Surprising 70 417 exam

We provide real 70 417 pdf exam questions and answers braindumps in two formats. Download PDF & Practice Tests. Pass Microsoft 70 417 vce Exam quickly & easily. The 70 417 dumps PDF type is available for reading and printing. You can print more and practice many times. With the help of our Microsoft exam 70 417 dumps pdf and vce product and material, you can easily pass the 70 417 pdf exam.


♥♥ 2021 NEW RECOMMEND ♥♥

Free VCE & PDF File for Microsoft 70-417 Real Exam (Full Version!)

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW 70-417 Exam Dumps (PDF & VCE):
Available on: http://www.surepassexam.com/70-417-exam-dumps.html

Q141. Your network contains an Active Directory domain named contoso.com. The domain contains a file server named Server1. The File Server Resource Manager role service is installed on Server1. All servers run Windows Server 2012 R2. 

A Group Policy object (GPO) named GPO1 is linked to the organizational unit (OU) that contains Server1. The following graphic shows the configured settings in GPO1. 

Server1 contains a folder named Folder1. Folder1 is shared as Share1. 

You attempt to configure access-denied assistance on Server1, but the Enable access-

denied assistance option cannot be selected from File Server Resource Manager. 

You need to ensure that you can configure access-denied assistance on Server1 manually by using File Server Resource Manager. 

What should you do? 

A. Set the Customize message for Access Denied errors policy setting to Enabled for GPO1. 

B. Set the Enable access-denied assistance on client for all file types policy setting to Disabled for GPO1. 

C. Set the Enable access-denied assistance on client for all file types policy setting to Enabled for GPO1. 

D. Set the Customize message for Access Denied errors policy setting to Not Configured for GPO1. 

Answer:

Explanation: 

Ensure that you can configure access-denied assistance http://technet.microsoft.com/en-us/library/hh831402.aspx#BKMK_1 


Q142. RAG DROP 

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. 

You plan to install the Active Directory Federation Services server role on Server1 to allow for Workplace Join. 

You run nslookupenterpriseregistration and you receive the following results: You need to create a certificate request for Server1 to support the Active Directory Federation Services (AD FS) installation. 

How should you configure the certificate request? To answer, drag the appropriate names to the correct locations. Each name may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer: 


Q143. Your network contains an Active Directory domain named contoso.com. The domain contains two member servers named Server1 and Server2. All servers run Windows Server 2012 R2. 

Server1 and Server2 have the Failover Clustering feature installed.The servers are configured as nodes in a failover cluster named Cluster1. 

You add two additional nodes in Cluster1. 

You have a folder named Folder1 on Server1 that hosts application datA. Folder1 is a folder target in a Distributed File System (DFS) namespace. 

You need to provide highly available access to Folder1. The solution must support DFS Replication to Folder1. 

What should you configure? 

A. Affinity - None 

B. Affinity - Single 

C. The cluster quorum settings 

D. The failover settings 

E. A file server for general use 

F. The Handling priority 

G. The host priority 

H. Live migration 

I. The possible owner 

J. The preferred owner 

K. Quick migration 

L. The Scale-Out File Server 

Answer: E Explanation: 

EXAM TIP Learn the limitations of SoFS well. Don't be tricked into selecting SoFS as the file server type for a new clustered file server just because the question states it will host Application data. If the file server is also used with incompatible features (such as BranchCache, DFS, or File Server Resource Manager), or if no CSVs are available, you must choose File Server For General Use as the file server type. 


Q144. Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. 

The domain contains 200 Group Policy objects (GPOs) and 100 WMI filters. 

An administrator named Admin1 must be able to create new WMI filters and edit all of the 

existing WMI filters from the Group Policy Management Console (GPMC). 

You need to delegate the required permissions to Admin1. The solution must minimize the 

number of permissions assigned to Admin1. 

What should you do? 

A. From Active Directory Users and Computers, add Admin1 to the WinRMRemoteWMIUsers__group. 

B. From Group Policy Management, assign Creator Owner to Admin1 for the WMI Filters container. 

C. From Active Directory Users and Computers, add Admin1 to the Domain Admins group. 

D. From Group Policy Management, assign Full control to Admin1 for the WMI Filters container. 

Answer:

Explanation: 

Users with Full control permissions can create and control all WMI filters in the domain, 

including WMI filters created by others. 

Users with Creator owner permissions can create WMI filters, but can only control WMI 

filters that they create. 

Ref: http://technet.microsoft.com/en-us/library/cc757429(v=ws.10).aspx 


Q145. Your network contains two Active Directory forests named contoso.com and dev.contoso.com. The contoso.com forest contains a domain controller named DO. The dev.contoso.com forest contains a domain controller named DC2. Each domain contains an organizational unit (OU) named OU1. 

Dev.contoso.com has a Group Policy object (GPO) named GP01. GP01 contains 200 settings, including several settings that have network paths. GP01 is linked to OU1. 

You need to copy GP01 from dev.contoso.com to contoso.com. 

What should you do first on DC2? 

A. From the Group Policy Management console, right-click GPO1 and select Copy. 

B. Run the mtedit.exe command and specify the /Domaintcontoso.com /DC: DC 1 parameter. 

C. Run the Save-NetGpocmdlet. 

D. Run the Backup-Gpocmdlet. 

Answer:

Explanation: To copy a Group Policy object: 

In the GPMC console tree, right-click the GPO that you want to copy, and then click Copy. 

To create a copy of the GPO in the same domain as the source GPO, right-click Group 

Policy objects, click Paste, specify permissions for the new GPO in the Copy GPO box, and 

then click OK . 

For copy operations to another domain, you may need to specify a migration table. 

The Migration Table Editor (MTE) is provided with Group Policy Management Console 

(GPMC) to facilitate the editing of migration tables. Migration tables are used for copying or 

importing Group Policy objects (GPOs) from one domain to another, in cases where the 

GPOs include domain-specific information that must be updated during copy or import. 

Source WS2008R2: Backup the existing GPOs from the GPMC, you need to ensure that 

the “Group Policy Objects” container is selected for the “Backup Up All” option to be 

available. 

Copy a Group Policy Object with the Group Policy Management Console (GPMC) 

You can copy a Group Policy object (GPO) either by using the drag-and-drop method or 

right-click method. 

Applies To: Windows 8, Windows Server 2008 R2, Windows Server 2012 

Ref: http://technet.microsoft.com/en-us/library/cc785343(v=WS.10).aspx 

http://technet.microsoft.com/en-us/library/cc733107.aspx 


Q146. You have a VHD that contains an image of Windows Server 2012 R2. You plan to Apply updates to the image. 

You need to ensure that only updates that can install without requiring a restart are installed. 

Which DISM option should you use? 

A. /Apply-Unattend 

B. /Add-ProvisionedAppxPackage 

C. /PreventPending 

D. /Cleanup-Image 

Answer:

Explanation: 

http://technet.microsoft.com/en-us/library/hh825265.aspx 


Q147. OTSPOT 

Your network contains an Active Directory domain named contoso.com. 

You have several Windows PowerShell scripts that execute when users log on to their client computer. 

You need to ensure that all of the scripts execute completely before the users can access their desktop. 

Which setting should you configure? To answer, select the appropriate setting in the answer area. 

Answer: 


Q148. Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Network Policy Server role service installed. 

You plan to configure Server1 as a Network Access Protection (NAP) health policy server for VPN enforcement by using the Configure NAPwizard. 

You need to ensure that you can configure the VPN enforcement method on Server1 successfully. 

What should you install on Server1 before you run the Configure NAP wizard? 

A. A computer certificate 

B. A system health validator (SHV) 

C. The Remote Access server role 

D. The Host Credential Authorization Protocol (HCAP) 

Answer:

Explanation: 

http://technet.microsoft.com/fr-fr/library/dd314165%28v=ws.10%29.aspx 


Q149. Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2. Server1 runs Windows Server 2012 R2. Server2 runs Windows Server 2008 R2 Service Pack 1 (SP1) and has the DHCP Server server role installed. You need to manage DHCP on Server2 by using the DHCP console on Server1. 

What should you do first? 

A. From a command prompt on Server2/ run winrm.exe. 

B. From Internet Explorer on Server2, download and install Windows Management Framework 3.0. 

C. From Server Manager on Server2, enable Windows Remote Management. 

D. From Windows PowerShell on Server1, run Install-WindowsFeature. 

Answer:


Q150. OTSPOT 

Your company has a primary data center and a disaster recovery data center. 

The network contains an Active Directory domain named contoso.com. The domain contains a server named that runs Windows Server 2012 R2. Server1 is located in the primary data center. 

Server1 has an enterprise root certification authority (CA) for contoso.com. 

You deploy another server named Server2 to the disaster recovery data center. 

You plan to configure Server2 as a secondary certificate revocation list (CRL) distribution point. 

You need to configure Server2 as a CRL distribution point (CDP). 

Which tab should you use to configure the required CDP entry? To answer, select the appropriate tab in the answer area. 

Answer: 

197. OTSPOT 

You have a server named Server1 that runs Windows Server 2012 R2. 

You are configuring a storage space on Server1. 

You need to ensure that the storage space supports tiered storage. 

Which settings should you configure? 

To answer, select the appropriate options in the answer area. 

Answer: