2013 Latest 70-640 Braindumps Free Tests 71-80

Ensurepass

 

QUESTION 71

Your company has an Active Directory forest. The company has three locations. Each location has an organizational unit and a child organizational unit named Sales. The Sales organizational unit contains all users and computers of the sales department. The company plans to deploy a Microsoft Office 2007 application on all computers within the three Sales organizational units. You need to ensure that the Office 2007 application is installed only on the computers in the Sales organizational units. What should you do?

 

A.       Create a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to assign the application to the computer account. Link the SalesAPP GPO to the domain.

B.       Create a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to assign the application to the user account. Link the SalesAPP GPO to the Sales organizational unit in each location.

C.       Create a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to assign the application to the computer account. Link the SalesAPP GPO to the Sales organizational unit in each location.

D.       Create a Group Policy Object (GPO) named SalesAPP GPO. Configure the GPO to publish the application to the user account. Link the SalesAPP GPO to the Sales organizational unit in each location.

 

Correct Answer: C

 

 

QUESTION 72

Your company has a main office and 10 branch offices. Each branch office has an Active Directory site that contains one domain controller. Only domain controllers in the main office are configured as Global Catalog servers. You need to deactivate the Universal Group Membership Caching (UGMC) option on the domain controllers in the branch offices. At which level should you deactivate UGMC?

 

A.       Server

B.       Connection object

C.       Domain

D.      Site

 

Correct Answer: D

 

 

QUESTION 73

Your network consists of a single Active Directory domain. All domain controllers run Windows Server 2003. You upgrade all domain controllers to Windows Server 2008 R2. You need to ensure that the Sysvol share replicates by using DFS Replication (DFS-R). What should you do?

 

A.       From the command prompt, run dfsutil /addroot:sysvol.

B.       From the command prompt, run netdom /reset.

C.       From the command prompt, run dcpromo /unattend:unattendfile.xml.

D.      Raise the functional level of the domain to Windows Server 2008 R2.

 

Correct Answer: D

 

 

QUESTION 74

Your company has a main office and a branch office that are configured as a single Active Directory forest. The functional level of the Active Directory forest is Windows Server 2003. There are four Windows Server 2003 domain controllers in the main office. You need to ensure that you are able to deploy a read-only domain controller (RODC) at the branch office. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

 

A.       Raise the functional level of the forest to Windows Server 2008.

B.       Deploy a Windows Server 2008 domain controller at the main office.

C.       Raise the functional level of the domain to Windows Server 2008.

D.      Run the adprep/rodcprep command.

 

Correct Answer: BD

 

 

QUESTION 75

Your company has an Active Directory forest that contains Windows Server 2008 R2 domain controllers and DNS servers. All client computers run Windows XP SP3. You need to use your client computers to edit domainbased GPOs by using the ADMX files that are stored in the ADMX central store. What should you do?

 

A.       Add your account to the Domain Admins group.

B.       Upgrade your client computers to Windows 7.

C.       Install .NET Framework 3.0 on your client computers.

D.      Create a folder on PDC emulator for the domain in the PolicyDefinitions path. Copy the ADMX files to the PolicyDefinitions folder.

 

Correct Answer: B

 

 

QUESTION 76

Your company has a domain controller that runs Windows Server 2008. The domain controller has the backup features installed. You need to perform a non-authoritative restore of the doman controller using an existing backup file. What should you do?

 

A.       Restart the domain controller in Directory Services Restore Mode and use wbadmin to restore critical volume.

B.       Restart the domain controller in Directory Services Restore Mode and use the backup snap-in to restore critical volume.

C.       Restart the domain controller in Safe Mode and use wbadmin to restore critical volume.

D.       Restart the domain controller in Safe Mode and use the backup snap-in to restore critical volume.

 

Correct Answer: A

 

 

QUESTION 77

Your company has an Active Directory domain. All servers run Windows Server. You deploy a Certification Authority (CA) server. You create a new global security group named CertIssuers. You need to ensure that members of the CertIssuers group can issue, approve, and revoke certificates. What should you do?

 

A.       Assign the Certificate Manager role to the CertIssuers group.

B.       Place CertIssuers group in the Certificate Publisher group.

C.       Run the certsrv -add CertIssuers command promt of the certificate server.

D.      Run the add -member-membertype memberset CertIssuers command by using Microsoft Windows Powershell.

 

Correct Answer: A

 

 

QUESTION 78

Your company has an Active Directory domain. The company has purchased 100 new computers. You want to deploy the computers as members of the domain. You need to create the computer accounts in an OU. What should you do?

 

A.       Run the csvde -f computers.csv command

B.       Run the ldifde -f computers.ldf command

C.       Run the dsadd computer <computerdn> command

D.      Run the dsmod computer <computerdn> command

 

Correct Answer: C

 

 

QUESTION 79

Your network consists of a single Active Directory domain. You have a domain controller and a member server that run Windows Server 2008 R2. Both servers are configured as DNS servers. Client computers run either Windows XP Service Pack 3 or Windows 7. You have a standard primary zone on the domain controller. The member server hosts a secondary copy of the zone. You need to ensure that only authenticated users are allowed to update host (A) records in the DNS zone. What should you do first?

 

A.       On the member server, add a conditional forwarder.

B.       On the member server, install Active Directory Domain Services.

C.       Add all computer accounts to the DNS UpdateProxy group.

D.      Convert the standard primary zone to an Active Directory-integrated zone.

 

Correct Answer: D

 

 

QUESTION 80

Your company has two domain controllers that are configured as internal DNS servers. All zones on the DNS servers are Active Directory-integrated zones. The zones allow all dynamic updates. You discover that the contoso.com zone has multiple entries for the host names of computers that do not exist. You need to configure the contoso.com zone to automatically remove expired records. What should you do?

 

A.       Enable only secure updates on the contoso.com zone.

B.       Enable scavenging and configure the refresh interval on the contoso.com zone.

C.       From the Start of Authority tab, decrease the default refresh interval on the contoso.com zone.

D.      From the Start of Authority tab, increase the default expiration interval on the contoso.com zone.

 

Correct Answer: B

Download Ensurepass Latest 2013 70-640 Braindumps Free Tests , help you to pass exam 100%.