Microsoft 70-697 Exam Questions 2021
Act now and download your 70 697 pdf download today! Do not waste time for the worthless 70 697 exam dumps tutorials. Download 70 697 exam with real questions and answers and begin to learn 70 697 pdf download with a classic professional.
Online 70-697 free questions and answers of New Version:
NEW QUESTION 1
You administer Windows 10 Enterprise client computers that are members of an Active Directory domain that includes Active Directory Certificate Services (AD CS). You restored a computer from a backup that was taken 45 days ago. Users are no longer able to log on to that computer by using their domain accounts. An error message states that the trust relationship between the computer and the primary domain has failed.
What should you do?
- A. Renew the certificates issued to the client computer.
- B. Reset the passwords of all affected domain users.
- C. Logon as a local administrator and issue the netdom resetpwd comman
- D. Log off and restart the computer.
- E. Restore the client computer from a known good backup that was taken two weeks earlier than the backup you previously restored.
Answer: C
Explanation: References: http://theitbros.com/fix-trust-relationship-failed-without-domain- rejoining/
NEW QUESTION 2
All client computers in a company’s network environment run Windows 10 Enterprise. A client computer has drives that are configured as shown in the following table.
You are choosing a backup destination for drive C. You have the following requirements:
Ensure that the backup file is available if drive C: fails.
Ensure that the backup file can be accessed by other computers on the network.
Support the storage of multiple versions of system image backups. You need to select a backup destination that meets the requirements.
Which destination should you select?
- A. drive D:
- B. drive F:
- C. drive E:
- D. drive Z:
Answer: D
NEW QUESTION 3
You manage Microsoft Intune for a company named Contoso. Intune client computers run Windows 10 Enterprise.
You notice that there are 25 mandatory updates listed in the Intune administration console.
You need to prevent users from receiving prompts to restart Windows following the installation of mandatory updates.
Which policy template should you use?
- A. Microsoft Intune Agent Settings
- B. Windows Configuration Policy
- C. Microsoft Intune Center Settings
- D. Windows Custom Policy (Windows 10 and Windows 10 Mobile)
Answer: A
Explanation: To configure the Prompt user to restart Windows during Intune client agent mandatory updates update policy setting you have to configure the Microsoft Intune Agent Settings policy. Setting the Prompt user to restart Windows during Intune client agent mandatory updates setting to No would prevent users from receiving prompts to restart Windows following the installation of mandatory updates.
NEW QUESTION 4
A company has an Active Directory Domain Services (AD DS) domain. All client computers run Windows 10. A local printer is shared from a client computer. The client computer user is a member of the Sales AD security group.
You need to ensure that members of the Sales security group can modify the order of documents in the print queue, but not delete the printer share.
Which permission should you grant to the Sales group?
- A. Manage queue
- B. Manage this printer
- C. Print
- D. Manage documents
- E. Manage spooler
Answer: D
Explanation: With the Manage Documents permission the user can pause, resume, restart, cancel, and rearrange the order of documents submitted by all other users. The user cannot, however, send documents to the printer or control the status of the printer.
NEW QUESTION 5
DRAG DROP
Ten client computers run Windows 7 and a custom application. The custom application is compatible with Windows 10 Enterprise.
You purchase 10 new computers that have Windows 10 Enterprise pre-installed. You plan to migrate user settings and data from the Windows 7 computers to the Windows 10 Enterprise computers. You add the User State Migration Toolkit (USMT) on a USB flash drive.
You need to ensure that the custom application settings are applied to the Windows 10 Enterprise computers after the migration is complete.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
Answer:
Explanation: 
NEW QUESTION 6
You support Windows 10 Enterprise computers in a workgroup.
You have configured a local AppLocker policy to prevent users from running versions of app.exe previous to v9.4. Users are still able to run app.exe.
You need to block users from running app.exe by using the minimum administrative effort.
What should you do?
- A. Change the Application Identity service startup mode to automatic and start the service.
- B. Configure enforcement for Windows Installed rules.
- C. Configure a Software Restriction Policy publisher rule.
- D. Run the GPupdate /force command in a relevant command prompt.
Answer: A
Explanation: References: https://technet.microsoft.com/en-us/library/ee791779(v=ws.10).aspx https://technet.microsoft.com/en-us/itpro/windows/keep-secure/configure-the- application-identity-service
NEW QUESTION 7
You administer a Windows 10 Enterprise computer. The computer has File History turned on, and system protection turned on for drive C.
You accidentally delete a folder named LibrariesCustomers by using the Shift+Delete keyboard shortcut. You need to restore the most recent version of the folder to its original location.
Which approach should you use to restore the folder?
- A. Recycle Bin
- B. the latest restore point
- C. File History
- D. a manually selected restore point
Answer: C
Explanation: File History is similar to Previous Versions in previous versions of Windows. It takes regular backups of your data and saves them to a separate disk volume or external drive. When File History is enabled, it backs up all the system libraries and your custom libraries by default.
To restore a deleted folder, you can browse to the parent folder or library and select Restore Previous Versions. The Previous Versions tab will list the previous versions that can be restored to its original location or restored to an alternative location.
NEW QUESTION 8
You administer computers that run Windows 8 Enterprise in an Active Directory domain in a single Active Directory Site. All user account objects in Active Directory have the Manager attribute populated. The company has purchased a subscription to Windows Intune. The domain security groups are synchronized with the Microsoft Online directory.
You create a Windows Intune group that specifies a manager as a membership criterion. You notice that the group has no members.
You need to ensure that users that meet the membership criteria are added to the Windows Intune group. What should you do?
- A. Force Active Directory replication within the domain.
- B. Ensure that all user accounts are identified as synchronized users.
- C. Ensure that the user who is performing the search has been synchronized with the Microsoft Online directory.
- D. Synchronize the Active Directory Domain Service (AD DS) with the Microsoft Online directory.
Answer: B
Explanation: For users and security groups to appear in the Windows Intune administrator console, you must sign in to the Windows Intune account portal and do one of the following:
Manually add users or security groups, or both, to the account portal.
Use Active Directory synchronization to populate the account portal with synchronized users and security groups.
The Windows Intune cloud service enables you to centrally manage and secure PCs through a single web-based console so you can keep your computers, IT staff, and users operating at peak performance from virtually anywhere without compromising the essentials: cost, control, security, and compliance.
References: http://technet.microsoft.com/en-us/windows/intune.aspx http://technet.microsoft.com/library/hh441723.aspx
NEW QUESTION 9
You administer a Windows 10 Enterprise computer that runs Hyper-V. The computer hosts a virtual machine with multiple snapshots. The virtual machine uses one virtual CPU and 512 MB of RAM.
You discover that the virtual machine pauses automatically and displays the state as paused-critical. You need to identify the component that is causing the error.
Which component should you identify?
- A. no virtual switch defined
- B. insufficient memory
- C. insufficient hard disk space
- D. insufficient number of virtual processors
Answer: C
Explanation: In this question, the VM has “multiple snapshots” which would use up a lot of disk space. Virtual machines will go into the “Paused-Critical” state in Hyper-V if the free space on the drive that contains the snapshots goes below 200MB.
One thing that often trips people up is if they have their virtual hard disks configured on one drive – but have left their snapshot files stored on the system drive. Once a virtual machine snapshot has been taken– the base virtual hard disk stops expanding and the snapshot file stores new data that is written to the disk – so it is critical that there is enough space in the snapshot storage location.
NEW QUESTION 10
DRAG DROP
You have a line-of-business universal app named App1. You have an image of Windows 10 Enterprise named Image1.
Image1 is mounted to the C:Folder1 folder on a Windows 10 Enterprise computer named Computer1. The source for App1 is in the C:Folder2 folder.
You need to ensure that App1 is included in Image1.
What command should you run on Computer1? To answer, drag the appropriate values to the correct locations. Each value may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
Answer:
Explanation: References: https://technet.microsoft.com/en-us/library/dn376490.aspx
NEW QUESTION 11
HOTSPOT
You use a Windows 10 Enterprise laptop that is configured with a VPN connection to the Windows Server 2012 Direct Access service on the company network.
You use the VPN connection over a mobile broadband Internet connection. Internet connectivity is often interrupted.
You need to configure your laptop to use the Windows 10 Enterprise VPN Reconnect feature with a 15-minute network outage time setting.
Which two VPN Connection Properties should you select? To answer, select the appropriate objects in the answer area.
Answer:
Explanation: 
NEW QUESTION 12
HOTSPOT
You have Windows computers that are managed by using Microsoft Intune.
You need to send an email notification to compliance@contoso.com when there is a critical Windows update that must be approved.
The solution must minimize the number of email notifications sent.
How should you configure the email notification rule? To answer, select the appropriate options in the answer are.
Answer:
Explanation: 
NEW QUESTION 13
You have a Windows 10 Enterprise computer named Computer1. Computer1 has File History enabled. You create a folder named Folder1 in the root of the C: drive.
You need to ensure that Folder1 is protected by File History.
What are two possible ways to achieve the goal? Each correct answer presents a complete solution.
- A. From File Explorer, include Folder1 in an existing library.
- B. Modify the Advanced settings from the FileHistory Control Panel item.
- C. From the Settings app, modify the Backup options.
- D. From File Explorer, modify the system attribute of Folder1.
Answer: AC
Explanation: By default, File History backs up all libraries. We can therefore ensure that Folder1 is protected by File History by adding the folder to a library.
The second method of ensuring that Folder1 is protected by File History is to add the folder location to File History. You do this by modifying the Backup options, not the File History Control Panel item as you might expect. In the Settings app, select Update & Security then Backup. Under the Back up using File History heading, select the Add a drive option.
NEW QUESTION 14
You manage 50 computers that run Windows 10 Enterprise. You have a Microsoft Azure RemoteApp deployment. The deployment consists of a hybrid collection named Collection1.
All computers have the Hyper-V feature installed and have a virtual machine that runs Windows 7.
You plan to install applications named App1 and App2 and make them available to all users. App1 is a 32-bit application. App2 is a 64-bit application.
You need to identify the installation method for each application. The solution needs to minimize the number of installations.
Which deployment method should you identify for each application? To answer, drag the appropriate deployment methods to the correct applications. Each deployment method may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
Answer:
Explanation: Azure RemoteApp supports streaming 32-bit or 64-bit Windows-based applications. Therefore, we can minimize the number of installations by installing the applications on Azure and making them available as Azure RemoteApps. This would mean one installation for App1 and one installation for App2.
NEW QUESTION 15
You have a new computer that runs Windows 10.
The computer is a member of a workgroup and is connected to a Wi-Fi network. You discover that the active network is a public network.
You need to change the network location to a private network. Which Control Panel application should you use?
- A. Network and Sharing Center
- B. System
- C. Windows Firewall
- D. HomeGroup
Answer: A
Explanation: References:
https://tinkertry.com/how-to-change-windows-10-network-type-from-public-to-private
NEW QUESTION 16
A company has client computers that run Windows 10.
The client computer systems frequently use IPSec tunnels to securely transmit data. You need to configure the IPSec tunnels to use 256-bit encryption keys.
Which encryption type should you use?
- A. 3DES
- B. DES
- C. RSA
- D. AES
Answer: D
Explanation: IPSec tunnels can be encrypted by 256-bit AES.
L2TP/IPsec allows multiprotocol traffic to be encrypted and then sent over any medium that supports point-to-point datagram delivery, such as IP or Asynchronous Transfer Mode (ATM).
The L2TP message is encrypted with one of the following protocols by using encryption keys generated from the IKE negotiation process: Advanced Encryption Standard (AES) 256, AES 192, AES 128, and 3DES encryption algorithms.
NEW QUESTION 17
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series. Information and details provided in a question apply only to that question.
You have an application named App1 installed on a computer named Computer1. Computer1 runs Windows 10. App1 saves data to %UserProfile%App1Data.
You need to ensure that you can recover the App1 data if Computer1 fails. What should you configure?
- A. share permissions
- B. application control policies
- C. Encrypting File System (EFS) settings
- D. NTFS permissions
- E. HomeGroup settings
- F. Microsoft OneDrive
- G. software restriction policies
- H. account policies
Answer: F
NEW QUESTION 18
Your network contains an Active Directory domain. The domain contains 100 computers that run Windows 10.
You plan to develop a line-of-business application and to deploy the application by using Windows Store for
Business.
You need to ensure that users can see the private store of your company when they sign in to the Windows
Store for Business.
What should you do first?
- A. Provision a Windows Dev Center dev account for each user.
- B. Provision a Microsoft Azure Active Directory (Azure AD) account for each user.
- C. Assign the Windows Store Purchaser role to each user.
- D. Assign the Windows Store Admin role to each user.
- E. Provision a Microsoft account for each user.
Answer: B
Recommend!! Get the Full 70-697 dumps in VCE and PDF From Simply pass, Welcome to Download: https://www.simply-pass.com/Microsoft-exam/70-697-dumps.html (New 338 Q&As Version)