Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains a DNS server named Server1. Server1 hosts a DNS zone named fabrikam.com that was signed by DNSSEC.You need to ensure that all the member servers in the domain perform DNSSEC validation for the fabrikam.com namespace.What should you do?
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.You are planning the deployment of DNS to a new network.You have three internal DNS servers as shown in the following table.The contoso.local zone contains zone delegations for east.contoso.local and west.contoso.local. All the DNS servers use root hints.You need to ensure that all the DNS servers can resolve the names of all the internal namespaces and internet hosts.Solution: On Server2, you create a conditional forwarder for contoso.local and west.contoso.local. On Server3, you create a conditional forwarder for contoso.local and east.contoso.local.Does this meet the goal?
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains 10 servers that run Windows Server. The servers have staticIP addresses.You plan to use DHCP to assign IP addresses to the servers.You need to ensure that each server always receives the same IP address.Which type of identifier should you use to create a DHCP reservation for each server?
HOTSPOT -Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains the VPN servers shown in the following table.You have a server named NPS1 that has Network Policy Server (NPS) installed. NPS1 has the following RADIUS clients:VPN1, VPN2, and VPN3 use NPS1 for RADIUS authentication. All the users in contoso.com are allowed to establish VPN connections.For each of the following statements, select Yes if the statement is true. Otherwise, select No.NOTE: Each correct selection is worth one point.Hot Area:
You have an on-premises Active Directory Domain Services (AD DS) domain that syncs with an Azure Active Directory (Azure AD) tenant. The on-premises network is connected to Azure by using a Site-to-Site VPN.You have the DNS zones shown in the following table.You need to ensure that names from fabrikam.com can be resolved from the on-premises network.Which two actions should you perform? Each correct answer presents part of the solution.NOTE: Each correct selection is worth one point.
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com.You need to identify which server is the PDC emulator for the domain.Solution: From Active Directory Domains and Trusts, you right-click Active Directory Domains and Trusts in the console tree, and then select OperationsMaster.Does this meet the goal?