Post on 28-Jun-2018
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
2016 NEW CHANGED 70-646 Exam Questions RELEASED Today!
【Exam Code】 70-646
【Exam Name】Windows Server 2008, Server Administrator
【Certification Provider】 Microsoft
2016 NEW 70-646 Study Guides: 1.Configuring addressing and services 2.Configuring names resolution 3.Configuring network access
4.Configuring file and print services 5.Monitoring and managing a network infrastructure
Braindump2go 2016 NEW 70-646 Exam PDF and VCE
Dumps 283Q Free Share: 1-20
QUESTION 1 A company has servers that run a Server Core installation of Windows Server 2008.
You are designing the migration of the servers to Windows Server 2008 R2. After the migration, you will install the Remote Desktop Services server role and the Print and Document Services server role on the servers.
You need to ensure that shared resources on the servers are available after the migration, and minimize administrative effort. What should you recommend? (More than one answer choice may achieve the goal. Select the
BEST answer.)
A. Deploy new servers with a Server Core installation of Windows Server 2008 R2.
Migrate the shared resources to the new servers.
B. Upgrade the existing servers to a Server Core installation of Windows Server 2008 R2, and then upgrade the servers to a full installation of Windows Server 2008 R2.
C. Move the shared resources off of the existing servers. Perform a clean installation of Windows Server 2008 R2 on the servers. Move the shared resources back onto the servers.
D. Deploy new servers with Windows Server 2008 R2 installed. Migrate the shared resources to the new servers.
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
Answer: D Explanation:
The key here is minimize effort & remote desktop services. Server core wouldn't allow remote desktop services as it has no GUI so that would rule out answer A you also cant upgrade from core to full see
http://www.windowsitpro.com/article/tips/can-iupgrade-fromserver-core-2008-to-the-full-windows-server-2008- or
http://serverfault.com/questions/92523/upgrade-fromwindows-2008-server-core-to-full-windows-2008- server upgrade considerations for server core installations of windows server 2008 so that rules
our B You can use the server core installation option only by performing a clean installation. You cannot upgrade from earlier versions of windows to server core installations of windows
server 2008. You cannot upgrade from non-server core installations of windows server 2008 to server core installations of windows server 2008.
You cannot convert server core installations of windows server 2008 to non-server core installations of windows server 2008. You can upgrade server core installations of windows server 2008 only to windows server core r2
when it is released. Answer C is possible but again you're asked to minimize effort so D would be 1 step less thus reducing your effort and possible down time.
QUESTION 2 As part of a Windows Server 2008 R2 Active Directory deployment, you are designing a Group
Policy object (GPO) hierarchy. Client computers run Windows 7 and Windows XP. All client computers are in an organizational unit (OU) named Client Computers.
Additional Windows 7 and Windows XP client computers will be joined to the domain over the next six months. You have the following requirements: - Install the antivirus application on all Windows XP computers.
- Do not install the antivirus application on the Windows 7 computers.
- Do not make changes to the existing Active Directory logical
structure.
You need to design a Group Policy strategy that meets the requirements. Which GPO configuration should you recommend? (More than one answer choice may achieve
the goal. Select the BEST answer.)
A. Publish the antivirus application to client computers.
Link the GPO to the domain. Use security filtering to prevent the Windows 7 client computers from receiving the GPO.
B. Assign the antivirus application to client computers.
Link the GPO to the Client Computers OU. Create a WMI Filter that queries whether the client computer's Win32_OperatingSystem caption contains "Windows 7" .
Associate the WMI filter with the GPO.
C. Assign the antivirus application to client computers. Link the GPO to the domain.
Place all the Windows 7 computers in a security group. Use security filtering to prevent the Windows 7 client computers from receiving the GPO.
D. Assign the antivirus application to client computers.
Link the GPO to the Client Computers OU. Create a WMI Filter that queries whether the client computer's Win32_OperatingSystem
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
caption contains "Windows XP" . Associate the WMI Filter with the GPO.
Answer: D Explanation:
http://technet.microsoft.com/en-us/library/cc947846%28v=ws.10%29.aspx & http://technet.microsoft.com/enus/library/cc947846%28v=ws.10%29.aspx#bkmk_1 Depending on which OS you're asked to install the AV app on your answer could change.
There are reports that you're now being asked to install the AV on the Win7 clients. if that is the case then you would select the Windows 7 option
QUESTION 3 A company has servers that run Windows Server 2008 R2. Administrators use a graphic-intensive application to remotely manage the network.
You are designing a remote network administration solution. You need to ensure that authorized administrators can connect to internal servers over the Internet from computers that run Windows 7 or Windows Vista.
Device redirection enforcement must be enabled for these connections. What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A. Deploy and configure a server with the Remote Desktop Web Access server role. Enable Forms-based authentication.
Ensure that administrators use RDC 6.1 when accessing internal servers remotely.
B. Deploy and configure a server with the Remote Desktop Web Access server role. Enable Forms-based authentication.
Ensure that administrators use RDC 7.0 when accessing internal servers remotely,
C. Deploy and configure a server with the Remote Desktop Gateway server role. Ensure that administrators use RDC 7.0 when accessing internal servers remotely.
D. Deploy and configure a server with the Remote Desktop Gateway server role. Ensure that administrators use RDC 6.1 when accessing internal servers remotely.
Answer: C Explanation: http://windows.microsoft.com/en-us/windows7/What-is-a-Remote-Desktop-Gateway-server
A Remote Desktop Gateway (RD Gateway) server is a type of gateway that enables authorized users to connect to remote computers on a corporate network from any computer with an Internet connection. RD Gateway uses the Remote Desktop Protocol (RDP) along with the HTTPS
protocol to help create a more secure, encrypted connection. http://technet.microsoft.com/en-us/library/dd560672%28v=ws.10%29.aspx Device redirection enforcement
An RD Gateway server running Windows Server 2008 R2 includes the option to allow remote desktop clients to only connect to RD Session Host servers that enforce device redirection. RDC 7.0 is required for device redirection to be enforced by the RD Session Host server running
Windows Server 2008 R2. Device redirection enforcement is configured on the Device Redirection tab of the RD CAP by using Remote Desktop Gateway Manager.
QUESTION 4 You are designing a server infrastructure to support a new stateful application.
The server infrastructure must meet the following requirements: - Use two servers, each with two NIC cards and 32 GB of RAM.
- Provide access to the application in the event of the failure of a
single server.
- Provide the ability to scale up the application.
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
- Minimize the attack surface of each server.
- Minimize server disk space requirements.
You need to design a server infrastructure that meets the requirements.
What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A. Perform a Server Core installation of Windows Server 2008 R2 Standard Edition. Configure both servers in a failover cluster.
B. Perform a Server Core installation of Windows Server 2008 R2.
Configure both servers in a Windows Network Load Balancing array,
C. Install Windows Server 2008 R2 on both servers. Use DNS Round Robin to balance the load between the servers.
D. Install Windows Server 2008 R2 on both servers. Configure both servers in a Windows Network Load Balancing array.
Answer: A Explanation: Failover clusters are designed for applications that have long-running in-memory state, or that
have large, frequently updated data states. These are called stateful applications, and they include database applications and messaging applications. Typical uses for failover clusters include file servers, print servers, database servers, and messaging servers.
Not B (stateful application in this scenario): Network Load Balancing is intended for applications that do not have long-running in-memory state. These are called stateless applications. A stateless application treats each client request as
an independent operation, and therefore it can load-balance each request independently. Stateless applications often have read-only data or data that changes infrequently. Front-end Web servers, virtual private networks (VPNs), File Transfer Protocol (FTP) servers,
and firewall and proxy servers typically use Network Load Balancing. Network Load Balancing clusters can also support other TCP- or UDP-based services and applications. Note:
- Windows Server 2008 provides two clustering technologies: failover clusters and Network Load Balancing (NLB). Failover clusters primarily provide high availability; Network Load Balancing provides scalability and at the same time helps increase availability of Web-based services.
- Server Core provides you with a minimal installation of Windows Server 2008 that supports installing only certain server roles. Server Core includes Network Load Balancing and Failover Clustering. Reference: Failover Cluster Overview
QUESTION 5 You are planning to deploy new servers that will run Windows Server 2008 R2.
Each server will have 32 GB of RAM. The servers must support installation of the following role services: - Routing and Remote Access
- Remote Desktop Services Gateway
You need to deploy the minimum edition of Windows Server 2008 R2 that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the
BEST answer.)
A. Windows Server 2008 R2 Standard
B. Windows Server 2008 R2 Enterprise
C. Windows Server 2008 R2 Web
D. Windows Server 2008 R2 Datacenter
Answer: A
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
Explanation: http://www.microsoft.com/en-us/server-cloud/windows-server/2008-r2-standard.aspx
R2 Standard provides these services and is the minimum edition they are available on. 32 GB RAM is also supported if its a 64 bit version http://technet.microsoft.com/enus/windowsserver/ bb414778.aspx
QUESTION 6 A company wants to prevent employees who access the company's Remote Desktop Session
Hosts (RD Session Hosts) from introducing malware onto the corporate network. You have the following requirements: - Ensure that only client computers that have an up-to-date antivirus
program installed can connect to the RD Session Hosts.
- Display a notification when a client computer that does not meet the
antivirus requirements attempts to connect to an RD Session Host.
Provide information about how to resolve the connection problem.
- Ensure that client computers can access only the RD Session Hosts.
You need to recommend a Remote Desktop Services (RDS) management strategy that meets the requirements.
What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A. Deploy a Remote Desktop Gateway in a perimeter network. Install and configure a Network Policy and Access Services server. Configure the System Health Validator.
Enable the Remote Desktop Gateway Network Access Protection Enforcement Client. Configure Remote Desktop Connection Authorization Policies and Remote Desktop Resource Authorization Polices.
B. Deploy the Routing and Remote Access Service in a perimeter network to support VPN connections. Install and configure a Network Policy and Access Services server.
Enable the Network Access Protection VPN Enforcement Client. Configure the System Health Validator. Configure static routes on the VPN server to allow access only to the RD Session Hosts.
C. Deploy a Remote Desktop Gateway in a perimeter network. Configure Remote Desktop Connection Authorization Policies and Remote Desktop Resource Authorization Polices.
Configure a logon message.
D. Deploy the Routing and Remote Access Service in a perimeter network to support VPN connections.
Configure Connection Request Policies to specify which computers can connect to the corporate network. Configure static routes on the VPN server to allow access only to the RD Session Hosts.
Answer: A Explanation:
NAP with SHVs configured will ensure that the AV is installed and up to date. if they ar not you can direct them to a quarantine/remediation server to update http://www.techrepublic.com/article/solutionbase-configuring-network-access-protection-
forwindows-server-2008/178022 RD RAP Remote Desktop resource authorization policies (RD RAPs) allow you to specify the internal
network resources (computers) that remote users can connect to through an RD Gateway server. http://technet.microsoft.com/en-us/library/cc730630 RD CAP
Remote Desktop connection authorization policies (RD CAPs) allow you to specify who can
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
connect to an RD Gateway server
http://technet.microsoft.com/en-us/library/cc731544 QUESTION 7
A network includes servers that run Windows Server 2008 R2 with the Network Policy Server (NPS) server role installed. You are planning to deploy a remote network administration solution.
The remote administration solution must meet the following requirements: - Include fault tolerance.
- Define the users who have remote access and the resources they can
remotely access.
You need to design a remote administration solution that meets the requirements.
What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A. Deploy and configure multiple servers with the Remote Desktop Gateway server role. Create a central Remote Desktop Connection Authorization Policy (RD CAP) and a Resource Authorization Policy (RD RAP).
B. Deploy and configure multiple servers with the Remote Desktop Gateway server role. Create a local Remote Desktop Connection Authorization Policy (RD CAP) and a Resource Authorization Policy (RD RAP).
C. Deploy and configure one server with the Remote Desktop Web Access server role. Create a central Remote Desktop Connection Authorization Policy (RD CAP) and a Resource Authorization Policy (RD RAP).
D. Deploy and configure one server with the Remote Desktop Web Access server role. Create a local Remote Desktop Connection Authorization Policy (RD CAP) and a Resource Authorization Policy (RD RAP).
Answer: A Explanation:
You can also configure RD Gateway to use Remote Desktop connection authorization policies (RD CAPs) that are stored on another server that runs the Network Policy Server (NPS) service. By doing this, you are using the server running NPS, formerly known as a Remote Authentication
Dial-In User Service (RADIUS) server, to centralize the storage, management, and validation of RD CAPs. If you have already deployed a server running NPS for remote access scenarios such as VPN and dial-up networking, using the existing server running NPS for RD Gateway scenarios
as well can enhance your deployment. RAP Remote Desktop resource authorization policies (RD RAPs) allow you to specify the internal
network resources (computers) that remote users can connect to through an RD Gateway server. Remote users connecting to the network through an RD Gateway server are granted access to computers on the internal network if they meet the conditions specified in at least one RD CAP
and one RD RAP. CAP Remote Desktop connection authorization policies (RD CAPs) allow you to specify who can
connect to an RD Gateway server QUESTION 8
You are designing a monitoring solution to log performance on member servers that run Windows Server 2008 R2. The monitoring solution must meet the following requirements for members of the Operations
team: - Create and modify Data Collector Sets.
- Display log file data and real-time performance data in Performance
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
Monitor.
You need to design a monitoring solution that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the
BEST answer.)
A. Add members of the Operations team to the Performance Monitor Users group.
Assign the Act as part of the operating system user right to the Performance Monitor Users group
B. Add members of the Operations team to the Performance Log Users group
C. Add members of the Operations team to the Administrators group
D. Add members of the Operations team to the Power Users group. Assign the Act as part of the operating system user right to the Power Users group
Answer: B Explanation:
A Data Collector Set is the building block of performance monitoring and reporting in Windows Performance Monitor. It organizes multiple data collection points into a single component that can be used to review or log performance. A Data Collector Set can be created and then recorded
individually, grouped with other Data Collector Set and incorporated into logs, viewed in Performance Monitor, configured to generate alerts when thresholds are reached, or used by other non-Microsoft applications. It can be associated with rules of scheduling for data collection
at specific times. Windows Management Interface (WMI) tasks can be configured to run upon the completion of Data Collector Set collection. Data Collector Sets can contain the following types of data collectors:
Performance counters Event trace data System configuration information (registry key values)
You can create a Data Collector Set from a template, from an exist ing set of Data Collectors in a Performance Monitor view, or by selecting individual Data Collectors and setting each individual option in the
Data Collector Set properties. http://technet.microsoft.com/en-us/library/cc722148
You can create a Data Collector Set from counters in the current Performance Monitor display. Membership in the local Performance Log Users or Administrators group, or equivalent, is the minimum required to complete this procedure.
QUESTION 9 A company has 10,000 client computers that run Windows 7.
The company has a single domain Active Directory Domain Services (AD DS) forest with domain controllers that run Windows Server 2008 R2. Users have local administrative rights on client computers.
You need to design a Group Policy solution that deploys a printer and enforces printer settings. What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A. Use the Local Security Policy.
B. Use Group Policy preferences (GPPs).
C. Use a Group Policy object (GPO) Windows setting.
D. Use Starter Group Policy objects (GPOs).
Answer: B Explanation: Group Policy preferences, new for the Windows Server 2008 operating system, include more
than 20 new Group Policy extensions that expand the range of configurable settings within a
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
Group Policy object (GPO). These new extensions are included in the Group Policy Management Editor window of the Group Policy Management Console (GPMC), under the new Preferences
item. Examples of the new Group Policy preference extensions include folder options, mapped drives, printers, scheduled tasks, services, and Start menu settings.
In addition to providing significantly more coverage, better targeting, and easier management, Group Policy preferences enable you to deploy sett ings to client computers without restricting the users from changing the settings. This capability provides you with the flexibility to decide which
settings to enforce and which settings to not enforce. You can deploy settings that you do not want to enforce by using Group Policy preferences. System requirements and installation steps
To use Group Policy preferences, complete the following steps: Install the set of client-side extensions (CSEs) on client computers. Supported operating systems:
Windows Vista RTM or later, Windows XP with Service Pack 2 or later, Windows Server 2003 with Service Pack 1 or later Download locations: Windows Vista (x86):
http://go.microsoft.com/fwlink/?LinkId=111859Windows Vista(x64): http://go.microsoft.com/fwlink/?LinkID=111857
Windows XP (x86): http://go.microsoft.com/fwlink/?LinkId=111851 Windows XP (x64):
http://go.microsoft.com/fwlink/?LinkId=111862 Windows Server 2003 (x86): http://go.microsoft.com/fwlink/?LinkId=111852
Windows Server 2003 (x64): http://go.microsoft.com/fwlink/?LinkId=111863 For more information, see Article 943729 in the Microsoft Knowledge Base.
Install the XMLLite low-level XML parser on client computers that are not running Windows Vista. Supported operating systems: Windows XP SP2 or later, Windows Server 2003 SP1 or later Download location:
http://go.microsoft.com/fwlink/?LinkId=111843 worth looking at: GP Policy vs. Preference vs. GP preferences
http://blogs.technet.com/b/grouppolicy/archive/2008/03/04/gp -policy-vs-preference-vs-gppreferences.aspx
QUESTION 10 A company has a single Active Directory Domain Services (AD DS) domain and a single Remote Desktop Session Host (RD Session Host).
The RD Session Host is approaching full memory capacity. All servers run Windows Server 2008 R2. You are designing a Remote Desktop Services (RDS) infrastructure.
The infrastructure must meet the following requirements: - Allow infrastructure capacity to increase.
- Minimize the number of physical servers.
- Do not require administrative action on the client computers if the
infrastructure capacity increases.
You need to design an RDS infrastructure that meets the requirements.
What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A. Migrate the RD Session Host to a virtual machine (VM) running in Microsoft Hyper-V. Add memory to the VM as demand increases.
B. Add RD Session Hosts as demand increases, and use Group Policy to direct users to the
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
correct server.
C. Install and configure Windows Server Resource Manager (WSRM) on the RD Session Host
to control user resource allocation.
D. Implement an RD Session Host server farm and add servers as required.
Answer: A Explanation: Virtualization meets the requirements easily enough, as capacity needs grow the VMs can be
migrated to more powerful physical servers, again virtualization reduces the number of physical servers and finally as the actual RD Session Host wont change regardless of the location of that VM it will meet the third requirement Ans D does not meet the 3rd requirement
Ans C wont resolve the problem of running out of memory only that addition of RAM will resolve that issue Ans B again does not meet the 3rd requirement
QUESTION 11 You are planning to deploy new servers that will run Windows Server 2008 R2.
Each server will have 32 GB of RAM. The servers must support installation of the following role services: - Routing and Remote Access
- Remote Desktop Services Gateway
- Minimize CPU and RAM usage
You need to deploy the minimum edition of Windows Server 2008 R2 that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the
BEST answer.)
A. A Server Core installation of Windows Server 2008 R2 Datacenter.
B. A Full Installation of Windows Server 2008 R2 Enterprise.
C. A Full Installation of Windows Server 2008 R2 Standard.
D. A Server Core installation Windows Server 2008 R2 Web.
Answer: C
QUESTION 12 A company has client computers that run Windows 7. The company has Windows Server Update Services (WSUS) 3.0 with Service Pack 2 (SP2)
deployed on a server that runs Windows Server 2008 R2. You are designing an update management solution for the company's client computers. The solution must meet the following requirements: - Client computers must use WSUS for the installation of updates.
- Only administrators should receive update notifications from WSUS.
You need to design an update management solution that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A. Define the WSUS settings in the Computer Configuration area of the Group Policy Management Console.
B. Define the WSUS settings in the User Configuration area of the Group Policy Management Console.
C. Define the WSUS settings in the User Configuration area of the Local Group Policy on client
computers.
D. Define the WSUS settings in the Computer Configuration area of the Local Group Policy on client computers.
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
Answer: A
Explanation: FROM Step by Step guide to setting up WSUS 3.0 SP2 http://technet.microsoft.com/enus/library/cc708519%28v=ws.10%29 or
http://blogs.microsoft.co.il/blogs/yanivf/archive/2007/09/23/install-wsus-3-0-stepbystep.aspx To configure Automatic Updates In Group Policy Object Editor, expand Computer Configuration, expand Administrative
Templates, expand Windows Components, and then click Windows Update. In the details pane, double-click Configure Automatic Updates. Click Enabled, and then click one of the following options:
Notify for download and notify for install: This option notifies a logged-on administrative user before the download and before the installation of the updates. Auto download and notify for install: This option automatically begins downloading updates and
then notifies a logged-on administrative user before installing the updates. Auto download and schedule the install: If Automatic Updates is configured to perform a scheduled installation, you must also set the day and time for the recurring scheduled installation.
Allow local admin to choose setting: With this option, local administrators are allowed to use Automatic Updates in Control Panel to select a configuration option of their choice. For example, they can choose their own scheduled installation time.
Local administrators are not allowed to disable Automatic Updates. Click OK. Set Up E-Mail Notifications
http://technet.microsoft.com/en-us/library/cc708608%28v=ws.10%29.aspx In the WSUS Administration console, click Options in the left pane. In the center pane, click E-Mail Notifications.
Click the General tab. If you want update notifications, select the Send e-mail notification when new updates are synchronized check box.
In the Recipients box, type the e-mail addresses of the people who should receive update notifications. Separate the names with semi-colons.
If you want status reports, select the Send status reports check box. In the Frequency box, select either Daily or Weekly. In the Send reports at box, set the time at which you want status reports to be sent.
In the Recipients box type the e-mail addresses of the people who should receive status reports, delimited by semicolons. In the Language box, select the language in which the status reports should be sent.
Click Apply to save these settings. QUESTION 13
A company has Remote Desktop Services (RDS) servers that run Windows Server 2008 R2 and client computers that run Windows 7. You are designing a non-production remote desktop infrastructure that you will use for evaluation
purposes for 180 days. The remote desktop infrastructure must meet the following requirements: - Maximize the security of remote desktop connections.
- Minimize changes to the company's firewall configuration.
- Provide external users with a secure connection from the Windows 7
Remote Desktop client to the RDS environment.
You need to design a temporary remote desktop infrastructure that meets the requirements. Which services should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A. Remote Desktop Gateway, Remote Desktop Licensing, and Remote Desktop Session Host
B. Remote Desktop Licensing, Remote Desktop Session Host, and Remote Desktop
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
Web Access
C. Only Remote Desktop Gateway and Remote Desktop Session Host
D. Only Remote Desktop Session Host and Remote Desktop Web Access
Answer: C
QUESTION 14 A company has a single Active Directory Domain Services (AD DS) domain.
Each department within the company has its own organizational unit (OU). All client computers run Windows 7 Enterprise Edition and Microsoft Office 2010. The company wants to restrict access to some Office 2010 features.
They develop a standard list of corporate restrictions. You have the following requirements: - Apply the corporate restrictions to all existing and future
departments.
- Ensure that specific restrictions can be added or removed for
individual departments.
- Ensure that the corporate restrictions are not applied to users and
computers in the built-in Active Directory containers.
- Minimize administrative effort for applying restrictions to future
departments.
You need to recommend a Group Policy object (GPO) deployment that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the
BEST answer.)
A. Create a GPO that contains the corporate restrictions and link it to the domain.
Install the Office 2010 Group Policy Administrative Template settings. Create a separate GPO for each department that deploys and configures Office 2010.
B. Install the Office 2010 Group Policy Administrative Template settings.
Create a Starter GPO that contains the corporate restrictions. Create a separate GPO based on the Starter GPO for each department that deploys and configures Office 2010.
C. Install the Office 2010 Resource Kit and create a custom transform (.mst) file for each department. Create a Starter GPO that contains the corporate restrictions. Create a separate GPO based on the Starter GPO for each department that deploys Office
2010 by using the transform file.
D. Install the Office 2010 Resource Kit and create custom installer files for each department. Create a GPO that contains the corporate restrictions and link it to the domain.
Create a separate GPO for each department that deploys the installer files,
Answer: B
Explanation: Starter GPOs are used as a base template to build other GPOs from. admin templates (ADMX & ADML files) need to be applied so that the settings specific to Office 2010 can be applied
QUESTION 15 Your network consists of a single Active Directory domain.
The functional level of the domain is Windows Server 2008 R2. All domain controllers run Windows Server 2008 R2. A corporate policy requires that the users from the research department have higher levels of
account and password security than other users in the domain. You need to recommend a solution that meets the requirements of the corporate policy. Your solution must minimize hardware and software costs.
What should you recommend?
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
A. Create a new Active Directory site. Deploy a Group Policy object (GPO) to the site.
B. Create a new Password Settings Object (PSO) for the research department's users.
C. Create a new organizational unit (OU) named Research in the existing domain. Deploy a Group Policy object (GPO) to the Research OU.
D. Create a new domain in the forest.
Add the research department's user accounts to the new domain. Configure a new security policy in the new domain.
Answer: B Explanation: http://technet.microsoft.com/en-us/library/cc770842%28WS.10%29.aspx
http://technet.microsoft.com/en-us/library/cc754461%28WS.10%29.aspx
QUESTION 16
You are designing a recovery solution for file servers that run Windows Server 2008 R2. File servers have the operating system and settings on volume C and shared data on other volumes.
The recovery solution must meet the following requirements: - Create restorable point-in-time copies of files stored in shared
folders on the file servers.
- Provide users the ability to compare versions of an open file.
You need to design a recovery solution that meets the requirements.
What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A. Enable the windows Server Backup feature and schedule a backup of the shared folders on the file servers.
B. Enable Shadow Copies on all file server volumes.
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
C. Enable the Windows Server Backup feature and schedule a backup of the file server system state data.
D. Enable Shadow Copies on only file server volumes that contain shared folders.
Answer: D
Explanation: Windows Server 2008 Volume Shadow Copy is a mechanism whereby the contents of shared folders can be automatically backed up at pre-determined intervals to a shadow volume. Once
implemented, shadow copy will backup the previous 64 versions of each file in the shadowed volume and provide users with the ability to restore files from any of the previous 64 versions without administrator intervention, enabling users to independently restore deleted, damaged or
overwritten files. In addition to restoring individual files to a previous version, shadow copy also provides the ability to restore an entire volume. The requirement is to enable this on shared folders only so answer D meets this requirement
best. QUESTION 17
A company has file servers that run a Server Core installation of Windows Server 2008. You are designing the migration of the file servers to Windows Server 2008 R2. After the migration, you will install the Remote Desktop Services server role on the file servers.
You need to ensure that shared resources on the file servers are available after the migration, and minimize administrative effort. What should you recommend? (More than one answer choice may achieve the goal. Select the
BEST answer.)
A. Move the shared resources off of the existing file servers.
Perform a clean installation of Windows Server 2008 R2 on the file servers. Move the shared resources back onto the file servers.
B. Upgrade the existing file servers to a Server Core installation of Windows Server 2008 R2,
and then upgrade the file servers to a full installation of Windows Server 2008 R2.
C. Deploy new file servers with Windows Server 2008 R2 installed. Migrate the shared resources to the new file servers.
D. Deploy new file servers with a Server Core installation of Windows Server 2008 R2. Migrate the shared resources to the new file servers.
Answer: C Explanation: The key here is minimize effort & Remote Desktop Services.
Server Core wouldn't allow remote desktop services as it has no GUI so that would rule out answer A you also cant upgrade from Core to Full see http://www.windowsitpro.com/article/tips/can-i-upgrade-fromserver-core-2008-to-the-full-
windowsserver-2008- or http://serverfault.com/questions/92523/upgrade-fromwindows-2008-server-core-to-full-windows-2008-
server upgrade considerations for Server Core installations of Windows Server 2008 You can use the Server Core installation option only by performing a clean installation. You cannot upgrade from earlier versions of Windows to Server Core installations of Windows
Server 2008. You cannot upgrade from non-Server Core installations of Windows Server 2008 to Server Core installations of Windows Server 2008.
You cannot convert Server Core installations of Windows Server 2008 to non-Server Core installations of Windows Server 2008. You can upgrade Server Core installations of Windows Server 2008 only to Windows Server Core
R2 when it is released. Answer C is possible but again you're asked to minimize effort so D would be 1 step less thus
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
reducing your effort and possible down time.
QUESTION 18 Your network consists of a single Active Directory domain. The domain contains three organizational units (OUs) named Test, Application, and Database.
You need to redesign the layout of the OUs to support the following requirements: - Prevent Group Policy objects (GPOs) that are linked to the domain
from applying to computers located in the Applications OU
- Minimize the number of GPOs
- Minimize the number of Ous
What should you include in your design?
A. Create a Starter GPO.
B. Create a Windows Management Instrumentation (WMI) filter.
C. Delegate permissions on the Application OU.
D. Configure block inheritance on the Application OU.
Answer: D Explanation: Understanding Group Policy
You already know that Group Policy settings contained in Group Policy objects (GPOs) can be linked to OUs, and that OUs can either inherit settings from parent OUs or block inheritance and obtain their specific settings from their own linked GPOs.
You also know that some policies—specifically, security policies—can be set to “no override” so that they cannot be blocked or overwritten and force child OUs to inherit the settings from their parents.
QUESTION 19 Your network consists of a single Active Directory domain.
The functional level of the domain is Windows Server 2008 R2. All servers run Windows Server 2008 R2. A corporate security policy requires complex passwords for user accounts that have administrator
privileges. You need to design a strategy that meets the following requirements: - Ensures that administrators use complex passwords
- Minimizes the number of servers required to support the solution
What should you include in your design?
A. Implement Network Access Protection (NAP).
B. Implement Active Directory Rights Management Services (AD RMS).
C. Create a new Password Settings Object (PSO) for administrator accounts.
D. Create a new child domain in the forest.
Move all nonadministrator accounts to the new domain. Configure a complex password policy in the root domain.
Answer: C Explanation: http://technet.microsoft.com/en-us/library/cc770842%28WS.10%29.aspx
http://technet.microsoft.com/en-us/library/cc754461%28WS.10%29.aspx
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
QUESTION 20
Your network consists of a single Active Directory domain. The relevant portion of the Active Directory domain is configured as shown in the following diagram.
The Staff organizational unit (OU) contains all user accounts except for the managers' user accounts. The Managers OU contains the managers' user accounts and the following global groups: - Sales
- Finance
- Engineering
You create a new Group Policy object (GPO) named GPO1, and then link it to the Employees OU.
Users from the Engineering global group report that they are unable to access the Run command on the Start menu. You discover that the GPO1 settings are causing the issue.
You need to ensure that the users from the Engineering global group are able to access the Run command on the Start menu. What should you do?
Guarantee All Exams 100% Pass One Time!
70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html
A. Configure GPO1 to use the Enforce Policy option.
B. Configure Block Inheritance on the Managers OU.
C. Configure Group Policy filtering on GPO1 for the Engineering global group.
D. Create a new child OU named Engineering under the Employees OU.
Move the Engineering global group to the new Engineering child OU.
Answer: C
Explanation: MCITP Self-Paced Training Kit Exam 70-646 Windows Server Administration No administrator likes exceptions, but we are required to implement them.
Typically you might have configured security filtering, Windows Management Instrumentation (WMI) filters, block inheritance settings, no-override settings, loopback processing, and slow-link settings.
You need to check that these settings are not affecting normal GPO processing.