getcertified4sure.com

Sep 2021 updated: mcsa 70-642




100% Correct of 70-642 download materials and free samples for Microsoft certification for IT candidates, Real Success Guaranteed with Updated 70-642 pdf dumps vce Materials. 100% PASS TS: Windows Server 2008 Network Infrastructure, Configuring exam Today!

2021 Sep ebook for 70-642:

Q161. - (Topic 2) 

Your network contains an Active Directory domain. The domain contains a print server named Server1. Server1 runs Windows Server 2008 R2. 

You need to ensure that users can locate all shared printers on Server1 by using Active Directory. 

What should you do from Server1? 

A. Run the pubprn.vbs script. 

B. Run dism.exe. 

C. Run the Set-ADObject cmdlet. 

D. Modify the Print Server properties. 

Answer: A 

Explanation: 

The script pubprn.vbs publishes a printer to the Active Directory Domain Services. 


Q162. - (Topic 4) 

Your network contains an Active Directory forest. The forest contains the member servers configured as shown in the following table. 

All servers run Windows Server 2008 R2. 

You deploy a new server named Server1. 

You need to configure Server1 to provide central authentication for all dial-up connections and all VPN connections. 

What should you install on Server1? 

A. Active Directory Lightweight Directory Services (AD LDS) 

B. Active Directory Federation Services (AD FS) 

C. Network Policy Server (NPS) 

D. Routing and Remote Access service (RRAS) 

Answer: C 

Explanation: 

Ref: http://www.windowsnetworking.com/articles_tutorials/understanding-new-windows-server- 2008-networkpolicy-server.html 


Q163. HOTSPOT - (Topic 4) 

Your network contains a server named Server1 that runs Windows Server 2008 R2 Service 

Pack 1 (SP1) Enterprise. Server1 has the 

Windows Server Update Services (WSUS) server role installed. 

In WSUS, you create a computer group named AII_Servers. 

The computer accounts for all member servers are in an organizational unit (OU) named 

Servers_OU. 

The Computers option in WSUS is configured as shown in the exhibit. (Click the Exhibit button.) 

You create a Group Policy object (GPO). You link the GPO to Servers_OU. 

You need to ensure that all of the member servers receive the approved updates assigned 

to the the All_Servers computer group. 

Which three Group Policy options should you configure? 

To answer, select the appropriate options in the answer area. 

Answer: 


Q164. - (Topic 1) 

Your network contains multiple servers that run Windows Server 2008 R2. The servers have the Routing and Remote Access Services (RRAS) role service installed. The servers are configured to support Routing 

Information Protocol (RIP). 

You need to prevent the server from receiving routes for the 10.0.0.0 network. 

What should you do from the Routing and Remote Access console? 

A. From the RIP properties page, modify the General settings. 

B. From the RIP properties page, modify the Security settings. 

C. From the RIP interface properties page, modify the Security settings. 

D. From the RIP interface properties page, modify the Neighbors settings. 

Answer: C 


Q165. HOTSPOT - (Topic 4) 

Your network contains a server named Server1 that runs Windows Server 2008 R2. You enable IPSec on 

Server1. You need to identify which client computers have active IPSec associations to Server1. 

Which administrative tool should you use to achieve this task? 

To answer, select the appropriate tool from the answer area. 

Answer: 


70-642 brain dumps

Renovate exam 70-642 windows server 2008 network infrastructure configuring:

Q166. - (Topic 3) 

Your company has a server named FS1. FS1 hosts the domain-based DFS namespace named \\contoso.com\dfs. All domain users store their data in subfolders within the DFS namespace. 

You need to prevent all users, except administrators, from creating new folders or new files at the root of the \\contoso.com\dfs share. 

What should you do? 

A. Run the dfscmd.exe \\FS1\dfs /restore command on FS1. 

B. Configure the NTFS permissions for the C:\DFSroots\dfs folder on FS1. Set the Create folders/append data special permission to Deny for the Authenticated Users group. Set the Full Control permission to Allow for the Administrators group. 

C. Start the Delegate Management Permissions Wizard for the DFS namespace named \\contoso.com\dfs.Remove all groups that have the permission type Explicit except the Administrators group. 

D. Configure the \\FS1\dfs shared folder permissions. Set the permissions for the Authenticated Users group to Reader. Set the permissions for the Administrators group to Co-owner. 

Answer: D 


Q167. - (Topic 2) 

Your network contains a Windows Server Update Services (WSUS) server. All computers on the network are configured to download and install updates once a week. 

You need to deploy a critical update to a WSUS client as soon as possible. Which command should you run? 

A. dism.exe /online /check-apppatch 

B. gpupdate.exe /force 

C. secedit.exe /refreshpolicy 

D. wuauclt.exe /detectnow 

Answer: D 

Explanation: 

Manipulate Automatic Updates Behavior Using Command-line Options There are two documented commandline options used for manipulating Automatic Updates behavior. These options are meant to be run from a command prompt. They are helpful for testing and troubleshooting client computers. For comprehensive troubleshooting information for problems with both the WSUS server and client computers, see "Microsoft Windows Server Update Services Operations Guide." 

Detectnow Option Because waiting for detection to start can be a time-consuming process, an option has been added to allow you to initiate detection right away. On one of the computers with the new Automatic Update client installed, run the following command at the command prompt: wuauclt.exe /detectnow 


Q168. - (Topic 2) 

Your network contains an Active Directory forest. The forest contains two domains named contoso.com and eu.contoso.com. 

You install a Network Policy Server (NPS) named Server1 in the contoso.com domain. 

You need to ensure that Server1 can read the dial-in properties of the user accounts in the eu.contoso.com domain. 

What should you do? 

A. In the contoso.com domain, add Server1 to the RAS and IAS Servers group. 

B. In the contoso.com domain, add Server1 to the Windows Authorization Access group. 

C. In the eu.contoso.com domain, add Server1 to the RAS and IAS Servers group. 

D. In the eu.contoso.com domain, add Server1 to the Windows Authorization Access group. 

Answer: C 

Explanation: 

C is correct, Servers in this group can access remote access properties of users 


Q169. - (Topic 4) 

You need to ensure that only the members of the Power Users group and the members of the Administrators group can view the events in the System log. 

Which tools should you use? 

A. Wecutil 

B. Event Viewer 

C. Local Group Policy Editor 

D. Local Users and Groups 

Answer: C 


Q170. - (Topic 1) 

Your network contains a server named Server1. Server1 runs Windows Server 2008 R2 and has a single network connection. The connection is configured to use a default gateway address of 10.0.0.1. The default gateway has a metric value of 100. You configure a second default gateway that uses an address of 10.0.0.2. 

You need to ensure that 10.0.0.2 is only used as the default gateway if 10.0.0.1 is unreachable. 

What should you do? 

A. For the interface, set the interface metric to 100. 

B. For the 10.0.0.2 gateway, set the metric to 50. 

C. For the 10.0.0.2 gateway, set the metric to 200. 

D. For the 10.0.0.1 gateway and the 10.0.0.2 gateway, enable automatic metric. 

Answer: C