Summary of William Panek 70-410 Windows Server 2012 R2



Chapter 1


Summary of William Panek


Active Directory Certificate Services: - AD CSserver role allows building a PKI and providing public key cryptography, digital certificates, and digital signature capabilities for your organization.


Active Directory Domain Services:- The AD DS server role allows create a scalable, secure, and manageable infrastructure for user and resource management and to provide support for directory-enabled applications, such as Microsoft Exchange Server.


Active Directory Federation Services:
- (AD FS)provides Internet-based clients with a secure identity access solution that works on both Windows and non-Windows operating systems. AD FS gives users the ability to do a single sign-on (SSO) and access applications on other networks without needing a secondary password.

Active Directory Lightweight Directory Services:- LDAP) directory service that provides flexible support for directory-enabled applications, without the dependencies and domain-related restrictions of AD DS.


Active Directory Rights Management Services:-(
AD RMS) provides you with management and development tools that work with industry security technologies including encryption, certificates, and authentication to help organizations create reliable information protection solutions.

Application Server provides an integrated environment for deploying and running custom, server-based business applications.

Failover Clustering  feature provides a way to create, configure,
and manage failover clusters for up to 4,000 virtual machines or up to 64 physical nodes.

File and Storage Services  allows an administrator to set up and manage one or more file servers. These servers can provide a central location on your network where you can store files and then share those files with network users. If users require access to the same files and applications or if centralized backup and file management are important issues for your organization, administrators should set up network servers as a file server.

Group Policy  are a set of rules and management configuration options that you can control through the Group Policy settings. These policy settings can be placed on users’ computers throughout the organization.

Hyper-V  role allows administrators to create and manage a virtualized environment by taking advantage of the technology built into the Windows Server 2012 R2 operating system. When an administrator installs the Hyper-V role, all required virtualization components are installed.

Networking This feature allows administrators to design, deploy, and maintain a Windows
Server 2012 R2 network. The networking features include 802.1X authenticated
wired and wireless access, BranchCache, Data Center Bridging, low-latency workload technologies,
and many more.

Network Load Balancing The Network Load Balancing (NLB) feature dispenses traffic
across multiple servers by using the TCP/IP networking protocol. By combining two or
more computers that are running applications in Windows Server 2012 R2 into a single
virtual cluster, NLB provides reliability and performance for mission-critical servers.

Network Policy and Access Services Use the Network Policy and Access Services server
role to install and configure Network Access Protection (NAP), secure wired and wireless
access points, and RADIUS servers and proxies

Print and Document Services Print and Document Services allows an administrator
to centralize print server and network printer tasks. This role also allows you to receive
scanned documents from network scanners and route the documents to a shared network
resource, Windows SharePoint Services site, or email addresses. Print and Document

Remote Desktop Services  allows for faster desktop and application
deployments to any device, improving remote user effectiveness while helping to keep
critical data secure. Remote Desktop Services allows for both a virtual desktop infrastructure
(VDI) and session-based desktops, allowing users to connect from anywhere

Security and Protection Windows Server 2012 R2 has many new and improved security
features for your organization. These security features include Access Control, AppLocker,
BitLocker, Credential Locker, Kerberos, NTLM, passwords, security auditing, smart cards,
and Windows Biometric Framework (WBF).

Telemetry service allows the Windows Feedback Forwarder to send
feedback to Microsoft automatically by deploying a Group Policy setting to one or more
organizational units. Windows Feedback Forwarder is available on all editions of Windows
Server 2012 R2, including Server Core.

Volume Activation Windows Server 2012 R2 Volume Activation will help your organization
benefit from using this service to deploy and manage volume licenses for a medium to
large number of computers

Windows Server Update Services  (WSUS) allows administrators to deploy application and operating system updates. By deploying WSUS, administrators have the ability to manage updates that are released through Microsoft Update to computers in their network. This feature is integrated with the operating system as a server role on a Windows Server 2012 R2 system.


Server Migrate 
Windows Server 2012 R2 includes a set of migration tools that administrators can
use to help ease the process of migrating server roles, features, operating system settings,
and data. Administrators can migrate this data from an existing server that is running
Windows Server 2003, Windows Server 2003 R2, Windows Server 2008, Windows Server
2008 R2, or Windows Server 2012 R2 to a computer that is running Windows
Server 2012 R2.

Deciding Which Windows Server 2012 R2

Windows Server 2012 R2 Datacenter:
- unlimited virtual instances.
Windows Server 2012 R2 Standard:- 2 vm only
Windows Server 2012 R2 Essentials:- 25 users and 50 devices, no virtualization rights.
Windows Server 2012 R2 Foundation:- 15 users. no virtualization rights.

Upgrade to Windows server 2012 R2

Windows Server 2008 R2 with SP1 or Windows Server 2012 machine
to Windows Server 2012 R2, or you can do a clean install of Windows Server 2012 R2.

Windows Server 2008 R2 Standard with SP1 Windows Server 2012 R2 Standard or Windows
Server 2012 R2 Datacenter

Windows Web Server 2008 R2 with SP1 Windows Server 2012 R2 Standard

Windows Web Server 2008 R2 with SP1 Windows Server 2012 R2 Standard

Windows Server 2012 Datacenter Windows Server 2012 R2 Datacenter

Windows Server 2012 Standard Windows Server 2012 R2 Standard or Windows
Server 2012 R2 Datacenter

Hyper-V Server 2012 Hyper-V Server 2012 R2

Windows Storage Server 2012 Standard Windows Storage Server 2012 R2 Standard

Windows Storage Server 2012 Workgroup Windows Storage Server 2012 R2
Workgroup


Review Questions
B. Windows Server 2012 R2 Server Core is a more secure, slimmed-down version of Windows
2. You are the IT manager for a large organization. One of your co-workers installed a new
3. You are the administrator for your company, and you are looking at upgrading your WindowsServer 2008 web server to Windows Server 2012 R2. Which version of WindowsServer 2012 R2 does Microsoft recommend you use?
A. Windows Server 2012 R2 Datacenter
B. Windows Server 2012 R2 Standard
C. Windows Server 2012 R2 Essentials
D. Windows Server 2012 R2 Foundation
2008 R2 web server to Windows Server 2012 R2 Standard.
migrate to a highly virtualized, private cloud environment. Windows Server 2012 R2 Datacenterhas full Windows Server functionality with unlimited virtual instances.

1. You are the administrator for the ABC Company. You are looking to install Windows
Server 2012 R2, and you need to decide which version to install. You need to install a version
of Windows that is just for logon authentication and nothing else. You want the most
secure option and cost is not an issue. What should you install?
A. Windows Server 2012 R2 Datacenter with GUI
B. Windows Server 2012 R2 Datacenter Server Core
C. Windows Server 2012 R2 Standard with GUI
D. Windows Server 2012 R2 Web Server Core

Server. Web versions of Windows Server 2012 R2 are not available. You would use
Windows Server 2012 R2 Standard as a web server.

Windows Server 2012 R2 Datacenter Server Core machine, but now the IT team has
decided that it should be a Windows Server 2012 R2 Datacenter with GUI. What should
you do?
A. Reinstall Windows Server 2012 R2 Datacenter Server Core on the same machine.
B. Install a new machine with Windows Server 2012 R2 Datacenter Server Core.
C. Convert the current Windows Server 2012 R2 Datacenter Server Core to the Windows
Server 2012 R2 Datacenter with GUI version.
D. Dual-boot the machine with both Windows Server 2012 R2 Datacenter Server Core
and Windows Server 2012 R2 Datacenter with GUI.

C. One of the new advantages of Windows Server 2012 R2 is that you can convert Server
Core and GUI versions without the need to reinstall the operating system files completely.

 B. Microsoft recommends that you upgrade your Windows Server 2008 or Windows Server


4. You are looking at upgrading your Windows Server 2008 R2 Enterprise with SP2 machine
to Windows Server 2012 R2. Your organization is considering virtualizing its entire server
room, which has 25 servers. To which version of Windows Server 2012 R2 would you

upgrade?

A. Windows Server 2012 R2 Datacenter

B. Windows Server 2012 R2 Standard

C. Windows Server 2012 R2 Essentials

D. Windows Server 2012 R2 Foundation



 A. Windows Server 2012 R2 Datacenter was designed for organizations that are seeking to

5. You have been hired to help a small company set up its first Windows network. It has had
the same 13 users for the entire two years it has been open, and the company has no plans
to expand. What version of Windows Server 2012 R2 would you recommend?
A. Windows Server 2012 R2 Datacenter
B. Windows Server 2012 R2 Standard
C. Windows Server 2012 R2 Essentials
D. Windows Server 2012 R2 Foundation

 D. Windows Server 2012 R2 Foundation was designed for smaller companies that need a
Windows Server experience for as few as 15 users. Windows Server 2012 R2 Foundation is general-purpose server with basic server functionality and no virtualization rights.

6. You have been hired to help a small company set up its Windows network. It has 20 users, and it has no plans to expand. What version of Windows Server 2012 R2 would you
recommend?
A. Windows Server 2012 R2 Datacenter
B. Windows Server 2012 R2 Standard
C. Windows Server 2012 R2 Essentials
D. Windows Server 2012 R2 Foundation

C. Windows Server 2012 R2 Essentials is ideal for small businesses that have as many as
25 users and 50 devices. It has a simple interface, preconfigured connectivity to cloud-based services, and no virtualization rights.

7. Which of the following are benefits of using Windows Server 2012 R2 Server Core?
(Choose all that apply.)
A. Reduced management
B. Minimal maintenance
C. Smaller footprint
D. Tighter security

 A, B, C and D. All four answers are advantages of using Windows Server 2012 R2 Server
Core. Server Core is a smaller installation of Windows Server, and therefore all four
answers apply.

8. You are a server administrator, and you are trying to save hard drive space on your Windows
Server 2012 R2 Datacenter machine. Which feature can help you save hard disk
space?
A. HDSaver.exe
B. Features On Demand
C. ADDS
D. WinRM

B. Windows Server 2012 R2 Features On Demand allows an administrator not only to
disablen a role or feature but also to remove the role or feature’s files completely from the
hard disk.

9. You have a server named SRV1 that runs Windows Server 2012 R2. You want to remove
Windows Explorer, Windows Internet Explorer, and all components and files from this
machine. Which command should you run?
A. msiexec.exe /uninstall iexplore.exe /x
B. msiexec.exe /uninstall explorer.exe /x
C. Uninstall-WindowsFeature Server-Gui-Mgmt-Infra Remove
D. Uninstall-WindowsFeature Server-Gui-Shell Remove

D. New to Windows Server 2012 R2, an administrator has the ability to turn a Windows
GUI installation into a Server Core installation.

if you want to remove Windows Explorer, Internet Explorer, and all dependent components completely,run the following Windows PowerShell command:
Uninstall-WindowsFeature Server-Gui-Shell -Remove

10. What type of domain controller would you install into an area where physical security is a
concern?
A. Primary domain controller
B. Backup domain controller
C. Read-only domain controller
D. Locked-down domain controller

. C. Windows Server 2012 R2 has a type of domain controller called a read-only domain
controller (RODC). This gives an organization the ability to install a domain controller in
an area or location (onsite or offsite) where security is a concern

Chapter 2: Configure Network Services
Review Questions1. You are the network administrator for the ABC Company. Your network consists of twoDNS servers named DNS1 and DNS2. The users who are configured to use DNS2 complain because they are unable to connect to Internet websites. The following table shows the configuration of both servers: 
DNS1 DNS2 _msdcs.abc.comabc.com .(root)_msdcs.abc.comabc.com
The users connected to DNS2 need to be able to access the Internet. What needs to bedone?A. Build a new Active Directory Integrated zone on DNS2.B. Delete the .(root) zone from DNS2 and configure conditional forwarding on DNS2.C. Delete the current cache.dns file.D. Update your cache.dns file and root hints.

 B. Because of the .(root) zone, users will not be able to access the Internet. The DNS
forwarding option and DNS root hints will not be configurable. If you want your users to
access the Internet, you must remove the .(root) zone.

2. You are the network administrator for a large company that has one main site and onebranch office. Your company has a single Active Directory forest, ABC.com. You have a single domain controller (ServerA) in the main site that has the DNS role installed. ServerA is configured as a primary DNS zone. You have decided to place a domain controller (ServerB) in the remote site and implement the DNS role on that server. You want to configure DNS so that, if the WAN link fails, users in both sites can still update records and resolve anyDNS queries. How should you configure the DNS servers?

A. Configure ServerB as a secondary DNS server. Set replication to occur every five minutes.B. Configure ServerB as a stub zone.C. Configure ServerB as an Active Directory Integrated zone and convert ServerA to anActive Directory Integrated zone.D. Convert ServerA to an Active Directory Integrated zone and configure ServerB as asecondary zone.

 C. Active Directory Integrated zones store their records in Active Directory. Because this
company has only one Active Directory forest, it’s the same Active Directory that both DNSservers are using. This allows ServerA to see all of the records of ServerB and ServerB to seeall the records of ServerA.

3. You are the network administrator for a midsize computer company. You have a singleActive Directory forest, and your DNS servers are configured as Active Directory Integratedzones. When you look at the DNS records in Active Directory, you notice that thereare many records for computers that do not exist on your domain. You want to make surethat only domain computers register with your DNS servers. What should you do to resolvethis issue?

A. Set dynamic updates to None.B. Set dynamic updates to Nonsecure And Secure.C. Set dynamic updates to Domain Users Only.
D. Set dynamic updates to Secure Only

 D. The Secure Only option is for DNS servers that have an Active Directory Integratedzone. When a computer tries to register with DNS dynamically, the DNS server checksActive Directory to verify that the computer has an Active Directory account. If the computerthat is trying to register has an account, DNS adds the host record. If the computertrying to register does not have an account, the record gets tossed away, and the database is not updated.

4. Your company consists of a single Active Directory forest. You have a Windows Server2012 R2 domain controller that also has the DNS role installed. You also have a UnixbasedDNS server at the same location. You need to configure your Windows DNS server toallow zone transfers to the Unix-based DNS server. What should you do?

A. Enable BIND secondaries.B. Configure the Unix machine as a stub zone.C. Convert the DNS server to Active Directory Integrated.D. Configure the Microsoft DNS server to forward all requests to the Unix DNS server.

A. If you need to complete a zone transfer from Microsoft DNS to a BIND (Unix) DNSserver, you need to enable BIND secondaries on the Microsoft DNS server.

5. You are the network administrator for Stellacon Corporation. Stellacon has two trees inits Active Directory forest, stellacon.com and abc.com. Company policy does not allowDNS zone transfers between the two trees. You need to make sure that when anyone inabc.com tries to access the stellacon.com domain, all names are resolved from the stellacon.com DNS server. What should you do?

A. Create a new secondary zone in abc.com for stellacon.com.B. Configure conditional forwarding on the abc.com DNS server for stellacon.com.C. Create a new secondary zone in stellacon.com for abc.com.D. Configure conditional forwarding on the stellacon.com DNS server for abc.com.

5. B. Conditional forwarding allows you to send a DNS query to different DNS servers basedon the request. Conditional forwarding lets a DNS server on a network forward DNS queries
according to the DNS domain name in the query.

6. You are the network administrator for your organization. A new company policy states that all inbound DNS queries need to be recorded. What can you do to verify that the IT department is compliant with this new policy?

A. Enable Server Auditing – Object Access.B. Enable DNS debug logging.C. Enable server database query logging.D. Enable DNS Auditing – Object Access.

6. B. On a Windows Server 2012 R2 DNS machine, debug logging is disabled by default.When it is enabled, you have the ability to log DNS server activity, including inbound andoutbound queries, packet type, packet content, and transport protocols

7. You are the network administrator for a small company with two DNS servers: DNS1and DNS2. Both DNS servers reside on domain controllers. DNS1 is set up as a standardprimary zone, and DNS2 is set up as a secondary zone. A new security policy was writtenstating that all DNS zone transfers must be encrypted. How can you implement the newsecurity policy?

A. Enable the Secure Only setting on DNS1.B. Enable the Secure Only setting on DNS2.C. Configure Secure Only on the Zone Transfers tab for both servers.D. Delete the secondary zone on DNS2. Convert both DNS servers to use Active DirectoryIntegrated zones.

7. D. Active Directory Integrated zones give you many benefits over using primary and secondary zones including less network traffic, secure dynamic updates, encryption, and reliability in the event of a DNS server going down. The Secure Only option is for dynamic
updates to a DNS database.

8. You are responsible for DNS in your organization. You look at the DNS database and see a large number of older records on the server. These records are no longer valid. What should you do?

A. In the zone properties, enable Zone Aging and Scavenging.B. In the server properties, enable Zone Aging and Scavenging.C. Manually delete all of the old records.D. Set Dynamic Updates to None.

8. A. Windows Server 2012 R2 DNS supports two features called DNS Aging and DNS Scavenging. These features are used to clean up and remove stale resource records. DNS zone or DNS server aging and scavenging flags old resource records that have not been updated in a certain amount of time (determined by the scavenging interval). These stale records will be scavenged at the next cleanup interval.

9. Your IT team has been informed by the compliance team that it needs copies of the DNSActive Directory Integrated zones for security reasons. You need to give the Compliancedepartment a copy of the DNS zone. How should you accomplish this goal?A. Run dnscmd /zonecopy.B. Run dnscmd /zoneinfo.C. Run dnscmd /zoneexport.D. Run dnscmd /zonefile.

9. C. The dnscmd /zoneexport command creates a file using the zone resource records. This file can then be given to the Compliance department as a copy.

10. You are the network administrator for a Windows Server 2012 R2 network. You havemultiple remote locations connected to your main office by slow satellite links. You wantto install DNS into these offices so that clients can locate authoritative DNS servers in themain location. What type of DNS servers should be installed in the remote locations?

A. Primary DNS zonesB. Secondary DNS zonesC. Active Directory Integrated zonesD. Stub zones

SUBE ZONE:- includes non editable copy of primary zone and all  important information such as name server (NS),
start of authority (SOA), glue host (A)
10. D. Stub zones are useful for slow WAN connections. These zones store only three types of resource records: NS records, glue host (A) records, and SOA records. These three records are used to locate authoritative DNS servers.

Comments

  1. A Great and excellent post shared by admin.
    I like to see more quality content on your website. you explained everything nicely
    If you want to pass Microsoft exams in first attempt
    You can get Microsoft MCSA Cloud Platform Study Material .

    ReplyDelete
  2. A great post by admin want to see more from you like this in future.

    EC-Council Certified Security Specialist (ECSS) allows students to enhance their skills in three different areas namely information security, network security, and computer forensics.
    If you want to pass EC-Council exams in first attempt
    You can get EC-Council ECSS Certification Exams.

    ReplyDelete
  3. A Great and excellent post shared by admin.
    I like to see more quality content on your website. you explained everything nicely.

    The SAP HANA Exam Questions are indicated a revolutionary pathway to the IT trade. It is currently dignified as the stage which hands to a brighter future. But still you are required to put effort in HANA for SAP Exam, since there is no escape of reading. But VCEExamsTest have made your work easier, and now your preparation for SAP Exam is not tough anymore, with our experts designed SAP Exam Material. VCEExamsTest is a trustworthy and dependable platform who offers SAP HANA Preparation Materials with 100% Success Guarantee. You just need to practice the questions for a week at least to score well in the SAP HANA for SAP Exam.

    If you want to pass SAP exams in first attempt
    You can get SAP HANA Certification Exam.

    ReplyDelete
  4. Exams Trainer Provide the Best Solution For Huawei exam questions Exams.It PRovide a practice software to make our exam preparation more strong.

    ReplyDelete
  5. Installing and Configuring Windows Server 2012 Exam is hard like a nutshell but 70-410 Dumps made my attempt easy with very informative questions and answers series. I memorized all the questions and answers and got ready for the exam. I am thankful to Realexamdumps.com for offering online practice test which boosted my performance and gave me confidence. All the questions were very easy in the final after preparing from 70-410 Dumps PDF.

    ReplyDelete
  6. If you are planning to get Oracle CPQ Cloud Service 2019 Implementation Essentials Certified. You are at the right place because DumpsSheet provides you the high
    quality 1z0-1033 Exam Preparation Material. Get Latest Up-to-date 1z0-1033 Dumps
    Questions with guaranteed success. In addition, DumpsSheet also provides 1z0-1033 Practice test
    software. In DumpsSheet 1z0-1033 Practice Exam software, you can prepare the Oracle CPQ Cloud Service 2019 Implementation Essentials exam with a real scenario. I would
    suggest you get 100% real  1z0-1033 Exam Dumps and 1z0-1033 practice test software. The holiday
    deals are awesome and might end up saving a lot of money.

    ReplyDelete
  7. But one thing should be kept in mind, like other blood thinners, Eliquis Generic can also boost the risk of the flow of blood.

    ReplyDelete

Post a Comment

Popular posts from this blog

MCSA and MCSE

MASTERING AZURE WITH CLOUD SHELL