[Free] 2018(June) Ensurepass Microsoft 70-642 Dumps with VCE and PDF 51-60

Ensurepass.com : Ensure you pass the IT Exams
2018 May Microsoft Official New Released 70-642
100% Free Download! 100% Pass Guaranteed!

TS: Windows Server 2008 Network Infrastructure, Configuring

Question No: 51 – (Topic 1)

Your network contains a server named DC1 that runs Windows Server 2008 R2. DC1 hosts an Active

Directory-integrated stub zone named contoso.com.

You need to ensure that DC1 contains the most up-to-date records for the zone. What should you do?

  1. From Active Directory Sites and Services, click Replicate Now.

  2. From Active Directory Sites and Services, click Check Replication Topology.

  3. From DNS Manager, click Update Server Data Files.

  4. From DNS Manager, click Transfer from Master.

Answer: C

Explanation: http://technet.microsoft.com/en-us/library/cc723556.aspx

The zone database files are the zones#39; permanent storage location, holding all the zones#39; resource records. If you use DNS Manager to make a change to a zone, the copy of the zone in the name server#39;s memory is changed, and a flag is set to update that zone#39;s database file. The name server updates the zone database file when it exits, unless you tell it to update it sooner.

The command DNS -gt; Update Server Data Files causes the name server to update the zone database files of all zones it#39;s a primary for, regardless of whether or not they#39;ve been modified.

To avoid losing data, we recommend using DNS -gt; Update Server Data Files after any changes-use it like you use the Save command in other applications.

Question No: 52 – (Topic 1)

Your network contains an Active Directory forest. The forest contains a member server named Server1 that runs Windows Server 2008 R2.

You need to configure Server1 as a network address translation (NAT) server. Which server role, role service, or feature should you install?

  1. Services for Network File System (NFS)

  2. Wireless LAN Service

  3. Network Load Balancing (NLB)

  4. Group Policy Management

  5. Routing and Remote Access service (RRAS)

  6. File Server Resource Manager (FSRM)

  7. Windows System Resource Manager (WSRM)

  8. Health Registration Authority (HRA)

  9. Windows Server Update Services (WSUS)

  10. Windows Internal Database

  11. Simple TCP/IP Services

  12. Connection Manager Administration Kit (CMAK)

  13. Network Policy Server (NPS)

Answer: E

Question No: 53 – (Topic 1)

Your network contains an Active Directory domain named contoso.com. The network is configured to use ISATAP.

You have a server named Server1 that runs Windows Server 2008 R2.

On Server1, you discover that a tunnel adapter named isatap.contoso.com has a Media State of quot;Media disconnectedquot;.

You confirm that Server1 has a valid network connection and can query the DNS server. You need to ensure that the isatap.contoso.com tunnel adapter has an IPv6 address.

What should you do?

  1. Start the IP Helper service.

  2. Start the IPsec Policy Agent service.

  3. Add a new rule to Windows Firewall.

  4. Add an entry for ISATAP to the Hosts file.

Answer: A Explanation:

The IP Helper service service must be running for IPv6 transition technologies such as ISATAP, Teredo, and 6to4 to function on the computer. This service provides automatic IPv6 connectivity over an IPv4 network, and if the service is stopped, the computer will have only IPv6 connectivity if it is connected to a native IPv6 network. Therefore, if your network is not native IPv6, disabling this service on Windows Server 2008 computers effectively disables IPv6 on them.

Question No: 54 – (Topic 1)

Your network contains an Active Directory domain named contoso.com. All domain controllers run Windows Server 2008 R2 and are configured as DNS servers. All client computers run Windows 7.

You create a new zone named secure.contoso.com and configure the zone to use DNSSEC.

You need to ensure that all client computers verify whether the name and address information of secure.contoso.com is validated by the DNS servers.

What should you configure from Group Policy?

  1. an IPSec Security policy

  2. the DNS Client settings

  3. the Public Key policies

  4. a Name Resolution Policy rule

Answer: D Explanation:

http://technet.microsoft.com/en-us/library/ee649182(WS.10).aspx

Question No: 55 – (Topic 1)

Your company has a domain controller named Server1 that runs Windows Server 2008 R2 and the DNS Server server role. A server named Server2 runs a custom application.

You need to configure DNS to include the following parameters for the custom application:

->Service

->Priority

->Weight

->Protocol

->Port number

->Host offering this service Which record should you create?

  1. Host Info (HINFO)

  2. Service Location (SRV)

  3. Canonical Name (CNAME)

  4. Well-Known Service (WKS)

Answer: B Explanation:

See below sample:

Ensurepass 2018 PDF and VCE

Question No: 56 – (Topic 1)

Your company has an Active Directory forest. All domain controllers run the DNS Server server role.

The company plans to decommission the WINS service. You need to enable forest-wide single name resolution.

What should you do?

  1. Enable WINS-R lookup in DNS

  2. Create Service Location (SRV) records for the single name resources

  3. Create an Active Directory-integrated zone named LegacyWINS. Create host (A) records for the single name resources

  4. Create an Active Directory-integrated zone named GlobalNames. Create an alias host (CNAME) records for the single name resources

Answer: D Explanation:

http://technet.microsoft.com/en-us/library/cc731744.aspx

Question No: 57 – (Topic 1)

Your company has a server that runs Windows Server 2008 R2. You have a new application that locates remote resources by name. The new application requires IPv6.

You need to ensure that the application can locate remote resources by using IPv6. What should you do?

  1. Create a new Pointer (PTR) DNS record.

  2. Create a new Quad-A (AAAA) DNS record.

  3. Create a new Signature (SIG) DNS record.

  4. Create a new Route Through (RT) DNS record.

Answer: B

Question No: 58 – (Topic 1)

Your company contains an active directory domain name contoso.com. The network contains three subnets that they are separated by firewall.

The domain has a server named server5 that has active directory lightweight services. Server5 only support encrypted LDAP connection.

You need to configure to ensure the client computers can access the LDAP services on server5.

Which port should you allow through windows firewall.

  1. TCP 389

  2. TCP 636

  3. UDP 636

  4. UDP 53

Answer: B Explanation:

http://technet.microsoft.com/en-us/library/dd772723(v=ws.10).aspx

Question No: 59 – (Topic 1)

Your network contains a file server named Server1. Server1 contains a folder named Folder1. The permissions for Folder1 are configured as shown in the following table.

Ensurepass 2018 PDF and VCE

You need to ensure that only members of Group1 can add files to Folder1 over the network.

What should you do?

  1. Modify the share permission for Group1.

  2. Modify the share permission for Authenticated Users.

  3. Modify the NTFS permission for Group1.

  4. Modify the NTFS permission for Authenticated Users.

Answer: C

Question No: 60 – (Topic 1)

Your company has a main office and two branch offices. Domain controllers in the main office host an Active Directory-integrated zone.

The DNS servers in the branch offices host a secondary zone for the domain and use the main office DNS servers as their DNS Master servers for the zone.

The company adds a new branch office. You add a member server named Branch3 and install the DNS Server server role on the server. You configure a secondary zone for the domain. The zone transfer fails.

You need to configure DNS to provide zone data to the DNS server in the new branch office.

What should you do?

  1. Run dnscmd by using the ZoneResetMasters option.

  2. Run dnscmd by using the ZoneResetSecondaries option.

  3. Add the new DNS server to the Zone Transfers tab on one of the DNS servers in the main office.

  4. Add the new DNS server to the DNSUpdateProxy Global security group in Active Directory Users and Computers.

Answer: C

100% Ensurepass Free Download!
Download Free Demo:70-642 Demo PDF
100% Ensurepass Free Guaranteed!
Download 2018 EnsurePass 70-642 Full Exam PDF and VCE

EnsurePass ExamCollection Testking
Lowest Price Guarantee Yes No No
Up-to-Dated Yes No No
Real Questions Yes No No
Explanation Yes No No
PDF VCE Yes No No
Free VCE Simulator Yes No No
Instant Download Yes No No

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.