Q141. - (Topic 10) 

Your network contains five servers that run Windows Server 2012 R2. 

You install the Hyper-V server role on the servers. You create an external virtual network switch on each server. 

You plan to deploy five virtual machines to each Hyper-V server. Each virtual machine will have a virtual network adapter that is connected to the external virtual network switch and that has a VLAN identifier of 1. 

Each virtual machine will run Windows Server 2012 R2. All of the virtual machines will run the identical web application. 

You plan to install the Network Load Balancing (NLB) feature on each virtual machine and join each virtual machine to an NLB cluster. The cluster will be configured to use unicast only. 

You need to ensure that the NLB feature can distribute connections across all of the virtual machines. 

Solution: On each Hyper-V server, you create a new private virtual network switch. From the properties of each virtual machine, you add a second virtual network adapter and connect the new virtual network adapters to the new private virtual network switches. 

Does this meet the goal? 

A. Yes 

B. No 

Answer:


Q142. DRAG DROP - (Topic 9) 

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2008 R2. Server1 is a file server. 

You deploy a new member server named Server2 that runs Windows Server 2012. 

You plan to migrate file shares from Server1 to Server2. File share and NTFS permissions 

are assigned only to domain local groups. 

You need to identify which actions are required to perform the migration. 

Which five actions should you identify? 

To answer, move the five appropriate actions from the list of actions to the answer area and arrange them in the correct order. 

Answer: 


Q143. - (Topic 9) 

Your network contains an Active Directory domain named contoso.com. The domain contains a Microsoft System Center 2012 infrastructure. The domain contains two sites named Site1 and Site2. The sites connect to each other by using a 1-Mbps WAN link. 

The sites contain four servers. The servers are configured as shown in the following table. 

In Site2, you plan to deploy 50 Hyper-V hosts. 

You need to recommend a solution to deploy the Hyper-V hosts by using VMM. The solution must minimize the amount of traffic between Site1 and Site2 during deployment. What should you recommend? 

A. On Server4, install VMM. From the Virtual Machine Manager console, add Server1 as a PXE server and add Server4 as a library server. 

B. On Server4/ install VMM. From the Virtual Machine Manager console, add Server1 as a PXE server and a library server. 

C. On Server4, install WDS. From the Virtual Machine Manager console, add Server4 as a PXE server and a library server. 

D. On Server4, install WDS. From the Virtual Machine Manager console, add Server4 as a PXE server and add Server1 as a library server. 

Answer:


Q144. HOTSPOT - (Topic 10) 

Your network contains five physical servers. The servers are configured as shown in the following table. 

All servers run Windows Server 2012 R2. 

During the setup of VMM, you configure distributed key management. 

You need to ensure that the entire VMM infrastructure can be restored. 

What should you include in the backup plan? To answer, select the appropriate server to 

back up for each backup content type in the answer. 

Answer: 


Q145. - (Topic 9) 

Your network contains an Active Directory forest named contoso.com. 

You plan to deploy 200 Hyper-V hosts by using Microsoft System Center 2012 Virtual 

Machine Manager (VMM) Service Pack 1 (SP1). 

You add a PXE server to the fabric. 

You need to identify which objects must be added to the VMM library for the planned deployment. 

What should you identify? (Each correct answer presents part of the solution. Choose all that apply.) 

A. A host profile 

B. A capability profile 

C. A hardware profile 

D. A generalized image 

E. A service template 

Answer: A,D 

Explanation: Templates and profiles are used to standardize the creation of virtual machines and services. These configurations are stored in the VMM database but are not represented by physical configuration files. There are several new types of templates and profiles in VMM, most of which are used for service creation. There are also host profiles, used for deploying a Hyper-V host from a bare-metal computer, and capability profiles, used to specify the capabilities of virtual machines on each type of supported hypervisor when virtual machines are deployed to a private cloud. 

Note: 

* host profile: 

A Virtual Machine Manager library resource that contains hardware and operating system 

configuration settings to convert a bare-metal computer to a managed Hyper-V host. 

*capability profile: 

A Virtual Machine Manager library resource that defines which resources (for example, 

number of processors or maximum memory) are available to a virtual machine that is 

created in a private cloud. 


Q146. - (Topic 10) 

Your network contains an Active Directory domain named contoso.com. You deploy Active Directory Certificate Services (AD CS). 

Your company, which is named Contoso, Ltd., has a partner company named Fabrikam, Inc. Fabrikam also deploys AD CS. 

Contoso and Fabrikam plan to exchange signed and encrypted email messages. 

You need to ensure that the client computers in both Contoso and Fabrikam trust each other's email certificates. The solution must prevent other certificates from being trusted and minimize administrative effort. 

What should you do? 

More than one answer choice may achieve the goal. Select the BEST answer. 

A. Implement an online responder in each company. 

B. Exchange the root certification authority (CA) certificates of both companies, and then deploy the certificates to the Enterprise Trust store by using Group Policy objects (GPOs). 

C. Implement cross-certification in each company. 

D. Exchange the root certification authority (CA) certificates of both companies, and then deploy the certificates to the Trusted Root Certification Authorities store by using Group Policy objects (GPOs). 

Answer:


Q147. - (Topic 9) 

Your network contains a server named Server1 that runs Windows Server 2012. Server1 has the Network Policy Server server role installed. 

You configure Server1 as part of a Network Access Protection (NAP) solution that uses the 

802.lx enforcement method, 

You add a new switch to the network and you configure the switch to use 802.lx authentication. 

You need to ensure that only compliant client computers can access network resources through the new switch. 

What should you do on Server1? 

A. Add the IP address of each new switch to a remediation server group. 

B. Add the IP address of each new switch to the list of RADIUS clients. 

C. Add the IP address of each new switch to a connection request policy as an Access Client IPv4 Address. 

D. Add the IP address of each new switch to a remote RADIUS server group. 

Answer:


Q148. DRAG DROP - (Topic 7) 

You need to prepare for the migration of virtual machines across the Hyper-V hosts of Customer2. 

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. 

Answer: 


Q149. - (Topic 9) 

Your network contains an Active Directory domain named contoso.com. The domain contains three VLANs. The VLANs are configured as shown in the following table. 

All client computers run either Windows 7 or Windows 8. 

The corporate security policy states that all of the client computers must have the latest security updates installed. You need to implement a solution to ensure that only the client computers that have all of 

the required security updates installed can connect to VLAN 1. The solution must ensure 

that all other client computers connect to VLAN 3. 

Solution: You implement the IPsec enforcement method. 

Does this meet the goal? 

A. Yes 

B. No 

Answer:


Q150. DRAG DROP - (Topic 9) 

Your network contains an Active Directory forest named adatum.com. The forest contains a single domain. All servers run Windows Server 2012 R2. All client computers run Windows 

8.1. 

The DNS zone of adatum.com is Active Directory-integrated. 

You need to implement DNSSEC to meet the following requirements: 

Ensure that the zone is signed. 

Ensure that the zone signing key (ZSK) changes every 30 days. 

Ensure that the key signing key (KSK) changes every 365 days. 

What should you do? To answer, drag the appropriate cmdlets to the correct requirements. Each cmdlet may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer: