Microsoft AZ-802 - Administering Windows Server Exam
Page: 2 / 13
Total 63 questions
Question #6 (Topic: Topic 1, Deploy and manage AD DS
)
HOTSPOT
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains two domain controllers named DC1 and DC2.
Active Directory Recycle Bin is disabled.
You discover that an organizational unit (OU) named Finance and its child objects were deleted from DC1. The deletion replicated to DC2. DC1 has a system state backup from before the deletion. Changes to other AD DS objects were made after the backup.
You need to recover only the Finance OU and its child objects. The solution must ensure that the recovered objects replicate to DC2, and the unrelated AD DS changes are preserved.
What should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains two domain controllers named DC1 and DC2.
Active Directory Recycle Bin is disabled.
You discover that an organizational unit (OU) named Finance and its child objects were deleted from DC1. The deletion replicated to DC2. DC1 has a system state backup from before the deletion. Changes to other AD DS objects were made after the backup.
You need to recover only the Finance OU and its child objects. The solution must ensure that the recovered objects replicate to DC2, and the unrelated AD DS changes are preserved.
What should you configure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Question #7 (Topic: Topic 1, Deploy and manage AD DS
)
HOTSPOT
Your network contains the Active Directory Domain Services (AD DS) forests shown in the following table.

You need to configure trust relationships as shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Your network contains the Active Directory Domain Services (AD DS) forests shown in the following table.

You need to configure trust relationships as shown in the following table.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Question #8 (Topic: Topic 1, Deploy and manage AD DS
)
Your network contains an Active Directory Domain Services (AD DS) domain.
A Group Policy Object (GPO) named Security Baseline is linked to the domain. The link is configured as Enforced.
A GPO named Kiosk Baseline is linked to an organizational unit (OU) named Kiosks.
Client computers in the Kiosks OU receive Group Policy settings from the Security Baseline GPO.
You need to ensure that the computers in Kiosks receive settings from the Kiosk Baseline GPO. Security Baseline must continue to apply to other client computers in the domain.
What should you do?
A Group Policy Object (GPO) named Security Baseline is linked to the domain. The link is configured as Enforced.
A GPO named Kiosk Baseline is linked to an organizational unit (OU) named Kiosks.
Client computers in the Kiosks OU receive Group Policy settings from the Security Baseline GPO.
You need to ensure that the computers in Kiosks receive settings from the Kiosk Baseline GPO. Security Baseline must continue to apply to other client computers in the domain.
What should you do?
A. Select Enforced for Kiosk Baseline.
B. Clear Enforced for the Security Baseline link.
C. Block inheritance for Kiosks.
D. Link Kiosk Baseline to the domain.
Answer: A
Question #9 (Topic: Topic 1, Deploy and manage AD DS
)
HOTSPOT
Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com.
The domain contains a user named User1 and two global security groups named Group1 and Group2. User1 is a member of both groups.
A Group Policy Object (GPO) named GPO1 is linked to the domain. GPO1 contains the following User Configuration preference items.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com.
The domain contains a user named User1 and two global security groups named Group1 and Group2. User1 is a member of both groups.
A Group Policy Object (GPO) named GPO1 is linked to the domain. GPO1 contains the following User Configuration preference items.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.
Answer:
Question #10 (Topic: Topic 1, Deploy and manage AD DS
)
DRAG DROP
Your network contains an Active Directory Domain Services (AD DS) forest.
The forest contains a root domain named contoso.com and a child domain named branch.contoso.com. The domain contains a domain controller named DC1 that holds all the domain-wide FSMO roles.
DC1 fails and cannot be restored, causing the following issues:
Recent password changes are NOT recognized immediately during sign-ins to contoso.com.
Domains cannot be added or removed from the forest.
You need to seize the minimum domain-wide FSMO roles on a domain controller named DC2 to resolve the issues.
Which role should you seize for each issue? To answer, drag the appropriate roles to the correct issue. Each role may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Your network contains an Active Directory Domain Services (AD DS) forest.
The forest contains a root domain named contoso.com and a child domain named branch.contoso.com. The domain contains a domain controller named DC1 that holds all the domain-wide FSMO roles.
DC1 fails and cannot be restored, causing the following issues:
Recent password changes are NOT recognized immediately during sign-ins to contoso.com.
Domains cannot be added or removed from the forest.
You need to seize the minimum domain-wide FSMO roles on a domain controller named DC2 to resolve the issues.
Which role should you seize for each issue? To answer, drag the appropriate roles to the correct issue. Each role may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Answer: