Uploaded on Dec 6, 2019
https://www.realexamcollection.com/microsoft/70-412-dumps.html When you go for the preparation of 70-412 exam, the most important thing to do is to download a study guide with unquestionable quality and validity. realexamcollection.com has responded to this need reasonable by offering 70-412 dumps for IT candidates. You can get a complete package of useful services at this platform and you can make a successful attempt at the very first time. it has been tried to make sure that you get satisfied before and after the use of 70-412 questions and answers. With this thought, free demo questions are being offered with an easy access for everyone. If you are also an aspirant of 70-412 exam then you must try this compact guide under the supervision of our experts. You can also practice on our Online Practice Test after 70-412 dumps. You also get Money Back Guarantee.
70-412 Dumps & Test Certification 70-412 Cost - Christmas Offer
Micros oft
70-41 2
Configuring Advanced Windows Server 2012 Services
https://www.realexamcollection.com/microsoft/70-412-dumps.html
Question: 1
Your company recently deployed a new Active Directory forest named contoso.com. The first domain
controller in the forest runs Windows Server 2012 R2.
You need to identify the time-to-live (TTL) value for domain referrals to the NETLOGON and SYSVOL
shared folders.
Which tool should you use?
A. Ultrasound
B. Replmon
C. Dfsdiag
D. Frsutil
Answer: C
Explanation:
/Reference:
DFSDIAG can check your configuration in five different ways:
Checking referral responses (DFSDIAG /TestReferral)
Checking domain controller configuration
Checking site associations
Checking namespace server configuration
Checking individual namespace configuration and integrity
Reference: Five ways to check your DFS-Namespaces (DFS-N) configuration with the DFSDIAG.EXE tool
Question: 2
HOTSPOT
Your network contains an Active Directory forest named contoso.com that contains a single domain. The
forest contains three sites named Site1, Site2, and Site3.
Domain controllers run either Windows Server 2008 R2 or Windows Server 2012 R2.
Each site contains two domain controllers. Site1 and Site2 contain a global catalog server.
You need to create a new site link between Site1 and Site2. The solution must ensure that the site link
supports the replication of all the naming contexts.
From which node should you create the site link?
To answer, select the appropriate node in the answer area.
Answer:
Explanation:
Create a Site Link
To create a site link
Open Active Directory Sites and Services. To open Active Directory Sites and Services, clickStart,
clickAdministrative Tools, and then clickActive Directory Sites and Services.
To open Active Directory Sites and Services in Windows Server® 2012, clickStart, typedssite.msc.
In the console tree, right-click the intersite transport protocol that you want the site link to use.
Use the IP intersite transport unless your network has remote sites where network connectivity is
intermittent or end-to-end IP connectivity is not available. Simple Mail Transfer Protocol (SMTP)
replication has restrictions that do not apply to IP replication.
Reference: Create a Site Link
httHYPERLINK "http://technet.microsoft.com/en-
us/library/cc731294.aspx#_blank"p://technet.microsoft.com/en-us/library/cc731294.aspx
Question: 3
Your network contains two Active Directory forests named contoso.com and adatum.com.
Contoso.com contains one domain. Adatum.com contains a child domain named child.adatum.com.
Contoso.com has a one-way forest trust to adatum.com. Selective authentication is enabled on the
forest trust.
Several user accounts are migrated from child.adatum.com to adatum.com.
Users report that after the migration, they fail to access resources in contoso.com. The users
successfully accessed the resources in contoso.com before the accounts were migrated.
You need to ensure that the migrated users can access the resources in contoso.com.
What should you do?
A. Replace the existing forest trust with an external trust.
B. Run netdom and specify the /quarantine attribute.
C. Disable SID filtering on the existing forest trust.
D. Disable selective authentication on the existing forest trust.
Answer: C
Explanation:
Security Considerations for Trusts
Need to gain access to the resources in contoso.com
Disabling SID Filter Quarantining on External Trusts
Although it reduces the security of your forest (and is therefore not recommended), you can disable SID
filter quarantining for an external trust by using the Netdom.exe tool. You should consider disabling SID
filter quarantining only in the following situations:
* Users have been migrated to the trusted domain with their SID histories preserved, and you want to
grant them access to resources in the trusting domain based on the SID history attribute.
Etc.
Incorrect:
Not B. Enables administrators to manage Active Directory domains and trust relationships from the
command prompt, /quarantine Sets or clears the domain quarantine.
Not D. Selective authentication over a forest trust restricts access to only those users in a trusted forest
who have been explicitly given authentication permissions to computer objects (resource computers)
that reside in the trusting forest.
Reference: Security Considerations for Trusts
http://technet.microsoft.com/en-us/library/cc755321(v=ws.10).aspx
Question: 4
HOTSPOT
Your network contains an Active Directory domain named contoso.com. The domain contains domain
controllers that run either Windows Server 2003, Windows Server 2008 R2, or Windows Server 2012 R2.
You plan to implement a new Active Directory forest. The new forest will be used for testing and will be
isolated from the production network.
In the test network, you deploy a server named Server1 that runs Windows Server 2012 R2.
You need to configure Server1 as a new domain controller in a new forest named contoso.test.
The solution must meet the following requirements:
The functional level of the forest and of the domain must be the same as that of contoso.com.
Server1 must provide name resolution services for contoso.test.
What should you do?
To answer, configure the appropriate options in the answer area.
Answer:
Explanation:
Set the forest function level and the Domain functional level both to Windows Server 2003.
Also check Domain Name (DNS) server.
Note:
* When you deploy AD DS, set the domain and forest functional levels to the highest value that your
environment can support. This way, you can use as many AD DS features as possible. For example, if you
are sure that you will never add domain controllers that run Windows Server 2003 to the domain or
forest, select the Windows Server 2008 functional level during the deployment process. However, if you
might retain or add domain controllers that run Windows Server 2003, select the Windows Server 2003
functional level.
* You can set the domain functional level to a value that is higher than the forest functional level. For
example, if the forest functional level is Windows Server 2003, you can set the domain functional level
to Windows Server 2003or higher.
Reference: Understanding Active Directory Domain Services (AD DS) Functional Levels
Question: 5
https://www.realexamcollection.com/microsoft/70-412-dumps.html
Comments