Issuu on Google+

Microsoft 70-290

Managing and Maintaining a Microsoft Windows Server 2003 Environment Version: Demo 21.2


Microsoft 70-290 Exam Topic 1, Exam Set D

QUESTION NO: 1 Your network consists of a single Active Directory domain. You have two servers named Server1 and Server2 that run Windows Server 2003 Service Pack 2 (SP2). Server1 is the site license server for the Default-First-Site-Name site. You need to configure Server2 to be the site license server. What should you do? A. From the Licensing console on Server1, modify the Products View configuration. B. From the Licensing Control Panel applet on Server2, modify the Replication configuration. C. From the Active Directory Sites and Services console, modify the Licensing Site Settings. D. From the Active Directory Users and Computers console, modify the AdminSDHolder object. Answer: C Explanation:

Topic 2, Exam Set C

QUESTION NO: 2 CORRECT TEXT You are the network administrator for your company. The network consists of an Active Directory forest that contains two domains named Asia and Europe. The functional level of both domains is Windows 2000 Native. The company has multiple offices in Europe and Asia. User accounts are organized in the domains based on the user’s geographical location. The company uses Microsoft Exchange 2000 Server for email. A group named Sales is used to send email messages to the users in the sales department. You need to configure the sales group so that it can include users in the Europe domain. You also need to configure the sales group so that it can be used to control access to network resources. In addition, you need to add to the Sales group a user named Barbara Decker, who is a new employee in the sales department.

"Excellent Results in Minimum Time" - SelfTestExams.com

2


Microsoft 70-290 Exam What should you do?

Answer: Here are the Step by Step solution: Explanation: Step #1. We have a Global Distribution group named Sales. We need to reconfigure this group to be a Universal Security group. Then we need to add Barbara Decker to the group. Open Active Directory Users and Computers by clicking Start > All Programs > Administrative Tools > Active Directory Users and Computers. Expand the tree and select the CompanyUsers OU.

Step #2. Right click on the Sales group and select properties.

Step #3. Select Universal and Security as shown below then select the Members tab.

Step #4. Click the Add button

Step #5. Enter the name Barbara Decker then click Ok.

Step #6. Click Apply then Ok to close the Sales Properties box.

"Excellent Results in Minimum Time" - SelfTestExams.com

3


Microsoft 70-290 Exam

Topic 3, Exam Set B

QUESTION NO: 3 You are the network administrator for your company. The network consists of a single Active Directory domain. All five servers run Windows Server 2003 and are configured as domain controllers. All client computers run Windows 2000 Professional. Your company frequently hires temporary employees. You specify account expiration dates when you configure user accounts for temporary employees. A former temporary employee named Michael is hired full-time. When Michael tries to log on, he receives the logon message shown in the exhibit. (Click the Exhibit button.) You need to modify the properties of Michael's user account to correct this problem. What should you do?

A. Select the Account is locked out option. B. Set the Account expires option to never. C. Clear the Account is disabled option. D. Select the Password never expires option. Answer: B Explanation: Setting an account expires option is a good feature if you have contract or temporary employees working for you. If you know they are on a six-month contract, go ahead and set their accounts to expire in six months. Some companies set all temporary employee user accounts to expire monthly as a security precaution. If the temporary user leaves the company without notifying the IT department, the account can only be used (or abused) for 30 days. However, in this scenario Tess is made one of the permanent staff and thus you have to set the Account expires option to never.

"Excellent Results in Minimum Time" - SelfTestExams.com

4


Microsoft 70-290 Exam Topic 4, Exam Set A

QUESTION NO: 4 You are the network administrator for your company. Your network consists of a single Active Directory domain. All network servers run Windows Server 2003. A total of three servers are configured as domain controllers. You need to restore a failed domain controller named DC3. The last backup for any domain controller on the network occurred one week ago. First, you reinstall Windows Server 2003 on DC3. What should you do next? A. Run the Active Directory Installation Wizard on DC3. B. Start DC3 and select Directory Services Restore Mode. Perform a nonauthoritative restoration. C. Start DC3 and select the Recovery Console. Perform a nonauthoritative restoration. D. Run Ntbackup.exe on DC3 to restore the System State data. Answer: A Explanation: After installing Windows Server 2003 on the new server, we can simply run the Active Directory Installation Wizard (DCPROMO) to promote the server to a domain controller. During the dcpromo process, a copy of the Active Directory database is replicated from an existing domain controller. Reference: Dan Holme and Thomas Orin, MCSA/MCSE Self-Paced Training Kit (Exam 70-290): Managing and Maintaining a Microsoft Windows Server 2003 Environment, Microsoft Press, pp 3-16, 3-20, 413, 13-6 Deborah Littlejohn Shinder and Dr. Thomas W. Shinder, MCSA/MCSE Exam 70-290: Managing and Maintaining a Windows Server 2003 Environment Study Guide & DVD Training System, p. 843

QUESTION NO: 5 You are the network administrator for your company. All servers run Windows Server 2003. A server named Server1 functions as a domain controller. You back up Server1 and generate a "Excellent Results in Minimum Time" - SelfTestExams.com

5


Microsoft 70-290 Exam detailed backup log. You need to view the full backup log. What should you do? A. Open Event Viewer. In the application log, view Ntbackup events. B. Run the ntbackup command with the /L option. C. Run the ntbackup command with the /F option. D. Open the Backup utility. On the Tools menu, click Report. Answer: D Explanation: Explanation: Every time you back up, the Backup application creates a backup log. To see the contents of these logs, you can click the Report button in the dialog box that tells you that the backup is complete. Alternatively, to pick any log to view, choose Report from the Tools menu in Backup. You’ll see a list of backups. This is the way a view the full backup log. : Mark Minasi, Christa Anderson, Michele Beveridge, C.A. Callahan & Lisa Justice, Mastering™Windows® Server 2003, Sybex Inc., Alameda, 2003, pp. 1525-1532

Topic 1, Exam Set D

QUESTION NO: 6 CORRECT TEXT You are a network administrator for your company. The network consists of a single Active Directory domain. The network contains one domain controller named Serverl that runs Windows Server 2003. Max Stevens, manager of the Marketing Department, will be on vacation for one month starting tomorrow. You need to ensure that no domain users can use his computer during his absence. You also need to ensure that the following requirements are met: • Other users cannot log on to the domain on Max's computer. • When Max returns to work, he can log on to the domain with his computer with minimal administrative effort. • Your operation must not affect other settings on Server1. You must accomplish this task by using the Active Directory Users and Computers console. "Excellent Results in Minimum Time" - SelfTestExams.com

6


Microsoft 70-290 Exam Answer: Review the image for your solution: Explanation:

“Disable Max-PC� STEP: On Left Side Click Computer--->Right Side Max-PC will Appear-Right Click Max-PC-->Select DISABLE.

QUESTION NO: 7

Your network consists of a single Active Directory domain. All servers run Windows Server 2003 Service Pack 2 (SP2). All client computers run Windows XP Professional Service Pack 3 (SP3). You have a terminal server named Server1. A user reports that when he connects to Server1 by using Remote Desktop Connection, he cannot print. Other users report that they can print when they connect to Server1 by using Remote Desktop Connection. You examine the user's account properties as shown in the exhibit. (Click the Exhibit button.)

You need to ensure that the user can print when he connects to Server1 by using Remote Desktop Connection. What should you do?

A. On Server1, modify the RDP-TCP settings. B. On Server1, modify the local security policy.

"Excellent Results in Minimum Time" - SelfTestExams.com

7


Microsoft 70-290 Exam C. On the user's computer, modify the Windows Firewall settings. D. On the user's computer, modify the Remote Desktop Connection settings. Answer: D Explanation:

Topic 3, Exam Set B

QUESTION NO: 8 You are the network administrator for your company. The network consists of a single Active Directory domain. All domain controllers run Windows Server 2003. All client computers run Windows XP Professional with default settings. Some users have portable computers, and the rest have desktop computers.You need to ensure that all users are authenticated by a domain controller when they log on. How should you modify the local security policy? A. Cache zero interactive logons. B. Grant the Log on locally user right to the Users group. C. Require authentication by a domain controller to unlock the client computer. D. Cache 50 interactive logons. Answer: A Explanation: A cache is a local store of data commonly used. To ensure that all users are authenticated by a domain controller when they log on, you need to set the cache to zero for interactive logons. System cache holds data that was processed previously. It is faster to obtain data from cache, rather than repeating the transaction. But this also reduces the need to authenticate users and for security purposes you need to purge the cache and set it to not cache log on information so as to compel all users to be authenticated each time they log on. GPO Setting -> Interactive logon: Number of previous logons to cache (in case domain controller is not available) By default 10 logons. This setting would prevent logon using cached credentials if the network was down or domain controllers otherwise unavailable. Certainly a non viable setting for mobile laptop users! If we use the zero setting, then every user MUST be authenticated by a domain controller. Reference: Deborah Littlejohn Shinder, Dr. Thomas W. Shinder, Laura E. Hunter and Will Schmied, Managing and Maintaining a Windows Server 2003 Environment Study Guide & DVD Training System, pp. 439-441

"Excellent Results in Minimum Time" - SelfTestExams.com

8


Microsoft 70-290 Exam

Topic 4, Exam Set A

QUESTION NO: 9 You are the network administrator for your company. Your network consists of a single Active Directory domain. The Default Domain Group Policy object (GPO) uses all default settings. The network contains five servers running Windows Server 2003 and 800 client computers. Half of the client computers are portable computers. The other half are desktop computers. Users of portable computers often work offline, but users of desktop computers do not. You install Windows XP Professional on all client computers with default settings. Then you configure user profiles and store them on the network.Some users of portable computers now report that they cannot log on to their computers. Other users of portable computers do not experience this problem.You need to ensure that all users of portable computers can log on successfully, whether they are working online or offline.What should you do? A. Configure all portable computers to cache user credentials locally. B. For all portable computers, configure the Loopback policy setting. C. Ensure that all users of portable computers log on to the network at least once before working offline. D. In all portable computers, rename Ntuser.dat to Ntuser.man. Answer: C Explanation: If a user is logging on to the domain for the first time, then a profile will be created on his workstation. So the workstation has to be connected to the network for this to work. If the workstation is not connected to the network, then the user login cannot be validated and a profile will not be created. After the user has logged on to the domain and logged out again, the workstation can be disconnected from the network. The user can now log in using cached credentials. By compelling the portable users to log on to the network at least once is a logical way of finding out which of the portable users can log on successfully. Reference: Dan Balter, MCSA/MCSE Managing and Maintaining a Microsoft Windows Server 2003 Environment Exam Cram 2 (Exam 70-290), Chapter 4

QUESTION NO: 10 DRAG DROP You are the network administrator for your company. The network consists of a single Active "Excellent Results in Minimum Time" - SelfTestExams.com

9


Microsoft 70-290 Exam Directory domain. All network servers run Windows Server 2003. Your company has several branch offices. One branch office contains four servers, whose roles and applications are shown in the work area, servers except DC1 are member servers. The same branch office contains 250 client computers. All of them run Windows XP Professional and Microsoft Office XP. The Microsoft Windows Update Web site issues two updates. Update1 is an MSI file that applies to Office XP. Update2 is a critical security update that applies to Windows XP Professional. You need to configure the appropriate servers to deploy these updates. What should you do?

Answer: Explanation:

"Excellent Results in Minimum Time" - SelfTestExams.com

10


IT Microsoft 70-290 demo