[Free] 2017 Ensurepass Lead2Pass Microsoft 70-412 Actual Test 111-120

Ensurepass

Configuring Advanced Windows Server 2012 Services

 

QUESTION 111

Your network contains an Active Directory domain named adatum.com. The domain contains two domain controllers that run Windows Server 2012 R2. The domain controllers are configured as shown in the following table.

 

clip_image002

 

You log on to DC1 by using a user account that is a member of the Domain Admins group, and then you create a new user account named User1.

 

You need to prepopulate the password for User1 on DC2.

 

What should you do first?

 

A.

Connect to DC2 from Active Directory Users and Computers.

B.

Add DC2 to the Allowed RODC Password Replication Policy group.

C.

Add the User1 account to the Allowed RODC Password Replication Policy group.

D.

Run Active Directory Users and Computers as a member of the Enterprise Admins

group.

 

Correct Answer: C

Explanation:

http://technet.microsoft.com/en-us/library/cc730883(v=ws.10).aspx

http://technet.microsoft.com/en-us/library/cc753470(v=ws.10).aspx#BKMK_pre

 

clip_image004

 

 

QUESTION 112

Your network contains an Active Directory forest named contoso.com. The contoso.com domain only contains domain controllers that run Windows Server 2012 R2.

 

The forest contains a child domain named child.contoso.com. The child.contoso.com domain only contains domain controllers that run Windows Server 2008 R2. The child.contoso.com domain contains a member server named Server1 that runs Windows Server 2012 R2.

 

You have access to four administrative user accounts in the forest. The administrative user accounts are configured as shown in the following table.

 

clip_image006

 

You need to ensure that you can add a domain controller that runs Windows Server 2012 R2 to the child.contoso.com domain.

 

Which account should you use to run adprep.exe?

 

A.

Admin1

B.

Admin2

C.

Admin3

D.

Admin4

 

Correct Answer: C

Explanation:

http://technet.microsoft.com/en-us/library/dd464018(v=ws.10).aspx

 

clip_image008

 

 

QUESTION 113

Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2 that run Windows Server 2012 R2. Server1 is a file server that has the Hyper-V server role installed. Server1 hosts several virtual machines. The virtual machine configuration files are stored on drive D and the VHD files are stored on drive E. You plan to replace drive E with a larger volume. You need to ensure that the virtual machines on Server1 remain available while drive E is being replaced. What should you do?

 

A.

Perform a quick migration.

B.

Add Server1 and Server2 as nodes in a failover cluster.

C.

Perform a live migration.

D.

Perform a storage migration.

 

Correct Answer: D

Explanation:

D. Hyper-V in Windows Server 2012 R2 introduces support for moving virtual machine storage without downtime by making it possible to move the storage while the virtual machine remains running.

http://technet.microsoft.com/en-us/library/hh831656.aspx

 

clip_image010

 

 

QUESTION 114

Your network contains two servers named Server1 and Server2 that run Windows Server 2008 R2. Server1 and Server2 are nodes in a failover cluster named Cluster1. The network contains two servers named Server3 and Server4 that run Windows Server 2012 R2. Server3 and Server4 are nodes in a failover cluster named Cluster2. You need to move all of the applications and the services from Cluster1 to Cluster2. What should you do first from Failover Cluster Manager?

 

A.

On a server in Cluster2, configure Cluster-Aware Updating.

B.

O
n a server in Cluster2, click Move Core Cluster Resources, and then click Best Possible Node.

C.

On a server in Cluster1, click Move Core Cluster Resources, and then click Best Possible Node.

D.

On a server in Cluster1, click Migrate Roles.

 

Correct Answer: A

Explanation:

https://technet.microsoft.com/en-us/library/dn486833.aspx

Some additional steps typically are needed before or after you run the wizard, including the following:

Configure Cluster Aware Updating (CAU). (Windows Server 2012 only) and If this is the case then the answer would be “A”. Cluster aware updating.

 

 

QUESTION 115

You deploy an Active Directory Federation Services (AD FS) 2.1 infrastructure. The infrastructure uses Active Directory as the attribute store. Some users report that they fail to authenticate to the AD FS infrastructure. You discover that only users who run third-party web browsers experience issues. You need to ensure that all of the users can authenticate to the AD FS infrastructure successfully. Which Windows PowerShell command should you run?

 

A.

Set-ADFSProperties -ProxyTrustTokenLifetime 1:00:00

B.

Set-ADFSProperties -AddProxyAuthenticationRules None

C.

Set-ADFSProperties -SSOLifetime 1:00:00

D.

Set-ADFSProperties -ExtendedProtectionTokenCheck None

 

Correct Answer: D

Explanation:

clip_image012

 

 

QUESTION 116

Your network contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Active Directory Certificate Services server role installed and is configured as a standalone certification authority (CA). You install a second server named Server2. You install the Online Responder role service on Server2. You need to ensure that Server1 can issue an Online Certificate Status Protocol (OCSP) Response Signing certificate to Server2. What should you run on Server1?

 

A.

The certreq.exe command and specify the -policy parameter

B.

The certutil.exe command and specify the -getkey parameter

C.

The certutil.exe command and specify the -setreg parameter

D.

The certreq.exe command and specify the -retrieve parameter

 

Correct Answer: C

 

 

 

QUESTION 117

DRAG DROP

Your network contains two Active Directory forests named contoso.com and adatum.com. Each forest contains an Active Directory Rights Management Services (AD RMS) root cluster. All servers run Windows Server 2012 R2.

 

You need to ensure that the rights account certificates issued in adatum.com are accepted by the AD RMS root cluster in contoso.com.

 

What should you do in each forest?

 

To answer, drag the appropriate actions to the correct forests. Each action may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

 

clip_image013

 

Correct Answer:

clip_image014

 

 

QUESTION 118

Your network contains four Active Directory forests. Each forest contains an Active Directory Rights Management Services (AD RMS) root cluster. All of the users in all of the forests must be able to access protected content from any of the forests. You need to identify the minimum number of AD RMS trusts required. How many trusts should you identify?

 

A.

3

B.

6

C.

12

D.

16

 

Correct Answer: C

 

 

 

QUESTION 119

Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The domain contains a domain controller named DC1 that is configured as an enterprise root certification authority (CA). All users in the domain are issued a smart card and are required to log on to their domain-joined client computer by using their smart card. A user named User1 resigned and started to work for a competing company. You need to prevent User1 immediately from logging on to any computer in the domain. The solution must not prevent other users from logging on to the domain. Which tool should you use?

 

A.

Active Directory Users and Computers

B.

Server Manager

C.

The Certificates snap-in

D.

The Certification Authority console

 

Correct Answer: D

 

 

QUESTION 120

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs a Server Core installation of Windows Server 2012 R2. You need to deploy a certification authority (CA) to Server1. The CA must support the auto- enrollment of certificates. Which two cmdlets should you run? (Each correct answer presents part of the solution. Choose two.)

 

A.

Add-CAAuthoritylnformationAccess

B.

Install-AdcsCertificationAuthority

C.

Add-WindowsFeature

D.

Install-AdcsOnlineResponder

E.

Install-AdcsWebEnrollment

 

Correct Answer: BE

Explanation:

* The Install-AdcsCertificationAuthority cmdlet performs installation and configuration of the AD CS CA role service.

*The Install-AdcsWebEnrollment cmdlet performs initial installation and configuration of the Certification Authority Web Enrollment role service.

 

Free VCE & PDF File for Microsoft 70-412 Actual Tests

Instant Access to Free VCE Files: MCSE|MCSA|MCITP…
Instant Access to Free PDF Files: MCSE|MCSA|MCITP…