Microsoft 70-742 Braindumps 2021
It is impossible to pass Microsoft 70-742 exam without any help in the short term. Come to us soon and find the most advanced, correct and guaranteed . You will get a surprising result by our .
Also have 70-742 free dumps questions for you:
NEW QUESTION 1
Your network contains an Active Directory forest named contoso.com. The forest contains a member server named Server1. Server1 has several line-of-business applications. Each application runs as a service that uses the Network Service account. You need to configure the line-of-business applications to run by using a virtual account. What should you do?
- A. From the Services console, modify the Log On properties of the services.
- B. From the Microsoft Application Compatibility Toolkit (ACT), create a shim.
- C. From Windows PowerShell, run the Install-ADScrviceAccount cmdlet.
- D. From Windows PowerShell, run the New-ADServiccAccount cmdlet.
Answer: A
NEW QUESTION 2
You deploy a new enterprise certification authority (CA) named CA1. You plan to issue certificates based on the User certificate template.
You need to ensure that the issued certificates are valid for two years and support autoenrollment. What should you do first?
- A. Run the certutil.exe command and specify the resubmit parameter.
- B. Duplicate the User certificate template.
- C. Add a new certificate template for CA1 to issue.
- D. Modify the Request Handling settings for the CA.
Answer: B
NEW QUESTION 3
You have a server named Server1 in a workgroup.
You need to configure a Group Policy setting on Server1 that will apply to only non-administrative users. What should you do?
- A. Open Local Group Policy Edito
- B. From the File menu, modify the Options settings.
- C. Run mmc.exe Add the Group Policy Object Editor snap-in and change the Group Policy object (GPO).
- D. Open Local Group Policy Edito
- E. From the View menu, modify the Customize settings.
- F. Open Local Users and Groups, Create a new group Run New-GPO.
Answer: A
NEW QUESTION 4
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contoso.com. A user named User1 is in an organizational unit (OU) named OU1.
You are troubleshooting a folder access issue for User1.
You need a list of groups to which User1 is either a direct member or ab indirect member. Solution: You run Get-ADGroup –Identity User1 –Property MemberOf.
Does this meet the goal?
- A. Yes
- B. No
Answer: B
Explanation: The Get-ADGroup cmdlet does not include the MemberOf property. The command above is, therefore, not valid.
References:
https://docs.microsoft.com/en-us/powershell/module/addsadministration/get-adgroup?view=win10-ps
NEW QUESTION 5
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2 that run Windows Server 2021.
Server1 has IP Address Management (IPAM) installed. Server2 has Microsoft System Center 2021 Virtual Machine Manager (VMM) installed.
You need to integrate IPAM and VMM.
Which types of objects should you create on each server? To answer, drag the appropriate object types to the correct servers. Each object type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
Answer:
Explanation: Server 1 (IPAM): Access Policy
VMM must be granted permission to view and modify IP address space in IPAM, and to perform remote management of the IPAM server. VMM uses a “Run As” account to provide these permissions to the IPAM network service plugin. The “Run As” account must be configured with appropriate permission on the IPAM server.
To assign permissions to the VMM user account
In the IPAM server console, in the upper navigation pane, click ACCESS CONTROL, right-click Access Policies in the lower navigation pane, and then click Add AccessPolicy.
Etc.
Server 2 (VMM) #1: Network Service Server 2 (VMM) #2: Run As Account
Perform the following procedure using the System Center VMM console. To configure VMM (see step 1-3, step 6-7)
Etc.
References: https://technet.microsoft.com/en-us/library/dn783349(v=ws.11).aspx
NEW QUESTION 6
You network contains an active Directory domain. The domain contains 20 domain controllers.
You discover that some Group Policy objects (PROs) are not being applied by all the domain controllers. You need to verify whether GPOs replicate successfully to all the domain controllers.
What should you do?
- A. Set BurFlags in the registry, and then restart the File Replication Service (FRS). Run dcdiag.exe for each domain controller.
- B. Set BurFlags in the registry, and then restart the File Replication Service (FRS). View the Directory Service event log.
- C. From Group Policy Management, view the Status tab for the domain.
- D. Run repadmin.exe for each GPO.
Answer: D
NEW QUESTION 7
Your network contains an Active Directory domain named contoso.com. The domain contains a web application that uses Kerberos authentication.
You change the domain name of the web application.
You need to ensure that the service principal name (SPN) for the application is registered. Which tool should you use?
- A. Rdspnf
- B. Active Directory Users and Computers
- C. Dnscmd
- D. Ldifde
Answer: B
NEW QUESTION 8
Your network contains a single-domain Active Directory forest named contoso.com. The forest functional level is Windows Server 2021. The Active Directory Recycle Bin feature is enabled.
You need to design a procedure to restore the values of user object attributes if the values are changed accidentally.
Which cmdlets should you include in the procedure? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation: 
NEW QUESTION 9
Your network contains an Active Directory domain named contoso.com.
You have an administrative computer named Computer1 that runs Windows Server 2021. From Computer1, you edit a Group Policy object (GPO) named GPO1 as shown in the exhibit.
You receive a new administrative template named Template1. Template1 consists of Template1.adml. Template1 is in English US.
You need to ensure that the settings of Template1 appear under the Administrative Templates node.
To where should you copy the Template1 files? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Answer:
Explanation: 
NEW QUESTION 10
Your network contains an Active Directory domain named contoso.com. The domain contains a read-only domain controller (RODC) named R0DC1.
You need to retrieve a list of accounts that have their password cached on RODC1. Which command should you run?
- A. netdom.exe
- B. ntdsutil.exe
- C. repadmin.exe
- D. dcdiag.exe
Answer: C
Explanation: https://technet.microsoft.com/en-us/library/rodc-guidance-for-administering-the-password-replication-policy(v=
NEW QUESTION 11
Your network contains an Active Directory domain named adatum.com. The domain contains the servers configured as shown in the following table:
You have a server named Server6 in the perimeter network. Each server has the local users show in the following table.
The domain contains the users shown in the following table.
You install a Web Application Proxy on Server6.
You need to configure the Web Application proxy on Server6. The solution must use the principle of least privilege.
Which account should you specify in the Web Application Proxy Configuration Wizard? To answer, select the appropriate options in the answer are.
NOTE: Each correct selection is worth one point.
Answer:
Explanation: The user account used to configure the web application proxy must have local Administrator permission on the WAP server(s), and have access to an account that have local Administrator permissions on the AD FS servers.
References:
http://www.mistercloudtech.com/2015/11/25/how-to-install-and-configure-web-application-proxy-for-adfs/
NEW QUESTION 12
Your network contains an Active Directory domain named contoso.com.
All the accounts of the users in the sales department are in an organizational unit (OU) named SalesOU. An application named App1 is deployed to the user accounts in SalesOU by using a Group Policy object
(GPO) named SalesGPO. You need to set the registry value of
HKEY_CURRENT_USERSoftwareApp1CoIlaboration to 0.
Solution: You add a user preference that has an Update action. Does this meet the goal?
- A. Yes
- B. No
Answer: A
NEW QUESTION 13
Your network contains an Active Directory domain. The domain contains a domain controller named DC1 that runs Windows Server 2021.
You start DC1 in Directory Services Restore Mode (DSRM). You need to compact the Active Directory database on DC1. Which three action should you perform in sequence?
Answer:
Explanation: https://technet.microsoft.com/en-us/library/cc794920(v=ws.10).aspx
NEW QUESTION 14
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2 that run Windows Server 2021. The computer accounts of Server1 and Server2 are in the Computers container.
A Group Policy object (GPO) named GPO1 is linked to the domain. GPO1 has multiple computer settings defined and has following configurations.
An administrator discovers that GPO1 is not applied to Server1. GPO1 is applied to Server2. Which configuration possibly prevents GPO1 from being applied to Server1?
- A. The permissions on the domain object of contoso.com
- B. The WMI filter settings
- C. The Enforced setting of GPO1
- D. The GpoStatus property
Answer: B
NEW QUESTION 15
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2021. The computer account for Server1 is in organizational unit (OU) named OU1.
You create a Group Policy object (GPO) named GPO1 and link GPO1 to OU1.
You need to add a domain user named User1 to the local Administrators group on Server1.
Solution: From the Computer Configuration node of GPO1, you configure the Account Policies settings. Does this meet the goal?
- A. Yes
- B. No
Answer: B
NEW QUESTION 16
Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
Start of repeated scenario.
Your network contains an Active Directory domain named contoso.com. The domain contains a single site named Site1. All computers are in Site1.
The Group Policy objects (GPOs) for the domain are configured as shown in the exhibit. (Click the Exhibit button.)
The relevant users and client computer in the domain are configured as shown in the following table.
End of repeated scenario.
You plan to enforce the GPO link for A6.
Which five GPOs will apply to User1 in sequence when the user signs in to Computer1 after the link is enforced? To answer, move the appropriate GPOs from the list of GPOs to the answer area and arrange them in the correct order.
Answer:
Explanation: 
NEW QUESTION 17
Your network contains an Active Directory forest named contoso.com. You need to add a new domain named fabrikam.com to the forest.
What command should you run? To answer, select the appropriate options in the answer area.
Answer:
Explanation: References:
https://technet.microsoft.com/en-us/library/hh974722(v=wps.630).aspx
NEW QUESTION 18
Your network contains two Active Directory forests named fabrikam.com and contoso.com. Each forest contains two sites. Each site contains two domain controllers.
You need to configure all the domain controllers in both the forests as global catalog servers. Which snap-in should you us?
- A. Active Directory Users and Computers
- B. Active Directory Sites and Services
- C. Active Directory Domains and Trusts
- D. Active Directory Federation Services
Answer: B
NEW QUESTION 19
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory forest named contoso.com. The forest contains a member server named Server1 that runs Windows Server 2021. All domain controllers run Windows Server 2012 R2.
Contoso.com has the following configuration. PS C:> (Get-ADForest).ForestMode Windows2008R2Forest
PS C:> (Get-ADDomain).DomainMode Windows2008R2Domain
PS C:>
You plan to deploy an Active Directory Federation Services (AD FS) farm on Server1 and to configure device registration.
You need to configure Active Directory to support the planned deployment. Solution: You run adprep.exe from the Windows Server 2021 installation media. Does this meet the goal?
- A. Yes
- B. No
Answer: A
Explanation: Device Registration requires Windows Server 2012 R2 forest schema.
100% Valid and Newest Version 70-742 Questions & Answers shared by 2passeasy, Get Full Dumps HERE: https://www.2passeasy.com/dumps/70-742/ (New 222 Q&As)