ofce to access fles in the main ofce. The branch has a dedicated server to take care of the data locally. What could be the solution? Branch cache that operates in Distribut ed mode Branch cache that operates in Hosted cache mode D! "ith replicatio n #$% "ith remedi ation server You are plannin& to deploy ne" servers that "ill run on Windo"s !erver '(() *'. +ach server "ill have ,' -B of *$.. The servers must support installation of *outin& and *emote access/ *emote Desktop !ervices -ate"ay. What should you recommend? Windo"s !erver '(() *' !tandard Windo"s !erver '(() *' +nterpris e Windo"s !erver '(() *' Web Windo "s !erver '(() *' Datace nter You are the enterprise administrator of the domain contoso.com. You decide not to have any D0 in all your domains "ith server operatin& system older than !erver '((,. What should settin& you conf&ure to achieve this re1uirement? !et the Domain unction al 2evel to !erver '((, !et the Domain unctiona l 2evel to !erver interim !et the orest unctiona l 2evel to !erver '((, !et the orest unctio nal 2evel to !erver '((( native Your company has a sin&le3 domain $ctive Directory forest. The functional level of the domain is Windo"s !erver '((). You perform the follo"in& activities4 0reate a &lobal distribution &roup. $dd users to the &lobal distribution &roup. 0reate a shared folder on a Windo"s !erver '(() member server. %lace the &lobal distribution &roup in a domain local &roup that has access to the shared folder. You need to ensure that the *aise the forest function al level to Windo"s !erver '((). $dd the &lobal distributi on &roup to the Domain $dministr ators &roup. 0han&e the &roup type of the &lobal distributi on &roup to a security &roup. 0han&e the scope of the &lobal distrib ution &roup to a 5nivers al distrib ution &roup. users have access to the shared folder. What should you do? 6n "hat possible "ays can you fnd out if the &iven server is a D0 and not the member server? 6n $D users and 0ompute rs there "ill be an 75 called 8Domain 0ontrolle rs8. !ee if the name mention ed there is the &iven server9s compute r9s name. 7n !erver mana&er under conf&ura tion you "ill not have 8local users and &roups8 for a D0 7nly on D0s you "ill have 04:Windo "s:!Y!; 72 $ll of the above You have a domain controller that runs the DH0% service. You need to perform an o<ine defra&mentation of the $ctive Directory database on the domain controller. You must achieve this &oal "ithout a=ectin& the availability of the DH0% service. What should you do? *estart the domain controlle r in Director y !ervices *estore .ode. *un the Disk Defra&m enter utility *estart the domain controller in Directory !ervices *estore .ode. *un the #tdsutil utility. !top the $ctive Directory Domain !ervices service. *un the #tdsutil utility. !top the $ctive Directo ry Domain !ervice s service . *un the Disk Defra& menter utility. You are plannin& to up&rade the 7! from >% to Windo"s ? on the client computers in the fnance department. You need to recommend a solution for an $pplication "hich "orks "ith Windo"s >%. .icrosof t $pp3; Windo"s ? mode Windo"s >% mode Windo "s $nytim e up&rad e You need to recommend a Bit2ocker recovery method. Which is the recommended method? %in number T%. 0hip %ass"ord Data *ecove ry $&ent The users of %roduction team need to "ork on fe" fles from home. The users should &et access to those fle in the minimum time. What is the recommended solution? D! Direct $ccess 7<ine iles ;%# Which of the follo"in& is not possible on the Domain 0ontroller by default? $ domain user to lo&on to the D0 To disable the default administr ator account To chan&e the default domain policy To edit the default domain control lers policy The default pass"ord policy has "hich of the follo"in& settin&s by default? .a@imu m pass"or d a&e to be ,( days .inimum pass"ord len&th to be ? character s %ass"ord to meet comple@ re1uirem ents is enabled b A c Which of the follo"in& is a ne" feature of 75 in !erver '(()? %rotect containe r from accident al deletion 6t can no" store more than B(/((( obCects $ sin&le user can be there in t"o di=erent 75s #one of the above 5sers and resources are in same domain/ this &roup scope can accept users from entire forest and any &roup in the forest can be added inside this &roup. The above mentioned features indicate "hich of the follo"in& &roup scopes? -lobal Domain 2ocal 5niversal $ll of the above What are the ' strate&ies that .icrosoft recommends for implementin& *ole Based $ccess 0ontrols D*B$0E usin& &roup nestin&? $ 33F - 33F Dl G33 % $ 33F - 33F 5 33F Dl G33 % $ 33F 5 33F - G33 % Both a A b You net"ork consists of an $ctive Directory forest named cmc.com. $il servers run Windo"s !erver '((). $ll domain controllers are conf&ured as D#! servers. The cmc.com D#! Hone is stored in the orestDnsIones $ctive Directory application partition. You have a member server that contains a standard primary D#! Hone for dev.cmc.com. You need to ensure that all domain controllers can resolve names for dev.cmc.com. What should you do? 0reate a #! record in the cmc.com Hone. 0reate a dele&atio n in the cmc.com Hone. 0reate a standard secondar y Hone on a -lobal 0atalo& server. .odify the propert ies of the !7$ record in the cmc.co m Hone. You "ant users to lo& on to $ctive Directory by usin& a ne" 5ser %rincipal #ame D5%#E. You need to modify the 5%# suf@ for all user accounts. Which tool should you use? Dsmod #etdom *edirusr $ctive Directo ry Domain s and Trusts Your company has an $ctive Directory domain. $ll consultants belon& to a &lobal &roup named TempWorkers. The TempWorkers &roup is not nested in any other &roups. You move the computer obCects of three fle servers to a ne" or&aniHational unit named !ecure!ervers. These fle servers contain only confdential data in shared folders. You need to prevent members of the TempWorkers &roup from accessin& the confdential data on the fle servers. You must achieve this &oal "ithout a=ectin& access to other domain resources. What should you do? 0reate a ne" -%7 and link it to the !ecure! ervers or&aniHa tional unit. $ssi&n the Deny access to this compute r from the net"ork user ri&ht to the TempWo rkers &lobal &roup. 0reate a ne" -%7 and link it to the domain. $ssi&n the Deny access to this computer from the net"ork user ri&ht to the TempWor kers &lobal &roup. 0reate a ne" -%7 and link it to the domain. $ssi&n the Deny lo& on locally user ri&ht to the TempWor kers &lobal &roup. 0reate a ne" -%7 and link it to the !ecure !ervers or&aniH ational unit. $ssi&n the Deny lo& on locally user ri&ht to the TempW orkers &lobal &roup Your net"ork consists of a sin&le $ctive Directory domain. 5ser accounts for en&ineerin& department are located in an 75 named +n&ineerin&. You need to create a pass"ord policy for the en&ineerin& department that is di=erent from your domain pass"ord policy. What should you do? 0reate a ne" -%7. 2ink the -%7 to the +n&ineer in& 75. 0reate a ne" -%7. 2ink the -%7 to the domain. Block policy inheritanc e on all 75s e@cept for the +n&ineeri n& 75. 0reate a &lobal security &roup and add all the user accounts for the en&ineeri n& departme nt to the &roup. 0reate a ne" %ass"ord %olicy 7bCect D%!7E and apply it to the &roup. 0reate a domain local securit y &roup and add all the user accoun ts for the en&ine erin& depart ment to the &roup. rom the $ctive Directo ry 5sers and 0ompu ter console / select the &roup and run the Dele&a tion of 0ontrol WiHard