70-742 Exam Details

  • Exam Code
    :70-742
  • Exam Name
    :Identity with Windows Server 2016
  • Certification
    :Microsoft Certifications
  • Vendor
    :Microsoft
  • Total Questions
    :289 Q&As
  • Last Updated
    :Feb 07, 2022

Microsoft 70-742 Online Questions & Answers

  • Question 211:

    You have a server named Server1 that runs Windows Server 2016. Server1 is a Hyper_v host that hosts a virtual machines VM1.

    Server1 has three network adapter cards that are connected to virtual switches named vSwhitch1m, vSwitch2 and vSwitch3.

    You configure NIC team on VM1 as shown in the exhibit. (Click the Exhibit tab.)

    You need to ensure that vm1 will retain access to the network if a physical network adapter card fails on Server1. What should you do?

    A. From the properties of the NIC team on VM1 , change the load balancing of the NIC team.
    B. From Hyper -V Manager on server1, modify the settings of VM1.
    C. From Windows PowerShell on Server1, run the set VmNetworkAdapterFailoverConfiguration cmdlet.
    D. From the properties of the NOC team on VM1, add the adapter named Ethernet to the NIC team.

  • Question 212:

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while

    others might not have a correct solution.

    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen. Your network contains an Active Directory forest. The forest contains a domain named

    contoso.com. The domain contains three domain controllers.

    A domain controller named lon-dc1 fails. You are unable to repair lon-dc1.

    You need to prevent the other domain controllers from attempting to replicate to lon-dc1.

    Solution: From Active Directory Domains and Trusts, you transfer the operations master roles from lon-dc1.

    Does this meet the goal?

    A. Yes
    B. No

  • Question 213:

    Your network contains an Active Directory forest named contoso.com. The forest contains three domains named contoso.com, corp.contoso.com, and ext.contoso.com. The forest contains three Active Directory sites named Site1, Site2, and Site3.

    You have the three administrators as described in the following table.

    You create a Group Policy object (GPO) named GPO1. Which administrator or administrators can link GPO1 to Site2?

    A. Admin1 and Admin2 only
    B. Admin1, Admin2, and Admin3
    C. Admin3 only
    D. Admin1 and Admin3 only

  • Question 214:

    HOTSPOT

    Your network contains two network domains sales.fabrikam.com, and contoso.com,

    You recently added a site named Europe.

    The forest contains four users who are members of the groups shown in the following table.

    You need to create a Group Policy object (GPO) named GP01 and to link GPO1 to the Europe site.

    Which users can perform each task? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point

    Hot Area:

  • Question 215:

    You deploy a new enterprise certification authority (CA) named CA1.

    You plan to issue certificates based on the User certificate template.

    You need to ensure that the issued certificates are valid for two years and support autoenrollment.

    What should you do first?

    A. Run the certutil.exe command and specify the resubmit parameter.
    B. Duplicate the User certificate template.
    C. Add a new certificate template for CA1 to issue.
    D. Modify the Request Handling settings for the CA.

  • Question 216:

    Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while

    others might not have a correct solution.

    After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

    Your network contains an Active Directory domain named contoso.com.

    A user named User1 is in an organizational unit (OU) named OU1.

    You need to enable User1 to sign in as [email protected].

    You need a list of groups to which User1 is either a direct member or an indirect member.

    Solution: From Windows PowerShell, you run Set -Aduser User1 -UserPricncipalName [email protected].

    Does this meet the goal?

    A. Yes
    B. No

  • Question 217:

    Your network contains an Active Directory domain.

    You have a user account that is a member of the Domain Admins group.

    You have 100 laptops that have a standard corporate image installed. The laptops are in workgroups and have random names.

    A technician named Tech1 is assigned the task of joining the laptops to the domain. The computer accounts of each laptop must be in an organizational unit (OU) that is associated to the department of the user who will use the laptop. The

    laptop names must start with four characters indicating the department, followed by a four-digit number.

    Tech1 is a member of the Domain Users group only. Tech1 has the administrator logon credentials for all the laptops.

    You need Tech1 to join the laptops to the domain. The solution must ensure that the laptops are named correctly, and the computer accounts of the laptops are in the correct OUs.

    Solution: You script the creation of files domain join, and then you give the files to Tech1.

    You instruct Tech1 to sign in to each laptop, and then to run djoin.exe.

    Does this meet the goal?

    A. Yes
    B. No

  • Question 218:

    You have an enterprise certification authority (CA) named CA1.

    You have a certificate template named UserAutoEnroll that is based on the User certificate template. Domain users are configured to autoenroll for UserAutoEnroll. A user named User1 has an email address defined in Active Directory. A user

    named User2 does not have an email address defined in Active Directory.

    You discover that User1 was issued a certificate based on UserAutoEnroll template automatically.

    A request by user2 for a certificate based on the UserAutoEnroll template fails.

    You need to ensure that all users can autoenroll for certificated based on the UserAutoEnroll template.

    Which setting should you configure from the properties on the UserAutoEnroll certificate template?

    A. Issuance Requirements
    B. Request Handling
    C. Cryptography
    D. Subject Name

  • Question 219:

    Your network contains an Active Directory domain named contoso.com. The network contains several IP subnets. One of the subnets uses a network ID if 192.168.10.0/24.

    You link a Group Policy object (GPO) named GPO1 to the domain.

    You need to map a drive to a specific file share on the computers in the 192.168.10.0/24 network only.

    What should you do?

    A. From the User Configuration node of GPO1, configure the Folder Redirection settings. Link a WMI filter to GPO1.
    B. From the Computer Configuration mode of GPO1, configure the Network Connections settings. Link a WMI filter to GPO1.
    C. From the User Configuration node of GPO1, create a Group Policy preference that uses item-level targeting.
    D. From the Computer Configuration node of GPO1, create a Group Policy preference that uses item-level targeting.

  • Question 220:

    Your network contains an Active Directory domain. All servers run Windows Server 2016. All client computers run Windows 10 Enterprise.

    You deploy an enterprise certification authority (CA).

    You are implementing an online responder.

    You need to ensure that any clients that are issued certificates by the CA will use the online responder.

    How should you configure the extension settings of the CA?

    A. Configure the Authority Information Access (AIA) extension by adding a location that has the Include in the AIA extension of issued certificates check box selected.
    B. Configure the Authority Information Access (AIA) extension by adding a location that has the Include in the online certificate status protocol (OC5P) extension check box selected.
    C. Configure the CRL Distribution Point extension by adding a location that has the Publish CRLs to this location check box and the Publish Delta CRLs to this location check box selected.
    D. Configure the CRL Distribution Point extension by adding a location that has the Include in the CDP extension of issued certificates check box selected.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Microsoft exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 70-742 exam preparations and Microsoft certification application, do not hesitate to visit our Vcedump.com to find your solutions here.