2013 Latest 70-640 Braindumps Free Tests 401-410

Ensurepass

 

QUESTION 401

Your network contains an Active Directory domain. You need to activate the Active Directory Recycle Bin in the domain. Which tool should you use?

 

A.       Dsamain

B.       Set-ADDomain

C.       Add-WindowsFeature

D.      Ldp

 

Correct Answer: D

 

 

QUESTION 402

Your network contains an Active Directory domain named contoso.com. You need to create a script that runs the Best Practices Analyzer (BPA) each week for all of the server roles that BPA supports on each domain controller. You must achieve this goal by using the minimum amount of administrative effort. Which tools should you use? (Each correct answer presents part of the solution. Choose three.)

 

A.       Get-Troubleshooting Pack / Invoke-Troubleshooting Pack.

B.       Import-Module Best Practices.

C.       Get-BPA Model / Invoke-BPA Model.

D.      Import-Module Troubleshooting Pack.

E.       Get- BPA Result.

 

Correct Answer: BCE

 

 

QUESTION 403

A corporate network includes a single Active Directory Domain Services (AD DS) domain. All regular user accounts reside in an organizational unit (OU) named Employees. All administrator accounts reside in an OU named Admins. You need to ensure that any time an administrator modifies an employee’s name in AD DS, the change is audited. What should you do first?

A.       Enable the Audit directory service access setting in the Default Domain Controllers Policy Group Policy Object.

B.       Create a Group Policy Object with the Audit directory service access setting enabled and link it to the Employees OU.

C.       Enable the Audit directory service access setting in the Default Domain Policy Group Policy Object.

D.       Modify the searchFlags property for the User class in the schema.

 

Correct Answer: A

 

 

QUESTION 404

Your network contains an Active Directory domain named contoso.com. The Administrator deletes an OU named OU1 accidentally. You need to restore OU1. Which cmdlet should you use?

 

A.       Set-ADObject cmdlet.

B.       Set-ADOrganizationalUnit cmdlet.

C.       Set-ADUser cmdlet.

D.      Set-ADGroup cmdlet.

 

Correct Answer: A

 

 

QUESTION 405

Your network contains an Active Directory domain. The domain is configured as shown in the exhibit.

 

clip_image002

You have a Group Policy Object (GPO) linked to the domain. You need to ensure that the settings in the GPO are not processed by user accounts or computer accounts in the Finance organizational unit (OU). You must achieve this goal by using the minimum amount of administrative effort. What should you do?

 

A.       Modify the Group Policy Permission.

B.       Configure WMI filtering.

C.       Enable block inheritance.

D.      Enable loopback processing in replace mode.

E.       Configure the link order.

F.        Configure Group Policy Preferences.

G.      Link the GPO to the Human Resources OU.

H.      Configure Restricted Groups.

I.         Enable loopback processing in merge mode.

J.        Link the GPO to the Finance OU.

 

Correct Answer: C

 

 

QUESTION 406

Your network contains an Active Directory domain named contoso.com. You have an organizational unit (OU) named Sales and an OU named Engineering. You have two Group Policy objects (GPOs) named GP01 and GPO2. GP01 and GP02 are linked to the Sales OU and contain multiple settings. You discover that GPO2 has a setting that conflicts with a setting in GP01. When the policies are applied, the setting in GPO2 takes effect. You need to ensure that the settings in GP01 supersede the settings in GP02. The solution must ensure that all non-conflicting settings in both GPOs are applied.

 

A.       Configure Restricted Groups.

B.       Configure the link order.

C.       Link the GPO to the Sales OU.

D.      Link the GPO to the Engineering OU.

E.       Enable loopback processing in merge mode.

F.        Modify the Group Policy permissions.

G.      Configure WMI Filtering.

H.      Configure Group Policy Preferences.

I.         Enable loopback processing in replace mode.

J.        Enable block inheritance.

 

Correct Answer: B

 

 

QUESTION 407

Your network contains an Active Directory forest. All users have a value set for the Department attribute. From Active Directory Users and Computers, you search a domain for all users who have a Department attribute value of Marketing. The search returns 50 users. From Active Directory Users and Computers, you search the entire directory for all users who have a Department attribute value of Marketing. The search does not return any users. You need to ensure that a search of the entire directory for users in the marketing department returns all of the users who have the Marketing Department attribute. What should you do?

 

A.       Install the Windows Search Service role service on a global catalog server.

B.       From the Active Directory Schema snap-in modify the properties of the Department attribute.

C.       Install the Indexing Service role service on a global catalog server.

D.      From the Active Directory Schema snap-in modify the properties of the user class.

 

Correct Answer: B

 

 

QUESTION 408

Your network contains an Active Directory forest. The forest contains one domain named contoso.com. You discover the following event in the Event log of domain controllers: "The request for a new account- identifier pool failed. The operation will be retried until the request succeeds. The error is " %1 "". You need to ensure that the domain controllers can acquire new account-identifier pools successfully. What should you do?

 

A.       Move the PDC emulator role.

B.       Move the schema master role.

C.       Move the global catalog server.

D.      Move the domain naming master role.

E.       Move the infrastructure master role.

F.        Move the RID master role.

G.      Restart the Active Directory Domain Services (AD DS) service.

H.      Deploy an additional global catalog server.

I.         Move the bridgehead server.

J.        Install a read-only domain controller (RODC).

 

Correct Answer: F

 

 

QUESTION 409

Your network contains an Active Directory domain named contoso.com. You need to create one password policy for administrators and another password policy for all other users. Which tool should you use?

 

A.       Ntdsutil

B.       Active Directory Users and Computers

C.       ADSI Edit

D.      Group Policy Management Console (GPMC)

 

Correct Answer: C

 

 

QUESTION 410

Your network contains an Active Directory forest named contoso.com. You need to identify whether a fine-grained password policy is applied to a specific group. Which tool should you use?

 

A.       Active Directory Sites and Services

B.       Authorization Manager

C.       Local Security Policy

D.      ADSI Edit

 

Correct Answer: D

Download Ensurepass Latest 2013 70-640 Braindumps Free Tests , help you to pass exam 100%.