Summer Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains domain controllers that run Windows Server 2016.

Vou build a new AD DS forest named nwtraders.com. The forest contains domain controllers that run Windows Server 2025.

You plan to perform a phased migration from contoso.com to nwtraders.com.

You perform the following actions:

• Migrate the users in contoso.com to nwtraders.com and enable slDHistory.

• Establish a two-way forest trust between contoso.com and nwtraders.com.

• Install the Active Directory Migration Tool (ADMT) in nwtraders.com.

You have an Azure virtual machine named VM1.

You enable Microsoft Defender SmartScreen on VM1.

You need to ensure that the SmartScreen messages displayed to users are logged.

What should you do?

A.

From a command prompt, run WinRM quickconfig.

B.

From the local Group Policy, modify the Advanced Audit Policy Configuration settings.

C.

From Event Viewer, enable the Debug log.

D.

From the Windows Security app. configure the Virus & threat protection settings.

Your network contains an Active Directory Domain Services (AD DS) domain that has the Active Directory Recycle Bin enabled. The domain contains two domain controllers named DC1 and DC2. The system state of the domain controllers is backed up daily at 23:00 by using Windows Server Backup.

You have an organization al unit (OU) named ParisUsers that contains 1,000 users.

At 08:00, DC1 shuts down for hardware maintenance. The maintenance completes, but DC1 remains shut down.

At 09:00, an administrative error causes the manager attribute of each user in ParisUsers to be deleted.

You need to recover the user account details as quickly as possible. The solution must minimize data loss.

Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer are a and arrange them in the correct order.

Your on-premises network is connected to Azure.

You have an Azure subscription. The subscription contains a virtual machine named VM1 that runs Windows Server.

You need to identify the latency between the on-premises network and VM1.

Which Azure Network Watcher settings should you use?

A.

IP flow verify

B.

Connection monitor

C.

VPN troubleshoot

D.

Connection troubleshoot

Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains a domain controller named DC!

The domain uses Microsoft Entra Connect sync with a Microsoft Entra tenant and uses Microsoft Entra Password Protection to enforce a custom banned password list

You deploy a new domain controller named DC2 to the domain.

You discover that the custom banned password list is applied inconsistently and often allows banned passwords to be used.

You need to ensure that the custom banned password list is always enforced.

What should you do on DC2?

® A. Install the Microsoft Entra Password Protection DC agent.

O B. Install the Microsoft Entra provisioning agent

Q C. Install the Microsoft Entra Password Protection proxy service.

Q D. Provide access to the https://login.microsoftonline.com and https://enterpriseregistration.windows.net URLs.

O E. Install the Azure Monitor Agent

You have an on-premises server named Server1 and Microsoft Sentinel instance.

You plan to collect windows Defender Firewall events from Sever1 and analyze the event data by using Microsoft Sentinel.

What should you install on Server1, and which information should you provide during the instance? To answer, select the appropriate options in the answer area.

NOTE: Each correct selection is worth one point.

You have an Azure subscription that contains a user named User! and the resources shown in the following table.

Used has a computer named Computed that runs Windows 11. User1 works from home and establishes a Point-to-Site (P2S) connection to GW1 to access AppSvr1.

You deploy the resources shown in the following table.

User1 cannot access AppSvr2.

You need to ensure that User1 can access AppSvr2.

What should you do?

A.

Create a route table and associate the table with GatewaySubnet on VNet1

B.

On Computer1, modify the Windows Defender Firewall settings.

C.

On Computer1, download and reinstall the VPN client.

D.

Add a service endpoint to VNet2.

You have three servers named Server1, Server2, Server3 that run Windows Server and have the Hyper-V server role installed.

You plan to create a hyper-converged cluster to host Hyper-V virtual machines.

You need to ensure that you can store virtual machines in Storage Spaces Direct.

Which three actions should you perform in sequence? To answer, move the appropria te actions from the list of actions to the answer area and arrange them in the correct order.

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

You have a server named Server1 that r uns Windows Server.

You need to ensure that only specific applications can modify the data in protected folders on Server1.

Solution: From App & browser control, you configure the Exploit protection settings.

Does this meet the goal?

A.

Yes

B.

No

You have an on-premises server named Server1 that runs Windows Server and has the Hyper-V server role installed.

You have an Azure subscriptio n.

You plan to back up Server1 to Azure by using Azure Backup.

Which two Azure Backup options require you to deploy Microsoft Azure Backup Server (MABS)? Each correct answer presents a complete solution.

NOTE: Each correct selection is worth one point.

A.

Bare Metal Recovery

B.

Files and folders

C.

System State

D.

Hyper-V Virtual Machines