Question 71
You are the network administrator for a company named Contoso, Ltd.
Contoso has a partner company named Fabrikam, Inc.
The networks of both companies contain Active Directory forests. The functional level of both forests is Windows 2008. Both forests has Active Directory Rights Management Services (AD RMS) and Microsoft Exchange Server 2016 installed. The users in both forests can access AD RMS and Exchange servers.
You need to ensure that the Contoso users can access rights-protected content of the Fabrikam users. The solution must minimize changes to the AD RMS clients and must eliminate the need to exchange AD RMS private keys.
Question 72
Your network contains an Active Directory forest. The forest contains a forest root domain named contoso.com and a child domain named eu.contoso.com. Each domain contains two domain controllers that run Windows Server 2012 R2.
The forest functional level is Windows Server 2008 R2. The domain functional level of contoso.com is Windows Server 2012 R2. The domain functional level of eu.contoso.com is Windows Server 2008 R2.
You need to raise the domain functional level of contoso.com to Windows Server 2016. The solution must minimize administrative effort.
What should you do before you raise the domain functional level?
Question 73
Your network contains an Active Directory domain named contoso.com. You plan to automate user account management.
You need to find user accounts that meet specific criteria by using the find command in Active Directory Users and Computers. The solution must minimize administrative effort.
Which Find option should you use for each section? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Question 74
Your network contains an Active Directory domain named contoso.com. The domain contains servers that run Windows Server 2016. The servers are configured as shown in the following table.
You have a research department. The computers in the research department are not domain-joined.
You need to ensure that the research department computers can use automatic certificate enrollment to receive and renew certificates from the CA.
Which two role services should you install and configure on CAP? Each correct answer presents part of the solution.
NOTE: Each correct selection is worth one point.
Question 75
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series.
Information and details provided in a question apply only to that question.
Your network contains an Active Directory domain named contoso.com. The domain contains 5,000 user accounts.
You have a Group Policy object (GPO) named DomainPolicy that is linked to the domain and a GPO named DCPolicy that is linked to the Domain Controllers organizational unit (OU).
You need to configure the Documents folder of every user to be stored on a server named FileServer1.
What should you do?


