hybrid
![]() |
![]() |
![]() |
Título del Test:![]() hybrid Descripción: administracion |




Comentarios |
---|
NO HAY REGISTROS |
Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. You need to identify which server is the PDC emulator for the domain. Solution: From Active Directory Sites and Services, you right-click Default-First-Site-Name in the console tree, and then select Properties.Does this meet the goal?. Yes. NO. Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. You need to identify which server is the PDC emulator for the domain. Solution: From Active Directory Domains and Trusts, you right-click Active Directory Domains and Trusts in the console tree, and then select Operations Master. Does this meet the goal?. Yes. No. Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. You need to identify which server is the PDC emulator for the domain. Solution: From a command prompt, you run netdom.exe query fsmo. Does this meet the goal?. Yes. No. You have an on premises Active Directory Domain Services (AD DS) domain that syncs with an Azure Active Directory (Azure AD) tenant. You plan to implement self-service password reset (SSPR) in Azure AD. You need to ensure that users that reset their passwords by using SSPR can use the new password resources in the AD DS domain. What should you do?. A. Deploy the Azure AD Password Protection proxy service to the on premises network. B. Run the Microsoft Azure Active Directory Connect wizard and select Password writeback. C. Grant the Change password permission for the domain to the Azure AD Connect service account. D. Grant the impersonate a client after authentication user right to the Azure AD Connect service account. You have an Azure Active Directory Domain Services (Azure AD DS) domain named contoso.com. You need to provide an administrator with the ability to manage Group Policy Objects (GPOs). The solution must use the principle of least privilege. To which group should you add the administrator?. A. AAD DC Administrators. B. Domain Admins. C. Schema Admins. D. Enterprise Admins. E. Group Policy Creator Owners. You create a new Azure subscription. You plan to deploy Azure Active Directory Domain Services (Azure AD DS) and Azure virtual machines. The virtual machines will be joined to Azure AD DS. You need to deploy Active Directory Domain Services (AD DS) to ensure that the virtual machines can be deployed and joined to Azure AD DS. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Select and Place. Modify the settings of the Azure virtual network. Install the Active Directory Domain Services role. Install Azure AD Connect. Create an Azure virtual network. Create an Azure AD DS instance. Run the Active Directory Domain Service installation Wizard. You have an Azure Active Directory Domain Services (Azure AD DS) domain. You create a new user named Admin1. You need Admin1 to deploy custom Group Policy settings to all the computers in the domain. The solution must use the principle of least privilege. What should you include in the solution? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point Hot Area: AAD DC Administrators. Domain Admins. Group Policy Creator Owners. Creating a new Group Policy Object (GPO) and linking the GPO to the domain. Modifying AADDC Computers GPO. Modifying the default domain GPO. DRAG DROP - Your network contains a single domain Active Directory Domain Services (AD DS) forest named contoso.com. The forest contains a single Active Directory site. You plan to deploy a read only domain controller (RODC) to a new datacenter on a server named Server1. A user named User1 is a member of the local Administrators group on Server1. You need to recommend a deployment plan that meets the following requirements: ✑ Ensures that a user named User1 can perform the RODC installation on Server1 ✑ Ensures that you can control the AD DS replication schedule to the Server1 ✑ Ensures that Server1 is in a new site named RemoteSite1 ✑ Uses the principle of least privilege Which three actions should you recommend performing in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Select and Place: Instruct User1 to run the Active Directory Domain Services installation Wizard on Server1. Create a site and a subnet. Create a site link. Pre-create an RODC account. Add User1 to the Contoso\Administrators group. Your network contains an Active Directory Domain Services (AD DS) domain. You have a Group Policy Object (GPO) named GPO1 that contains Group Policy preferences. You plan to link GPO1 to the domain. You need to ensure that the preference in GPO1 apply only to domain member servers and NOT to domain controllers or client computers. All the other Group Policy settings in GPO1 must apply to all the computers. The solution must minimize administrative effort. Which type of item level targeting should you use?. A. Domain. B. Operating System. C. Security Group. D. Environment Variable. DRAG DROP - You deploy a new Active Directory Domain Services (AD DS) forest named contoso.com. The domain contains three domain controllers named DC1, DC2, and DC3. You rename Default-First-Site-Name as Site1. You plan to ship DC1, DC2, and DC3 to datacenters in different locations. You need to configure replication between DC1, DC2, and DC3 to meet the following requirements: ✑ Each domain controller must reside in its own Active Directory site. ✑ The replication schedule between each site must be controlled independently. ✑ Interruptions to replication must be minimized. Which three actions should you perform in sequence in the Active Directory Sites and Services console? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Select and Place: Create a connection object between DC1 and DC2. Create an additional site link that contains Site1 and Site2. Create two additional sites named Site2 and Site3. Move DC2 to site2 and DC3 to site3. Create a connection object between DC2 and DC3. Remove Site2 DEFAULTIPSITELINK. Your network contains an Active Directory Domain Services (AD DS) forest named contoso.com. The root domain contains the domain controllers shown in the following table. A failure of which domain controller will prevent you from creating application partitions?. A. DC1. B. DC2. C. DC3. D. DC4. E. DC5. HOTSPOT - You have 10 on-premises servers that run Windows Server. You plan to use Azure Network Adapter to connect the servers to the resources in Azure. Which prerequisites do you require on-premises and in Azure? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area: Azure Cli. Routing and Remote Access. Server Manager. Windows Admin Center. Azure Bastion. Azure Firewall. An azure Virtual network gateway. A private endpoint. a public Azure Load Balancer. DRAG DROP - You have a server named Server1 that has Windows Admin Center installed. The certificate used by Windows Admin Center was obtained from a certification authority (CA). The certificate expires. You need to replace the certificate. Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. Select and Place: Copy the certificate thumbprint. From Internet Information Services (IIS) Manager, bind a certificate. Rerun Windows Admin Center Setup and select Change. Rerun Windows Admin Center Setup and select Repair. Rerun Windows Admin Center Setup and select Remove. HOTSPOT - You have an on-premises server named Server1 that runs Windows Server and has internet connectivity. You have an Azure subscription. You need to monitor Server1 by using Azure Monitor. Which resources should you create in the subscription, and what should you install on Server1? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area. An Azure Files storage account. A Log analytics workspace. An Azure SQL database and a data collection rule. An Azure Blob Storage account and a data collection rule. The azure Monitor agent. The analytics gateway. The Device Health Attestation server role. You have an on premises Active Directory Domain Services (AD DS) domain that syncs with an Azure Active Directory (Azure AD) tenant. The domain contains two servers named Server1 and Server2. A user named Admin1 is a member of the local Administrators group on Server1 and Server2. You plan to manage Server1 and Server2 by using Azure Arc. Azure Arc objects will be added to a resource group named RG1. You need to ensure that Admin1 can configure Server1 and Server2 to be managed by using Azure Arc. What should you do first?. A. From the Azure portal, generate a new onboarding script. B. Assign Admin1 the Azure Connected Machine Onboarding role for RG1. C. Hybrid Azure AD join Server1 and Server2. D. Create an Azure cloud-only account for Admin1. HOTSPOT - Your network contains two Active Directory Domain Services (AD DS) forests named contoso.com and fabrikam.com. A two-way forest trust exists between the forests. Each forest contains a single domain. The domains contain the servers shown in the following table. You need to configure resource based constrained delegation so that the users in contoso.com can use Windows Admin Center on Server1 to connect to Server2. How should you complete the command? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area: (Get-ADComputer server1.contoso.com ). (Get-ADComputer server2.fabrikam.com). (Get-ADGroup 'Contoso\Domain Users'). (Get-ADGroup 'Fabrikam\Domain Users'). (Get-ADComputer server1.contoso.com ). (Get-ADComputer server2.fabrikam.com). (Get-ADGroup 'Contoso\Domain Users'). (Get-ADGroup 'Fabrikam\Domain Users'). HOTSPOT - You have a server named Server1 that runs Windows Server and has the Hyper-V server role installed. You need to limit which Hyper-V module cmdlets helpdesk users can use when administering Server1 remotely. You configure Just Enough Administration (JEA) and successfully build the role capabilities and session configuration files. How should you complete the PowerShell command? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area: Enter-PSSession. New-PSSessionConfigurationFile. Register-PSSessionConfiguration. .ps1. .psm1. .psrc. .pssc. You have an Azure virtual machine named VM1 that runs Windows Server. You have an Azure subscription that has Microsoft Defender for Cloud enabled. You need to ensure that you can use the Azure Policy guest configuration feature to manage VM1. What should you do?. A. Add the PowerShell Desired State Configuration (DSC) extension to VM1. B. Configure VM1 to use a user-assigned managed identity. C. Configure VM1 to use a system-assigned managed identity. D. Add the Custom Script Extension to VM1. You have a server named Host1 that has the Hyper-V server role installed. Host1 hosts a virtual machine named VM1. You have a management server named Server1 that runs Windows Server. You remotely manage Host1 from Server1 by using Hyper-V Manager. You need to ensure that you can access a USB hard drive connected to Server1 when you connect to VM1 by using Virtual Machine Connection. Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point. A. From the Hyper-V Settings of Host1, select Allow enhanced session mode. B. From Virtual Machine Connection, select Show Options, and then select the USB hard drive. C. From Virtual Machine Connection, switch to a basic session. D. From Disk Management on Host1, select Rescan Disks. E. From Disk Management on Host1, attach a virtual hard disk. You have a Windows Server container host named Server1 and a container image named image1. You need to start a container from image1. The solution must run the container on a Hyper-V virtual machine. Which parameter should you specify when you run the docker run command?. A. --expose. B. --privileged. C. --runtime. D. --isolation. E. --entrypoint. You plan to deploy a containerized application that requires .NET Core. You need to create a container image for the application. The image must be as small as possible. Which base image should you use?. A. Windows Server. B. Nano Server. C. Windows. D. Server Core. You have an Azure virtual machine named VM1 that runs Windows Server. You perform the following actions on VM1: ✑ Create a folder named Folder1 on volume C. ✑ Create a folder named Folder2 on volume D. ✑ Add a new data disk to VM1 and create a new volume that is assigned drive letter E. ✑ Install an app named App1 on volume E. You plan to resize VM1. Which objects will present after you resize VM1?. A. Folder1, volume E, and App1 only. B. Folder1 only. C. Folder1 and Folder2 only. D. Folder1, Folder2, App1, and volume E. You have an Azure virtual machine named VM1 that runs Windows Server and has the following configurations: ✑ Size: D2s_v4 ✑ Operating system disk: 127-GiB standard SSD ✑ Data disk 128-GiB standard SSD ✑ Virtual machine generation: Gen 2 You plan to perform the following changes to VM1: ✑ Change the virtual machine size to D4s_v4. ✑ Detach the data disk. ✑ Add a new standard SSD. Which changes require downtime for VM1?. A. Detaching the data disk only and adding a new standard SSD. B. Detaching the data disk only. C. Changing the virtual machine size only. D. Adding a new standard SSD only. HOTSPOT - You have a Windows Server container host named Server1 that has a single disk. On Server1, you plan to start the containers shown in the following table. Which isolation mode can you use for each container? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point. Hot Area: Hyper-V isolation only. Process isolation only. Hyper-V isolation or process isolation. Hyper-V isolation only. Process isolation only. Hyper-V isolation or process isolation. Hyper-V isolation only. Process isolation only. Hyper-V isolation or process isolation. |