Microsoft 70-742 Free Practice Questions 2021
Master the content and be ready for exam day success quickly with this . We guarantee it!We make it a reality and give you real in our Microsoft 70-742 braindumps. Latest 100% VALID at below page. You can use our Microsoft 70-742 braindumps and pass your exam.
Microsoft 70-742 Free Dumps Questions Online, Read and Test Now.
NEW QUESTION 1
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contoso.com. A user named User1 is in an organizational unit (OU) named OU1.
You are troubleshooting a folder access issue for User1.
You need a list of groups to which User1 is either a direct member or an indirect member. Solution: You instruct User 1 to sign in and run whoami.exe/groups.
Does this meet the goal?
- A. Yes
- B. No
Answer: A
Explanation: References: https://www.thewindowsclub.com/whoami-windows
NEW QUESTION 2
Your network contains an Active Directory forest. The forest contains two domains named litwarenc.com and contoso.com. The contoso.com domain contains two domains controllers named LON-DC01 and LON-DC02. The domain controllers are located in a site named London that is associated to a subnet of 192.168.10.0/24
You discover that LON-DC02 is not a global catalog server. You need to configure LON-DC02 as a global catalog server. What should you do?
- A. From Active Directory Sites and Services, modify the properties of the 192.168.10.0/24 IP subnet.
- B. From Windows PowerShell, run the Set-NetNatGlobal cmdlet.
- C. From Active Directory Sites and Services, modify the NTDS Settings object of LON-DC02.
- D. From Windows PowerShell, run the Enable-ADOptionalFeature cmdlet.
Answer: C
NEW QUESTION 3
Your network contains an Active Directory forest named contoso.com. The forest contains a member server named Server1. Server1 has several line-of-business applications. Each application runs as a service that uses the Network Service account. You need to configure the line-of-business applications to run by using a virtual account. What should you do?
- A. From the Services console, modify the Log On properties of the services.
- B. From the Microsoft Application Compatibility Toolkit (ACT), create a shim.
- C. From Windows PowerShell, run the Install-ADScrviceAccount cmdlet.
- D. From Windows PowerShell, run the New-ADServiccAccount cmdlet.
Answer: A
NEW QUESTION 4
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other
questions in this series. Information and details provided in a question apply only to that question.
Your network contains an Active Directory domain named contoso.com. The domain functional level is Windows Server 2012 R2.
Your company hires a new security administrator to manage sensitive user data. You create a user account named Security1 for the security administrator.
You need to ensure that the password for Security1 has at least 12 characters and is modified every 10 days. The solution must apply to Security1 only.
Which tool should you use?
- A. Dsadd quota
- B. Dsmod
- C. Active Directory Administrative Center
- D. Dsacls
- E. Dsmain
- F. Active Directory Users and Computers
- G. Ntdsutil
- H. Group Policy Management Console
Answer: F
NEW QUESTION 5
A technician named Tech1 is assigned the task of joining the laptops to the domain. The computer accounts of each laptop must be in an organizational unit (OU) that is associated to the department of the user who will use that laptop. The laptop names must start with four characters indicating the department followed by a
four-digit number
Tech1 is a member of the Domain Users group only. Tech1 has the administrator logon credentials for all the laptops.
You need Tech1 to join the laptops to the domain. The solution must ensure that the laptops are named correctly, and that the computer accounts of the laptops are in the correct OUs.
Solution: You pre-create the computer account of each laptop in Active Directory users and computers. You instruct Tech1 to sign in to each laptop, and then to run djoin.exe.
Does this meet the goal?
- A. Yes
- B. No
Answer: B
NEW QUESTION 6
Your network contains an Active Directory forest named contoso.com. You need to add a new domain named fabrikam.com to the forest.
What command should you run? To answer, select the appropriate options in the answer area.
Answer:
Explanation: References:
https://technet.microsoft.com/en-us/library/hh974722(v=wps.630).aspx
NEW QUESTION 7
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series.
Information and details provided in a question apply only to that question.
Your network contains an Active Directory domain named contoso.com. The domain contains 5,000 user accounts.
You have a Group Policy object (GPO) named DomainPolicy that is linked to the domain and a GPO named DCPolicy that is linked to the Domain Controllers organizational unit (OU).
You need to ensure that the members of the Backup Operators group can back up domain controllers. What should you do?
- A. From the Computer Configuration node of DCPolicy, modify Security Settings.
- B. From the Computer Configuration node of DomainPolicy, modify Security Settings.
- C. From the Computer Configuration node of DomainPolicy, modify Administrative Templates.
- D. From the User Configuration node of DCPolicy, modify Security Settings.
- E. From the User Configuration node of DomainPolicy, modify Folder Redirection.
- F. From user Configuration node of DomainPolicy, modify Administrative Templates.
- G. From Preferences in the User Configuration node of DomainPolicy, modify Windows Settings.
- H. From Preferences in the Computer Configuration node of DomainPolicy, modify Windows Settings.
Answer: D
NEW QUESTION 8
Your network contains an Active Directory forest named contoso.com.
You have an Active Directory Federation Services (AD FS) farm. The farm contains a server named Server1 that runs Windows Server 2012 R2.
You add a server named Server2 to the farm. Server2 runs Windows Server 2021. You remove Server1 from the farm.
You need to ensure that you can use role separation to manage the farm. Which cmdlet should you run?
- A. Set-AdfsFarmInformation
- B. Update-AdfsRelyingPartyTrust
- C. Set-AdfsProperties
- D. Invoke-AdfsFarmBehaviorLevelRaise
Answer: D
Explanation: AD FS for Windows Server 2021 introduces the ability to have separation between server administrators and AD FS service administrators.
After upgrading our ADFS servers to Windows Server 2021, the last step is to raise the Farm Behavior Level using the Invoke-AdfsFarmBehaviorLevelRaise PowerShell cmdlet.
To upgrade the farm behavior level from Windows Server 2012 R2 to Windows Server 2021 use the Invoke-ADFSFarmBehaviorLevelRaise cmdlet.
References: https://technet.microsoft.com/en-us/library/mt605334(v=ws.11).aspx
NEW QUESTION 9
Your company has a main office and three branch offices. The network contains an Active Directory domain named contoso.com.
The main office contains three domain controllers. Each branch office contains one domain controller.
You discover the new settings in the Default Domain Policy are not applied in one of the branch offices, but all other Group Policy objects (GPOs) are applied.
You need to check the replication of the Default Domain Policy for the branch office. What should you do from a domain controller in the main office?
- A. From Group Policy Management, click Default Domain Policy under Contoso.com, and then open theScope tab.
- B. From a command prompt, run dcdiag.exe.
- C. From Group Policy Management, click Default Domain Policy under the Group Policy Objectscontainer, and then open the Status tab.
- D. From Windows PowerShell, run the Get-ADReplicationConnection cmdlet.
Answer: C
NEW QUESTION 10
You have a server named Server1 in a workgroup.
You need to configure a Group Policy setting on Server1 that will apply to only non-administrative users. What should you do?
- A. Run mnc.ex
- B. Add the Group Policy Object Editor snap-in and change the Group Policy object (GPO)
- C. Open Local Group Policy Edito
- D. From the File menu, modify the Options settings.
- E. Open Local Users and Group
- F. Create a new group Run New.GPO.
- G. Open Local Group Policy Edito
- H. From the View menu, modify the Customize settings.
Answer: A
NEW QUESTION 11
Your network contains an Active Directory domain named contoso.com. Some user accounts in the domain have the P.O. Box attribute set.
You plan to remove the value of the P.O. Box attribute for all of the users by using Ldifde. You have a user named User1 who is located in the Users container.
How should you configure the LDIF file to remove the value of the P.O. Box attribute for User1? To answer, select the appropriate options in the answer area.
Answer:
Explanation: 
NEW QUESTION 12
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2021.
You install IP Address Management (IPAM) on Server1.
You need to manually start discovery of servers that IPAM can manage in contoso.com.
Which three cmdlets should you run in sequence? To answer, move the appropriate cmdlets from the list of cmdlets to the answer area and arrange them in the correct order.
Answer:
Explanation: Step 1: Invoke-IpamServerProvisioning Choose a provisioning method
The Invoke-IpamGpoProvisioning cmdlet creates and links three group policies specified in the Domain parameter for provisioningrequired access settingson the server roles managed by the computer running the IP Address Management (IPAM) server.
Step 2: Add-IpamDiscoveryDomain Configure the scope of discovery
The Add-IpamDiscoveryDomain cmdlet adds an Active Directory discovery domain for an IP AddressManagement (IPAM) server. A discovery domain is a domain that IPAM searches to find infrastructure servers. An IPAM server uses the list of discovery domains to determine what type of servers to add. By default, IPAM discovers all domain controllers, Dynamic Host Configuration Protocol (DHCP) servers, and Domain Name System (DNS) servers.
Step 3: Start-ScheduledTask Start server discovery
To begin discovering servers on the network, click Start server discovery to launch the IPAM ServerDiscovery task or use the Start-ScheduledTask command.
NEW QUESTION 13
Your network contains an Active Directory domain named contoso.com. All the accounts of the users in the sales department are in an organizational unit (OU) named SalesOU.
An application named App1 is deployed to the user accounts in SalesOU by using a Group Policy object (GPO) named Sales GPO.
You need to set the registry value of HKEY_CURRENT_USERSoftwareApp1Collaboration to 0. Solution: You add a computer preference that has a Replace action.
Does this meet the goal?
- A. Yes
- B. NO
Answer: A
NEW QUESTION 14
Your network contains an Active Directory domain named contoso.com. The network contains several IP subnets. One of the subnets uses a network ID if 192.168.10.0/24.
You link a Group Policy object (GPO) named GPO1 to the domain.
You need to map a drive to a specific file share on the computers in the 192.168.10.0/24 network only. What should you do?
- A. From the User Configuration node of GPO1, configure the Folder Redirection setting
- B. Link a WMI filter to GPO1.
- C. From the Computer Configuration mode of GPO1, configure the Network Connections setting
- D. Link a WMI filter to GPO1.
- E. From the User Configuration node of GPO1, create a Group Policy preference that uses item-level targeting.
- F. From the Computer Configuration node of GPO1, create a Group Policy preference that uses item-level targeting.
Answer: C
NEW QUESTION 15
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2 that run Windows Server 2021. The computer accounts of Server1 and Server2 are in the Computers container.
A Group Policy object (GPO) named GPO1 is linked to the domain. GPO1 has multiple computer settings defined and has following configurations.
An administrator discovers that GPO1 is not applied to Server1. GPO1 is applied to Server2. Which configuration possibly prevents GPO1 from being applied to Server1?
- A. The permissions on the domain object of contoso.com
- B. The WMI filter settings
- C. The Enforced setting of GPO1
- D. The GpoStatus property
Answer: B
NEW QUESTION 16
Your network contains an Active Directory domain named contoso.com.
The user account for a user named User1 is in an organizational unit (OU) named OU1. You need to enable User1 to sign in as user1@adatum.com.
Solution: From Windows PowerShell, You run Set-ADuser User1 –UserPrincipalName User1@Adatum.com. Does this meet the goal?
- A. Yes
- B. No
Answer: A
NEW QUESTION 17
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2021.
You install IP Address Management (IPAM) on Server1. You select the automatic provisioning method, and then you specify a prefix of IPAM1.
You need to configure the environment for automatic IPAM provisioning.
Which cmdlet should you run? To answer, select the appropriate options in the answer area.
Answer:
Explanation: 
NEW QUESTION 18
Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. The functional level of the forest and the domains is Windows Server 2008 R2.
You have a global group named Group1 in the contoso.com domain. Group1 contains the user accounts in contoso.com. You need to ensure that you can add the user accounts in the fabrikam.com domain to Group1. What should you do?
- A. Run the Set-LocalGroup cmdlet.
- B. Assign the Domain Controllers group in fabrikam.com permissions to Group1
- C. Modify the scope of Group1 to Domain local.
- D. Change Group1 to a distribution group.
Answer: C
NEW QUESTION 19
Your network contains an Active Directory forest. The forest contains a domain named contoso.com. The domain contains three domain controllers.
A domain controller named lon-dc1 fails. You are unable to repair lon-dc1.
You need to prevent the other domain controllers from attempting to replicate to lon-dc1.
Solution: From Active Directory Users and Computers, you remove the computer account of lon-dc1. Does this meet the goal?
- A. Yes
- B. No
Answer: A
Explanation: To remove the failed server object from the domain controllers container, access Active Directory Users and Computers, expand the domain controllers container, and delete the computer object associated with the failed domain controller
References: https://www.petri.com/delete_failed_dcs_from_ad
Recommend!! Get the Full 70-742 dumps in VCE and PDF From Certleader, Welcome to Download: https://www.certleader.com/70-742-dumps.html (New 222 Q&As Version)