[Free] Download New Updated (October 2016) Microsoft 70-411 Real Exam 121-130

Ensurepass

QUESTION 121

You have a server named Server1 that runs Windows Server 2012 R2.

 

You need to configure Server1 to create an entry in an event log when the processor usage exceeds 60 percent.

 

Which type of data collector should you create?

 

A.

An event trace data collector

B.

A performance counter alert

C.

A performance counter data collector

D.

A configuration data collector

 

Correct Answer: B

Explanation:

Performance alerts notify you when a specified performance counter exceeds your configured threshold by logging an event to the event log. But rather than notifying you immediately when the counter exceeds the threshold, you can configure a time period over which the counter needs to exceed the threshold, to avoid unnecessary alerts.

 

clip_image002

 

 

QUESTION 122

You have a server that runs Windows Server 2012 R2.

 

You have an offline image named Windows2012.vhd that contains an installation of Windows Server 2012 R2.

 

You plan to apply several updates to Windows2012.vhd.

 

You need to mount Wmdows2012.vhd to D:Mount.

 

Which tool should you use?

 

A.

Server Manager

B.

Device Manager

C.

Mountvol

D.

Dism

 

Correct Answer: D

Explanation:

You can use the Deployment Image Servicing and Management (DISM) tool to mount a Windows image from a WIM or VHD file. Mounting an image maps the contents of the image to a directory so that you can service the image using DISM without booting into the image. You can also perform common file operations, such as copying, pasting, and editing on a mounted image.

To apply packages and updates to a Windows Embedded Standard 7 image, we recommend creating a configuration set and then using Deployment Imaging Servicing and Management (DISM) to install that configuration set. Although DISM can be used to install individual updates to an image, this method carries some additional risks and is not recommended.

 

 

QUESTION 123

Your network contains a domain controller named DC1 that runs Windows Server 2012 R2. You create a custom Data Collector Set (DCS) named DCS1.

 

You need to configure DCS1 to collect the following information:

 

clip_image004The amount of Active Directory data replicated between DC1 and the other domain controllers

clip_image004[1]The current values of several registry settings

 

Which two should you configure in DCS1? (Each correct answer presents part of the solution. Choose two.)

 

A.

Event trace data

B.

A performance counter alert

C.

System configuration information

D.

A performance counter

 

Correct Answer: CD

Explanation:

Automatically run a program when the amount of total free disk space on Server1 drops below 10 percent of capacity.

You can also configure alerts to start applications and performance logs Log the current values of several registry settings.

 

System configuration information allows you to record the state of, and changes to, registry keys.

 

Total free disk space

clip_image006

clip_image008

clip_image009

clip_image011

 

Registry settings

clip_image012

clip_image014

clip_image016

 

Run a program on alert

clip_image018

clip_image019

clip_image021

 

http://technet.microsoft.com/en-us/library/cc766404.aspx

 

 

 

 

 

 

 

 

 

 

QUESTION 124

You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the Windows Deployment Services server role installed.

 

Server1 contains two boot images and four install images.

 

You need to ensure that when a computer starts from PXE, the available operating system images appear in a specific order.

 

What should you do?

 

A.

Modify the properties of the boot images.

B.

Create a new image group.

C.

Modify the properties of the install images.

D.

Modify the PXE Response Policy.

 

Correct Answer: C

 

 

QUESTION 125

HOTSPOT

Your network contains an Active Directory domain named contoso.com. The domain contains a member server that runs Windows Server 2012 R2 and has the Windows Deployment Services (WDS) server role installed.

 

You create a new multicast session in WDS and connect 50 client computers to the session.

 

When you open the Windows Deployment Services console, you discover that all of the computers are listed as pending devices.

 

You need to ensure that any of the computers on the network can join a multicast transmission without requiring administrator approval.

 

What should you configure?

 

To answer, select the appropriate tab in the answer area.

 

clip_image023

 

Correct Answer:

clip_image025

 

 

QUESTION 126

Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2.

 

An organizational unit (OU) named ResearchServers contains the computer accounts of all research servers.

 

All domain users are configured to have a minimum password length of eight characters.

 

You need to ensure that the minimum password length of the local user accounts on the research servers in the ResearchServers OU is 10 characters.

 

What should you do?

 

A.

Configure a local Group Policy object (GPO) on each research server.

B.

Create and link a Group Policy object (GPO) to the ResearchServers OU.

C.

Create a universal group that contains the research servers. Create a Password Settings object (PSO) and assign the PSO to the group.

D.

Create a global group that contains the research servers. Create a Password Settings object (PSO) and assign the PSO to the group.

 

Correct Answer: B

Explanation:

For a domain, and you are on a member server or a workstation that is joined to the domain:

1. Open Microsoft Management Console (MMC).

2. On the File menu, click Add/Remove Snap-in, and then click Add.

3. Click Group Policy Object Editor, and then click Add.

4. In Select Group Policy Object, click Browse.

5. In Browse for a Group Policy Object, select a Group Policy object (GPO) in the appropriate domain, site, or organizational unit–or create a new one, click OK, and then click Finish.

6. Click Close, and then click OK.

7. In the console tree, click Password Policy.

Where?

Group Policy Object [computer name] Policy/Computer Configuration/Windows Settings/Security Settings/Account Policies/Password Policy

8. In the details pane, right-click the policy setting that you want, and then click Properties.

9. If you are defining this policy setting for the first time, select the Define this policy setting check box.

10. Select the options that you want, and then click OK.

 

 

QUESTION 127

Your network contains an Active Directory domain named contoso.com. The domain contains six domain controllers. The domain controllers are configured as shown in the following table.

 

clip_image027

 

The network contains a server named Server1 that has the Hyper-V server role installed. DC6 is a virtual machine that is hosted on Server1.

 

You need to ensure that you can clone DC6.

What should you do?

 

A.

Transfer the schema master to DC6.

B.

Transfer the PDC emulator to DC5.

C.

Transfer the schema master to DC4.

D.

Transfer the PDC emulator to DC2.

 

Correct Answer: D

Explanation:

A deployed Windows Server 2012 domain controller (virtualized or physical) that hosts the PDC emulator role (DC1). To verify whether the PDC emulator role is hosted on a Windows Server 2012 domain controller, run the following Windows PowerShell command:

Get-ADComputer (Get-ADDomainController -Discover -Service “PrimaryDC”).name -Propertyoperatingsystemversion|fl

http://technet.microsoft.com/en-us/library/hh831734.aspx#steps_deploy_vdc

 

 

QUESTION 128

Your network contains an Active Directory domain named contoso.com. Domain controllers run either Windows Server 2003, Windows Server 2008 R2, or Windows Server 2012 R2.

 

A support technician accidentally deletes a user account named User1.

 

You need to use tombstone reanimation to restore the User1 account.

 

Which tool should you use?

 

A.

Active Directory Administrative Center

B.

Ntdsutil

C.

Ldp

D.

Esentutl

 

Correct Answer: C

Explanation:

Use Ldp.exe to restore a single, deleted Active Directory object This feature takes advantage of the fact that Active Directory keeps deleted objects in the database for a period of time before physically removing them. use Ldp.exe to restore a single, deleted Active Directory object

 

The LPD.exe tool, included with Windows Server 2012, allows users to perform operations against any LDAP-compatible directory, including Active Directory. LDP is used to view objects stored in Active Directory along with their metadata, such as security descriptors and replication metadata.

http://www.petri.co.il/manually-undeleting-objects-windows-active-directory-ad.htm

http://www.petri.co.il/manually-undeleting-objects-windows-active-directory-ad.htm

http://technet.microsoft.com/en-us/magazine/2007.09.tombstones.aspx

http://technet.microsoft.com/nl-nl/library/dd379509(v=ws.10).aspx#BKMK_2

http://technet.microsoft.com/en-us/library/hh875546.aspx

http://technet.microsoft.com/en-us/library/dd560651(v=ws.10).aspx

 

 

 

 

 

 

 

QUESTION 129

Your company deploys a new Active Directory forest named contoso.com. The first domain controller in the forest runs Windows Server 2012 R2. The forest contains a domain controller named DC10.

 

On DC10, the disk that contains the SYSVOL folder fails.

 

You replace the failed disk. You stop the Distributed File System (DFS) Replication service.

 

You restore the SYSVOL folder.

 

You need to perform a non-authoritative synchronization of SYSVOL on DC10.

 

Which tool should you use before you start the DFS Replication service on DC10?

 

A.

Dfsgui.msc

B.

Dfsmgmt.msc

C.

Adsiedit.msc

D.

Ldp

 

Correct Answer: C

Explanation:

How to perform a non-authoritative synchronization of DFSR-replicated SYSVOL (like “D2” for FRS)

 

In the ADSIEDIT. MSC tool modify the following distinguished name (DN) value and attribute on each of the domain controllers that you want to make non- authoritative:

CN=SYSVOL Subscription,CN=Domain System Volume,CN=DFSR- LocalSettings,CN=<the server name>,OU=Domain Controllers,DC=<domain> msDFSR-Enabled=FALSE

 

Force Active Directory replication throughout the domain.

 

Run the following command from an elevated command prompt on the same servers that you set as non-authoritative:

DFSRDIAG POLLAD

You will see Event ID 4114 in the DFSR event log indicating SYSVOL is no longer being replicated.

 

On the same DN from Step 1, set:

msDFSR-Enabled=TRUE

 

Force Active Directory replication throughout the domain.

 

Run the following command from an elevated command prompt on the same servers that you set as non-authoritative:

DFSRDIAG POLLAD

 

You will see Event ID 4614 and 4604 in the DFSR event log indicating SYSVOL has been initialized. That domain controller has now done a “D2” of SYSVOL.

 

Note: Active Directory Service Interfaces Editor (ADSI Edit) is a Lightweight Directory Access Protocol (LDAP) editor that you can use to manage objects and attributes in Active Directory. ADSI Edit (adsiedit. msc) provides a view of every object and attribute in an Active Directory forest. You can use ADSI Edit to query, view, and edit attributes that are not exposed through other Active Directory Microsoft Management Console (MMC) snap- ins: Active Directory Users and Computers, Active Directory Sites and Services, Active Directory Domains and Trusts, and Active Directory Schema.

 

 

QUESTION 130

Your network contains an Active Directory domain named contoso.com. The domain contains an organizational unit (OU) named IT and an OU named Sales.

 

All of the help desk user accounts are located in the IT OU. All of the sales user accounts are located in the Sales OU. T
he Sales OU contains a global security group named G_Sales. The IT OU contains a global security group named G_HelpDesk.

 

You need to ensure that members of G_HelpDesk can perform the following tasks:

 

clip_image004[2]Reset the passwords of the sales users.

clip_image004[3]Force the sales users to change their password at their next logon.

 

What should you do?

 

A.

Run the Set-ADAccountPasswordcmdlet and specify the -identity parameter.

B.

Right-click the Sales OU and select Delegate Control.

C.

Right-click the IT OU and select Delegate Control.

D.

Run the Set-ADFineGrainedPasswordPolicycmdlet and specify the -identity parameter.

 

Correct Answer: B

Explanation:

G_HelpDesk members need to be allowed to delegate control on the Sales OU as it contains the sales users (G_Sales)

 

You can use the Delegation of Control Wizard to delegate the Reset Password permission to the delegated user.

 

clip_image029

http://support.microsoft.com/kb/296999/en-us

http://support.microsoft.com/kb/296999/en-us

http://technet.microsoft.com/en-us/library/cc732524.aspx

 

Free VCE & PDF File for Microsoft 70-411 Real Exam

Instant Access to Free VCE Files: MCSE|MCSA|MCITP…
Instant Access to Free PDF Files: MCSE|MCSA|MCITP…