显示标签为“070-294”的博文。显示所有博文
显示标签为“070-294”的博文。显示所有博文

2014年3月20日星期四

Pass4Test offre de Microsoft 070-294 070-293 070-291 070-290 070-270 70-683 matériaux d'essai

Pass4Test vous promet de vous aider à passer le test Microsoft 070-294 070-293 070-291 070-290 070-270 70-683, vous pouvez télécharger maintenant les Q&As partielles de test Microsoft 070-294 070-293 070-291 070-290 070-270 70-683 en ligne. Il y a encore la mise à jour gratuite pendant un an pour vous. Si vous malheureusement rater le test, votre argent sera 100% rendu.

Après une longue attente, les documentations de test Microsoft 070-294 070-293 070-291 070-290 070-270 70-683 qui combinent tous les efforts des experts de Pas4Test sont finalement sorties. Les documentations de Pass4Test sont bien répandues pendant les candidats. L'outil de formation est réputée par sa haute précision et grade couverture des questions, d'ailleurs, il est bien proche que test réel. Vous pouvez réussir le test Microsoft 070-294 070-293 070-291 070-290 070-270 70-683 à la première fois.

Code d'Examen: 070-294
Nom d'Examen: Microsoft (Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 AD Infrastructure)
Questions et réponses: 220 Q&As

Code d'Examen: 070-293
Nom d'Examen: Microsoft (Planning and Maintaining a Microsoft Windows Server 2003 Network Infrastructure)
Questions et réponses: 290 Q&As

Code d'Examen: 070-291
Nom d'Examen: Microsoft (Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure)
Questions et réponses: 260 Q&As

Code d'Examen: 070-290
Nom d'Examen: Microsoft (Managing and Maintaining a Microsoft Windows Server 2003 Environment)
Questions et réponses: 268 Q&As

Code d'Examen: 070-270
Nom d'Examen: Microsoft (Installing, Configuring, and Administering Microsoft Windows XP Professional)
Questions et réponses: 170 Q&As

Code d'Examen: 70-683
Nom d'Examen: Microsoft (TS: Windows 7, Preinstalling for OEMs )
Questions et réponses: 87 Q&As

Pass4Test est un site de provider les chances à se former avant le test Certification IT. Il y a de différentes formations ciblées aux tous candidats. C'est plus facile à passer le test avec la formation de Pass4Test. Parmi les qui ont déjà réussi le test, la majorité a fait la préparation avec la Q&A de Pass4Test. Donc c'est pourquoi, Pass4Test a une bonne réputation dansn l'Industrie IT.

Pour l'instant, vous pouvez télécharger le démo gratuit de Q&A Microsoft 070-294 070-293 070-291 070-290 070-270 70-683 dans Pass4Test pour se former avant le test Microsoft 070-294 070-293 070-291 070-290 070-270 70-683.

070-291 Démo gratuit à télécharger: http://www.pass4test.fr/070-291.html

NO.1 Active Screen
You are the network administrator for your company.The network consists of a single Active Directory
domain.The relevant portion of the network is shown in the exhibit.(Click the Exhibit button.)
You need to configure a server named Server1 to use a valid static IP configuration.You need to enable
Server1 to
communicate with all hosts on the network and on the Internet.You want Server1 to query the DNS server
on the local subnet for name resolution.You also want to configure redundancy for name resolution.
What should you do?
To answer, configure the correct options in the dialog box.Drag the appropriate IP address or addresses
and the appropriate subnet mask or masks to the appropriate location or locations in the dialog box.
Answer:

NO.2 131.107.11.0/23

NO.3 You are the network administrator for your company.The network consists of a single Active Directory
domain.The functional level of the domain is Windows Server 2003. All client computers in the domain run
Windows XP Professional.
An application named Inventory.exe is installed on all computers in the domain to remotely gather
software inventory information.The application runs as a service in the security context of the Local
System.The startup type of the service is set to Automatic.
In the Default Domain Policy Group Policy object (GPO), the security administrator has configured a
software restriction policy that is applied to all computers in the domain.The policy contains a hash rule for
the
Inventory.exe application, and the hash rule is configured with a security level of Unrestricted.
The client computers on the network are attacked by a worm that is distributed by e-mail messages
received over the Internet.The worm detects the presence of Inventory.exe on a computer, then starts a
new instance of the application in the security context of the logged-on user.The worm exploits a bug in
the application to cause the
computer to fail.
You need to ensure that Inventory.exe cannot be started by the worm, while still allowing the application to
run as a service.
What should you do?
A.In the computer settings section of the Default Domain Policy GPO, configure a software restriction
policy that contains a zone rule for the Internet zone.Configure the zone rule with a security level of
Disallowed.
B.In the user settings section of the Default Domain Policy GPO, configure a software restriction policy
that contains a zone rule for the Internet zone.Configure the zone rule with a security level of Disallowed.
C.In the user settings section of the Default Domain Policy GPO, configure a software restriction policy
that
contains a hash rule for the Inventory.exe application.Configure the hash rule with a security level of
Disallowed.
D.In the computer settings section of the Default Domain Policy GPO, modify the existing software
restriction policy hash rule for the Inventory.exe application so that the hash rule has a security level of
Disallowed.
Answer: D

Microsoft   certification 070-291   070-291   certification 070-291

NO.4 131.107.12.0/24
Answer
:
2.You are the network administrator for your company.All servers run Windows Server 2003. All servers
are configured with static IP addresses.All client computers run Windows XP Professional.All client
computers are configured as DHCP clients.
The company has a main office and one branch office.The offices are separated by a router.A DHCP
server is deployed in each office.
One of the DHCP servers shuts down unexpectedly.It takes four hours to repair the server.During that
time, several mobile users connect their portable computers to the network and report that they cannot
connect to shared resources on the network.
After the server is repaired, you create a new scope on each DHCP server that includes IP addresses for
the other office.You activate the scopes.
You test the new DHCP configuration by shutting down the DHCP server in the main office.You find out
that the client computers in the main office are not receiving IP addresses from the DHCP server in the
branch office. You need to ensure that when the DHCP server in one office fails, the client computers will
receive a correct IP
address configuration from the DHCP server in the other office.
What are two possible ways to achieve this goal? (Each correct answer presents a complete
solution.Choose two.)
A.Configure the router between the offices to forward BOOTP broadcasts.
B.Configure the DHCP server in each office with a DHCP scope that includes the same IP addresses as
the DHCP server in the other office.Activate the scope.
C.Configure the DHCP server in each office with an additional network adapter.Connect each new
network adapter to the local network.Assign an IP address from the other office's network to each new
network adapter.
D.Install and configure a DHCP relay agent in each office.
Answer: DA

Microsoft examen   070-291 examen   070-291 examen   070-291   certification 070-291
3.You are the network administrator for your company.The network consists of a single Active Directory
domain.All servers run Windows Server 2003.
The network contains a Web server named Server1 that runs IIS 6.0 and hosts a secure Web site.The
Web site is accessible from the intranet, as well as from the Internet.All users must authenticate when
they connect to Server1.
All users on the Internet must use a secure protocol to connect to the Web site.Users on the intranet do
not need to use a secure protocol.
You need verify that all users are using a secure protocol to connect to Server1 from the Internet.
What are two possible ways to achieve this goal? (Each correct answer presents a complete
solution.Choose two.)
A.Monitor the events in the application log on Server1.
B.Monitor the events in the security log on Server1.
C.Monitor the Web server connections on Server1 by using a performance log.
D.Monitor network traffic to Server1 by using Network Monitor.
E.Monitor the IIS logs on Server1.
Answer: ED

Microsoft   070-291   070-291   070-291 examen
4.You are the administrator of an Active Directory domain.All servers run Windows Server 2003. All client
computers run Windows XP Professional.All computers are members of the domain.
The Secure Server (Require Security) IPSec policy is assigned to a file server named Server6. The policy
is configured as shown in the exhibit.(Click the Exhibit button.)
Users report that they cannot access shared folders on Server6. Users were able to access shared
folders on
Server6 prior to the implementation of the IPSec policy.
You need to ensure that all client computers in the domain can access the shared folders on Server6. You
must ensure that all communications between client computers and Server6 be encrypted.
What should you do?
A.On Server6, enable the All ICMP Traffic IP Security rule in the properties of the Secure Server (Require
Security) IPSec policy.
B.On Server6, enable the <Dynamic> IP Security rule in the properties of the Secure Server (Require
Security)
IPSec policy.
C.On all client computers, assign the Client (Respond Only) IPSec policy.
D.On all client computers, install an IPSec communication certificate in the local machine store.
Answer: C

certification Microsoft   070-291 examen   070-291   070-291   070-291 examen
5.You are a network administrator for your company.The network consists of a single Active Directory
domain.All servers run Windows Server 2003.
The company has a main office and one branch office.The perimeter networks for each office are
configured as shown in the exhibit.(Click the Exhibit button.)
You configure an L2TP/IPSec VPN tunnel between Server1 and Server2. You also configure and assign
an IPSec
policy named RASIPSec that requires secure communications.
You need to ensure that no unsecured traffic from the Internet reaches the internal network through this
VPN.You
also need to ensure that access to the VPN servers from their respective internal networks is not
disrupted. What should you do?
A.Configure input and output L2TP/IPSec packet filters on the internal interfaces of Server1 and Server2.
B.Configure input and output L2TP/IPSec packet filters on the external interfaces of Server1 and Server2.
C.In the properties of RASIPSec, edit the All IP Traffic IP Filter list to include the IP addresses for only
Server1 and Server2.
D.In the properties of RASIPSec, edit the All ICMP Traffic IP Filter list to include the IP addresses for only
Server1 and Server2.
Answer: B

Microsoft examen   070-291   070-291
6.You are the administrator of an Active Directory domain.The network contains a Windows Server 2003
domain controller named Server1.
Users report that they experience intermittent delays when they log on to Server1. Administrators report
that replication attempts between Server1 and other domain controllers are occasionally delayed.
You need to verify the cause of the intermittent connection delays to Server1. You also need to find out
whether the problem is related to a hardware deficiency on Server1. You need to track these delays over
a period of one day.
What should you do first?
A.Run the netdiag /verbose command to perform a network diagnostic test on Server1.
B.Run the replmon command to view the Active Directory replication status on Server1.
C.Use Network Monitor to view the network traffic packet contents between Server1 and all other
computers.
D.Create a System Monitor counter to track the queue lengths on the network adapter on Server1.
Answer: D

Microsoft   070-291   070-291   certification 070-291

NO.5 You are the administrator of a Windows Server 2003 computer named Server1. Server1 has a
third-party application installed on it.The third-party application runs as a service that is named Service1.
Service1 fails periodically.
You need to configure the recovery options for Service1 to meet the following requirements:
If Service1 runs successfully for a day or more, you need to ensure that only the service is immediately
restarted upon failure.
If, after this failure, Service1 does not run successfully for another day, you must ensure the entire server
is immediately restarted.
Which three actions should you perform? (Each correct answer presents part of the solution.Choose
three.)
A.Configure the Reset fail count after value for Service1 to 1 day.
B.Configure the Restart service after value for Service1 to 1,440 minutes.
C.Configure the response to the first failure to be to restart Service1.
D.Configure the response to the first failure to be to restart Server1.
E.Configure the response to the second failure to be to restart Service1.
F.Configure the response to the second failure to be to restart Server1.
Answer: FCA

Microsoft   070-291 examen   070-291 examen

NO.6 131.107.10.0/24

NO.7 You are the network administrator for your company.The network consists of a single subnet.A
Windows
Server 2003 computer named Server1 functions as a DHCP server.
Server1 leases IP addresses in the 10.1.1.0/24 range to desktop client computers.There are 12 client
reservations for other servers and network printers.You have configured several detailed scope and
server options. If Server1 fails, you want to have a contingency plan that will allow you to use a domain
controller named DC2 as a DHCP server as quickly as possible.You install DHCP on DC2 without any
configuration and stop the DHCP
Server service.
You want to list the tasks that are required to back up Server1 and the tasks that are required to restore
the backup to DC2. A backup age of 24 hours or less is acceptable.
If Server1 fails, which set of tasks is required to enable DC2 to replace Server1 as the DHCP server?
A.On Server1: Schedule the Backup utility to back up the System State data to tape every 24 hours.
On DC2: Perform a non-authoritative System State restore.Using the Services console, start the DHCP
Server
service.Authorize DHCP.Reconcile the database.
B.On Server1: Use the Backup utility to schedule a tape backup of the DHCP database every 24 hours.
On DC2: Restore the tape backup of the DHCP database to a folder.Using the DHCP console, restore the
backup from the same folder.From the command prompt, type net start dhcpserver.Authorize DHCP.
C.On Server1: Schedule the Backup utility to back up the System State data to tape every 24 hours.
On DC2: Perform an authoritative System State restore.Manually re-create the server and scope options
that were on Server1. From a command prompt, type net start dhcpserver.Authorize DHCP.
D.On Server1: Use the DHCP console to perform a DHCP backup every 24 hours.Copy the backup on a
network share that is accessible by DC2.
On DC2: Copy the backup to a local folder.Using the DHCP console, restore the backup from the local
folder.From a command line, type net start dhcp.Authorize DHCP.Re-create the 12 client reservations.
Answer: B

Microsoft   070-291   certification 070-291

NO.8 Drag and Drop
You are the network administrator for Contoso, Ltd.The network consists of a single Active Directory
forest.The
forest contains two domains named contoso.com and corp.contoso.com.The functional level of the forest
and the two domains is Windows Server 2003.
The corp.contoso.com zone is configured as an Active Directory-integrated zone.The corp.contoso.com
zone is also configured to replicate to all domain controllers in the domain.
The servers are configured as shown in the following table.
You plan to remove Server1 from the network.You need to install DNS to host the corp.contoso.com
zone.Your solution must be fault-tolerant.
On which server or servers should you install DNS?
To answer, drag the DNS service to the correct server or servers in the work area.
Answer:

NO.9 131.107.12.0/23

NO.10 You are the network administrator for your company.The network consists of a single Active Directory
domain.All servers run Windows Server 2003. All client computers run Windows XP Professional.
You need to implement a new software update infrastructure.You discover that security patches, critical
updates, and service packs have never been installed on any client computer on the network.
You install Windows Server Update Services (WSUS) on a Windows Server 2003 computer named
Server5. You synchronize and approve all of the current security patches, critical updates, and service
packs.
You need to ensure that all client computers receive all Microsoft security patches, critical updates, and
service packs.
Which two actions should you perform? (Each correct answer presents part of the solution.Choose two.)
A.Open the WSUS console.Select the option to automatically approve WSUS updates.
B.Install the Automatic Updates client on all client computers.
C.Modify the Microsoft Update settings of the Default Domain Controller organizational unit (OU) Group
Policy object (GPO) to point client computers to http ://server5.
D.Modify the Microsoft Update settings of the Default Domain Policy Group Policy object (GPO) to point
client computers to http: //server5.
E.Open the WSUS console.Create a target group and assign all client computers to the group.
Answer: B D

Microsoft   070-291   certification 070-291   070-291

NO.11 You are a network administrator for A.Datum Corporation.The network consists of a single Active
Directory domain named adatum.net.
Users regularly browse the internal network and the Internet from their client computers.All Web and
e-mail hosting for a separate DNS domain named adatum.com is outsourced to an ISP.All name
resolution requests for adatum.com are resolved by the ISP.You have no administrative control over the
DNS servers at the ISP.You
cannot list the contents of adatum.com by using the nslookup command on the DNS servers at the ISP.
A Windows Server 2003 computer named Server1 is configured with a primary zone for adatum.net.All
root hints have been removed from Server1. All client computers refer to this DNS server for name
resolution.
You need to configure DNS resolution to ensure that all client computers can locate and access resources
in adatum.net, adatum.com, and the Internet.
What should you do?
A.Configure a secondary zone for adatum.com on Server1.
B.Configure a primary zone for adatum.com on Server1.
C.Configure conditional forwarding for adatum.com with the IP address of the DNS server at the ISP.
D.Configure simple forwarding with the default settings with the IP address of the DNS server at the ISP.
Answer: D

certification Microsoft   070-291   070-291   070-291

NO.12 You are the administrator of a Windows Server 2003 computer named Server1. Server1 is a domain
member server that has the DNS service installed.
Server1 is configured with two network interfaces named NIC1 and NIC2. Routing is not enabled between
the two network interfaces.NIC1 and NIC2 are configured as shown in the following table.
Resources on the preproduction network segment use the same fully qualified domain names (FQDNs)
as resources in the production network.The TCP/IP properties on client computers in the preproduction
environment are controlled by individual testers.
You need to ensure that the users in the preproduction environment cannot resolve FQDNs from the
production network.You want to accomplish this goal by using the DNS console on Server1.
What should you do?
A.Configure the interfaces properties on Server1 to listen on 192.168.2.10 only.
B.Configure the forwarders on Server1 to refer requests to 192.168.3.2.
C.Configure Server1 to disable recursion.
D.Configure Server1 to disable round robin.
Answer: A

certification Microsoft   certification 070-291   certification 070-291   certification 070-291

NO.13 You are the network administrator for your company.The network contains a Windows Server 2003
computer named Server1.
Three administrators are members of the Administrators local group on Server1. Twelve other
administrators are members of the Domain Admins group.The Domain Admins group is also a member of
the Administrators local group on Server1.
Someone makes an unauthorized change to the HKEY_LOCAL_MACHINE\SYSTEM key in the registry
on
Server1, which causes the computer to fail.You fix the problem.
You need to log all attempts to access the HKEY_LOCAL_MACHINE\SYSTEM key in the registry on
Server1.
You decide to enable auditing in the local security policy on Server1.
Which two actions should you perform? (Each correct answer presents part of the solution.Choose two.)
A.Enable auditing in the local security policy on Server1. Select the Audit object access (success and
failure) option in the audit policy.
B.Enable auditing in the local security policy on Server1. Select the Audit privilege use (success and
failure) option in the audit policy.
C.Enable auditing in the local security policy on Server1. Select the Audit system events (success and
failure) option in the audit policy.
D.Configure the SACL on the HKEY_LOCAL_MACHINE\SYSTEM key in the registry.Specify auditing of
the Full Control permission for Everyone.
E.Configure the SACL on the HKEY_LOCAL_MACHINE\SYSTEM key in the registry.Specify auditing of
the Set Value permission for Everyone.
Answer: D A

Microsoft   070-291 examen   070-291   certification 070-291   070-291 examen

NO.14 Drag and Drop
You are a network administrator for the Graphic Design Institute.The network contains five Windows
Server 2003 computers that also function as DNS servers.The servers are configured as shown in the
work area.
The Lagos and Nairobi branches of the school each have five Windows XP Professional client
computers.The
Tangier branch has 5,000 Windows XP Professional client computers, and the Cape Town branch has
2,500
Windows XP Professional client computers.
Server1 is located in the school's main office in Cairo.Server1 is the authoritative server for a zone named
TestInside.com.No changes are planned for the name server (NS) resource records for TestInside.com.
The DNS servers in the Nairobi and Lagos branches are multiuse servers that are configured with the
minimum hardware necessary to run Windows Server 2003. The DNS servers in the Cape Town and
Tangier branches are configured as dedicated servers with hardware that is sufficient to sustain multiple
DNS zones.
You need to ensure that the following requirements are met:
Each client computer can resolve names on the network as quickly as possible by using a fully qualified
domain name (FQDN).
Prevent zone replication traffic from occurring on the slow network connections.
Minimize hard disk utilization on the DNS servers in the Lagos and Nairobi branches as much as possible.
Ensure that DNS queries in Tangier and Cape Town are resolved locally.
How should you configure the remote DNS servers?
To answer, drag the appropriate server configuration to the correct server or servers in the work area.
Answer:

NO.15 You are a network administrator for Alpine Ski House.The network consists of a single Active Directory
domain named alpineskihouse.com.
Your company acquires a company named Adventure Works.The Adventure Works network consists of a
single
Active Directory domain named adventure-works.com.
A server named Server32 is a network-management application server in the adventure-works.com
domain.Server32 accesses all of the desktop client computers to perform automated software upgrades
and hardware inventory.The network-management software on Server32 references desktop computers
by unqualified
host names, which are resolved to clientname.adventure-works.com by using a DNS server.
You join Server32 to your domain to become server32.alpineskihouse.com.The Server32 IP address is
10.10.10.90.
You are gradually migrating all adventure-works.com desktop client computers to your domain to become
clientname.alpineskihouse.com.You do not have access to the adventure-works.com DNS server.When
Server32 attempts to apply an update to the client computers, the network-management software returns
many alerts that say that desktop computers cannot be found.
You want to allow the network-management software on Server32 to resolve unqualified client computer
host
ames in adventure-works.com or alpineskihouse.com, and you want to use the minimum amount of
administrative effort.
What should you do?
A.On the DNS server for alpineskihouse.com, add a zone for adventure-works.com.Create a host (A)
record for server32.adventure-works.com that points to 10.10.10.90.
B.On Server32, in System Properties, type adventure-works.com in the Primary DNS suffix of this
computer field in the DNS Suffix and Netbios Computer Name setting.
C.On Server32, configure a Hosts file that contains the name and IP address of every network computer.
D.On Server32, in Advanced TCP/IP Settings, add adventure-works.com and alpineskihouse.com to the
Append these DNS suffixes (in order) setting.
Answer: D

Microsoft   certification 070-291   070-291 examen   070-291 examen

NO.16 You are the network administrator for your company.The network consists of a single Active Directory
domain.
The domain contains an organizational unit (OU) named Webservers.The Webservers OU contains the
computer accounts of 12 Windows Server 2003 computers that function as intranet Web servers.A Group
Policy object (GPO) named WebserversPolicy is linked to the Webservers OU.The GPO is used to
configure various settings on
the computers in the OU.A global group named WebserverAdmins is a member of the Administrators local
group on each intranet Web server.
You plan to install a security scanning application on each intranet Web server.The documentation for the
application states that it uses a service account, which must be able to modify the
HKEY_LOCAL_MACHINE\SYSTEM key in the registry of every computer on which the application is
installed.
You create the service account in the domain.The company's written security policy states that service
accounts must be assigned only the minimum rights and permissions that they require to function.
You need to configure the intranet Web servers so that they comply with the installation requirements of
the security scanning application.You also need to comply with the company's security policy.You want to
achieve this goal by using the minimum amount of administrative effort.
What should you do?
A.Add the service account to the WebserverAdmins global group.
B.Configure the required permissions as registry security settings in the WebserversPolicy GPO.
C.Run the regedit.exe command to add the required permissions to the registry of each intranet Web
server.
D.Run the explorer.exe command to modify NTFS permissions on the
Systemroot\System32\Config\System
file.Assign the service account the Allow - Change permission.
E.Configure file system security settings in the WebserversPolicy GPO to modify NTFS permissions on
the
Systemroot\System32\Config\System file.Assign the service account the Allow - Change permission.
Answer: D

Microsoft examen   070-291   070-291   070-291   certification 070-291

NO.17 Drag drop
You are the network administrator for a Web hosting company.All servers run Windows Server 2003. All
client computers run Windows XP Professional.
Your company is assigned the following IP address ranges by the ISP:
>131.107.10.0 through 131.107.10.255
>131.107.11.0 through 131.107.11.255
The company's data center contains 400 Windows Server 2003 computers and consists of two subnets
named subnet A and subnet B.Subnet A contains 200 servers and uses the 131.107.10.0 network
address.Subnet B also contains 200 servers and uses the 131.107.11.0 network address.All server IP
addresses are assigned by DHCP.All computers in the data center have valid Internet-accessible IP
addresses.
As a result of a corporate acquisition, 200 additional servers will be added to your company's data center
within one month.The new servers will be placed on the network segment that maps to subnet A.The
existing router does not have the capacity for an additional subnet, and the budget does not allow the
purchase of a new router.You will
need to add the additional servers to the existing subnet A.The ISP assigns you the additional IP address
range 131.107.12.0 through 131.107.12.255.
You need to change the IP addressing scheme to accommodate all required servers in subnet A and
subnet B.You are authorized to make any necessary changes.
The diagram in the work area shows the network configuration and the planned number of servers for
each subnet.
Which IP address should be assigned to each subnet?
To answer, drag the appropriate IP address or addresses to the correct locations in the work area.
IP address IP Addresses
1> 131.107.10.0/23

NO.18 You are the network administrator for your company.The network consists of a single Active Directory
domain.The domain contains 35 Windows Server 2003 computers; 3,000 Windows XP Professional
computers; and 2,000 Windows 2000 Professional computers.
Windows Server Update Services (WSUS) is installed on a server named Server1. The necessary Group
Policy object (GPO) is configured.
You need to confirm whether all computers in the domain have received all approved updates from
Server1.
What should you do on Server1?
A.Install and configure Urlscan.exe.
B.At the command prompt, type gpresult /scope COMPUTER.
C.Open the WSUS console.Run the Status of Computers report.
D.Open the WSUS console.Run the Synchronization Results report.
Answer: C

Microsoft examen   070-291   070-291

NO.19 131.107.11.0/24

NO.20 You are the network administrator for your company.The network consists of a single Active Directory
domain.All servers run Windows Server 2003. All client computers run Windows XP Professional.
You install Windows Server Update Services (WSUS) on a network server named Server1. When you
attempt to synchronize Server1 with the Windows Update servers, you receive an error message.You
open Internet Explorer and verify that you can communicate with an external Web site by using the proxy
server.
You need to ensure that Server1 can communicate with the Windows Update servers.
What should you do on Server1?
A.Restart the IIS administration tool.
B.Configure the Internet Explorer settings to bypass the proxy server.
C.In the WSUS options, configure authentication to the proxy server.
D.Install the ISA Firewall Client.
Answer: C

certification Microsoft   070-291   certification 070-291

2014年1月22日星期三

Dernières Microsoft 070-294 de la pratique de l'examen questions et réponses téléchargement gratuit

Dépenser assez de temps et d'argent pour réussir le test Microsoft 070-294 ne peut pas vous assurer à passer le test Microsoft 070-294 sans aucune doute. Choisissez le Pass4Test, moins d'argent coûtés mais plus sûr pour le succès de test. Dans cette société, le temps est tellement précieux que vous devez choisir un bon site à vous aider. Choisir le Pass4Test symbole le succès dans le future.

Le temps est tellement précieux dans cette société que une bonn façon de se former avant le test Microsoft 070-294 est très important. Pass4Test fait tous efforts à assurer tous les candidats à réussir le test. Aussi, un an de mise à jour est gratuite pour vous. Si vous ne passez pas le test, votre argent sera tout rendu.

Dans cette époque glorieuse, l'industrie IT est devenue bien intense. C'est raisonnable que le test Microsoft 070-294 soit un des tests plus populaires. Il y a de plus en plus de gens qui veulent participer ce test, et la réussite de test Microsoft 070-294 est le rêve pour les professionnels ambitieux.

Le test de Certification Microsoft 070-294 devient de plus en plus chaud dans l'Industrie IT. En fait, ce test demande beaucoup de travaux pour passer. Généralement, les gens doivent travailler très dur pour réussir.

Pour vous laisser savoir mieux que la Q&A Microsoft 070-294 produit par Pass4Test est persuadante, le démo de Q&A Microsoft 070-294 est gratuit à télécharger. Sous l'aide de Pass4Test, vous pouvez non seulement passer le test à la première fois, mais aussi économiser vos temps et efforts. Vous allez trouver les questions presque même que lesquels dans le test réel. C'est pourquoi tous les candidats peuvent réussir le test Microsoft 070-294 sans aucune doute. C'est aussi un symbole d'un meilleur demain de votre carrière.

Code d'Examen: 070-294
Nom d'Examen: Microsoft (Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 AD Infrastructure)
Questions et réponses: 220 Q&As

070-294 Démo gratuit à télécharger: http://www.pass4test.fr/070-294.html

NO.1 Your company has a single Active Directory directory service forest with multiple domains. The
Schema FSMO role is held by one of the domain controllers in the forest root domain. The Domain
Naming Master FSMO role is held by one of the domain controllers in a child domain. All domain
controllers have Windows Server 2003 installed.
You need to upgrade all domain controllers to Windows Server 2003 R2.
Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)
A. Run the adprep /forestprep command in the forest root domain.
B. Run the adprep /forestprep command in all the child domains.
C. Run the adprep /domainprep command in all the child domains only.
D. Run the adprep /domainprep command in all domains.
Answer: AD

certification Microsoft   certification 070-294   070-294 examen   070-294   070-294

NO.2 Your company has a main office and a single branch office. The two offices are connected through a
WAN link. You have Active Directory directory service site objects for each office. Domain controllers are
associated with the appropriate site objects.
Users in the main office are currently authenticated by domain controllers in the branch office.
You need to ensure that users in the main office are authenticated by the domain controllers in the main
office.
What should you do?
A. Clear the Bridge all site links option.
B. Configure a preferred bridgehead server for the site for the main office.
C. Associate the subnets for the main office with the site for the main office.
D. Associate the subnets for the branch office with the site for the branch office.
Answer: C

Microsoft examen   070-294 examen   070-294   070-294 examen   certification 070-294   070-294

NO.3 Your company s Windows Server 2003 environment consists of a single Active Directory directory
service forest. The forest has multiple domains and three sites named Site1, Site2, and Site3. Site1 is the
main office and has four domain controllers. Two of the domain controllers are global catalog servers.
Site2 is a branch office with two domain controllers. Site3 is a branch office with a slow and unreliable
WAN link and two domain controllers.
You need to improve user logon performance for users in Site2 and Site3.
Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)
A. Enable change notification between Site1 and Site2.
B. Enable change notification between Site1 and Site3.
C. Implement universal group membership caching in Site2.
D. Implement universal group membership caching in Site3.
Answer: CD

Microsoft   070-294   070-294 examen   070-294

NO.4 Your company has an Active Directory directory service forest with a forest root domain and a child
domain. You have two Active Directory sites named Site1 and Site2. The two sites represent physical
locations that are connected by a WAN link.
All domain controllers are located in Site2. All users log on to the child domain. Several users in Site1 use
computers that run Windows NT 4.0 operating systems.
You configure a new domain controller for each domain, and you place the new domain controllers in
Site1.
You need to ensure that all users in Site1 can change their passwords in the event of a WAN link failure.
What should you do?
A. Transfer the root domain PDC Emulator role to a domain controller in Site1.
B. Transfer the child domain PDC Emulator role to a domain controller in Site1.
C. Transfer the root domain Infrastructure Master role to a domain controller in Site1.
D. Transfer the child domain Infrastructure Master role to a domain controller in Site1.
Answer: B

certification Microsoft   070-294 examen   070-294   070-294

NO.5 Your company has a single Active Directory directory service forest with a forest root domain and a
child domain. The company has a main office and several branch offices. You are planning to remove the
child domain.
All of the domain controllers in the forest root domain are located in the main office, and all FSMO roles
are on separate domain controllers. The last domain controller in the child domain is named DC1 and is
located in a branch office.
You attempt to remove Active Directory from DC1, but you receive an error message stating that the
operation could not be completed.
You need to remove Active Directory from DC1.
What should you do?
A. Restore connectivity to the domain controller that holds the Domain Naming Master role.
B. Restore connectivity to the domain controller that holds the Schema Master role.
C. Restore connectivity to the domain controller that holds the Infrastructure Master role.
D. Restore connectivity to the domain controller that holds the PDC Emulator role.
Answer: A

Microsoft   070-294   070-294   070-294   070-294

NO.6 Your company has a Windows Server 2003 environment with a single Active Directory directory service
forest. The forest has multiple domains and two sites named Site1 and Site2. Site1 has six domain
controllers. Two of the domain controllers are global catalog servers. Site2 has three domain controllers.
The WAN link between Site1 and Site2 is slow.
You are preparing the environment for an Active Directory application that requires universal group
membership to make authorization decisions. Application servers will be located in Site1 and Site2.
You need to prepare the Active Directory environment for the introduction of the Active Directory
application.
What should you do?
A. Increase the number of domain controllers in Site2 to four.
B. Enable universal group membership caching in Site1.
C. Add additional global catalog servers to Site1.
D. Configure at least one of the domain controllers in Site2 to be a global catalog server.
Answer: D

Microsoft   070-294 examen   070-294   certification 070-294   certification 070-294

NO.7 Your company has a single Active Directory directory service forest with a forest root domain and a
child domain.
The company has a high rate of employee turnover, and administrators create several hundred user
accounts per week.
A domain controller in the child domain fails. Within several hours of the failure, administrators are unable
to create new user accounts within the child domain.
You need to ensure that administrators can create user accounts in the child domain.
What should you do?
A. Seize the PDC Emulator role in the child domain.
B. Seize the RID Master role in the child domain.
C. Seize the Infrastructure Master role in the child domain.
D. Create a new domain controller in the child domain, and configure it as a global catalog server.
Answer: B

Microsoft   070-294 examen   070-294   070-294

NO.8 Your company has a single Active Directory directory service forest with three domains.
You plan to modify the Active Directory schema.
You need to identify the schema master for the forest.
What should you do?
A. Run the regsvr32 schmmgmt.dll command. Use the Active Directory Domains and Trusts snap-in.
B. Run the regsvr32 schmmgmt.dll command. Use the Active Directory Users and Computers snap-in.
C. Use the Dsget command-line tool.
D. Use the Dsquery command-line tool.
Answer: D

Microsoft examen   070-294   070-294   certification 070-294   070-294

NO.9 Your company has a single Active Directory directory service domain with three domain controllers.
You need to move domain-wide FSMO roles to a different domain controller.
Which tool should you use?
A. Active Directory Domains and Trusts snap-in
B. Active Directory Sites and Services snap-in
C. Active Directory Users and Computers snap-in
D. Active Directory Schema snap-in
Answer: C

Microsoft   certification 070-294   070-294

NO.10 You have a single Active Directory directory service domain. Your domain controllers are configured as
shown in the following table.
Domain
controller
Site FSMO role or roles
Global catalog
server
DC1 Site1
Schema Master
Domain Naming Master
Yes
DC2 Site2 ? Yes
DC3 Site3 Infrastructure Master Yes
DC4 Site4 PDC Emulator No
File and print services are on servers in Site1. Microsoft Exchange Server is installed on servers in Site2.
The HR and user provisioning applications will be placed on servers in Site3.
You are planning placement of the RID Master FSMO role.
You need to ensure proper functionality of these applications within their sites during an extended WAN
outage.
On which domain controller should you place the RID Master role?
A. DC1
B. DC2
C. DC3
D. DC4
Answer: C

Microsoft   070-294   certification 070-294   070-294

NO.11 Your company has a single Active Directory directory service domain. The company has five Active
Directory sites on the West coast and five Active Directory sites on the East coast. The West coast sites
and the East coast sites are in two separate hub-and-spoke configurations that are separated by a firewall.
All Active Directory replication between the West coast and East coast occurs between a single West
coast domain controller named WestDC1 and a single East coast domain controller named EastDC1.
You need to ensure that if WestDC1 fails, other West coast domain controllers continue to replicate with
each other, but not with East coast domain controllers.
What should you do?
A. Create site links between the West coast hub site and the West coast spoke sites.
B. Create a site link bridge between the West coast hub site and the East coast hub site.
C. Clear the Bridge all site links option and create a site link bridge for all the East coast sites.
D. Clear the Bridge all site links option and create a site link bridge for all the West coast sites.
Answer: D

Microsoft examen   certification 070-294   070-294 examen   070-294   070-294 examen

NO.12 Your company has a single Active Directory directory service forest with four domains. The domains
are named contoso.com, corp.contoso.com, fabrikam.com, and corp.fabrikam.com.
Users in the corp.contoso.com domain frequently access resources that are located in the
corp.fabrikam.com domain.
You need to improve user logon times from the corp.contoso.com domain to the corp.fabrikam.com
domain.
What should you do?
A. Enable universal group caching in sites where corp.contoso.com domain controllers are located.
B. Enable universal group caching in sites where corp.fabrikam.com domain controllers are located.
C. Create a shortcut trust from the corp.fabrikam.com domain to the corp.contoso.com domain.
D. Create a shortcut trust from the corp.contoso.com domain to the corp.fabrikam.com domain.
Answer: C

Microsoft   070-294 examen   certification 070-294   certification 070-294

NO.13 Your company has a single Active Directory directory service forest with multiple domains. The
company has a main office with 1,000 users and a single branch office with 500 users. Each office is a
separate Active Directory site. The main office Active Directory site has two domain controllers with Global
Catalog services.
Company employees must be able to work in both offices.
You need to plan the placement and configuration of domain controllers.
What should you do?
A. Deploy two additional domain controllers in the main office Active Directory site.
B. Deploy global catalog servers in the branch office Active Directory site.
C. Enable change notification on the site link between the main office Active Directory site and the branch
office Active Directory site.
D. Disable change notification on the site link between the main office Active Directory site and the branch
office Active Directory site.
Answer: B

certification Microsoft   070-294   070-294

NO.14 You have a single Active Directory directory service domain. There is a branch office that connects to
the main office through a low-bandwidth WAN link.
The first domain controller is named DC1 and is located in the main office. The branch office has a single
server named Server1. Server1 runs Windows Server 2003.
You are preparing to install Active Directory on Server1. You back up the system state of DC1, and you
send the backup to the administrator at the branch office.
You need to make Server1 an additional domain controller in your domain, while minimizing the
bandwidth usage between the two offices.
What should you do?
A. Restore the system state data from DC1 to an alternate location on Server1. Run the dcpromo
command with the /adv parameter, and select the From these restored backup files option.
B. Restore the system state data from DC1 to the original location on Server1. Run the dcpromo
command with the /adv parameter, and select the From these restored backup files option.
C. Create a new Active Directory site. Create an unattended installation file with the
CriticalReplicationOnly parameter. Run the dcpromo command with the /answer parameter.
D. Create a new Active Directory site. Create an unattended installation file with the SiteName parameter
to place Server1 into the new site. Run the dcpromo command with the /answer parameter.
Answer: A

Microsoft examen   070-294 examen   certification 070-294   070-294   certification 070-294

NO.15 Your Windows Server 2003 environment consists of a single Active Directory directory service forest
with multiple domains. The forest functional level is set to Windows 2000 Server. Your company has a
main office and four branch offices. Each office has two domain controllers. The domain controllers in the
main office are global catalog servers.
In the branch offices, searches for some printers in Active Directory are slow.
You need to improve the performance of Active Directory printer searches in the four branch offices.
What should you do?
A. Enable universal group membership caching in each branch office.
B. Increase the number of domain controllers in each branch office.
C. Add global catalog services to each branch office.
D. Upgrade the forest functional level to Windows Server 2003.
Answer: C

Microsoft examen   070-294   070-294   certification 070-294   070-294

NO.16 Your company has a single Active Directory directory service forest named contoso.com. A partner
organization has a forest named fabrikam.com. Both forests are set to the Windows 2000 forest functional
level. Domains named contoso.com and fabrikam.com are set to Windows 2000 Native Mode.
You plan to create a forest trust relationship between contoso.com and fabrikam.com.
You need to be able to configure selective authentication for the trust relationship.
What should you do?
A. Raise the forest functional level on contoso.com and fabrikam.com to Windows Server 2003.
B. Raise the domain functional level on contoso.com and fabrikam.com to Windows Server 2003.
C. Raise the domain functional level and the forest functional level on contoso.com to Windows Server
2003.
D. Raise the domain functional level and the forest functional level on fabrikam.com to Windows Server
2003.
Answer: A

Microsoft   certification 070-294   070-294   070-294

NO.17 Your company has a single Active Directory directory service forest named contoso.com. A partner
organization has a forest named fabrikam.com. You create a forest trust relationship between
contoso.com and fabrikam.com.
You need to enable selective authentication between contoso.com and fabrikam.com.
Which tool should you use?
A. Netdom
B. Nltest
C. Dsacls
D. Ntdsutil
Answer: A

certification Microsoft   070-294   070-294

NO.18 You have a single Active Directory directory service domain. Your company has a main office and
multiple branch offices. Each office has an Active Directory site. The company s network is not fully
routed.
You need to ensure complete replication between the Active Directory sites.
What should you do?
A. Configure site links, and disable site link bridging.
B. Configure site links to use the SMTP transport, and enable site link bridging.
C. Configure a preferred bridgehead server for each branch office site.
D. Configure a preferred bridgehead server for the main office site.
Answer: A

Microsoft examen   070-294   070-294 examen   certification 070-294

NO.19 You have a single Active Directory directory service domain. You are preparing to create a child
domain. Your user account is in a global security group named Server Administrators. The Server
Administrators group is in the local Administrators group on all servers.
You need to install Active Directory on a server named Server1 to create the new child domain.
What should you do?
A. Have your user account added to the Domain Admins group.
B. Have your user account added to the Schema Admins group.
C. Have your user account added to the Enterprise Admins group.
D. Have your user account added to the Incoming Forest Trust Builders group.
Answer: C

Microsoft   070-294   070-294   070-294 examen

NO.20 Your company has a single Active Directory directory service forest with a forest root domain and a
child domain. The child domain is set to the default domain functional level.
You install a second domain controller in the child domain by promoting a server named SVR1.
You need to rename SVR1 to DC2, and you must ensure that there will be no interruption in the ability of
client computers to authenticate to DC2, except during reboot.
What should you do?
A. Raise the domain functional level of the child domain to Windows 2000 native. Use System Properties
on SVR1 to rename SVR1 to DC2.
B. Raise the domain functional level of the child domain to Windows Server 2003. Run the netdom
command to rename SVR1 to DC2.
C. Raise the domain functional level of the child domain to Windows 2000 native. Run the dcpromo
command on SVR1 to remove Active Directory directory service. Use System Properties to rename SVR1
to DC2. Run the dcpromo command to re-install Active Directory.
D. Raise the domain functional level of the child domain to Windows Server 2003. Create a DNS CNAME
record for DC2.contoso.com that points to SVR1.contoso.com.
Answer: B

Microsoft examen   070-294   070-294   070-294

Pass4Test vous promet de vous aider à passer le test Microsoft 070-294, vous pouvez télécharger maintenant les Q&As partielles de test Microsoft 070-294 en ligne. Il y a encore la mise à jour gratuite pendant un an pour vous. Si vous malheureusement rater le test, votre argent sera 100% rendu.