[Free] 2018(Jan) EnsurePass Dumpsleader Microsoft 70-642 Dumps with VCE and PDF Download 71-80

Ensurepass.com : Ensure you pass the IT Exams 2018 Jan Microsoft Official New Released 70-642
100% Free Download! 100% Pass Guaranteed!
http://www.EnsurePass.com/70-642.html

TS: Windows Server 2008 Network Infrastructure, Configuring

Question No: 71 – (Topic 1)

Your network contains a server named Server1 that runs Windows Server 2008 R2. Server1 has the Routing and Remote Access service (RRAS) role service installed.

You need to view all inbound VPN packets. The solution must minimize the amount of data collected.

What should you do?

  1. From RRAS, create an inbound packet filter.

  2. From Network Monitor, create a capture filter.

  3. From the Registry Editor, configure file tracing for RRAS.

  4. At the command prompt, run netsh.exe ras set tracing rasauth enabled.

Answer: B

Question No: 72 – (Topic 1)

Your company has a server named Server1 that runs a Server Core installation of Windows Server 2008 R2, and the DNS Server server role. Server1 has one network interface named Local Area Connection. The static IP address of the network interface is configured as 10.0.0.1.

You need to create a DNS zone named local.contoso.com on Server1. Which command should you use?

  1. ipconfig /registerdns:local.contoso.com

  2. dnscmd Server1 /ZoneAdd local.contoso.com /DSPrimary

  3. dnscmd Server1 /ZoneAdd local.contoso.com /Primary /file local.contoso.com.dns

  4. netsh interface ipv4 set dnsserver name=quot;local.contoso.comquot; static 10.0.0.1 primary

Answer: C Explanation:

http://technet.microsoft.com/en-us/library/cc756116(v=ws.10).aspx#BKMK_22

Question No: 73 – (Topic 1)

Your network contains a domain controller named DC1 and a member server named Server1.

You save a copy of the Active Directory Web Services (ADWS) event log on DC1. You copy the log to Server1.

You open the event log file on Server1 and discover that the event description information is unavailable.

You need to ensure that the event log file displays the same information when the file is open on Server1 and on DC1.

What should you do on Server1?

  1. Import a custom view.

  2. Copy the SYSVOL folder from DC1.

  3. Copy the LocaleMetaData folder from DC1.

  4. Create a custom view.

Answer: C Explanation:

The LocaleMetaData contains the description/display information that is missing, and when you quot;save all events asquot; you should chose to save and quot;display informationquot;. http://technet.microsoft.com/en-us/library/cc749339.aspx

Question No: 74 – (Topic 1)

Your network contains an Active Directory domain. The domain contains an enterprise certification authority (CA) named Server1 and a server named Server2.

On Server2, you deploy Network Policy Server (NPS) and you configure a Network Access Protection (NAP) enforcement policy for IPSec.

From the Health Registration Authority snap-in on Server2, you set the lifetime of health certificates to four hours.

You discover that the validity period of the health certificates issued to client computers is one year.

You need to ensure that the health certificates are only valid for four hours. What should you do?

  1. Modify the Request Handling settings of the certificate template used for the health certificates.

  2. Modify the Issuance Requirements settings of the certificate template used for the health certificates.

  3. On Server1, run certutil.exe -setreg policy\editflags editf_attributeenddate.

  4. On Server1, run certutil.exe Csetregdbflags dbflags_enablevolatilerequests.

Answer: C Explanation:

Configure template validity period override

Use the following procedure to allow the CA to issue the new health certificate template. This procedure applies to an enterprise NAP CA only.

To allow template validity period override

On the NAP CA, click Start, click Run, right-click Command Prompt, and then click Run as administrator.

In the command window, type Certutil.exe -setreg policy\EditFlags

EDITF_ATTRIBUTEENDDATE, and then press ENTER.

In the command window, type net stop certsvc amp;amp; net start certsvc, and then press ENTER.

Verify that Active Directory Certificate Services (AD CS) stops and starts successfully. http://technet.microsoft.com/en-us/library/dd296906(v=ws.10).aspx

Reference URL : http://technet.microsoft.com/en-us/library/dd296906(v=ws.10).aspx

Question No: 75 – (Topic 1)

Your network contains an Active Directory forest. The forest contains a member server named Server1 that runs Windows Server 2008 R2. You need to ensure that UNIX-based client computers can access shared folders on Server1.

Which server role, role service, or feature should you install?

  1. Windows Server Update Services (WSUS)

  2. Network Policy Server (NPS)

  3. Routing and Remote Access service (RRAS)

  4. Simple TCP/IP Services

  5. Windows System Resource Manager (WSRM)

  6. File Server Resource Manager (FSRM)

  7. Wireless LAN Service

  8. Network Load Balancing (NLB)

  9. Windows Internal Database

  10. Services for Network File System (NFS)

  11. Group Policy Management

  12. Health Registration Authority (HRA)

  13. Connection Manager Administration Kit (CMAK)

Answer: J Explanation:

http://technet.microsoft.com/en-us/library/cc753302(v=ws.10).aspx

Services for Network File System (NFS) provides a file-sharing solution for enterprises that have a mixed

Windows and UNIX environment. Services for NFS enables users to transfer files between computers running the Windows Server庐 2008 operating system and UNIX-based computers using the NFS protocol.

Question No: 76 – (Topic 1)

Your network contains an Active Directory forest. The forest contains a member server named Server1 that runs Windows Server 2008 R2. You configure Server1 as a VPN server.

You need to ensure that only client computers that have up-to-date virus definitions can establish VPN connections to Server1.

Which server role, role service, or feature should you install?

  1. Simple TCP/IP Services

  2. Windows Internal Database

  3. Connection Manager Administration Kit (CMAK)

  4. File Server Resource Manager (FSRM)

  5. Windows Server Update Services (WSUS)

  6. Services for Network File System (NFS)

  7. Routing and Remote Access service (RRAS)

  8. Network Policy Server (NPS)

  9. Wireless LAN Service

  10. Group Policy Management

  11. Health Registration Authority (HRA)

  12. Windows System Resource Manager (WSRM)

  13. Network Load Balancing (NLB)

Answer: H

Question No: 77 – (Topic 1)

Your network contains a server named Server1. Server1 runs Windows Server 2008 R2 and has a single network connection. The connection is configured to use a default gateway address of 10.0.0.1. The default gateway has a metric value of 100. You configure a second default gateway that uses an address of 10.0.0.2.

You need to ensure that 10.0.0.2 is only used as the default gateway if 10.0.0.1 is unreachable.

What should you do?

  1. For the interface, set the interface metric to 100.

  2. For the 10.0.0.2 gateway, set the metric to 50.

  3. For the 10.0.0.2 gateway, set the metric to 200.

  4. For the 10.0.0.1 gateway and the 10.0.0.2 gateway, enable automatic metric.

Answer: C

Question No: 78 – (Topic 1)

Your company has 10 servers that run Windows Server 2008 R2. The servers have Remote Desktop Protocol (RDP) enabled for server administration. RDP is configured to use default security settings.

All administrators#39; computers run Windows 7.

You need to ensure the RDP connections are as secure as possible.

Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

  1. Set the security layer for each server to the RDP Security Layer.

  2. Configure the firewall on each server to block port 3389.

  3. Acquire user certificates from the internal certification authority.

  4. Configure each server to allow connections only to Remote Desktop client computers that use Network Level Authentication.

Answer: C,D

Question No: 79 – (Topic 1)

Your company has a single Active Directory forest that has an Active Directory domain named na.contoso.com.

A server named Server1 runs the DNS Server server role. You notice stale resource records in the na.contoso.com zone. You have enabled DNS scavenging on Server1. Three weeks later, you notice that the stale resource records remain in na.contoso.com.

You need to ensure that the stale resource records are removed from na.contoso.com. What should you do?

  1. Stop and restart the DNS Server service on Server1.

  2. Enable DNS scavenging on the na.contoso.com zone.

  3. Run the dnscmd Server1 /AgeAllRecords command on Server1.

  4. Run the dnscmd Server1 /StartScavenging command on Server1.

Answer: B

Question No: 80 – (Topic 1)

Your network uses IPv4.

You install a server that runs Windows Server 2008 R2 at a branch office. The server is configured with two network interfaces.

You need to configure routing on the server at the branch office.

Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

  1. Install the Routing and Remote Access Services role service.

  2. Run the netsh ras ip set access ALL command.

  3. Run the netsh interface ipv4 enable command.

  4. Enable the IPv4 Router Routing and Remote Access option.

Answer: A,D

100% Ensurepass Free Download!
Download Free Demo:70-642 Demo PDF
100% Ensurepass Free Guaranteed!
70-642 Dumps

EnsurePass ExamCollection Testking
Lowest Price Guarantee Yes No No
Up-to-Dated Yes No No
Real Questions Yes No No
Explanation Yes No No
PDF VCE Yes No No
Free VCE Simulator Yes No No
Instant Download Yes No No