Microsoft 70-688 Online Practice
Questions and Exam Preparation
70-688 Exam Details
Exam Code
:70-688
Exam Name
:Supporting Windows 8.1
Certification
:Microsoft Certifications
Vendor
:Microsoft
Total Questions
:224 Q&As
Last Updated
:Apr 07, 2020
Microsoft 70-688 Online Questions &
Answers
Question 161:
You have Windows 8.1 Pro client computers.
You need to recommend a solution to roll back the Windows Defender engine and the malware signature files on the computers. The solution must minimize administrative effort.
What should you include in the recommendation?
A. the Program and Features Control Panel item B. Windows 7 File Recovery C. the Mpcmdrun command D. File History
C. the Mpcmdrun command
Windows Defender includes a command-line utility, MpCmdRun.exe, which can be handy if you want to automate the use of Windows Defender.
MpCmdRun.exe -RemoveDefinitions [-All]
Restores the installed signature definitions to a previous backup copy or to the original default set of signatures.
Reference: Run (and Automate) Windows Defender from the Command Line
You administer laptop and desktop computers that run Windows 8 Enterprise in an Active Directory domain. Your company has purchased a subscription to Windows Intune.
You plan to install Intune Endpoint Protection on all computers. Some of the computers also have another antimalware application installed.
You need to ensure that only the Intune Endpoint Protection application is running on all computers. What should you do?
A. Configure the Enable Realtime Protection policy to Yes. B. Configure the Enable Endpoint Protection policy to Only on computers that are unprotected when Endpoint Protection is installed. C. Configure the Enable Endpoint Protection policy setting to Yes. D. Configure the Enable Endpoint Protection policy setting to No.
C. Configure the Enable Endpoint Protection policy setting to Yes.
Using Windows Intune Endpoint Protection or an Existing Endpoint Protection Application
To explicitly enable Windows Intune Endpoint Protection on client computers that are running another endpoint protection application that was detected by Windows Intune, you have to create a Windows Intune policy, and then deploy it to
those computers. To do so, in the Windows Intune administrator console, create a new policy, set the policy value for Enable Endpoint Protection to Yes, and deploy the policy to the appropriate computers. After you confirm that Windows
Intune Endpoint Protection is helping to secure the client computers, you can remove or disable the other endpoint protection application.
Your company purchases a subscription to Windows Intune.
You deploy the Windows Intune agent to all of the computers.
You need to uninstall a Microsoft update that was installed before the Windows Intune agent was installed. The solution must minimize administrative effort.
What should you do?
A. Create a Group Policy object (GPO) that runs wusa.exe by using a startup script. B. From Windows Intune, create a new automatic approval rule. C. From Windows Intune, click New updates to approve. D. Create a Group Policy object (GPO) that runs msiexec.exe by using a startup script.
C. From Windows Intune, click New updates to approve.
You support computers that run Windows 8 Enterprise. Your company protects all laptops by using the BitLocker Network Unlock feature. Some employees work from home.
You need to ensure that employees can log on to their laptops when they work from home. What should you do?
A. Provide employees their BitLocker PINs. B. Ensure that the Trusted Platform Module (TPM) chips in the laptops are version 1.2 or greater. C. Enable BitLocker To Go. D. Have users run the Manage-bde.exe -unlock command before they disconnect from the company network.
A. Provide employees their BitLocker PINs.
In addition to the option of creating a startup key, you have the option of creating a startup personal identification number (PIN). You can create either the startup key or the startup PIN, but not both. The startup PIN can be any number that you choose from 4 to 20 digits in length. The PIN is stored on your computer. You will have to type the PIN each time you start the computer. Reference: http://windows.microsoft.com/en-US/windows-vista/What-is-a-BitLocker-Drive-Encryption- startup-key-or-PIN http://support.microsoft.com/kb/2855131
Question 165:
You are a systems administrator for your company. The company has employees who work remotely by using a virtual private network (VPN) connection from their computers, which run Windows 8.1 Pro. These employees use an application
to access the company intranet database servers. The company recently decided to distribute the latest version of the application through using a public cloud.
Some users report that every time they try to download the application by using Internet Explorer, they receive a warning message that indicates the application could harm their computer.
You need to recommend a solution that prevents this warning message from appearing, without compromising the security protection of the computers.
What should you do?
A. Publish the application to Windows Store. B. Publish the application through an intranet web site. C. Change the default Software Restriction Policies on the client computers. D. Obtain a public certificate for the web server, and then configure the web site to use SSL
B. Publish the application through an intranet web site.
You have 100 client Windows 8.1 computers. Users are NOT configured as local administrators.
You need to prevent the users from running applications that they downloaded from the Internet, unless the applications are signed by a trusted publisher.
What should you configure in the Security settings from the Action Center?
A. Virus protection B. User Account Control C. Windows SmartScreen settings D. Network Access Protection
You have a desktop computer that runs Windows 8 Enterprise.
You add three new 3-terabyte disks.
You need to create a new 9-terabyte volume.
Which two actions should you perform? (Each correct answer presents part of the solution.
Choose two.)
A. From Disk Management, create a new spanned volume. B. From Disk Management, convert all of the 3-terabyte disks to GPT. C. From PowerShell, run the New-VirtualDisk cmdlet. D. From Disk Management, bring all disks offline. E. From Diskpart, run the Convert MBR command. F. From PowerShell, run the Add-PhysicalDisk cmdlet.
A. From Disk Management, create a new spanned volume. B. From Disk Management, convert all of the 3-terabyte disks to GPT.
Create a Spanned VolumeA spanned volume is a dynamic volume consisting of disk space on more than one physical disk. If a simple volume is not a system volume or boot volume, you can extend it across additional disks to create a spanned volume, or you can create a spanned volume in unallocated space on a dynamic disk. Reference:http://technet.microsoft.com/en-us/library/cc772180.aspx
To create a spanned volume using the Windows interface1. In Disk Management, right- click the unallocated space on one of the dynamic disks where you want to create the spanned volume.2. Click New Spanned Volume.3. Follow the instructions on your screen.Using GPT Drives
Reference 2:http://msdn.microsoft.com/en-us/library/windows/hardware/gg463524.aspx A GPT disk uses the GUID partition table (GPT) disk partitioning system. A GPT disk offers these benefits:Allows up to 128 primary partitions. Master Boot Record (MBR) disks can support up to four primary partitions and an additional 124 partitions inside extended partitions.Allows a much larger partition sizereater than 2terabytes (TB), which is the limit for MBR disks.Provides greater reliability because of replication and cyclical redundancy check (CRC) protection of the partition table.Can be used as a storage volume on all x64-based platforms, including platforms running Windows XP Professional x64 Edition. Starting with Windows Server 2003 SP1, GPT disks can also be used as a storage volume on x86-based Windows platforms.Can be used as a boot volume on x64-based editions of Windows 7, Windows Vista, and Windows Server 2008. Starting with Windows Server 2003 SP1, GPT disks can also be used as a boot volume on Itanium-based systems.Note: Windows only supports booting from a GPT disk on systems that contain Unified Extensible Firmware Interface (UEFI) boot firmware.
Question 168:
Your company has a main office and a branch office. Each office contains several servers that run Windows Server 2012.
You need to configure BranchCache for the client computers in the branch office. The solution must ensure that all of the cached content is in a central location.
What should you run on each client computer?
A. the netdom command B. the Enable-BCHostedClient cmdlet C. the Enable-BCDistributed cmdlet D. the winrm command
B. the Enable-BCHostedClient cmdlet
Enable-BCHostedClient
Configures BranchCache to operate in hosted cache client mode.
Note:
*
BranchCache is designed to reduce WAN link utilization and improve application responsiveness for branch office workers who access content from servers in remote locations. Branch office client computers use a locally maintained cache
of data to reduce traffic over a WAN link. The cache can be distributed across client computers (Distributed Cache mode) or can be housed on a server in the branch (Hosted Cache mode).
*
BranchCache is disabled by default on client computers. Take the following steps to enable BranchCache on client computers:
Turn on BranchCache.
Enable either Distributed Cache mode or Hosted Cache mode. Configure the client firewall to enable BranchCache protocols. http://technet.microsoft.com/en-us/ library/hh848394.aspx http://technet.microsoft.com/en-us/library/hh848398.aspx
Question 169:
You use a desktop computer and a laptop, both of which run Windows 8. You use a Microsoft account to log on to the desktop computer and a local user account to log on to the laptop. The desktop computer is joined to the HomeGroup and
the laptop is a member of a workgroup.
When you access a frequently visited website from your laptop, Internet Explorer saves your password. When you visit the website from your desktop computer, you are prompted to enter your password.
You need to sync your saved password from your laptop to your desktop computer.
Which three actions should you perform on the laptop in sequence? (To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.)
Select and Place:
Note:
* Microsoft has integrated its cloud computing features into much of Windows 8. The focal point of that integration is the soon to be re-branded Windows Live service—use a Windows Live account as your login, and you can synchronize much of the information associated with your account to all your Windows devices through the cloud. Or at least, that's the goal.
* Setting up for synchronization starts when you configure your user account. At installation, Windows 8 prompts you for a Windows Live account. You can create a new Live account or use an existing one for your user credentials, or choose to bypass this and set up a local-only user account—but you won't be able to leverage the synchronization features if you do. You can also opt out later and switch to a local-only account through Windows 8's settings menu. When you set up your user account—either at install time or from the PC settings menu afterward—you'll be prompted to either use an existing Live account email address or enter a new one
Nowadays, the certification exams become more and more important and required by more and more
enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare
for the exam in a short time with less efforts? How to get a ideal result and how to find the
most reliable resources? Here on Vcedump.com, you will find all the answers.
Vcedump.com provide not only Microsoft exam questions,
answers and explanations but also complete assistance on your exam preparation and certification
application. If you are confused on your 70-688 exam preparations
and Microsoft certification application, do not hesitate to visit our
Vcedump.com to find your solutions here.