New Updated Microsoft MCSA 70-412 Real Exam Questions and Answers Download 281-290

Ensurepass

QUESTION 281

Your network contains two Active Directory forests named contoso.com and adatum.com. Each

forest contains one domain. Contoso.com has a two-way forest trust to adatum.com. Selective

authentication is enabled on the forest trust. Contoso contains 10 servers that have the File

Server role service installed. Users successfully access shared folders on the file servers by using

permissions granted to the Authenticated Users group. You migrate the file servers to

adatum.com. Contoso users report that after the migration, they are unable to access shared

folders on the file servers. You need to ensure that the Contoso users can access the shared

folders on the file servers. What should you do?

 

  1. Disable selective authentication on the existing forest trust.

  2. Disable SID filtering on the existing forest trust.

  3. Run netdom and specify the /quarantine attribute.

  4. Replace the existing forest trust with an external trust.

 

Correct Answer: A

 

 

QUESTION 282

You have a server named FS1 that runs Windows Server 2012 R2. You install the File and Storage

Services server role on FS1. From Windows Explorer, you view the properties of a shared folder

named Share1 and you discover that the Classification tab is missing. You need to ensure that you

can assign classifications to Share1 from Windows Explorer manually. What should you do?

 

  1. From Folder Options, select Show hidden files, folders, and drives.

  2. From Folder Options, clear Use Sharing Wizard (Recommend).

  3. Install the File Server Resource Manager role service.

  4. Install the Enhanced Storage feature.

 

Correct Answer: C

 

 

 

QUESTION 283

Your network contains two servers named Server1 and Server2 that run Windows Server 2012 R2. Server1 and Server2 are configured as shown in the following table.

 

70-412-demo-214

 

You need to ensure that when new targets are added to Server1, the targets are registered on

Server2 automatically. What should you do on Server1?

 

  1. Configure the Discovery settings of the iSCSI initiator.

  2. Configure the security settings of the iSCSI target.

  3. Run the Set-Wmilnstance cmdlet.

  4. Run the Set-IscsiServerTarget cmdlet.

 

Correct Answer: C

 

 

QUESTION 284

HOTSPOT

You have a file server named Server1 that runs Windows Server 2012 R2. Server1 contains a file

share that must be accessed by only a limited number of users. You need to ensure that if an

unauthorized user attempts to access the file share, a custom access-denied message appears,

which contains a link to request access to the share. The message must not appear when the

unauthorized user attempts to access other shares. Which two nodes should you configure in File

Server Resource Manager?

 

To answer, select the appropriate two nodes in the answer area.

 

Hot Area:

70-412-demo-215

 

Correct Answer:

70-412-demo-216

 

 

 

QUESTION 285

HOTSPOT

You have a server named Server1 that runs Windows Server 2012 R2. You are configuring a

storage space on Server1. You need to ensure that the storage space supports tiered storage.

Which settings should you configure?

 

To answer, select the appropriate options in the answer area.

 

Hot Area:

70-412-demo-217

 

Correct Answer:

70-412-demo-218

 

 

QUESTION 286

HOTSPOT

You have a server that runs Windows Server 2012 R2 and has the iSCSI Target Server role ser
vice

installed. You run the New-IscsiVirtualDisk cmdlet as shown in the New-IscsiVirtualDisk exhibit.

 

70-412-demo-219

 

To answer, complete each statement according to the information presented in the exhibits. Each

correct selection is worth one point.

 

Hot Area:

70-412-demo-220

 

Correct Answer:

70-412-demo-221

 

 

QUESTION 287

Your network contains a server named Server1 that runs Windows Server 2012 R2. Server1 has

the Active Directory Certificate Services server role installed and is configured as a standalone

certification authority (CA). You install a second server named Server2. You install the Online

Responder role service on Server2. You need to ensure that Server1 can issue an Online

Certificate Status Protocol (OCSP) Response Signing certificate to Server2. What should you run

on Server1?

 

  1. The certreq.exe command and specify the -policy parameter.

  2. The certutil.exe command and specify the -getkey parameter.

  3. The certutil.exe command and specify the -setreg parameter.

  4. The certreq.exe command and specify the -retrieve parameter.

 

Correct Answer: C

 

 

QUESTION 288

DRAG DROP

Your network contains two Active Directory forests named contoso.com and adatum.com. Each

forest contains an Active Directory Rights Management Services (AD RMS) root cluster. All servers

run Windows Server 2012 R2. You need to ensure that the rights account certificates issued in

adatum.com are accepted by the AD RMS root cluster in contoso.com. What should you do in

each forest?

 

To answer, drag the appropriate actions to the correct forests. Each action may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.

 

Select and Place:

70-412-demo-222

 

Correct Answer:

70-412-demo-223

 

 

QUESTION 289

Your network contains an Active Directory domain named contoso.com. All servers run Windows

Server 2012 R2. The domain contains a domain controller named DC1 that is configured as an

enterprise root certification authority (CA). All users in the domain are issued a smart card and

are required to log on to their domain-joined client computer by using their smart card. A user

named User1 resigned and started to work for a competing company. You need to prevent User1

immediately from logging on to any computer in the domain. The solution must not prevent

other users from logging on to the domain. Which tool should you use?

 

  1. Active Directory Users and Computers.

  2. Active Directory Sites and Services.

  3. The Certificates snap-in.

  4. Server Manager.

 

Correct Answer: A

 

 

QUESTION 290

Your network contains an Active Directory domain named contoso.com. The domain contains a

server named Server1 that runs a Server Core installation of Windows Server 2012 R2. You need

to deploy a certification authority (CA) to Server1. The CA must support the auto-enrollment of

certificates. Which two cmdlets should you run? (Each correct answer presents part of the

solution. Choose two.)

 

  1. Add-CAAuthoritylnformationAccess

  2. Install-AdcsCertificationAuthority

  3. Add-WindowsFeature

  4. Install-AdcsOnlineResponder

  5. Install-AdcsWebEnrollment

 

Correct Answer: BD

 

Instant Access to Download Latest Complete Collection of Microsoft MCSA 70-412 Real Exam

Try Microsoft MCSA 70-412 Free Demo