Your network contains an Active Directory forest named fabrikam.com. The forest contains the following domains:

Fabrikam.com

Eu.fabrikam.com

Na.fabrikam.com

Eu.contoso.com

Na.contoso.com
You need to configure the forest to ensure that the administrators of any of the domains can specify a user principal name (UPN) suffix of contoso.com when they create user accounts from Active Directory Users and Computers.
Which tool should you use?
A. Active Directory Sites and ServicesYour company network has an Active Directory forest that has one parent domain and one child domain. The child domain has two domain controllers that run Windows Server 2008. All user accounts from the child domain are migrated to the parent domain. The child domain is scheduled to be decommissioned.
You need to remove the child domain from the Active Directory forest. What are two possible ways to achieve this goal? (Each correct answer presents a complete solution. Choose two.)
A. Run the Computer Management console to stop the Domain Controller service on both domain controllers in the child domain.Your network contains an Active Directory forest.
All users have a value set for the Department attribute.
From Active Directory Users and computers, you search a domain for all users who have a Department attribute value of Marketing.
The search returns 50 users.
From Active Directory Users and Computers, you search the entire directory for all users who have a Department attribute value of Marketing.
The search does not return any users.
You need to ensure that a search of the entire directory for users in the marketing department returns all of the users who have the Marketing Department attribute.
What should you do?
A. Install the Windows Search Service role service on a global catalog server.Your network contains an Active Directory domain named contoso.com.
Members of the sales department are issued laptops that have wireless network cards.
You need to ensure that when users connect to an unidentified network from their laptop, the network is configured as a Public network.
Which node in Group Policy Management Editor should you use?To answer, select the appropriate node in the answer area.
Hot Area:

You are formulating the backup strategy for Active Directory Lightweight Directory Services (AD LDS) to ensure that data and log files are backed up regularly.
This will also ensure the continued availability of data to applications and users in the event of a system failure. Because you have limited media resources, you decided to backup only specific ADLDS instance instead of taking backup of the entire volume.
What should you do to accomplish this task?
A. Use Windows Server backup utility and enable checkbox to take only backup of database and log files of AD LDSA network contains an Active Directory Domain Services (AD DS) domain. Active Directory is configured as shown in the following table.

The functional level of the domain is Windows Server 2008 R2. The functional level of the forest is Windows Server 2003.
Active Directory replication between the Seattle site and the Chicago site occurs from 8:00 P.M. to 1:00 M. every day.
At 7:00 A.M. an administrator deletes a user account while he is logged on to DC001.
You need to restore the deleted user account. You must achieve this goal by using the minimum administrative effort.
What should you do?
A. On DC006, stop AD DS, perform an authoritative restore, and then start AD DS.Your network contains an Active Directory forest. The forest contains one domain. The domain contains two domain controllers named DC1 and DC2 that run Windows Server 2008 R2.
DC1 was installed before DC2.
DC1 fails.
You need to ensure that you can add 1,000 new user accounts to the domain.
What should you do?
A. Modify the permissions of the DC2 computer account.You want users to log on to Active Directory by using a new Principal Name (UPN).
You need to modify the UPN suffix for all user accounts.
Which tool should you use?
A. DsmodYour company has two Active Directory forests as shown in the following table.

The forests are connected by using a two-way forest trust. Each trust direction is configured with forest-wide authentication. The new security policy of the company prohibits users from the eng.fabrikam.com domain to access resources in the contoso.com domain.
You need to configure the forest trust to meet the new security policy requirement.
What should you do?
A. Delete the outgoing forest trust in the contoso.com domain.Your network contains an Active Directory domain. The relevant servers in the domain are configured as shown in the following table.

You need to ensure that all device certificate requests use the MD5 hash algorithm. What should you do?
A. On Server2, run the Certutil tool.Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 70-640 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.