[Free] Get all latest Microsoft 70-646 Actual Tests 71-80

Ensurepass

QUESTION 71

Your network consists of a single Active Directory domain. All servers run Windows Server 2008 R2. You need to recommend a Group Policy deployment strategy.

 

Your strategy must support the following requirements:

 

Ÿ   Domainlevel Group Policy objects (GPOs) must not be overwritten by organizational unit (OU) level GPOs.

Ÿ   OUlevel GPOs must not apply to members of the Server Operators group.

 

What should you recommend?

 

A.       Enable Block Inheritance for the domain, and then modify the permissions of all GPOs linked to OUs.

B.       Enable Block Inheritance for the domain, and then enable Loopback Processing policy mode. Add the Server Operators group to the Restricted Groups list.

C.       Set all domain level GPOs to Enforced, and then modify the permissions of the GPOs that are linked to OUs.

D.       Set all domain level GPOs to Enforced, and then enable Loopback Processing policy mode. Add the Server Operators group to the Restricted Groups list.

 

Correct Answer: C

 

 

QUESTION 72

Your network consists of three Active Directory forests. Forest trust relationships exist between all forests. Each forest contains one domain. All domain controllers run Windows Server 2008 R2. Your company has three network administrators. Each network administrator manages a forest and the Group Policy objects (GPOs) within that forest.

 

You need to create standard GPOs that the network administrators in each forest will use. The GPOs must meet the following requirements:

 

Ÿ   The GPOs must only contain settings for either user configurations or computer configurations.

Ÿ   The number of GPOs must be minimized.

 

Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

 

A.       Export the new GPOs to .cab files. Ensure that the .cab files are available to the network administrator in each forest.

B.       Create two new GPOs. Configure both GPOs to use the required user configurations and the required computer configurations.

C.       Create two new GPOs. Configure one GPO to use the required user configuration. Configure the other GPO to use the required computer configuration.

D.       Back up the Sysvol folder that is located on the domain controller where the new GPOs were created. Provide the backup to the network administrator in each forest.

 

Correct Answer: AC

 

 

QUESTION 73

Your company has a branch office that contains a Windows Server 2008 R2 computer. The Windows Server 2008 R2 computer runs Windows Server Update Services (WSUS). The WSUS server is configured to store updates locally. The company opens four new satellite offices. Each satellite office connects to the branch office by using a dedicated WAN link. Internet access is provided through the branch office.

 

You need to design a strategy for patch management that meets the following requirements:

 

Ÿ   WSUS updates are approved independently for each satellite office.

Ÿ   Internet traffic is minimized.

 

What should you include in your design?

 

A.       In each satellite office, install a WSUS server. Configure each satellite office WSUS server as an autonomous server.

B.       In each satellite office, install a WSUS server. Configure each satellite office WSUS server as a replica of the branch office WSUS server.

C.       In each satellite office, install a WSUS server. Configure each satellite office WSUS server to use the branch office WSUS server as an upstream server.

D.       For each satellite office, create organizational units (OUs). Create and link the Group Policy objects (GPOs) to the OUs. Configure different schedules to download updates from the branch office WSUS server to the client computers in each satellite office.

 

Correct Answer: C

 

 

QUESTION 74

Your network contains several Windows Server 2008 R2 servers that run Windows Server Update Services (WSUS). The WSUS servers distribute updates to all computers on the internal network. Remote users connect from their personal computers to the internal network by using a split tunnel VPN connection.

 

You need to plan a strategy for patch management that deploys updates on the remote users’ computers. Your strategy must meet the following requirements:

 

Ÿ   Minimize bandwidth use over the VPN connections

Ÿ   Require updates to be approved on the WSUS servers before they are installed on the client computers.

 

What should you include in your plan?

 

A.       Create a Group Policy object (GPO) to perform clientside targeting.

B.       Create a computer group for the remote users’ computers. Configure the remote users’ computers to use the internal WSUS server.

C.       Create a custom connection by using the Connection Manager Administration Kit (CMAK). Deploy the custom connection to all of the remote users’ computers.

D.       Deploy an additional WSUS server. Configure the remote users’ computers to use the additional WSUS server. Configure the additional WSUS server to leave the updates on the Microsoft Update Web site.

 

Correct Answer: D

 

QUESTION 75

Your company has a branch office that contains a Windows Server 2008 R2 server. The server runs Windows Server Update Services (WSUS). The company opens four new satellite offices. Each satellite office connects to the branch office by using a dedicated WAN link.

 

You need to design a strategy for patch management that meets the following requirements:

 

Ÿ   WSUS updates are approved from a central location.

Ÿ   WAN traffic is minimized between the branch office and the satellite offices.

 

What should you include in your design?

 

A.       In each satellite office, install a WSUS server. Configure each satellite office WSUS server as a replica of the branch office WSUS server.

B.       In each satellite office, install a WSUS server. Configure each satellite office WSUS server as an autonomous server that synchronizes to the branch office WSUS server.

C.       On the branch office WSUS server, create a computer group for each satellite office. Add the client computers in each satellite office to their respective computer groups.

D.       For each satellite office, create an organizational unit (OU). Create and link a Group Policy object (GPO) to each OU. Configure different schedules to download updates from the branch office WSUS server to the client computers in each satellite office.

 

Correct Answer: A

 

 

QUESTION 76

You need to design a Windows Server Update Services (WSUS) infrastructure that meets the following requirements:

 

Ÿ   The updates must be distributed from a central location.

Ÿ   All computers must continue to receive updates in the event that a server fails.

 

What should you include in your design?

 

 

A.       Configure two WSUS servers in a Microsoft SQL Server 2008 failover cluster. Configure each WSUS server to use a local database.

B.       Configure a single WSUS server to use multiple downstream servers. Configure each WSUS server to use a RAID 1 mirror and a local database.

C.       Configure a single WSUS server to use multiple downstream servers. Configure each WSUS server to use a RAID 5 array and a local database.

D.       Configure a Microsoft SQL Server 2008 failover cluster. Configure two WSUS servers in a Network Load Balancing cluster. Configure WSUS to use the remote SQL Server 2008 database instance.

 

Correct Answer: D

 

 

QUESTION 77

Your network consists of a single Active Directory forest. The sales department in your company has 600 Windows Server 2008 R2 servers.

 

You need to recommend a solution to monitor the performance of the 600 servers. Your solution must meet the following requirements:

 

Ÿ   Generate alerts when the average processor usage is higher than 90 percent for 20 minutes.

Ÿ   Automatically adjust the processor monitoring threshold to allow for temporary changes in the workload.

 

What should you recommend?

 

A.       Install Windows System Resource Manager (WSRM) on each server.

B.       Deploy Microsoft System Center Operations Manager (OpsMgr).

C.       Deploy Microsoft System Center Configuration Manager (SysMgr).

D.       Configure Reliability and Performance Monitor on each server

 

Correct Answer: B

 

 

QUESTION 78

Your network consists of a single Active Directory domain. All servers run Windows Server 2008 R2. A server named Server1 has the Remote Desktop Services server role installed. You notice that several users consume more than 30 percent of the CPU resources throughout the day. You need to prevent users from consuming more than 15 percent of the CPU resources. Administrators must not be limited by the amount of CPU resources that they can consume. What should you do?

 

A.       Implement Windows System Resource Manager (WSRM), and configure user policies.

B.       Implement Windows System Resource Manager (WSRM), and configure session policies.

C.       Configure Performance Monitor, and create a userdefined Data Collector Set.

D.       Configure Performance Monitor, and create an Event Trace Session Data Collector Set.

 

Correct Answer: A

 

 

QUESTION 79

Your network contains a standalone root certification authority (CA). You have a server named Server1 that runs Windows Server 2008 R2. You issue a server certificate to Server1. You deploy Secure Socket Tunneling Protocol (SSTP) on Server1. You need to recommend a solution that allows external partner computers to access internal network resources by using SSTP. What should you recommend?

 

A.       Enable Network Access Protection (NAP) on the network.

B.       Deploy the Root CA certificate to the external computers.

C.       Implement the Remote Desktop Connection Broker role service.

D.       Configure the firewall to allow inbound traffic on TCP Port 1723.

 

Correct Answer: B

 

 

QUESTION 80

Your network consists of a single Active Directory domain. All domain controllers run Windows Server 2008 R2.

 

You need to plan an auditing strategy that meets the following requirements:

 

Ÿ   Audits all changes to Active Directory Domain Services (AD DS)

Ÿ   Stores all auditing data in a central location

 

What should you include in your plan?

 

A.       Configure an audit policy for the domain. Configure Event Forwarding.

B.       Configure an audit policy for the domain controllers. Configure Data Collector Sets.

C.       Implement Windows Server Resource Manager (WSRM) in managing mode.

D.       Implement Windows Server Resource Manager (WSRM) in accounting mode.

 

Correct Answer: A

 

Instant Access to Download Testing Software & PDF File for Microsoft 70-646 Real Exam

Instant Access to Try Microsoft 70-646 Free Demo