Practical of 70-980 exam cost materials and ebook for Microsoft certification for IT professionals, Real Success Guaranteed with Updated 70-980 pdf dumps vce Materials. 100% PASS Recertification for MCSE: Server Infrastructure exam Today!

2021 Apr 70-980 practice question

Q131. - (Topic 9) 

Your network contains an Active Directory forest named adatum.com. All domain controllers run Windows Server 2008 R2. The functional level of the domain and the forest is Windows Server 2008. 

You deploy a new Active Directory forest named contoso.com. All domain controllers run Windows Server 2012 R2. The functional level of the domain and the forest is Windows Server 2012 R2. 

You establish a two-way, forest trust between the forests. Both networks contain member servers that run either Windows Server 2012 R2, Windows Server 2012, Windows Server 2008 R2 or Windows Server 2008. 

You plan to use the Active Directory Migration Tool 3.2 (ADMT 3.2) to migrate user accounts from adatum.com to contoso.com. SID history will be used in contoso.com and passwords will be migrated by using a Password Export Server (PES). 

You need to recommend which changes must be implemented to support the planned migration. 

Which two changes should you recommend? Each correct answer presents part of the solution. 

A. In the contoso.com forest, deploy a domain controller that runs Windows Server 2008 R2. 

B. In the adatum.com forest, upgrade the functional level of the forest and the domain. 

C. In the contoso.com forest, downgrade the functional level of the forest and the domain. 

D. In the adatum.com forest, deploy a domain controller that runs Windows Server 2012 R2. 

Answer: A,C 


Q132. - (Topic 10) 

Your network contains an Active Directory domain named contoso.com. The network contains two servers named Server1 and Server2. 

You deploy Active Directory Certificate Services (AD CS). The certification authority (CA) is configured as shown in the exhibit. (Click the Exhibit button.) 

You need to ensure that you can issue certificates based on certificate templates. 

What should you do? 

A. On Server1, install the Network Device Enrollment Service role service. 

B. Configure Server2 as a standalone subordinate CA. 

C. On Server1, uninstall, and then reinstall AD CS. 

D. On Server1, run the Add-CertificateEnrollmentPolicyServer cmdlet. 

Answer:

Explanation: In a typical CA infrastructure the Stand-alone CAs are primarily intended to be used as Trusted Offline RootCAs in a CA hierarchy or when extranets and the Internet are involved. In a stand-alone CA Certificatetemplates are not used. An enterprise CA uses certificate types, which are based on a certificate template 


Q133. - (Topic 10) 

Your network contains an Active Directory domain named contoso.com. The network contains a server named Server1 that runs Windows Server 2012. Server1 has the Active Directory Certificate Services server role installed. Server1 is configured as an offline standalone root certification authority (CA). 

You install the Active Directory Certificate Services server role on Server2 and configure the server as an enterprise subordinate CA. 

You need to ensure that the certificate issued to Server2 is valid for 10 years. 

What should you do first? 

A. Modify the subordinate CA certificate template. 

B. Modify the registry on Server2. 

C. Modify the registry on Server1. 

D. Modify the CAPolicy.inf file on Server2. 

E. Modify the CAPolicy.inf file on Server1. 

Answer:


Q134. - (Topic 5) 

You are planning the deployment of System Center 2012 Virtual Machine Manager (VMM). 

You need to identify which additional System Center 2012 product is required to meet the virtualization requirements. 

What should you include in the recommendation? 

A. App Controller 

B. Operations Manager 

C. Configuration Manager 

D. Service Manager 

Answer:

Topic 6, Proseware Inc (B) 

General Overview 

Proseware Inc., is a manufacturing company that has 4,000 employees. 

Proseware works with a trading partner named Fabrikam, Inc. 

Physical Locations 

Proseware has a main office and two branch offices. The main office is located in London. The branch offices are located in Madrid and Berlin. Proseware has a sales department based in the London office and a research department based in the Berlin office. The offices connect to each other by using a WAN link. Each office connects directly to the Internet. 

Proseware rents space at a hosting company. All offices have a dedicated WAN link to the hosting company. Web servers that are accessible from the Internet are located at the hosting company. 

Active Directory 

The Proseware network contains an Active Directory forest named proseware.com. The forest contains a single domain. The forest functional level is Windows Server 2012. 

Each office contains three domain controllers. An Active Directory site is configured for each office. 

System state backups are performed every day on the domain controllers by using System Center 2012 R2 Data Protection Manager (DPM). 

Virtualization 

Proseware has Hyper-V hosts that run Windows Server 2012 R2. Each Hyper-V host manages eight to ten virtual machines. The Hyper-V hosts are configured as shown in the following table. 

All of the Hyper-V hosts store virtual machines on direct-attached storage (DAS). 

Servers 

All servers run Windows Server 2012 R2. All of the servers are virtualized, except for the Hyper-V hosts. 

VDI1 and VDI2 use locally attached storage to host virtual hard disk (VHD) files. The VHDs use the .vhd format. 

A line-of-business application named SalesApp is used by the sales department and runs on a server named APP1. APP1 is hosted on HyperV2. 

A server named CA1 has the Active Directory Certificate Services server role installed and is configured as an enterprise root certification authority (CA) named ProsewareCA. 

Ten load-balanced web servers hosted on HyperV7 and HyperV8 run the Internet-facing web site that takes orders from Internet customers. 

System Center 2012 R2 Operations Manager is used to monitor the health of the servers on the network. 

All of the servers are members of the proseware.com domain, except for the servers located in the perimeter network. 

Client Computers 

All client computers run either Windows 8.1 or Windows 7. Some of the users in the London office connect to pooled virtual desktops hosted on VDI1 and VDI2. 

Problem Statements 

Proseware identifies the following issues on the network: 

Virtualization administrators report that the load on the Hyper-V hosts is inconsistent. The virtualization administrators also report that administrators fail to account for host utilization when creating new virtual machines. 

Users in the sales department report that they experience issues when they attempt to access SalesApp from any other network than the one in the London office. 

Sometimes, configuration changes are not duplicated properly across the web servers, resulting in customer ordering issues. Web servers are regularly changed. 

Demand for virtual desktops is increasing. Administrators report that storage space is becoming an issue as they want to add more virtual machines. 

In the past, some personally identifiable information (PII) was exposed when paper shredding procedures were not followed. 

Requirements 

Planned Changes 

Proseware plans to implement the following changes on the network: Implement a backup solution for Active Directory. Relocate the sales department to the Madrid office. Implement System Center 2012 R2 components, as required. Protect email attachments sent to Fabrikam that contain PII data so that the attachments cannot be printed. Implement System Center 2012 R2 Virtual Machine Manager (VMM) to manage the virtual machine infrastructure. Proseware does not plan to use private clouds in the near future. Deploy a new Hyper-V host named RESEARCH1 to the Berlin office. RESEARCH1 will be financed by the research department. All of the virtual machines deployed to RESEARCH1 will use VMM templates. 

Technical Requirements 

Proseware identifies the following virtualization requirements: 

. The increased demand for virtual desktops must be met. 

. Once System Center is deployed, all of the Hyper-V hosts must be managed by using VMM. 

. If any of the Hyper-V hosts exceeds a set number of virtual machines, an administrator must be notified by email. 

. Network administrators in each location must be responsible for managing the Hyper-V hosts in their respective location. The management of the hosts must be performed by using VMM. 

. The network technicians in each office must be able to create virtual machines in their respective office. The network technicians must be prevented from modifying the host server settings. 

. New virtual machines must be deployed to RESEARCH1 only if the virtual machine template used to create the machine has a value specified for a custom property named CostCenter' that matches Research'. 

The web site configurations must be identical on all web servers. 

Security Requirements 

Proseware identifies the following security requirements: 

. All email messages sent to and from Fabrikam must be encrypted by using digital certificates issued to users by the respective CA of their company. No other certificates must be trusted between the organizations. 

. Microsoft Word documents attached to email messages sent from Proseware to Fabrikam must be protected. 

. Privileges must be minimized, whenever possible. 


Q135. - (Topic 9) 

Your network contains an Active Directory domain named contoso.com. The physical 

topology of the network is configured as shown in the exhibit. 

Each office contains 500 employees. 

You plan to deploy several domain controllers to each office. 

You need to recommend a site topology for the planned deployment. 

What should you include in the recommendation? 

More than one answer choice may achieve the goal. Select the BEST answer. 

Exhibit 

A. Five sites and one site link 

B. Three sites and three site links 

C. One site 

D. Five sites and three site links 

Answer:

Explanation: 

http://technet.microsoft.com/en-us/library/cc960573.aspx Create a site for each LAN, or set of LANs, that are connected by a high speed backbone, and assign the site a name. Connectivity within the site must be reliable and always available. This would mean 5 sites Site links are transitive, so if site A is connected to site B, and site B is connected to site C, then the KCC assumes that domain controllers in site A can communicate with domain controllers in site C. You only need to create a site link between site A and site C if there is in fact a distinct network connection between those two sites. This would mean 3 sitelinks So answer is "Five sites and three site links" 


Most recent 70-980 free practice questions:

Q136. DRAG DROP - (Topic 9) 

Your network contains an Active Directory forest named contoso.com. 

Your company merges with another company that has an Active Directory forest named 

litwareinc.com. 

Each forest has one domain. 

You establish a two-way forest trust between the forests. 

The network contains three servers. The servers are configured as shown in the following table. 

You confirm that the client computers in each forest can resolve the names of the client computers in both forests. 

On dc1.litwareinc.com, you create a zone named GlobalNames. 

You need to recommend changes in both forests to ensure that the users in both forests can resolve single-label names by using the GlobalNames zone in litwareinc.com. 

Which changes should you recommend? 

To answer, drag the appropriate configuration to the correct server in the answer area. Each configuration may be used once, more than once, or not at all. Additionally, you may need to drag the split bar between panes or scroll to view content. 

Answer: 


Q137. - (Topic 7) 

You plan to implement a solution that meets the certificate requirements of Customer1. You need to identify which role services must be deployed to the hosting environment. 

Which two role services should you identify? Each correct answer presents part of the solution. 

A. Certification Authority Web Enrollment 

B. Online Responder 

C. Certificate Enrollment Policy Web Service 

D. Certificate Enrollment Web Service 

Answer: C,D 


Q138. - (Topic 3) 

You need to ensure that NAP meets the technical requirements. 

Which role services should you install? 

A. Network Policy Server, Health Registration Authority and Host Credential Authorization Protocol 

B. Health Registration Authority, Host Credential Authorization Protocol and Online Responder 

C. Certification Authority, Network Policy Server and Health Registration Authority 

D. Online Responder, Certification Authority and Network Policy Server 

Answer:

Explanation: 

D:\Documents and Settings\useralbo\Desktop\1.jpg 

Health Registration Authority Applies To: Windows Server 2008 R2, Windows Server 2012 Health Registration Authority (HRA) is a component of a Network Access Protection (NAP) infrastructure that plays a central role in NAP Internet Protocol security (IPsec) enforcement. HRA obtains health certificates on behalf of NAP clients when they are compliant with network health requirements. These health certificates authenticate NAP clients for IPsec-protected communications with other NAP clients on an intranet. If a NAP client does not have a health certificate, the IPsec peer authentication fails and the NAP client cannot initiate communication with other IPsec-protected computers on the network. HRA is installed on a computer that is also running Network Policy Server (NPS) and Internet Information Services (IIS). If they are not already installed, these services will be added when you install HRA. http://technet.microsoft.com/en-us/library/cc732365.aspx 

Topic 4, Northwind Traders (A) 

Overview 

Northwind Traders is a retail company. 

The company has offices in Montreal and San Diego. The office in Montreal has 1,000 client computers. The office in San Diego has 100 computers. The computers in the San Diego office are often replaced. The offices connect to each other by using a slow WAN link. Each office connects directly to the Internet. 

Existing Environment 

Active Directory Environment 

The network contains an Active Directory forest named northwindtraders.com. The forest contains two domains named northwindtraders.com and west.northwindtraders.com. All servers run Windows Server 2012 R2. 

All client computers run Windows 7. 

Each office is configured as an Active Directory site. The site in the Montreal office is named Site1. The site in the San Diego office is named Site2. 

The forest contains four domain controllers. The domain controllers are configured as shown in the following table. 

DC1, DC2, and DC3 are writable domain controllers. R0DC1 is read-only domain controller 

(RODC). All DNS zones are Active Directory-integrated. All zones replicate to all of the 

domain controllers. 

All of the computers in the San Diego office are configured to use RODC1 as their only 

DNS server. 

The northwindtraders.com domain contains a Group Policy object (GPO) named GPO1. 

GP01 is applied to all of the users in the Montreal office. 

All of the user accounts for the Montreal users are in the northwindtraders.com domain. All 

of the user accounts for the San Diego users are in the west.northwindtraders.com domain. 

Network Environment 

Site1 contains the member servers in the northwindtraders.com domain shown in the following table. 

Server1 connects to SAN storage that supports Offloaded Data Transfer (ODX). All virtual hard disks (VHDs) are stored on the SAN. 

A web application named App1 is installed on Servers. 

Server3 has a shared folder that contains sales reports. The sales reports are read frequently by the users in both offices. The reports are generated automatically once per week by an enterprise resource planning (ERP) system. 

A perimeter network in the Montreal office contains two standalone servers. The servers 

are configured as shown in the following table. 

The servers in the perimeter network are accessible from the Internet by using a domain name suffix of public.northwindtraders.com. 

Each administrator has a management computer that runs Windows 8.1. 

Requirements Planned Changes 

Northwind Traders plans to implement the following changes: 

On Server1, create four virtual machines that run Windows Server 2012 R2. The servers will be configured as shown in the following table. 

Configure IP routing between Site1 and the network services that Northwind 

Traders hosts in Windows Azure. 

Place a domain controller for the northwindtraders.com domain in Windows Azure. 

Upgrade all of the computers in the Montreal office to Windows 8.1. 

Purchase a subscription to Microsoft Office 365. 

Configure a web application proxy on Server6. 

Configure integration between VMM and IPAM. 

Apply GPO1 to all of the San Diego users. 

Connect Site1 to Windows Azure. 

Technical Requirements 

Northwind Traders must meet the following technical requirements: 

All virtual machines must use ODX. 

Users must be able to access App1 from the Internet. 

GPO1 must not be applied to computers that run Windows 8.1. 

All DNS zones must replicate only to DC1, DC2, and DC3. 

All computers must be able to resolve names by using a local DNS server. 

If a WAN link fails, users must be able to access all of the sales reports. 

The credentials for accessing Windows Azure must be permanently stored. 

The on-premises network must be connected to Windows Azure by using Server4. 

The administrators must be able to manage Windows Azure by using Windows PowerShell. 

The number of servers and services deployed in the San Diego office must be minimized. 

Active Directory queries for the objects in the forest must not generate WAN traffic, whenever possible. 

Security Requirements 

Northwind Traders identifies the following security requirements: 

Ensure that all DNS zone data is encrypted when it is replicated. 

Minimize the number of permissions assigned to users and administrators, whenever possible. Prevent an Active Directory Domain Services (AD DS) attribute named SSNumber from replicating to Site2. 

Ensure that users can use their northwindtraders.com user account to access the resources hosted in Office 365. 

Prevent administrators from being required to re-enter their credentials when they manage Windows Azure from approved management computers. 


Q139. DRAG DROP - (Topic 9) 

Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. 

You plan to decommission the fabrikam.com domain. 

You need to perform the following migration tasks: . Copy user accounts from the fabrikam.com domain to the contoso.com domain. . Move the client computers from fabrikam.com to contoso.com. The solution must ensure that all of the user profiles are associated to the migrated user accounts. 

Which tool should you use to perform each task? 

To answer, drag the appropriate tool to the correct migration task in the answer area. Each 

tool may be used once, more than once, or not at all. Additionally, you may need to drag the split bar between panes or scroll to view content. 

Answer: 


Q140. - (Topic 9) 

Your company, which is named Contoso, Ltd., has a main office and two branch offices. The main office is located in North America. The branch offices are located in Asia and Europe. 

You plan to design an Active Directory forest and domain infrastructure. 

You need to recommend an Active Directory design to meet the following requirements: 

. The contact information of all the users in the Europe office must not be visible to the users in the other offices. 

. The administrators in each office must be able to control the user settings and the computer settings of the users in their respective office. 

The solution must use the least amount of administrative effort. 

What should you include in the recommendation? 

A. One forest that contains three domains 

B. Three forests that each contain one domain 

C. Two forests that each contain one domain 

D. One forest that contains one domain 

Answer:

Explanation: Answer: B http://www.informit.com/articles/article.aspx?p=32080&seqNum=5