Proper study guides for 70-742 Identity with Windows Server 2021 certified begins with preparation products which designed to deliver the by making you pass the 70-742 test at your first time. Try the free right now.

Online Microsoft 70-742 free dumps demo Below:

NEW QUESTION 1
Your network contains an Active Directory domain named contos.com.
You need to create a central store for Group Policy administrative templates. What should you use?

  • A. Group Policy Management Console (GPMC)
  • B. Copy-Item
  • C. Group Policy Management Editor
  • D. Copy-GPO

Answer: B

NEW QUESTION 2
Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
Start of repeated scenario.
Your network contains an Active Directory domain named contoso.com. The domain contains a single site named Site1. All computers are in Site1.
The Group Policy objects (GPOs) for the domain are configured as shown in the exhibit. (Click the Exhibit button.)
70-742 dumps exhibit
The relevant users and client computer in the domain are configured as shown in the following table.
70-742 dumps exhibit
End of repeated scenario.
You are evaluating what will occur when you set User Group Policy loopback processing mode to Replace in A7.
Which GPO or GPOs will apply to User2 when the user signs in to Computer1 after loopback processing is configured?

  • A. A1 and A7 only
  • B. A3. Al, A5, A6, and A7
  • C. A3, A5, A1, and A7 only
  • D. A7 only

Answer: D

NEW QUESTION 3
Your network contains an Active Directory domain named contoso.com. The domain contains a domain controller named DC1.
You create and link a Group Policy object (GPO) named SalesAppGPO to an organizational unit (OU) named SalesOU. All the computer accounts are in the Computers container. All the user accounts of the users in the sales department are in SalesOU.
You have a line-of-business application named SalesApp that is installed by using a Windows Installer package.
You need to make SalesApp available to only the sales department users.
Which three actions should you perform in sequence? To answer move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.
70-742 dumps exhibit

    Answer:

    Explanation: 70-742 dumps exhibit

    NEW QUESTION 4
    You have a Nano Server named Nano1 that runs Windows Server 2021. Nano1 is deployed to a virtual machine and is a member of a workgroup.
    You need to join Nano1 to a domain named contoso.com.
    Which two commands should you run? To answer, select the appropriate options in the answer area. NOTE: Each correct selection is worth one point.
    70-742 dumps exhibit

      Answer:

      Explanation: 70-742 dumps exhibit

      NEW QUESTION 5
      Your company has two offices. The offices are located in Montreal and Seattle. The network contains an Active Directory forest named contoso.com.
      The forest contains three domain controllers configured as shown in the following table.
      70-742 dumps exhibit
      The company physically relocates Server2 from the Montreal office the Seattle office.
      You discover that both Server1 and Server2 authenticate users who sign in to the client computers in the Montreal office. Only Server3 authentications users who sign in to the computers in the Seattle office.
      You need to ensure that Server2 authenticates the users in the Seattle office during normal network operations. What should you do?

      • A. From Windows Power Shell, run the Move-AD Directory Server cmdlet.
      • B. From Active Directory Users and Computers, modify the Location property of Server2.
      • C. From Windows PowerShell, run the Set-ADReplicationSite cmdlet.
      • D. From Network Connections on Server2, modify the Internet Protocol Version 4 (TCP/IPv4) configuration.

      Answer: C

      NEW QUESTION 6
      Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
      After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
      You deploy a new Active Directory forest.
      You need to ensure that you can create a group Managed Service Account (gMSA) for multiple member servers.
      Solution: You configure Kerberos constrained delegation on the computer account of each member server. Does this meet the goal?

      • A. Yes
      • B. No

      Answer: B

      NEW QUESTION 7
      Your network contains an Active Directory domain named contoso.com. The domain contains an Active Directory Federation Services {AD FS) server named Server1.
      On a standalone server named Server2, you install and configure the Web Application Proxy.
      You have an internal web application named WebApp1. AD FS has a relying party trust for WebApp1. You need to provide external users with access to WebApp1. Authentication to WebApp1 must use AD FS
      pre-authentication.
      Which tool should you use to publish WebApp1?

      • A. Remote Access Management on Server1
      • B. AD FS Management on Server2
      • C. Remote Access Management on Server2
      • D. Routing and Remote Access on Server1
      • E. AD FS Management on Server1.

      Answer: C

      Explanation: References:
      https://docs.microsoft.com/en-us/windows-server/remote/remote-access/web-application-proxy/publishing-appli

      NEW QUESTION 8
      Your network contains an Active Directory domain named contoso.com. The domain contains a user named User1, a group named Group1, and an Organizational unit (OU) named OU1.
      You need to enable User1 to link Group Policies to OU1.
      Solution: From Active Directory Users and Computers, you add User1 to the Group Policy Creator Owner group.
      Does this meet the goal?

      • A. Yes
      • B. No

      Answer: B

      NEW QUESTION 9
      A technician named Tech1 is assigned the task of joining the laptops to the domain. The computer accounts of each laptop must be in an organizational unit (OU) that is associated to the department of the user who will use that laptop. The laptop names must start with four characters indicating the department followed by a
      four-digit number
      Tech1 is a member of the Domain Users group only. Tech1 has the administrator logon credentials for all the laptops.
      You need Tech1 to join the laptops to the domain. The solution must ensure that the laptops are named
      correctly, and that the computer accounts of the laptops are in the correct OUs.
      Solution: You script the creation of files for an offline domain join, and then you give the files to Tech1. You instruct Tech1 to sign in to each laptop, and then to run djoin.exe.
      Does this meet the goal?

      • A. Yes
      • B. No

      Answer: A

      NEW QUESTION 10
      Your network contains an Active Directory domain named contoso.com. The relevant objects in the domain are configured as shown in the following table.
      70-742 dumps exhibit
      You have the following configurations:
      User1 is in OU1 and is a member of Group1 and Group2
      User2 is in OU2 and is a member of Group1 and Group3
      GPO1 is linked to OU1.
      Server1 has three shares named Share1, Share2, and Share3. The Domain Users group permissions to all three shares.
      GPO1 is configured as shown in the exhibit. (Click the Exhibit button.)
      70-742 dumps exhibit
      For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct selection is worth one point.
      70-742 dumps exhibit

        Answer:

        Explanation: 70-742 dumps exhibit

        NEW QUESTION 11
        You are deploying a web application named WebApp1 to your internal network. WebApp1 is hosted on a server named Web1 that runs Windows Server 2021.
        You deploy an Active Directory Federation Services (AD FS) infrastructure and a Web Application Proxy to provide access to WebApp1 for remote users.
        You need to ensure that Web1 can authenticate the remote users. What should you do?

        • A. Publish WebApp1 by using pass-through preauthentication.
        • B. Publish WebApp 1 as a Remote Desktop Gateway (RD Gateway) application in the Web Application Proxy.
        • C. Publish WebApp1 by using AD FS preauthentication.
        • D. Publish WebApp1 by using client certificate preauthentication.

        Answer: A

        NEW QUESTION 12
        Your network contains an Active Directory domain named contoso.com. Domain users use smart cards to sign in to their client computer.
        Some users report that it takes a long time to sign in to their computer and that the logon attempt times out, so they must restart the sign in process.
        You discover that the issues to checking the certificate revocation list (CRL) of the smart card certificates. You need to resolve the issue without diminishing the security of the smart card logons.
        What should you do?

        • A. From the properties of the smart card's certificate template, modify the Request Handling settings.
        • B. From the properties of the smart card's certificate template, modify the Issuance Requirements settings.
        • C. Deactivate certificate revocation checks on the computers.
        • D. Implement an Online Certification Status Protocol (OCSP) responder.

        Answer: D

        NEW QUESTION 13
        You network contains an Active Directory domain named contoso.com. The domain contains an enterprise certification authority (CA) named CA1.
        You have a test environment that is isolated physically from the corporate network and the Internet.
        You deploy a web server to the test environment. On CA1, you duplicate the Web Server template, and you name the template Web_Cert_Test.
        For the web server, you need to request a certificate that does not contain the revocation information of CA1. What should you do first?

        • A. From the properties of CA1, allow certificates to be published to the file system.
        • B. From the properties of CA1, select Restrict enrollment agents, and then add Web_Cert_Test to the restricted enrollment agent.
        • C. From the properties of Web_Cert_Test, assign the Enroll permission to the guest account.
        • D. From the properties of Web_Cert_Test, set the Compatibility setting of CA1 to Windows Server 2021.

        Answer: D

        NEW QUESTION 14
        Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
        Start of repeated scenario.
        Your network contains an Active Directory domain named contoso.com. The domain contains a single site named Site1. All computers are in Site1.
        The Group Policy objects (GPOs) for the domain are configured as shown in the exhibit. (Click the Exhibit button.)
        70-742 dumps exhibit
        The relevant users and client computer in the domain are configured as shown in the following table.
        70-742 dumps exhibit
        End of repeated scenario.
        You are evaluating what will occur when you remove the Authenticated Users group from the Security Filtering settings of A5.
        Which GPO or GPOs will apply to User1 when the user signs in to Computer1 after Security Filtering is configured?

        • A. A1 and A7 only
        • B. A3 and A1 only.
        • C. A3, A1, A6 and A7
        • D. A7 only

        Answer: A

        NEW QUESTION 15
        Your network contains an Active Directory domain named contoso.com.
        The user account for a user named User1 is in an organizational unit (OU) named OU1. You need to enable User1 to sign in as user1@adatum.com.
        Solution: From Active Directory Users and Computers, you set the E-mail property of User1 to user1@adatum.com.
        Does this meet the goal?

        • A. Yes
        • B. No

        Answer: B

        NEW QUESTION 16
        Your network contains an Active Directory forest. The forest contains two domains named contoso.com and fabrikam.com. The functional level of the forest and the domains is Windows Server 2008 R2.
        You have a global group named Group1 in the contoso.com domain. Group1 contains the user accounts in contoso.com. You need to ensure that you can add the user accounts in the fabrikam.com domain to Group1. What should you do?

        • A. Run the Set-LocalGroup cmdlet.
        • B. Assign the Domain Controllers group in fabrikam.com permissions to Group1
        • C. Modify the scope of Group1 to Domain local.
        • D. Change Group1 to a distribution group.

        Answer: C

        100% Valid and Newest Version 70-742 Questions & Answers shared by Surepassexam, Get Full Dumps HERE: https://www.surepassexam.com/70-742-exam-dumps.html (New 222 Q&As)