Home | Windows | Network | Interview Questions | Database | Virtualization | Knowledge Base | Contact Us

Quick Links

Windows 2003 KB

Windows 2008 KB

Windows 2012 KB

Network KB

MS Cluster FAQ's

Knowledge Base Home

 

Virtualization

Command reference

Exchange Q&A

DNS FAQ's

DHCP FAQ's

 

Active Directory FAQ's

AD History

Configuring New Domain

Deleted Object Recovery in AD

Global Catalog Server

 

NetDom Command

Replmon Command

NTDS Utility Guide

FSMO Guide

FSMO Failure

Network Interview Questions

SQL Interview Questions

Active Directory Trust

Group Policy Guide

IIS 6.0

 

RAID Levels

RPC Guide

Domain & Forest Functional Levels

SQL Failover Cluster

Latest Microsoft 70-640 Exam Questions and Answers


QUESTION NO: 29

Your company has two Active Directory forests named contoso.com and fabrikam.com. Both forests run only domain controllers that run Windows Server 2008. The domain functional level of contoso.com is Windows Server 2008. The domain functional level of fabrikam.com is Windows Server 2003 Native mode. You configure an external trust between contoso.com and fabrikam.com. You need to enable the Kerberos AES encryption option. What should you do?

A. Raise the forest functional level of fabrikam.com to Windows Server 2008.

B. Raise the domain functional level of fabrikam.com to Windows Server 2008.

C. Raise the forest functional level of contoso.com to Windows Server 2008.

D. Create a new forest trust and enable forest-wide authentication.

Answer: B

 

 

QUESTION NO: 30

All consultants belong to a global group named TempWorkers. You place three file servers in a new organizational unit named SecureServers. The three file servers contain confidential data located in shared folders. You need to record any failed attempts made by the consultants to access the confidential data. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

A. Create and link a new GPO to the SecureServers organizational unit. Configure the Deny access to this computer from the network user rights setting for the TempWorkers global group.

B. Create and link a new GPO to the SecureServers organizational unit. Configure the Audit privilege use Failure audit policy setting.

C. Create and link a new GPO to the SecureServers organizational unit. Configure the Audit object access Failure audit policy setting.

D. On each shared folder on the three file servers, add the three servers to the Auditing tab. Configure the Failed Full control setting in the Auditing Entry dialog box.

E. On each shared folder on the three file servers, add the TempWorkers global group to the Auditing tab. Configure the Failed Full control setting in the Auditing Entry dialog box.

Answer: C,E

 

 

QUESTION NO: 31

You have two servers named Server1 and Server2. Both servers run Windows Server 2008 R2. Server1 is configured as an Enterprise Root certification authority (CA). You install the Online Responder role service on Server2. You need to configure Server2 to issue certificate revocation lists (CRLs) for the enterprise root CA. Which two tasks should you perform? (Each correct answer presents part of the solution. Choose two.)

A. Import the enterprise root CA certificate.

B. Import the OCSP Response Signing certificate.

C. Add the Server1 computer account to the CertPublishers group.

D. Set the Startup Type of the Certificate Propagation service to Automatic.

Answer: A,B

 

 

QUESTION NO: 32

Your company has an Active Directory forest. The forest includes organizational units corresponding to the following four locations:

London

Chicago

New York

India

Each location has a child organizational unit named Sales. The Sales organizational unit contains all the users and computers from the sales department.

The offices in London, Chicago, and New York are connected by T1 connections. The office in India is connected by a 256-Kbps ISDN connection.

You need to install an application on all the computers in the sales department.

Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

A. Create a Group Policy Object (GPO) named OfficeInstall that assigns the application to users. Link the GPO to each Sales organizational unit.

B. Disable the slow link detection setting in the Group Policy Object (GPO).

C. Configure the slow link detection threshold setting to 1,544 Kbps (T1) in the Group Policy Object (GPO).

D. Create a Group Policy Object (GPO) named OfficeInstall that assigns the application to the computers. Link the GPO to each Sales organizational unit.

Answer: B,D


Continue Next Questions Previous Questions

      Windows Server 2008 Articles        Windows Server 2012 Articles      Virtualization Articles

HTML Comment Box is loading comments...

 
Home | Windows | Network | Interview Questions | Database| Knowledge Base | Contact Us

 

Designed by TechieBird