Microsoft Windows Server 2008,Enterprise Administrator Sample Questions:
1. Your network consists of one Windows Server 2008 domain. The network contains portable computers. You configure a server that runs Windows Server 2008 as a Routing and Remote Access Service (RRAS) server. Users connect remotely to the network through a virtual private network (VPN) connection to the RRAS server from both company-issued portable computers and non-company-issued computers. The relevant portion of the network is shown in the following diagram.
You need to prepare the environment to secure remote access to the network. The solution must meet the following requirements:
-Only computers that have Windows Firewall enabled can connect remotely.
-Only computers that have the most up-to-date antivirus definitions can connect remotely.
-Only computers that run Windows Vista and have the most up-to-date updates can connect remotely. What should you do?
A) Implement Network Access Protection (NAP) on the perimeter network.
B) Install a Microsoft Internet Security and Acceleration Server (ISA) 2006 on the network.
C) Create a domain Group Policy object (GPO). Enable Windows Firewall and publish updated antivirus definitions in the GPO.
D) Implement Authorization Manager.
2. Your company has one main office and 100 branch offices. The network consists of one Active Directory
domain.
All domain controllers run Windows Server 2008.
The wide area network (WAN) links from the branch offices to the main office are unreliable.
A local administrator manages each branch office. Your company plans to add a new branch office.
You create a new organizational unit (OU) that contains all the computer accounts for the new branch
office.
You configure a server in the main office to test all new software updates. You install Microsoft Windows
Server Update Services (WSUS) 3.0.
You need to implement an update management solution for the new branch office to meet the following requirements:
-Only approved updates must be installed in the branch office.
-Client computers must be able to download updates if a WAN link fails.
-Each branch office administrator must be able to approve updates before installation.
A) In the main office, install a WSUS 3.0 server as a child server and configure it to download updates from Microsoft Update. Configure all computers to receive updates from the new WSUS server.
B) In each branch office, install a WSUS 3.0 server as a child server and configure it to download updates from Microsoft Update. Configure all computers to receive updates from their local WSUS server.
C) In the main office, install and configure a WSUS 3.0 server as a stand-alone server and configure it to download updates from Microsoft Update. Configure all computers to receive updates from the new WSUS server.
D) In each branch office, install a WSUS 3.0 server as a replica server and configure it to download
What should you do?
updates from the main office. Configure all computers to receive updates from their local WSUS server.
3. A company has an Active Directory Domain Services (AD DS) domain. All servers run Windows Server 2008 R2.
The company plans to add a large number of members to the Account Operators group. You create a new organizational unit (OU), move the Account Operators group to the new OU, and delegate control of the OU to a server operator.
The server operator is unable make changes to the Account Operators group.
You need to ensure that the server operator can manage the Account Operators group.
What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)
A) Set the dsHeuristic flag to include the Account Operators group in the AdminSDHolder protection.
B) Make the server operator a Domain Administrator.
C) Set the dsHeuristic flag to exclude the Account Operators group from the AdminSDHolder protection.
D) Manually alter the access control lists (ACLs) on the Account Operators group to allow the server operator control.
4. A company has a main office and multiple branch offices. The corporate network contains an Active Directory Domain Services (AD DS) domain and servers that run Windows Server 2008 R2.
You plan to deploy 50 read-only domain controllers (RODCs) to the branch offices. You will configure the RODCs at the company's main office and then ship them to the branch offices for installation by on-site technicians.
You have the following requirements:
-Minimize network traffic related to the installation.
-Ensure the security of the RODCs.
You need to create a server configuration plan that meets the requirements.
You use the Ntdsutil command-line utility to prepare an Install From Media (IFM) source, removing any sensitive credentials.
What should you recommend next? (More than one answer choice may achieve the goal. Select the BEST answer.)
A) Install Windows Server 2008 R2 and add the RODC server role. Run DCPROMO with the / ReplicationSourcePath switch and specify the IFM source.
B) Perform a Server Core installation of Windows Server 2008 R2 and add the RODC server role. Run DCPROMO and specify an answer file that includes the IFM location.
C) Perform a Server Core installation of Windows Server 2008 R2 and add the RODC server role. Run DCPROMO with the /UseExistingAccount: Attach switch.
D) Install Windows Server 2008 R2 and add the RODC server role. Run DCPROMO and specify an answer file that includes the IFM location.
5. DRAG DROP
Litware, Inc. is merging with Contoso, Ltd. Each company has an Active Directory Domain Services (AD
DS) domain. All domain controllers run Windows Server 2008 R2.
Users in the Litware Support security group must access client computers on the Contoso domain.
You need to ensure that only Support group members can log on to Contoso client computers.
Which actions should you perform in sequence?
To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the
correct order. (Use only actions that apply.)
Select and Place:
Solutions:
| Question # 1 Answer: A | Question # 2 Answer: B | Question # 3 Answer: D | Question # 4 Answer: B | Question # 5 Answer: Only visible for members |
We're so confident of our products that we provide no hassle product exchange.


By Hulda

