2013 Latest 70-640 Braindumps Free Tests 331-340
QUESTION 331
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2 Enterprise. You enable key archival on the CA. The CA is configured to use custom certificate templates for Encrypted File System (EFS) certificates. You need to archive the private key for all new EFS certificates. Which snap-in should you use?
A. Active Directory Users and Computers
B. Authorization Manager
C. Group Policy Management
D. Enterprise PKI
E. Security Templates
F. TPM Management
G. Certificates
H. Certification Authority
I. Certificate Templates
Correct Answer: I
QUESTION 332
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2 Enterprise. You need to ensure that all of the members of a group named Group1 can view the event log entries for Certificate Services. Which snap-in should you use?
A. Certificate Templates
B. Certification Authority
C. Authorization Manager
D. Active Directory Users and Computers
E. TPM Management
F. Security Templates
G. Group Policy Management
H. Enterprise PKI
I. Certificates
Correct Answer: G
QUESTION 333
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2 Enterprise. You need to ensure that users can enroll for certificates that use the IPSEC (Offline request) certificate template. Which snap-in should you use?
A. Enterprise PKI
B. TPM Management
C. Certificates
D. Active Directory Users and Computers
E. Authorization Manager
F. Certification Authority
G. Group Policy Management
H. Security Templates
I. Certificate Templates
Correct Answer: I
QUESTION 334
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2 Enterprise. You have a custom certificate template named Template 1. Template1 is published to the CA. You need to ensure that all of the members of a group named Group1 can enroll for certificates that use Template1. Which snap-in should you use?
A. Security Templates
B. Enterprise PKI
C. Certification Authority
D. Certificate Templates
E. Certificates
F. TPM Management
G. Authorization Manager
H. Group Policy Management
I. Active Directory Users and Computers
Correct Answer: D
QUESTION 335
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2 Enterprise. You need to approve a pending certificate request. Which snap-in should you use?
A. Active Directory Users and Computers
B. Authorization Manager
C. Certification Authority
D. Group Policy Management
E. Certificate Templates
F. TPM Management
G. Certificates
H. Enterprise PKI
I. Security Templates
Correct Answer: C
QUESTION 336
Your network contains an Active Directory domain named adatum.com. You need to ensure that IP addresses can be resolved to fully qualified domain names (FQDNs). Under which node in the DNS snap-in should you add a zone?
A. Reverse Lookup Zones
B. adatum.com
C. Forward Lookup Zones
D. Conditional Forwarders
E. _msdcs.adatum.com
Correct Answer: A
QUESTION 337
Your network contains an Active Directory domain named adatum.com. The domain contains a domain controller named DC1. DC1 has an IP address of 192.168.200.100. You need to identify the zone that contains the Pointer (PTR) record for DC1. Which zone should you identify?
A. adatum.com
B. _msdcs.adatum.com
C. 100.168.192.in-addr.arpa
D. 200.168.192.in-addr.arpa
Correct Answer: D
QUESTION 338
Your network contains an Active Directory forest named adatum.com. The DNS infrastructure fails. You rebuild the DNS infrastructure. You need to force the registration of the Active Directory Service Locator (SRV) records in DNS. Which service should you restart on the domain controllers?
A. Netlogon
B. DNS Server
C. Network Location Awareness
D. Network Store Interface Service
E. Online Responder Service
Correct Answer: A
QUESTION 339
Your network contains an Active Directory domain named adatum.com. The password policy of the domain requires that the passwords for all user accounts be changed every 50 days. You need to create several user accounts that will be used by services. The passwords for these accounts must be changed automatically every 50 days. Which tool should you use to create the accounts?
A. Active Directory Administrative Center
B. Active Directory Users and Computers
C. Active Directory Module for Windows PowerShell
D. ADSI Edit
E. Active Directory Domains and Trusts
Correct Answer: C
QUESTION 340
Your network contains an Active Directory domain. The domain contains several domain controllers. You need to modify the Password Replication Policy on a read-only domain controller (RODC). Which tool should you use?
A. Group Policy Management
B. Active Directory Domains and Trusts
C. Active Directory Users and Computers
D. Computer Management
E. Security Configuration Wizard
Correct Answer: C
Download Ensurepass Latest 2013 70-640 Braindumps Free Tests , help you to pass exam 100%.
70-410 Dumps VCE PDF
70-411 Dumps VCE PDF
70-412 Dumps VCE PDF
70-413 Dumps VCE PDF
70-414 Dumps VCE PDF
70-417 Dumps VCE PDF
70-461 Dumps VCE PDF
70-462 Dumps VCE PDF
70-463 Dumps VCE PDF
70-464 Dumps VCE PDF
70-465 Dumps VCE PDF
70-480 Dumps VCE PDF
70-483 Dumps VCE PDF
70-486 Dumps VCE PDF
70-487 Dumps VCE PDF