Download Identity with Windows Server 2016.70-742.Train4Sure.2018-06-25.102q.vcex

Vendor: Microsoft
Exam Code: 70-742
Exam Name: Identity with Windows Server 2016
Date: Jun 25, 2018
File Size: 4 MB

How to open VCEX files?

Files with VCEX extension can be opened by ProfExam Simulator.

ProfExam Discount

Demo Questions

Question 1
Your network contains an Active Directory domain named contoso.com. 
You have an organizational unit (OU) named TestOU that contains test computers. 
You need to enable a technician named Tech1 to create Group Policy objects (GPOs) and to link the GPOs to TestOU. The solution must use the principle of least privilege. 
Which two actions should you perform? Each correct answer presents part of the solution.
  1. Add Tech1 to the Group Policy Creator Owners group.
  2. From Group Policy Management, modify the Delegation settings of the TestOU OU.
  3. Add Tech1 to the Protected Users group.
  4. From Group Policy Management, modify the Delegation settings of the contoso.com container.
  5. Create a new universal security group and add Tech1 to the group.
Correct answer: AB
Explanation:
The Group Policy Creator Owners group lets its members create new GPOs. You can delegate the ability for users to be given the ability to link GPOs to an OU or domain via the Delegation tab of the OU/domain/site within the GPMC. References: http://www.itprotoday.com/management-mobility/what-group-policy-creator-owners-group http://www.itprotoday.com/management-mobility/how-do-i-delegate-permissions-someone-edit-gpo
The Group Policy Creator Owners group lets its members create new GPOs. 
You can delegate the ability for users to be given the ability to link GPOs to an OU or domain via the Delegation tab of the OU/domain/site within the GPMC. 
References: 
http://www.itprotoday.com/management-mobility/what-group-policy-creator-owners-group 
http://www.itprotoday.com/management-mobility/how-do-i-delegate-permissions-someone-edit-gpo
Question 2
Your company recently deployed a new child domain to an Active Directory forest. 
You discover that a user modified the Default Domain Policy to configure several Windows components in the child domain. 
A company policy states that the Default Domain Policy must be used only to configure domain-wide security settings. 
You create a new Group Policy object (GPO) and configure the settings for the Windows components in the new GPO. 
You need to restore the Default Domain Policy to the default settings from when the domain was first installed. 
What should you do?
  1. From Group Policy Management, click Starter GPOs, and then click Manage Backups.
  2. From a command prompt, run the dcgpofix.exe command.
  3. From Windows PowerShell, run the Copy-GPO cmdlet.
  4. Run ntdsutil.exe to perform a metadata cleanup and a semantic database analysis.
Correct answer: B
Question 3
Your network contains an Active Directory domain named contoso.com. 
You have an organizational unit (OU) named OU1 that contains the computer accounts of two servers and the user account of a user named User1. A Group Policy object (GPO) named GPO1 is linked to OU1. 
You have an application named App1 that installs by using an application installer named App1.exe. 
You need to publish App1 to OU1 by using Group Policy. 
What should you do?
  1. Create a Config.zap file and add a file to the File System node to the Computer Configuration node of GPO1.
  2. Create a Config.xml file and add a software installation package to the User Configuration node of GPO1.
  3. Create a Config.zap file and add a software installation package to the User Configuration node of GPO1.
  4. Create a Config.xml file and add a software installation package to the Computer Configuration node of GPO1.
Correct answer: C
Question 4
Your network contains an Active Directory domain named contoso.com. 
You open Group Policy Management as shown in the exhibit.
  
You discover that some of the settings configured in the A1 Group Policy object (GPO) fail to apply to the users in the OU1 organizational unit (OU). 
You need to ensure that all of the settings in A1 apply to the users in OU1. 
What should you do?
  1. Enable loopback policy processing in A1.
  2. Block inheritance on OU1.
  3. Modify the policy processing order for OU1.
  4. Modify the GPO Status of A1.
Correct answer: C
Question 5
Your network contains an Active Directory domain named contoso.com. 
You have a Group Policy object (GPO) named GPO1. GPO1 is linked to an organizational unit (OU) named OU1. 
GPO1 contains several corporate desktop restrictions that apply to all computers. 
You plan to deploy a printer to the computers in OU1. 
You need to ensure that any user who signs in to a computer that runs Windows 10 in OU1 receives the new printer. All of the computers in OU1 must continue to apply the corporate desktop restrictions from GPO1. 
What should you configure?
  1. a user preference and a WMI filter on GPO1.
  2. a computer preference that uses item-level targeting
  3. a computer preference and WMI filter on GPO1
  4. a user preference that uses item-level targeting
Correct answer: B
Question 6
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series.
Information and details provided in a question apply only to that question. 
Your network contains an Active Directory domain named contoso.com. The domain contains 5,000 user accounts. 
You have a Group Policy object (GPO) named DomainPolicy that is linked to the domain and a GPO named DCPolicy that is linked to the Domain Controllers organizational unit (OU). 
You need to use the application control policy settings to prevent several applications from running on the network. 
What should you do?
  1. From the Computer Configuration node of DCPolicy, modify Security Settings.
  2. From the Computer Configuration node of DomainPolicy, modify Security Settings.
  3. From the Computer Configuration node of DomainPolicy, modify Administrative Templates.
  4. From the User Configuration node of DCPolicy, modify Security Settings.
  5. From the User Configuration node of DomainPolicy, modify Folder Redirection.
  6. From user Configuration node of DomainPolicy, modify Administrative Templates.
  7. From Preferences in the User Configuration node of DomainPolicy, modify Windows Settings.
  8. From Preferences in the Computer Configuration node of DomainPolicy, modify Windows Settings.
Correct answer: B
Question 7
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series.
Information and details provided in a question apply only to that question. 
Your network contains an Active Directory domain named contoso.com. The domain contains 5,000 user accounts. 
You have a Group Policy object (GPO) named DomainPolicy that is linked to the domain and a GPO named DCPolicy that is linked to the Domain Controllers organizational unit (OU). 
You need to configure the Documents folder of every user to be stored on a server named FileServer1. 
What should you do?
  1. From the Computer Configuration node of DCPolicy, modify Security Settings.
  2. From the Computer Configuration node of DomainPolicy, modify Security Settings.
  3. From the Computer Configuration node of DomainPolicy, modify Administrative Templates.
  4. From the User Configuration node of DCPolicy, modify Security Settings.
  5. From the User Configuration node of DomainPolicy, modify Folder Redirection.
  6. From user Configuration node of DomainPolicy, modify Administrative Templates.
  7. From Preferences in the User Configuration node of DomainPolicy, modify Windows Settings.
  8. From Preferences in the Computer Configuration node of DomainPolicy, modify Windows Settings.
Correct answer: E
Question 8
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series.
Information and details provided in a question apply only to that question. 
Your network contains an Active Directory domain named contoso.com. The domain contains 5,000 user accounts. 
You have a Group Policy object (GPO) named DomainPolicy that is linked to the domain and a GPO named DCPolicy that is linked to the Domain Controllers organizational unit (OU). 
You need to force users to change their account password at least every 30 days. 
What should you do?
  1. From the Computer Configuration node of DCPolicy, modify Security Settings.
  2. From the Computer Configuration node of DomainPolicy, modify Security Settings.
  3. From the Computer Configuration node of DomainPolicy, modify Administrative Templates.
  4. From the User Configuration node of DCPolicy, modify Security Settings.
  5. From the User Configuration node of DomainPolicy, modify Folder Redirection.
  6. From user Configuration node of DomainPolicy, modify Administrative Templates.
  7. From Preferences in the User Configuration node of DomainPolicy, modify Windows Settings.
  8. From Preferences in the Computer Configuration node of DomainPolicy, modify Windows Settings.
Correct answer: B
Question 9
Note: This question is part of a series of questions that use the same scenario. For you convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
Start of repeated scenario. 
You work for a company named Contoso, Ltd. 
The network contains an Active Directory forest named contoso.com. A forest trust exists between contoso.com and an Active Directory forest named adatum.com. 
The contoso.com forest contains the objects configured as shown in the following table. 
  
Group1 and Group2 contain only user accounts. 
Contoso hires a new remote user named User3. User3 will work from home and will use a computer named Computer3 that runs Windows 10. Computer3 is currently in a workgroup. 
An administrator named Admin1 is a member of the Domain Admins group in the contoso.com domain. 
From Active Directory Users and Computers, you create an organizational unit (OU) named OU1 in the contoso.com domain, and then you create a contact named Contact1 in OU1. 
An administrator of the adatum.com domain runs the Set-ADUser cmdlet to configure a user named User1 to have a user logon name of [email protected]
End of repeated scenario. 
You need to ensure that User2 can add Group4 as a member of Group5. 
What should you modify?
  1. the group scope of Group5
  2. the Managed By settings of Group4
  3. the group scope of Group4
  4. the Managed By settings of Group5
Correct answer: D
Question 10
Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
Start of repeated scenario. 
You work for a company named Contoso, Ltd. 
The network contains an Active Directory forest named contoso.com. A forest trust exists between contoso.com and an Active Directory forest named adatum.com. 
The contoso.com forest contains the objects configured as shown in the following table. 
  
Group1 and Group2 contain only user accounts. 
Contoso hires a new remote user named User3. User3 will work from home and will use a computer named Computer3 that runs Windows 10. Computer3 is currently in a workgroup. 
An administrator named Admin1 is a member of the Domain Admins group in the contoso.com domain. 
From Active Directory Users and Computers, you create an organizational unit (OU) named OU1 in the contoso.com domain, and then you create a contact named Contact1 in OU1. 
An administrator of the adatum.com domain runs the Set-ADUser cmdlet to configure a user named User1 to have a user logon name of [email protected]
End or repeated scenario. 
You need to ensure that Admin1 can add Group2 as a member of Group3. 
What should you modify?
  1. Modify the Security settings of Group3.
  2. Modify the group scope of Group3.
  3. Modify the group type of Group3.
  4. Set Admin1 as the manager of Group3.
Correct answer: B
Explanation:
A domain local group (group2) can only be a member of another domain local group.  Therefore, we need to change the scope of Group3 from Universal to Domain Local.
A domain local group (group2) can only be a member of another domain local group.  Therefore, we need to change the scope of Group3 from Universal to Domain Local.
HOW TO OPEN VCE FILES

Use VCE Exam Simulator to open VCE files
Avanaset

HOW TO OPEN VCEX AND EXAM FILES

Use ProfExam Simulator to open VCEX and EXAM files
ProfExam Screen

ProfExam
ProfExam at a 20% markdown

You have the opportunity to purchase ProfExam at a 20% reduced price

Get Now!