显示标签为“70-293”的博文。显示所有博文
显示标签为“70-293”的博文。显示所有博文

2013年12月15日星期日

最新のMicrosoft 70-293試験の問題集

Microsoftの70-293試験に受かることを通じて現在の激しい競争があるIT業種で昇進したくて、IT領域で専門的な技能を強化したいのなら、豊富なプロ知識と長年の努力が必要です。Microsoftの70-293試験に受かるのはあなたが自分をIT業種にアピールする方法の一つです。でも、試験に合格するために大量な時間とエネルギーを費やすことはなく、IT-Passports.comのMicrosoftの70-293試験トレーニング資料を選んだらいいです。IT-Passports.comのトレーニング資料はIT認証試験に受かるために特別に研究されたものですから、この資料を手に入れたら難しいMicrosoftの70-293認定試験に気楽に合格することができるようになります。

IT-Passports.comの70-293参考書は間違いなくあなたが一番信頼できる70-293試験に関連する資料です。まだそれを信じていないなら、すぐに自分で体験してください。そうすると、きっと私の言葉を信じるようになります。IT-Passports.comのサイトをクリックして問題集のデモをダウンロードすることができますから、ご利用ください。PDF版でもソフト版でも提供されていますから、先ず体験して下さい。問題集の品質を自分自身で確かめましょう。

Microsoftの70-293のオンラインサービスのスタディガイドを買いたかったら、IT-Passports.comを買うのを薦めています。IT-Passports.comは同じ作用がある多くのサイトでリーダーとしているサイトで、最も良い品質と最新のトレーニング資料を提供しています。弊社が提供したすべての勉強資料と他のトレーニング資料はコスト効率の良い製品で、サイトが一年間の無料更新サービスを提供します。ですから、弊社のトレーニング製品はあなたが試験に合格することを助けにならなかったら、全額で返金することを保証します。

Microsoftの70-293試験に受かるために一所懸命頑張って勉強していれば、あなたは間違っているのです。もちろん頑張って勉強するのは試験に合格することができますが、望ましい効果を達成できないかもしれません。現在はインターネットの時代で、試験に合格する ショートカットがたくさんあります。IT-Passports.comのMicrosoftの70-293試験トレーニング資料はとても良いトレーニング資料で、あなたが試験に合格することを保証します。この資料は値段が手頃だけでなく、あなたの時間を大量に節約できます。そうしたら、半分の労力で二倍の効果を得ることができます。

IT-Passports.comというサイトには全的な資源とMicrosoftの70-293の試験問題があります。それに、Microsoftの70-293の試験の実践経験やテストダンプにも含まれています。IT-Passports.comは受験生たちを助けて試験の準備をして、試験に合格するサイトですから、受験生のトレーニングにいろいろな便利を差し上げます。あなたは一部の試用問題と解答を無料にダウンロードすることができます。IT-Passports.comのMicrosoftの70-293の試験中に絶対な方法で転送することでなく、IT-Passports.comは真実かつ全面的な試験問題と解答を提供していますから、当社がオンラインするユニークなのMicrosoftの70-293の試験トレーニング資料を利用したら、あなたが気楽に試験に合格することができるようになります。IT-Passports.comは合格率が100パーセントということを保証します。

試験番号:70-293問題集
試験科目:Microsoft 「Planning and Maintaining a Microsoft Windows Server 2003 Network Infrastructure」
問題と解答:全290問

購入前にお試し,私たちの試験の質問と回答のいずれかの無料サンプルをダウンロード:http://www.it-passports.com/70-293.html

NO.1 You are a network administrator for your company. The network consists of a single Active Directory
domain named treyresearch.com. All servers run Windows Server 2003. All client computers run
Windows XP Professional.
The company has two DNS servers named Server1 and Server2. Server1 hosts the primary DNS zone for
treyresearch.com. Server2 provides name resolution for the external Internet name of the company on the
Internet and is configured with root hints.
Client computers are configured to use Server1 as their only DNS server.
Users report that they cannot access Web sites on the Internet.
You need to ensure that the client computers can access Internet-based sites. You must accomplish this
task by using Server1's DNS console with the least amount of administrative effort. Your operation must
not affect other settings on Server1.
Answer.CP1 AND CP2
DNS console -> Server -> Properties -> Forwarders, 'All other DNS domains' to IP address for Server2.

NO.2 You are the network administrator for your company. The network consists of a single Active Directory
domain. The network contains two Windows Server 2003 domain controllers, two Windows 2000 Server
domain controllers, and two Windows NT Server 4.0 domain controllers.
All file servers for the finance department are located in an organizational unit (OU) named Finance
Servers. All file servers for the payroll department are located in an OU named Payroll Servers. The
Payroll Servers OU is a child OU of the Finance Servers OU.
The company's written security policy for the finance department states that departmental servers must
have security settings that are enhanced from the default settings. The written security policy for the
payroll department states that departmental servers must have enhanced security settings from the
default settings, and auditing must be enabled for file or folder deletion.
You need to plan the security policy settings for the finance and payroll departments.
What should you do?
A.Create a Group Policy object (GPO) to apply the Compatws.inf security template to computer objects,
and link it to the Finance Servers OU.
Create a second GPO to enable the Audit object access audit policy on computer objects, and link it to the
Payroll Servers OU.
B.Create a Group Policy object (GPO) to apply the Securews.inf security template to computer objects,
and link it to the Finance Servers OU.
Create a second GPO to enable the Audit object access audit policy on computer objects, and link it to the
Payroll Servers OU.
C.Create a Group Policy object (GPO) to apply the Compatws.inf security template to computer objects,
and link it to the Finance Servers OU.
Create a second GPO to apply the Hisecws.inf security template to computer objects, and link it to the
Payroll Servers OU.
D.Create a Group Policy object (GPO) to apply the Securews.inf security template to computer objects,
and link it to the Finance Servers and to the Payroll Servers OUs.
Create a second GPO to enable the Audit object access audit policy on computer objects, and link it to the
Payroll Servers OU.
Answer:B

Microsoft参考書   70-293参考書   70-293認定試験   70-293

NO.3 You are the network administrator for your company. All servers run Windows Server 2003. You
configure a baseline security template named Baseline.inf. Several operations groups are responsible for
creating templates containing settings that satisfy operational requirements. You receive the templates
shown in the following table.
The operations groups agree that in the case of conflicting settings, the priority order listed in the following
table establishes the resultant setting.
You need to create one or more Group Policy objects (GPOs) to implement the security settings. You want
to minimize the amount of administrative effort required when changes are requested by the various
operations groups. What should you do?
A. Create a GPO and import the following templates in the following order. Baseline.inf, Sec.inf. Create a
GPO for each server role and import only the specific template for that role into each respective GPO.
B. Create a GPO and import the following templates in the following order. Sec.inf, Baseline.inf. Create a
GPO for each server role and import only the specific template for that role into each respective GPO.
C. Create a GPO for each server role and import the following templates in the following order.
Baseline.inf, specific server role template, Sec.inf.
D.Create a GPO and import the following templates in the following order. Sec.inf, Db.inf, File.inf,
Baseline.inf.
Answer: A

Microsoft   70-293認定資格   70-293認定試験   70-293問題集   70-293

NO.4 You are a network administrator for your company. The network contains a Windows Server 2003
computer named Server1 and ten Windows XP Professional client computers.
You configure Server1 with a LAN connection named Local Area Connection and an Internet connection
named Internet Connection. All of the client computers are connected to the LAN.
The users report that they cannot connect to the Internet. You discover that the IP configuration on the
client computers is correct.
You need to provide the ten client computers with Internet access. You must accomplish these tasks by
using the Server1's Network Connections console with the least amount of administrative effort. Your
operations must not affect other settings on Server1.
Answer.CP1 AND CP2
We need to enable Internet Connection Sharing (ICS) on the adapter named Internet Connection.
Step #1.
Open the Network Connections console by clicking Start > Control Panel > Network Connections.
Step #2.
Right click on Internet Connection and select Properties.
Step #3.
Click the Advanced tab.
Step #4.
Tick the checkbox to enable Internet Connection Sharing then click OK.
Step #5.
Click Yes.

NO.5 You are a network administrator for your company. The network consists of a single Active Directory
forest that contains three domains. The functional level of the forest and of all three domains is Window
Server 2003. The company has a main office and 30 branch offices. Each branch office is connected to
the main office by a 56-Kbps WAN connection.
You configure the main office and each branch office as a separate Active Directory site. You deploy a
Windows Server 2003 domain controller at the main office and at each branch office. Each domain
controller is configured as a DNS server.
You can log on to the network from client computers in the branch offices at any time. However, users in
the branch offices report that they cannot log on to the network during peak hours.
You need to allow users to log on to the network from branch office computers. You do not want to affect
the performance of the branch office domain controllers. You need to minimize Active Directory replication
traffic across the WAN connections.
What should you do?
A.Use Active Directory Sites and Services to enable universal group membership caching for each branch
office site.
B.Use the DNS console to configure the branch office DNS servers to forward requests to a DNS server in
the main office.
C.Use Active Directory Sites and Services to configure each branch office domain controller as a global
catalog server.
D.Use the DNS console to configure the branch office DNS servers to use an Active Directory-integrated
zone.
Answer:A

Microsoft参考書   70-293   70-293   70-293

NO.6 You are the systems engineer for Contoso, Ltd. The internal network consists of a Windows NT 4.0
domain. The company maintains a separate network that contains publicly accessible Web and mail
servers. These Web and mail servers are members of a DNS domain named contoso.com. The
contoso.com zone is hosted by a UNIX-based DNS server running BIND 4.8.1.
Contoso, Ltd., is planning to migrate to a Windows Server 2003 Active Directory domain-based network.
The migration plan states that all client computers will be upgraded to Windows XP Professional and that
all servers will be replaced with new computers running Windows Server 2003.
The migration plan specifies the following requirements for DNS in the new environment:
Active Directory data must not be accessible from the Internet.
The DNS namespace must be contiguous to minimize confusion for users and administrators.
Users must be able to connect to resources in the contoso.com domain.
Users must be able to connect to resources located on the Internet.
The existing UNIX-based DNS server will continue to host the contoso.com domain.
The existing UNIX-based DNS server cannot be upgraded or replaced.
You plan to install a Windows Server 2003 DNS server on the internal network.
You need to configure this Windows-based DNS server to meet the requirements specified in the
migration plan.
What should you do?
A.Create a primary zone named ad.contoso.com on your Windows-based DNS server. Create a
delegation record for the new zone on the UNIX-based DNS server. Configure forwarders on your
Windows-based DNS server.
B.Create a primary zone named ad.contoso.com on the UNIX-based DNS server. Create a secondary
zone on your Windows-based DNS server for the ad.contoso.com domain.
C.Create a primary zone named contoso-ad.com on your Windows-based DNS server. Create a
secondary zone on the UNIX-based DNS server for the contoso-ad.com domain.
D.Create a primary zone named contoso-ad.com on the UNIX-based DNS server. Create a stub zone on
the Windows-based DNS server for the contoso-ad.com domain. Configure conditional forwarders on
your Windows-based DNS server for the contoso-ad.com and contoso.com domains.
Answer:A

Microsoft問題集   70-293過去問   70-293過去問

NO.7 You are a network administrator for your company. The company has a main office and one branch
office. The network consists of a single Active Directory domain. All servers run Windows Server 2003.
The company needs to connect the main office network and the branch office network by using Routing
and Remote Access servers at each office. The networks will be connected by a VPN connection over the
Internet.
The company's written security policy includes the following requirements for VPN connections over the
Internet:
All data must be encrypted with end-to-end encryption.
VPN connection authentication must be at the computer level.
Credential information must not be transmitted over the Internet as part of the authentication process.
You need to configure security for VPN connection between the main office and the branch office. You
need to comply with the written security policy.
What should you do?
A.Use a PPTP connection with EAP-TLS authentication.
B.Use a PPTP connection with MS-CHAP v2 authentication.
C.Use an L2TP connection with EAP-TLS authentication.
D.Use an L2TP connection with MS-CHAP v2 authentication.
Answer:C

Microsoft過去問   70-293過去問   70-293参考書   70-293   70-293

NO.8 You are the network administrator for your company. The network consists of a single Active Directory
domain. The functional level of the domain is Windows Server 2003. The domain contains an
organizational unit (OU) named Servers that contains all of the company's Windows Server 2003
resource servers. The domain also contains an OU named Workstations that contains all of the
company's Windows XP Professional client computers. You configure a baseline security template for
resource servers named Server.inf and a baseline security template for client computers named
Workstation.inf. The Server.inf template contains hundreds of settings, including file and registry
permission settings that have inheritance propagation enabled. The Workstation.inf template contains 20
security settings, none of which contain file or registry permissions settings. The resource servers operate
at near capacity during business hours. You need to apply the baseline security templates so that the
settings will be periodically enforced. You need to accomplish this task by using the minimum amount of
administrative effort and while minimizing the performance impact on the resource servers. What should
you do.?
A. Create a Group Policy object (GPO) and link it to the domain. Import both the Server.inf and the
Workstation.inf templates into the GPO.
B. Import both the Server.inf and the Workstation.inf templates into the Default Domain Policy Group
Policy object (GPO).
C. On each resource server, create a weekly scheduled task to apply the Server.inf settings during
off-peak hours by using the secedit command. Create a Group Policy object (GPO) and link it to the
Workstations OU. Import the Workstation.inf template into the GPO.
D. On each resource server, create a weekly scheduled task to apply the Server.inf settings during
off-peak hours by using the secedit command. Import the Workstation.inf template into the Default
Domain Policy Group Policy object (GPO).
Answer: C

Microsoft練習問題   70-293   70-293認定証

NO.9 You are a network administrator for your company. All servers run Windows Server 2003. All client
computers run Windows XP Professional.
All client computers receive their TCP/IP configuration information from the DHCP server named Server1.
You discover that client computers get a new IP address every time they are restarted.
You need to ensure that client computers receive the same IP address as often as possible regardless of
a system restart. You must accomplish this task by using the DHCP console. Your operation must not
affect other settings.
Answer.(CP1 OR CP2) AND CP3
We need to change the lease time to "Unlimited".
Step #1.
Open the DHCP console by clicking Start > Administrative Tools > DHCP.
Step #2.
Expand the tree.
Step #3.
Right click on Scope1 and select Properties.
Step #4.
Select Unlimited then click Apply and OK.
Step #5.
Close the DHCP console.

NO.10 You are a network administrator for a consulting company. You need to create a wireless network that
will be used by consultants from your company at a customer location. The wireless network will consist of
nine portable computers, three servers, and four wireless digital cameras. All computers and cameras can
use either static or dynamic IP addressing. The cameras do not support data encryption. Both the portable
computers and the servers must be able to initiate communication over the Internet to VPN servers in
your company's main data center. Only the wireless access point is connected to the customer's
corporate network.You need to plan the wireless IP network so that it minimizes the risk of unauthorized
use of the wireless network and prevents unsolicited communication from the Internet to the hosts on the
network.What should you do?To answer, drag the appropriate configuration settings to the Wireless
Network Configuration.
Answer:

NO.11 You are the administrator for your company. The company has a new server which runs Windows
Server 2003 named Server1.
Server1 has two network connections. Internet connection is used to connect to the Internet and Local
Area Network connection is used to connect to the company network.
You need to ensure that company users can access the Internet through Server1. You also need to
prevent external, unauthorized users from accessing Server1 through the Internet. You must accomplish
this task by using the Routing and Remote Access Server Setup Wizard dialog box. Your operation must
not affect other settings on Server1.
Answer.CP1 AND CP2 AND CP3 AND CP4
Step #1.
Open the Routing and Remote Access console by clicking Start > Administrative Tools > Routing and
Remote Access.
Step #2.
Right click on Server1 and select Configure and Enable Routing and Remote Access.
Step #3.
The Routing and Remote Access Setup Wizard will open. Click Next.
Step #4.
Select Network address translation (NAT) and click Next.
Step #5.
Select "Internet Connection" as the public interface. Ensure that the "Enable security on the selected
interface...." checkbox is ticked. Then click Next.
Step #6.
Click Finish to close the wizard.
Step #7.
Close the Routing and Remote Access console.

NO.12 You are a network administrator for your company. The network consists of a single Active Directory
domain. All servers run Windows Server 2003.
All file servers for the Sales department are located in an organizational unit (OU) named SaleServers. All
file servers for the Accounting department are located in an OU named AccountServers.
You create a Group Policy Object (GPO) named SaleServersPolicy and link it to the SaleServers OU. You
create a GPO named AccountServersPolicy and link it to the AccountServers OU.
You need to ensure that only the AccountServersPolicy settings are applied to the AccountServers OU.
You must accomplish this task by using the Active Directory Users and Computers console. Your
operation must not affect other settings.
Answer.CP1 AND CP2
Step #1.
Open Active Directory Users and Computers by clicking Start > Administrative Tools > Active Directory
Users and Computers.
Step #2.
Expand the tree to show the Organizations Units (OUs). Right click on the AccountServers OU and select
Properties.
Step #3.
Go to the Group Policy tab.
Step #4.
Tick the Block Policy Inheritance checkbox then click Apply and OK.
Step #5.
Close Active Directory Users and Computers.

NO.13 You are the network administrator for your company. The network consists of a single Active Directory
domain. All servers run Windows Server 2003.
When the network was designed, the design team set design specifications. After the network was
implemented, the deployment team set baseline specifications. The specifications for broadcast traffic
are:
The design specification requires that broadcast traffic must be 5 percent or less of total network traffic.
The baseline specification showed that the broadcast traffic is always 1 percent or less of total network
traffic during normal operation.
You need to monitor the network traffic and find out if the level of broadcast traffic is within design and
baseline specifications. You decide to use Network Monitor. After monitoring for 1 hour, you observe the
results shown in the exhibit. (Click the Exhibit button.)
You need to report the results of your observations to management.
Which two actions should you take? (Each correct answer presents part of the solution. Choose two.)
A.Report that broadcast traffic is outside of the baseline specification.
B.Report that broadcast traffic is outside of the design specification.
C.Report that broadcast traffic is within the design specification.
D.Report that broadcast traffic is within the baseline specification.
Answer:A,B

Microsoft認定試験   70-293   70-293認証試験   70-293

NO.14 You are a network administrator for your company. All domain controllers run Windows Server 2003.
The network contains 50 Windows 98 client computers, 300 Windows 2000 Professional computers, and
150 Windows XP Professional computers. According to the network design specification, the Kerberos
version 5 authentication protocol must be used for all client computers on the internal network. You need
to ensure that Kerberos version 5 authentication is used for all client computers on the internal network.
What should you do?
A. On each domain controller, disable Server Message Block (SMB) signing and encryption of the secure
channel traffic.
B. Replace all Windows 98 computers with new Windows XP Professional computers.
C. Install the Active Directory Client Extensions software on the Windows 98 computers.
D. Upgrade all Windows 98 computers to Windows NT Workstation 4.0.
Answer: B

Microsoft過去問   70-293   70-293認定資格   70-293   70-293認証試験   70-293認証試験

NO.15 You are the network administrator for Tailspin Toys. The company has a main office and two branch
offices. The network in the main office contains 10 servers and 100 client computers. Each branch office
contains 5 servers and 50 client computers. Each branch office is connected to the main office by a direct
T1 line. The network design requires that company IP addresses must be assigned from a single classful
private IP address range. The network is assigned a class C private IP address range to allocate IP
addresses for servers and client computers. Tailspin Toys acquires a company named Wingtip Toys. The
acquisition will increase the number of servers to 20 and the number of client computers to 200 in the
main office. The acquisition is expected to increase the number of servers to 20 and the number of client
computers to 200 in the branch offices. The acquisition will also add 10 more branch offices. After the
acquisition, all branch offices will be the same size. Each branch office will be connected to the main
office by a direct T1 line. The new company will follow the Tailspin Toys network design requirements. You
need to plan the IP addressing for the new company. You need to comply with the network design
requirement. What should you do?
A. Assign the main office and each branch office a new class A private IP address range.
B. Assign the main office and each branch office a new class B private IP address range.
C. Assign the main office and each branch office a subnet from a new class B private IP address range.
D.Assign the main office and each branch office a subnet from the current class C private IP address
range.
Answer: C

Microsoft   70-293参考書   70-293   70-293認定証   70-293

NO.16 You are the network administrator for your company. The network consists of a single Active Directory
domain. The network contains 10 domain controllers and 50 servers in application server roles. All
servers run Windows Server 2003. The application servers are configured with custom security settings
that are specific to their roles as application servers. Application servers are required to audit account
logon events, object access events, and system events. Application servers are required to have
passwords that meet complexity requirements, to enforce password history, and to enforce password
aging. Application servers must also be protected against man-in-the-middle attacks during authentication.
You need to deploy and refresh the custom security settings on a routine basis. You also need to be able
to verify the custom security settings during audits. What should you do?
A. Create a custom security template and apply it by using Group Policy.
B. Create a custom IPSec policy and assign it by using Group Policy.
C. Create and apply a custom Administrative Template.
D. Create a custom application server image and deploy it by using RIS.
Answer: A

Microsoft   70-293   70-293過去問

NO.17 You are the network administrator for your company. The network consists of a single Active Directory
domain. All servers run Windows Server 2003.
The network contains servers that have Terminal Server enabled. The terminal servers host legacy
applications that currently require users to be members of the Power Users group.
A new requirement in the company's written security policy states that the Power Users group must be
empty on all resource servers.
You need to maintain the ability to run the legacy applications on the terminal servers when the new
security requirement is implemented.
What should you do?
A. Add the Domain Users global group to the Remote Desktop Users built-in group in the domain.
B. Add the Domain Users global group to the Remote Desktop Users local group on each terminal server.
C. Modify the Compatws.inf security template settings to allow members of the local Users group to run
the applications. Import the security template into the Default Domain Controllers Policy Group Policy
object (GPO).
D. Modify the Compatws.inf security template settings to allow members of the local Users group to run
the applications. Apply the modified template to each terminal server.
Answer: D

Microsoft認証試験   70-293認定試験   70-293   70-293

NO.18 You are the network administrator for your company. The network consists of a single Active Directory
domain. The company's written security policy requires that computers in a file server role must have a
minimum file size for event log settings. In the past, logged events were lost because the size of the event
log files was too small. You want to ensure that the event log files are large enough to hold history. You
also want the security event log to be cleared manually to ensure that no security information is lost. The
application log must clear events as needed. You create a security template named Fileserver.inf to meet
the requirements. You need to test each file server and take the appropriate corrective action if needed.
You audit a file server by using Fileserver.inf and receive the results shown in the exhibit. (Click the
Exhibit button.) You want to make only the changes that are required to meet the requirements. Which two
actions should you take? (Each correct answer presents part of the solution. Choose two.)
A. Correct the Maximum application log size setting on the file server.
B. Correct the Maximum security log size setting on the file server.
C. Correct the Maximum system log size setting on the file server.
D. Correct the Retention method for application log setting on the file server.
E. Correct the Retention method for security log setting on the file server.
F. Correct the Retention method for system log setting for the file server.
Answer: B E

Microsoft   70-293認証試験   70-293   70-293

NO.19 You are the network administrator for your company. The network contains an application server
running Windows Server 2003.
Users report that the application server intermittently responds slowly. When the application server is
responding slowly, requests that normally take 1 second to complete take more than 30 seconds to
complete. You suspect that the slow server response is because of high broadcast traffic on the network.
You need to plan how to monitor the application server and to have a message generated when
broadcast traffic is high. You also want to minimize the creation of false alarms when nonbroadcast traffic
is high.
What should you do?
A.Use the Alerts option in the Performance Logs and Alerts snap-in to configure an alert to trigger when
the Datagrams/sec counter in the UDPv4 object is high.
B.Use System Monitor and configure it to monitor the Segments/sec counter in the TCPv4 object.
C.Use System Monitor and configure it to monitor the Datagrams/sec counter in the UDPv4 object.
D.Use the Alerts option in the Performance Logs and Alerts snap-in to configure an alert to trigger when
the Datagrams/sec counter in the TCPv4 object is high.
Answer:A

Microsoft問題集   70-293認証試験   70-293   70-293

NO.20 You are the network administrator for your company. The network contains Windows Server 2003
computers and Windows XP Professional computers.
The company deploys two DNS servers. Both DNS servers run Windows Server 2003. One DNS server is
inside of the corporate firewall, and the other DNS server is outside of the firewall. The external DNS
server provides name resolution for the external Internet name of the company on the Internet, and it is
configured with root hints. The internal DNS server hosts the DNS zones related to the internal network
configuration, and it is not configured with root hints.
You want to limit the exposure of the client computers to DNS-related attacks from the Internet, without
limiting their access to Internet-based sites.
Which two actions should you take? (Each correct answer presents part of the solution. Choose two.)
A.Configure the client computers to use only the internal DNS server.
B.Configure the client computers to use both DNS servers. List the internal DNS server first.
C.Configure the firewall to allow only network traffic on the DNS ports.
D.On the internal DNS server, disable recursion.
E.On the internal DNS server, configure the external DNS server as forwarder.
F.On the internal DNS server, add the external DNS server as the only root hint.
Answer:A , E

Microsoft認定試験   70-293問題集   70-293   70-293

IT-Passports.com のMicrosoftの70-293問題集はシラバスに従って、それに70-293認定試験の実際に従って、あなたがもっとも短い時間で最高かつ最新の情報をもらえるように、弊社はトレーニング資料を常にアップグレードしています。弊社の70-293のトレーニング資料を買ったら、一年間の無料更新サービスを差し上げます。もっと長い時間をもらって試験を準備したいのなら、あなたがいつでもサブスクリプションの期間を伸びることができます。

2013年8月28日星期三

MicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270認定試験の一番新しい問題集の登場

あなたの人生に残念と後悔を残しないように、私たちはできるだけ人生を変えるあらゆるチャンスをつかむ必要があります。あなたはそれをやったことができましたか。IT-Passports.comのMicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270試験トレーニング資料は成功したいIT職員のために作成されたのです。あなたがMicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270認定試験に合格することを助けます。成功と擦れ違うことを避けるように速く行動しましょう。

IT業種のMicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270認定試験に合格したいのなら、IT-Passports.com MicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270試験トレーニング問題集を選ぶのは必要なことです。MicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270認定試験に受かったら、あなたの仕事はより良い保証を得て、将来のキャリアで、少なくともIT領域であなたの技能と知識は国際的に認知され、受け入れられるです。これも多くの人々がMicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270認定試験を選ぶ理由の一つです。その理由でこの試験はますます重視されるになります。IT-Passports.com MicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270試験トレーニング資料はあなたが上記の念願を実現することを助けられるのです。IT-Passports.com MicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270試験トレーニング資料は豊富な経験を持っているIT専門家が研究したもので、問題と解答が緊密に結んでいますから、比べるものがないです。高い価格のトレーニング授業を受けることはなくて、IT-Passports.com MicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270試験トレーニング資料をショッピングカートに入れる限り、我々はあなたが気楽に試験に合格することを助けられます。

あなたはこのような人々の一人ですか。さまざまな資料とトレーニング授業を前にして、どれを選ぶか本当に困っているのです。もしそうだったら、これ以上困ることはないです。IT-Passports.comはあなたにとって最も正確な選択ですから。我々はあなたに試験問題と解答に含まれている全面的な試験資料を提供することができます。IT-Passports.comの解答は最も正確な解釈ですから、あなたがより良い知識を身につけることに助けになれます。IT-Passports.comを利用したら、MicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270認定試験に受かることを信じています。それも我々が全てのお客様に対する約束です。

IT-Passports.comは毎日24時間オンラインに顧客に対してサービスを提供するアフターサービスはとても良いサイトでございます。最新な情報を1年間に無料にアップデートしております。少ないお金をかかって、一回に合格しましょう。IT-Passports.comの問題集は最大のお得だね!

試験番号:MB6-823問題集
試験科目:Microsoft 「AX 2009 Project Series」
問題と解答:全89問

試験番号:70-293問題集
試験科目:Microsoft 「Planning and Maintaining a Microsoft Windows Server 2003 Network Infrastructure」
問題と解答:全290問

試験番号:70-294問題集
試験科目:Microsoft 「Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 AD Infrastructure」
問題と解答:全220問

試験番号:70-297問題集
試験科目:Microsoft 「Designing a Microsoft Windows Server 2003 Active Directory and Network Infrastructure」
問題と解答:全142問

試験番号:70-298問題集
試験科目:Microsoft 「Designing Security for a MS Windows Server 2003 Network」
問題と解答:全130問

試験番号:70-270問題集
試験科目:Microsoft 「Installing, Configuring, and Administering Microsoft Windows XP Professional」
問題と解答:全170問

この情報の時代には、IT業界にとても注目され、この強い情報技術業界にIT人材が得難いです。こうしてMicrosoft認定試験がとても重要になります。でも、この試験がとても難しくてIT者になりたい方が障害になっています。

MicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270認定試験と言ったら、人々は迷っています。異なる考えがありますが、要約は試験が大変難しいことです。MicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270認定試験は確かに難しい試験ですが、IT-Passports.com を選んだら、これは大丈夫です。IT-Passports.comのMicrosoftのMB6-823 70-293 70-294 70-297 70-298 70-270試験トレーニング資料は受験生としてのあなたが欠くことができない資料です。それは受験生のために特別に作成したものですから、100パーセントの合格率を保証します。信じないになら、IT-Passports.comのサイトをクリックしてください。購入する人々が大変多いですから、あなたもミスしないで速くショッピングカートに入れましょう。

購入前にお試し,私たちの試験の質問と回答のいずれかの無料サンプルをダウンロード:http://www.it-passports.com/70-294.html

NO.1 You have a single Active Directory directory service domain. Your domain controllers are configured as
shown in the following table.
Domain
controller
Site FSMO role or roles
Global catalog
server
DC1 Site1
Schema Master
Domain Naming Master
Yes
DC2 Site2 ? Yes
DC3 Site3 Infrastructure Master Yes
DC4 Site4 PDC Emulator No
File and print services are on servers in Site1. Microsoft Exchange Server is installed on servers in Site2.
The HR and user provisioning applications will be placed on servers in Site3.
You are planning placement of the RID Master FSMO role.
You need to ensure proper functionality of these applications within their sites during an extended WAN
outage.
On which domain controller should you place the RID Master role?
A. DC1
B. DC2
C. DC3
D. DC4
Answer: C

Microsoft   70-294認定資格   70-294過去問   70-294認定試験   70-294

NO.2 You have a single Active Directory directory service domain. There is a branch office that connects to
the main office through a low-bandwidth WAN link.
The first domain controller is named DC1 and is located in the main office. The branch office has a single
server named Server1. Server1 runs Windows Server 2003.
You are preparing to install Active Directory on Server1. You back up the system state of DC1, and you
send the backup to the administrator at the branch office.
You need to make Server1 an additional domain controller in your domain, while minimizing the
bandwidth usage between the two offices.
What should you do?
A. Restore the system state data from DC1 to an alternate location on Server1. Run the dcpromo
command with the /adv parameter, and select the From these restored backup files option.
B. Restore the system state data from DC1 to the original location on Server1. Run the dcpromo
command with the /adv parameter, and select the From these restored backup files option.
C. Create a new Active Directory site. Create an unattended installation file with the
CriticalReplicationOnly parameter. Run the dcpromo command with the /answer parameter.
D. Create a new Active Directory site. Create an unattended installation file with the SiteName parameter
to place Server1 into the new site. Run the dcpromo command with the /answer parameter.
Answer: A

Microsoft過去問   70-294参考書   70-294参考書

NO.3 Your company has a single Active Directory directory service forest named contoso.com. A partner
organization has a forest named fabrikam.com. Both forests are set to the Windows 2000 forest functional
level. Domains named contoso.com and fabrikam.com are set to Windows 2000 Native Mode.
You plan to create a forest trust relationship between contoso.com and fabrikam.com.
You need to be able to configure selective authentication for the trust relationship.
What should you do?
A. Raise the forest functional level on contoso.com and fabrikam.com to Windows Server 2003.
B. Raise the domain functional level on contoso.com and fabrikam.com to Windows Server 2003.
C. Raise the domain functional level and the forest functional level on contoso.com to Windows Server
2003.
D. Raise the domain functional level and the forest functional level on fabrikam.com to Windows Server
2003.
Answer: A

Microsoft   70-294過去問   70-294練習問題   70-294認定証

NO.4 Your company has an Active Directory directory service forest with a forest root domain and a child
domain. You have two Active Directory sites named Site1 and Site2. The two sites represent physical
locations that are connected by a WAN link.
All domain controllers are located in Site2. All users log on to the child domain. Several users in Site1 use
computers that run Windows NT 4.0 operating systems.
You configure a new domain controller for each domain, and you place the new domain controllers in
Site1.
You need to ensure that all users in Site1 can change their passwords in the event of a WAN link failure.
What should you do?
A. Transfer the root domain PDC Emulator role to a domain controller in Site1.
B. Transfer the child domain PDC Emulator role to a domain controller in Site1.
C. Transfer the root domain Infrastructure Master role to a domain controller in Site1.
D. Transfer the child domain Infrastructure Master role to a domain controller in Site1.
Answer: B

Microsoft参考書   70-294   70-294   70-294認定証

NO.5 Your company has a single Active Directory directory service domain. The company has five Active
Directory sites on the West coast and five Active Directory sites on the East coast. The West coast sites
and the East coast sites are in two separate hub-and-spoke configurations that are separated by a firewall.
All Active Directory replication between the West coast and East coast occurs between a single West
coast domain controller named WestDC1 and a single East coast domain controller named EastDC1.
You need to ensure that if WestDC1 fails, other West coast domain controllers continue to replicate with
each other, but not with East coast domain controllers.
What should you do?
A. Create site links between the West coast hub site and the West coast spoke sites.
B. Create a site link bridge between the West coast hub site and the East coast hub site.
C. Clear the Bridge all site links option and create a site link bridge for all the East coast sites.
D. Clear the Bridge all site links option and create a site link bridge for all the West coast sites.
Answer: D

Microsoft   70-294認定証   70-294練習問題   70-294   70-294

NO.6 You have a single Active Directory directory service domain. You are preparing to create a child
domain. Your user account is in a global security group named Server Administrators. The Server
Administrators group is in the local Administrators group on all servers.
You need to install Active Directory on a server named Server1 to create the new child domain.
What should you do?
A. Have your user account added to the Domain Admins group.
B. Have your user account added to the Schema Admins group.
C. Have your user account added to the Enterprise Admins group.
D. Have your user account added to the Incoming Forest Trust Builders group.
Answer: C

Microsoft認定証   70-294認定資格   70-294参考書   70-294   70-294

NO.7 Your company has a main office and a single branch office. The two offices are connected through a
WAN link. You have Active Directory directory service site objects for each office. Domain controllers are
associated with the appropriate site objects.
Users in the main office are currently authenticated by domain controllers in the branch office.
You need to ensure that users in the main office are authenticated by the domain controllers in the main
office.
What should you do?
A. Clear the Bridge all site links option.
B. Configure a preferred bridgehead server for the site for the main office.
C. Associate the subnets for the main office with the site for the main office.
D. Associate the subnets for the branch office with the site for the branch office.
Answer: C

Microsoft   70-294   70-294   70-294認定証   70-294   70-294

NO.8 Your Windows Server 2003 environment consists of a single Active Directory directory service forest
with multiple domains. The forest functional level is set to Windows 2000 Server. Your company has a
main office and four branch offices. Each office has two domain controllers. The domain controllers in the
main office are global catalog servers.
In the branch offices, searches for some printers in Active Directory are slow.
You need to improve the performance of Active Directory printer searches in the four branch offices.
What should you do?
A. Enable universal group membership caching in each branch office.
B. Increase the number of domain controllers in each branch office.
C. Add global catalog services to each branch office.
D. Upgrade the forest functional level to Windows Server 2003.
Answer: C

Microsoft過去問   70-294   70-294認証試験   70-294   70-294認定証

NO.9 Your company has a single Active Directory directory service forest with a forest root domain and a
child domain. The company has a main office and several branch offices. You are planning to remove the
child domain.
All of the domain controllers in the forest root domain are located in the main office, and all FSMO roles
are on separate domain controllers. The last domain controller in the child domain is named DC1 and is
located in a branch office.
You attempt to remove Active Directory from DC1, but you receive an error message stating that the
operation could not be completed.
You need to remove Active Directory from DC1.
What should you do?
A. Restore connectivity to the domain controller that holds the Domain Naming Master role.
B. Restore connectivity to the domain controller that holds the Schema Master role.
C. Restore connectivity to the domain controller that holds the Infrastructure Master role.
D. Restore connectivity to the domain controller that holds the PDC Emulator role.
Answer: A

Microsoft   70-294認定証   70-294過去問   70-294参考書

NO.10 Your company has a single Active Directory directory service forest with a forest root domain and a
child domain.
The company has a high rate of employee turnover, and administrators create several hundred user
accounts per week.
A domain controller in the child domain fails. Within several hours of the failure, administrators are unable
to create new user accounts within the child domain.
You need to ensure that administrators can create user accounts in the child domain.
What should you do?
A. Seize the PDC Emulator role in the child domain.
B. Seize the RID Master role in the child domain.
C. Seize the Infrastructure Master role in the child domain.
D. Create a new domain controller in the child domain, and configure it as a global catalog server.
Answer: B

Microsoft   70-294認定試験   70-294参考書   70-294参考書   70-294

NO.11 Your company has a Windows Server 2003 environment with a single Active Directory directory service
forest. The forest has multiple domains and two sites named Site1 and Site2. Site1 has six domain
controllers. Two of the domain controllers are global catalog servers. Site2 has three domain controllers.
The WAN link between Site1 and Site2 is slow.
You are preparing the environment for an Active Directory application that requires universal group
membership to make authorization decisions. Application servers will be located in Site1 and Site2.
You need to prepare the Active Directory environment for the introduction of the Active Directory
application.
What should you do?
A. Increase the number of domain controllers in Site2 to four.
B. Enable universal group membership caching in Site1.
C. Add additional global catalog servers to Site1.
D. Configure at least one of the domain controllers in Site2 to be a global catalog server.
Answer: D

Microsoft認証試験   70-294   70-294   70-294認定証   70-294参考書

NO.12 Your company has a single Active Directory directory service forest with multiple domains. The
company has a main office with 1,000 users and a single branch office with 500 users. Each office is a
separate Active Directory site. The main office Active Directory site has two domain controllers with Global
Catalog services.
Company employees must be able to work in both offices.
You need to plan the placement and configuration of domain controllers.
What should you do?
A. Deploy two additional domain controllers in the main office Active Directory site.
B. Deploy global catalog servers in the branch office Active Directory site.
C. Enable change notification on the site link between the main office Active Directory site and the branch
office Active Directory site.
D. Disable change notification on the site link between the main office Active Directory site and the branch
office Active Directory site.
Answer: B

Microsoft認定証   70-294認定証   70-294認定証

NO.13 Your company has a single Active Directory directory service forest with four domains. The domains
are named contoso.com, corp.contoso.com, fabrikam.com, and corp.fabrikam.com.
Users in the corp.contoso.com domain frequently access resources that are located in the
corp.fabrikam.com domain.
You need to improve user logon times from the corp.contoso.com domain to the corp.fabrikam.com
domain.
What should you do?
A. Enable universal group caching in sites where corp.contoso.com domain controllers are located.
B. Enable universal group caching in sites where corp.fabrikam.com domain controllers are located.
C. Create a shortcut trust from the corp.fabrikam.com domain to the corp.contoso.com domain.
D. Create a shortcut trust from the corp.contoso.com domain to the corp.fabrikam.com domain.
Answer: C

Microsoft問題集   70-294認定証   70-294   70-294問題集

NO.14 Your company has a single Active Directory directory service forest named contoso.com. A partner
organization has a forest named fabrikam.com. You create a forest trust relationship between
contoso.com and fabrikam.com.
You need to enable selective authentication between contoso.com and fabrikam.com.
Which tool should you use?
A. Netdom
B. Nltest
C. Dsacls
D. Ntdsutil
Answer: A

Microsoft認定試験   70-294認定試験   70-294   70-294   70-294

NO.15 Your company s Windows Server 2003 environment consists of a single Active Directory directory
service forest. The forest has multiple domains and three sites named Site1, Site2, and Site3. Site1 is the
main office and has four domain controllers. Two of the domain controllers are global catalog servers.
Site2 is a branch office with two domain controllers. Site3 is a branch office with a slow and unreliable
WAN link and two domain controllers.
You need to improve user logon performance for users in Site2 and Site3.
Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)
A. Enable change notification between Site1 and Site2.
B. Enable change notification between Site1 and Site3.
C. Implement universal group membership caching in Site2.
D. Implement universal group membership caching in Site3.
Answer: CD

Microsoft   70-294過去問   70-294認定試験

NO.16 You have a single Active Directory directory service domain. Your company has a main office and
multiple branch offices. Each office has an Active Directory site. The company s network is not fully
routed.
You need to ensure complete replication between the Active Directory sites.
What should you do?
A. Configure site links, and disable site link bridging.
B. Configure site links to use the SMTP transport, and enable site link bridging.
C. Configure a preferred bridgehead server for each branch office site.
D. Configure a preferred bridgehead server for the main office site.
Answer: A

Microsoft   70-294   70-294参考書

NO.17 Your company has a single Active Directory directory service forest with three domains.
You plan to modify the Active Directory schema.
You need to identify the schema master for the forest.
What should you do?
A. Run the regsvr32 schmmgmt.dll command. Use the Active Directory Domains and Trusts snap-in.
B. Run the regsvr32 schmmgmt.dll command. Use the Active Directory Users and Computers snap-in.
C. Use the Dsget command-line tool.
D. Use the Dsquery command-line tool.
Answer: D

Microsoft認定試験   70-294   70-294   70-294   70-294   70-294練習問題

NO.18 Your company has a single Active Directory directory service forest with multiple domains. The
Schema FSMO role is held by one of the domain controllers in the forest root domain. The Domain
Naming Master FSMO role is held by one of the domain controllers in a child domain. All domain
controllers have Windows Server 2003 installed.
You need to upgrade all domain controllers to Windows Server 2003 R2.
Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)
A. Run the adprep /forestprep command in the forest root domain.
B. Run the adprep /forestprep command in all the child domains.
C. Run the adprep /domainprep command in all the child domains only.
D. Run the adprep /domainprep command in all domains.
Answer: AD

Microsoft練習問題   70-294認定試験   70-294認証試験   70-294

NO.19 Your company has a single Active Directory directory service domain with three domain controllers.
You need to move domain-wide FSMO roles to a different domain controller.
Which tool should you use?
A. Active Directory Domains and Trusts snap-in
B. Active Directory Sites and Services snap-in
C. Active Directory Users and Computers snap-in
D. Active Directory Schema snap-in
Answer: C

Microsoft   70-294認証試験   70-294認定資格   70-294練習問題

NO.20 Your company has a single Active Directory directory service forest with a forest root domain and a
child domain. The child domain is set to the default domain functional level.
You install a second domain controller in the child domain by promoting a server named SVR1.
You need to rename SVR1 to DC2, and you must ensure that there will be no interruption in the ability of
client computers to authenticate to DC2, except during reboot.
What should you do?
A. Raise the domain functional level of the child domain to Windows 2000 native. Use System Properties
on SVR1 to rename SVR1 to DC2.
B. Raise the domain functional level of the child domain to Windows Server 2003. Run the netdom
command to rename SVR1 to DC2.
C. Raise the domain functional level of the child domain to Windows 2000 native. Run the dcpromo
command on SVR1 to remove Active Directory directory service. Use System Properties to rename SVR1
to DC2. Run the dcpromo command to re-install Active Directory.
D. Raise the domain functional level of the child domain to Windows Server 2003. Create a DNS CNAME
record for DC2.contoso.com that points to SVR1.contoso.com.
Answer: B

Microsoft認定試験   70-294   70-294