70-742 Premium Bundle

70-742 Premium Bundle

Identity with Windows Server 2016 Certification Exam

4.5 
(44235 ratings)
0 QuestionsPractice Tests
0 PDFPrint version
November 23, 2024Last update

Microsoft 70-742 Free Practice Questions

Your success in is our sole target and we develop all our in a way that facilitates the attainment of this target. Not only is our material the best you can find, it is also the most detailed and the most updated. for Microsoft 70-742 are written to the highest standards of technical accuracy.

Check 70-742 free dumps before getting the full version:

NEW QUESTION 1
Your network contains an Active Directory domain named contoso.com.
You need to view a list of all the domain user accounts that are enabled. But whose users have not signed in during the last 30 days.
Which command should you run? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
70-742 dumps exhibit

    Answer:

    Explanation: 70-742 dumps exhibit

    NEW QUESTION 2
    Your network contains an Active Directory forest named contoso.com. You need to add a new domain named fabrikam.com to the forest.
    What command should you run? To answer, select the appropriate options in the answer area.
    70-742 dumps exhibit

      Answer:

      Explanation: References:
      https://technet.microsoft.com/en-us/library/hh974722(v=wps.630).aspx

      NEW QUESTION 3
      Your network contains an Active Directory domain named contoso.com.
      You plan to deploy a new Active Directory Rights Management Services (AD RMS) cluster on a server named Server1.
      You need to create the AD RMS service account. The solution must use the principle of least privilege What should you do?

      • A. Create a domain user account and add the account to the Account Operators group in the domain.
      • B. Create a local user account on Server1 and add the account to the Administrators group on Server1.
      • C. Create a domain user account and add the account to the Domain Users group in the domain.
      • D. Create a domain user account and add the account to the Administrators group on Server1.

      Answer: C

      NEW QUESTION 4
      You have a server named Server1 that runs Windows Server 2021. You need to configure Server1 as a Web Application Proxy. Which server role or role service should you install on Server1?

      • A. Remote Access
      • B. Active Directory Federation Services
      • C. Web Server (IIS)
      • D. DirectAccess and VPN (RAS)
      • E. Network Policy and Access Services

      Answer: A

      NEW QUESTION 5
      Your network contains an Active Directory forest. The forest contains a domain named contoso.com. The domain contains three domain controllers.
      A domain controller named lon-dc1 fails. You are unable to repair lon-dc1.
      You need to prevent the other domain controllers from attempting to replicate to lon-dc1.
      Solution: From Active Directory Domains and Trusts, you transfer the operations master roles from lon-dc1. Does this meet the goal?

      • A. Yes
      • B. No

      Answer: B

      NEW QUESTION 6
      Your network contains an Active Directory forest named contoso.com. The forest contains a member server named Server1. Server1 has several line-of-business applications. Each application runs as a service that uses the Network Service account. You need to configure the line-of-business applications to run by using a virtual account. What should you do?

      • A. From the Services console, modify the Log On properties of the services.
      • B. From the Microsoft Application Compatibility Toolkit (ACT), create a shim.
      • C. From Windows PowerShell, run the Install-ADScrviceAccount cmdlet.
      • D. From Windows PowerShell, run the New-ADServiccAccount cmdlet.

      Answer: A

      NEW QUESTION 7
      Your network contains an Active Directory domain named contoso.com.
      The user account for a user named User1 is in an organizational unit (OU) named OU1. You need to enable User1 to sign in as user1@adatum.com.
      Solution: From Windows PowerShell, You run Set-ADObject ‘CN=User1, OU=OU1, DC=Contoso,DC=com’
      –Add @ {UserPrincipalNAme=’User1@Adatum.com’} –Remove
      @{UserPrincipalName=’User1@Contoso.com’},
      Does this meet the goal?

      • A. Yes
      • B. No

      Answer: A

      NEW QUESTION 8
      Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
      After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
      Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2021. The Computer account for Server1 is in organizational unit (OU) named OU1.
      You create a Group Policy object (GPO) named GPO1 and link GPO1 to OU1.
      You need to add a domain user named user1 to the local Administrators group on Server1.
      Solution: From the Computer Configuration node of GPO1, you configure the local Users and Groups preference.
      Does this meet the goal?

      • A. Yes
      • B. No

      Answer: A

      NEW QUESTION 9
      Your network contains an Active Directory domain named contoso.com. The domain contains an administrative workstation named WKS1 that runs Windows 10.
      You have a Group Policy object (GPO) named GPO1.
      You download a custom administrative template that contains the following files:
      You need to ensure that you can configure GPO1 by using the settings in the new administrative template. To where should you copy each file? To answer, select the appropriate options in the answer area.
      NOTE: Each correct selection is worth one point.
      70-742 dumps exhibit

        Answer:

        Explanation: References:
        https://support.microsoft.com/en-us/help/918239/how-to-write-custom-adm-and-admx-administrative-template-f

        NEW QUESTION 10
        Your network contains an Active Directory forest named contoso.com. The forest contains an Active Directory Federation Services (AD FS) farm.
        You install Windows Server 2021 on a server named Server2.
        You need to configure Server2 as a node in the federation server farm.
        Which cmdlets should you run? To answer, select the appropriate options in the answer area.
        70-742 dumps exhibit

          Answer:

          Explanation: 70-742 dumps exhibit

          NEW QUESTION 11
          Your network contains an Active Directory domain named contoso.com.
          You open Group Policy Management as shown in the exhibit. (Click the Exhibit button.)
          70-742 dumps exhibit
          You discover that some of the settings configured in the A1 Group Policy object (GPO) fail to apply to the users in the OU1 organizational unit (OU).
          You need to ensure that all of the settings in A1 apply to the users in OU1. What should you do?

          • A. Enable loopback policy processing in A1.
          • B. Block inheritance on OU1.
          • C. Modify the policy processing order for OU1.
          • D. Modify the GPO Status of A1.

          Answer: C

          NEW QUESTION 12
          Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other
          questions in this series. Information and details provided in a question apply only to that question.
          Your network contains an Active Directory domain named contoso.com. The domain functional level is Windows Server 2012 R2.
          Your company hires a new security administrator to manage sensitive user data. You create a user account named Security1 for the security administrator.
          You need to ensure that the password for Security1 has at least 12 characters and is modified every 10 days. The solution must apply to Security1 only.
          Which tool should you use?

          • A. Dsadd quota
          • B. Dsmod
          • C. Active Directory Administrative Center
          • D. Dsacls
          • E. Dsmain
          • F. Active Directory Users and Computers
          • G. Ntdsutil
          • H. Group Policy Management Console

          Answer: F

          NEW QUESTION 13
          Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2021.
          You install IP Address Management (IPAM) on Server1.
          You need to manually start discovery of servers that IPAM can manage in contoso.com.
          Which three cmdlets should you run in sequence? To answer, move the appropriate cmdlets from the list of cmdlets to the answer area and arrange them in the correct order.
          70-742 dumps exhibit

            Answer:

            Explanation: Step 1: Invoke-IpamServerProvisioning Choose a provisioning method
            The Invoke-IpamGpoProvisioning cmdlet creates and links three group policies specified in the Domain parameter for provisioningrequired access settingson the server roles managed by the computer running the IP Address Management (IPAM) server.
            Step 2: Add-IpamDiscoveryDomain Configure the scope of discovery
            The Add-IpamDiscoveryDomain cmdlet adds an Active Directory discovery domain for an IP AddressManagement (IPAM) server. A discovery domain is a domain that IPAM searches to find infrastructure servers. An IPAM server uses the list of discovery domains to determine what type of servers to add. By default, IPAM discovers all domain controllers, Dynamic Host Configuration Protocol (DHCP) servers, and Domain Name System (DNS) servers.
            Step 3: Start-ScheduledTask Start server discovery
            To begin discovering servers on the network, click Start server discovery to launch the IPAM ServerDiscovery task or use the Start-ScheduledTask command.

            NEW QUESTION 14
            Your network contains a signle-domin Active Directory forest named contoso.com. The forest functional level is Windows Server 2021. The forest has Dynamic Access Control enabled.
            The domin contains two domain controllers named DC1 and DC2. Privileged user accounts used to manage Active Directory reside in a group named ContosoAD_Admins.
            You create an authentication policy named Policy1 and an authentication policy silo named Silo1.
            You need to ensure that the accounts in the ContosoAD-Admins group can sign in to the domain controllers only.
            Which three configurations should you perform? Each correction answer presents part of the solution.

            • A. Create an access control condition in Policy1.
            • B. Create a managed service account and add the account to Permitted Accounts in Silo1.
            • C. Add the domain controllers to the ContosoAD_Admins group.
            • D. Add the privileged user accounts and the domain controllers to Permitted Accounts in Silo1.
            • E. Assign Silo1 to the privileged user accounts and the domain controllers.

            Answer: ADE

            NEW QUESTION 15
            You have an internal web server that hosts websites. The websites use HTTP and HTTPS. You deploy a Web Application Proxy to your perimeter network.
            You need to ensure that users from the Internet can access the websites by using HTTPS only. Internet access to the websites must use the Web Application Proxy.
            Which two actions should you perform? Each correct answer presents part of the solution.
            NOTE: Each correct selection is worth one point.

            • A. From the Remote Access Management Console, publish the website
            • B. Configure pass-through authentication and select Enable HTTP to HTTPS redirection.
            • C. Configure the Web Application Proxy to perform preauthentication by using Oauth2.
            • D. On external DNS name servers, create DNS entries that point to the private IP address of the web server.
            • E. From the web server, enable HTTP Redirect on the Web Application Proxy server.
            • F. On external DNS name servers, create DNS entries that point to the public IP address of the Web Application Proxy.

            Answer: AE

            NEW QUESTION 16
            You network contains an Active Directory forest. The forest contains an Active Directory Federation Services (AD FS) deployment.
            The AD FS deployment contains the following:
            * An AD FS server named server1.contoso.com that runs Windows Server 2021
            * A Web Application Proxy used to publish AD FS
            * A LIPN that uses the contoso.com suffix
            * A namespace named adfs.contoso.com
            You create a Microsoft Office 365 tenant named contoso.onmicrosoft.com. You use Microsoft Azure Active Directory Connect (AD Connect) to synchronize all of the users and the UPNs from the contoso.com forest to Office 365.
            You need to configure federation between Office 365 and the on-premises deployment of Active Directory. Which three commands should you run in sequence from Server1? To answer, move the appropriate
            commands from the list of commands to the answer area and arrange them in the correct order.
            70-742 dumps exhibit

              Answer:

              Explanation: 70-742 dumps exhibit

              Recommend!! Get the Full 70-742 dumps in VCE and PDF From Certleader, Welcome to Download: https://www.certleader.com/70-742-dumps.html (New 222 Q&As Version)


              START 70-742 EXAM