aiotestking uk

70-742 Exam Questions - Online Test


70-742 Premium VCE File

Learn More 100% Pass Guarantee - Dumps Verified - Instant Download
150 Lectures, 20 Hours

Master the content and be ready for exam day success quickly with this . We guarantee it!We make it a reality and give you real in our Microsoft 70-742 braindumps. Latest 100% VALID at below page. You can use our Microsoft 70-742 braindumps and pass your exam.

Check 70-742 free dumps before getting the full version:

NEW QUESTION 1
Your network contains an Active Directory domain named contoso.com.
The domain contain the computers configured as shown in the following table.
70-742 dumps exhibit
The domain contains a user named User1.
A Group Policy object (GPO) named GPO1 is linked to the domain. GPO1 contains a user preference that is configured as shown in the Shortcut1 Properties exhibit.
70-742 dumps exhibit
Item-level targeting for the user preference is configured as shown in the Targeting exhibit. (Click the Exhibit button.)
70-742 dumps exhibit
For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
70-742 dumps exhibit

    Answer:

    Explanation: 70-742 dumps exhibit

    NEW QUESTION 2
    You deploy a new enterprise certification authority (CA) named CA1. You plan to issue certificates based on the User certificate template.
    You need to ensure that the issued certificates are valid for two years and support autoenrollment. What should you do first?

    • A. Run the certutil.exe command and specify the resubmit parameter.
    • B. Duplicate the User certificate template.
    • C. Add a new certificate template for CA1 to issue.
    • D. Modify the Request Handling settings for the CA.

    Answer: B

    NEW QUESTION 3
    You network contains an Active Directory domain named contoso.com. The domain contains an Active Directory Federation Services (AD FS) server named ADFS1, a Web Application Proxy server named WAP1, and a web server named Web1.
    You need to publish a website on Web1 by using the Web Application Proxy. Users will authenticate by using OAuth2 preauthentication.
    What should you do first?

    • A. On Web1, add site bindings.
    • B. On Web1, add handler mappings.
    • C. On ADFS1, enable an endpoint.
    • D. On ADFS1, add a claims provider trust.

    Answer: D

    NEW QUESTION 4
    Your network contains an Active Directory forest named contoso.com. The forest contains 10 domains. The root domain contains a global catalog server named DC1.
    You remove the global catalog server role from DC1.
    You need to decrease the size of the Active Directory database on DC1.
    Solution:You stop the NTDS service on DC1. You run ntdsutil.exe, use the metadata cleanup option, and then start the NTDS
    Does this meet the goal?

    • A. Yes
    • B. No

    Answer: B

    Explanation: You need to run ntdsutil.exe with the ‘compact to’ option. References:
    https://theitbros.com/active-directory-database-compact-defrag/

    NEW QUESTION 5
    Your company has multiple offices.
    The network contains an Active Directory domain named contoso.com. An Active Directory site exists for each office. All of the sites connect to each other by using DEFAULTIPSITELINK.
    The company plans to open a new office. The new office will have a domain controller and 100 client computers.
    You install Windows Server 2021 on a member server in the new office. The new server will become a domain controller.
    You need to deploy the domain controller to the new office. The solution must ensure that the client computers in the new office will authenticate by using the local domain controller.
    Which three actions should you perform next in sequence? To answer, move the appropriate actions from the
    list of actions to the answer area and arrange them in the correct order.
    70-742 dumps exhibit

      Answer:

      Explanation: 70-742 dumps exhibit

      NEW QUESTION 6
      You are deploying a web application named WebApp1 to your internal network. WebApp1 is hosted on a server named Web1 that runs Windows Server 2021.
      You deploy an Active Directory Federation Services (AD FS) infrastructure and a Web Application Proxy to provide access to WebApp1 for remote users.
      You need to ensure that Web1 can authenticate the remote users. What should you do?

      • A. Publish WebApp1 by using pass-through preauthentication.
      • B. Publish WebApp 1 as a Remote Desktop Gateway (RD Gateway) application in the Web Application Proxy.
      • C. Publish WebApp1 by using AD FS preauthentication.
      • D. Publish WebApp1 by using client certificate preauthentication.

      Answer: A

      NEW QUESTION 7
      Your network contains an Active Directory forest named contoso.com. The forest contains 10 domains. The root domain contains a global catalog server named DC1.
      You remove the global catalog server role from DC1.
      You need to decrease the size of the Active Directory database on DC1.
      Solution: You restart DC1 in Safe Mode. You run ntdsutil.exe, use the files option, and then restart DC1. Does this meet the goal?

      • A. Yes
      • B. No

      Answer: A

      NEW QUESTION 8
      Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
      Start of repeated scenario.
      Your network contains an Active Directory domain named contoso.com. The domain contains a single site named Site1. All computers are in Site1.
      The Group Policy objects (GPOs) for the domain are configured as shown in the exhibit. (Click the Exhibit button.)
      70-742 dumps exhibit
      The relevant users and client computer in the domain are configured as shown in the following table.
      70-742 dumps exhibit
      End of repeated scenario.
      You are evaluating what will occur when you set User Group Policy loopback processing mode to Replace in A7.
      Which GPO or GPOs will apply to User2 when the user signs in to Computer1 after loopback processing is configured?

      • A. A1 and A7 only
      • B. A3. Al, A5, A6, and A7
      • C. A3, A5, A1, and A7 only
      • D. A7 only

      Answer: D

      NEW QUESTION 9
      Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
      After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
      You have a server named Web1 that runs Windows Server 2021.
      You need to list all the SSL certificates on Web1 that will expire during the next 60 days. Solution: You run the following command.
      Get-ChildItem Cert:LocalMachineMy |? { $_.NotAfter –It (Get-Date).AddDays( 60 ) } Does this meet the goal?

      • A. Yes
      • B. No

      Answer: B

      NEW QUESTION 10
      Note: This question is part of a series of questions that use the same or similar answer choices. An answer
      choice may be correct for more than one question in the series. Each question is independent of the other questions in this series.
      Information and details provided in a question apply only to that question.
      Your network contains an Active Directory domain named contoso.com. The domain contains 5,000 user accounts.
      You have a Group Policy object (GPO) named DomainPolicy that is linked to the domain and a GPO named DCPolicy that is linked to the Domain Controllers organizational unit (OU).
      You need to ensure that all of the client computers on the network automatically download and install Windows updates.
      What should you do?

      • A. From the Computer Configuration node of DCPolicy, modify Security Settings.
      • B. From the Computer Configuration node of DomainPolicy, modify Security Settings.
      • C. From the Computer Configuration node of DomainPolicy, modify Administrative Templates.
      • D. From the User Configuration node of DCPolicy, modify Security Settings.
      • E. From the User Configuration node of DomainPolicy, modify Folder Redirection.
      • F. From user Configuration node of DomainPolicy, modify Administrative Templates.
      • G. From Preferences in the User Configuration node of DomainPolicy, modify Windows Settings.
      • H. From Preferences in the Computer Configuration node of DomainPolicy, modify Windows Settings.

      Answer: F

      NEW QUESTION 11
      Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
      Start of repeated scenario.
      Your network contains an Active Directory domain named contoso.com. The domain contains a single site named Site1. All computers are in Site1.
      The Group Policy objects (GPOs) for the domain are configured as shown in the exhibit. (Click the Exhibit button.)
      70-742 dumps exhibit
      The relevant users and client computer in the domain are configured as shown in the following table.
      70-742 dumps exhibit
      End of repeated scenario.
      You are evaluating what will occur when you disable the Group Policy link for A6.
      Which GPOs will apply to User2 when the user signs in to Computer1 after the link for A6 is disabled?

      • A. A1 and A5 only
      • B. A3, A1, and A5 only
      • C. A3, A1, A5, and A4 only
      • D. A3, A1, A5, and A7

      Answer: C

      NEW QUESTION 12
      Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
      After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
      Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2021. The computer account for Server1 is in organizational unit (OU) named OU1.
      You create a Group Policy object (GPO) named GPO1 and link GPO1 to OU1.
      You need to add a domain user named User1 to the local Administrators group on Server1. Solution: From a domain controller, you run the Set-AdComputer cmdlet.
      Does this meet the goal?

      • A. Yes
      • B. No

      Answer: B

      NEW QUESTION 13
      Your company has an office in Montreal.
      The network contains an Active Directory domain named contoso.com.
      You have an organizational unit (OU) named Montreal that contains all of the users accounts for the users in the Montreal office. An office manager in the Montreal office knows each user personally.
      You need to ensure that the office manager can provide the users with a new password if the users forget their password. What should you do?

      • A. From the Security settings of the Montreal OU, assign the office manager the Reset Password permission.
      • B. From the Security settings of each user account in the Montreal OU, assign the office manager the Change Password permission.
      • C. Create a Group Policy object (GPO) and link the GPO to the OU of the domai
      • D. Filter the GPO to the Montreal user
      • E. Assign the office manager the Apply Group Policy permission on the GP
      • F. Configure the Password Policy settings of the GPO.
      • G. Create a Group Policy object (GPO) and link the GPO to the Montreal O
      • H. Assign the office manager the Apply Group Policy permission on the GP
      • I. Configure the Password Policy settings of the GPO.

      Answer: B

      NEW QUESTION 14
      Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
      After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
      You deploy a new Active Directory forest.
      You need to ensure that you can create a group Managed Service Account (gMSA) for multiple member servers.
      Solution: You configure Kerberos constrained delegation on the computer account of each domain controller. Does this meet the goal?

      • A. Yes
      • B. No

      Answer: B

      NEW QUESTION 15
      Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
      Start of repeated scenario.
      Your network contains an Active Directory domain named contoso.com. The domain contains a single site
      named Site1. All computers are in Site1.
      The Group Policy objects (GPOs) for the domain are configured as shown in the exhibit. (Click the Exhibit button.)
      70-742 dumps exhibit
      The relevant users and client computer in the domain are configured as shown in the following table.
      70-742 dumps exhibit
      End of repeated scenario.
      You are evaluating what will occur when you set user Group Policy loopback processing mode to Replace in A4.
      Which GPO or GPOs will apply to User2 when the user signs in to Computer1 after loopback processing is configured?

      • A. A1, A5, A6 and A4
      • B. A3, A1, A4, A6 and A7
      • C. A3, A1, A5 and A4
      • D. A4 only

      Answer: A

      NEW QUESTION 16
      Your network contains an Active directory domain named conloso.com. The domain has an enterprise certification authority (CA).
      You duplicate the Basic EFS template, and you name the template Template1. You configure the CA to issue Template1.
      Users are configured to obtain a new certificate automatically when they sign in to a computer in the domain. You need to enable the users to automatically obtain a certificate based on Template1.
      What should you modify?

      • A. the Security settings for Template1
      • B. the Request Handling properties for the CA
      • C. the Publication Settings for the CA
      • D. the Request Handling properties for Template1

      Answer: A

      NEW QUESTION 17
      Your network contains two Active Directory forests named fabrikam.com and contoso.com. Each forest contains a single domain
      Contoso.com has a Group Policy object (GPO) named Cont_GPO1.
      You need to apply the settings from Cont_GPO1 to the computers in fabrikam.com. Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

      • A. Back up Cont_GPO1. In fabrikam.com, create and link a new GPO by using the Group Policy Management Console (GPMC), and then run the Import Setting Wizard.
      • B. Back up Cont_GPO1. In fabrikam.com, run the Restore-GPO cmdlet, and then run the New-GPLinkcmdlet.
      • C. Back up Cont_GPO1. In fabrikam.com run the Import-GPO cmdlet, and then run the New-GPLinkcmdlet.
      • D. Copy\contoso.comSysVolcontoso.comPolicies to \fabrikam.comSysVol fabrikam.comPolicie
      • E. In fabrikam.com, run the New-GPLink cmdlet.
      • F. Back up Cont_GPO1. In fabrikam.com, create and link a new GPO by using the Group Policy Management Console (GPMC), and then run the Restore Group Policy Object Wizard.

      Answer: AC

      NEW QUESTION 18
      Your network contains an Active Directory domain named contoso.com. You deploy a standalone root certification authority (CA) named CA1.
      You need to auto enroll domain computers for certificates by using a custom certificate template. What should you do first?

      • A. Modify the Policy Module for CA1.
      • B. Modify the Exit Module for CA1.
      • C. Install a standalone subordinate CA.
      • D. Install an enterprise subordinate CA.

      Answer: D

      Explanation: You can’t create templates or configure auto-enrollment on a standalone CA.

      P.S. Passcertsure now are offering 100% pass ensure 70-742 dumps! All 70-742 exam questions have been updated with correct answers: https://www.passcertsure.com/70-742-test/ (222 New Questions)