[Free] Get all latest Microsoft 70-411 Actual Tests 61-70

Ensurepass

QUESTION 61

Your network contains a single Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that hosts the primary DNS zone for contoso.com. All servers dynamically register their host names. You install the new Web servers that host identical copies of your company’s intranet website. The servers are configured as shown in the following table.

 

clip_image001

 

You need to use DNS records to load balance name resolution queries for intranet.contoso.com between the two Web servers. What is the minimum number of DNS records that you should create manually?

 

A.      1

B.      2

C.      3

D.      4

 

Correct Answer: B

 

 

QUESTION 62

You have a Direct Access Server named Server1 running Server 2012. You need to add prevent users from accessing websites from an Internet connection. What should you configure?

 

A.      Split Tunneling

B.      Security Groups

C.      Force Tunneling

D.      Network Settings

 

Correct Answer: C

 

 

QUESTION 63

You have a server named Server1 that runs Windows Server 2012. Server1 has the Remote Access server role installed. You need to configure the ports on Server1 to ensure that client computers can establish VPN connections to Server1. The solution must NOT require the use of certificates or pre-shared keys. What should you modify?

 

To answer, select the appropriate object in the answer area.

 

Hot Area:

clip_image002

Correct Answer:

clip_image003

 

 

 

QUESTION 64

Your network contains an Active Directory domain named contoso.com. The domain does not contain a certification authority (CA). All servers run Windows Server 2012. All client computers run Windows 8. You need to add a data recovery agent for the Encrypting File System (EFS) to the domain. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two).

 

A.      From the Default Domain Controllers policy, select Create Data Recovery Agent.

B.      From the Default Domain Controllers policy, select Add Data Recovery Agent.

C.      From Windows PowerShell, run Get-Certificate.

D.      From the Default Domain Policy, select Add Data Recovery Agent.

E.       From a command prompt, run cipher.exe.

F.       From the Default Domain Policy, select Create Data Recovery Agent.

 

Correct Answer: DE

 

 

QUESTION 65

Your network contains multiple Active Directory sites. You have a Distributed File System (DFS) namespace that has a folder target in each site. You discover that some client computers connect to DFS targets in other sites. You need to ensure that the client computers only connect to a DFS target in their respective site. What should you modify?

 

A.      the properties of the Active Directory site links

B.      the properties of the Active Directory sites

C.      the delegation settings of the namespace

D.      the referral settings of the namespace

 

Correct Answer: D

 

 

QUESTION 66

Your network contains an Active Directory domain named contoso.com. You have a failover cluster named Cluster1. All of the nodes in Cluster1 have BitLocker Drive Encryption (BitLocker) installed. You plan to add a new volume to the shared storage of Cluster1. You need to add the new volume to the shared storage. The solution must meet the following requirements:

 

Ÿ   Encrypt the volume.

Ÿ   Avoid using maintenance mode on the cluster.

 

Which three actions should you perform?

 

To answer, move the three appropriate actions from the list of actions to the answer area and arrange them in the correct order.

Select and Place:

clip_image005

 

Correct Answer:

clip_image007

 

 

QUESTION 67

Your network contains an Active Directory domain named contoso.com. The domain functional level in Windows Server 2008. All domain controllers run Windows Server 2008 R2. The domain contains a file server named Server1 that runs Windows Server 2012. Server1 has a BitLocker Drive Encryption (BitLocker)-encrypted drive. Server1 uses a trusted Platform Module (TPM) chip. You enable the Turn on TPM backup to Active Directory Domain Services policy setting by using a Group Policy object (GPO). You need to ensure that you can back up the BitLocker recovery information to Active Directory. What should you do?

 

A.      Upgrade a domain controller to Windows 2012.

B.      Enable the Store BitLocker recovery information in the Active Directory Services (Windows Server2008 and Windows Vista) policy settings.

C.      Raise the forest functional level to Windows 2008 R2.

D.      Add a BitLocker data recovery agent

 

Correct Answer: B

 

 

 

QUESTION 68

Your company has a main office and a branch office. The main office is located in Seattle. The branch office is located in Montreal. Each office is configured as an Active Directory site. The network contains an Active Directory domain named adatum.com. The Seattle office contains a file server named Server1. The Montreal office contains a file server named Server2. The servers run Windows Server 2012 and have the File and Storage Services server role, the DFS Namespaces role service, and the DFS Replication role service installed. Server1 and Server2 each have a share named Share1 that is replicated by using DFS Replication. You need to ensure that users connect to the replicated folder in their respective office when they connect to \contoso.comShare1. Which three actions should you perform? (Each correct answer presents part of the solution. Choose three.)

 

A.      Share and publish the replicated folder.

B.      Modify the Referrals settings.

C.      Create a new topology.

D.      Create a namespace.

E.       Create a replication connection.

 

Correct Answer: ABD

 

 

QUESTION 69

You have a server named Server1 that runs Windows Server 2012 R2. Server1 has the File Server Resource Manager role service installed. Each time a user receives an access-denied message after attempting to access a folder on Server1, an email notification is sent to a distribution list named DL1. You create a folder named Folder1 on Server1, and then you configure custom NTFS permissions for Folder 1. You need to ensure that when a user receives an access-denied message while attempting to access Folder1, an email notification is sent to a distribution list named DL2. The solution must not prevent DL1 from receiving notifications about other access-denied messages. What should you do?

 

A.      From File Explorer, modify the Classification tab of Folder1.

B.      From the File Server Resource Manager console, modify the Email Notifications settings.

C.      From the File Server Resource Manager console, set a folder management property.

D.      From File Explorer, modify the Customize tab of Folder1.

 

Correct Answer: C

 

 

 

 

 

 

 

QUESTION 70

You have a server named Server1 that runs Windows Server 2012. An administrator creates a quota as shown in the Quota exhibit.

 

clip_image009

 

You run the dir command as shown in the dir exhibit.

 

clip_image010

 

You need to ensure that D:Folder1 can only consume 100 MB of disk space. What should you do?

 

A.      From File Server Resource Manager, edit the existing quota.

B.      From the properties of drive D, enable quota management.

C.      From the Services console, set the Startup Type of the Optimize drives service to Automatic.

D.      From File Server Resource Manager, create a new quota.

 

Correct Answer: D

 

 

Instant Access to Download Testing Software & PDF File for Microsoft 70-411 Real Exam

Instant Access to Try Microsoft 70-411 Free Demo