★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW 70-410 Exam Dumps (PDF & VCE):
Available on: https://www.certleader.com/70-410-dumps.html


It is impossible to pass Microsoft 70-410 exam without any help in the short term. Come to Actualtests soon and find the most advanced, correct and guaranteed Microsoft 70-410 practice questions. You will get a surprising result by our Rebirth Installing and Configuring Windows Server 2012 practice guides.

2021 Aug 70-410 installing and configuring windows server 2012 r2:

Q51. - (Topic 1) 

Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2. Server1 runs Windows Server 2012 R2. Server2 runs Windows Server 2008 R2 Service Pack 1 (SP1) and has the DHCP Server server role installed. 

You need to manage DHCP on Server2 by using the DHCP console on Server1. 

What should you do first? 

A. From Windows PowerShell on Server1, run Install-Windows Feature. 

B. From Windows Firewall with Advanced Security on Server2, create an inbound rule. 

C. From Internet Explorer on Server2, download and install Windows Management Framework 3.0. 

Answer: B 

Explanation: 

When the DHCP role is installed, it appears that the firewall rules are automatically added, 

so C is not valid (not only that, but either way it is an existing rule that one would need only 

enable nonetheless, not create a new rule). This means you only need to add the DHCP 

Manager MMC snap-in which is a Role Administration Tool feature. 

So the correct answer must be B. 

References: 

Training Guide: Installing and Configuring Windows Server 2012 R2, Chapter 6 Network 

Administration, p.228 


Q52. - (Topic 3) 

You have a DNS server named DNS1 that runs windows server 2012 R2. 

DNS1 is used to resolve the names of internet resources by using several DNS forwarders. 

You need to prevent DNS1 from performing iterative queries if the DNS forwarders are unable to reslove the queries. 

Which cmdlet should you use? 

A. Remove-DNSServerRootHint 

B. Set-DNSServerPrimaryZone 

C. Ser-DNSServerGlobalNameZone 

D. Unregister-DNSserverDrirectoryPartition 

Answer: A 


Q53. - (Topic 3) 

Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 runs Windows Server 2012 R2 and has the Hyper-V server role installed. You need to log the amount of system resources used by each virtual machine. What should you do? 

A. From Windows PowerShell, run the Enable-VMResourceMetering cmdlet. 

B. From Windows System Resource Manager, enable Accounting. 

C. From Windows System Resource Manager, add a resource allocation policy. 

D. From Windows PowerShell, run the Measure-VM cmdlet. 

Answer: A 

Explanation: 

Enable-VMResourceMetering – The Enable-VMResourceMeteringcmdlet starts collecting 

resourceutilization data for a virtual machine or resource pool. 

Measure-VM – The Measure-VM cmdlet reports data on processor usage, memory usage, 

network traffic, and disk capacity for one or more virtual machines. 


Q54. - (Topic 1) 

Your network contains an Active Directory domain named contoso.com. You have a DHCP server named Server1 that runs Windows Server 2008. 

You install Windows Server 2012 R2 on a server named Server2. You install the DHCP Server server role on Server2. 

You need to migrate the DHCP services from Server1 to Server2. The solution must meet the following requirements: 

. Ensure that existing leases are migrated. 

. Prevent lease conflicts. 

Which three actions should you perform? (Each correct answer presents part of the solution. Choose three.) 

A. On Server1, run the Export-DhcpServer cmdlet. 

B. On Server1, run the Stop-Service cmdlet. 

C. On Server2, run the Receive-SmigServerData cmdlet. 

D. On Server2, run the Stop-Service cmdlet. 

E. On Server2, run the Import-DhcpServer cmdlet. 

F. On Server1, run the Send-SmigServerData cmdlet. 

Answer: A,B,E 


Q55. - (Topic 3) 

Your network contains an Active Directory domain named adatum.com. The domain contains the servers shown in the following table. 


You need to ensure that you can use Server Manager on DC1 to manage DC2. 

Which two tasks should you perform? (Each correct answer presents part of the solution. Choose two.) 

A. Install Microsoft .NET Framework 4 on DC2. 

B. Install Remote Server Administration Tools on DC1. 

C. Install Remote Server Administration Tools on DC2. 

D. Install Windows Management Framework 3.0 on DC2. 

Answer: A,D 

Explanation: 

Windows Management Framework 3.0. To use this release of Server Manager to access and manage remote servers that are running Windows Server 2008 or Windows Server 2008 R2, you must first install .NET Framework 4.0, and then install Windows Management Framework 3.0 on those servers. Note: In Windows Server 2012 R2, you can use Server Manager to perform management tasks on remote servers. Remote management is enabled by default on servers that are running Windows Server 2012 R2. To manage a server remotely by using Server Manager, you add the server to the Server Manager server pool. You can use Server Manager to manage remote servers that are running Windows Server 2008 and Windows Server 2008 R2, but the following updates are required to fully manage these older operating systems (see above). 

Reference: Configure Remote Management in Server Manager. 


70-410 download

Improve cbt nuggets 70-410:

Q56. - (Topic 3) 

Your network contains an Active Directory domain named contoso.com. The domain contains 500 servers that run Windows Server 2012 R2. 

You have a written security policy that states the following: 

Only required ports must be open on the servers. 

All of the servers must have Windows Firewall enabled. 

Client computers used by administrators must be allowed to access all of the ports 

on all of the servers. 

Client computers used by the administrators must be authenticated before the 

client computers can access the servers. 

You have a client computer named Computer1 that runs Windows 8. 

... . 

You need to ensure that you can use Computer1 to access all of the ports on all of the servers successfully. The solution must adhere to the security policy. 

Which three actions should you perform? (Each correct answer presents part of the solution. Choose three.) 

A. On Computer1, create a connection security rule. 

B. On all of the servers, create an outbound rule and select the Allow the connection if it is secure option. 

C. On all of the servers, create an inbound rule and select the Allow the connection if it is secure option. 

D. On Computer1, create an inbound rule and select the Allow the connection if it is secure option. 

E. On Computer1, create an outbound rule and select the Allow the connection if it is secure option. 

F. On all of the servers, create a connection security rule. 

Answer: A,C,F 

Explanation: 

Unlike firewall rules, which operate unilaterally, connection security rules require that both 

communicating computers have a policy with connection security rules or another 

compatible IPsec policy. 

Traffic that matches a firewall rule that uses the Allow connection if it is secure setting 

bypasses Windows Firewall. The rule can filter the traffic by IP address, port, or protocol. 

This method is supported on Windows Vista or Windows Server 2008. 

References: 

http://technet.microsoft.com/en-us/library/cc772021.aspx 

http://technet.microsoft.com/en-us/library/cc753463.aspx 


Q57. - (Topic 3) 

Your network contains an Active Directory domain named contoso.com. 

All servers run Windows Server 2012 R2. 

An application named Appl.exe is installed on all client computers. Multiple versions of Appl.exe are installed on different client computers. Appl.exe is digitally signed. 

You need to ensure that only the latest version of Appl.exe can run on the client computers. 

What should you create? 

A. An application control policy packaged app rule 

B. A software restriction policy certificate rule 

C. An application control policy Windows Installer rule 

D. An application control policy executable rule 

Answer: D 

Explanation: 

A. A publisher rule for a Packaged app is based on publisher, name and version B. You can create a certificate rule that identifies software and then allows or does not allow the software torun, depending on the security level. 

C. For .msi or .msp 

D. Executable Rules, for .exe and can be based on Publisher, Product name, filename and version. Use Certificate Rules on Windows Executables for Software Restriction Policies This security setting determines if digital certificates are processed when a user or process attempts to run software with an .exe file name extension. This security settings is used to enable or disable certificate rules, a type of software restriction policies rule. With software restriction policies, you can create a certificate rule that will allow or disallow software that is signed by Authenticode to run, based on the digital certificate that is associated with the software. In order for certificate rules to take effect, you must enable this security setting. When certificate rules are enabled, software restriction policies will check a certificate revocation list (CRL) to make sure the software’s certificate and signature are valid. This may decrease performance when start signed programs. You can disable this feature. On Trusted Publishers Properties, clear the Publisher and Timestampcheck boxes. 


Q58. - (Topic 3) 

You work as an administrator at Contoso.com. The Contoso.com network consists of a single domain named Contoso.com. All servers in the Contoso.com domain, including domain controllers, have Windows Server 2012 R2 installed. 

You have just executed the Uninstall-WindowsFeature Server-Gui-Shell Contoso.com server, named ENSUREPASS-SR13. 

Which of the following is the reason for doing this? 

A. To only remove Windows Explorer from ENSUREPASS-SR13. 

B. To only remove the Windows Internet Explorer from ENSUREPASS-SR13. 

C. To only remove the components and files related to Windows Explorer from ENSUREPASSSR13. 

D. To remove Windows Explorer, Windows Internet Explorer, and all associated components and files from ENSUREPASS-SR13. 

Answer: D 

Explanation: 

Minimal Server Interface If the server has a full installation of Windows Server, and I need to bring the server down to minimal server interface, I only need to remove the Server-GUI-Shell. The command is shown here. Get-WindowsFeature Server-Gui-Shell | Uninstall-WindowsFeature – restart Minimal Server Interface is situated between the Server Core and Server with a GUI modes, you can either install features on Server Core or remove features from Server with a GUI to reach the Minimal Server Interface installation state. 


Q59. - (Topic 3) 

Your network contains a Hyper-V host named Hyperv1 that runs Windows Server 2012 R2. 

Hyperv1 has a virtual switch named Switch1. 

You replace all of the network adapters on Hyperv1 with new network adapters that support single-root I/O virtualization (SR-IOV). You need to enable SR-IOV for all of the virtual machines on Hyperv1. Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.) 

A. On each virtual machine, modify the Advanced Features settings of the network adapter. 

B. Modify the settings of the Switch1 virtual switch. 

C. Delete, and then recreate the Switch1 virtual switch. 

D. On each virtual machine, modify the BIOS settings. 

E. On each virtual machine, modify the Hardware Acceleration settings of the network adapter. 

Answer: C,E 


Q60. - (Topic 3) 

You have a file server named Server1 that runs Windows Server 2012 R2. Server1 has following hardware configurations: 

-16GB of RAM 

-A single quad-core CPU 

-Three network teams that have two network adapters each 

You add additional CPUs and RAM to Server 1. 

You repurpose Server1 as a virtualization host. You install the Hyper-V server role on Server1. You need to create four external virtual switches in Hyper-V. Which cmdlet should you run first? 

A. Set-NetAdapter. 

B. Add-Net1.bfoTeamNic 

C. Add-VMNetworkAdapter 

D. Remove-NetLbfoTeam 

Answer: D