♥♥ 2021 NEW RECOMMEND ♥♥

Free VCE & PDF File for Microsoft 70-980 Real Exam (Full Version!)

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW 70-980 Exam Dumps (PDF & VCE):
Available on: http://www.surepassexam.com/70-980-exam-dumps.html

Q11. - (Topic 9) 

Your network contains an Active Directory domain named contoso.com. The domain contains multiple sites. 

You plan to deploy DirectAccess. 

The network security policy states that when client computers connect to the corporate network from the Internet, all of the traffic destined for the Internet must be routed through the corporate network. 

You need to recommend a solution for the planned DirectAccess deployment that meets the security policy requirement. 

Solution: You enable split tunneling. Does this meet the goal? 

A. Yes 

B. No 

Answer:


Q12. - (Topic 8) 

You need to recommend a solution that meets the notification requirements. 

Which System Center 2012 components should you include in the recommendation? 

A. Service Manager, Orchestrator and App Controller 

B. Configuration Manager, Service Manager and Orchestrator 

C. App Controller, Configuration Manager and Operations Manager 

D. Operations Manager, Service Manager and Orchestrator 

Answer:


Q13. - (Topic 1) 

You are planning the decommissioning of research.contoso.com. 

You need to ensure that an administrator named Admin5 in the research department can manage the user accounts that are migrated to contoso.com. The solution must minimize the number of permissions assigned to Admin5. 

What should you do before you migrate the user accounts? 

A. Run the New-Object cmdlet, and then run the Add-ADPrincipalGroupMembershipcmdlet. 

B. Create a new organizational unit (OU), and then add Admin5 to the Account Operators group. 

C. Create a new organizational unit (OU), and then run the Delegation of Control Wizard. 

D. Run the New-Object cmdlet, and then run the Add-ADCentralAccessPolicyMembercmdlet. 

Answer:

Explanation: 

D:Documents and SettingsuseralboDesktop1.jpg http://technet.microsoft.com/en-us/library/dd145344.aspx 


Q14. - (Topic 9) 

Your network contains an Active Directory forest. The forest contains two Active Directory domains named contoso.com and child.contoso.com. The forest functional level is Windows Server 2003. The functional level of both domains is Windows Server 2008. 

The forest contains three domain controllers. The domain controllers are configured as shown in the following table. 

DC1 and DC2 have the DNS Server server role installed and are authoritative for both contoso.com and child.contoso.com. 

The child.contoso.com domain contains a server named serverl.child.contoso.com that runs Windows Server 2012. 

You plan to deploy server1.child.contoso.com as a read-only domain controller (RODC). 

You run the adprep.exe /rodcprep command on DC3 and receive the following error message: 

You need to identify what prevents you from successfully running Adprep /rodcprep on DC3. 

What should you identify? 

A. The domain functional level of child.contoso.com is set to the wrong level. 

B. DC3 cannot connect to the infrastructure master on DC2. 

C. DC3 cannot connect to the domain naming master on DC1. 

D. The forest functional level is set to the wrong level. 

Answer:


Q15. - (Topic 5) 

You need to recommend a solution that meets the technical requirements for DHCP. 

What should you include in the recommendation for each office? 

A. DHCP failover 

B. Network Load Balancing (NLB) 

C. DHCP server policies 

D. IP Address Management (IPAM) 

Answer:


Q16. DRAG DROP - (Topic 9) 

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2012. Server1 resides in the perimeter network and has the Remote Access server role installed. 

Some users have laptop computers that run Windows 7 and are joined to the domain. Some users work from home by using their home computers. The home computers run either Windows XP, Windows Vista/ Windows 7, or Windows 8. 

You need to configure the computers for remote access. 

Which three actions should you perform? 

To answer, move the three appropriate actions from the list of actions to the answer area 

and arrange them in the correct order. 

Answer: 


Q17. HOTSPOT - (Topic 10) 

Your network contains an Active Directory domain named contoso.com. The domain contains a Network Load Balancing (NLB) cluster named Cluster1 that contains four nodes. Cluster1 hosts a web application named App1. The session state information of App1 is stored in a Microsoft SQL Server 2012 database. 

The network contains four subnets. 

You discover that all of the users from a subnet named Subnet1 always connect to the same NLB node. 

You need to ensure that all of the users from each of the subnets connect equally across all of the nodes in Cluster1. 

What should you modify from the port settings? 

To answer, select the appropriate setting in the answer area. 

Answer: 


Q18. - (Topic 9) 

Your network contains an Active Directory domain named contoso.com. The functional level of the domain and the forest is Windows Server 2008 R2. 

All domain controllers run Windows Server 2008 R2. 

You plan to deploy a new line-of-business application named App1 that uses claims-based authentication. 

You need to recommend changes to the network to ensure that Active Directory can provide claims for App1. 

What should you include in the recommendation? (Each correct answer presents part of the solution. Choose all that apply.) 

A. From the properties of the computer accounts of the domain controllers, enable Kerberos constrained delegation. 

B. From the Default Domain Controllers Policy, enable the Support for Dynamic Access Control and Kerberos armoring setting. 

C. Deploy Active Directory Lightweight Directory Services (AD LDS). 

D. Raise the domain functional level to Windows Server 2012. 

E. Add domain controllers that run Windows Server 2012. 

Answer: B,E 


Q19. - (Topic 9) 

Your network contains an Active Directory forest named adatum.com. All domain controllers run Windows Server 2008 R2. The functional level of the domain and the forest is Windows Server 2008. 

You deploy a new Active Directory forest named contoso.com. All domain controllers run Windows Server 2012 R2. The functional level of the domain and the forest is Windows Server 2012 R2. 

You establish a two-way, forest trust between the forests. Both networks contain member servers that run either Windows Server 2012 R2, Windows Server 2012, Windows Server 2008 R2 or Windows Server 2008. 

You plan to use the Active Directory Migration Tool 3.2 (ADMT 3.2) to migrate user accounts from adatum.com to contoso.com. SID history will be used in contoso.com and passwords will be migrated by using a Password Export Server (PES). 

You need to recommend which changes must be implemented to support the planned migration. 

Which two changes should you recommend? Each correct answer presents part of the solution. 

A. In the contoso.com forest, deploy a domain controller that runs Windows Server 2008 R2. 

B. In the adatum.com forest, upgrade the functional level of the forest and the domain. 

C. In the contoso.com forest, downgrade the functional level of the forest and the domain. 

D. In the adatum.com forest, deploy a domain controller that runs Windows Server 2012 R2. 

Answer: A,C 


Q20. - (Topic 10) 

Your network contains an Active Directory domain named contoso.com. The network contains a server named Server1 that runs Windows Server 2012. Server1 has the Active Directory Certificate Services server role installed. Server1 is configured as an offline standalone root certification authority (CA). 

You install the Active Directory Certificate Services server role on Server2 and configure the server as an enterprise subordinate CA. 

You need to ensure that the certificate issued to Server2 is valid for 10 years. 

What should you do first? 

A. Modify the subordinate CA certificate template. 

B. Modify the registry on Server2. 

C. Modify the registry on Server1. 

D. Modify the CAPolicy.inf file on Server2. 

E. Modify the CAPolicy.inf file on Server1. 

Answer: