70-742 Exam Details

  • Exam Code
    :70-742
  • Exam Name
    :Identity with Windows Server 2016
  • Certification
    :Microsoft Certifications
  • Vendor
    :Microsoft
  • Total Questions
    :289 Q&As
  • Last Updated
    :Feb 07, 2022

Microsoft 70-742 Online Questions & Answers

  • Question 201:

    Your network contains an Active Directory forest named contoso.com. The forest contains 10 domains. The root domain contains a global catalog server named DC1.

    You remove the global catalog server role from DC1.

    You need to decrease the size of the Active Directory database on DC1.

    Solution: You stop the NTDS service on DC1. You run ntdsutil.exe, use the metadata cleanup option, and then start the NTDS server.

    Does this meet the goal?

    A. Yes
    B. No

  • Question 202:

    Your network contains an Active Directory domain named contoso.com.

    You have an organizational unit (OU) named OU1. A Group Policy object (GPO) named GPO1 is linked to OU1.

    You create a user named User1, and you assign User1 the Full control permission to OU1.

    Which administrative action for GPOs can User1 perform?

    A. Link an existing GPO from the domain to OU1
    B. Create a new GPO and link the GPO to OU1
    C. Add an administrative template to GPO1
    D. Edit the User Rights Assignment in GPO1

  • Question 203:

    Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. The functional level of the forest and the domains is Windows Server 2008 R2.

    You have a global group named Group1 in the contoso.com domain. Group1 contains the user accounts in the contoso.com.

    You need to ensure that you can add the user accounts in the fabrikam.com domain to Group1.

    What should you do?

    A. Assign the Domain Controllers group in fabrikam.com permissions to Group1.
    B. Modify the scope of Group1 to Universal.
    C. Raise the domain functional level contoso.com to Windows Server 2016.
    D. Raise the domain functional level of fabriakm.com Windows Server 2016.
    E. Change Group1 to a distribution group

  • Question 204:

    HOTSPOT

    Your network contains an Active Directory domain named adatum.com.

    You create a user named User1.

    You need to meet the following requirements:

    1. Ensure that User1 can sign in only during work hours.

    2. Allow User1 to establish a VPN connection.

    Which two settings should you configure? To answer, select the appropriate settings in the answer area.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 205:

    HOTSPOT

    Your network contains an Active Directory forest named contoso.com.

    The connect to the forest by using Ldp.exe and receive the output as shown in the following exhibit.

    Use the drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.

    NOTE: Each correct selection is worth one point.

    Hot Area:

  • Question 206:

    Your network contains an Active Directory domain named contoso.com. The domain contains a member server named Server1 that runs Windows Server 2016.

    Server1 has IP Address Management (IPAM) installed. IPAM uses a Windows Internal Database.

    You install Microsoft SQL Server on Server1.

    You plan to move the IPAM database to SQL Server.

    You need to create a SQL Server login for the IPAM service account.

    For which user should you create the login? To answer, select the appropriate options in the answer area.

    Hot Area:

  • Question 207:

    Your network contains an Active Directory domain named contoso.com. The domain contains four servers named Server1, Server2, Server3, and Server4 that run Windows Server 2016.

    Server1 has IP Address Management (IPAM) installed. Server2, Server3, and Server 4 have the DHCP Server role installed. IPAM manages Server2, Server3, and Server4.

    A domain user named User1 is a member of the groups shown in the following table.

    Which actions can User1 perform? To answer, select the appropriate options in the answer area.

    Hot Area:

  • Question 208:

    Your network contains an Active Directory domain. The domain contains an Active Directory Rights Management Services (AD RMS) cluster and a certification authority (CA).

    You need to ensure that all the documents that are protected by using AD RMS can be decrypted if the account used to encrypt the documents is deleted.

    What should you do?

    A. Configure super users in the AD RMS deployment.
    B. Manually configure the AD RMS cluster key password.
    C. Back up the AD-RMS protected files by using Windows Server Backup.
    D. Configure key archival on the CA.

  • Question 209:

    Your company has multiple branch offices.

    The network contains an Active Directory domain named contoso.com.

    In one of the branch offices, a new technician is hired to add computers to the domain.

    After successfully joining multiple computers to the domain, the technician fails to join any more computers to the domain.

    You need to ensure that the technician can join an unlimited number of computers to the domain.

    What should you do?

    A. Run the Delegation of Control Wizard on the Computers container.
    B. Run the redircmp.exe command.
    C. Modify the Security settings of the technician's user account.
    D. Add the technician to the Windows Authorization Access group.

  • Question 210:

    Your company has a main office and three branch offices. The network contains an Active Directory domain named contoso.com.

    The main office contains three domain controllers. Each branch office contains one domain controller.

    You discover the new settings in the Default Domain Policy are not applied in one of the branch offices, but all other Group Policy objects (GPOs) are applied.

    You need to check the replication of the Default Domain Policy for the branch office.

    What should you do from a domain controller in the main office?

    A. From Group Policy Management, click Default Domain Policy under Contoso.com, and then open the Scope tab.
    B. From a command prompt, run dcdiag.exe.
    C. From a command prompt, run repadmin.exe.
    D. From Windows PowerShell, run the Get-GPOReport cmdlet.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 70-742 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.