Free Providing CertBus Microsoft 70-417 VCE Exam Study Guides With New Update Exam Questions
You can prepare for your Microsoft MCSA 70-417 exam with less time and effort because we,CertBus, will act as your reliable guide to pass your Microsoft MCSA 70-417 exam. Our Microsoft MCSA 70-417 exam dumps are the latest and with the most accurate answers. We offer Microsoft MCSA 70-417 PDF dumps and Microsoft MCSA 70-417 VCE. Both are the most effective version.
We CertBus has our own expert team. They selected and published the latest 70-417 preparation materials from Microsoft Official Exam-Center: http://www.certgod.com/70-417.html
QUESTION NO:66
DRAG DROP
Your network contains an Active Directory domain named contoso.com. The domain contains a
server named Server1 that runs Windows Server 2012 R2.
You plan to install the Active Directory Federation Services server role on Server1 to allow for
Workplace Join.
You run nslookupenterpriseregistration and you receive the following results:
You need to create a certificate request for Server1 to support the Active Directory Federation
Services (AD FS) installation.
How should you configure the certificate request? To answer, drag the appropriate names to the
correct locations. Each name may be used once, more than once, or not at all. You may need to drag
the split bar between panes or scroll to view content.
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image046.jpg
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image047.gif
Answer:
QUESTION NO:40
Your network contains an Active Directory domain named contoso.com. The domain contains a
domain controller named DC1.
You run ntdsutil as shown in the exhibit. (Click the Exhibit button.)
You need to ensure that you can access the contents of the mounted snapshot.
What should you do?
A. From a command prompt, run dsamain.exe -dbpath
c:$snap_201204131056_volumec$windowsntdsntds.dit -Idapport 33389.
B. From the snapshot context of ntdsutil, run mount {79f94f82-5926-4f44-8af0-2f56d827a57d>.
C. From the snapshot context of ntdsutil, run activate instance “NTDS”.
D. From a command prompt, run dsamain.exe -dbpath
c:$snap_201204131056_volumec$windowsntdsntds.dit -Idapport 389.
Answer: A
Explanation:
Explanation:
A. Custom port needs to be defined when mounting to allow access from ADUC
B. 389 is used as the standard ldap port
C. Run prior to mount and after the mount run dsamain Sets NTDS or a specific AD LDS instance as
the active instance.
D. mounts a specific snap shot as specified by guid, using the snapshot mounted you needs to run
dsamain to start an instance of AD
http://technet.microsoft.com/en-us/library/cc753609(v=ws.10).aspx
QUESTION NO:68
Your network contains a perimeter network and an internal network. The internal network contains
an Active Directory Federation Services (AD FS) 2.1 infrastructure. The infrastructure uses Active
Directory as the attribute store.
You plan to deploy a federation server proxy to a server named Server2 in the perimeter network.
You need to identify which value must be included in the certificate that is deployed to Server2.
What should you identify?
A. The name of the Federation Service
B. The name of the Active Directory domain
C. The FQDN of the AD FS server
D. The public IP address of Server2
Answer: C
Explanation:
A. It must contain the FQDN
http://technet.microsoft.com/en-us/library/cc776786(v=ws.10).aspx
http://technet.microsoft.com/en-us/library/cc782620(v=ws.10).aspx
http://technet.microsoft.com/en-us/library/cc759635(v=ws.10).aspx
QUESTION NO:61
Your network contains an Active Directory domain named contoso.com. The domain contains a file
server named Server1 and a domain controller named DC1. All servers run Windows Server 2012 R2.
A Group Policy object (GPO) named GPO1 is linked to the domain.
Server1 contains a folder named Folder1. Folder1 is shared as Share1.
You need to ensure that authenticated users can request assistance when they are denied access to
the resources on Server1.
Which two actions should you perform? (Each correct answer presents part of the solution. Choose
two.)
A. Enable the Enable access-denied assistance on client for all file types policy setting for GPO1.
B. Configure the Customize message for Access Denied errors policy setting of GPO1.
C. Install the File Server Resource Manager role service on DC1.
D. Install the File Server Resource Manager role service on Server1.
E. Assign the Read Attributes NTFS permission on Folder1 to the Authenticated Users group.
Answer: A, D
QUESTION NO:14
Your network contains an Active Directory forest named contoso.com. All domain controllers
currently run Windows Server 2008 R2.
You plan to install a new domain controller named DC4 that runs Windows Server 2012 R2.
The new domain controller will have the following configurations:
. Schema master
. Global catalog server
. DNS Server server role
. Active Directory Certificate Services server role
You need to identify which configurations cannot be fulfilled by using the Active Directory Domain
Services Configuration Wizard.
Which two configurations should you identify? (Each correct answer presents part of the solution.
Choose two.)
A. Enable the global catalog server.
B. Transfer the schema master.
C. Install the Active Directory Certificate Services role.
D. Install the DNS Server role.
Answer: B, C
Explanation:
AD Installation Wizard will automatically install DNS and allows for the option to set it as a global
catalog server. ADCS and schema must be done separately.
Incorrect answers:
A: The Global Catalogue server is automatically installed.
C: The DNS server role is automatically installed.
References:
http://technet.microsoft.com/en-us/library/hh831457.aspx
Exam Ref 70-410: Installing and Configuring Windows Server 2012, Chapter 5: Install and administer
Active Directory, Objective 5.1: Install domain controllers, p. 262
QUESTION NO:11
Your network contains an Active Directory forest named contoso.com.
The forest contains two domains named contoso.com and child.contoso.com and two sites named
Site1 and Site2. The domains and the sites are configured as shown in following table.
When the link between Site1 and Site2 fails, users fail to log on to Site2.
You need to identify what prevents the users in Site2 from logging on to the child.contoso.com
domain.
What should you identify?
A. The placement of the infrastructure master
B. The placement of the global catalog server
C. The placement of the domain naming master
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image004.jpg
D. The placement of the PDC emulator
Answer: D
Explanation:
The exhibit shows that Site2 does not have a PDC emulator. This is important because of the close
interaction between the RID operations master role and the PDC emulator role
The PDC emulator processes password changes from earlier-version clients and other domain
controllers on a best-effort basis; handles password authentication requests involving passwords
that have recently changed and not yet been replicated throughout the domain; and, by default,
synchronizes time. If this domain controller cannot connect to the PDC emulator, this domain
controller cannot process authentication requests, it may not be able to synchronize time, and
password updates cannot be replicated to it.
Incorrect answers:
A: The global catalogue server role placement is not the issue.
C: The PDC emulator role, not the infrastructure master role will process authentication requests
that will allow logging on for the Site2 users.
D: The domain naming master role is not the role that prevents Site2 users from logging on to the
child domain.
References:
http://technet.microsoft.com/en-us/library/dd391870(v=ws.10).aspx
http://technet.microsoft.com/en-us/library/cc773108(v=ws.10).aspx
QUESTION NO:54
You have a server named Server1 that runs Windows Server 2012 R2.
Server1 is backed up by using Windows Server Backup. The backup configuration is shown in the
exhibit. (Click the Exhibit button.)
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image029.jpg
You discover that only the last copy of the backup is maintained.
You need to ensure that multiple backup copies are maintained.
What should you do?
A. Configure the Optimize Backup Performance settings.
B. Modify the Volume Shadow Copy Service (VSS) settings.
C. Modify the backup times.
D. Modify the backup destination.
Answer: D
Explanation:
A, The destination in the exhibit shows a network share is used. If a network share is being used only
the latest copy will be saved
http://windows.microsoft.com/en-us/windows7/where-should-i-save-my-backup
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image030.jpg
QUESTION NO:69
Your network contains an Active Directory domain named contoso.com. The domain contains
servers named Server1 and Server2 that run Windows Server 2012 R2. Server1 has the Active
Directory Federation Services server role installed. Server2 is a file server.
Your company introduces a Bring Your Own Device (BYOD) policy.
You need to ensure that users can use a personal device to access domain resources by using Single
Sign-On (SSO) while they are connected to the internal network.
Which two actions should you perform? (Each correct answer presents part of the solution. Choose
two.)
A. Enable the Device Registration Service in Active Directory.
B. Publish the Device Registration Service by using a Web Application Proxy.
C. Configure Active Directory Federation Services (AD FS) for the Device Registration Service.
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image049.jpg
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image050.jpg
D. Install the Work Folders role service on Server2.
E. Create and configure a sync share on Server2.
Answer: AC
QUESTION NO:58
HOTSPOT
You have a file server named Server1 that runs Windows Server 2012 R2.
Server1 contains a file share that must be accessed by only a limited number of users.
You need to ensure that if an unauthorized user attempts to access the file share, a custom access-
denied message appears, which contains a link to request access to the share. The message must not
appear when the unauthorized user attempts to access other shares.
Which two nodes should you configure in File Server Resource Manager? To answer, select the
appropriate two nodes in the answer area.
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image034.jpg
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image035.gif
Answer:
QUESTION NO:43
HOTSPOT
Your network contains an Active Directory forest named contoso.com. The forest contains a single
domain. The forest contains two Active Directory sites named Site1 and Site2.
You plan to deploy a read-only domain controller (RODC) named DC10 to Site2. You pre-create the
DC10 domain controller account by using Active Directory Users and Computers.
You need to identify which domain controller will be used for initial replication during the promotion
of the RODC.
Which tab should you use to identify the domain controller?
To answer, select the appropriate tab in the answer area.
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image020.jpg
Answer:
C:UsersAlpolinkAppDataLocalTempmsohtmlclip1 1clip_image021.jpg
CertBus exam braindumps are pass guaranteed. We guarantee your pass for the 70-417 exam successfully with our Microsoft materials. CertBus Upgrading Your Skills to MCSA Windows Server 2012 exam PDF and VCE are the latest and most accurate. We have the best Microsoft in our team to make sure CertBus Upgrading Your Skills to MCSA Windows Server 2012 exam questions and answers are the most valid. CertBus exam Upgrading Your Skills to MCSA Windows Server 2012 exam dumps will help you to be the Microsoft specialist, clear your 70-417 exam and get the final success.
70-417 Latest questions and answers on Google Drive(100% Free Download): https://drive.google.com/file/d/0B_3QX8HGRR1mZG5scHZoTmhYWGs/view?usp=sharing
70-417 Microsoft exam dumps (100% Pass Guaranteed) from CertBus: http://www.certgod.com/70-417.html [100% Exam Pass Guaranteed]
Why select/choose CertBus?
Millions of interested professionals can touch the destination of success in exams by certgod.com. products which would be available, affordable, updated and of really best quality to overcome the difficulties of any course outlines. Questions and Answers material is updated in highly outclass manner on regular basis and material is released periodically and is available in testing centers with whom we are maintaining our relationship to get latest material.