[2016-NEW!] The Best PassLeader 70-417 Exam Questions With Free VCE Download (Question 61 – Question 90)

100% Pass 70-417 Exam: if you are preparing for 70-417 exam and want to pass 70-417 exam easily, we recommend you to get the new 612q 70-417 exam questions from PassLeader, we PassLeader now are sharing the latest and updated 70-417 braindumps with VCE and PDF dumps, we have corrected all the new questions of our 70-417 VCE dumps and 70-417 PDF dumps and it will help you 100% passing 70-417 exam.

keywords: 70-417 exam,612q 70-417 exam dumps,612q 70-417 exam questions,70-417 pdf dumps,70-417 vce dumps,70-417 study guide,70-417 practice test,Upgrading Your Skills to MCSA Windows Server 2012 R2 Exam

P.S. Download Free 70-417 PDF Dumps and Preview PassLeader 70-417 VCE Dumps At The End Of This Post!!! (Ctrl+End)

QUESTION 61
Hotspot Question
You have a file server named Server1 that runs Windows Server 2012 R2. Server1 contains a file share that must be accessed by only a limited number of users. You need to ensure that if an unauthorized user attempts to access the file share, a custom access-denied message appears, which contains a link to request access to the share. The message must not appear when the unauthorized user attempts to access other shares. Which two nodes should you configure in File Server Resource Manager? To answer, select the appropriate two nodes in the answer area.

Answer:

QUESTION 62
Your network contains an Active Directory domain named contoso.com. The domain contains three servers named Server1, Server2, and Server3. You create a server group named ServerGroup1. You discover the error message shown in the following exhibit. (Click the Exhibit button.)

You need to ensure that Server2 can be managed remotely by using Server Manager. What should you do?

A.    On Server2, run the netdom.exe command.
B.    On Server2, run the net stop netlogon command, and then run the net start netlogon command.
C.    On DC1, run the Enable-PSSessionConfigurationcmdlet.
D.    On Server2, modify the membership of the Remote Management Users group.

Answer: D

QUESTION 63
You have a server named Server1 that runs Windows Server 2012 R2. Server1 has six network adapters. Two of the network adapters are connected to a network named LAN1, two of the network adapters are connected to a network named LAN2, and two of the network adapters are connected to a network named LAN3. You create a network adapter team named Team1 from the two adapters connected to LAN1. You create a network adapter team named Team2 from the two adapters connected to LAN2. A company policy states that all server IP addresses must be assigned by using a reserved address in DHCP. You need to identify how many DHCP reservations you must create for Server1. How many reservations should you identify?

A.    3
B.    4
C.    6
D.    8

Answer: B

QUESTION 64
Your network contains an Active Directory domain named contoso.com. Domain controllers run either Windows Server 2008, Windows Server 2008 R2, or Windows Server 2012 R2. You have a Password Settings object (PSOs) named PSO1. You need to view the settings of PSO1. Which tool should you use?

A.    Group Policy Management
B.    Get-ADFineGrainedPasswordPolicy
C.    Get-ADDefaultDomainPasswordPolicy
D.    Server Manager

Answer: B

QUESTION 65
You have a server named Server1. You install the IP Address Management (IPAM) Server feature on Server1. You need to provide a user named User1 with the ability to set the access scope of all the DHCP servers that are managed by IPAM. The solution must use the principle of least privilege. Which user role should you assign to User1?

A.    IP Address Record Administrator Role
B.    IPAM Administrator Role
C.    IPAM MSM Administrator Role
D.    IPAM DHCP Scope Administrator Role

Answer: B

QUESTION 66
Your network contains two servers that run Windows Server 2012 R2 named Server1 and Server2. Both servers have the File Server role service installed. On Server2, you create a share named Backups. From Windows Server Backup on Server1, you schedule a full backup to run every night. You set the backup destination to \\Server2 \Backups. After several weeks, you discover that \\Server2\Backups only contains the last backup that completed on Server1. You need to ensure that multiple backups of Server1 are maintained. What should you do?

A.    Modify the properties of the Windows Store Service (WSService) service.
B.    Change the backup destination.
C.    Modify the Volume Shadow Copy Service (VSS) settings.
D.    Configure the permission of the Backups share.

Answer: B

QUESTION 67
Your network contains an Active Directory domain named contoso.com. The domain contains a main office and a branch office. An Active Directory site exists for each office. The domain contains two servers named Server1 and Server2 that run Windows Server 2012 R2. Both servers have the DHCP Server server role installed. Server1 is located in the main office site. Server2 is located in the branch office site. Server1 provides IPv4 addresses to the client computers in the main office site. Server2 provides IPv4 addresses to the client computers in the branch office site. You need to ensure that if either Server1 or Server2 are offline, the client computers can still obtain IPv4 addresses. The solution must meet the following requirements:
— The storage location of the DHCP databases must not be a single point of failure.
— Server1 must provide IPv4 addresses to the client computers in the branch office site only if Server2 is offline.
— Server2 must provide IPv4 addresses to the client computers in the main office site only if Server1 is offline.
Which configuration should you use?

A.    Load sharing mode failover partners
B.    Hot standby mode failover partners
C.    A Network Load Balancing (NLB) cluster
D.    A failover cluster

Answer: B

QUESTION 68
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2 Both servers have the IP Address Management (IPAM) Server feature installed. You have a support technician named Tech1. Tech1 is a member of the IPAM Administrators group on Server1 and Server2. You need to ensure that Tech1 can use Server Manager on Server1 to manage IPAM on Server2. To which group on Server2 should you add Tech1.

A.    IPAM MSM Administrators
B.    IPAM Administrators
C.    WinRMRemoteWMIUsers_
D.    Remote Management Users

Answer: C

QUESTION 69
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Active Directory Certificate Services server role installed and is configured as an enterprise certification authority (CA). You need to ensure that all of the users in the domain are issued a certificate that can be used for the following purposes:
– Email security
– Client authentication
– Encrypting File System (EFS)
Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

A.    Modify the properties of the User certificate template, and then publish the template.
B.    From a Group Policy, configure the Certificate Services Client – Certificate Enrollment Policy settings.
C.    From a Group Policy, configure the Automatic Certificate Request Settings settings.
D.    Duplicate the User certificate template, and then publish the template.
E.    From a Group Policy, configure the Certificate Services Client – Auto-Enrollment settings.

Answer: DE

QUESTION 70
You manage an environment that has many servers. The servers run Windows Server 2012 R2 and use iSCSI storage. Administrators report that it is difficult to locate available iSCSI resources on the network. You need to ensure that the administrators can locate iSCSI resources on the network by using a central repository. Which feature should you deploy?

A.    The iSNS Server service feature
B.    The iSCSI Target Storage Provider feature
C.    The Windows Standards-Based Storage Management feature
D.    The iSCSI Target Server role service

Answer: A

QUESTION 71
You have a server named Server1 that runs Windows Server 2012 R2. You download and install the Microsoft Online Backup Service Agent on Server1. You need to ensure that you can configure an online backup from Windows Server Backup. What should you do first?

A.    From a command prompt, run wbadmin.exe enable backup.
B.    From Windows Server Backup, run the Register Server Wizard.
C.    From the Services console, modify the Log On settings of the Microsoft Online Backup Service Agent.
D.    From Computer Management, add the Server1 computer account to the Backup Operators group.

Answer: B

QUESTION 72
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2. Both servers have the Hyper-V server role installed. You plan to replicate virtual machines between Server1 and Server2. The replication will be encrypted by using Secure Sockets Layer (SSL). You need to request a certificate on Server1 to ensure that the virtual machine replication is encrypted. Which two intended purposes should the certificate for Server1 contain? (Each correct answer presents part of the solution. Choose two.)

A.    Server Authentication
B.    KDC Authentication
C.    Kernel Mode Code Signing
D.    IP Security end system
E.    Client Authentication

Answer: AE

QUESTION 73
Drag and Drop Question
You have a file server named Server1 that runs Windows Server 2012 R2. The folders on Server1 are configured as shown in the following table.

A new corporate policy states that backups must use Microsoft Online Backup whenever possible. You need to identify which technology you must use to back up Server1. The solution must use Microsoft Online Backup whenever possible. What should you identify? To answer, drag the appropriate backup type to the correct location or locations. Each backup type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

Answer:

QUESTION 74
Your network contains an Active Directory domain named contoso.com. The domain contains two member servers named Server1 and Server2 that run Windows Server 2012 R2. Both servers have the Hyper-V server role installed. The network contains an enterprise certification authority (CA). All servers are enrolled automatically for a certificate-based on the Computer certificate template. On Server1, you have a virtual machine named VM1. VM1 is replicated to Server2. You need to encrypt the replication of VM1. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

A.    On Server1, modify the settings of VM1.
B.    On Server2, modify the settings of the virtual switch to which VM1 is connected.
C.    On Server1, modify the Hyper-V Settings.
D.    On Server1, modify the settings of the virtual switch to which VM1 is connected.
E.    On Server2, modify the settings of VM1.
F.    On Server2, modify the Hyper-V Settings.

Answer: AF

QUESTION 75
Your network contains an Active Directory domain named contoso.com. The domain contains a file server named Server1 that runs Windows Server 2012 R2. You create a user account named User1 in the domain. You need to ensure that User1 can use Windows Server Backup to back up Server1. The solution must minimize the number of administrative rights assigned to User1. What should you do?

A.    Assign User1 the Back up files and directories user right.
B.    Add User1 to the Backup Operators group.
C.    Add User1 to the Power Users group.
D.    Assign User1 the Back up files and directories user right and the Restore files and directories user right.

Answer: A

QUESTION 76
You have a datacenter that contains six servers. Each server has the Hyper-V server role installed and runs Windows Server 2012 R2. The servers are configured as shown in the following table.

Host4 and Host5 are part of a cluster named Cluster1. Cluster1 hosts a virtual machine named VM1. You need to move VM1 to another Hyper-V host. The solution must minimize the downtime of VM1. To which server and by which method should you move VM1?

A.    To Host3 by using a storage migration
B.    To Host6 by using a storage migration
C.    To Host2 by using a live migration
D.    To Host1 by using a quick migration

Answer: A

QUESTION 77
Your network contains an active directory domain named Contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. You create a group Managed Service Account named gservice1. You need to configure a service named service1 to run as the gservice1 account. How should you configure service1?

A.    From Services Console configure the recovery settings
B.    From a command prompt ,run sc.exe and specify the config parameter
C.    From Windows PowerShell,run Set-Service and specify the -PassThrough parameter
D.    From a command prompt ,run sc.exe and specify the sdset parameter

Answer: B

QUESTION 78
Your network contains an Active Directory domain named adatum.com. The domain contains a domain controller named Server1. On Server1, you create a new volume named E. You restart Server1 in Directory Service Restore Mode. You open ntdsutil.exe and you set NTDS as the active instance. You need to move the Active Directory logs to E:\NTDS\. Which Ntdsutil context should you use?

A.    IFM
B.    Files
C.    Configurable Settings
D.    Partition management

Answer: B

QUESTION 79
Your network contains an Active Directory domain named contoso.com. All servers run Windows Server 2012 R2. The domain contains two servers. The servers are configured as shown in the following table.

All client computers run Windows 8 Enterprise. You plan to deploy Network Access Protection (NAP) by using IPSec enforcement. A Group Policy object (GPO) named GPO1 is configured to deploy a trusted server group to all of the client computers. You need to ensure that the client computers can discover HRA servers automatically. Which three actions should you perform? (Each correct answer presents part of the solution. Choose three.)

A.    On Server2, configure the EnableDiscovery registry key.
B.    On DC1, create an alias (CNAME) record.
C.    On DC1, create a service location (SRV) record.
D.    In a GPO, modify the Request Policy setting for the NAP Client Configuration.
E.    On all of the client computers, configure the EnableDiscovery registry key.

Answer: CDE

QUESTION 80
Your network contains an Active Directory domain named adatum.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 is configured as a Network Policy Server (NPS) server and as a DHCP server. You need to ensure that only computers that send a statement of health are checked for Network Access Protection (NAP) health requirements. Which two settings should you configure? (Each correct answer presents part of the solution. Choose two.)

A.    The NAP-Capable Computers conditions
B.    The MS-Service Class conditions
C.    The NAS Port Type constraints
D.    The Called Station ID constraints
E.    The Health Policies conditions

Answer: AE

QUESTION 81
Hotspot Question
You have a server named Server1 that has the Web Server (IIS) server role installed. You obtain a Web Server certificate. You need to configure a website on Server1 to use Secure Sockets Layer (SSL). To which store should you import the certificate? To answer, select the appropriate store in the answer area.

Answer:

QUESTION 82
You have a server named Served that runs Windows Server 2012 R2. On Server1, you configure a custom Data Collector Set (DCS) named DCS1. DCS1 is configured to store performance log data in C:\Logs. You need to ensure that the contents of C:\Logs are deleted automatically when the folder reaches 100 MB in size. What should you configure?

A.    A File Server Resource Manager (FSRM) file screen on the C:\Logs folder
B.    A schedule for DCS1
C.    The Data Manager settings of DCS1
D.    A File Server Resource Manager (FSRM) quota on the C:\Logs folder

Answer: C

QUESTION 83
You have a server named Server1 that runs Windows Server 2012 R2. You create a custom Data Collector Set (DCS) named DCS1. You need to configure DCS1 to meet the following requirements:
– Automatically run a program when the amount of total free disk space on Server1 drops below 10 percent of capacity.
– Log the current values of several registry settings.
Which two should you configure in DCS1? (Each correct answer presents part of the solution. Choose two.)

A.    System configuration information
B.    A Performance Counter Alert
C.    Event trace data
D.    A performance counter

Answer: AB

QUESTION 84
You have a VHD that contains an image of Windows Server 2012 R2. You plan to Apply updates to the image. You need to ensure that only updates that can install without requiring a restart are installed. Which DISM option should you use?

A.    /Apply-Unattend
B.    /Add-ProvisionedAppxPackage
C.    /PreventPending
D.    /Cleanup-Image

Answer: C

QUESTION 85
Hotspot Question
Your network contains an Active Directory domain named contoso.com. You have several Windows PowerShell scripts that execute when client computers start. When a client computer starts, you discover that it takes a long time before users are prompted to log on. You need to reduce the amount of time it takes for the client computers to start. The solution must not prevent scripts from completing successfully. Which setting should you configure? To answer, select the appropriate setting in the answer area.

Answer:

QUESTION 86
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2 that run Windows Server 2012 R2. Server1 has the IP Address Management (IPAM) Server feature installed. Server2 has the DHCP Server server role installed. A user named User1 is a member of the IPAM Users group on Server1. You need to ensure that User1 can use IPAM to modify the DHCP scopes on Server2. The solution must minimize the number of permissions assigned to User1. To which group should you add User1?

A.    IPAM ASM Administrators on Server1
B.    IPAMUG in Active Directory
C.    DHCP Administrators on Server2
D.    IPAM MSM Administrators on Server1

Answer: D

QUESTION 87
Hotspot Question
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Print1. Your company implements DirectAccess. A user named User1 frequently works at a customer’s office. The customer’s office contains a print server named Print1. While working at the customer’s office, User1 attempts to connect to Print1. User1 connects to the Print1 server in contoso.com instead of the Print1 server at the customer’s office. You need to provide User1 with the ability to connect to the Print1 server in the customer’s office. Which Group Policy option should you configure? To answer, select the appropriate option in the answer area.

Answer:

QUESTION 88
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. Server1 has the Remote Access server role installed. You log on to Server1 by using a user account named User2. From the Remote Access Management Console, you run the Getting Started wizard and you receive a warning message as shown in the exhibit. (Click the Exhibit button.)


You need to ensure that you can configure DirectAccess successfully. The solution must minimize the number of permissions assigned to User2. To which group should you add User2?

A.    Enterprise Admins
B.    Server Operators
C.    Domain Admins
D.    Account Operators

Answer: C

QUESTION 89
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that has the Remote Access server role installed. DirectAccess is implemented on Server1 by using the default configuration. You discover that DirectAccess clients do not use DirectAccess when accessing websites on the Internet. You need to ensure that DirectAccess clients access all Internet websites by using their DirectAccess connection. What should you do?

A.    Configure DirectAccess to enable force tunneling.
B.    Configure a DNS suffix search list on the DirectAccess clients.
C.    Disable the DirectAccess Passive Mode policy setting in the DirectAccess Client Settings Group Policy object (GPO).
D.    Enable the Route all traffic through the internal network policy setting in the DirectAccess Server Settings Group Policy object (GPO).

Answer: A

QUESTION 90
Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. On all of the domain controllers, Windows is installed in C:\Windows and the Active Directory database is located in D:\Windows\NTDS\. All of the domain controllers have a third-party Application installed. The operating system fails to recognize that the Application is compatible with domain controller cloning. You verify with the Application vendor that the Application supports domain controller cloning. You need to prepare a domain controller for cloning. What should you do?

A.    In C:\Windows\System32\Sysprep\Actionfiles\, add the Application information to an XML file named Respecialize.xml.
B.    In D:\Windows\NTDS\, create an XML file named DCCloneConfig.xml and add the Application information to the file.
C.    In D:\Windows\NTDS\, create an XML file named CustomDCCloneAllowList.xml and add the Application information to the file.
D.    In C:\Windows\, create an XML file named DCCloneConfig.xml and add the Application information to the file.

Answer: C

Download Free 70-417 PDF Dumps From Google Drive: https://drive.google.com/open?id=0B-ob6L_QjGLpfjJyZU1pUlVQdlpWV0dXUlljZVVhWmJUa0pZbVVBdzZYSllIN3ktT1VMUlk (Explanation For Every Question Is Available!)

PassLeader 70-417 VCE Dumps Screenshots:

Download New 70-417 VCE Dumps From PassLeader: http://www.passleader.com/70-417.html (New Questions Are 100% Available and Wrong Answers Have Been Corrected!!!)