Microsoft AZ-802 - Administering Windows Server Exam

Question #11 (Topic: Topic 1, Deploy and manage AD DS )
Your network contains an on-premises Active Directory Domain Services (AD DS) domain named contoso.com.
You have an Azure virtual network named VNet1 that is connected to the on-premises network by using a Site-to-Site (S2S) VPN.
VNet1 contains a domain-joined virtual machine named VM1 that hosts an application named App1.
App1 uses Kerberos authentication and updates objects in AD DS. An Azure Firewall filters communication from VM1 to the domain controllers in contoso.com.
You need to deploy domain controllers to VNet1. The solution must support the requirements of VM1 and provide domain controller redundancy in Azure.
What should you deploy?
A. two writable domain controller virtual machines across availability zones B. two read-only domain controller (RODC) virtual machines across availability sets C. two writable domain controller virtual machines, each in a distinct Azure region D. two read-only domain controller (RODC) virtual machines, each in a distinct Azure region
Answer: A
Question #12 (Topic: Topic 1, Deploy and manage AD DS )
Your network contains an Active Directory Domain Services (AD DS) forest.
The forest contains a root domain named contoso.com and a child domain named branch.contoso.com.
The forest contains the domain controllers shown in the following table.

You discover that cross-domain object references in contoso.com fail to update for objects in branch.contoso.com.
You need to modify the FSMO role placement. The solution must minimize administrative changes.
What should you do?
A. Transfer the infrastructure master role for contoso.com from DC1 to DC2. B. Transfer the PDC emulator role for contoso.com from DC1 to DC2. C. Transfer the schema master role from DC1 to DC2. D. Transfer the infrastructure master role for branch contoso.com from DC4 to DC3. E. Transfer the domain naming master role from DC1 to DC2.
Answer: A
Question #13 (Topic: Topic 2, Manage Windows Server instances and workloads in a hybrid environment )
HOTSPOT
Overview
Contoso, Ltd. is a company that has a main office in Seattle and two branch offices in Los Angeles and Montreal.
Existing Environment

AD DS Environment
The network contains an on-premises Active Directory Domain Services (AD DS) forest named contoso.com. The forest contains two domains named contoso.com and canada.contoso.com.
The forest contains the domain controllers shown in the following table.

All the domain controllers are global catalog servers.
Server Infrastructure
The network contains the servers shown in the following table.

A server named Server4 runs Windows Server and is in a workgroup. Windows Defender Firewall on Server4 uses the private profile.
Server2 hosts three virtual machines named VM1, VM2, and VM3.
VM3 is a file server that stores data in the volumes shown in the following table.

Group Policies
The contoso.com domain has the Group Policies Objects (GPOs) shown in the following table.

Existing Identities
The forest contains the users shown in the following table.

The forest contains the groups shown in the following table.

Current Problems
When an administrator signs in to the console of VM2 by using Virtual Machine Connection, and then disconnects from the session without signing out, another administrator can connect to the console session as the currently signed-in user.
Requirements
Technical Requirements
Contoso identifies the following technical requirements:
Change the replication schedule for all site links to 30 minutes.
Promote Server1 to a domain controller in canada.contoso.com.
Install and authorize Server3 as a DHCP server.
Ensure that User1 can manage the membership of all the groups in Contoso\OU3.
Ensure that you can manage Server4 from Server1 by using PowerShell remoting.
Ensure that you can run virtual machines on VM1.
Force users to provide credentials when they connect to VM2.
On VM3, enable Data Deduplication on all volumes that support the feature.
You need to meet the technical requirements for Server4.
Which cmdlets should you run on Server1 and Server4? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point
Answer:
Question #14 (Topic: Topic 2, Manage Windows Server instances and workloads in a hybrid environment )
HOTSPOT
Your network contains two VLANs for client computers and one VLAN for a datacenter. Each VLAN is assigned an IPv4 subnet. Currently, all the client computers use static IP addresses.
You plan to deploy a DHCP server to the VLAN in the datacenter.
You need to use the DHCP server to provide IP configurations to all the client computers.
What is the minimum number of scopes and DHCP relays you should create? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Question #15 (Topic: Topic 2, Manage Windows Server instances and workloads in a hybrid environment )
HOTSPOT
You have an administrative workstation named AdminPC in a workgroup.
AdminPC has existing entries in the WSMan TrustedHosts list.
You have a server named Server1 that has PowerShell remoting enabled and is reachable at an IP address of 172.16.10.20.
You need to create a remote PowerShell session from AdminPC to Server1. The solution must meet the following requirements:
Preserve the existing TrustedHosts entries on AdminPC.
Use the IP address of Server1 for the remote session.
How should you complete the script? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Download Exam
Page: 3 / 13
Total 63 questions