Microsoft 70-742 Exam Dumps 2021

We offers . "Identity with Windows Server 2021", also known as 70-742 exam, is a Microsoft Certification. This set of posts, Passing the 70-742 exam with , will help you answer those questions. The covers all the knowledge points of the real exam. 100% real and revised by experts!

Online 70-742 free questions and answers of New Version:

NEW QUESTION 1
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series.
Information and details provided in a question apply only to that question.
Your network contains an Active Directory domain named contoso.com. The domain contains 5,000 user accounts.
You have a Group Policy object (GPO) named DomainPolicy that is linked to the domain and a GPO named DCPolicy that is linked to the Domain Controllers organizational unit (OU).
You need to ensure that the members of the Backup Operators group can back up domain controllers. What should you do?

  • A. From the Computer Configuration node of DCPolicy, modify Security Settings.
  • B. From the Computer Configuration node of DomainPolicy, modify Security Settings.
  • C. From the Computer Configuration node of DomainPolicy, modify Administrative Templates.
  • D. From the User Configuration node of DCPolicy, modify Security Settings.
  • E. From the User Configuration node of DomainPolicy, modify Folder Redirection.
  • F. From user Configuration node of DomainPolicy, modify Administrative Templates.
  • G. From Preferences in the User Configuration node of DomainPolicy, modify Windows Settings.
  • H. From Preferences in the Computer Configuration node of DomainPolicy, modify Windows Settings.

Answer: D

NEW QUESTION 2
Your network contains an Active Directory forest. The forest contains two domains named litwarenc.com and contoso.com. The contoso.com domain contains two domains controllers named LON-DC01 and LON-DC02.
The domain controllers are located in a site named London that is associated to a subnet of 192.168.10.0/24
You discover that LON-DC02 is not a global catalog server. You need to configure LON-DC02 as a global catalog server.
What should you do?

  • A. From the properties of the LON-DC02 computer account in Active Directory Users and Computers, modify the NTDS settings.
  • B. From the properties of the LON-DC02 computer account in Active Directory Users and Computers, modify the City attribute.
  • C. From Active Directory Sites and Services, modify the properties of the 192.168.10.0/24 IP subnet.
  • D. From the properties of the Domain Controllers organizational unit (OU) in Active Directory Users and Computers, modify the Security settings.

Answer: A

NEW QUESTION 3
Your company has multiple offices.
The network contains an Active Directory domain named contoso.com. An Active Directory site exists for each office. All of the sites connect to each other by using DEFAULTIPSITELINK.
The company plans to open a new office. The new office will have a domain controller and 100 client computers.
You install Windows Server 2021 on a member server in the new office. The new server will become a domain controller.
You need to deploy the domain controller to the new office. The solution must ensure that the client computers in the new office will authenticate by using the local domain controller.
Which three actions should you perform next in sequence? To answer, move the appropriate actions from the
list of actions to the answer area and arrange them in the correct order.
70-742 dumps exhibit

    Answer:

    Explanation: 70-742 dumps exhibit

    NEW QUESTION 4
    Your network contains an Active Directory domain named contoso.com. Domain users use smart cards to sign in to their client computer.
    Some users report that it takes a long time to sign in to their computer and that the logon attempt times out, so they must restart the sign in process.
    You discover that the issues to checking the certificate revocation list (CRL) of the smart card certificates. You need to resolve the issue without diminishing the security of the smart card logons.
    What should you do?

    • A. From the properties of the smart card's certificate template, modify the Request Handling settings.
    • B. From the properties of the smart card's certificate template, modify the Issuance Requirements settings.
    • C. Deactivate certificate revocation checks on the computers.
    • D. Implement an Online Certification Status Protocol (OCSP) responder.

    Answer: D

    NEW QUESTION 5
    Your network contains an Active Directory domain named contoso.com. The domain contains a member server named Server1 and a domain controller named DC1. Both servers run Windows Server 2021. Server1 is used to perform administrative tasks, including managing Group Polices.
    After maintenance is performed on DC1, you open a Group Policy object (GPO) from Server1 as shown in the exhibit.
    70-742 dumps exhibit
    You need to be able to view all of the Administrative Templates settings in GPO1. What should you do?

    • A. From File Explorer, copy the administrative templates from\contoso.comSYSVOLcontoso.comPolicies to the PolicyDefinitions folder on Server1.
    • B. From File Explorer, delete \contoso.comSYSVOLcontoso.comPoliciesPolicyDefinitions.
    • C. From File Explorer, delete the PolicyDefinitions folder from Server1.
    • D. From Group Policy Management, configure WMI Filtering for GPO1.

    Answer: B

    NEW QUESTION 6
    User1 is in OU1. GPO1 is linked to OU1.
    70-742 dumps exhibit
    The settings in GPO1 are configured as shown in the exhibit. (Click the Exhibit button)
    70-742 dumps exhibit
    Computer1 does not have any shortcuts on the desktop.

    • A. 1
    • B. 2
    • C. 3
    • D. 4

    Answer: D

    NEW QUESTION 7
    Your network contains an Active Directory domain named contoso.com. The domain contains a user named User1, a group named Group1, and an Organizational unit (OU) named OU1.
    You need to enable User1 to link Group Policies to OU1.
    Solution: From Active Directory Users and Computers, you add User1 to the Group Policy Creator Owner group.
    Does this meet the goal?

    • A. Yes
    • B. No

    Answer: B

    NEW QUESTION 8
    Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series. Information and details provided in a question apply only to that question.
    Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1 that runs Windows Server 2021.
    You need to create a snapshot of the Active Directory database on DC1. Which tool should you use?

    • A. Dsadd quota
    • B. Dsmod
    • C. Active Directory Administrative Center
    • D. Dsacls
    • E. Dsmain
    • F. Active Directory Users and Computers
    • G. Ntdsutil
    • H. Group Policy Management Console

    Answer: E

    NEW QUESTION 9
    You have users that access web applications by using HTTPS. The web applications are located on the servers in your perimeter network. The servers use certificates obtained from an enterprise root certification authority (CA). The certificates are generated by using a custom template named WebApps. The certificate revocation list (CRL) is published to Active Directory.
    When users attempt to access the web applications from the Internet, the users report that they receive a revocation warning message in their web browser. The users do not receive the message when they access the web applications from the intranet.
    You need to ensure that the warning message is not generated when the users attempt to access the web applications from the Internet.
    What should you do?

    • A. Install the Certificate Enrollment Web Service role service on a server in the perimeter network.
    • B. Modify the WebApps certificate template, and then issue the certificates used by the web application servers.
    • C. Install the Web Application Proxy role service on a server in the perimeter networ
    • D. Create a publishing point for the CA.
    • E. Modify the CRL distribution point, and then reissue the certificates used by the web application servers.

    Answer: C

    NEW QUESTION 10
    You have a server named Server1 that runs Windows Server 2021. You need to configure Server1 as a Web Application Proxy. Which server role or role service should you install on Server1?

    • A. Remote Access
    • B. Active Directory Federation Services
    • C. Web Server (IIS)
    • D. DirectAccess and VPN (RAS)
    • E. Network Policy and Access Services

    Answer: A

    NEW QUESTION 11
    Your network contains an Active Directory domain named contoso.com.
    You need to create a central store for Group Policy administrative templates. What should you use?

    • A. Server Manager
    • B. File Explorer
    • C. Dcgpofix.exe
    • D. Group Policy Management Console (GPMC)

    Answer: B

    NEW QUESTION 12
    You have an offline root certification authority (CA) named CA1. CA1 is hosted on a virtual machine. You only turn on CA1 when the CA must be patched or you must generate a key for subordinate CAs. You start CA1, and you discover that the filesystem is corrupted.
    You resolve the filesystem corruption and discover that you must reload the CA root from a backup.
    When you attempt to run the Restore-CARoleService cmdlet, you receive the following error message: “The process cannot access the file because it is being used by another process.”

    • A. Stop the Active Directory Domain Services (AD DS) service.
    • B. Run the Restore-CARoleService cmdlet and specify the path to a valid CA key.
    • C. Stop the Active Directory Certificate Services (AD CS) service.
    • D. Run the Restore-CARoleService cmdlet and specify the Force parameter.

    Answer: C

    NEW QUESTION 13
    Your company has an office in Montreal.
    The network contains an Active Directory domain named contoso.com.
    You have an organizational unit (OU) named Montreal that contains all of the users accounts for the users in the Montreal office. An office manager in the Montreal office knows each user personally.
    You need to ensure that the office manager can provide the users with a new password if the users forget their password. What should you do?

    • A. From the Security settings of the Montreal OU, assign the office manager the Reset Password permission.
    • B. From the Security settings of each user account in the Montreal OU, assign the office manager the Change Password permission.
    • C. Create a Group Policy object (GPO) and link the GPO to the OU of the domai
    • D. Filter the GPO to the Montreal user
    • E. Assign the office manager the Apply Group Policy permission on the GP
    • F. Configure the Password Policy settings of the GPO.
    • G. Create a Group Policy object (GPO) and link the GPO to the Montreal O
    • H. Assign the office manager the Apply Group Policy permission on the GP
    • I. Configure the Password Policy settings of the GPO.

    Answer: B

    NEW QUESTION 14
    Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1.
    You create and link a Group Policy object (GPO) named SalesAppGPO to an organizational unit (OU) named SalesOU. All the computer accounts are in the Computers container. All the user accounts of the users in the sales department are in SalesOU.
    You have a line-of-business application named SalesApp that is installed by using a Windows Installer package.
    You need to make SalesApp available to only the sales department users.
    Which three actions should you perform in sequence? To answer move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
    70-742 dumps exhibit

      Answer:

      Explanation: 70-742 dumps exhibit

      NEW QUESTION 15
      Your network contains an Active Directory domain named contoso.com. The network contains several IP subnets. One of the subnets uses a network ID if 192.168.10.0/24.
      You link a Group Policy object (GPO) named GPO1 to the domain.
      You need to map a drive to a specific file share on the computers in the 192.168.10.0/24 network only. What should you do?

      • A. From the User Configuration node of GPO1, configure the Folder Redirection setting
      • B. Link a WMI filter to GPO1.
      • C. From the Computer Configuration mode of GPO1, configure the Network Connections setting
      • D. Link a WMI filter to GPO1.
      • E. From the User Configuration node of GPO1, create a Group Policy preference that uses item-level targeting.
      • F. From the Computer Configuration node of GPO1, create a Group Policy preference that uses item-level targeting.

      Answer: C

      NEW QUESTION 16
      You have a server named Server1 that runs Windows Server 2021. Server1 has the Web Application Proxy role service installed.
      You publish an application named App1 by using the Web Application Proxy.
      You need to change the URL that users use to connect to App1 when they work remotely. Which command should you run? To answer, select the appropriate options in the answer area.
      70-742 dumps exhibit

        Answer:

        Explanation: The Set-WebApplicationProxyApplication cmdlet modifies settings of a web application published through Web Application Proxy. Specify the web application to modify by using its ID. Note that the method of preauthentication cannot be changed. The cmdlet ensures that no other applications are already configured to use any specified ExternalURL or BackendServerURL.
        References: https://technet.microsoft.com/itpro/powershell/windows/wap/set-webapplicationproxyapplication

        NEW QUESTION 17
        Your network contains an Active Directory forest. The forest contains two domains named litwareinc.com and contoso.com. The contoso.com domain contains two domain controllers named LON-DC01 and LON-DC02. The domain controllers are located in a site named London that is associated to a subnet of 192.168.10.0/24.
        You discover that LON-DC02 is not a global catalog server. You need to configure LON-DC02 as a global catalog server.
        What should you do?

        • A. From Active Directory Sites and Services, modify the NTDS Settings object of the London site.
        • B. From Windows Power Shell, run the Enable-ADOptionalFeature cmdlet.
        • C. From the properties of the LON-DC02 computer account in Active Directory Users and Computers modify the NTDS settings.
        • D. From the properties of the LON-DC02 computer account in Active Directory Users and Computers, modify the City attribute.

        Answer: C

        NEW QUESTION 18
        Your network contains an Active Directory forest named contoso.com
        Your company plans to hire 500 temporary employees for a project that will last 90 days.
        You create a new user account for each employee. An organizational unit (OU) named Temp contains the user accounts for the employees.
        You need to prevent the new users from accessing any of the resources in the domain after 90 days. What should you do?

        • A. Run the Get-ADUser cmdlet and pipe the output to the Set-ADUser cmdlet.
        • B. Create a group that contains all of the users in the Temp O
        • C. Create a Password Setting object (PSO) for the new group.
        • D. Create a Group Policy object (GPO) and link the GPO to the Temp O
        • E. Modify the Password Policy settings of the GPO.
        • F. Run the GET-ADOrganizationalUnit cmdlet and pipe the output to the Set-Date cmdlet.

        Answer: A

        NEW QUESTION 19
        Your network contains an Active Directory domain named contoso.com.
        A user named User1 and a computer named Conputer1 are in an organizational unit OU1. A user named User2 and a computer named Computer 2 are in an OU named OU2.
        A Group Policy object (GPO) named GPO1 is linked to the domain. GPO1 contains a user preference that is configured as shown in the Shortcut1 Properties exhibit. (Click the Exhibit button.)
        70-742 dumps exhibit
        Item-level targeting for the user preference is configured as shown in the Targeting exhibit. (Click the Exhibit button.)
        70-742 dumps exhibit
        For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
        70-742 dumps exhibit

          Answer:

          Explanation: References:
          https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/cc73075

          P.S. Easily pass 70-742 Exam with 222 Q&As 2passeasy Dumps & pdf Version, Welcome to Download the Newest 2passeasy 70-742 Dumps: https://www.2passeasy.com/dumps/70-742/ (222 New Questions)