70-417 Exam - Upgrading Your Skills to MCSA Windows Server 2012

certleader.com

Q1. RAG DROP 

Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server3. The network contains a standalone server named Server2. All servers run Windows Server 2012 R2. The servers are configured as shown in the following table. 

Server3 hosts an application named App1. App1 is accessible internally by using the URL https://app1.contoso.com. App1 only supports Integrated Windows authentication. 

You need to ensure that all users from the Internet are pre-authenticated before they can access App1. 

What should you do? To answer, drag the appropriate servers to the correct actions. Each server may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer:  

Q2. Your network contains an Active Directory domain named contoso.com. The domain contains two member servers named Server1 and Server2. All servers run Windows Server 2012 R2. 

Server1 and Server2 have the Failover Clustering feature installed. The servers are configured as nodes in a failover cluster named Cluster1. Cluster1 contains a file server role named FS1 and a generic service role named SVC1. Server1 is the preferred node for FS1. Server2 is the preferred node for SVC1. 

You plan to run a disk maintenance tool on the physical disk used by FS1. 

You need to ensure that running the disk maintenance tool does not cause a failover to occur. 

What should you do before you run the tool? 

A. Run Suspend-ClusterNode. 

B. Run cluster.exe and specify the offline parameter. 

C. Run Suspcnd-ClusterResource. 

D. Run cluster.exe and specify the pause parameter. 

Answer:

Q3. Your network contains a server named Server1 that runs Windows Server 2012. Server1 

has the Hyper-V server role installed. 

Server1 hosts four virtual machines named VM1, VM2, VM3, and VM4. 

Server1 is configured as shown in the following table. 

You plan to schedule a complete backup of Server1 by using Windows Server Backup. 

You need to ensure that the state of VM1 is saved before the backup starts. 

What should you configure? 

A. NUMA topology 

B. Resource control 

C. Resource metering 

D. Virtual Machine Chimney 

E. The VLAN ID 

F. Processor Compatibility 

G. The startup order 

H. Automatic Start Action 

I. Integration Services 

J. Port mirroring 

K. Single-root I/O virtualization 

Answer:

Explanation: 

http://www.altaro.com/hyper-v/vss-crash-consistent-vs-Application-consistent-vss-backupspost-2- of-2/ Backup Operations in Hyper-V No VSS Writer Available? In some cases, you need an Application-consistent backup but there is no VSS writer available. One example of this is MySQL. Hyper-V backups of virtual machines containing MySQL will always result in either a crashconsistent or an image-level backup. For MySQL, the latter is probably acceptable as MySQL doesn't perpetually expand the log file. However, if you're using MySQL within a VSS-aware VM, then a Hyper-Vbased backup tool is going to take a crash-consistent backup. MySQL (like any other database system) isn't always recoverable from a crash-consistent backup; tool is going to take a crash-consistent backup. MySQL (like any other database system) isn't always recoverable from a crash-consistent backup; even when recovery is possible, it may be painful. MySQL is just one example; any number of line-of-business Applications could tell a similar tale. In the case of MySQL, one solution is to find a guest-level backup Application that is MySQL- aware and can back it up properly. For Applications for which no backup Application has a plug-in, you may need to have pre-and post-backup scripts that stop services or close Applications. If brief downtime is acceptable, you can disable the Backup item in Hyper-V Integration Services, thereby forcing Hyper-V to save the state of the VM during backup. This technique results in an image-level backup and can 

be used on any Application that doesn't have a VSS writer. 

Q4. Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 has the DHCP Server server role and the Network Policy Server role service installed. 

Server1 contains three non-overlapping scopes named Scope1, Scope2, and Scope3. Server1 currently provides the same Network Access Protection (NAP) settings to the three scopes. 

You modify the settings of Scope1 as shown in the exhibit. (Click the Exhibit button.) 

You need to configure Server1 to provide unique NAP enforcement settings to the NAP non-compliant DHCP clients from Scope1. 

What should you create? 

A. A network policy that has the MS-Service Class condition 

B. A connection request policy that has the Service Type condition 

C. A network policy that has the Identity Type condition 

D. A connection request policy that has the Identity Type condition 

Answer:

Explanation: 

A. Restricts the policy to clients that have received an IP address from a DHCP scope that matches the specified DHCP profile name. This condition is used only when you are 

deploying NAP with the DHCP enforcement method. To use the MS-Service Class attribute, in Specify the profile name that identifies your DHCP scope, type the name of an existing DHCP profile. http://technet.microsoft.com/en-us/library/cc731220(v=ws.10).aspx 

Q5. Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. 

An organizational unit (OU) named OU1 contains 200 client computers that run Windows 8 Enterprise. A Group Policy object (GPO) named GPO1 is linked to OU1. 

You make a change to GPO1. 

You need to force all of the computers in OU1 to refresh their Group Policy settings immediately. The solution must minimize administrative effort. 

Which tool should you use? 

A. The Set-AdComputercmdlet 

B. Group Policy Object Editor 

C. Active Directory Users and Computers 

D. Group Policy Management Console (GPMC) 

Answer:

Explanation: 

In the previous versions of Windows, this was accomplished by having the user run 

GPUpdate.exe on their computer. Starting with Windows Server? 2012 and Windows?8, 

you can now remotely refresh Group Policy settings for all computers in an OU from one 

central location through the Group Policy Management Console (GPMC). Or you can use 

the Invoke-GPUpdate cmdlet to refresh Group Policy for a set of computers, not limited to 

the OU structure, for example, if the computers are located in the default computers 

container. Note: Group Policy Management Console (GPMC) is a scriptable Microsoft 

Management Console (MMC) snap-in, providing a single administrative tool for managing 

Group Policy across the enterprise. GPMC is the standard tool for managing Group Policy. 

Incorrect: 

Not B: Secedit configures and analyzes system security by comparing your current 

configuration to at least one template. 

Reference: Force a Remote Group Policy Refresh (GPUpdate) 

Q6. Your network contains an Active Directory domain named contoso.com. The domain contains a file server named Server1 that runs Windows Server 2012 R2. You create a user account named User1 in the domain. 

You need to ensure that User1 can use Windows Server Backup to back up Server1. 

The solution must minimize the number of administrative rights assigned to User1. 

What should you do? 

A. Assign User1 the Back up files and directories user right. 

B. Add User1 to the Backup Operators group. 

C. Add User1 to the Power Users group. 

D. Assign User1 the Back up files and directories user right and the Restore files and directories user right. 

Answer:

Explanation: 

Backup Operators have these permissions by default: 

However the question explicitly says we need to minimize administrative rights. Since the 

requirement is for backing up the data onlyno requirement to restore or shutdownthen assigning the "Back up files and directories user right" would be the correct. 

Q7. Your company has a main office and a branch office. 

The network contains an Active Directory domain named contoso.com. 

The main office contains a domain controller named DC1 that runs Windows Server 2012 R2. 

DC1 is a DNS server and hosts a primary zone for contoso.com. The branch office contains a member server named Server1 that runs Windows Server 2012 R2. Server1 is a DNS server and hosts a secondary zone for contoso.com. 

The main office connects to the branch office by using an unreliable WAN link. 

You need to ensure that Server1 can resolve names in contoso.com if the WAN link in unavailable for three days. 

Which setting should you modify in the start of authority (SOA) record? 

A. Retry interval 

B. Refresh interval 

C. Expires after 

D. Minimum (default) TTL 

Answer:

Explanation: Used by other DNS servers that are configured to load and host the zone to determine when zone data expires if it is not renewed 

Q8. You create a new virtual disk in a storage pool by using the New Virtual Disk Wizard. 

You discover that the new virtual disk has a write-back cache of 1 GB. 

You need to ensure that the virtual disk has a write-back cache of 5 GB. 

What should you do? 

A. Detach the virtual disk, and then run the Resize-VirtualDisk cmdlet 

B. Detach the virtual disk, and then run the Set-VirtualDisk cmdlet 

C. Delete the virtual disk, and then run the New-StorageSubSystemVirtualDisk cmdlet 

D. Delete the virtual disk, and then run the New-VirtualDisk cmdlet 

Answer:

Q9. You have a failover cluster named Cluster1 that contains four nodes. All of the nodes run Windows Server 2012 R2. 

You need to schedule the installation of Windows updates on the cluster nodes. 

Which tool should you use? 

A. The Add-CauClusterRolecmdlet 

B. TheWuauclt command 

C. TheWusa command 

D. The Invoke-CauScancmdlet 

Answer:

Explanation: 

The Invoke-CauScancmdlet performs a scan of cluster nodes for applicable updates and returns a list of the initial set of updates that would be applied to each node in a specified cluster. 

http://technet.microsoft.com/en-us/library/hh847235(v=wps.620).aspx http://technet.microsoft.com/en-us/library/cc720477(v=ws.10).aspx http://support.microsoft.com/kb/934307 http://technet.microsoft.com/en-us/library/hh847228(v=wps.620).aspx 

Q10. You have a server named Server1 that runs Windows Server 2012 R2. 

You plan to create an image of Server1. 

You need to remove the source files for all server roles that are not installed on Server1. 

Which tool should you use? 

A. dism.exe 

B. servermanagercmd.exe 

C. ocsetup.exe 

D. imagex.exe 

Answer:

Explanation: 

servermanagercmd.exe The ServerManagerCmd.exe command-line tool has been deprecated in WindowsServer 2008 R2. imagex.exe ImageX is a command-line tool in Windows Vista that you can use to create and manageWindows image (.wim) files. A .wim file contains one or more volume images, disk volumes that containimages of an installed Windows operating system. dism.exe Deployment Image Servicing and Management (DISM.exe) is a command-line tool that canbe used to service a Windows?image or to prepare a Windows Preinstallation Environment (WindowsPE) image. It replaces Package Manager (Pkgmgr.exe), PEimg, and Intlcfg that were included inWindows Vista? The functionality that was included in these tools is now consolidated in one tool(DISM.exe), and new functionality has been added to improve the experience for offline servicing. DISMcan Add, remove, and enumerate packages. ocsetup.exe The Ocsetup.exe tool is used as a wrapper for Package Manager (Pkgmgr.exe) and for WindowsInstaller (Msiexec.exe). Ocsetup.exe is a command-line utility that can be used to perform scripted installs andscripted uninstalls of Windows optional components. The Ocsetup.exe tool replaces the Sysocmgr.exe tool thatWindows XP and Windows Server 2003i use. 

http://technet.microsoft.com/en-us/library/hh824822.aspx http://blogs.technet.com/b/joscon/archive/2010/08/26/adding-features-with- dism.aspx http://technet.microsoft.com/en-us/library/hh831809.aspx http://technet.microsoft.com/en-us/library/hh825265.aspx