70-417 Exam - Upgrading Your Skills to MCSA Windows Server 2012

certleader.com

Q1. Which terminology is being described below? 

A _________ trust allows resources in your domain (the domain that you are logged on to at the time that you run the New Trust Wizard) to be accessed more quickly by users in another domain (which is nested within another domain tree) in your forest. 

A. one-way, outgoing, shortcut 

B. two-way, incoming, shortcut 

C. one-way, outgoing, forest 

D. two-way, incoming, forest 

Answer:

Explanation: 

The direction of the trust is inverse of the direction of the authorization not forest as we're asked for a trust only between 2 domains. a forest trust would provide trust between every single domain of the forest. 

Q2. Your network contains three servers named HV1, HV2, and Server1 that run Windows Server 2012 R2. HV1 and HV2 have the Hyper-V server role installed. Server1 is a file server that contains 3 TB of free disk space. 

HV1 hosts a virtual machine named VM1. The virtual machine configuration file for VM1 is stored in D:\VM and the virtual hard disk file is stored in E:\VHD. 

You plan to replace drive E with a larger volume. 

You need to ensure that VM1 remains available from HV1 while drive E is being replaced. You want to achieve this goal by using the minimum amount of administrative effort. 

What should you do? 

A. Perform a live migration to HV2. 

B. Add HV1 and HV2 as nodes in a failover cluster. Perform a storage migration to HV2. 

C. Add HV1 and HV2 as nodes in a failover cluster. Perform a live migration to HV2. 

D. Perform a storage migration to Server1. 

Answer:

Q3. Which terminology is being described below? 

These trusts are sometimes necessary when users need access to resources that are located in a Windows NT 4.0 domain or in a domain that is in a separate Active Directory Domain Services (AD DS) forest that is not joined by a forest trust. 

A. Shortcut Trusts 

B. Realm Trusts 

C. Forest Trusts 

D. External Trust 

Answer:

Explanation: 

You can create an external trust to form a one-way or two-way, nontransitive trust with domains that are outside your forest http://technet.microsoft.com/enus/library/cc775736%28v=ws.10%29.aspx Trust types 

http://technet.microsoft.com/en-us/library/cc731297.aspx Understanding When to Create a Realm Trust When to create a realm trust You can establish a realm trust between any non-Windows Kerberos version 5 (V5) realm and an Active Directory domain. This trust relationship allows cross-platform interoperability with security services that are based on other versions of the Kerberos V5 protocol, for example, UNIX and MIT implementations. Realm trusts can switch from non transitive to transitive and back. Realm trusts can also be either one-way or two way. 

Q4. Server manager is a great tool for managing most of your server settings and configuration all in one central place. Which one of the following Server manager Features is used for Storage management, replication and searching? 

A. Dynamic Host Configuration Server 

B. Terminal Services 

C. Domain Name Service 

D. File Services 

Answer:

Q5. You have a server named Server1 that runs Windows Server 2012 R2. You add a 4-TB disk named Disk 5 to Server1. 

You need to ensure that you can create a 3-TB volume on Disk 5. 

What should you do? 

A. Create a storage pool. 

B. Convert the disk to a GPT disk. 

C. Convert the disk to a dynamic disk. 

D. Create a VHD, and then attach the VHD. 

Answer:

Explanation: The exhibit shows Disk1 to be a basic disk. The disk must be GPT since GPT disks allows for partitioning. 

References: Training Guide: Installing and Configuring Windows Server 2012 R2: Chapter 8: File Services and Storage, Lesson 2: Provisioning and managing shared storage, p. 379-384 http://msdn.microsoft.com/en-us/library/windows/hardware/gg463525.aspx 

Q6. OTSPOT 

Your network contains two Hyper-V hosts that are configured as shown in the following table. 

You create a virtual machine on Server1 named VM1. 

You plan to export VM1 from Server1 and import VM1 to Server2. 

You need to ensure that you can start the imported copy of VM1 from snapshots. 

What should you configure on VM1? 

To answer, select the appropriate node in the answer area. 

Answer:  

19. You have a virtual machine named VM1 that runs on a host named Host1. 

You configure VM1 to replicate to another host named Host2. Host2 is located in the same physical location as Host1. 

You need to add an additional replica of VM1. The replica will be located in a different physical site. 

What should you do? 

A. From VM1 on Host2, click Extend Replication. 

B. On Host1, configure the Hyper-V settings. 

C. From VM1 on Host1, click Extend Replication. 

D. On Host2, configure the Hyper-V settings. 

Q7. Your network contains an Active Directory domain named contoso.com. All domain 

controllers run Windows Server 2012 R2. 

Administrators use client computers that run Windows 8 to perform all management tasks. 

A central store is configured on a domain controller named DC1. 

You have a custom administrative template file named AppLadmx. App1.admx contains 

application settings for an application named App1. 

From a client computer named Computer1, you create a new Group Policy object (GPO) 

named GPO1. 

You discover that the application settings for App1 fail to appear in GPO1. 

You need to ensure that the App1 settings appear in all of the new GPOs that you create. 

What should you do? 

A. From the Default Domain Controllers Policy, add App1.admx to the Administrative Templates. 

B. Copy App1.admx to \\Contoso.com\SYSVOL\Contoso.com\Policies\PolicyDefinitions\. 

C. From the Default Domain Policy, add App1.admx to the Administrative Templates. 

D. Copy App1.admx to \\Contoso.com\SYSVOL\Contoso.com\StarterGPOs. 

Answer:

Explanation: 

To take advantage of the benefits of .admx files, you must create a Central Store in the SYSVOL folder on a domain controller. The Central Store is a file location that is checked by the Group Policy tools. The Group Policy tools use any .admx files that are in the Central Store. The files that are in the Central Store are later replicated to all domain controllers in the domain. 

Q8. A server named Server01 is running Server Core at your companies IT house. It is already configured with the AD DS role but you also want to add AD CS to the server. What must you do to add Active Directory Certificate Services (AD CS) to this server? 

A. Reinstall the server with the full version of Windows Server 2008 

B. Install the AD CS role 

C. Install the RODC role 

D. Install the AD FS role 

Answer: B Explanation: 

Server 2012 allows AD CS in core mode. http://technet.microsoft.com/en-us/library/hh831373.aspx What's New in AD CS? New and changed functionality Several new capabilities are available in the Windows Server 2012 R2 version of AD CS. They include: Integration with Server Manager Deployment and management capabilities from Windows PowerShell?All AD CS role services run on any Windows Server 2012 R2 version All AD CS role services can be run on Server Core Support for automatic renewal of certificates for non-domain joined computers Enforcement of certificate renewal with same key Support for international domain names Increased security enabled by default on the CA role service AD DS Site Awareness for AD CS and PKI Clients 

Q9. You have a server named Server1 that runs a Server Core Installation of Windows Server 2012 R2. You attach a 4-TB disk to Server1. 

The disk is configured as an MBR disk. You need to ensure that you can create a 4-TB volume on the disk. 

Which Diskpart command should you use? 

A. Automount 

B. Convert 

C. Expand 

D. Attach 

Answer:

Explanation: 

You will need to convert the disk to a GPT since GPT disks allows for partitioning and not MBR disks. 

References: Exam Ref 70-410: Installing and Configuring Windows Server 2012: Objective 3.2: Create and Configure virtual machine storage, Chapter 3: p. 159 Exam Ref 70-410: Installing and Configuring Server 2012: Objective 1.3: Installing and Configuring servers, Chapter 1: p. 42-43 

Q10. OTSPOT 

You have a server named Server1 that has the Web Server (IIS) server role installed. You obtain a Web Server certificate. 

You need to configure a website on Server1 to use Secure Sockets Layer (SSL). To which store should you import the certificate? 

To answer, select the appropriate store in the answer area. 

Answer: