Microsoft 70-646 ExamPro: Windows Server 2008 - Server Administrator

Total Question: 262 Last Updated: Aug 19,2019
  • Updated 70-646 Dumps
  • Based on Real 70-646 Exams Scenarios
  • Free 70-646 pdf Demo Available
  • Check out our 70-646 Dumps in a new PDF format
  • Instant 70-646 download
  • Guarantee 70-646 success in first attempt
Package Select:

Questions & Answers PDF

Practice Test Software

Practice Test + PDF 30% Discount

Price: $65.95 $29.99

Buy Now Free Trial
Home > 70-646

Latest Microsoft 70-646 Pass4sure (Topic 2)

11. You are designing a monitoring solution to log performance on member servers that run

Windows Server 2008 R2.

The monitoring solution must meet the following requirements for members of the

Operations team:

Create and modify Data Collector Sets.

Display log file data and real-time performance data in Performance Monitor.

You need to design a monitoring solution that meets the requirements.

What should you recommend? (More than one answer choice may achieve the goal. Select

the BEST answer.)

A. Add members of the Operationsteam to the Performance Monitor Users group. Assign

the Act as part of the operating system user right to the Performance Monitor Users group

B. Add members of the Operations team to the Performance Log Users group

C. Add members of the Operations team tothe Administrators group

D. Add members of the Operations team to the Power Users group. Assign the Act as part

of the operating system user right to the Power Users group

Answer: B

Explanation:

A Data Collector Set is the building block of performance monitoring and reporting in

Windows Performance Monitor. It organizes multiple data collection points into a single

component that can be used to review or log performance. A Data Collector Set can be

created and then recorded individually, grouped with other Data Collector Set and

incorporated into logs, viewed in Performance Monitor, configured to generate alerts when

thresholds are reached, or used by other non-Microsoft applications. It can be associated

with rules of scheduling for data collection at specific times. Windows Management

Interface (WMI) tasks can be configured to run upon the completion of Data Collector Set

collection.

Data Collector Sets can contain the following types of data collectors:

Performance counters

Event trace data

System configuration information (registry key values)

You can create a Data Collector Set from a template, from an existing set of Data

Collectors in a Performance

Monitor view, or by selecting individual Data Collectors and setting each individual option in

the Data Collector

Set properties.

http://technet.microsoft.com/en-us/library/cc722148

You can create a Data Collector Set from counters in the current Performance Monitor display. Membership in the local Performance Log Users or Administrators group, or

equivalent, is the minimum required to complete this procedure.

 

12. A company has servers that run Windows Server 2008 R2. Administrators use a graphicintensive

Application to remotely manage the network. You are designing a remote network

administration solution.

You need to ensure that authorized administrators can connect to internal servers over the

Internet from computers that run Windows 7 or Windows Vista. Device redirection

enforcement must be enabled for these connections.

What should you recommend? (More than one answer choice may achieve the goal.

Selectthe BEST answer.)

A. Deploy and configure a server with the Remote Desktop Web Access server role.

Enable Forms-based authentication. Ensure that administrators use RDC 6.1 when

accessing internal servers remotely.

B. Deploy and configure a server with the Remote Desktop Web Access server role.

Enable Forms-based authentication. Ensure that administrators use RDC 7.0 when

accessing internal servers remotely,

C. Deploy and configure a server with the Remote Desktop Gateway server role. Ensure

that administrators use RDC 7.0 when accessing internal servers remotely.

D. Deploy and configure a server with the Remote Desktop Gateway server role. Ensure

that administrators use RDC 6.1 when accessing internal servers remotely.

Answer: C

Explanation:

http://windows.microsoft.com/en-us/windows7/What-is-a-Remote-Desktop-Gateway-server

A Remote Desktop Gateway (RD Gateway) server is a type of gateway that enables

authorized users to connect to remote computers on a corporate network from any

computer with an Internet connection. RD Gateway uses the Remote Desktop Protocol

(RDP) along with the HTTPS protocol to help create a more secure, encrypted connection.

http://technet.microsoft.com/en-us/library/dd560672%28v=ws.10%29.aspx

Device redirection enforcement

An RD Gateway server running Windows Server 2008 R2 includes the option to allow

remote desktop clients to only connect to RD Session Host servers that enforce device redirection. RDC 7.0 is required for device redirection to be enforced by the RD Session

Host server running Windows Server 2008 R2.

Device redirection enforcement is configured on the Device Redirection tab of the RD CAP

by using Remote Desktop Gateway Manager.

 

13. Your network consists of asingle Active Directory domain. The functional level of the

domain is Windows Server 2008 R2. All servers run Windows Server 2008 R2. A corporate

security policy requires complex passwords for user accounts that have administrator

privileges.

You need to design a strategy that meets the following requirements:

Ensures that administrators use complex passwords

Minimizes the number of servers required to support the solution

What should you include in your design?

A. Implement Network Access Protection (NAP).

B. Implement Active Directory Rights Management Services (AD RMS).

C. Create a new Password Settings Object (PSO) for administrator accounts.

D. Create a new child domain in the forest. Move all nonadministrator accounts to the new

domain. Configure a complex password policy in the root domain.

Answer: C

Explanation:

http://technet.microsoft.com/en-us/library/cc770842%28WS.10%29.aspx

http://technet.microsoft.com/en-us/library/cc754461%28WS.10%29.aspx

 

14. A company has client computers that run Windows 7. The company has Windows Server

Update Services (WSUS) 3.0 with Service Pack 2 (SP2) deployed on a server that runs

Windows Server 2008 R2.

You are designing an update management solution for the company's client computers.

The solution must meet the following requirements:

Client computers must use WSUS for the installation of updates.

Only administrators should receive update notifications from WSUS.

You need to design an update management solution that meets the requirements.

What should you recommend? (More than one answer choice may achieve the goal. Select

the BEST answer.)

A. Define the WSUS settings in the Computer Configuration area of the Group Policy

Management Console.

B. Define the WSUS settings in the User Configuration area of the Group

PolicyManagement Console.

C. Define the WSUS settings in the User Configuration area of the Local Group Policy on clientcomputers.

D. Define the WSUS settings in the Computer Configuration area of the Local Group Policy

on client computers.

Answer: A

Explanation:

FROM Step by Step guide to setting up WSUS 3.0 SP2 http://technet.microsoft.com/enus/

library/cc708519%28v=ws.10%29 or

http://blogs.microsoft.co.il/blogs/yanivf/archive/2007/09/23/install-wsus-3-0-stepbystep.

aspx

To configure Automatic Updates

In Group Policy Object Editor, expand Computer Configuration, expand Administrative

Templates, expand Windows Components, and then click Windows Update.

In the details pane, double-click Configure Automatic Updates.

Click Enabled, and then click one of the following options:

Notify for download and notify for install: This option notifies a logged-on administrative

user before the download and before the installation of the updates.

Auto download and notify for install: This option automatically begins downloading updates

and then notifies a logged-on administrative user before installing the updates.

Auto download and schedule the install: If Automatic Updates is configured to perform a

scheduled installation, you must also set the day and time for the recurring scheduled

installation.

Allow local admin to choose setting: With this option, local administrators are allowed touse

Automatic Updates in Control Panel to select a configuration option of their choice. For

example, they can choose their own scheduled installation time. Local administrators are

not allowed to disable Automatic Updates.

Click OK.

Set Up E-Mail Notifications

http://technet.microsoft.com/en-us/library/cc708608%28v=ws.10%29.aspx

In the WSUS Administration console, click Options in the left pane.

In the center pane, click E-Mail Notifications.

Click the General tab.

If you want update notifications, select the Send e-mail notification when new updates are

synchronized check box.

In the Recipients box, type the e-mail addresses of the people who should receive update

notifications.

Separate the names with semi-colons.

If you want status reports, select theSend status reports check box.

In the Frequency box, select either Daily or Weekly.

In the Send reports at box, set the time at which you want status reports to be sent.

In the Recipients box type the e-mail addresses of the people who should receive status

reports, delimited by semicolons.

In the Language box, select the language in which the status reports should be sent.

Click Apply to save these settings.

 

15. Your network consists of a single Active Directory domain. The network includes a branch

office named Branch1. Branch1 contains a Read onlyDomain Controller (RODC) named

Server1. A global group named Branch1admins contains the user accounts for

administrators. Administrators manage the client computers and servers in Branch1.

You need to recommend a solution for delegating control of Server1.

Your solution must meet the following requirements:

Allow the members of the Branch1admins group to administer Server1 including,

change device drivers and install operating system updates by using Windows

Update.

Provide the Branch1admins group rights on Server1 only.

Prevent Branch1admins group from modifying Active Directory objects.

What should you recommend?

A. Add the Branch1admins global group to the Server Operators builtin local group.

B. Add the members of the Branch1admins global group tothe Administrators builtin local

group of Server1.

C. Grant Full Control permission on the Server1 computer object in the domain to the

Branch1admins group

D. Move the Server1 computer object to a new organizational unit (OU) named

Branch1servers. Grant Full Control permission on the Branch1servers OU to the

Branch1admins group.

Answer: B

Explanation:

http://technet.microsoft.com/en-us/library/cc753223%28WS.10%29.aspx

Administrator role separation

Administrator role separation specifies that any domain user or security group can be

delegated to be the local administrator of an RODC without granting that user or group any

rights for the domain or other domain controllers. Accordingly, a delegated administrator can log on to an RODC to perform maintenance work, such as upgrading a driver, on the

server. But the delegated administrator is not able to log on to any other domain controller

or perform any other administrative task in the domain. In this way, a security group that

comprises branch users, rather than members of the Domain Admins group, can be

delegated the ability to effectively manage the RODC in the branch office, without

compromising the security of the rest of the domain.

Get More Information : 70-646 exam