Guarantee All Exams 100% Pass One Time! 2016 NEW …cdn-media1.teachertube.com/doc604/28914.pdf ·...

16
Guarantee All Exams 100% Pass One Time! 70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html 2016 NEW CHANGED 70-646 Exam Questions RELEASED Today! Exam Code70-646 Exam NameWindows Server 2008, Server Administrator Certification ProviderMicrosoft 2016 NEW 70-646 Study Guides: 1.Configuring addressing and services 2.Configuring names resolution 3.Configuring network access 4.Configuring file and print services 5.Monitoring and managing a network infrastructure Braindump2go 2016 NEW 70-646 Exam PDF and VCE Dumps 283Q Free Share: 1-20 QUESTION 1 A company has servers that run a Server Core installation of Windows Server 2008. You are designing the migration of the servers to Windows Server 2008 R2. After the migration, you will install the Remote Desktop Services server role and the Print and Document Services server role on the servers. You need to ensure that shared resources on the servers are available after the migration, and minimize administrative effort. What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.) A. Deploy new servers with a Server Core installation of Windows Server 2008 R2. Migrate the shared resources to the new servers. B. Upgrade the existing servers to a Server Core installation of Windows Server 2008 R2, and then upgrade the servers to a full installation of Windows Server 2008 R2. C. Move the shared resources off of the existing servers. Perform a clean installation of Windows Server 2008 R2 on the servers. Move the shared resources back onto the servers. D. Deploy new servers with Windows Server 2008 R2 installed. Migrate the shared resources to the new servers.

Transcript of Guarantee All Exams 100% Pass One Time! 2016 NEW …cdn-media1.teachertube.com/doc604/28914.pdf ·...

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

2016 NEW CHANGED 70-646 Exam Questions RELEASED Today!

【Exam Code】 70-646

【Exam Name】Windows Server 2008, Server Administrator

【Certification Provider】 Microsoft

2016 NEW 70-646 Study Guides: 1.Configuring addressing and services 2.Configuring names resolution 3.Configuring network access

4.Configuring file and print services 5.Monitoring and managing a network infrastructure

Braindump2go 2016 NEW 70-646 Exam PDF and VCE

Dumps 283Q Free Share: 1-20

QUESTION 1 A company has servers that run a Server Core installation of Windows Server 2008.

You are designing the migration of the servers to Windows Server 2008 R2. After the migration, you will install the Remote Desktop Services server role and the Print and Document Services server role on the servers.

You need to ensure that shared resources on the servers are available after the migration, and minimize administrative effort. What should you recommend? (More than one answer choice may achieve the goal. Select the

BEST answer.)

A. Deploy new servers with a Server Core installation of Windows Server 2008 R2.

Migrate the shared resources to the new servers.

B. Upgrade the existing servers to a Server Core installation of Windows Server 2008 R2, and then upgrade the servers to a full installation of Windows Server 2008 R2.

C. Move the shared resources off of the existing servers. Perform a clean installation of Windows Server 2008 R2 on the servers. Move the shared resources back onto the servers.

D. Deploy new servers with Windows Server 2008 R2 installed. Migrate the shared resources to the new servers.

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

Answer: D Explanation:

The key here is minimize effort & remote desktop services. Server core wouldn't allow remote desktop services as it has no GUI so that would rule out answer A you also cant upgrade from core to full see

http://www.windowsitpro.com/article/tips/can-iupgrade-fromserver-core-2008-to-the-full-windows-server-2008- or

http://serverfault.com/questions/92523/upgrade-fromwindows-2008-server-core-to-full-windows-2008- server upgrade considerations for server core installations of windows server 2008 so that rules

our B You can use the server core installation option only by performing a clean installation. You cannot upgrade from earlier versions of windows to server core installations of windows

server 2008. You cannot upgrade from non-server core installations of windows server 2008 to server core installations of windows server 2008.

You cannot convert server core installations of windows server 2008 to non-server core installations of windows server 2008. You can upgrade server core installations of windows server 2008 only to windows server core r2

when it is released. Answer C is possible but again you're asked to minimize effort so D would be 1 step less thus reducing your effort and possible down time.

QUESTION 2 As part of a Windows Server 2008 R2 Active Directory deployment, you are designing a Group

Policy object (GPO) hierarchy. Client computers run Windows 7 and Windows XP. All client computers are in an organizational unit (OU) named Client Computers.

Additional Windows 7 and Windows XP client computers will be joined to the domain over the next six months. You have the following requirements: - Install the antivirus application on all Windows XP computers.

- Do not install the antivirus application on the Windows 7 computers.

- Do not make changes to the existing Active Directory logical

structure.

You need to design a Group Policy strategy that meets the requirements. Which GPO configuration should you recommend? (More than one answer choice may achieve

the goal. Select the BEST answer.)

A. Publish the antivirus application to client computers.

Link the GPO to the domain. Use security filtering to prevent the Windows 7 client computers from receiving the GPO.

B. Assign the antivirus application to client computers.

Link the GPO to the Client Computers OU. Create a WMI Filter that queries whether the client computer's Win32_OperatingSystem caption contains "Windows 7" .

Associate the WMI filter with the GPO.

C. Assign the antivirus application to client computers. Link the GPO to the domain.

Place all the Windows 7 computers in a security group. Use security filtering to prevent the Windows 7 client computers from receiving the GPO.

D. Assign the antivirus application to client computers.

Link the GPO to the Client Computers OU. Create a WMI Filter that queries whether the client computer's Win32_OperatingSystem

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

caption contains "Windows XP" . Associate the WMI Filter with the GPO.

Answer: D Explanation:

http://technet.microsoft.com/en-us/library/cc947846%28v=ws.10%29.aspx & http://technet.microsoft.com/enus/library/cc947846%28v=ws.10%29.aspx#bkmk_1 Depending on which OS you're asked to install the AV app on your answer could change.

There are reports that you're now being asked to install the AV on the Win7 clients. if that is the case then you would select the Windows 7 option

QUESTION 3 A company has servers that run Windows Server 2008 R2. Administrators use a graphic-intensive application to remotely manage the network.

You are designing a remote network administration solution. You need to ensure that authorized administrators can connect to internal servers over the Internet from computers that run Windows 7 or Windows Vista.

Device redirection enforcement must be enabled for these connections. What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)

A. Deploy and configure a server with the Remote Desktop Web Access server role. Enable Forms-based authentication.

Ensure that administrators use RDC 6.1 when accessing internal servers remotely.

B. Deploy and configure a server with the Remote Desktop Web Access server role. Enable Forms-based authentication.

Ensure that administrators use RDC 7.0 when accessing internal servers remotely,

C. Deploy and configure a server with the Remote Desktop Gateway server role. Ensure that administrators use RDC 7.0 when accessing internal servers remotely.

D. Deploy and configure a server with the Remote Desktop Gateway server role. Ensure that administrators use RDC 6.1 when accessing internal servers remotely.

Answer: C Explanation: http://windows.microsoft.com/en-us/windows7/What-is-a-Remote-Desktop-Gateway-server

A Remote Desktop Gateway (RD Gateway) server is a type of gateway that enables authorized users to connect to remote computers on a corporate network from any computer with an Internet connection. RD Gateway uses the Remote Desktop Protocol (RDP) along with the HTTPS

protocol to help create a more secure, encrypted connection. http://technet.microsoft.com/en-us/library/dd560672%28v=ws.10%29.aspx Device redirection enforcement

An RD Gateway server running Windows Server 2008 R2 includes the option to allow remote desktop clients to only connect to RD Session Host servers that enforce device redirection. RDC 7.0 is required for device redirection to be enforced by the RD Session Host server running

Windows Server 2008 R2. Device redirection enforcement is configured on the Device Redirection tab of the RD CAP by using Remote Desktop Gateway Manager.

QUESTION 4 You are designing a server infrastructure to support a new stateful application.

The server infrastructure must meet the following requirements: - Use two servers, each with two NIC cards and 32 GB of RAM.

- Provide access to the application in the event of the failure of a

single server.

- Provide the ability to scale up the application.

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

- Minimize the attack surface of each server.

- Minimize server disk space requirements.

You need to design a server infrastructure that meets the requirements.

What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)

A. Perform a Server Core installation of Windows Server 2008 R2 Standard Edition. Configure both servers in a failover cluster.

B. Perform a Server Core installation of Windows Server 2008 R2.

Configure both servers in a Windows Network Load Balancing array,

C. Install Windows Server 2008 R2 on both servers. Use DNS Round Robin to balance the load between the servers.

D. Install Windows Server 2008 R2 on both servers. Configure both servers in a Windows Network Load Balancing array.

Answer: A Explanation: Failover clusters are designed for applications that have long-running in-memory state, or that

have large, frequently updated data states. These are called stateful applications, and they include database applications and messaging applications. Typical uses for failover clusters include file servers, print servers, database servers, and messaging servers.

Not B (stateful application in this scenario): Network Load Balancing is intended for applications that do not have long-running in-memory state. These are called stateless applications. A stateless application treats each client request as

an independent operation, and therefore it can load-balance each request independently. Stateless applications often have read-only data or data that changes infrequently. Front-end Web servers, virtual private networks (VPNs), File Transfer Protocol (FTP) servers,

and firewall and proxy servers typically use Network Load Balancing. Network Load Balancing clusters can also support other TCP- or UDP-based services and applications. Note:

- Windows Server 2008 provides two clustering technologies: failover clusters and Network Load Balancing (NLB). Failover clusters primarily provide high availability; Network Load Balancing provides scalability and at the same time helps increase availability of Web-based services.

- Server Core provides you with a minimal installation of Windows Server 2008 that supports installing only certain server roles. Server Core includes Network Load Balancing and Failover Clustering. Reference: Failover Cluster Overview

QUESTION 5 You are planning to deploy new servers that will run Windows Server 2008 R2.

Each server will have 32 GB of RAM. The servers must support installation of the following role services: - Routing and Remote Access

- Remote Desktop Services Gateway

You need to deploy the minimum edition of Windows Server 2008 R2 that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the

BEST answer.)

A. Windows Server 2008 R2 Standard

B. Windows Server 2008 R2 Enterprise

C. Windows Server 2008 R2 Web

D. Windows Server 2008 R2 Datacenter

Answer: A

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

Explanation: http://www.microsoft.com/en-us/server-cloud/windows-server/2008-r2-standard.aspx

R2 Standard provides these services and is the minimum edition they are available on. 32 GB RAM is also supported if its a 64 bit version http://technet.microsoft.com/enus/windowsserver/ bb414778.aspx

QUESTION 6 A company wants to prevent employees who access the company's Remote Desktop Session

Hosts (RD Session Hosts) from introducing malware onto the corporate network. You have the following requirements: - Ensure that only client computers that have an up-to-date antivirus

program installed can connect to the RD Session Hosts.

- Display a notification when a client computer that does not meet the

antivirus requirements attempts to connect to an RD Session Host.

Provide information about how to resolve the connection problem.

- Ensure that client computers can access only the RD Session Hosts.

You need to recommend a Remote Desktop Services (RDS) management strategy that meets the requirements.

What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)

A. Deploy a Remote Desktop Gateway in a perimeter network. Install and configure a Network Policy and Access Services server. Configure the System Health Validator.

Enable the Remote Desktop Gateway Network Access Protection Enforcement Client. Configure Remote Desktop Connection Authorization Policies and Remote Desktop Resource Authorization Polices.

B. Deploy the Routing and Remote Access Service in a perimeter network to support VPN connections. Install and configure a Network Policy and Access Services server.

Enable the Network Access Protection VPN Enforcement Client. Configure the System Health Validator. Configure static routes on the VPN server to allow access only to the RD Session Hosts.

C. Deploy a Remote Desktop Gateway in a perimeter network. Configure Remote Desktop Connection Authorization Policies and Remote Desktop Resource Authorization Polices.

Configure a logon message.

D. Deploy the Routing and Remote Access Service in a perimeter network to support VPN connections.

Configure Connection Request Policies to specify which computers can connect to the corporate network. Configure static routes on the VPN server to allow access only to the RD Session Hosts.

Answer: A Explanation:

NAP with SHVs configured will ensure that the AV is installed and up to date. if they ar not you can direct them to a quarantine/remediation server to update http://www.techrepublic.com/article/solutionbase-configuring-network-access-protection-

forwindows-server-2008/178022 RD RAP Remote Desktop resource authorization policies (RD RAPs) allow you to specify the internal

network resources (computers) that remote users can connect to through an RD Gateway server. http://technet.microsoft.com/en-us/library/cc730630 RD CAP

Remote Desktop connection authorization policies (RD CAPs) allow you to specify who can

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

connect to an RD Gateway server

http://technet.microsoft.com/en-us/library/cc731544 QUESTION 7

A network includes servers that run Windows Server 2008 R2 with the Network Policy Server (NPS) server role installed. You are planning to deploy a remote network administration solution.

The remote administration solution must meet the following requirements: - Include fault tolerance.

- Define the users who have remote access and the resources they can

remotely access.

You need to design a remote administration solution that meets the requirements.

What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)

A. Deploy and configure multiple servers with the Remote Desktop Gateway server role. Create a central Remote Desktop Connection Authorization Policy (RD CAP) and a Resource Authorization Policy (RD RAP).

B. Deploy and configure multiple servers with the Remote Desktop Gateway server role. Create a local Remote Desktop Connection Authorization Policy (RD CAP) and a Resource Authorization Policy (RD RAP).

C. Deploy and configure one server with the Remote Desktop Web Access server role. Create a central Remote Desktop Connection Authorization Policy (RD CAP) and a Resource Authorization Policy (RD RAP).

D. Deploy and configure one server with the Remote Desktop Web Access server role. Create a local Remote Desktop Connection Authorization Policy (RD CAP) and a Resource Authorization Policy (RD RAP).

Answer: A Explanation:

You can also configure RD Gateway to use Remote Desktop connection authorization policies (RD CAPs) that are stored on another server that runs the Network Policy Server (NPS) service. By doing this, you are using the server running NPS, formerly known as a Remote Authentication

Dial-In User Service (RADIUS) server, to centralize the storage, management, and validation of RD CAPs. If you have already deployed a server running NPS for remote access scenarios such as VPN and dial-up networking, using the existing server running NPS for RD Gateway scenarios

as well can enhance your deployment. RAP Remote Desktop resource authorization policies (RD RAPs) allow you to specify the internal

network resources (computers) that remote users can connect to through an RD Gateway server. Remote users connecting to the network through an RD Gateway server are granted access to computers on the internal network if they meet the conditions specified in at least one RD CAP

and one RD RAP. CAP Remote Desktop connection authorization policies (RD CAPs) allow you to specify who can

connect to an RD Gateway server QUESTION 8

You are designing a monitoring solution to log performance on member servers that run Windows Server 2008 R2. The monitoring solution must meet the following requirements for members of the Operations

team: - Create and modify Data Collector Sets.

- Display log file data and real-time performance data in Performance

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

Monitor.

You need to design a monitoring solution that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the

BEST answer.)

A. Add members of the Operations team to the Performance Monitor Users group.

Assign the Act as part of the operating system user right to the Performance Monitor Users group

B. Add members of the Operations team to the Performance Log Users group

C. Add members of the Operations team to the Administrators group

D. Add members of the Operations team to the Power Users group. Assign the Act as part of the operating system user right to the Power Users group

Answer: B Explanation:

A Data Collector Set is the building block of performance monitoring and reporting in Windows Performance Monitor. It organizes multiple data collection points into a single component that can be used to review or log performance. A Data Collector Set can be created and then recorded

individually, grouped with other Data Collector Set and incorporated into logs, viewed in Performance Monitor, configured to generate alerts when thresholds are reached, or used by other non-Microsoft applications. It can be associated with rules of scheduling for data collection

at specific times. Windows Management Interface (WMI) tasks can be configured to run upon the completion of Data Collector Set collection. Data Collector Sets can contain the following types of data collectors:

Performance counters Event trace data System configuration information (registry key values)

You can create a Data Collector Set from a template, from an exist ing set of Data Collectors in a Performance Monitor view, or by selecting individual Data Collectors and setting each individual option in the

Data Collector Set properties. http://technet.microsoft.com/en-us/library/cc722148

You can create a Data Collector Set from counters in the current Performance Monitor display. Membership in the local Performance Log Users or Administrators group, or equivalent, is the minimum required to complete this procedure.

QUESTION 9 A company has 10,000 client computers that run Windows 7.

The company has a single domain Active Directory Domain Services (AD DS) forest with domain controllers that run Windows Server 2008 R2. Users have local administrative rights on client computers.

You need to design a Group Policy solution that deploys a printer and enforces printer settings. What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)

A. Use the Local Security Policy.

B. Use Group Policy preferences (GPPs).

C. Use a Group Policy object (GPO) Windows setting.

D. Use Starter Group Policy objects (GPOs).

Answer: B Explanation: Group Policy preferences, new for the Windows Server 2008 operating system, include more

than 20 new Group Policy extensions that expand the range of configurable settings within a

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

Group Policy object (GPO). These new extensions are included in the Group Policy Management Editor window of the Group Policy Management Console (GPMC), under the new Preferences

item. Examples of the new Group Policy preference extensions include folder options, mapped drives, printers, scheduled tasks, services, and Start menu settings.

In addition to providing significantly more coverage, better targeting, and easier management, Group Policy preferences enable you to deploy sett ings to client computers without restricting the users from changing the settings. This capability provides you with the flexibility to decide which

settings to enforce and which settings to not enforce. You can deploy settings that you do not want to enforce by using Group Policy preferences. System requirements and installation steps

To use Group Policy preferences, complete the following steps: Install the set of client-side extensions (CSEs) on client computers. Supported operating systems:

Windows Vista RTM or later, Windows XP with Service Pack 2 or later, Windows Server 2003 with Service Pack 1 or later Download locations: Windows Vista (x86):

http://go.microsoft.com/fwlink/?LinkId=111859Windows Vista(x64): http://go.microsoft.com/fwlink/?LinkID=111857

Windows XP (x86): http://go.microsoft.com/fwlink/?LinkId=111851 Windows XP (x64):

http://go.microsoft.com/fwlink/?LinkId=111862 Windows Server 2003 (x86): http://go.microsoft.com/fwlink/?LinkId=111852

Windows Server 2003 (x64): http://go.microsoft.com/fwlink/?LinkId=111863 For more information, see Article 943729 in the Microsoft Knowledge Base.

Install the XMLLite low-level XML parser on client computers that are not running Windows Vista. Supported operating systems: Windows XP SP2 or later, Windows Server 2003 SP1 or later Download location:

http://go.microsoft.com/fwlink/?LinkId=111843 worth looking at: GP Policy vs. Preference vs. GP preferences

http://blogs.technet.com/b/grouppolicy/archive/2008/03/04/gp -policy-vs-preference-vs-gppreferences.aspx

QUESTION 10 A company has a single Active Directory Domain Services (AD DS) domain and a single Remote Desktop Session Host (RD Session Host).

The RD Session Host is approaching full memory capacity. All servers run Windows Server 2008 R2. You are designing a Remote Desktop Services (RDS) infrastructure.

The infrastructure must meet the following requirements: - Allow infrastructure capacity to increase.

- Minimize the number of physical servers.

- Do not require administrative action on the client computers if the

infrastructure capacity increases.

You need to design an RDS infrastructure that meets the requirements.

What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)

A. Migrate the RD Session Host to a virtual machine (VM) running in Microsoft Hyper-V. Add memory to the VM as demand increases.

B. Add RD Session Hosts as demand increases, and use Group Policy to direct users to the

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

correct server.

C. Install and configure Windows Server Resource Manager (WSRM) on the RD Session Host

to control user resource allocation.

D. Implement an RD Session Host server farm and add servers as required.

Answer: A Explanation: Virtualization meets the requirements easily enough, as capacity needs grow the VMs can be

migrated to more powerful physical servers, again virtualization reduces the number of physical servers and finally as the actual RD Session Host wont change regardless of the location of that VM it will meet the third requirement Ans D does not meet the 3rd requirement

Ans C wont resolve the problem of running out of memory only that addition of RAM will resolve that issue Ans B again does not meet the 3rd requirement

QUESTION 11 You are planning to deploy new servers that will run Windows Server 2008 R2.

Each server will have 32 GB of RAM. The servers must support installation of the following role services: - Routing and Remote Access

- Remote Desktop Services Gateway

- Minimize CPU and RAM usage

You need to deploy the minimum edition of Windows Server 2008 R2 that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the

BEST answer.)

A. A Server Core installation of Windows Server 2008 R2 Datacenter.

B. A Full Installation of Windows Server 2008 R2 Enterprise.

C. A Full Installation of Windows Server 2008 R2 Standard.

D. A Server Core installation Windows Server 2008 R2 Web.

Answer: C

QUESTION 12 A company has client computers that run Windows 7. The company has Windows Server Update Services (WSUS) 3.0 with Service Pack 2 (SP2)

deployed on a server that runs Windows Server 2008 R2. You are designing an update management solution for the company's client computers. The solution must meet the following requirements: - Client computers must use WSUS for the installation of updates.

- Only administrators should receive update notifications from WSUS.

You need to design an update management solution that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)

A. Define the WSUS settings in the Computer Configuration area of the Group Policy Management Console.

B. Define the WSUS settings in the User Configuration area of the Group Policy Management Console.

C. Define the WSUS settings in the User Configuration area of the Local Group Policy on client

computers.

D. Define the WSUS settings in the Computer Configuration area of the Local Group Policy on client computers.

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

Answer: A

Explanation: FROM Step by Step guide to setting up WSUS 3.0 SP2 http://technet.microsoft.com/enus/library/cc708519%28v=ws.10%29 or

http://blogs.microsoft.co.il/blogs/yanivf/archive/2007/09/23/install-wsus-3-0-stepbystep.aspx To configure Automatic Updates In Group Policy Object Editor, expand Computer Configuration, expand Administrative

Templates, expand Windows Components, and then click Windows Update. In the details pane, double-click Configure Automatic Updates. Click Enabled, and then click one of the following options:

Notify for download and notify for install: This option notifies a logged-on administrative user before the download and before the installation of the updates. Auto download and notify for install: This option automatically begins downloading updates and

then notifies a logged-on administrative user before installing the updates. Auto download and schedule the install: If Automatic Updates is configured to perform a scheduled installation, you must also set the day and time for the recurring scheduled installation.

Allow local admin to choose setting: With this option, local administrators are allowed to use Automatic Updates in Control Panel to select a configuration option of their choice. For example, they can choose their own scheduled installation time.

Local administrators are not allowed to disable Automatic Updates. Click OK. Set Up E-Mail Notifications

http://technet.microsoft.com/en-us/library/cc708608%28v=ws.10%29.aspx In the WSUS Administration console, click Options in the left pane. In the center pane, click E-Mail Notifications.

Click the General tab. If you want update notifications, select the Send e-mail notification when new updates are synchronized check box.

In the Recipients box, type the e-mail addresses of the people who should receive update notifications. Separate the names with semi-colons.

If you want status reports, select the Send status reports check box. In the Frequency box, select either Daily or Weekly. In the Send reports at box, set the time at which you want status reports to be sent.

In the Recipients box type the e-mail addresses of the people who should receive status reports, delimited by semicolons. In the Language box, select the language in which the status reports should be sent.

Click Apply to save these settings. QUESTION 13

A company has Remote Desktop Services (RDS) servers that run Windows Server 2008 R2 and client computers that run Windows 7. You are designing a non-production remote desktop infrastructure that you will use for evaluation

purposes for 180 days. The remote desktop infrastructure must meet the following requirements: - Maximize the security of remote desktop connections.

- Minimize changes to the company's firewall configuration.

- Provide external users with a secure connection from the Windows 7

Remote Desktop client to the RDS environment.

You need to design a temporary remote desktop infrastructure that meets the requirements. Which services should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)

A. Remote Desktop Gateway, Remote Desktop Licensing, and Remote Desktop Session Host

B. Remote Desktop Licensing, Remote Desktop Session Host, and Remote Desktop

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

Web Access

C. Only Remote Desktop Gateway and Remote Desktop Session Host

D. Only Remote Desktop Session Host and Remote Desktop Web Access

Answer: C

QUESTION 14 A company has a single Active Directory Domain Services (AD DS) domain.

Each department within the company has its own organizational unit (OU). All client computers run Windows 7 Enterprise Edition and Microsoft Office 2010. The company wants to restrict access to some Office 2010 features.

They develop a standard list of corporate restrictions. You have the following requirements: - Apply the corporate restrictions to all existing and future

departments.

- Ensure that specific restrictions can be added or removed for

individual departments.

- Ensure that the corporate restrictions are not applied to users and

computers in the built-in Active Directory containers.

- Minimize administrative effort for applying restrictions to future

departments.

You need to recommend a Group Policy object (GPO) deployment that meets the requirements. What should you recommend? (More than one answer choice may achieve the goal. Select the

BEST answer.)

A. Create a GPO that contains the corporate restrictions and link it to the domain.

Install the Office 2010 Group Policy Administrative Template settings. Create a separate GPO for each department that deploys and configures Office 2010.

B. Install the Office 2010 Group Policy Administrative Template settings.

Create a Starter GPO that contains the corporate restrictions. Create a separate GPO based on the Starter GPO for each department that deploys and configures Office 2010.

C. Install the Office 2010 Resource Kit and create a custom transform (.mst) file for each department. Create a Starter GPO that contains the corporate restrictions. Create a separate GPO based on the Starter GPO for each department that deploys Office

2010 by using the transform file.

D. Install the Office 2010 Resource Kit and create custom installer files for each department. Create a GPO that contains the corporate restrictions and link it to the domain.

Create a separate GPO for each department that deploys the installer files,

Answer: B

Explanation: Starter GPOs are used as a base template to build other GPOs from. admin templates (ADMX & ADML files) need to be applied so that the settings specific to Office 2010 can be applied

QUESTION 15 Your network consists of a single Active Directory domain.

The functional level of the domain is Windows Server 2008 R2. All domain controllers run Windows Server 2008 R2. A corporate policy requires that the users from the research department have higher levels of

account and password security than other users in the domain. You need to recommend a solution that meets the requirements of the corporate policy. Your solution must minimize hardware and software costs.

What should you recommend?

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

A. Create a new Active Directory site. Deploy a Group Policy object (GPO) to the site.

B. Create a new Password Settings Object (PSO) for the research department's users.

C. Create a new organizational unit (OU) named Research in the existing domain. Deploy a Group Policy object (GPO) to the Research OU.

D. Create a new domain in the forest.

Add the research department's user accounts to the new domain. Configure a new security policy in the new domain.

Answer: B Explanation: http://technet.microsoft.com/en-us/library/cc770842%28WS.10%29.aspx

http://technet.microsoft.com/en-us/library/cc754461%28WS.10%29.aspx

QUESTION 16

You are designing a recovery solution for file servers that run Windows Server 2008 R2. File servers have the operating system and settings on volume C and shared data on other volumes.

The recovery solution must meet the following requirements: - Create restorable point-in-time copies of files stored in shared

folders on the file servers.

- Provide users the ability to compare versions of an open file.

You need to design a recovery solution that meets the requirements.

What should you recommend? (More than one answer choice may achieve the goal. Select the BEST answer.)

A. Enable the windows Server Backup feature and schedule a backup of the shared folders on the file servers.

B. Enable Shadow Copies on all file server volumes.

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

C. Enable the Windows Server Backup feature and schedule a backup of the file server system state data.

D. Enable Shadow Copies on only file server volumes that contain shared folders.

Answer: D

Explanation: Windows Server 2008 Volume Shadow Copy is a mechanism whereby the contents of shared folders can be automatically backed up at pre-determined intervals to a shadow volume. Once

implemented, shadow copy will backup the previous 64 versions of each file in the shadowed volume and provide users with the ability to restore files from any of the previous 64 versions without administrator intervention, enabling users to independently restore deleted, damaged or

overwritten files. In addition to restoring individual files to a previous version, shadow copy also provides the ability to restore an entire volume. The requirement is to enable this on shared folders only so answer D meets this requirement

best. QUESTION 17

A company has file servers that run a Server Core installation of Windows Server 2008. You are designing the migration of the file servers to Windows Server 2008 R2. After the migration, you will install the Remote Desktop Services server role on the file servers.

You need to ensure that shared resources on the file servers are available after the migration, and minimize administrative effort. What should you recommend? (More than one answer choice may achieve the goal. Select the

BEST answer.)

A. Move the shared resources off of the existing file servers.

Perform a clean installation of Windows Server 2008 R2 on the file servers. Move the shared resources back onto the file servers.

B. Upgrade the existing file servers to a Server Core installation of Windows Server 2008 R2,

and then upgrade the file servers to a full installation of Windows Server 2008 R2.

C. Deploy new file servers with Windows Server 2008 R2 installed. Migrate the shared resources to the new file servers.

D. Deploy new file servers with a Server Core installation of Windows Server 2008 R2. Migrate the shared resources to the new file servers.

Answer: C Explanation: The key here is minimize effort & Remote Desktop Services.

Server Core wouldn't allow remote desktop services as it has no GUI so that would rule out answer A you also cant upgrade from Core to Full see http://www.windowsitpro.com/article/tips/can-i-upgrade-fromserver-core-2008-to-the-full-

windowsserver-2008- or http://serverfault.com/questions/92523/upgrade-fromwindows-2008-server-core-to-full-windows-2008-

server upgrade considerations for Server Core installations of Windows Server 2008 You can use the Server Core installation option only by performing a clean installation. You cannot upgrade from earlier versions of Windows to Server Core installations of Windows

Server 2008. You cannot upgrade from non-Server Core installations of Windows Server 2008 to Server Core installations of Windows Server 2008.

You cannot convert Server Core installations of Windows Server 2008 to non-Server Core installations of Windows Server 2008. You can upgrade Server Core installations of Windows Server 2008 only to Windows Server Core

R2 when it is released. Answer C is possible but again you're asked to minimize effort so D would be 1 step less thus

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

reducing your effort and possible down time.

QUESTION 18 Your network consists of a single Active Directory domain. The domain contains three organizational units (OUs) named Test, Application, and Database.

You need to redesign the layout of the OUs to support the following requirements: - Prevent Group Policy objects (GPOs) that are linked to the domain

from applying to computers located in the Applications OU

- Minimize the number of GPOs

- Minimize the number of Ous

What should you include in your design?

A. Create a Starter GPO.

B. Create a Windows Management Instrumentation (WMI) filter.

C. Delegate permissions on the Application OU.

D. Configure block inheritance on the Application OU.

Answer: D Explanation: Understanding Group Policy

You already know that Group Policy settings contained in Group Policy objects (GPOs) can be linked to OUs, and that OUs can either inherit settings from parent OUs or block inheritance and obtain their specific settings from their own linked GPOs.

You also know that some policies—specifically, security policies—can be set to “no override” so that they cannot be blocked or overwritten and force child OUs to inherit the settings from their parents.

QUESTION 19 Your network consists of a single Active Directory domain.

The functional level of the domain is Windows Server 2008 R2. All servers run Windows Server 2008 R2. A corporate security policy requires complex passwords for user accounts that have administrator

privileges. You need to design a strategy that meets the following requirements: - Ensures that administrators use complex passwords

- Minimizes the number of servers required to support the solution

What should you include in your design?

A. Implement Network Access Protection (NAP).

B. Implement Active Directory Rights Management Services (AD RMS).

C. Create a new Password Settings Object (PSO) for administrator accounts.

D. Create a new child domain in the forest.

Move all nonadministrator accounts to the new domain. Configure a complex password policy in the root domain.

Answer: C Explanation: http://technet.microsoft.com/en-us/library/cc770842%28WS.10%29.aspx

http://technet.microsoft.com/en-us/library/cc754461%28WS.10%29.aspx

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

QUESTION 20

Your network consists of a single Active Directory domain. The relevant portion of the Active Directory domain is configured as shown in the following diagram.

The Staff organizational unit (OU) contains all user accounts except for the managers' user accounts. The Managers OU contains the managers' user accounts and the following global groups: - Sales

- Finance

- Engineering

You create a new Group Policy object (GPO) named GPO1, and then link it to the Employees OU.

Users from the Engineering global group report that they are unable to access the Run command on the Start menu. You discover that the GPO1 settings are causing the issue.

You need to ensure that the users from the Engineering global group are able to access the Run command on the Start menu. What should you do?

Guarantee All Exams 100% Pass One Time!

70-646 Dumps 70-646 Exam Questions 70-646 PDF 70-646 VCE http://www.braindump2go.com/70-646.html

A. Configure GPO1 to use the Enforce Policy option.

B. Configure Block Inheritance on the Managers OU.

C. Configure Group Policy filtering on GPO1 for the Engineering global group.

D. Create a new child OU named Engineering under the Employees OU.

Move the Engineering global group to the new Engineering child OU.

Answer: C

Explanation: MCITP Self-Paced Training Kit Exam 70-646 Windows Server Administration No administrator likes exceptions, but we are required to implement them.

Typically you might have configured security filtering, Windows Management Instrumentation (WMI) filters, block inheritance settings, no-override settings, loopback processing, and slow-link settings.

You need to check that these settings are not affecting normal GPO processing.