Microsoft 70-646 - Pro: Windows Server 2008, Server Administrator Exam

Question #11 (Topic: Topic 1)
You need to ensure that Admin1 can administer the Web servers to meet the company's
technical requirements. To which group should you add Admin1?
A. the Administrators local group on each Web server B. the Backup Operators domain local group C. the Backup Operators local group on each Web server D. the Domain Admins global group
Answer: B
Question #12 (Topic: Topic 1)
Your company has a main office and a branch office. Your network contains a single Active
Directory domain.
An Active Directory site exists for each office. All domain controllers run Windows Server
2008 R2. You plan to modify the DNS infrastructure. You need to plan the new DNS
infrastructure to meet the following requirements:
Ensure that the DNS service is available even if a single server fails
Encrypt the synchronization data that is sent between DNS servers
Support dynamic updates to all DNS servers
What should you include in your plan?
A. Install the DNS Server server role on two servers. Create a primary zone on the DNS server in the main office. Create a secondary zone on the DNS server in the branch office. B. Install the DNS Server server role on a domain controller in the main office and on a domain controller in the branch office. Configure DNS to use Active Directory integrated zones. C. Install the DNS Server server role on a domain controller in the main office and on a Readonly Domain Controller (RODC) in the branch office. Configure DNS to use Active Directory integrated zones. D. Install the DNS Server server role on two servers. Create a primary zone and a GlobalNames zone on the DNS server in the main office. Create a GlobalNames zone on the DNS server in the branch office.
Answer: B
Question #13 (Topic: Topic 1)
Your company has Windows Server 2008 R2 file servers.
You need to recommend a data recovery strategy that meets the following requirements:
Backups must have a minimal impact on performance.
All data volumes on the file server must be backed up daily.
If a disk fails, the recovery strategy must allow individual files to be restored.
Users must be able to retrieve previous versions of files without the intervention of an
administrator. What should you recommend?
A. Deploy File Server Resource Manger (FSRM). Use Windows Server Backup to perform a daily backup to an external disk. B. Deploy Windows Automated Installation Kit (Windows AIK). Enable shadow copies for the volumes that contain shared user data. Store the shadow copies on a separate physical disk. C. Use Windows Server Backup to perform a daily backup to an external disk. Enable shadow copies for the volumes that contain shared user data. Store the shadow copies on a separate physical disk. D. Use Windows Server Backup to perform a daily backup to a remote network share. Enable shadow copies for the volumes that contain shared user data. Store the shadow copies in the default location.
Answer: C
Question #14 (Topic: Topic 1)
Your network consists of three Active Directory forests. Forest trust relationships exist
between all forests. Each forest contains one domain. All domain controllers run Windows
Server 2008 R2.
Your company has three network administrators. Each network administrator manages a
forest and the Group Policy objects (GPOs) within that forest.
You need to create standard GPOs that the network administrators in each forest will use.
The GPOs must meet the following requirements:
? The GPOs must only contain settings for either user configurations or computer
configurations.
? The number of GPOs must be minimized.
Which two actions should you perform? (Each correct answer presents part of the solution.
Choose two.)
A. Export the new GPOs to .cab files. Ensure that the .cab files are available to the network administrator in each forest. B. Create two new GPOs. Configure both GPOs to use the required user configurations and the required computer configurations. C. Create two new GPOs. Configure one GPO to use the required user configuration. Configure the other GPO to use the required computer configuration. D. Back up the Sysvol folder that is located on the domain controller where the new GPOs were created. Provide the backup to the network administrator in each forest.
Answer: A,C
Question #15 (Topic: Topic 1)
Your network consists of a single Active Directory domain. All domain controllers run
Windows Server 2008 R2. The network contains 100 servers and 5,000 client computers.
The client computers run either Windows XP Service Pack 1 or Windows 7.
You need to plan a VPN solution that meets the following requirements:
Stores VPN passwords as encrypted text
Supports Suite B cryptographic algorithms
Supports automatic enrollment of certificates
Supports client computers that are configured as members of a workgroup
What should you include in your plan?
A. Upgrade the client computers to Windows XP Service Pack 3. Implement a standalone certification authority (CA). Implement an IPsec VPN that uses certificate based authentication. B. Upgrade the client computers to Windows XP Service Pack 3. Implement an enterprise certification authority (CA) that is based on Windows Server?2008 R2. Implement an IPsec VPN that uses Kerberos authentication. C. Upgrade the client computers to Windows 7. Implement an enterprise certification authority (CA) that is based on Windows Server 2008 R2. Implement an IPsec VPN that uses preshared keys. D. Upgrade the client computers to Windows 7. Implement an enterprise certification authority (CA) that is based on Windows Server 2008 R2. Implement an IPsec VPN that uses certificate based authentication.
Answer: D
Download Exam
Page: 3 / 53
Total 262 questions