Worksheets70-741 Quiz 4
Total questions: 46
Worksheet time: 2hrs 18mins
QUESTION 1. You network contains an Active Directory domain named contoso.com. The domain contains a DHCP server named Server1. All client computers run Windows 10 and are configured as DHCP clients. Your helpdesk received calls today from users who failed to access the network from their Windows 10 computer. You open the DHCP console as shown in the exhibit. (Click the Exhibit button.) You need to ensure that all of the Windows 10 computers can receive a DHCP lease. Solution: You activate the scope. Does this meet the goal?
A. Yes
B. No
QUESTION 2. Your network contains an Active Directory domain named contoso.com. The domain contains a DNS server named Server1. All client computers run Windows 10. On Server1, you have the following zone configuration. You have the following subnets defined on Server1. You need to prevent Server1 from resolving queries from DNS clients located on Subnet4. Server1 must resolve queries from all other DNS clients. Solution: From Windows Firewall with Advanced Security on Server1, you create an inbound rule. Does this meet the goal?
A. Yes
B. No
QUESTION 5. You network contains an Active Directory domain named contoso.com. The domain contains a DHCP server named Server1. All client computers run Windows 10 and are configured as DHCP clients. Your helpdesk received calls today from users who failed to access the network from their Windows 10 computer. You open the DHCP console as shown in the exhibit. (Click the Exhibit button.) You need to ensure that all of the Windows 10 computers can receive a DHCP lease. Solution: You start the DHCP Server service. Does this meet the goal?
A. Yes
B. No
QUESTION 9. You network contains an Active Directory domain named contoso.com. The domain contains a DHCP server named Server2 than runs Windows Server 2016. Users report that their client computers fail to obtain an IP address. You open the DHCP console as shown in the Exhibit. (Click the Exhibit button.) Scope1 has an address range of 172.16.0.10 to 172.16.0.100 and a prefix length of 23 bits. You need to ensure that all of the client computers on the network can obtain an IP address from Server2. Solution: You run the Set-DhcpServerv4Scope cmdlet. Does this meet the goal?
A. Yes
B. No
QUESTION 11. Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series. Your network contains an Active Directory domain named contoso.com. The functional level of the domain is Windows Server 2012. The network uses an address space of 192.168.0.0/16 and contains multiple subnets. The network is not connected to the Internet. The domain contains three servers configured as shown in the following table. Client computers obtain TCP/IP settings from Server3. You add a second network adapter to Server2. You connect the new network adapter to the Internet. You install the Routing role service on Server2. Server1 has four DNS zones configured as shown in the following table. You need to create a zone to ensure that Server1 can resolve single-label names. What should you name the zone on Server1?
A. . (root)
B. WINS
C. NetBIOS
D. GlobalNames
QUESTION 23. You network contains an Active Directory domain named contoso.com. The domain contains a DHCP server named Server2 than runs Windows Server 2016. Users report that their client computers fail to obtain an IP address. You open the DHCP console as shown in the Exhibit. (Click the Exhibit button.) Scope1 has an address range of 172.16.0.10 to 172.16.0.100 and a prefix length of 23 bits. You need to ensure that all of the client computers on the network can obtain an IP address from Server2. Solution: You run the Reconcile-DhcpServerv4IPRecord cmdlet. Does this meet the goal?
A. Yes
B. No
QUESTION 24. You have two Hyper-V hosts named Server1 and Server2 that run Windows Server 2016. Server1 and Server2 are connected to the same network. On Server1 and Server2, you create an external network switch named Switch1. You have the virtual machine shown in the following table. All three virtual machines are connected to Switch1. You need to prevent applications in VM3 from being able to capture network traffic from VM1 or VM2. The solution must ensure that VM1 retains network connectivity. What should you do?
A. Configure network virtualization for VM1 and VM2.
B. Modify the subnet mask of VM1 and VM2.
C. On Server2, configure the VLAN ID setting of Switch1.
D. On Server2, create an external switch and connect VM3 to the switch.
QUESTION 25. You have a server named Server1 that runs Windows Server 2016. Server1 is a Hyper-V host that hosts a virtual machine named VM1. Server1 has three network adapter cards that are connected to virtual switches named vSwitch1, vSwitch2 and vSwitch3. You configure NIC Teaming on VM1 as shown in the exhibit. (Click the Exhibit button.) You need to ensure that VM1 will retain access to the network if a physical network adapter card fails on Server1. What should you do?
A. From Windows PowerShell on VM1, run the Set-VmNetworkAdapterTeamMapping cmdlet.
B. From Hyper-V Manager on Server1, modify the settings on VM1.
C. From Windows PowerShell on Server1, run the Set- VmNetworkAdapterFailoverConfiguration cmdlet.
D. From the properties of the NIC team on VM1, add the adapter named Ethernet to the NIC team.
QUESTION 27. You network contains an Active Directory domain named contoso.com. The domain contains a DHCP server named Server1. All client computers run Windows 10 and are configured as DHCP clients. Your helpdesk received calls today from users who failed to access the network from their Windows 10 computer. You open the DHCP console as shown in the exhibit. (Click the Exhibit button.) You need to ensure that all of the Windows 10 computers can receive a DHCP lease. Solution: You increase the scope size. Does this meet the goal?
A. Yes
B. No
QUESTION 28. Your network contains an Active Directory domain named contoso.com. The functional level of the domain is Windows Server 2012. The network uses an address space of 192.168.0.0/16 and contains multiple subnets. The network is not connected to the Internet. The domain contains three servers configured as shown in the following table. Client computers obtain TCP/IP settings from Server3. You add a second network adapter to Server2. You connect the new network adapter to the Internet. You install the Routing role service on Server2. Server1 has four DNS zones configured as shown in the following table. You need to ensure that when a computer is removed from the network, the associated records are deleted automatically after 15 days. Which two actions should you perform? Each correct answer presents part of the solution.
A. Create a scheduled task that runs the Remove-Computer cmdlet.
B. Modify the Zone Aging/Scavenging Properties of the zone.
C. Modify the Time to live (TTL) value of the start of authority (SOA) record.
D. Set the Scavenging period of Server1.
QUESTION 29. You have a server named Server1 that runs Windows Server 2016. Server1 has the following routing table. What will occur when Server1 attempts to connect to a host that has an IP address of 172.20.10.50?
A. Server1 will attempt to connect directly to 172.20.10.50.
B. Server1 will route the connection to 10.10.0.2.
C. Server1 will silently drop the connection attempt.
D. Server1 will route the connection to 192.168.2.1.
QUESTION 31. Your network contains an Active Directory domain named contoso.com. The domain contains a DNS server named Server1. All client computers run Windows 10. On Server1, you have the following zone configuration. You have the following subnets defined on Server1. You need to prevent Server1 from resolving queries from DNS clients located on Subnet4. Server1 must resolve queries from all other DNS clients. Solution: From a Group Policy object (GPO) in the domain, you modify the Network List Manager Policies. Does this meet the goal?
A. Yes
B. No
QUESTION 32. You network contains an Active Directory domain named contoso.com. The domain contains a DHCP server named Server2 than runs Windows Server 2016. Users report that their client computers fail to obtain an IP address. You open the DHCP console as shown in the Exhibit. (Click the Exhibit button.) Scope1 has an address range of 172.16.0.10 to 172.16.0.100 and a prefix length of 23 bits. You need to ensure that all of the client computers on the network can obtain an IP address from Server2. Solution: You run the Repair-DhcpServerv4IPRecord cmdlet. Does this meet the goal?
A. Yes
B. No
QUESTION 33. Your network contains an Active Directory domain named contoso.com. The functional level of the domain is Windows Server 2012. The network uses an address space of 192.168.0.0/16 and contains multiple subnets. The network is not connected to the Internet. The domain contains three servers configured as shown in the following table. Client computers obtain TCP/IP settings from Server3. You add a second network adapter to Server2. You connect the new network adapter to the Internet. You install the Routing role service on Server2. Server1 has four DNS zones configured as shown in the following table. You need to ensure that when a record is added dynamically to fabrikam.com, only the computer that created the record can modify the record. The solution must allow administrators to modify all of the records in fabrikam.com. What should you do?
A. Change fabrikam.com to an Active Directory-integrated zone.
B. Raise the functional level of the domain.
C. Modify the security settings of the Fabrikam.com.dns file.
D. Modify the Start of Authority (SOA) settings of fabrikam.com
QUESTION 34. Your network contains an Active Directory domain named contoso.com. The domain contains a DNS server named Server1. All client computers run Windows 10. On Server1, you have the following zone configuration. You have the following subnets defined on Server1. You need to prevent Server1 from resolving queries from DNS clients located on Subnet4. Server1 must resolve queries from all other DNS clients. Solution: From Windows PowerShell on Server1, you run the Add- DnsServerQueryResolutionPolicy cmdlet. Does this meet the goal?
A. Yes
B. No
QUESTION 38. Your network contains an Active Directory domain named contoso.com. The functional level of the domain is Windows Server 2012. The network uses an address space of 192.168.0.0/16 and contains multiple subnets. The network is not connected to the Internet. The domain contains three servers configured as shown in the following table. Client computers obtain TCP/IP settings from Server3. You add a second network adapter to Server2. You connect the new network adapter to the Internet. You install the Routing role service on Server2. Server1 has four DNS zones configured as shown in the following table. What should you do to enable Server2 as a NAT server?
A. From Routing and Remote Access, add an interface.
B. From Windows PowerShell, run the New-RoutingGroupConnector cmdlet.
C. From Routing and Remote Access, add a routing protocol.
D. From Windows PowerShell, run the Install-WindowsFeature cmdlet.
QUESTION 69. Your network contains an Active Directory domain named contoso.com. The domain contains a Hyper-V host named Server1 that runs Windows Server 2016. Server1 hosts four machines that are members of the domains. The virtual machines are configured as sown in the following table. Which virtual machines can you manage by using PowerShell Direct?
A. Only VM2
B. VM1, VM2, and VM4
C. only VM4
D. VM1, VM2, and VM3
QUESTION 74. You have a Hyper-V host named Server1 that hosts a virtual machine named VM1. Server1 and VM1 run Windows Server 2016. The settings for VM1 are configured as shown in the exhibit below. You need to ensure that you can use the Copy-VMFile cmdlet on Server1 to copy files from VM1. Solution: You start the Hyper-V Guest Service Interface service on VM1. Does this meet the goal?
A. YES
B. NO
QUESTION 78. You have a Hyper-V host named Server1 that hosts a virtual machine named VM1. Server1 and VM1 run Windows Server 2016. The settings for VM1 are configured as shown in the exhibit below. You need to ensure that you can use the Copy-VMFile cmdlet on Server1 to copy files from VM1. Solution: You need to enable the Guest Service integration service for VM1. Does this meet the goal?
A. Yes
B. No
QUESTION 80. Your network contains an Active Directory domain named contoso.com. The domain contains a domain-based Distributed file System (DFS) namespace named Namespace1 that has access-based enumeration enabled. Namespace1 has a folder named folder1. Folder1 has a target of \\Server1\Folder1. The Permission for folder1 are configured as shown in the following table. Access-based enumeration is disabled for the share of Folder1. You need to ensure that both User1 and User2 can see Folder1 when they access \\Contoso.com\NameSpace1 What should you do?
A. Enable access-based enumeration for Folder1.
B. Disable access-based enumeration for Namespace1.
C. Assign User1 the read NTFS permission to folder1
D. Deny User1 the read DFS permission to Folder1.
QUESTION 81. Scenario: You are a network administrator for a company named Contoso,Ltd. The network is configured as shown in the exhibit. You install the Remote Access server role on Server2. Server2 has the following configured. * Network address translation (NAT) * The DHCP Server server role The Security Policy of Contoso states that only TCP ports 80 and 443 are allowed from the internet to server2 You identify the following requirements: * Add 28 devices to subnet2 for a temporary project. * Configure Server2 to accept VPN connections from the internet. * Ensure that devices on Subnet2 obtain TCP/IP settings from DHCP on Server2. End of Scenario: What should you do to meet the DHCP connectivity requirement for Subnet2?
A. Install the Routing role service on Server2.
B. Install the IP address Management (IPAM) Server feature on Server2.
C. Install the Routing role service on Server1.
D. Install the DHCP Server server role on Server1.
QUESTION 83. Scenario: You are a network administrator for a company named Contoso,Ltd. The network is configured as shown in the exhibit. You install the Remote Access server role on Server2. Server2 has the following configured. * Network address translation (NAT) * The DHCP Server server role The Security Policy of Contoso states that only TCP ports 80 and 443 are allowed from the internet to server2 You identify the following requirements: * Add 28 devices to subnet2 for a temporary project. * Configure Server2 to accept VPN connections from the internet. * Ensure that devices on Subnet2 obtain TCP/IP settings from DHCP on Server2. End of Scenario: You add a computer to subnet1. The computer has an IP address of 10.10.0.129. Web1 receives a request from the new computer and sends a response. What will be the reply address?
A. 10.10.0.129
B. 10.10.0.224
C. 131.107.0.223
D. 172.16.128.222
QUESTION 84. A company named Contoso, Ltd has five Hyper-V hosts that are configured as shown in the following table. What are two valid live migration scenarios for virtual machines in your environment?
A. from Sever1 to server5
B. from Server4 to Server 5
C. from Server2 to Server3
D. from Server3 to Server4
QUESTION 112. Your network contains an Active Directory domain named contoso.com. The domain contains a DNS server named Server1. All client computers run Windows 10. On Server1, you have the following zone configuration. You need to ensure that all of the client computers in the domain perform DNSSEC validation for the fabrikam.com namespace. Solution: From Windows PowerShell on Server1, you run the Add-DnsServertrustAnchor cmdlet. Does this meet the goal?
A. Yes
B. No
QUESTION 114. Your network contains an Active Directory domain named contoso.com. The domain contains a DNS server named Server1. All client computers run Windows 10. On Server1, you have the following zone configuration. You have the following subnets defined on Server1. You need to prevent Server1 from resolving queries from DNS clients located on Subnet4. Server1 must resolve queries from all other DNS clients. Solution: From the Security Setting of each zone on Server1, you modify the permissions. Does this meet the goal?
A. Yes
B. No
QUESTION 115. Server1 has two virtual machines named VM1 and VM2 that run Windows Server 2016. VM1 connects to Private. VM2 has two network adapters. You need to ensure that VM1 connects to the corporate network by using NAT. Solution: You connect VM2 to private1 and External1. You install the Remote Access Server role on VM2, and you configure NAT in the Routing and Remote Access console. You configure VM1 to use VM2 as the default gateway. Does this meet the goal?
A. Yes
B. No
QUESTION 118. Refer to exhibit, Server1 has two virtual machines named VM1 and VM2 that run Windows Server 2016. VM1 connects to Private. VM2 has two network adapters. You need to ensure that VM1 connects to the corporate network by using NAT. Solution: You connect VM1 to Internal1. You run the New-NetNatIpAddress and the New-NetNat cmdlets on Server1. You configure VM1 to use VM2 as the default gateway. Does this meet the goal?
A. Yes
B. No
QUESTION 124. Your network contains an Active Directory domain named contoso.com. The domain contains a DNS server named Server1. All client computers run Windows 10. On Server1, you have the following zone configuration. You need to ensure that all of the client computers in the domain perform DNSSEC validation for the fabrikam.com namespace. Solution: From a Group Policy object (GPO) in the domain, you add a rule to the Name Resolution Policy Table (NRPT). Does this meet the goal?
A. Yes
B. No
QUESTION 125. Refer to Exhibit, you plan to implement a VPN. FabRA1 will use the RADIUS proxy for authentication. You need to ensure that VPN clients can be authenticated and can access internal resources. The solution must ensure that FabRS1 is used as a RADIUS server and FabRPl is used as a RADIUS proxy. Which two actions should you perform?
A. Create a connection request policy on FabRSl.
B. Create a connection request policy on FabRPl.
C. Create a network policy on FabRSl.
D. Delete the default connection request policy on FabRSl.
QUESTION 138. Refer to exhibit. Server1 has two virtual machines named VM1 and VM2 that run Windows Server 2016. VM1 connects to Private1. VM2 has two network adapters. You need to ensure that VM1 connects to the corporate network by using NAT. Solution: You connect VM1 to Inernal1. You run the New-NetNatIpAddress and the New-NetNat cmdlets on Server1. You configure VM1 to use Server1 as the default gateway. Does this meet the goal?
A. Yes
B. No
QUESTION 139. Refer to exhibit. Server1 has two virtual machines named VM1 and VM2 that run Windows Server 2016. VM1 connects to Private1. VM2 has two network adapters. You need to ensure that VM1 connects to the corporate network by using NAT. Solution: You connect VM2 to Private1 and External1. You install the Remote Access server on VM2, and you configure NAT in the Routing and Remote Access console. You configure VM1 and VM2 as the default gateway. Does this meet the goal?
A. Yes
B. No
QUESTION 140. Your network contains an Active Directory domain named adatum.com. The domain contains two DHCP servers named Server1 and Server2. Server1 has the following IP configuration. Server2 has the following IP configuration. Some users report that sometimes they cannot access the network because of conflicting IP addresses. You need to configure DHCP to avoid leasing addresses that are in use already. Solution: On Server1, you modify the ActivatePolicies setting of the scope. Does this meet the goal?
A. Yes
B. No
QUESTION 141. Your network contains an Active Directory domain named adatum.com. The domain contains two DHCP servers named Server1 and Server2. Server1 has the following IP configuration. Server2 has the following IP configuration. Some users report that sometimes they cannot access the network because of conflicting IP addresses. You need to configure DHCP to avoid leasing addresses that are in use already. Solution: On Server1, you modify the EndRange IP address of the scope. Does this meet the goal?
A. Yes
B. No
QUESTION 142. Your network contains an Active Directory domain named adatum.com. The domain contains two DHCP servers named Server1 and Server2. Server1 has the following IP configuration. Server2 has the following IP configuration. Some users report that sometimes they cannot access the network because of conflicting IP addresses. You need to configure DHCP to avoid leasing addresses that are in use already. Solution: On Server2, you modify the ConflictDetectionAttempts value for IPv4. Does this meet the goal?
A. Yes
B. No
QUESTION 148. Your network contains an Active Directory domain named contoso.com. The domain contains a DHCP server named Server2 than runs Windows Server 2016. Users report that their client computers fail to obtain an IP address. You open the DHCP console as shown in the Exhibit. (Click the Exhibit button.) Scope1 has an address range of 172.16.0.10 to 172.16.0.100 and a prefix length of 23 bits. You need to ensure that all of the client computers on the network can obtain an IP address from Server2. Solution: You run the Set-DhcpServerv4MulticastScope cmdlet. Does this meet the goal?
A. Yes
B. No
QUESTION 158. You have three servers named Server1, Server2, and Server3 that run Windows Server 2016. On all three servers, Windows Firewall is configured to allow ICMP traffic. Server2 has two network adapters named NIC1 and NIC2. Your network is configured as shown in the exhibit. (Click the Exhibit button.) The parameters for NIC2 on Server1 are shown in the following output. Which ping request will result in a reply from the destination host?
A. From Server2, ping 192.168.15.1
B. From Server3, ping 192.168.15.1
C. From Server1, ping 172.16.0.1
D. From Server1, ping 172.16.0.35
QUESTION 187. You have a DNS server named Server1 that runs Windows Server 2016. Server 1 has a forward lookup scope for Contoso.com. The records in the zone are shown in the exhibit. (Click the Exhibit button.) You run the following commands on Server1. What are two results of the configuration? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point.
A. When a client computer that has an IP address of 172.16.0.10 attempts to resolve host1.contoso.com, host1.contoso.com resolves to 172.16.99.99.
B. When a client computer that has an IP address of 172.16.0.10 attempts to resolve host1.contoso.com, the name resolution fails to return an IP address.
C. When a client computer that has an IP address of 172.16.1.56 attempts to resolve host1.contoso.com, host1.contoso.com resolves to 172.16.99.99.
D. When a client computer that has an IP address of 172.16.1.56 attempts to resolve host1.contoso.com, the name resolution fails to return an IP address.
QUESTION 188. Start of repeated scenario. Your network contains an Active Directory domain named contoso.com. The functional level of the domain is Windows Server 2012. The network uses an address space of 192.168.0.0/16 and contains multiple subnets. The network is not connected to the Internet. The domain contains three servers configured as shown in the following table. Client computers obtain TCP/IP settings from Server3. You add a second network adapter to Server2. You connect the new network adapter to the Internet. You install the Routing role service on Server2. Server1 has four DNS zones configured as shown in the following table. End of repeated scenario. You need to ensure that when computers query for records in tailspintoys.com, the query results are based on the subnet of the computer that generates the query. What should you do?
A. Modify the Priority settings of each resource record.
B. Configure DNS policies.
C. Create zone delegation records.
D. Enable DNS round robin.
QUESTION 198. You have a Hyper-V host named Server1. Server1 connects to your corporate network. Server1 has the virtual switches configured as shown in the following table. Server1 has two virtual machines named VM1 and VM2 that run Windows Server 2016. VM1 connects to Private1. VM2 has two network adapters. You need to ensure that VM1 connects to the corporate network by using NAT. Solution: You connect VM1 to External1. You install the Remote Access server role on Server1, and you configure NAT in the Routing and Remote Access console. Does this meet the goal?
A. Yes
B. No
QUESTION 199. You have a Hyper-V host names Server1 that runs Windows Server 2016. Server1 has multiple network adapters that have virtual machine queue (VMQ) enabled. On Server1, you create a virtual machine named VM1 as shown in the exhibit. (Click the Exhibit button.) You need to ensure that you can use virtual Receive-side Scaling (vRSS) on VM1. What should you do?
A. Add additional memory.
B. Add additional processors.
C. Add additional network adapters.
D. Enable the Data Exchange integration service.
QUESTION 200. Your network contains an Active Directory domain named contoso.com. The domain contains a DHCP server named Server1. All client computers run Windows 10 and are configured as DHCP clients. Your helpdesk received calls today from users who failed to access the network from their Windows 10 computer. You open the DHCP console as shown in the exhibit. (Click the Exhibit button.) You need to ensure that all of the Windows 10 computers can receive a DHCP lease. Solution: You authorize the server. Does this meet the goal?
A. Yes
B. No
QUESTION 226. You are a network administrator for a company named Contoso, Ltd. The network is configured as shown in the exhibit. You install the Remote Access server role on Server2. Server2 has the following configured: - Network address translation (NAT) - The DHCP Server server role The Security Policy of Contoso states that only TCP ports 80 and 443 are allowed from the internet to Server2. You identify the following requirements: - Add 28 devices to subnet2 for a temporary project. - Configure Server2 to accept VPN connections from the internet. - Ensure that devices on Subnet2 obtain TCP/IP settings from DHCP on Server2. Which VPN protocol should you configure on Server2?
A. L2TP
B. IKEv2
C. PPTP
D. SSTP
QUESTION 227. You are a network administrator for a company named Contoso, Ltd. The network is configured as shown in the exhibit. You install the Remote Access server role on Server2. Server2 has the following configured: - Network address translation (NAT) - The DHCP Server server role The Security Policy of Contoso states that only TCP ports 80 and 443 are allowed from the internet to Server2. You identify the following requirements: - Add 28 devices to subnet2 for a temporary project. - Configure Server2 to accept VPN connections from the internet. - Ensure that devices on Subnet2 obtain TCP/IP settings from DHCP on Server2. You deploy a computer named ComputerA to Subnet1. ComputerA has an IP address of 10.10.0.129 and a subnet mask of 255.255.255.0. You plan to use ComputerA to access the resources on Web1. Which IP address should you use as the default gateway on ComputerA?
A. 10.10.1.1
B. 10.10.0.224
C. 131.107.0.223
D. 172.16.128.193
