It is more faster and easier to pass the Microsoft 70-413 exam by using Downloadable Microsoft Designing and Implementing a Server Infrastructure questuins and answers. Immediate access to the Replace 70-413 Exam and find the same core area 70-413 questions with professionally verified answers, then PASS your exam with a high score now.

2021 Jan 70-413 practice question

Q61. DRAG DROP - (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The domain contains five servers. The servers are configured as shown in the following table. 

You plan to implement Network Access Protection (NAP) with IPSec enforcement on all client computers. 

You need to identify on which servers you must perform the configurations for the NAP deployment. 

Which servers should you identify? To answer, drag the appropriate servers to the correct actions. Each server may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.) 

Answer: 


Q62. - (Topic 1) 

You implement a new virtualized print server that runs Windows Server 2012. 

You need to migrate the print queues. 

Which tool should you use? 

A. Windows Server Migration Tools 

B. Active Directory Migration Tool (ADMT) 

C. Print Management 

D. Computer Management 

Answer:

Explanation: 

* Scenario: Migrate the existing print queues to virtualized instances of Windows Server 2012. 

* To manage the migration process, use one of the following: . The Printer Migration Wizard, which you access through Print Management, a 

snap-in in 

. Microsoft Management Console (MMC). 

. The Printbrm.exe command-line tool. 

You can perform the migration locally or remotely, and from either a client computer or server. Important 

As a best practice, run the Printer Migration Wizard or Printbrm.exe from a computer running Windows Server 2012 

* Reference: Migrate Print and Document Services to Windows Server 2012 


Q63. - (Topic 8) 

You have a server named Server1 that runs Windows Server 2012. 

You have a 3-TB database that will be moved to Server1. 

Server1 has the following physical disks: 

. Three 2-TB SATA disks that are attached to a single IDE controller . One 1-TB SATA disk that is attached to a single IDE controller 

You need to recommend a solution to ensure that the database can be moved to Server1. The solution must ensure that the database is available if a single disk fails. 

What should you include in the recommendation? 

A. Add each disk to a separate storage pool. Create a mirrored virtual disk. 

B. Add two disks to a storage pool. Add the other disk to another storage pool. Create a mirrored virtual disk. 

C. Add all of the disks to a single storage pool, and then create two simple virtual disks. 

D. Add all of the disks to a single storage pool, and then create a parity virtual disk. 

Answer:

Explanation: 

Parity A parity virtual disk is similar to a hardware Redundant Array of Inexpensive Disks (RAID5). Data, along with parity information, is striped across multiple physical disks. Parity enables Storage Spaces to continue to service read and write requests even when a drive has failed. A minimum of three physical disks is required for a parity virtual disk. Note that a parity disk cannot be used in a failover cluster. 


Q64. - (Topic 7) 

You need to implement the Microsoft Azure migration plan. What should you do? 

A. On Microsoft Azure, install and configure System Center 2012 R2 Virtual Machine Manager. 

B. On an on-premises server, install and configure System Center 2012 R2 Service Manager. 

C. On an on-premises server, install and configure System Center 2012 R2 App Controller. 

D. On an on-premises server, install and configure Windows Deployment Services. 

E. On Microsoft Azure, install and configure System Center 2012 R2 Orchestrator. 

Answer:

Explanation: 

* Scenario: Azure migration The company plans to migrate existing services, including System Center management servers, to Azure. To reduce costs, the migration must use the minimum number of Azure VM instances to migrate the services. 

Reference: Understanding App Controller 2012 


Q65. HOTSPOT - (Topic 4) 

You need to recommend a solution for communicating to Windows Azure services. 

What should you recommend? To answer, select the appropriate options in the answer area. 

Answer: 


Update 70-413 exam engine:

Q66. - (Topic 1) 

What method should you use to deploy servers? 

A. WDS 

B. AIK 

C. ADK 

D. EDT 

Answer:

Explanation: WDS is a server role that enables you to remotely deploy Windows operating systems. You can use it to set up new computers by using a network-based installation. This means that you do not have to install each operating system directly from a CD, USB drive, or DVD. 

Reference: What's New in Windows Deployment Services in Windows Server 


Q67. - (Topic 8) 

Your company has three offices. The offices are located in Montreal, Toronto, and Vancouver. 

The network contains two Active Directory forests named contoso.com and adatum.com. The contoso.com forest contains one domain. The adatum.com forest contains two domains. All of the servers in adatum.com are located in the Toronto office. The servers in contoso.com are located in the Montreal and Vancouver offices. All of the servers in both of the forests run Windows Server 2012 R2. 

A two-way, forest trusts exists between the forests. 

Each office contains DHCP servers and DNS servers. 

You are designing an IP Address Management (IPAM) solution to manage the network. 

You need to recommend a solution for the placement of IPAM servers to manage all of the DHCP servers and all of the DNS servers in both of the forests. The solution must minimize the number of IPAM servers deployed. 

What should you recommend? 

A. One IPAM server in each office 

B. One IPAM server in the Montreal office and one IPAM server in the Toronto office 

C. One IPAM server in the Toronto office 

D. Two IPAM servers in the Toronto office and one IPAM server in the Montreal office 

E. Two IPAM servers in the Toronto office, one IPAM server in the Montreal office, and one IPAM server in the Vancouver office 

Answer:

Explanation: * There are three general methods to deploy IPAM servers: 

Distributed: An IPAM server deployed at every site in an enterprise. 

Centralized: One IPAM server in an enterprise. 

Hybrid: A central IPAM server deployed with dedicated IPAM servers at each site. 

Reference: IP Address Management (IPAM) Overview 


Q68. - (Topic 2) 

You need to recommend a solution for the RODC. 

Which attribute should you include in the recommendation? 

A. systemFlags 

B. searchFlags 

C. policy-Replication-Flags 

D. flags 

Answer:

Explanation: * Scenario: Deploy a read-only domain controller (RODC) to the London office 

* The read-only domain controller (RODC) filtered attribute set (FAS) is a set of attributes of the Active Directory schema that is not replicated to an RODC. If you have data that you do not want to be replicated to an RODC in case it is stolen, you can add these attributes to the RODC FAS. If you add the attributes to the RODC FAS before you deploy the first RODC, the attributes are never replicated to any RODC. 

/ To decide which attributes to add to the RODC FAS, review any schema extensions that have been performed in your environment and determine whether they contain credential-like data or not. In other words, you can exclude from consideration any attributes that are part of the base schema, and review all other attributes. Base schema attributes have the.systemFlags.attribute value 16 (0x10) set. 

Reference: Customize the RODC Filtered Attribute Set 


Q69. - (Topic 8) 

You have a server named Server1 that runs Windows Server 2012. Server1 has the DNS Server server role installed. 

You need to recommend changes to the DNS infrastructure to protect the cache from cache poisoning attacks. 

What should you configure on Server1? 

A. DNS cache locking 

B. The global query block list 

C. DNS Security Extensions (DNSSEC) 

D. DNS devolution 

Answer:

Explanation: Ache locking is a new feature available if your DNS server is running Windows Server 2008 R2. When you enable cache locking, the DNS server will not allow cached records to be overwritten for the duration of the time to live (TTL) value. Cache locking provides for enhanced security against cache poisoning attacks. 


Q70. - (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The domain 

contains an organizational unit (OU) named OU1. 

You have a Group Policy object (GPO) named GPO1 that is linked to contoso.com. GPO1 contains custom security settings. 

You need to design a Group Policy strategy to meet the following requirements: 

. The security settings in GPO1 must be applied to all client computers. 

. Only GPO1 and other GPOs that are linked to OU1 must be applied to the client computers in OU1. 

What should you include in the design? 

More than one answer choice may achieve the goal. Select the BEST answer. 

A. Enable the Block Inheritance option at the domain level. Enable the Enforced option on GPO1. 

B. Enable the Block Inheritance option on OU1. Link GPO1 to OU1. 

C. Enable the Block Inheritance option on OU1. Enable the Enforced option on all of the GPOs linked to OU1. 

D. Enable the Block Inheritance option on OU1. Enable the Enforced option on GPO1. 

Answer:

Explanation: * You can block inheritance for a domain or organizational unit. Blocking inheritance prevents Group Policy objects (GPOs) that are linked to higher sites, domains, or organizational units from being automatically inherited by the child-level. 

* GPO links that are enforced cannot be blocked from the parent container.