Mar 2016 updated: Pass4sure Microsoft 70-413 torrent 17-32

70-413 Royal Pack Testengine pdf

100% Actual & Verified — 100% PASS

Unlimited access to the world's largest Dumps library! Try it Free Today!

Get it now →

Product Description:
Exam Number/Code: 70-413
Exam name: Designing and Implementing a Server Infrastructure
n questions with full explanations
Certification: Microsoft Certification
Last updated on Global synchronizing

Free Certification Real IT 70-413 Exam pdf Collection

Question No. 17

- (Topic 8) 

Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012 R2. The forest functional level is Windows Server 2012. 

Your company plans to deploy an application that will provide a search interface to users in the company. The application will query the global catalog for the Employee-Number attribute. 

You need to recommend a solution to ensure that the application can retrieve the Employee-Number value from the global catalog. 

What should you include in the recommendation? 

A. the Dsmod command 

B. the Ldifde command 

C. the Enable-ADOptionalFeaturecmdlet 

D. the Csvde command 

Answer:

Explanation: Ldifde Creates, modifies, and deletes directory objects. You can also use ldifde to extend the schema, export Active Directory user and group information to other applications or services, and populate Active Directory Domain Services (AD DS) with data from other directory services. Ldifde -l <LDAPAttributeList> Sets the list of attributes to return in the results of an export query. If you do not specify this parameter, the search returns all attributes. 

Incorrect: 

Not C: 

Optional feature: A non-default behavior that modifies the Active Directory state model. 


Question No. 18

- (Topic 4) 

You need to recommend a solution for GPO1. 

What is the best approach to achieve the goal? More than one answer choice may achieve the goal. Select the BEST answer. 

A. In west.northwindtraders.com, create a copy of GPO1 and link the new GPO to Site2. Apply a WMI filter to the new GPO. 

B. In west.northwindtraders.com, create a copy of GPO1 and link the new GPO to west.northwindtraders.com. Configure security filtering on the new GPO. 

C. Link GPO1 to west.northwindtraders.com and configure security filtering on GPO1. 

D. Link GPO1 to Site2 and apply a WMI filter to GPO1. 

Answer:

Explanation: * Scenario: 

The northwindtraders.com domain contains a Group Policy object (GPO) named GPO1. 

GP01 is applied to all of the users in the Montreal office. 

Apply GPO1 to all of the San Diego users. 

GPO1 must not be applied to computers that run Windows 8.1. 

* WM Filter for Operating Systems. Example: 

Windows 8.1 64 bit 

SELECT version FROM Win32_OperatingSystem WHERE Version LIKE "6.3%" and 

ProductType = "1" AND OSArchitecture = "64-bit" 


Question No. 19

- (Topic 8) 

Your network contains 50 servers that run Windows Server 2003 and 50 servers that run Windows Server 2008. 

You plan to implement Windows Server 2012 R2. 

You need to create a report that includes the following information: 

. The servers that run applications and services that can be moved to Windows 

Server 2012 R2 

. The servers that have hardware that can run Windows Server 2012 R2 

. The servers that are suitable to be converted to virtual machines hosted on Hyper-

V hosts that run Windows Server 2012 R2 

Solution: You install Windows Server 2012 R2 on a new server, and then you run Microsoft Deployment Toolkit (MDT) 2012. 

Does this meet the goal? 

A. Yes 

B. No 

Answer:

Explanation: Microsoft Deployment Toolkit (MDT) 2013 allows you to automate the deployment of computers in your organization, but it does not include reporting. 


Question No. 20

- (Topic 1) 

You need to recommend a solution for DHCP logging. The solution must meet the technical requirement. 

What should you include in the recommendation? 

A. Event subscriptions 

B. IP Address Management (IPAM) 

C. DHCP audit logging 

D. DHCP filtering 

Answer:

Explanation: * Scenario: A central log of the IP address leases and the users associated to those leases must be created. 

* Feature description IPAM in Windows Server 2012 is a new built-in framework for discovering, monitoring, auditing, and managing the IP address space used on a corporate network. IPAM provides for administration and monitoring of servers running Dynamic Host Configuration Protocol (DHCP) and Domain Name Service (DNS). IPAM includes components for: 

. Automatic IP address infrastructure discover)': IPAM discovers domain controllers, DHCP servers, and DNS servers in the domains you choose. You can enable or disable management of these servers by IPAM. 

. Custom IP address space display, reporting, and management: The display of IP addresses is highly customizable and detailed tracking and utilization data is available. IPv4 and IPv6 address space is organized into IP address blocks, IP address ranges, and individual IP addresses. IP addresses are assigned built-in or user-defined fields that can be used to further organize IP address space into hierarchical, logical groups. 

. Audit of server configuration changes and tracking of IP address usage: Operational events are displayed for the IPAM server and managed DHCP servers. IPAM also enables IP address tracking using DHCP lease events and user logon events collected from Network Policy Server (NPS), domain controllers, and DHCP servers. Tracking is available by IP address, client ID, host name, or user name. 

. Monitoring and management of DHCP and DNS services: IPAM enables automated service availability monitoring for Microsoft DHCP and DNS servers across the forest. DNS zone health is displayed, and detailed DHCP server and scope management is available using the IPAM console. 

Reference: IP Address Management (IPAM) Overview 


Question No. 21

- (Topic 8) 

You plan to deploy multiple servers in a test environment by using Windows Deployment Services (WDS). 

You need to identify which network services must be available in the test environment to deploy the servers. 

Which network services should you identify? (Each correct answer presents part of the solution. Choose all that apply.) 

A. Active Directory Domain Services (AD DS) 

B. DNS 

C. DHCP 

D. WINS 

E. Active Directory Lightweight Directory Services (AD LDS) 

F. Network Policy Server (NPS) 

Answer: A,B,C 

Explanation: Prerequisites for installing Windows Deployment Services 

* (A) Active Directory Domain Services (AD DS). 

Windows Deployment Services server must be a member of an Active Directory Domain 

Services (AD DS) domain or a domain controller for an AD DS domain. 

* (B) DNS. You must have a working Domain Name System (DNS) server on the network 

before you can run Windows Deployment Services. 

* (C): DHCP. You must have a working Dynamic Host Configuration Protocol (DHCP) 

server with an active scope on the network because Windows Deployment Services uses 

PXE, which relies on DHCP for IP addressing. 

* NTFS volume. 

Reference: Windows Deployment Services Overview 

http://technet.microsoft.com/en-us/library/hh831764.aspx 


Question No. 22

- (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The domain contains three Active Directory sites. The Active Directory sites are configured as shown in the following table. 


The sites connect to each other by using the site links shown in the following table. You need to design the Active Directory site topology to meet the following requirements: 


. Ensure that all replication traffic between Site2 and Site3 replicates through Site1 if a domain controller in Site1 is available. . Ensure that the domain controllers between Site2 and Site3 can replicate if all of the domain controllers in Site1 are unavailable. 

What should you do? 

A. Delete Link2. 

B. Disable site link bridging. 

C. Delete Link3. 

D. Create one site link bridge. 

E. Modify the cost of Link2. 

Answer: E


Question No. 23

- (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The domain contains three VLANs. The VLANs are configured as shown in the following table. 


All client computers run either Windows 7 or Windows 8. 

Goal: You need to implement a solution to ensure that only the client computers that have all of the required security updates installed can connect to VLAN 1. The solution must ensure that all other client computers connect to VLAN 3. 

Solution: You implement the 802.1x Network Access Protection (NAP) enforcement method. 

Does this meet the goal? 

A. Yes 

B. No 

Answer:

Explanation: NAP supports a variety of what we call enforcement methods. In the NAP space, and enforcement method is simply a term that defines the way a machine connects to a network. In NAP, these are DHCP, 802.1x (wired or wireless), VPN, IPsec, or via a Terminal Services Gateway. 


Question No. 24

- (Topic 8) 

Your network contains an Active Directory forest named contoso.com. 

You plan to automate the deployment of servers that run Windows Server 2012. 

You identify the following requirements for the deployment: 

Update the custom images that will be used for the deployment. 

Add custom drivers to the images that will be used for the deployment. 

Add software packages to the images that will be used for the deployment. 

Perform a zero touch bare-metal installation that uses Wake On LAN. 

A network consultant recommends using Windows Deployment Services (WDS) and the Windows Assessment and Deployment Kit (Windows ADK) to deploy the servers. 

You need to identify which requirements are achieved by using the consultant's recommendations. 

Which requirements should you identify? (Each correct answer presents part of the solution. Choose all that apply.) 

A. Update the custom images used for the deployment. 

B. Add software packages to the images used for the deployment. 

C. Perform a zero touch bare-metal installation that uses Wake On LAN. 

D. Add custom drivers to the images used for the deployment. 

Answer: A,D 

Explanation: Microsoft Deployment Toolkit 2010 

MDT 2010 requires Windows AIK for Windows. 

Manage your images, from adding/removing drivers to easily swapping out the operating 

system you would like to deploy. 

Incorrect: 

Not C: System Center Configuration Manager (ConfigMgr) 

ConfigMgr allows you to push an OSD to the computers of your choice at the time of your 

choosing due to its built in Wake on LAN (WOL) feature. 


Question No. 25

- (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The domain contains 10 sites. The sites are located in different cities and connect to each other by using low-latency WAN links. 

In each site, you plan to implement Microsoft System Center 2012 Configuration Manager and to deploy multiple servers. 

You need to recommend which Configuration Manager component must be deployed to each site for the planned deployment. 

What should you include in the recommendation? 

More than one answer choice may achieve the goal. Select the BEST answer. 

A. A management point 

B. A software update point 

C. A distribution group point 

D. A secondary site server that has all of the Configuration Manager roles installed 

Answer:

Explanation: 

Distribution point groups provide a logical grouping of distribution points and collections for content distribution. A Distribution point group is not limited to distribution points from a single site, and can contain one or more distribution points from any site in the hierarchy. When you distribute content to a distribution point group, all distribution points that are members of the 

distribution point group receive the content. 

Reference: Configuring Distribution Point Groups in Configuration Manager 


Question No. 26

- (Topic 8) 

A company has a single-forest and single Active Directory Domain Services domain named contoso.com. The company has offices in multiple geographic locations and manages all computing devices from a network operations center located at a main office. 

You deploy physical servers and user devices by using a Windows Deployment Services (WDS) server named WDS1, and a server that runs System Center 2012 Virtual Machine Manager SP1 named VMM1. 

Every three months you update the standard deployment images and push the update images to all client devices in the organization. You use multicast deployments for the servers and client devices at the remote offices. To automate the deployment process, you create an Auto-Cast multicast transmission and pre-stage client devices. 

You need to ensure that client devices continue the deployment process after the first reboot and do not restart the installation. 

What should you do? 


A. Option A 

B. Option B 

C. Option C 

D. Option D 

Answer:


Question No. 27

- (Topic 8) 

Your network contains an Active Directory domain named contoso.com. 

On several organizational units (OUs), an administrator named Admin1 plans to delegate control of custom tasks. You need to ensure that Admin1 can delegate a custom task named Task1 by using the Delegation of Control Wizard. 

What should you do? 

A. Add a new class to the Active Directory schema. 

B. Configure a custom MMC console. 

C. Modify the Delegwiz.inf file. 

D. Configure a new authorization store by using Authorization Manager. 

Answer:

Explanation: 

To add a task to the Delegation Wizard, you must create a task template by using the 

following syntax in the Delegwiz.inf file 

;---------------------------------------------------------

[template1] 

AppliesToClasses=<comma delimited list of object types to which this 

template applies; for example, if "organizationalUnit" is in the list, 

this template will be shown when the Delegation Wizard is invoked on 

an OU> 

Description = "<task description which will appear in the wizard>" 

Etc. 

Reference: How to customize the task list in the Delegation Wizard http://support.microsoft.com/kb/308404 


Question No. 28

- (Topic 8) 

You are designing an Active Directory forest for a company named Contoso, Ltd. Contoso identifies the following administration requirements for the design: 

. User account administration and Group Policy administration will be performed by 

network technicians. The technicians will be added to a group named OUAdmins. 

. IT staff who are responsible for backing up servers will have user accounts that are members of the Backup Operators group in the domain. 

. All user accounts will be located in an organizational unit (OU) named AllEmployees. 

You run the Delegation of Control Wizard and assign the OUAdmins group full control to all of the objects in the AllEmployeesOU. 

After delegating the required permissions, you discover that the user accounts of some of the IT staff have inconsistent permissions on the objects in AllEmployees. 

You need to recommend a solution to ensure that the members of OUAdmins can manage all of the objects in AllEmployees. 

What should you include in the recommendation? 

A. Remove the IT staff user accounts from Backup Operators and place them in a new group. Grant the new group the Backup files and directories user right and the Restore files and directories user right. Enforce permission inheritance on all of the objects in the AllEmployeesOU. 

B. Create separate administrator user accounts for the technicians. Enforce permission inheritance on all of the objects in the AllEmployeesOU. Delegate permissions to the new user accounts. 

C. Enforce permission inheritance on all of the objects in the AllEmployeesOU. Run the Delegation of Control Wizard. 

D. Move the user accounts of the technicians to a separate OU. Enforce permission inheritance on all of the objects in the AllEmployeesOU. Run the Delegation of Control Wizard on the AllEmployeesOU. 

Answer:


Question No. 29

DRAG DROP - (Topic 8) 

You manage an Active Directory Domain Services forest that contains a root domain named contoso.com and a child domain named branch.contoso.com. You have three servers named SRV01, SRV02, and SRV03. All servers run Windows Server 2012 R2. SRV01 and SRV02 are domain controllers for the domain contoso.com. SRV03 is the domain controller for branch.contoso.com. User accounts and resources exist in both domains. All resources in branch.contoso.com are physically located in a remote branch office. 

The remote branch office must be configured as Read-Only Domain Controller (RODC). The solution must minimize the impact on users and the number of servers deployed in the branch office. 

You need to configure the environment. 

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. 


Answer: 



Question No. 30

HOTSPOT - (Topic 4) 

You are planning the certificates for Northwind Traders. 

You need to identify the certificate configurations required for App1. 

How should you configure the certificate request? To answer, select the appropriate 

options in the answer area. 



Answer: 



Question No. 31

- (Topic 8) 

A new company registers the domain name of contoso.com. The company has a web presence on the Internet. All Internet resources have names that use a DNS suffix of contoso.com. 

A third-party hosts the Internet resources and is responsible for managing the contoso.com DNS zone on the Internet. The zone contains several hundred records. 

The company plans to deploy an Active Directory forest. 

You need to recommend an Active Directory forest infrastructure to meet the following requirements: 

. Ensure that users on the internal network can resolve the names of the company's Internet resources. 

. Minimize the amount of administrative effort associated with the addition of new Internet servers. 

What should you recommend? 

A. A forest that contains a single domain named contoso.local 

B. A forest that contains a root domain named contoso.com and another domain named contoso.local 

C. A forest that contains a root domain named contoso.com and another domain named ad.contoso.com 

D. A forest that contains a single domain named contoso.com 

Answer:

Explanation: Rules for Selecting a Prefix for a Registered DNS Name 

Select a prefix that is not likely to become outdated. 

Avoid names such as a business line or operating system that might change in the future. 

Generic names such as corp or ds are recommended. 

Incorrect: 

not A, not B: Using single label names or unregistered suffixes, such as .local, is not 

recommended. 


Question No. 32

- (Topic 8) 

Your network contains an Active Directory domain named contoso.com. The physical 

topology of the network is configured as shown in the exhibit. 

Each office contains 500 employees. 

You plan to deploy several domain controllers to each office. 

You need to recommend a site topology for the planned deployment. 

What should you include in the recommendation? 

More than one answer choice may achieve the goal. Select the BEST answer. 

Exhibit 


A. Five sites and one site link 

B. Three sites and three site links 

C. One site 

D. Five sites and three site links 

Answer:

Explanation: 

Create a site for each LAN, or set of LANs, that are connected by a high speed backbone, and assign the site a name. Connectivity within the site must be reliable and always available. This would mean 5 sites Site links are transitive, so if site A is connected to site B, and site B is connected to site C, then the KCC assumes that domain controllers in site A can communicate with domain controllers in site C. You only need to create a site link between site A and site C if there is in fact a distinct network connection between those two sites. This would mean 3 sitelinks So answer is "Five sites and three site links" 

Reference: Defining Sites and Site Links http://technet.microsoft.com/en-us/library/cc960573.aspx