70-649 Exam Details

  • Exam Code
    :70-649
  • Exam Name
    :TS: Upgrading Your MCSE on Windows Server 2003 to Windows Server 2008, Technology Specialist
  • Certification
    :Microsoft Certifications
  • Vendor
    :Microsoft
  • Total Questions
    :303 Q&As
  • Last Updated
    :Dec 16, 2021

Microsoft 70-649 Online Questions & Answers

  • Question 121:

    Your network contains one Active Directory domain. You have a member server named Server1 that runs Windows Server 2008 R2. The server has the Routing and Remote Access Services role service installed.

    You implement Network Access Protection (NAP) for the domain.

    You need to configure the Point-to-Point Protocol (PPP) authentication method on Server1.

    Which authentication method should you use?

    A. Challenge Handshake Authentication Protocol (CHAP)
    B. Extensible Authentication Protocol (EAP)
    C. Microsoft Challenge Handshake Authentication Protocol version 2 (MS-CHAP v2)
    D. Password Authentication Protocol (PAP)

  • Question 122:

    You have a test lab that contains 20 client computers and a server named Server1. The client computers run Windows 7. Server1 runs Windows Server 2008 Service Pack 2 (SP2).

    You install the Key Management Service (KMS) on Server1.

    You need to ensure that the client computers can successfully activate by using Server1.

    What should you do?

    A. Upgrade Server 1 to Windows Server 2008 R2.
    B. Deploy five additional client computers that run Windows 7.
    C. On each client computer, run slmgr.vbs /rearm.
    D. On Server1, restart the Windows Activation Technologies service.

  • Question 123:

    Your network contains a server named Server1 that has the Remote Desktop Connection Broker (RD Connection Broker) role service installed.

    You deploy two new servers named Server2 and Server3. On Server2 and Servers, you install the Remote Desktop Session Host (RD Session Host) role service.

    From the Remote Desktop Session Host Configuration snap-in, you configure Server2 and Server3 as server farm members.

    You need to ensure that all Remote Desktop sessions are distributed between Server2 and Servers.

    What should you do?

    A. On Server1, install the Remote Desktop Gateway (RD Gateway) role service. Add Server2 and Server3 as RD Gateway server farm members.
    B. On Server1, add the Server2 computer account and the Server3 computer account to the Session Broker Computers group.
    C. On Server1, install the Remote Desktop Gateway (RD Gateway) role service. Add Server1 as an RD Gateway server farm member.
    D. On Server2 and Server3, add the Server1 computer account to the Remote Desktop Users group.

  • Question 124:

    Your network contains a server named Server1 that runs Windows Server 2008 R2. Server1 has the Network Policy Server (NPS) role service installed.

    You need to ensure that the NPS log files on Server1 contain information about the duration of client connections.

    What should you do?

    A. Enable the Accounting requests setting.
    B. Configure the IAS (Legacy) log file format.
    C. Configure the DTS Compliant log file format.
    D. Enable the Authentication requests setting.

  • Question 125:

    Your network contains a server named Server1 that runs Windows Server 2008 R2.

    You need to ensure that an administrator is notified by e-mail if the Event Viewer logs any error.

    What should you do from the Event Viewer console?

    A. From the System log, select an Error event, and then click the Attach Task to This Event action.
    B. Create a custom view, and then click the Attach Task to This Custom view action.
    C. Create a custom view, and then click the Filter Current Custom view action.
    D. From the System log, click the Filter Current Log action.

  • Question 126:

    Your network contains a server named Server1 that runs Windows Server 2008 R2. Server1 is configured as an Active Directory Federation Services (AD FS) 2.0 standalone server.

    You plan to add a new token-signing certificate to Server1.

    You import the certificate to the server as shown in the exhibit. (Click the Exhibit button.)

    When you run the Add Token-Signing Certificate wizard, you discover that the new certificate is unavailable.

    You need to ensure that you can use the new certificate for AD FS.

    What should you do?

    A. From the properties of the certificate, modify the Certificate purposes setting.
    B. From the properties of the certificate, modify the Certificate Policy OIDs setting.
    C. Import the certificate to the local computer personal certificate store.
    D. Import the certificate to the AD FS 2.0 windows Service personal certificate store.

  • Question 127:

    Your network contains two Active Directory forests named contoso.com and nwtraders.com.

    Active Directory Rights Management Services (AD RMS) is deployed in each forest.

    You need to ensure that users from the nwtraders.com forest can access AD RMS protected content in the contoso.com forest.

    What should you do?

    A. Create an external trust from nwtraders.com to contoso.com.
    B. Add a trusted user domain to the AD RMS cluster in the nwtraders.com domain.
    C. Create an external trust from contoso.com to nwtraders.com.
    D. Add a trusted user domain to the AD RMS cluster in the contoso.com domain.

  • Question 128:

    Your network contains an Active Directory domain.

    Your company is implementing Network Access Protection (NAP).

    You need to define which network resources non-compliant client computers can access.

    What should you configure?

    A. system health validators (SHVs)
    B. the Windows Accounting accounting provider
    C. remediation server groups
    D. Group Policy preferences
    E. the Windows Authentication authentication provider
    F. health policies
    G. connection request policies
    H. the RADIUS Accounting accounting provider
    I. IKEv2 client connections
    J. the RADIUS Authentication authentication provider

  • Question 129:

    Your network contains an Active directory domain named fabrikam.com. The domain contains a Web server named Web1 that runs Windows Server 2008 R2.

    You install the SMTP Server feature on Web 1.

    You need to verify whether you can establish an SMTP connection to Web1.

    Which tool should you use?

    A. Internet Information Services (IIS) 6.0 Manager
    B. Internet Information Services (IIS) Manager
    C. Telnet
    D. Windows Firewall

  • Question 130:

    Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1. Server1 has the Active Directory Federation Services (AD FS) role installed.

    You have an application named App1 that is configured to use Server1 for AD FS authentication.

    You deploy a new server named Server2. Server2 is configured as an AD FS 2.0 server.

    You need to ensure that App1 can use Server2 for authentication.

    What should you do on Server2?

    A. Create a relaying provider trust.
    B. Create a relying party trust.
    C. Add an attribute store.
    D. Create a claims provider trust.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 70-649 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.