[Free] Get all latest Microsoft 70-640 Actual Tests 521-530

Ensurepass

QUESTION 521

Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1. You have a member server named Server1. Both DC1 and Server1 have the DNS Server role installed. On DC1, you create an Active Directory-integrated zone named adatum.com. You need to ensure that Server1 receives a copy of the zone. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

 

A.      Create a secondary zone on Server1.

B.      Modify the zone type of adatum.com.

C.      Modify the Zone Transfers settings of adatum.com,

D.      Add Server1 to the DNSUpdateProxy group.

E.       Create a primary zone on Server1.

 

Correct Answer: AC

 

 

QUESTION 522

Your company has one main office and four branch offices. The main office contains a standard primary DNS zone named adatum.com. Each branch office contains a copy of the adatum.com zone. When records are added to the adatum.com zone, you discover that it takes up to one hour before the changes replicate to each zone in the branch offices. You need to minimize the amount of time it takes for the records to be updated in the branch offices. What should you do?

 

A.      On the DNS server in the main office, configure the Notify settings.

B.      On the DNS servers in the branch offices, configure the Notify settings.

C.      On the DNS servers in the branch offices, configure the Zone Aging/Scavenging Properties.

D.      On the DNS server in the main office, configure the Zone Aging/Scavenging Properties.

Correct Answer: A

 

 

QUESTION 523

Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1. DC1 has the DNS namespaces configured as shown in the following table.

 

clip_image001

 

In the table below, identify which queries will have an authoritative or non-authoritative response from DC1. Make only one selection in each row.

 

Hot Area:

clip_image003

 

Correct Answer:

clip_image005

 

 

QUESTION 524

Your network contains an Active Directory domain named contoso.com. The network contains a public key infrastructure (PKI). You deploy a new certificate revocation list (CRL) distribution point (CDP) to a server named Server1. You discover that users cannot download delta CRLs from Server1. You verify that the users can download the complete CRL successfully. You need to ensure that the users can download delta CRLs from Server1. Which command should you run?

 

A.      Appcmd set config “Default Web Site”

/section:system.webServer/Security/requestFiltering -allowDoubleEscaping:True

B.      Appcmd set config “Certificates”

/section:system.webServer/Security/requestFiltering – allowDoubleEscaping: False

C.      Certutil -setreg CACRLDeltaPeriod “Days”

D.      Certutil -setreg CACRLOverlapPeriod “Days”

 

Correct Answer: A

 

 

 

 

 

 

 

 

 

 

 

 

 

QUESTION 525

Your network contains an Active Directory domain named contoso.com. You have a server named Server1 that is configured as an enterprise root certification authority (CA). You need to ensure that private keys can be archived on Server1. Which three actions should you perform in sequence?

 

To answer, move the appropriate three actions from the list of actions to the answer area and arrange them in the correct order.

 

Select and Place:

clip_image007

 

Correct Answer:

clip_image009

 

 

 

 

 

 

QUESTION 526

Your network contains an Active Directory domain named contoso.com. A portion of the Group Policy object (GPO) settings for a computer in the contoso.com domain is configured as shown in the following exhibit.

 

clip_image011

 

To answer, complete each statement according to the information presented in the exhibit.

 

Hot Area:

clip_image012

clip_image013

 

Correct Answer:

clip_image014

 

 

QUESTION 527

Your network contains an Active Directory domain named contoso.com.

 

You create two global groups named Group1 and Group2. The group membership of each group is shown in the following table.

 

clip_image015

 

You create the Password Settings objects (PSOs) shown in the following table.

 

clip_image016

 

In the table below, identify which PSOs will apply to User1 and User2. Make only one selection in each column.

 

Hot Area:

clip_image017

 

Correct Answer:

clip_image018

 

 

QUESTION 528

Your network contains an Active Directory domain named contoso.com. Members of the sales department are issued laptops that have wireless network cards. You need to ensure that when users connect to an unidentified network from their laptop, the network is configured as a Public network. Which node in Group Policy Management Editor should you use?

 

To answer, select the appropriate node in the answer area.

 

Hot Area:

clip_image020

 

Correct Answer:

clip_image022

 

 

 

 

QUESTION 529

Your network contains an Active Directory domain named contoso.com. The domain contains an organizational unit (OU) named SalesUsers. The OU contains 50 user accounts. You need to identify the effective Password Settings object (PSO) of each user in the SalesUsers OU. Which command should you run?

 

To answer, select the appropriate options in the answer area.

 

Hot Area:

clip_image024

 

Correct Answer:

clip_image026

 

 

QUESTION 530

Your network contains an Active Directory domain named contoso.com. All domain controllers run a Server Core installation of Windows Server 2008 R2. You need to identify which domain controller holds the PDC emulator role. Which tool should you run?

 

A.      Get-AdForest

B.      Netdom.exe

C.      Get-AdOptionalFeature

D.      Query.exe

 

Correct Answer: B

 

Instant Access to Download Testing Software & PDF File for Microsoft 70-640 Real Exam

Instant Access to Try Microsoft 70-640 Free Demo