70-742 Exam Details

  • Exam Code
    :70-742
  • Exam Name
    :Identity with Windows Server 2016
  • Certification
    :Microsoft Certifications
  • Vendor
    :Microsoft
  • Total Questions
    :289 Q&As
  • Last Updated
    :Feb 07, 2022

Microsoft 70-742 Online Questions & Answers

  • Question 111:

    Your network contains an Active Directory domain named contoso.com.

    Some user accounts in the domain have the P.O. Box attribute set.

    You plan to remove the value of the P.O. Box attribute for all of the users by using Ldifde.

    You have a user named User1 who is located in the Users container.

    How should you configure the LDIF file to remove the value of the P.O. Box attribute for User1? To answer, select the appropriate options in the answer area.

    Hot Area:

  • Question 112:

    Your network contains an Active Directory domain named contoso.com.

    The domain contains a user named User1 and an organizational unit (OU) named OU1.

    You create a Group Policy object (GPO) named GPO1.

    You need to ensure that User1 can link GPO1 to OU1.

    What should you do?

    A. Modify the security settings of User1.
    B. Add User1 to the Group Policy Creator Owner group.
    C. Modify the security settings of OU1.
    D. Modify the security settings of GPO1.

  • Question 113:

    Your network contains two Active Directory forests named fabrikam.com and contoso.com. Each forest contains a single domain.

    Contoso.com has a Group Policy object (GPO) named Cont_GPO1.

    You need to apply the settings from Cont_GPO1 to the computers in fabrikam.com.

    Which two actions should you perform? Each correct answer presents a complete solution.

    NOTE: Each correct section is worth one point.

    A. Back up Cont_GPO1. In fabrikam.com, create and link a new GPO by using the Group Policy Management Console (GPMC), and then run the Import Setting Wizard.
    B. Back up Cont_GPO1. In fabrikam.com, run the Restore-GPO cmdlet, and then run the New-GPLink cmdlet.
    C. Back up Cont_GPO1. In fabrikam.com run the Import-GPO cmdlet, and then run the New-GPLink cmdlet.
    D. Copy\\contoso.com\SysVol\contoso.com\Policies to \\fabrikam.com\SysVol\ fabrikam.com\Policies. In fabrikam.com, run the New-GPLink cmdlet.
    E. Back up Cont_GPO1. In fabrikam.com, create and link a new GPO by using the Group Policy Management Console (GPMC), and then run the Restore Group Policy Object Wizard.

  • Question 114:

    HOTSPOT

    Your network contains an Active Directory domain named contoso.com.

    A user named User1 and a computer named Conputer1 are in an organizational unit OU1. A user named User2 and a computer named Computer 2 are in an OU named OU2.

    A Group Policy object (GPO) named GPO1 is linked to the domain. GPO1 contains a user preference that is configured as shown in the Shortcut1 Properties exhibit. (Click the Exhibit button.)

    Item-level targeting for the user preference is configured as shown in the Targeting exhibit. (Click the Exhibit button.)

    For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 115:

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while

    others might not have a correct solution.

    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

    Your network contains an Active Directory domain named contoso.com. You have an organizational unit (OU) named LondonUsers that contains 10,000 users. You need to modify the office attribute of all the users in the LondonUsers OU.

    Solution: You create a CSV file. You run csvde.exe and specify the -i and -f parameters.

    Does this meet the goal?

    A. Yes
    B. No

  • Question 116:

    Your network contains an Active Directory domain. The domain contains a server named Server1 that runs Windows Server 2016. Server1 runs a service named Service1 in the security context of the Network Service account.

    The domain contains an enterprise certification authority (CA).

    You plan to create template that will be used to issue certificates for Service1. Server1 will enroll for the certificates on behalf of Service1.

    Which template settings must you configure to allow Service1 to access the private keys of the certificates installed on Server1?

    A. Issuance requirements
    B. Request Handling
    C. Extensions
    D. Security

  • Question 117:

    You are deploying a web application named WebApp1 to your internal network. WebApp is hosted on a server named Web1 that runs Windows Server 2016.

    You deploy an Active Directory Federation Services (AD FS) infrastructure and a Web Application Proxy to provide access to WebApp1 for remote users.

    You need to ensure that Web1 can authenticate the remote users.

    What should you do?

    A. Publish WebApp1 by using AD FS preauthentication.
    B. Publish WebApp1 as a Remote Desktop Gateway (RD Gateway) application in the Web Application Proxy.
    C. Publish WebApp1 by using pass-through preauthentication.
    D. Publish WebApp1 by using client certificate preauthentication.

  • Question 118:

    DRAG DROP

    You network contains an Active Directory domain named contoso.com. The domain contains an enterprise certification authority (CA).

    A user named Admin1 is a member of the Domain Admins group.

    You need to ensure that you can archive keys on the CA. The solution must use Admin1 as a key recovery agent.

    Which four actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

    Select and Place:

  • Question 119:

    Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. The functional level of the forest and the domains is Windows Server 2008 R2. You have a global group named

    Group1 in the contoso.com domain. Group1 contains the user accounts in contoso.com.

    You need to ensure that you can add the user accounts in the fabrikam.com domain to Group1.

    What should you do?

    A. Raise the domain functional level of contoso.com to Windows Server 2016.
    B. Assign the Domain Controllers group in fabrikam.com permissions to Group1.
    C. In both domains, run the adprep.exe command and specify the /domainprep parameter.
    D. Modify the scope of Group1 to Universal.

  • Question 120:

    You use Application Request Routing (ARR) to make internal web applications available to the Internet by using NTLM authentication.

    You need to replace ARR by using the Web Application Proxy.

    Which server role should you deploy first?

    A. Active Directory Certificate Services
    B. Active Directory Federation Services
    C. Active Directory Lightweight Directory Service
    D. Active Directory Rights Management Services

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 70-742 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.