microsoft 70 417 (31 to 40)

Your success in Microsoft 70 417 exam is our sole target and we develop all our exam 70 417 braindumps in a way that facilitates the attainment of this target. Not only is our 70 417 exam study material the best you can find, it is also the most detailed and the most updated. 70 417 dumps Practice Exams for Microsoft exam 70 417 are written to the highest standards of technical accuracy.


Free VCE & PDF File for Microsoft 70-417 Real Exam
(Full Version!)

Pass on Your First TRY 100% Money Back Guarantee Realistic Practice Exam Questions

Free Instant Download NEW 70-417 Exam Dumps (PDF & VCE):
Available on:

Q31. Your network contains an Active Directory domain named All domain controllers run Windows Server 2012 R2. 

An organizational unit (OU) named OU1 contains 200 client computers that run Windows 8 Enterprise. A Group Policy object (GPO) named GPO1 is linked to OU1. 

You make a change to GPO1. 

You need to force all of the computers in OU1 to refresh their Group Policy settings immediately. The solution must minimize administrative effort. 

Which tool should you use? 

A. The Set-AdComputercmdlet 

B. Group Policy Object Editor 

C. Active Directory Users and Computers 

D. Group Policy Management Console (GPMC) 



In the previous versions of Windows, this was accomplished by having the user run 

GPUpdate.exe on their computer. Starting with Windows Server? 2012 and Windows?8, 

you can now remotely refresh Group Policy settings for all computers in an OU from one 

central location through the Group Policy Management Console (GPMC). Or you can use 

the Invoke-GPUpdate cmdlet to refresh Group Policy for a set of computers, not limited to 

the OU structure, for example, if the computers are located in the default computers 

container. Note: Group Policy Management Console (GPMC) is a scriptable Microsoft 

Management Console (MMC) snap-in, providing a single administrative tool for managing 

Group Policy across the enterprise. GPMC is the standard tool for managing Group Policy. 


Not B: Secedit configures and analyzes system security by comparing your current 

configuration to at least one template. 

Reference: Force a Remote Group Policy Refresh (GPUpdate) 

Q32. Your network contains two servers named Server1 and Server2. Both servers run Windows Server 2012 R2. On Server1, you create a Data Collector Set (DCS) named Data1. 

You need to export Data1 to Server2. 

What should you do first? 

A. Right-click Data1 and click Save template… 

B. Right-click Data1 and click Export list… 

C. Right-click Data1 and click Data Manager… 

D. Right-click Data1 and click Properties. 


Explanation: Exporting Templates To export a Data Collector Set you create as a template for use on other computers, open Windows Performance Monitor, expand Data Collector Sets, right-click the Data Collector Set you want to export, and click Save Template . Select a directory in which to store the XML file and click Save . 

Reference: Create a Data Collector Set from a Template 

Q33. Your network contains an Active Directory domain named The domain contains two member servers named Server1 and Server2 that run Windows Server 2012 R2. 

You log on to Server1. 

You need to retrieve the IP configurations of Server2. 

Which command should you run from Server1? 

A. winrm get server2 

B. dsquery . -scope base -attrip/server2 

C. winrs -r:server2ipconfig 

D. ipconfig> server2.ip 



Windows Remote Management allows you to manage and execute programs remotely References: Exam Ref 70-410: Installing and Configuring Windows Server 2012: Objective 4.3: Deploy and Configure the DNS service, Chapter 4 Deploying and Configuring core network services, p. 246 

Q34. Your network contains an Active Directory forest named Users frequently access the website of an external partner company. The URL of the website is 

The partner company informs you that it will perform maintenance on its Web server and that the IP addresses of the Web server will change. 

After the change is complete, the users on your internal network report that they fail to access the website. 

However, some users who work from home report that they can access the website. 

You need to ensure that your DNS servers can resolve to the correct IP address immediately. 

What should you do? 

A. Run dnscmd and specify the CacheLockingPercent parameter 

B. Run Set-DnsServerGlobalQueryBlockList 

C. Run ipconfig and specify the Renew parameter 

D. Run Set-DnsServerCache 


Q35. Your manager has asked you to create various user objects using Windows PowerShell. Which of the following must you do to accomplish this? 

A. Use the Create-User createUsert 

B. Use the objUser = new OUUser statement 

C. Use the AddUser method of ADSL 

D. Invoke the Create method of OU 


Explanation: The user is created by first defining the OU and then invoking the ou Create method. 

Q36. You have a DNS server named DNS1 that runs Windows Server 2012 R2. 

On DNS1, you create a standard primary DNS zone named 

You need to change the frequency that secondary name servers will replicate the zone 

from DNS1. 

Which type of DNS record should you modify? 

A. Name server (NS) 

B. Start of authority (SOA) 

C. Host information (HINFO) 

D. Service location (SRV) 



The time to live is specified in the Start of Authority (SOA) record Note: TTL (time to live) – The number of seconds a domain name is cached locally before expiration and return to authoritative nameservers for updated information. 

Q37. A user has locked his account (again!) and you need to unlock it so they can continue working normally. 

Which of the following is a possible way to unlock a User Account? (Choose three) 

A. Command Line 

B. None of these 

C. Windows PowerShell 

D. VBScript 

Answer: A,C,D 


All 3 of these can be used to unlock accounts. 

Q38. Your network contain an active directory domain named The domain contains two servers named server1 and server2 that run Windows Server 2012 R2. You create a security template named template1 by using the security template snap-in. You need to apply template1 to server2. 

Which tool should you use? 

A. Security Configuration and Analysis 

B. Server Manager 

C. Security Template 

D. Computer management 


Q39. Your network contains an Active Directory domain named All servers run Windows Server 2012 R2. 

Client computers run either Windows 7 or Windows 8. All of the client computers have an application named App1 installed. 

The domain contains a Group Policy object (GPO) named GPO1 that is applied to all of the client computers. 

You need to add a system variable named App1Data to all of the client computers. 

Which Group Policy preference should you configure? 

A. Ini Files 

B. Data Sources 

C. Services 

D. Environment 


Explanation: Environment Variable preference items allow you to create, update, replace, and delete user and system environment variables or semicolon-delimited segments of the PATH variable. 

Note: Creating an Environment Variable item To create a new Environment Variable preference item 

. Open the.Group Policy Management Console.. Right-click the Group Policy object (GPO) that should contain the new preference item, and then click.Edit.. . In the console tree under.Computer Configuration.or.User Configuration., expand the.Preferences.folder, and then expand the.Windows Settings.folder. 

. Right-click the.Environment.node, point to.New., and select.Environment Variable.. . In the.New Environment Variable Properties.dialog box, select an.Action.for Group 

Policy to perform. (For more information, see "Actions" in this topic.) . Enter environment variable settings for Group Policy to configure or remove. . Click, configure any options, and then type your comments in 

. Click.OK.. The new preference item appears in the details pane. 

Reference: Configure an Environment Variable Item 

Q40. You have decided to install Windows Server 2012 R2 by choosing the Service Core Installation option. 

If you want to install, configure or uninstall server roles remotely, what tool would you use? 

A. Windows PowerShell 

B. Any of these 

C. Server Manager 

D. Remote Server Administration Tools (RSAT) 



Initial Answer: Windows PowerShell (Only PowerShell can be used to manage server roles remotely to a server core installation.) => FALSE Since 2012, remote installations of server roles to a Core installation are allowed i've just done it, screenshots as proof: 

Then, i just had to use Enable-NetFirewallRule to allow remote management using MMC And i can see my FSRM role was correctly remotely installed on my Core Installation (and is remotely managed using FSRM MMC):