Best way to pass the Microsoft 70-742 exam – 100% free

What is the best way to pass the Microsoft 70-742 exam? (First: Exam practice test, Second: Lead4pass Microsoft expert.) You can get free Microsoft MCSA 70-742 exam practice test questions here. Or choose https://www.lead4pass.com/70-742.html (280 Q&As). Study hard to pass the exam easily!

Microsoft MCSA 70-742 Exam Video

Table of Contents:

Latest Microsoft MCSA 70-742 google drive

[PDF] Free Microsoft MCSA 70-742 pdf dumps download from Google Drive: https://drive.google.com/open?id=1z-4YLX55xHk9HRL327wpY62cc34TvGSa

Exam 70-742: Identity with Windows Server 2016 – Microsoft:https://www.microsoft.com/en-us/learning/exam-70-742.aspx

Skills measured

This exam measures your ability to accomplish the technical tasks listed below.

  • Install and Configure Active Directory Domain Services (AD DS) (20-25%)
  • Manage and Maintain AD DS (15-20%)
  • Create and Manage Group Policy (25-30%)
  • Implement Active Directory Certificate Services (AD CS) (10-15%)
  • Implement Identity Federation and Access Solutions (15-20%)

Who should take this exam?

Candidates for this exam manage identities using the functionalities in Windows Server 2016. Candidates install, configure, manage, and maintain Active Directory Domain Services (AD DS) as well as implement Group Policy Objects (GPOs).

Candidates should also be familiar with implementing and managing Active Directory Certificate Services (AD CS), Active Directory Federations Services (AD FS), Active Directory Rights Management Services (AD RMS), and Web Application proxy.

Latest updates Microsoft 70-742 exam practice questions

QUESTION 1
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1
that runs a Server Core installation of Windows Server 2016. Server1 is configured as an Active Directory Rights
Management Services (AD RMS) server for the domain.
You need to install the Identity Federation Support role service on Server1.
What should you do first?
A. Run the Install–WindowsFeature NET–Franework
Correct Answer: C


QUESTION 2
Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is
repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is
exactly the same in each question in this series.
Start of repeated scenario.
Your network contains an Active Directory domain named contoso.com. The domain contains a single site named Site1.
All computers are in Site1.
The Group Policy objects (GPOs) for the domain are configured as shown in the exhibit. (Click the Exhibit button.)lead4pass 70-742 exam question q2

The relevant users and client computer in the domain are configured as shown in the following table.

lead4pass 70-742 exam question q2-1

End of repeated scenario.
You are evaluating what will occur when you set user Group Policy loopback processing mode to Replace in A4.
Which GPO or GPOs will apply to User2 when the user signs in to Computer1 after loopback processing is configured?
A. A1, A5, A6 and A4
B. A3, A1, A4, and A7
C. A3, A1, A5 and A4
D. A4 only
Correct Answer: D

QUESTION 3
You have an enterprise certification authority (CA) named CA1.
You have a certificate template named UserAutoEnroll that is based on the User certificate template. Domain users are
configured to autoenroll for UserAutoEnroll. A user named User1 has an email address defined in Active Directory. A
user
named User2 does not have an email address defined in Active Directory.
You discover that User1 was issued a certificate based on UserAutoEnroll template automatically.
A request by user2 for a certificate based on the UserAutoEnroll template fails.
You need to ensure that all users can autoenroll for certificated based on the UserAutoEnroll template.
Which setting should you configure from the properties on the UserAutoEnroll certificate template?
A. Issuance Requirements
B. Request Handling
C. Cryptography
D. Subject Name
Correct Answer: D

QUESTION 4
Your network contains an Active Directory forest named contoso.com. The forest contains 10 domains. The root domain
contains a global catalog server named DC1.
You remove the global catalog server role from DC1.
You need to decrease the size of the Active Directory database on DC1.
Solution: You restart DC1 in Directory Services Repair Mode. You run compact.exe, and then restart DC1.
Does this meet the goal?
A. Yes
B. No
Correct Answer: B
You need to run ntdsutil.exe with the `compact to\\’ option.
References: https://theitbros.com/active-directory-database-compact-defrag/

QUESTION 5
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution. Determine whether the solution meets the stated goals.
Your network contains an Active Directory domain named contoso.com.
The domain contains a DNS server named Server1. All client computers run Windows 10.
On Server1, you have the following zone configuration.lead4pass 70-742 exam question q5

You need to ensure that all of the client computers in the domain perform DNSSEC validation for the fabrikam.com
namespace.
Solution: From a Group Policy object (GPO) in the domain, you add a rule to the Name Resolution Policy Table
(NRPT).
Does this meet the goal?
A. Yes
B. No
Correct Answer: A
The NRPT stores configurations and settings that are used to deploy DNS Security Extensions (DNSSEC), and also
stores information related to DirectAccess, a remote access technology. Note: The Name Resolution Policy Table
(NRPT) is a new feature available in Windows Server 2008 R2. The NRPT is a table that contains rules you can
configure to specify DNS settings or special behavior for names or namespaces. When performing DNS name
resolution, the DNS Client service checks the NRPT before sending a DNS query. If a DNS query or response matches
an entry in the NRPT, it is handled according to settings in the policy. Queries and responses that do not match an
NRPT entry are processed normally.
References: https://technet.microsoft.com/en-us/library/ee649207(v=ws.10).aspx

QUESTION 6
Your network contains an Active Directory domain named contoso.com. The domain contains two servers named
Server1 and Server2 that run Windows Server 2016.
Server1 has Microsoft System Center 2016 Virtual Machine Manager (VMM) installed.
Server2 has IP Address Management (IPAM) installed.
You create a domain user named User1.
You need to integrate IPAM and VMM. VMM must use the account of User1 to manage IPAM. The solution must use
the principle of least privilege.
What should you do on each server? To answer, select the appropriate options in the answer area
Hot Area:lead4pass 70-742 exam question q6

Correct Answer:

lead4pass 70-742 exam question q6-1

References: https://technet.microsoft.com/en-us/library/dn783349(v=ws.11).aspx

QUESTION 7
Your network contains an Active Directory domain named contoso.com.
The domain contains a read-only domain controller (RODC) named RODC1.
You need to retrieve a list of accounts that have their password cached on RODC1.
Which command should you run?
A. repadmin.exe
B. ntdsutil.exe
C. dcdiag.exe
D. netdom.exe
Correct Answer: A
To list the user and computer accounts for the passwords that are cached on the RODC, run the following command:
repadmin /prp view reveal
References https://support.microsoft.com/en-za/help/2028962/the-active-directory-users-and-computers-mmc-snap-in-does-not-list-all

QUESTION 8
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear in the review screen.
Your network contains an Active Directory domain named contoso.com. The domain contains a server named Server1
that runs Windows Server 2016. The computer account for Server1 is in organizational unit (OU) named OU1.
You create a Group Policy object (GPO) named GPO1 and link GPO1 to OU1.
You need to add a domain user named User1 to the local Administrators group on Server1.
Solution: From the Computer Configuration node of GPO1, you configure the Local Users and Groups preference.
Does this meet the goal?
A. Yes
B. No
Correct Answer: A
to add uses to the Local Administrator built In group on all the computers using Group Policy, open group policy editor
and create or edit existing GPO. Go to User Configuration -> Preferences -> Control Panel Settings -> Local users and
groups.
References: https://www.ntweekly.com/2015/01/10/how-to-add-users-to-local-admin-group-using-group-policy-windows-server-2012/

QUESTION 9
HOTSPOT
Your network contains an Active Directory domain named contoso.com.
You open Group Policy Management as shown in the Group Policy Management exhibit.
(Click the Exhibit button.)lead4pass 70-742 exam question q9

A user named User1 is in OU1. A computer named Computer2 is in OU2.
The settings of GPO1 are configured as shown in the GPO1 exhibit. (Click the Exhibit button.)

lead4pass 70-742 exam question q9-1

The settings of GPO2 are configured as shown in the GPO2 exhibit. (Click the Exhibit button.)

lead4pass 70-742 exam question q9-2

For each of the following statements, select Yes if the statement is true. Otherwise, select No. NOTE: Each correct
selection is worth one point.
Hot Area:

lead4pass 70-742 exam question q9-3

Correct Answer:

lead4pass 70-742 exam question q9-4

QUESTION 10
HOTSPOT
Your network contains an Active Directory domain named contoso.com. The domain contains an administrative
workstation named WKS1 that runs Windows 10.
You have a Group Policy object (GPO) named GPO1.
You download a custom administrative template that contains the following files:
App1.admx App1.adml You need to ensure that you can configure GPO1 by using the settings in the new administrative
template.
To where should you copy each file? To answer, select the appropriate options in the answer area. NOTE: Each correct
selection is worth one point.
Hot Area:lead4pass 70-742 exam question q10

Correct Answer:

lead4pass 70-742 exam question q10-1

QUESTION 11
Your company has an office in Montreal. The network contains an Active Directory domain named contoso.com.
You have an organizational unit (OU) named Montreal that contains all of the users accounts for the users in the
Montreal office. An office manager in the Montreal office knows each user personally.
You need to ensure that the office manager can provide the users with a new password if the users forget their
password.
What should you do?
A. Create a Group Policy object (GPO) and link the GPO to the Montreal OU. Assign the office manager the Apply
Group Policy permission on the GPO. Configure the Password Policy settings of the GPO.
B. From the Security settings of each user account in the Montreal OU, assign the office manager the Change
Password permission.
C. From the Security settings of the Montreal OU, assign the office manager the Reset Password permission.
D. Create a Group Policy object (GPO) and link the GPO to the OU of the domain. Filter the GPO to the Montreal users.
Assign the office manager the Apply Group Policy permission on the GPO. Configure the Password Policy settings of
the GPO.
Correct Answer: C

QUESTION 12
Your network contains an Active Directory domain named contoso.com.
You need to view a list of all the domain user accounts that are enabled. But whose users have not signed in during the
last 30 days.
Which command should you run? To answer, select the appropriate options in the answer area.
NOTE: Each correct selection is worth one point.
Hot Area:lead4pass 70-742 exam question q12

Correct Answer:

lead4pass 70-742 exam question q12-1

QUESTION 13
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains
a unique solution that might meet the stated goals. Some question sets might have more than one correct solution,
while
others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not
appear in the review screen.
Your network contains an Active Directory forest named contoso.com.
You need to identify which server is the schema master.
Solution: From Windows PowerShell, you run Get-ADDomainController –Discover –Service 2.
Does this meet the goal?
A. Yes
B. No
Correct Answer: B
This command gets a global catalog in the current forest using Discovery.
References: https://docs.microsoft.com/en-us/powershell/module/addsadministration/get-addomaincontroller?view=win10-ps

Related 70-742 Popular Exam resources

titlepdf youtube Microsoft lead4pass Lead4Pass Total Questions
Microsoft MCSA lead4pass 70-742 dumps pdf lead4pass 70-742 youtube Exam 70-742: Identity with Windows Server 2016 – Microsoft https://www.lead4pass.com/70-742.html 280 Q&A
lead4pass 70-740 dumps pdf lead4pass 70-740youtube Installation, Storage, and Compute with Windows Server 2016 https://www.lead4pass.com/70-740.html 337 Q&A
lead4pass 70-741 dumps pdf lead4pass 70-741 youtube Exam 70-741: Networking with Windows Server 2016 – Microsoft https://www.lead4pass.com/70-741.html 259 Q&A
lead4pass 70-743 dumps pdf lead4pass 70-743 youtube Upgrading Your Skills to MCSA: Windows Server 2016 https://www.lead4pass.com/70-743.html 267 Q&A

Lead4Pass Year-round Discount Code

lead4pass coupon

What are the advantages of Lead4pass?

Lead4pass employs the most authoritative exam specialists from Microsoft, Cisco, CompTIA, IBM, EMC, etc. We update exam data throughout the year. Highest pass rate! We have a large user base. We are an industry leader! Choose Lead4Pass to pass the exam with ease!

why lead4pass

Summarize:

It’s not easy to pass the Microsoft 70-742 exam, but with accurate learning materials and proper practice, you can crack the exam with excellent results. Lead4pass provides you with the most relevant learning materials that you can use to help you prepare.

ˆ Back To Top