70-413 Exam Questions - Online Test


70-413 Premium VCE File

Learn More 100% Pass Guarantee - Dumps Verified - Instant Download
150 Lectures, 20 Hours

certleader.com

Actualtests microsoft 70 413 Questions are updated and all 70 413 pdf answers are verified by experts. Once you have completely prepared with our 70 413 exam exam prep kits you will be ready for the real microsoft 70 413 exam without a problem. We have Renewal Microsoft microsoft 70 413 dumps study guide. PASSED 70 413 pdf First attempt! Here What I Did.

Q41. - (Topic 8) 

Your network contains an Active Directory forest named adatum.com. All domain controllers run Windows Server 2008 R2. The functional level of the domain and the forest is Windows Server 2008. 

You deploy a new Active Directory forest named contoso.com. All domain controllers run Windows Server 2012 R2. The functional level of the domain and the forest is Windows Server 2012 R2. 

You establish a two-way, forest trust between the forests. Both networks contain member servers that run either Windows Server 2012 R2, Windows Server 2012, Windows Server 2008 R2 or Windows Server 2008. 

You plan to use the Active Directory Migration Tool 3.2 (ADMT 3.2) to migrate user accounts from adatum.com to contoso.com. SID history will be used in contoso.com and passwords will be migrated by using a Password Export Server (PES). 

You need to recommend which changes must be implemented to support the planned migration. 

Which two changes should you recommend? Each correct answer presents part of the solution. 

A. In the contoso.com forest, deploy a domain controller that runs Windows Server 2008 R2. 

B. In the adatum.com forest, upgrade the functional level of the forest and the domain. 

C. In the contoso.com forest, downgrade the functional level of the forest and the domain. 

D. In the adatum.com forest, deploy a domain controller that runs Windows Server 2012 R2. 

Answer: A,C 


Q42. - (Topic 8) 

Your company has a main office and 20 branch offices. All of the offices connect to each other by using a WAN link. 

The network contains an Active Directory forest named contoso.com. The forest contains a domain for each office. The forest root domain contains all of the server resources. 

Each branch office contains two domain controllers for the branch office domain and one domain controller for the contoso.com domain. 

Each branch office has a support technician who is responsible for managing the accounts of their respective office only. 

You recently updated all of the WAN links to high-speed WAN links. 

You need to recommend changes to the Active Directory infrastructure to meet the following requirements: 

. Reduce the administrative overhead of moving user accounts between the offices. 

. Ensure that the support technician in each office can manage the user accounts of their respective office. 

What should you include in the recommendation? More than one answer choice may achieve the goal. Select the BEST answer. 

A. Create a new child domain named corp.contoso.com. Create a shortcut trust between each child domain and corp.contoso.com. 

B. Create shortcut trusts between each child domain. In the main office, add a domain controller to each branch office domain. 

C. Move all of the user accounts of all the branch offices to the forest root domain. Decommission all of the child domains. 

D. Create a new forest root domain named contoso.local. Move all of the user accounts of all the branch offices to the new forest root domain. Decommission all of the child domains. 

Answer:

Explanation: The most basic of all Active Directory structures is the single domain model; this type of domain structure comes with one major advantage over the other models: simplicity. A single security boundary defines the borders of the domain, and all objects are located within that boundary. The establishment of trust relationships between other domains is not necessary, and implementation of technologies such as Group Policies is made easier by the simple structure. 


Q43. - (Topic 8) 

Your company has a main office and a branch office. 

The network contains an Active Directory domain named contoso.com. The main office contains domain controllers that run Windows Server 2012. The branch office contains a read-only domain controller (RODC) that runs Windows Server 2012. 

You need to recommend a solution to control which Active Directory attributes are replicated to the RODC. 

What should you include in the recommendation? 

A. The partial attribute set 

B. The filtered attribute set 

C. Application directory partitions 

D. Constrained delegation 

Answer:

Explanation: RODC filtered attribute set 

Some applications that use AD DS as a data store might have credential-like data (such as passwords, credentials, or encryption keys) that you do not want to be stored on an RODC in case the RODC is compromised. For these types of applications, you can dynamically configure a set of attributes in the schema for domain objects that will not replicate to an RODC. This set of attributes is called the RODC filtered attribute set. Attributes that are defined in the RODC filtered attribute set are not allowed to replicate to any RODCs in the forest. 

Reference: AD DS: Read-Only Domain Controllers 


Q44. DRAG DROP - (Topic 8) 

Your network contains an Active Directory forest named corp.contoso.com. All servers run Windows Server 2012. 

The network has a perimeter network that contains servers that are accessed from the Internet by using the contoso.com namespace. 

The network contains four DNS servers. The servers are configured as shown in the following table. 

All of the client computers on the perimeter network use Server1 and Server2 for name resolution. 

You plan to add DNS servers to the corp.contoso.com domain. 

You need to ensure that the client computers automatically use the additional name servers. The solution must ensure that only computers on the perimeter network can resolve names in the corp.contoso.com domain. 

Which DNS configuration should you implement on Server1 and Server2? 

To answer, drag the appropriate DNS configuration to the correct location in the answer area. Each DNS configuration may be used once, more than once, or not at all. Additionally, you may need to drag the split bar between panes or scroll to view content. 

Answer: 


Q45. - (Topic 8) 

Your company, which is named Contoso, Ltd., has a main office and two branch offices. The main office is located in North America. The branch offices are located in Asia and Europe. 

You plan to design an Active Directory forest and domain infrastructure. 

You need to recommend an Active Directory design to meet the following requirements: 

* The contact information of all the users in the Europe office must not be visible to the users in the other offices. 

* The administrators in each office must be able to control the user settings and the computer settings of the users in their respective office. 

The solution must use the least amount of administrative effort. 

What should you include in the recommendation? 

A. One forest that contains three domains 

B. Three forests that each contain one domain 

C. Two forests that each contain one domain 

D. One forest that contains one domain 

Answer:

Explanation: * The most basic of all Active Directory structures is the single domain model; this type of domain structure comes with one major advantage over the other models: simplicity. A single security boundary defines the borders of the domain, and all objects are located within that boundary. The establishment of trust relationships between other domains is not necessary, and implementation of technologies such as Group Policies is made easier by the simple structure. 


Q46. - (Topic 1) 

You implement and authorize the new DHCP servers. You import the server configurations and the scope configurations from PA1 and AM1. 

You need to ensure that clients can obtain DHCP address assignments after you shut down PA1 and AM1. The solution must meet the technical requirements. 

What should you do? 

A. Run the Get-DhcpServerv4Lease cmdlet and the Remove-DhcpServerv4Lease cmdlet. Run the Windows Server Migration Tools. 

B. Run the Get-DhcpServerv4Lease cmdlet and the Add-DhcpServerv4Lease cmdlet. Activate the scopes. 

C. Run the Get-DhcpServerv4FreeIPAddress cmdlet and the Invoke-DhcpServerv4FailoverReplication cmdlet. Run the Windows Server Migration Tools. 

D. Run the Get-DhcpServerv4FreeIPAddress cmdlet and the Invoke-DhcpServerv4FailoverReplication cmdlet Activate the scopes. 

Answer:

Explanation: The Get-DhcpServerv4Lease cmdlet gets one or more lease records from the Dynamic Host Configuration Protocol (DHCP) server service. The Add-DhcpServerv4Lease cmdlet adds a new IPv4 address lease on the Dynamic Host Configuration Protocol (DHCP) server service. This cmdlet is only supported for DHCP server service running on Windows Server. 2012. 


Q47. - (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The domain contains 10 sites. The sites are located in different cities and connect to each other by using low-latency WAN links. 

In each site, you plan to implement Microsoft System Center 2012 Configuration Manager and to deploy multiple servers. 

You need to recommend which Configuration Manager component must be deployed to each site for the planned deployment. 

What should you include in the recommendation? 

More than one answer choice may achieve the goal. Select the BEST answer. 

A. A management point 

B. A software update point 

C. A distribution group point 

D. A secondary site server that has all of the Configuration Manager roles installed 

Answer:

Explanation: 

Distribution point groups provide a logical grouping of distribution points and collections for content distribution. A Distribution point group is not limited to distribution points from a single site, and can contain one or more distribution points from any site in the hierarchy. When you distribute content to a distribution point group, all distribution points that are members of the 

distribution point group receive the content. 

Reference: Configuring Distribution Point Groups in Configuration Manager 


Q48. - (Topic 8) 

Your network contains an Active Directory forest named contoso.com. The forest is 

managed by using Microsoft System Center 2012. 

Web developers must be able to use a self-service portal to request the deployment of 

virtual machines based on predefined templates. The requests must be approved by an 

administrator before the virtual machines are deployed. 

You need to recommend a solution to deploy the virtual machines. 

What should you include in the recommendation? 

More than one answer choice may achieve the goal. Select the BEST answer. 

A. A Virtual Machine Manager (VMM) service template, an Operations Manager dashboard, and an Orchestrator runbook 

B. A Service Manager service offering, an Orchestrator runbook, and an Operations Manager dashboard 

C. A Virtual Machine Manager (VMM) service template, a Service Manager service offering, and an Orchestrator runbook 

D. A Service Manager service offering, an Orchestrator runbook, and Configuration Managerpackages 

Answer:

Explanation: As a practical example, a user could initiate an Orchestrator runbook by requesting a service in a self-service portal. The runbook would then await approval by IT. Once approved, it would then automatically provision the necessary virtual machines through System Center Virtual Machine Manager, deploy the required software via Configuration Manager, arrange backup through System Center Data Protection Manager and integrate monitoring with a third-party system. 

Reference: Microsoft System Center Orchestrator 2012: Lead the System Center Band 


Q49. HOTSPOT - (Topic 8) 

You have a domain controller that hosts an Active Directory-integrated zone. 

On the domain controller, you run the following cmdlet: 

PS C:\> Get-DnsServerScavenging 

NoRefreshInterval:2.00:00:00 RefreshInterval:3.00:00:00 ScavengingInterval:4.00:00:00 ScavengingState:True LastScavengeTime:1/30/2014 9:10:36 AM 

Use the drop-down menus to select the answer choice that completes each statement. 

Answer: 


Q50. HOTSPOT - (Topic 8) 

Your network contains an Active Directory domain named contoso.com. 

The domain has a certification authority (CA). You create four certificate templates. The templates are configured as shown in the following table: 

You install the Remote Access server role in the domain. 

You need to configure DirectAccess to use one-time password (OTP) authentication. 

What should you do? To answer, select the appropriate options in the answer area, 

Answer: