Home » New Updated Microsoft MCSA 70-411 Real Exam Questions and Answers Download 41-50

New Updated Microsoft MCSA 70-411 Real Exam Questions and Answers Download 41-50

Ensurepass

QUESTION 41

HOTSPOT

Your network contains an Active Directory forest named contoso.com. The forest contains a single domain. All domain controllers run Windows Server 2012 and are configured as DNS servers. All DNS zones are Active Directory-integrated. Active Directory Recycle Bin is enabled. You need to modify the amount of time deleted objects are retained in the Active Directory Recycle Bin. Which naming context should you use?

 

To answer, select the appropriate naming context in the answer area.

Hot Area:

70-411-demo-24

 

Correct Answer:

70-411-demo-25

 

 

QUESTION 42

Your network contains an Active Directory domain named contoso.com. You have a standard primary zone names contoso.com. You need to ensure that only users who are members of a group named Group1 can create DNS records in the contoso.com zone. All other users must be prevented from creating, modifying, or deleting DNS records in the zone. What should you do first?

 

  1. Run the Zone Signing Wizard for the zone.

  2. From the properties of the zone, change the zone type.

  3. Run the new Delegation Wizard for the zone.

  4. From the properties of the zone, modify the Start of Authority (SOA) record.

 

Correct Answer: B

 

 

QUESTION 43

Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1. DC1 is a DNS server for contoso.com. The properties of the contoso.com zone are configured as shown in the exhibit.

 

70-411-demo-26

 

The domain contains a server named Server1 that is part of a workgroup named Workgroup. Server1 is configured to use DC1 as a DNS server. You need to ensure that Server1 dynamically registers a host (A) record in the contoso.com zone. What should you configure?

 

  1. The Dynamic updates setting of the contoso.com zone.

  2. The workgroup name of Server1.

  3. The primary DNS suffix of Server1.

  4. The Security settings of the contoso.com zone.

 

Correct Answer: C

 

 

QUESTION 44

Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2012. One of the domain controllers is named DC1. The DNS zone for the contoso.com zone is Active Directory-intergrated and has the default settings. A server named Server1 is a DNS server that runs a UNIX-based operating system. You plan to use Server1 as a secondary DNS server for the contoso.com zone. Yo
u need to ensure that Server1 can host a secondary copy of the contoso.com zone. What should you do?

 

  1. From Windows PowerShell, run the Set-DnsServerSetting cmdlet and specify DC1 as a target.

  2. From DNS Manager, modify the Zone Transfers settings of the contoso.com zone.

  3. From DNS Manager, modify the replication scope of the contoso.com zone.

  4. From DNS manager, modify the Security settings of the contoso.com zone.

 

Correct Answer: B

 

 

QUESTION 45

Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2012. All client computers run Windows 8 Enterprise. DC1 contains a Group Policy object (GPO) named GPO1. You need to deploy a VPN connection to all users. What should you configure from Users Configuration in GPO1?

 

  1. Policies/Administrative Templates/Network/Network Connections

  2. Policies/Administrative Templates/Network/Windows Connect Now

  3. Preferences/Control Panel Settings/Network Options

  4. Policies/Administrative Templates/Windows Components/Windows Mobility Centre

 

Correct Answer: C

 

 

 

 

 

 

 

 

QUESTION 46

You have a server named Server1 that has the Web Server (IIS) server role installed. You obtain a Web Server certificate. You need to configure a website on Server1 to use Secure Socket Layer (SSL). To which store should you import the certificate?

 

To answer, select the appropriate store in the answer area.

 

Hot Area:

70-411-demo-27

 

Correct Answer:

70-411-demo-28

 

 

QUESTION 47

Your network contains an Active Directory domain named contoso.com. The domain contains six domain controllers named DC1, DC2, DC3, DC4, DC5, and DC6. Each domain controller has the DNS Server server role installed and hosts an Active Directory-integrated zone for contoso.com. You plan to create a new Active Directory-integrated zone named litwareinc.com that will be used for testing. You need to ensure that the new zone will be available only on DC5 and DC6. What should you do first?

 

  1. Create an application directory partition.

  2. Change the zone replication scope.

  3. Create an Active Directory connection object.

  4. Create an Active Directory site link.

 

Correct Answer: A

 

 

QUESTION 48

Your network contains a DNS server named Server1 that runs Windows Server 2012. Server1 has a zone named contoso.com. The network contains a server named Server2 that runs Windows Server 2008 R2. Server1 and Server2 are members of an Active Directory domain named contoso.com. You change the IP address of Server2. Several hours later, some users report that they cannot connect to Server2. On the affected users’ client computers, you flush the DNS client resolver cache, and the users successfully connect to Server2. You need to reduce the amount of time that the client computers cache DNS records from contoso.com. Which value should you modify in the Start of Authority (SOA) record?

 

To answer, select the appropriate setting in the answer area.

 

Hot Area:

70-411-demo-29

 

Correct Answer:

70-411-demo-30

 

 

QUESTION 49

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012. You enable and configure Routing and Remote Access (RRAS) on Server1. You create a user account named User1. You need to ensure that User1 can establish VPN connections to Server1. What should you do?

 

  1. Create a network policy.

  2. Modify the members of the Remote Management Users group.

  3. Create a connection request policy.

  4. Add a RADIUS client.

 

Correct Answer: A

 

 

QUESTION 50

Your network contains an Active Directory domain named fabrikam.com. You implement DirectAccess and an IKEv2 VPN. You need to view the properties of the VPN connection. Which connection properties should you view?

 

To answer, select the appropriate connection properties in the answer area.

 

Hot Area:

70-411-demo-31

 

Correct Answer:

70-411-demo-32

 

Instant Access to Download Latest Complete Collection of Microsoft MCSA 70-411 Real Exam

Try Microsoft MCSA 70-411 Free Demo

New Updated Microsoft MCSA 70-411 Real Exam Questions and Answers Download 51-60
New Updated Microsoft MCSA 70-411 Real Exam Questions and Answers Download 31-40

Name of author

Name: admin