2013 Latest 70-640 Braindumps Free Tests 381-390

Ensurepass

 

 

QUESTION 381

Your network contains an Active Directory forest. The forest contains one domain named contoso.com. You discover the following event in the Event log of client computers: "The time provider NtpClient was unable to find a domain controller to use as a time source. NtpClient will try again in %1 minutes." You need to ensure that the client computers can synchronize their clocks properly. What should you do?

 

A.       Move the domain naming master role.

B.       Restart Active Directory Domain Services (AD DS) service.

C.       Move the PDC emulator role.

D.      Move the infrastructure master role.

E.       Move the global catalog server.

F.        Move the RID master role.

G.      Move the bridgehead server.

H.      Move the schema master role.

I.         Deploy an additional global catalog server.

J.        Install a read-only domain controller (RODC).

 

Correct Answer: C

 

 

QUESTION 382

Your network contains an Active Directory forest named contoso.com. You need to identify whether a fine-grained password policy is applied to a specific group. Which tool should you use?

A.       Credential Manager

B.       Group Policy Management Editor

C.       Active Directory Users and Computers

D.      Active Directory Sites and Services

 

Correct Answer: C

 

 

QUESTION 383

Your network contains an Active Directory domain named contoso.com. You need to create one password policy for administrators and another password policy for all other users. Which tool should you use?

 

A.       Group Policy Management Editor

B.       Group Policy Management Console (GPMC)

C.       Authorization Manager

D.      Ldifde

 

Correct Answer: D

 

 

QUESTION 384

Your network contains two Active Directory forests named contoso.com and fabrikam.com. Each forest contains one domain. A two-way forest trust exists between the forests. You plan to add users from fabrikam.com to groups in contoso.com. You need to identify which group you must use to assign users in fabrikam.com access to the shared folders in contoso.com. To which group should you add the users?

 

A.       Group 1: Security Group – Domain Local.

B.       Group 2: Distribution Group – Domain Local.

C.       Group 3: Security Group – Global.

D.      Group 4: Distribution Group – Global.

E.       Group 5: Security Group – Universal.

F.        Group 6: Distribution Group – Univeral.

 

Correct Answer: C

 

 

QUESTION 385

Your network contains an Active Directory domain. The domain contains 5,000 user accounts. You need to disable all of the user accounts that have a description of Temp. You must achieve this goal by using the minimum amount of administrative effort. Which tools should you use? (Each correct answer presents part of the solution. Choose two.)

 

A.       Find

B.       Dsget

C.       Dsmod

D.      Dsadd

E.       Net accounts

F.        Dsquery

 

Correct Answer: CF

 

 

QUESTION 386

Your network contains an Active Directory domain. The domain contains two file servers. The file servers are configured as shown in the following table.

 

clip_image001

 

You create a Group Policy object (GPO) named GPO1 and you link GPO1 to OU1. You configure the advanced audit policy. You discover that the settings are not applied to Server1. The settings are applied to Server2. You need to ensure that access to the file shares on Server1 is audited.

What should you do?

 

A.       From Active Directory Users and Computers, modify the permissions of the computer account for Server1.

B.       From GPO1, configure the Security Options.

C.       From Active Directory Users and Computers, add Server1 to the Event Log Readers group.

D.       On Server1, run seceditexe and specify the /configure parameter.

E.        On Server1, run auditpol.exe and specify the /set parameter.

 

Correct Answer: E

 

 

QUESTION 387

Your network contains an Active Directory domain named contoso.com. You have an organizational unit (OU) named Sales and an OU named Engineering. Each OU contains over 200 user accounts. The Sales OU and the Engineering OU contain several user accounts that are members of a universal group named Group1. You have a Group Policy object (GPO) linked to the domain. You need to prevent the GPO from being applied to the members of Group1 only. What should you do?

 

A.       Modify the Group Policy permissions.

B.       Configure Restricted Groups.

C.       Configure WMI filtering.

D.      Configure the link order.

E.       Enable loopback processing in merge mode.

F.        Link the GPO to the Sales OU.

G.      Configure Group Policy Preferences.

H.      Link the GPO to the Engineering OU.

I.         Enable block inheritance.

J.        Enable loopback processing in replace mode.

 

Correct Answer: A

 

 

QUESTION 388

Your network contains an Active Directory domain. You have two Group Policy objects (GPOS) named GPO1 and GPO2. GPO1 and GPO2 are linked to the Finance organizational unit (OU) and contain multiple settings. You discover that GPO2 has a setting that conflicts with a setting in GPO1. When the policies are applied, the setting in GPO2 takes effect. You need to ensure that the settings in GPO1 supersede the settings in GPO2. The solution must ensure that all non-conflicting settings in both GPOs are applied. What should you do?

 

A.       Configure the link order.

B.       Configure Restricted Groups.

C.       Enable block inheritance.

D.      Link the GPO to the Finance OU.

E.       Enable Loopback processing in merge mode.

F.        Enable Loopback processing in replace mode.

G.      Link the GPO to the Human Resources OU.

H.      Configure Group Policy Preferences.

I.         Configure WMI filtering.

J.        Modify the Group Policy permissions.

 

Correct Answer: A

 

 

QUESTION 389

You have a domain controller named DC1 that runs Windows Server 2008 R2. DC1 is configured as a DNS server for contoso.com. You install the DNS server role on a member server named server1 and then you create a standard secondary zone for contoso.com. You configure DC1 as the master server for the zone. You need to ensure that Server1 receives zone updates from DC1. What should you do?

 

A.       On DC1, modify the permissions of contoso.com zone.

B.       On Server1, add a conditional forwarder.

C.       Add the Server1 computer account to the DNsUpdateProxy group.

D.      On DC1, modify the zone transfer settings for the contoso.com zone.

 

Correct Answer: D

 

 

QUESTION 390

A corporate network includes an Active Directory-integrated zone. AIl DNS servers that host the zone are domain controllers. You add multiple DNS records to the zone. You need to ensure that the new records are available on all DNS servers as soon as possible. Which tool should you use?

 

A.       Active Directory Sites And Services console

B.       Ntdsutil

C.       Dnslint

D.      Nslookup

 

Correct Answer: A

Download Ensurepass Latest 2013 70-640 Braindumps Free Tests , help you to pass exam 100%.