains a server named Server1 that runs Windows Server 2012 R2 and has the DHCP Server server role installed. 

You need to create an IPv6 scope on Server1. The scope must use an address space that is reserved for private networks. The addresses must be routable. 

Which IPV6 scope prefix should you use? 

A. 2001:123:4567:890A:: 

B. FE80:123:4567:: 

C. FF00:123:4567:890A:: 

D. FD00:123:4567:: 

Answer:

Q5. Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 runs Windows Server 2012 R2. 

You need to create 3-TB virtual hard disk (VHD) on Server1. 

Which tool should you use? 

A. Share and Storage Management 

B. Server Manager 

C. New-VirtualDisk 

D. Computer Management 

Answer:

Explanation: 

NOT A Share and Storage will only let you create a VHD on a storage pool NOT B Server Manager, can't find where to create this. NOT C Is this powershell ? the command should be NEW-VHD (http://blogs.technet.com/b/heyscriptingguy/archive/2013/06/07/powertip-create-a- new-vhd-with-windows-powershell.aspx) 

D Computer management is the only valid yet non available answer. 

I'd be left with C, hoping they'd have the good powershell command. 

Note: 

From @L_Ranger, Computer Management is not an option anymore. 

Back to New-VirtualDisk 

Old explanation : D (Computer management) 

For Server 2012: 

http://technet.microsoft.com/en-us/library/dd851645.aspx 

For Server 2008: 

http://www.techrepublic.com/blog/the-enterprise-cloud/build-vhds-offline-with-server-manager/ With the Server Manager snap-in, you can create and attach a .VHD file directly. 

Figure A shows the drop-down box where a.VHD file can be created and attached. Figure 

Q6. Your network contains two servers that run Windows Server 2012 R2 named Server1 and Server2. Both servers have the File Server role service installed. 

On Server2, you create a share named Backups. 

From Windows Server Backup on Server1, you schedule a full backup to run every night. 

You set the backup destination to \\Server2 \Backups. 

After several weeks, you discover that \\Server2\Backups only contains the last backup that 

completed on Server1. 

You need to ensure that multiple backups of Server1 are maintained. 

What should you do? 

A. Modify the properties of the Windows Store Service (WSService) service. 

B. Change the backup destination. 

C. Modify the Volume Shadow Copy Service (VSS) settings. 

D. Configure the permission of the Backups share. 

Answer:

Q7. RAG DROP 

Your network contains three servers. The servers are configured as shown in the following tablE. 

Your company plans to standardize all of the servers on Windows Server 2012 R2. 

You need to recommend an upgrade path for each server. 

The solution must meet the following requirements: . Upgrade the existing operating system whenever possible. . Minimize hardware purchases. Which upgrade path should you recommend for each server? 

To answer, drag the appropriate upgrade path to each server in the answer area.Each upgrade path may be used once, more than once, or not at all. 

Answer:  

148. Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. 

In a remote site, a support technician installs a server named DC10 that runs Windows Server 2012 R2. DC10 is currently a member of a workgroup. 

You plan to promote DC10 to a read-only domain controller (RODC). 

You need to ensure that a user named Contoso\User1 can promote DC10 to a RODC in the contoso.com domain. 

The solution must minimize the number of permissions assigned to User1. 

What should you do? 

A. From Active Directory Administrative Center, pre-create an RODC computer account. 

B. FromDsmgmt, run the local roles command. 

C. Join DC10 to the domain. Modify the properties of the DC10 computer account. 

D. Join DC10 to the domain. Run dsmod and specify the /server switch. 

Q8. You have a server named Server1 that runs Windows Server 2012 R2. Server1 has following storage spaces: 

Data 

Users 

Backups 

Primordial 

.... 

You add an additional hard disk to Server1. 

You need to identify which storage space contains the new hard disk. 

Which storage space contains the new disk? 

A. Primordial 

B. Data 

C. Backups 

D. Users 

Answer:

Explanation: 

New Disks (Unallocated space) added to Primordial spacePrimordial Pool? All storage that meets acceptable criteria for Storage Spaces will be placed in the Primordial Pool. Thiscan be considered the default pool for devices from which any other pools will be created. Notice that there are no other virtual disks or pools at this point. The Primordial Pool will only consist of physical storage devices that do not belong to any other pools. 

http://blogs.technet.com/b/canitpro/archive/2012/12/13/storage-pools-dive-right-in.aspx http:// blogs.technet.com/b/askpfeplat/archive/2012/10/10/windows-server-2012-storagespaces-is- it for-youcould-be.aspx 

Q9. Your network contains an Active Directory domain named contoso.com. The network contains a server named Server1 that runs Windows Server 2012 R2 and a server named Server2 that runs Windows Server 2008 R2 Service Pack 1 (SP1). Server1 and Server2 are member servers. You need to ensure that you can manage Server2 from Server1 by using Server Manager. Which two tasks should you perform? (Each correct answer presents part of the solution. Choose two.) 

A. Install Windows Management Framework 3.0 on Server2. 

B. Install Remote Server Administration Tools on Server1. 

C. Install the Windows PowerShell 2.0 engine on Server1. 

D. Install Microsoft .NET Framework 4 on Server2. 

E. Install Remote Server Administration Tools on Server2. 

Answer: A,D 

Explanation: 

http://technet.microsoft.com/en-us/library/hh831456.aspx#BKMK_softconfig 

Q10. Your network contains an Active Directory domain named adatum.com. All domain controllers run Windows Server 2012 R2. The domain contains a virtual machine named DC2. 

On DC2, you run Get-ADDCCloningExcludcdApplicationList and receive the output shown in the following table. 

You need to ensure that you can clone DC2. 

Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.) 

A. Option A 

B. Option B 

C. Option C 

D. Option D 

E. Option E 

Answer: A,E 

Explanation: 

Because domain controllers provide a distributed environment, you could not safely clone an Active Directory domain controller in the past. 

Before, if you cloned any server, the server would end up with the same domain or forest, which is unsupported with the same domain or forest. You would then have to run sysprep, which would remove the unique security information before cloning and then promote a domain controller manually. When you clone a domain controller, you perform safe cloning, which a cloned domain controller automatically runs a subset of the sysprep process and promotes the server to a domain controller automatically. 

The four primary steps to deploy a cloned virtualized domain controller are as follows: 

. Grant the source virtualized domain controller the permission to be cloned by 

adding the source virtualized domain controller to the Cloneable Domain 

Controllers group. 

. Run Get-ADDCCloningExcludedApplicationListcmdlet in Windows PowerShell to 

determine which services and applications on the domain controller are not compatible with the cloning. . Run New-ADDCCloneConfigFile to create the clone configuration file, which is stored in the C:\Windows\NTDS. . In Hyper-V, export and then import the virtual machine of the source domain controller. 

Run Get-ADDCCloningExcludedApplicationListcmdlet In this procedure, run the Get-ADDCCloningExcludedApplicationListcmdlet on the source virtualized domain controller to identify any programs or services that are not evaluated for cloning. You need to run the Get-ADDCCloningExcludedApplicationListcmdlet before the New-ADDCCloneConfigFilecmdlet because if the New-ADDCCloneConfigFilecmdlet detects an excluded application, it will not create a DCCloneConfig.xml file. To identify applications or services that run on a source domain controller which have not been evaluated for cloning Get-ADDCCloningExcludedApplicationList Get-ADDCCloningExcludedApplicationList -GenerateXml 

The clone domain controller will be located in the same site as the source domain controller unless a different site is specified in the DCCloneConfig.xml file. Note: The Get-ADDCCloningExcludedApplicationListcmdlet searches the local domain controller for programs and services in the installed programs database, the services control manager that are not specified in the default and user defined inclusion list. The applications in the resulting list can be added to the user defined exclusion list if they are determined to support cloning. If the applications are not cloneable, they should be removed from the source domain controller before the clone media is created. Any application that appears in cmdlet output and is not included in the user defined inclusion list will force cloning to fail. The Get-ADDCCloningExcludedApplicationListcmdlet needs to be run before the New-ADDCCloneConfigFilecmdlet is used because if the New-ADDCCloneConfigFilecmdlet detects an excluded application, it will not create a DCCloneConfig.xml file. DCCloneConfig.xml is an XML configuration file that contains all of the settings the cloned DC will take when it boots. This includes network settings, DNS, WINS, AD site name, new DC name and more. This file can be generated in a few different ways. 

The New-ADDCCloneConfigcmdlet in PowerShell By hand with an XML editor By editing an existing config file, again with an XML editor (Notepad is not an XML editor.) 

You can populate the XML file. . . . . doesn't need to be empty. . . . . 

http: //technet. microsoft. com/en-us/library/hh831734. aspx http: //blogs. dirteam. com/blogs/sanderberkouwer/archive/2012/09/10/new-features-in-active-directory-domain-services-in-windows-server-2012-part-13-domain-controller-cloning. aspx 

Q11. OTSPOT 

You have a server named Server1 that has the Web Server (IIS) server role installed. You obtain a Web Server certificate. 

You need to configure a website on Server1 to use Secure Sockets Layer (SSL). To which store should you import the certificate? 

To answer, select the appropriate store in the answer area. 

Answer:  

Q12. You are a network administrator of an Active Directory domain named contoso.com. 

You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the 

DHCP Server server role and the Network Policy Server role service installed. 

You enable Network Access Protection (NAP) on all of the DHCP scopes on Server1. 

You need to create a DHCP policy that will apply to all of the NAP non-compliant DHCP 

clients. 

Which criteria should you specify when you create the DHCP policy? 

A. The user class 

B. The vendor class 

C. The client identifier 

D. The relay agent information 

Answer:

Q13. You have a server named Server1 that runs Windows Server 2012 R2. 

You create a Data Collector Set (DCS) named DCS1. 

You need to configure DCS1 to log data to D:\logs. 

What should you do? 

A. Right-click DCS1 and click Properties. 

B. Right-click DCS1 and click Save template... 

C. Right-click DCS1 and click Export list... 

D. Right-click DCS1 and click Data Manager... 

Answer:

Explanation: 

It is under the Directory tab from the DCS properties. http://technet.microsoft.com/en-us/library/cc749267.aspx 

Q14. OTSPOT 

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that has the Network Policy Server server role installed. The domain contains a server named Server2 that is configured for RADIUS accounting. 

Server1 is configured as a VPN server and is configured to forward authentication requests to Server2. 

You need to ensure that only Server2 contains event information about authentication requests from connections to Server1. 

Which two nodes should you configure from the Network Policy Server console? 

To answer, select the appropriate two nodes in the answer area. 

Answer:  

Q15. OTSPOT 

Your network contains an Active Directory domain named contoso.com. The domain contains a DNS server named Server1. Server1 is configured to resolve single-label names for DNS clients. 

You need to view the number of queries for single-label names that are resolved by Server1. 

What command should you run? 

To answer, select the appropriate options in the answer area. 

Answer:  

START 70-417 EXAM