★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW 70-417 Exam Dumps (PDF & VCE):
Available on: https://www.certleader.com/70-417-dumps.html


Want to know Actualtests 70-417 Exam practice test features? Want to lear more about Microsoft Upgrading Your Skills to MCSA Windows Server 2012 certification experience? Study Refined Microsoft 70-417 answers to Refresh 70-417 questions at Actualtests. Gat a success with an absolute guarantee to pass Microsoft 70-417 (Upgrading Your Skills to MCSA Windows Server 2012) test on your first attempt.

2021 Jan microsoft exam 70-417:

Q131. Your network contains an Active Directory domain named adatum.com. 

You have a standard primary zone named adatum.com. 

You need to provide a user named User1 the ability to modify records in the zone. 

Other users must be prevented from modifying records in the zone. 

What should you do first? 

A. Run the Zone Signing Wizard for the zone 

B. From the properties of the zone, change the zone type 

C. Run the new Delegation Wizard for the zone 

D. From the properties of the zone, modify the Start Of Authority (SOA) record 

Answer:


Q132. Your network contains an Active Directory domain named contoso.com. The domain contains an organizational unit (OU) named AHServers.OU. 

You create and link a Group Policy object (GPO) named GP01 to AllServer.OU. GPO1 is configured as shown in the exhibit. (Click the Exhibit button.) 

You need to ensure that GPO1 only applies to servers that have Remote Desktop Services (RDS) installed. 

What should you configure? 

A. Item-level targeting 

B. WMI Filtering 

C. Security Filtering 

D. Block Inheritance 

Answer:

Explanation: 

Windows Management Instrumentation (WMI) filters allow you to dynamically determine the scope of Group Policy objects (GPOs) based on attributes of the target computer. When a GPO that is linked to a WMI filter is applied on the target computer, the filter is evaluated on the target computer. If the WMI filter evaluates to false, the GPO is not applied. If the WMI filter evaluates to true, the GPO is applied. 


Q133. ... 

You have a file server named Server1 that runs Windows Server 2012 R2. Server1 has following hardware configurations: 

16 GB of RAM 

A single quad-core CPU 

Three network teams that have two network adapters each 

You add additional CPUs and RAM to Server1. 

You repurpose Server1 as a visualization host. 

You install the Hyper-V server role on Server1. 

You need to create four external virtual switches in Hyper-V. 

Which cmdlet should you run first? 

A. Set-NetAdapter 

B. Add-NetLbfoTeamNic 

C. Add-VMNetworkAdapter 

D. Remove-NetLbfoTeam 

Answer:

Explanation: 

You need 4 virtual switches but currently only have 3 teams available. You would need to 

break a team first. 

The Remove-NetLbfoTeamcmdlet removes the specified NIC team from the host. 


Q134. Your network contains an active directory domain named Contoso.com. The domain contains a server named Server1 that runs Windows Server 2012 R2. 

You create a group Managed Service Account named gservice1. 

You need to configure a service named service1 to run as the gservice1 account. 

How should you configure service1? 

A. From Services Console configure the recovery settings 

B. From a command prompt ,run sc.exe and specify the config parameter 

C. From Windows PowerShell,run Set-Service and specify the -PassThrough parameter 

D. From a command prompt ,run sc.exe and specify the sdset parameter 

Answer:

Explanation: 

Executing the sc.exe command with the config parameter will modify service configuration. 


Q135. You have a server named Served that runs Windows Server 2012 R2. Server1 has five network adapters. 

Three of the network adapters are connected to a network named LAN1. The two other network adapters are connected to a network named LAN2. You create a network adapter team named Team1 from two of the adapters connected to LAN1. You create a network adapter team named Team2 from the two adapters connected to LAN2. A company policy states that all server IP addresses must be assigned by using a reserved address in DHCP. You need to identify how many DHCP reservations you must create for Server1. 

How many reservations should you identify? 

A. 2 

B. 3 

C. 5 

D. 7 

Answer:

Explanation: 1 reservation for the NIC team on LAN1 1 reservation for the stand-alone NIC on LAN1 1 reservation for the NIC team on LAN2 => 3 reservations. 


Leading mcsa 70-417 book:

Q136. Your network contains an Active Directory forest. The forest contains a single domain named contoso.com. The domain contains four domain controllers. 

The domain controllers are configured as shown in the following table. 

All domain controllers are DNS servers. 

You plan to deploy a new domain controller named DC5 in the contoso.com domain. 

You need to identify which domain controller must be online to ensure that DC5 can be 

promoted successfully to a domain controller. 

Which domain controller should you identify? 

A. DC1 

B. DC2 

C. DC3 

D. DC4 

Answer:

Explanation: 

In order to add a Domain Controller to corp.contoso.com, you need PDC and RID of that domain, not of the root domain. The Domain Naming Master is needed to add, remove and rename domains in the forest, i.e. not for individual Domain Controllers. 


Q137. RAG DROP 

Your network contains two Active Directory forests named contoso.com and adatum.com. All domain controllers run Windows Server 2012 R2. 

A federated trust exists between adatum.com and contoso.com. The trust provides adatum.com users with access to contoso.com resources. 

You need to configure Active Directory Federation Services (AD FS) claim rules for the federated trust. 

The solution must meet the following requirements: 

. In contoso.com, replace an incoming claim type named Group with an outgoing claim type named Role. . In adatum.com, allow users to receive their tokens for the relying party by using their Active Directory group membership as the claim type. 

The AD FS claim rules must use predefined templates. 

Which rule types should you configure on each side of the federated trust? 

To answer, drag the appropriate rule types to the correct location or locations. Each rule type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. 

Answer: 


Q138. Your network contains two servers named Server1 and Server2 that run Windows Server 2012 R2. Server1 and Server2 have the Hyper-V server role installed. Server1 and Server2 are configured as Hyper-V replicas of each other. 

Server2 hosts a virtual machine named VM5. VM5 is replicated to Server1. 

You need to verily whether the replica of VMS on Server1 is functional. The solution must ensure that VMS remains accessible to clients. 

What should you do from Hyper-V Manager? 

A. On Server1, execute a Planned Failover. 

B. On Server1, execute a Test Failover. 

C. On Server2, execute a Planned Failover. 

D. On Server2, execute a Test Failover. 

Answer:


Q139. Your network contains an Active Directory forest named contoso.com. The forest contains four domains. All servers run Windows Server 2012 R2. 

Each domain has a user named User1. 

You have a file server named Server1 that is used to synchronize user folders by using the 

Work Folders role service. 

Server1 has a work folder named Sync1. 

You need to ensure that each user has a separate folder in Sync1. 

What should you do? 

A. From Windows Explorer, modify the Sharing properties of Sync1 

B. Run the Set-SyncServerSetting cmdlet 

C. From File and Storage Services in Server Manager, modify the properties of Sync1 

D. Run the Set-SyncShare cmdlet 

Answer:


Q140. You have a failover cluster named Cluster1 that contains four nodes. All of the nodes run Windows Server 2012 R2. 

You need to force every node in Cluster1 to contact immediately the Windows Server Update Services (WSUS) server on your network for updates. 

Which tool should you use? 

A. The Add-CauClusterRolecmdlet 

B. TheWuauclt command 

C. TheWusa command 

D. The Invoke-CauScancmdlet 

Answer:

Explanation: 

The Invoke-CauScancmdlet performs a scan of cluster nodes for applicable updates and returns a list of the initial set of updates that would be applied to each node in a specified cluster.