Microsoft 70-742 Dumps 2021

are updated and are verified by experts. Once you have completely prepared with our you will be ready for the real 70-742 exam without a problem. We have . PASSED First attempt! Here What I Did.

Also have 70-742 free dumps questions for you:

NEW QUESTION 1
Your company has multiple branch offices.
The network contains an Active Directory domain named contoso.com.
In one of the branch offices, a new technician is hired to add computers to the domain.
After successfully joining multiple computers to the domain, the technician fails to join any more computers to the domain.
You need to ensure that the technician can join an unlimited number of computers to the domain. What should you do?

  • A. Run the Delegation of Control Wizard on the Computers container.
  • B. Run the redircmp.exe command.
  • C. Modify the Security settings of the technician’s user account.
  • D. Add the technician to the Windows Authorization Access group.

Answer: A

NEW QUESTION 2
Your network contains an Active Directory domain named contoso.com. The domain contains a user named User1 and an organizational unit (OU) named OU1.
What should you do?

  • A. Modify the security settings of GPO1.
  • B. Modify the security settings of OU1.
  • C. Add User1 to the Group Policy Creator Owner group.
  • D. Modify the security settings of User.

Answer: B

NEW QUESTION 3
Your network contains an Active Directory domain named contoso.com. The domain contains a user named User1, a group named Group1, and an organizational unit (OU) named OU1.
You need to enable User1 to link Group Policies to OU1.
Solution: From Active Directory Administrative Center, you add User1 to Group1 and grant Group1 Full Control permission to OU1.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: A

NEW QUESTION 4
Your network contains an Active Directory domain named contoso.com. The domain contains five domain controllers.
You have a branch office that has a local support technician named Tech1. Tech1 installs Windows Server 2021 on a server named RODC1 in a workgroup.
You need Tech1 to deploy RODC1 as a read-only domain controller (RODC) in the contoso.com domain.
Which three actions should you perform? Each correct answer presents part of the solution.

  • A. Instruct Tech1 to run the Active Directory Domain Services Configuration Wizard.
  • B. Create an RODC computer account by using Active Administrative Center.
  • C. Instruct Tech1 to run dcpromo.exe on RODC1.
  • D. Instruct Tech1 to install the Active Directory Domain Services server role on RODC1.
  • E. Modify the permissions of the Domain Controllers organizational unit (OU).

Answer: ACD

NEW QUESTION 5
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contoso.com. A user named User1 is in an organizational unit (OU) named OU1.
You are troubleshooting a folder access issue for User1.
You need a list of groups to which User1 is either a direct member or ab indirect member. Solution: You run Get-ADGroup –Identity User1 –Property MemberOf.
Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation: The Get-ADGroup cmdlet does not include the MemberOf property. The command above is, therefore, not valid.
References:
https://docs.microsoft.com/en-us/powershell/module/addsadministration/get-adgroup?view=win10-ps

NEW QUESTION 6
You create a user account that will be used as a template for new user accounts.
Which setting will be copied when you copy the user account from Active Directory Users and Computers?

  • A. the Department attribute
  • B. the Description attribute
  • C. Permission
  • D. Remote Desktop Services Profile

Answer: A

Explanation: A user template in Active Directory can be used if you are creating users for a specific department, with exactly the same properties, and membership to the same user groups. A user template is nothing more than a disabled user account that has all these settings already in place.
References:
http://www.rebeladmin.com/2014/07/create-users-with-user-templates-in-ad/

NEW QUESTION 7
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have a server named Web1 that runs Windows Server 2021.
You need to list all the SSL certificates on Web1 that will expire during the next 60 days. Solution: You run the following command.
Get-ChildItem Cert:LocalMachineMy |? { $_.NotAfter –It (Get-Date).AddDays( 60 ) } Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 8
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series.
Information and details provided in a question apply only to that question.
Your network contains an Active Directory domain named contoso.com. The domain contains 5,000 user accounts.
You have a Group Policy object (GPO) named DomainPolicy that is linked to the domain and a GPO named DCPolicy that is linked to the Domain Controllers organizational unit (OU).
You need to use the application control policy settings to prevent several applications from running on the network.
What should you do?

  • A. From the Computer Configuration node of DCPolicy, modify Security Settings.
  • B. From the Computer Configuration node of DomainPolicy, modify Security Settings.
  • C. From the Computer Configuration node of DomainPolicy, modify Administrative Templates.
  • D. From the User Configuration node of DCPolicy, modify Security Settings.
  • E. From the User Configuration node of DomainPolicy, modify Folder Redirection.
  • F. From user Configuration node of DomainPolicy, modify Administrative Templates.
  • G. From Preferences in the User Configuration node of DomainPolicy, modify Windows Settings.
  • H. From Preferences in the Computer Configuration node of DomainPolicy, modify Windows Settings.

Answer: B

NEW QUESTION 9
Your company has an office in Montreal.
The network contains an Active Directory domain named contoso.com.
You have an organizational unit (OU) named Montreal that contains all of the users accounts for the users in the Montreal office. An office manager in the Montreal office knows each user personally.
You need to ensure that the office manager can provide the users with a new password if the users forget their password. What should you do?

  • A. From the Security settings of the Montreal OU, assign the office manager the Reset Password permission.
  • B. From the Security settings of each user account in the Montreal OU, assign the office manager the Change Password permission.
  • C. Create a Group Policy object (GPO) and link the GPO to the OU of the domai
  • D. Filter the GPO to the Montreal user
  • E. Assign the office manager the Apply Group Policy permission on the GP
  • F. Configure the Password Policy settings of the GPO.
  • G. Create a Group Policy object (GPO) and link the GPO to the Montreal O
  • H. Assign the office manager the Apply Group Policy permission on the GP
  • I. Configure the Password Policy settings of the GPO.

Answer: B

NEW QUESTION 10
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2021. The Computer account for Server1 is in organizational unit (OU) named OU1.
You create a Group Policy object (GPO) named GPO1 and link GPO1 to OU1.
You need to add a domain user named user1 to the local Administrators group on Server1.
Solution: From the Computer Configuration node of GPO1, you configure the Restricted Groups settings. Does this meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 11
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named Server1 and Server2 that run Windows Server 2021.
Server1 has Microsoft System Center 2021 Virtual Machine Manager (VMM) installed. Server2 has IP Address Management (IPAM) installed.
You create a domain user named User1.
You need to integrate IPAM and VMM. VMM must use the account of User1 to manage IPAM. The solution must use the principle of least privilege.
What should you do on each server? To answer, select the appropriate options in the answer area.
70-742 dumps exhibit

    Answer:

    Explanation: References:
    https://technet.microsoft.com/en-us/library/dn783349(v=ws.11).aspx

    NEW QUESTION 12
    Your network contains an Active Directory forest named contoso.com. They connect to the forest by using ldp.exe and receive the output as shown in the following exhibit.
    70-742 dumps exhibit
    70-742 dumps exhibit
    70-742 dumps exhibit
    Use drop-down menus to select the answer choice that completes each statement based on the information presented in the graphic.
    NOTE: Each correct selection is worth one point.
    70-742 dumps exhibit

      Answer:

      Explanation: 70-742 dumps exhibit

      NEW QUESTION 13
      Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series. Information and details provided in a question apply only to that question.
      Your network contains an Active Directory forest named contoso.com. The forest functional level is Windows Server 2012 R2.
      You need to ensure that a domain administrator can recover a deleted Active Directory object quickly. Which tool should you use?

      • A. Dsadd quota
      • B. Dsmod
      • C. Active Directory Administrative Center
      • D. Dsacls
      • E. Dsamain
      • F. Active Directory Users and Computers
      • G. Ntdsutil
      • H. Group Policy Management Console

      Answer: C

      NEW QUESTION 14
      Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1 that runs Windows Server 2021.
      Server1 has IP Address Management (IPAM) installed. IPAM is configured to use the Group Policy based provisioning method. The prefix for the IPAM Group Policy objects (GPOs) is IP.
      From Group Policy Management, you manually rename the IPAM GPOs to have a prefix of IPAM. You need to modify the GPO prefix used by IPAM.
      What should you do?

      • A. Click Configure server discovery in Server Manager.
      • B. Run the Set-IpamConfiguration cmdlet.
      • C. Run the Invoke-IpamGpoProvisioning cmdlet.
      • D. Click Provision the IPAM server in Server Manager.

      Answer: B

      Explanation: The Set-IpamConfiguration cmdlet modifies the configuration for the computer that runs the IPAM server. The -GpoPrefix<String> parameter specifies the unique Group Policy object (GPO) prefix name that IPAM
      uses to create the group policy objects. Use this parameter only when the value of the ProvisioningMethod parameter is set to Automatic.
      References: https://technet.microsoft.com/en-us/library/jj590816.aspx

      NEW QUESTION 15
      Your network contains an Active Directory domain named contoso.com.
      You need to create a central store for Group Policy administrative templates. What should you use?

      • A. Server Manager
      • B. File Explorer
      • C. Dcgpofix.exe
      • D. Group Policy Management Console (GPMC)

      Answer: B

      NEW QUESTION 16
      You have an enterprise certification authority (CA). You create a global security group named Group1.
      You need to provide members of Group1 with the ability to issue and manage certificates. The solution must prevent the Group1 members from managing certificates requested by members of the Domain Admins group.
      Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.

      • A. From the CA properties, modify the Policy Module settings.
      • B. From the Certificate Templates console, modify the Security settings of the Administrator certificate template.
      • C. From the CA properties, modify the security settings.
      • D. From the CA properties, modify the Enrollment Agents settings.
      • E. From the CA properties, modify the Certificate Managers Settings.
      • F. From the Certificate Templates console, modify the Security settings of the User certificate template.

      Answer: AE

      NEW QUESTION 17
      Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
      Start of repeated scenario.
      Your network contains an Active Directory domain named contoso.com. The domain contains a single site named Site1. All computers are in Site1.
      The Group Policy objects (GPOs) for the domain are configured as shown in the exhibit. (Click the Exhibit button.)
      70-742 dumps exhibit
      The relevant users and client computer in the domain are configured as shown in the following table.
      70-742 dumps exhibit
      End of repeated scenario.
      You are evaluating what will occur when you block inheritance on OU4.
      Which GPO or GPOs will apply to User1 when the user signs in to Computer1 after block inheritance is configured?

      • A. A1, A5, and A6
      • B. A3, A1, A5, and A7
      • C. A3 and A7 only
      • D. A7 only

      Answer: D

      NEW QUESTION 18
      Your network contains an Active Directory domain named contoso.com.
      All the accounts of the users in the sales department are in an organizational unit (OU) named SalesOU. An application named App1 is deployed to the user accounts in SalesOU by using a Group Policy object
      (GPO) named SalesGPO. You need to set the registry value of
      HKEY_CURRENT_USERSoftwareApp1CoIlaboration to 0.
      Solution: You add a user preference that has an Update action. Does this meet the goal?

      • A. Yes
      • B. No

      Answer: A

      NEW QUESTION 19
      Your network contains an Active Directory forest named contoso.com. The forest contains the root domain and two child domains named childl.contoso.com and child2.contoso.com. Child1 contains three domain controllers named DC1, DC2, and DC3. Child2 contains one domain controller named
      You have two accounts named Child1Admin1 and Child2Admin2 that you use to perform administrative tasks. Currently, the accounts can manage only the member servers in their respective domain.
      You plan to demote DC3 and to remove the Child2 domain.
      You need to ensure that Admin1 can demote DC3 and that Admtn2 can demote DC4. The solution must use the principle of least privilege.
      To which groups should you add Admin1 and Admin2? To answer, select the appropriate options in the answer area.
      NOTE: Each correct selection is worth one point.
      70-742 dumps exhibit

        Answer:

        Explanation: Admin1: ContosoDomain Admins Admin2: Child2Server Operators

        Recommend!! Get the Full 70-742 dumps in VCE and PDF From Surepassexam, Welcome to Download: https://www.surepassexam.com/70-742-exam-dumps.html (New 222 Q&As Version)