Extra: PassLeader have been updated the 70-649 brain dumps with the newest exam questions. We provide the latest 70-649 PDF and VCE files with Free New Version VCE Player for free download to ensure your exam pass. Welcome to visit our website — passleader.com and get the 100 percent pass ensure 70-649 study materials!
NEW QUESTION 334
Drag and Drop Question
Your company plans to open a new branch office. The new office will have a low-speed connection to the Internet. You plan to deploy a read-only domain controller (RODC) in the branch office. You need to create an offline copy of the Active Directory database that can be used to install Active Directory on the new RODC. Which commands should you run from Ntdsutil? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
NEW QUESTION 335
Hotspot Question
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1. You install Active Directory Lightweight Directory Services (AD LDS) on a member server named Server2. On Server2, you create a directory partition named fabrikam.com. You need to configure the MS-AdamSyncConfig.xml file to synchronize data from contoso.com to fabrikam.com. What should you do? (To answer, select the appropriate options in the answer area.)
NEW QUESTION 336
Your network contains an Active directory domain named fabrikam.com. The domain contains a Web server named Web1 that runs Windows Server 2008 R2. You install the SMTP Server feature on Web1. You need to create an SMTP virtual server on Web1. Which tool should you use?
A. Internet Information Services (IIS) Manager
B. System Configuration
C. Services
D. Internet Information Services (IIS) 6.0 Manager
Answer: D
Explanation:
The utility in Windows Server 2008 to configure SMTP services is the Internet Information Services (IIS) 6.0 Manager Console, which can be installed into IIS 7 by adding the IIS 6 Management Console module of the IIS 6 Compatability Role Service to the Web Server Role in Server Manager (note: this is a separate module from the IIS 6 Metabase module, which is also required for SMTP). After adding the IIS 6 Compatability Role Service in addition to adding the SMTP Feature itself, the Internet Information Services (IIS) 6.0 Manager Console should be visible in the Administrative Tools folder and should portray your local SMTP server.
http://social.technet.microsoft.com/Forums/en-US/windowsserver2008r2general/thread/a14a14c0-2406-4cfcbb6d-0f6284401513/
NEW QUESTION 337
Your network contains a server named Server1 that has the Remote Desktop Session Host (RD Session Host) role service installed. You enable Plug and Play device redirection for Server1 by using a Group Policy. You verify that the Group Policy is applied to Server1. From a client computer, you configure Remote Desktop Connection as shown in the exhibit. (Click the Exhibit button.)
You discover that when you establish a Remote Desktop session to Server1, Plug and Play devices are not redirected. You need to ensure that Plug and Play devices are redirected during Remote Desktop sessions to Server1. What should you do? (Each correct answer presents part of the solution. Choose two.)
A. On Server1, modify the Sessions settings of the RDP-Tcp Properties.
B. On Server1, install the Desktop Experience feature.
C. From the client computer, modify the Experience settings of Remote Desktop Connection.
D. On Server1, install the Quality Windows Audio Video Experience feature.
E. On Server1, modify the Client Settings of the RDP-Tcp Properties.
Answer: BE
Explanation:
http://technet.microsoft.com/en-us/library/cc725887(v=ws.10).aspx
NEW QUESTION 338
Your network contains two servers that have the Remote Desktop Web Access (RD Web Access) role service installed. Each server hosts three different RemoteApp programs. You deploy a new server that has the Remote Desktop Connection Broker (RD Connection Broker) role service installed. Users report that when they connect to one of the RD Web Access servers, they see only three applications. You need to ensure that the users see all six RemoteApp programs when they connect to an RD Web Access server. Which two actions should you perform? (Each correct answer present part of the solution. Choose two.)
A. FromRemoteApp Manager, configure the RD Gateway Settings
B. FromRemoteApp Manager, configure the Digital Signature Settings.
C. From Remote Desktop Connection Manager, add RemoteApp sources.
D. From Remote Desktop Connection Manager, add RD Web Access servers.
Answer: CD
NEW QUESTION 339
You manage a member server that runs Windows Server 2008 R2. The server runs the Remote Desktop Gateway (RD Gateway) role service. You need to gather information about active users that are currently connected through the RD Gateway server. The information must include the Connection ID, User ID, User Name, Idle Time, and Client IP Address. What should you do?
A. View the events in the Monitoring folder from the RD Gateway Manager console.
B. View the Event Viewer Security log.
C. View the Event Viewer Application log.
D. View the Event Viewer Terminal Services-Gateway log.
Answer: D
Explanation:
By using TS Gateway Manager, you can specify the types of events that you want to monitor, such as unsuccessful or successful connection attempts to internal network computers through a TS Gateway server. When these events occur, you can monitor the corresponding events by using Windows Event Viewer. TS Gateway server events are stored in Event Viewer under Application and Services Logs\Microsoft\Windows\Terminal Services-Gateway\.
http://technet.microsoft.com/en-us/library/cc730618(WS.10).aspx
NEW QUESTION 340
Your network contains a server named Server1 that has the Remote Desktop Licensing (RD Licensing) role service installed. You need to ensure that you can restore the RD Licensing environment if Server1 fails. What should you include in the backup? (Each correct answer presents part of the solution. Choose two.)
A. the folder that contains the configuration files of the license server
B. the folder that contains the database of the license server
C. the local certificate store
D. the system state
Answer: BD
Explanation:
Back Up a Remote Desktop License Server. You should back up your Remote Desktop license server regularly by using the Windows Server Backup tool or the backup software deployed in your environment. This helps protect your licensing data from accidental loss if your system experiences hardware or storage failure. When backing up a license server, back up both the System State data and the folder in which the RD. Licensing database is installed. This ensures that data in both the registry and the RD. Licensing database is backed up.
http://technet.microsoft.com/en-us/library/cc753582.aspx
http://www.passleader.com/70-649.html
NEW QUESTION 341
Your network contains a server named Server1. An administrator named Admin1 installs the Windows Server Update Services (WSUS) server role on Server1. You open the Windows Server Update Services console and view the Products and Classifications options as shown in the exhibit. {Click the Exhibit button.)
You need to ensure that you can select updates for Windows Server 2008 R2 Service Pack 1 (SP1) from the Products and Classifications options. What should you do?
A. Add your user account to the WSUS Administrators group.
B. Synchronize Server1 to the Microsoft Update servers.
C. Configure a server that runs Windows Server 2008 R2 SP1 to download updates from Server1.
D. Restart the Update Services service.
Answer: B
Explanation:
http://www.networkinghints.com/administrator/windows-server/can%C2%B4t-find-windows-7-servicepack-1-in-wsus/
http://windowsteamblog.com/windows/b/bloggingwindows/archive/2011/03/08/windows-7-sp1-available-viawsus.aspx
NEW QUESTION 342
Your network contains a server named Server1 that runs a Server Core installation of Windows Server 2008 R2 Service Pack 1 (SP1) Standard. You have a performance counter log on Server1. You need to convert the performance counter log to a comma separated value (CSV) file. Which tool should you use?
A. Perfmon
B. Typeper
C. Relog
D. Logman
Answer: C
NEW QUESTION 343
Your network contains a Windows Server Update Services (WSUS) server. You need to ensure that the WSUS server automatically downloads updates for a specific Microsoft product. What should you do first?
A. From the Automatic Approvals options, modify the Advanced settings.
B. From the Products and Classifications options, modify the Classifications settings.
C. From the Products and Classifications options, modify the Products settings.
D. From the Automatic Approvals options, modify the Update Rules list.
Answer: B
NEW QUESTION 344
Hotspot Question
Your network contains a server named Server1 that runs Windows Server 2008 R2. You configure IPSec on Server1. You need to identify the total number of authentication failures and negotiation failures that occurred on Server1. Which node should you use to achieve this task? To answer, select the appropriate node in the answer area.
NEW QUESTION 345
Your network contains a server that runs Windows Server 2008 R2. The server has the Network Policy and Access Services server role installed. You need to allow only members of a global group named Group1 VPN access to the network. What should you do?
A. Add Group1 to the RAS and IAS Servers group.
B. Add Group1 to the Network Configuration Operators group.
C. Create a new network policy and define a group-based condition for Group1. Set the access permission of the policy to Access granted. Set the processing order of the policy to 1.
D. Create a new network policy and define a group-based condition for Group1. Set the access permission of the policy to Access granted. Set the processing order of the policy to 3.
Answer: C
NEW QUESTION 346
Your network contains an Active Directory forest named contoso.com. The forest contains a server named Server1 that is configured as an enterprise certification authority (CA). The forest contains a server named Server2 that has the Network Policy Server (NPS) role service installed. You deploy Network Access Protection (NAP). You discover that Server1 fails to issue health certificates. You need to ensure that health certificates can be issued. What should you do?
A. Install an additional server, configure the new server as a standalone CA, and then configure the Health Registration Authority (HRA) to use the CA.
B. From the Network Policy Server console, create a new health policy.
C. From the Network Policy Server console, modify the Windows System Health Validators settings.
D. Install the Host Credential Authorization Protocol (HCAP) role service on Server1.
Answer: A
NEW QUESTION 347
Your network contains an Active Directory domain. The domain contains four client computers. The client computers are configured as shown in the following table.
Your company plans to implement DirectAccess. You need to identify which client computers can use DirectAccess. Which client computers should you identify? (Each correct answer presents part of the solution. Choose two.)
A. Computer2
B. Computer3
C. Computer4
D. Computer1
Answer: BC
Explanation:
DirectAccess requires the following:
-One or more DirectAccess servers running Windows Server 2008 R2 (with or without UAG) with two network adapters: one that is connected directly to the Internet and one that is connected to the intranet. DirectAccess servers must be a member of an AD DS domain. -On the DirectAccess server, at least two consecutive, public IPv4 addresses assigned to the network adapter that is connected to the Internet. -DirectAccess client computers that are running Windows 7 Enterprise or Windows 7 Ultimate. DirectAccess clients must be members of an AD DS domain. -At least one domain controller and DNS server that is running Windows Server 2008 SP2 or Windows Server 2008 R2. When UAG is used, DirectAccess can be deployed with DNS servers and domain controllers that are running Windows Server 2003 when NAT64 functionality is enabled.
-A public key infrastructure (PKI) to issue computer certificates, and optionally, smart card certificates for smart card authentication and health certificates for NAP.
For more information, see Public Key Infrastructure on the Microsoft Web site. -Without UAG, an optional NAT64 device to provide access to IPv4-only resources for DirectAccess clients. DirectAccess with UAG provides a built-in NAT64.
http://technet.microsoft.com/en-us/library/dd637797(v=ws.10).aspx
NEW QUESTION 348
Your network contains a domain controller named Server1 and a server named Server2. Server2 has the Windows Deployment Services (WDS) server role installed. You open the Windows Deployment Services console and see several pending devices. You right-click one of the devices and click Name and Approve. You enter the computer name and receive the following error message:
"The parameter is incorrect."
You need to ensure that you can create new computer accounts and update existing computer accounts. What should you do?
A. Assign the Server1 computer account permissions to the Computers container.
B. Assign the Server2 computer account permissions to the Computers container.
C. From Windows Deployment Services, change the Computer Account Location settings.
D. From Windows Deployment Services, change the PXE Response Policy to Respond only to known client computers.
Answer: B
Explanation:
Approve a pending computer:
Read and write permissions to the C:RemoteInstall\MGMT folder (which contains Binlsvcdb.mdb). The actual account of an approved pending computer is created by using the server’s authentication token, not the token of the administrator who is performing the approval. Therefore, in AD DS, you must grant rights to the Windows Deployment Services server’s account (WDSSERVER$) to create computer account objects for the containers and OUs where the approved pending computers will be created. To grant permissions to WDS to approve a pending computer
1. Open Active Directory Users and Computers.
2. Right-click the OU where you are creating prestaged computer accounts, and then select Delegate Control.
3. On the first screen of the wizard, click Next.
4. Change the object type to include computers.
5. Add the computer object of the Windows Deployment Services server, and then click Next.
6. Select Create a Custom task to delegate.
7. Select Only the following objects in the folder. Then select the Computer Objects check box, select Create selected objects in this folder, and click Next.
8. In the Permissions box, select the Write all Properties check box, and click Finish.
Source: http://technet.microsoft.com/en-us/library/cc754005(WS.10).aspx