Slide 1: Exam 70-646 study material Made available by CertsKing.com
Free 70-646 Exam Preparation Questions
Exam 70-646: Pro: Windows Server 2008, Server Administrator
For Latest 70-646 Exam Questions and study guides- visit- http://www.certsking.com/70-646.html
Slide 2: Q: 169 You are in the IT department of your company. There is a single Active Directory domain in your company. There are many servers in your company, and all the server are installed with the operation system of Windows Server 2008. Among them, 25 servers are web servers. And two organizational units (OU) are created for the web servers. An OU named Web is created for the computer accounts of the web servers and an OU named Admin for the user accounts for the web administrators. The web administrators are also in a global group named W_Admins. On the web servers, administrative tasks should be allowed to perform by the web administrators. But they can??t perform any administrative tasks on other servers. What should you do to achieve this? A. Create a group policy, and deploy it to the Web OU. B. Create a group policy, and deploy it to the Admin OU. C. Configure W_Admins to be added to the Domain Admins global group. D. configure W_Admins to be added to the Server Operators domain local group. Answer: A Question:1 You are in the IT department of your company. There is a single Active Directory domain in your company, and all domain controllers are installed with the operation system of Windows Server 2008. Now, your company gets a project, but there is not enough resource for this. And your company decides to collaborate on a project with an external partner. There is an Active Directory domain in the external partner, and all domain controllers are all installed Windows Server 2008 too. Because of the collaboration, a lot of resource should be shared. But you should also protect some sensitive documents from being accessed. And when forwarding sensitive documents to untrusted recipients, the users should have the right to stop it, so does the printing happens. The users in the external partner organization should be managed, and the protected content can be accessed by if they get the rights. And all the inter-organizational traffic should be transport in through the port 443. Now, you have deployed a Windows Server 2008 server named WS1. Which of the following should be included in your design so you can achieve the goal with the minimum administrative effort? A. Between your company and the external partner, establish a federated trust, and install the Windows SharePoint Services role on WS1. B. Between your company and the external partner, establish a federated trust, and install Microsoft Office SharePoint Server 2007 and the Active Directory Rights C. Between your company and the external partner, establish an external forest trust, install the Active Directory Certificate Services role on WS1, and configure D. Between your company and the external partner, establish an external forest trust, and install the Active Directory Rights Management Service (AD RMS) role Answer: B Question:2 Although Windows Server 2008 continues to support COM+ Network Access,newer applications typically use which ASF component to support remoteinvocation? A. WCF B. WF C. WAS D. WPF Answer: A Question:3 You are in the IT department of your company. There is a single Active Directory domain in your company, all domain controllers are installed with the operation system of Windows Server 2008. There are many managed switches in your company, and all the client computers are connected to them. Windows Vista is installed on all the client computers, the amount of which is 950. Now, you should configure the network access network access restrictions can??t be bypassed, and both up-to-date service packs and anti-malware software should be installed is a client computer want to access the network. What should you do to achieve this? A. Use DHCP enforcement to implement Network Access Protection (NAP). B. Use 802.1x enforcement to implement Network Access Protection (NAP). C. On the domain controllers, enable IPsec, and implement a Network Policy Server (NPS). D. On the managed switches, enable Remote Authentication Dial-In User Service (RADIUS) authentication, and implement a Network Policy Server (NPS). Answer: B Question:4 Windows Server Update Services (WSUS) provides a software update service for Microsoft Windows operating systems For Latest 70-646 Exam Questions and study guides- visit- http://www.certsking.com/70-646.html
Slide 3: and other Microsoft software. You are in the IT department of your company. There is a main office and five branch offices in your company. In one branch office, a server with the operation system of Windows Server 2008 runs WSUS named WS1. And the updates are all stored locally in WS1. Recently, a lot of employees are hired, so new satellite offices are opened, and each of them use a dedicated WAN link to connect to the branch office so they can access the Internet. In order to manage the patch more conveniently, you decide to approve WSUS updates in a central location, and minimize the WAN traffic between the branch office and the satellite offices when deploy updates. Which of the following should be included in your design to achieve the goal? A. Install a WSUS server in each satellite office, and configure it as a replica of WS1. B. Install a WSUS server in each satellite office, and configure it as an autonomous server that synchronizes to WS1. C. Create a computer group for each satellite office on WS1, and add the client computers in each satellite office as a member of their respective computer groups. D. Create an organizational unit (OU) for each satellite office, create and link a Group Policy object (GPO) to each OU, and configure different schedules to download Answer: A Question:5 You want to use Group Policy to install a software package on all the client computersin an OU. You want Group Policy to install the software and any updatesor new revisions when a client computer turns on. You want all the users wholog on at any of the computers to have access to the software. How do you configurethe software installation package in Group Policy? A. Assign the software at logon to all users in the OU. B. Publish the software to all users in the OU. C. Assign the software to all computers in the OU. D. Publish the software to all computers in the OU. Answer: C Question:6 A forest represents the outermost boundary of the directory service. Now, your network has a single Active Directory forest that has three domains named nosuchost.com, r1. nosuchost.com, and r2.nosuchost.com and their domain functional levels are Windows Server 2008. The Account Operators (AO) group has some members who are the employees from the Team1 team in nosuchost.com, and they manage the properties of user objects innosuchost.com. And the staffs in Team often join and leave. As an administrator of your company, you are asked to design a solution for managing user accounts that enables the Team1 to manage the user objects in all domains at the same time minimizes the administrative effort required to manage changes of the Team1 staff. What should you perform? A. For user accounts in all three domains, grant Full Control permissions to the AO group in nosuchost.com. B. Join the Team1 user accounts to the AO group in region1.nosuchost.com and in region2.nosuchost.com. C. Create a new global group in nosuchhost.com and join it to the AO group in all three domains and then join the Team1 user accounts to the new group. D. Create a new global group in contoso.com and join it to the AO group that is on every member server in all three domains and join the Team1 user accounts to Answer: C Question:7 You are in the IT department of your company. There are many servers in your company. And all the servers run Windows Server 2008. You have established a failover cluster on several servers. And an application has been installed on the cluster. A service level agreement (SLA) is established that 50 percent of the processor utilization should be reserved for the application, so does the memory utilization. What should you do to guarantee the level of performance specified in the SLA? A. Configure quotas using File Server Resource Manager (FSRM). B. Configure the LUN Management settings using Storage Manager for SANs (SMFS). C. Configure a resource-allocation policy for user-based management using Windows System Resource Manager (WSRM). D. Configure a resource-allocation policy for process-based management using Windows System Resource Manager (WSRM). Answer: D Question:8 You are in the IT department of your company. There a single Active Directory forest in your company. There are many servers in your company, and all of them run Windows Server 2008. Now, because of the expanded market, the sales For Latest 70-646 Exam Questions and study guides- visit- http://www.certsking.com/70-646.html
Slide 4: department bought six hundred new servers, and the same operation system is installed. All the servers?? performance should be monitored. Alerts should be generated when any of the servers run with the average processor usage higher than 85 percent for more than ten minutes and the processor monitoring threshold can be automatically adjusted so that temporary changes in the workload can still work. What should you do to achieve the goal? A. On each server, install Windows System Resource Manager (WSRM). B. Install Microsoft System Center Operations Manager (SCOM). C. Install Microsoft System Center Configuration Manager (SCCM). D. On each server, configure Microsoft Windows Reliability and Performance Monitor. Answer: B Question:9 You are using the System Center Essentials 2007 update configuration wizard toset update behavior for your network clients and servers. For which of thefollowing does the wizard prompt you? (Choose all that apply.) A. Applications and versions you want to update B. The location of your image file C. Your update language D. Types of updates you want to install E. Your installation settings Answer: D Question:10 Windows Server Update Services (WSUS) provides a software update service for Microsoft Windows operating systems and other Microsoft software. You are in the IT department of your company. There are many servers in your company, all with the operation system Windows Server 2008. There is a main office and five branch officesin your company. You have deployed WSUS on several of the servers in the main office, and the WSUS servers are configured so that all computers on the internal network can access the updates from the servers. Users in the branch offices use a splittunnel VPN connection to connect to the internal network from their computers. You want to approve the updates on the WSUS servers before the client computers can install, and the remote users should get the update with minimum bandwidth over VPN connections. Which of the following should be included in your plan? A. Configure a Group Policy object (GPO), and use it to perform client-side targeting. B. For the remote computers, configure a computer group, and force them to use the internal WSUS server. C. Use the Connection Manager Administration Kit (CMAK) to create a custom connection, and deploy it to the remote computers. D. For the remote computers, deploy a new WSUS server with the configuration to leave the updates on the Microsoft Update Web site, configure the remote Answer: D Question:11 You are in the IT department of your company, and managing the network of your company is one of your responsibilities. There is a single Active Directory domain in your company, and Windows Server 2008 is installed on all the domain controllers. There are many servers in your company, and all of them are installed with the operation system Windows Server 2008. Windows Vista runs on all the client computers of your company. The status of all the client computers?? Software updates should be reported monthly. And in the report, all of the updates installed successfully for the operating system and the Microsoft application should be recorded, so should all of the updates failed to install for the operating system and the Microsoft application. And you should achieve the goal with the minimum administrative effort and costs. What should you do to get this done? A. Configure Microsoft System Center Essentials (Essentials) 2007, and get all client computers deployed with management agents. B. Configure Microsoft System Center Configuration Manager (SCCM) 2007, and get all client computers deployed with management agents. C. Use a Group Policy object (GPO) to install Windows Software Update Services (WSUS) 3.0. Configure Windows Update. D. On the client computers, deploy Microsoft Baseline Security Analyzer (MBSA) 2.1, run MBSA, and save the report to a shared folder on the network. Answer: C Question:12 You are using System Center Configuration Manager 2007 to manage clients overthe Internet. Which of the following are you unable to do? (Choose all that apply.) A. Set the System Center Configuration Manager 2007 site to native mode. For Latest 70-646 Exam Questions and study guides- visit- http://www.certsking.com/70-646.html
Slide 5: B. Target software distribution to users. C. Distribute security updates. D. Use NAP. E. mplement Wake On LAN. F. Create a software inventory. Answer: B, D, E, F Question:13 Suppose there is a single Active Directory domain in your company network and all the domain controllers run Windows Server 2008. And all the client computers in the network have Windows Vista and Microsoft Office Outlook 2007 installed.Now the employees in the company can access the following resources:Windows Server 2008 files serversA database server on TCP port 47182Microsoft Exchange Server 2007 servers by using Outlook 2007 As the IT administrator, you are required to provide remote users who work from locations that only are only able to access the Internet by using HTTP and HTTPs, with remote access to the network. Concretely, you need to meet the following requirements,Remote users must be able to access the database server.Remote users must be able to establish secure connections to the network.Remote users must be able to access e-mail and file resources on the network. Then what??s your solution? A. First upgrade all client computers to Windows Vista Service Pack 1 and then implement Outlook Anywhere for Exchange Server 2007. B. First upgrade all client computers to Windows Vista Service Pack 1 and then implement a VPN solution that uses Secure Socket Tunneling Protocol (SSTP). C. First implement a VPN solution that uses Point-to-Point Tunneling Protocol (PPTP) and then deploy Connection Manager Administration Kit (CMAK) profiles to D. First implement a VPN solution that uses Layer Two Tunneling Protocol (L2TP) and then deploy Connection Manager Administration Kit (CMAK) profiles to the Answer: B Question: 14 Suppose there are 10,000 computers in your company and you need to design storage architecture for Windows Server Update Services (WSUS) updates with high availability. What will your design plan be like? A. Keep the updates of WSUS on a remote file share. B. Keep the updates of WSUS on a Distributed File System (DFS) link which employees multiple replicating targets. C. Keep the updates of WSUS on each WSUS server and then configure each WSUS server to use a RAID 0 hardware controller. D. Keep the updates of WSUS on a multi-homed network file server and then create two hosts (A) resource records for the WSUS servers. Answer: B Question: 15 Which of the following are necessary client computer conditions for System CenterConfiguration Manager 2007 to use Wake On LAN? (Choose all that apply.) A. System Center Configuration Manager 2007 must be installed on a server running Windows Server 2003 SP1 or later. B. At least one Windows Server 2008 server must exist on the network and must be configured with the Network Policy Server role. C. USMT 3.0 must be installed and running on the System Center Configuration Manager 2007 server. D. System Configuration Manager 2007 client software must be installed on the computer. E. The client network card must support magic packet format. F. The client BIOS must be configured for wake-up packets on the network card. Answer: D, E, F Question: 16 Suppose there are one main office as well as one branch office in your company. Your company network consists of a single Active Directory domain and both the main office and the branch office have an Active Directory site. All the domain controllers run Windows Server 2008. Now you are asked to modify the DNS infrastructure to comply with the following requirements,Make sure that the DNS service is available even if a single server failsEncrypt the synchronization data that is sent between DNS serversDynamic updates to all DNS servers should be supported. Then what??s your plan? A. First install the DNS server role on two servers and then create a primary zone on the DNS server in the main office. Last, create a secondary zone on the DNS For Latest 70-646 Exam Questions and study guides- visit- http://www.certsking.com/70-646.html
Slide 6: B. First install the DNS server role on a domain controller in the main office and on a domain controller in the branch office, then set DNS to use Active Directory C. First install the DNS server role on a domain controller in the main office and on a Read only Domain Controller (RODC) in the branch office, then configure DNS to D. First install the DNS server role on two servers and then create a primary zone and a GlobalNames zone on the DNS server in the main office. Last, create a Answer: B End of Document
For Latest 70-646 Exam Questions and study guides- visit- http://www.certsking.com/70-646.html
Slide 7: For complete Exam 70-646 Training kits and Self-Paced Study Material Visit: http://www.certsking.com/70-646.html
http://www.certsking.com/
For Latest 70-646 Exam Questions and study guides- visit- http://www.certsking.com/70-646.html