70-413 Exam - Designing and Implementing a Server Infrastructure

certleader.com

Q1. - (Topic 4) 

You need to recommend an Office 365 integration solution. 

What should you include in the recommendation? 

A. Active Directory directory synchronization 

B. The Active Directory Migration Tool (ADMT) 

C. Windows Identity Foundation (WIF) 3.5 

D. The Sync Framework Toolkit 

Answer:

Explanation: * Scenario: Each office is configured as an Active Directory site. 

Q2. - (Topic 8) 

Your company has a main office and four branch offices. The main office is located in London. 

The network contains an Active Directory domain named contoso.com. Each office contains one domain controller that runs Windows Server 2012. The Active Directory site topology is configured as shown in the exhibit. (Click the Exhibit button.) 

You discover that when a domain controller in a branch office is offline for maintenance, users in that branch office are authenticated by using the domain controllers in any of the sites. 

You need to recommend changes to Active Directory to ensure that when a domain controller in a branch office is offline, the users in that branch office are authenticated by the domain controllers in London. 

What should you include in the recommendation? 

A. Modify the DC Locator DNS Records settings. 

B. Disable site link bridging. 

C. Modify the site link costs. 

D. Modify the service location (SRV) records in DNS. 

Answer:

Explanation: 

If local DC (domain controller) is not available, DC Locator service will look for another DC in a different site. 

Q3. - (Topic 8) 

You plan to deploy serverl.child.contoso.com as a read-only domain controller (RODC). 

You run the adprep.exe /rodcprep command on DC3 and receive the following error message: 

You need to identify what prevents you from successfully running Adprep /rodcprep on DC3. 

What should you identify? 

A. The domain functional level of child.contoso.com isset to the wrong level. 

B. DC3 cannot connect to the domain naming master on DC1. 

C. The forest functional level is set to the wrong level. 

D. DC3 cannot connect to the infrastructure master onDC2. 

Answer:

Explanation: Adprep could not contact a replica… 

This problem occurs when the Adprep /rodcprep command tries to contact the 

infrastructure master for each application partition in the forest. 

Reference: Error message when you run the "Adprep /rodcprep" command in Windows 

Server 2008: "Adprep could not contact a replica for partition 

DC=DomainDnsZones,DC=Contoso,DC=com" 

Q4. DRAG DROP - (Topic 8) 

Your network contains an Active Directory forest named corp.contoso.com. All servers run Windows Server 2012. 

The network has a perimeter network that contains servers that are accessed from the Internet by using the contoso.com namespace. 

The network contains four DNS servers. The servers are configured as shown in the following table. 

All of the client computers on the perimeter network use Server1 and Server2 for name resolution. 

You plan to add DNS servers to the corp.contoso.com domain. 

You need to ensure that the client computers automatically use the additional name servers. The solution must ensure that only computers on the perimeter network can resolve names in the corp.contoso.com domain. 

Which DNS configuration should you implement on Server1 and Server2? 

To answer, drag the appropriate DNS configuration to the correct location in the answer area. Each DNS configuration may be used once, more than once, or not at all. Additionally, you may need to drag the split bar between panes or scroll to view content. 

Answer:  

Q5. HOTSPOT - (Topic 7) 

You need to protect the personal data of employees. 

What should you do? To answer, select the appropriate options in the answer area. 

Answer:  

Q6. HOTSPOT - (Topic 2) 

You need to recommend a configuration for the DHCP infrastructure. 

What should you recommend? To answer, select the appropriate options in the answer area. 

Answer:  

Q7. - (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The domain contains 10 sites. The sites are located in different cities and connect to each other by using low-latency WAN links. 

In each site, you plan to implement Microsoft System Center 2012 Configuration Manager and to deploy multiple servers. 

You need to recommend which Configuration Manager component must be deployed to each site for the planned deployment. 

What should you include in the recommendation? 

More than one answer choice may achieve the goal. Select the BEST answer. 

A. A management point 

B. A software update point 

C. A distribution group point 

D. A secondary site server that has all of the Configuration Manager roles installed 

Answer:

Explanation: 

Distribution point groups provide a logical grouping of distribution points and collections for content distribution. A Distribution point group is not limited to distribution points from a single site, and can contain one or more distribution points from any site in the hierarchy. When you distribute content to a distribution point group, all distribution points that are members of the 

distribution point group receive the content. 

Reference: Configuring Distribution Point Groups in Configuration Manager 

Q8. - (Topic 7) 

You need to implement the Microsoft Azure migration plan. What should you do? 

A. On Microsoft Azure, install and configure System Center 2012 R2 Virtual Machine Manager. 

B. On an on-premises server, install and configure System Center 2012 R2 Service Manager. 

C. On an on-premises server, install and configure System Center 2012 R2 App Controller. 

D. On an on-premises server, install and configure Windows Deployment Services. 

E. On Microsoft Azure, install and configure System Center 2012 R2 Orchestrator. 

Answer:

Explanation: 

* Scenario: Azure migration The company plans to migrate existing services, including System Center management servers, to Azure. To reduce costs, the migration must use the minimum number of Azure VM instances to migrate the services. 

Reference: Understanding App Controller 2012 

Q9. - (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The domain contains multiple sites. 

You plan to deploy DirectAccess. 

The network security policy states that when client computers connect to the corporate network from the Internet, all of the traffic destined for the Internet must be routed through the corporate network. 

You need to recommend a solution for the planned DirectAccess deployment that meets the security policy requirement. 

Solution: You enable force tunneling. 

Does this meet the goal? 

A. Yes 

B. No 

Answer:

Explanation: DirectAccess. DirectAccess allows connectivity to organizational network resources without the need for traditional virtual private network (VPN) connections. 

DirectAccess allows remote users to securely access internal network file shares, Web sites, and applications without connecting to a virtual private network (VPN). An internal network is also known as a private network or intranet. DirectAccess establishes bi-directional connectivity with an internal network every time a DirectAccess-enabled computer connects to the Internet, even before the user logs on. Users never have to think about connecting to the internal network and IT administrators can manage remote computers outside the office, even when the computers are not connected to the VPN. 

Q10. - (Topic 1) 

What method should you use to deploy servers? 

A. WDS 

B. AIK 

C. ADK 

D. EDT 

Answer:

Explanation: WDS is a server role that enables you to remotely deploy Windows operating systems. You can use it to set up new computers by using a network-based installation. This means that you do not have to install each operating system directly from a CD, USB drive, or DVD. 

Reference: What's New in Windows Deployment Services in Windows Server