getcertified4sure.com

Questions Ask for 70-410 installing and configuring windows server 2012




The actual 70-410 software program of Examcollection can easily examine the testee whether or not to learn the Installing and Configuring Windows Server 2012 knowledge securely and genuine responses. The actual Examcollection 70-410 goods are consist of several pick. Candidate can choose different package goods for the 70-410 pdf file or even 70-410 vce software program according to their very own understand of the 70-410 situation.

2021 Jul exam 70-410 installing and configuring windows server 2012 lab manual:

Q251. - (Topic 3) 

You work as a senior administrator at Contoso.com. The Contoso.com network consists of a single domain named Contoso.com. All servers on the Contoso.com network have Windows Server 2012 R2 installed, and all workstations have Windows 8 installed. 

You are running a training exercise for junior administrators. You are currently discussing a Windows PowerShell cmdlet that activates previously de-activated firewall rules. 

Which of the following is the cmdlet being discussed? 

A. Set-NetFirewallRule 

B. Enable-NetFirewallRule 

C. Set-NetIPsecRule 

D. Enable-NetIPsecRule 

Answer: B 

Explanation: 

Enable-NetFirewallRule – Enables a previously disabled firewall rule. 


Q252. - (Topic 1) 

Your network contains an Active Directory forest. The forest contains a single domain named contoso.com. The domain contains four domain controllers. The domain controllers are configured as shown in the following table. 


All domain controllers are DNS servers. 

You plan to deploy a new domain controller named DC5 in the contoso.com domain. 

You need to identify which domain controller must be online to ensure that DC5 can be promoted successfully to a domain controller. 

Which domain controller should you identify? 

A. DC1 

B. DC2 

C. DC3 

D. DC4 

Answer: D 

Explanation: 

Relative ID (RID) Master: Allocates active and standby RID pools to replica domain controllers in the same domain. (corp.contoso.com). Must be online for newly promoted domain controllers to obtain a local RID pool that is required to advertise or when existing domain controllers have to update their current or standby RID pool allocation. The RID master is responsible for processing RID pool requests from all domain controllers in a particular domain. When a DC creates a security principal object such as a user or group, it attaches a unique Security ID (SID) to the object. This SID consists of a domain SID (the same for all SIDs created in a domain), and a relative ID (RID) that is unique for each security principal SID created in a domain. Each DC in a domain is allocated a pool of RIDs that it is allowed to assign to the security principals it creates. When a DC’s allocated RID pool falls below a threshold, that DC issues a request for additional RIDs to the domain’s RID master. The domain RID master responds to the request by retrieving RIDs from the domain’s unallocated RID pool and assigns them to the pool of the requesting DC At any one time, there can be only one domain controller acting as the RID master in the domain. 


The Infrastructure Master – The purpose of this role is to ensure that cross-domain object references are correctly handled. For example, if you add a user from one domain to a security group from a different domain, the Infrastructure Master makes sure this is done properly. As you can guess however, if your Active Directory deployment has only a single domain, then the Infrastructure Master role does no work at all, and even in a multi-domain environment it is rarely used except when complex user administration tasks are performed, so the machine holding this role doesn’t need to have much horsepower at all. 


Q253. HOTSPOT - (Topic 3) 

You have a Group Policy object (GPO) named Server Audit Policy. The settings of the GPO are shown in the Settings exhibit. (Click the Exhibit button.) 


The scope of the GPO is shown in the Scope exhibit. (Click the Exhibit button.) 


The domain contains a group named Group1. The membership of Group1 is shown in the Group1 exhibit. (Click the Exhibit button.) 


Select Yes if the statement can be shown to be true based on the available information; otherwise select No. Each correct selection is worth one point. 


Answer: 



Q254. - (Topic 2) 

Your network contains an Active Directory domain named contoso.com. 

An administrator provides you with a file that contains the information to create user accounts for 200 temporary employees. The file is shown in the exhibit. (Click the Exhibit button.) 


You need to automate the creation of the user accounts. You must achieve this goal by using the minimum amount of administrative effort. 

Which tool should you use? 

A. Ldifde 

B. csvde 

C. Dsadd 

D. Net user 

Answer: B 

Explanation: 

csvde – Imports and exports data from Active Directory Domain Services (AD DS) using files that store data in the comma-separated value (CSV) format. You can also support batch operations based on the CSV file format standard. Net user – Adds or modifies user accounts, or displays user account information. Ldifde – Creates, modifies, and deletes directory objects. You can also use ldifde to extend the schema, export Active Directory user and group information to other applications or services, and populate Active Directory Domain Services (AD DS) with data from other directory services. Dsadd – Adds specific types of objects to the directory. 

csvde.exe is the best option to add multiple users. As you just need to export the excel 

spreadsheet as a .csv file and make sure the parameters are correct. 

You can use Csvde to import and export Active Directory data that uses the comma-

separated value format. 

Use a spreadsheet program such as Microsoft Excel to open this .csv file and view the 

header and value information. 

References: 

Exam Ref 70-410: Installing and Configuring Windows Server 2012 R2: Chapter 5: Install 

and administer Active Directory, Objective 5.2: Create and Manage Active Directory Users 

and Computers, p. 269 


Q255. - (Topic 3) 

Your network contains an Active Directory domain named adatum.com. The computer accounts for all member servers are located in an organizational unit (OU) named Servers. You link a Group Policy object (GPO) to the Servers OU. 

You need to ensure that the domain’s Backup Operators group is a member of the local Backup Operators group on each member server. The solution must not remove any groups from the local Backup Operators groups. 

What should you do? 

A. Add a restricted group named adatum\Backup Operators. Add Backup Operators to the This group is a member of list. 

B. Add a restricted group named adatum\Backup Operators. Add Backup Operators to the Members of this group list. 

C. Add a restricted group named Backup Operators. Add adatum\Backup Operators to the This group is a member of list. 

D. Add a restricted group named Backup Operators. Add adatum\Backup Operators to the Members of this group list. 

Answer: A 


70-410 latest exam

Renovate mcsa tests:

Q256. - (Topic 3) 

You work as an administrator at Contoso.com. The Contoso.com network consists of a single domain named Contoso.com. 

Contoso.com has a domain controller, named ENSUREPASS-DC01, which has Windows Server 2012 R2 installed. Another Contoso.com domain controller, named ENSUREPASS-DC02, has Windows Server 2008 R2 installed. 

You have deployed a server, named ENSUREPASS-SR15, on Contoso.com’s perimeter network. ENSUREPASSSR15 is running a Server Core Installation of Windows Server 2012 R2. 

You have been instructed to make sure that ENSUREPASS-SR15 is part of the Contoso.com domain. 

Which of the following actions should you take? 

A. You should consider making use of Set-Computer Windows PowerShell cmdlet on ENSUREPASS-SR15. 

B. You should consider making use of Get-Computer Windows PowerShell cmdlet on ENSUREPASS-SR15. 

C. You should consider making use of Test-Computer Windows PowerShell cmdlet on ENSUREPASS-SR15. 

D. You should consider making use of Add-Computer Windows PowerShell cmdlet on ENSUREPASS-SR15. 

Answer: D 

Explanation: 

Add-Computer – Add the local computer to a domain or workgroup. 


Q257. - (Topic 1) 

Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that hosts the primary DNS zone for contoso.com. 

All client computers are configured to use DC1 as the primary DNS server. 

You need to configure DC1 to resolve any DNS requests that are not for the contoso.com zone by querying the DNS server of your Internet Service Provider (ISP). 

What should you configure? 

A. Naming Authority Pointer (NAPTR) DNS resource records (RR) 

B. Name server (NS) records 

C. A Forwarders 

D. Conditional forwarders 

Answer: C 

Explanation: 

On a network with several servers and/or client computers a server that is configured as a forwarder will manage the Domain Name System (DNS) traffic between your network and the Internet. 


Q258. - (Topic 3) 

You perform a Server Core Installation of Windows Server 2012 R2 on a server named Server1. 

You need to add a graphical user interface (GUI) to Server1. 

Which tool should you use? 

A. The Install-WindowsFeature cmdlet 

B. The Install-Module cmdlet 

C. The Install-RoleService cmdlet 

D. The setup.exe command 

Answer: A 

Explanation: 

The DISM command is called by the Add-WindowsFeature commanD. Here is the syntax for DISM: 

Dism /online /enable-feature /featurename:ServerCore-FullServer /featurename:Server-Gui-Shell /featurename:Server-Gui-Mgmt 


Q259. - (Topic 1) 

Your network contains an Active Directory domain named contoso.com. 

You log on to a domain controller by using an account named Admin1.Admin1 is a member of the Domain Admins group. 

You view the properties of a group named Group1 as shown in the exhibit. (Click the Exhibit button.) 


Group1 is located in an organizational unit (OU) named OU1. 

You need to ensure that users from Group1 can modify the Security settings of OU1 only. 

What should you do from Active Directory Users and Computers? 

A. Modify the Managed By settings on OU1. 

B. Right-click contoso.com and select Delegate Control. 

C. Right-click OU1 and select Delegate Control. 

D. Modify the Security settings of Group1. 

Answer: C 

Explanation: 

Delegating control to only the OU will allow the users of Group1 to modify the security settings. 


Q260. - (Topic 2) 

Your network contains an Active Directory domain named contoso.com. The domain 

contains a server named Server1. Server1 runs Windows Server 2012 R2. 

On Server1, you create a printer named Printer1. You share Printer1 and publish Printer1 in Active Directory. 

You need to provide a group named Group1 with the ability to manage Printer1. 

What should you do? 

A. From Print Management, configure the Sharing settings of Printer1. 

B. From Active Directory Users and Computers, configure the Security settings of Server1-Printer1. 

C. From Print Management, configure the Security settings of Printer1. 

D. From Print Management, configure the Advanced settings of Printer1. 

Answer: C 

Explanation: 

If you navigate to the Security tab of the Print Server Properties you will find the Permissions that you can set to Allow which will provide Group1 with the ability to manage Printer1. 

Set permissions for print servers 

Open Print Management. 

In the left pane, click Print Servers, right-click the applicable print server and then 

click Properties. 

On the Security tab, under Group or users names, click a user or group for which 

you want to set permissions. 

Under Permissions for <user or group name>, select the Allow or Deny check 

boxes for the permissions listed as needeD. 

To edit Special permissions, click Advanced. 

On the Permissions tab, click a user group, and then click Edit. 

In the Permission Entry dialog box, select the Allow or Deny check boxes for the 

permissions that you want to edit.