Free Testking Microsoft MCTS 70-646 PRO Exam Braindump

Free Testking Microsoft MCTS 70-646 PRO Exam Braindump, 70-646 PRO: Windows Server 2008, Server Administrator Updated: August 4, 2008. The Microsoft Certified Professional (PRO) exam, Exam 70-646: PRO: Windows Server 2008, Server Administrator, became available in April 2008. This exam is available in English, Chinese (Simplified), Chinese (Traditional), French, German, Italian, Korean, Portuguese (Brazil), Russian, and Spanish.
A server administrator is responsible for the operations and day-to-day management of an infrastructure of servers for an enterprise organization. Windows server administrators manage the infrastructure, Web, and IT application servers. The Windows server administrators use scripts and batch files written by others or those that they occasionally write themselves to accomplish tasks on a regular basis. They conduct most server management tasks remotely by using Terminal Server or administration tools installed on their local workstation. A server administrator’s primary tasks include:

• Managing the server operating system, file, and directory services

• Software distribution and updates

• Profiling and monitoring assigned servers

• Troubleshooting

When you pass Exam 70-646: PRO: Windows Server 2008, Server Administrator, you earn credit toward the following certification:

• Microsoft Certified IT Professional (MCITP): Server Administrator

Preparation tools and resources
To help you prepare for this exam, Microsoft Learning recommends that you have hands-on experience with the product and that you use the following training resources. These training resources do not necessarily cover all of the topics listed in the “Skills measured” section.

Classroom training Microsoft E-Learning Microsoft Press books Practice tests
Course 6430: Planning and Administering Windows Server 2008 Servers
Collection 7245: Updating Your Windows Server 2003 Server Administrator Skills to Windows Server 2008 (16 hours; available August 2008)

Collection PRO SA 1: Implementing Windows Server 2008 Server Administration (available November 2008)

Collection PRO SA 2: Maintaining and Troubleshooting Windows Server 2008 Server Administration (available November 2008)
MCITP Self-Paced Training Kit (Exam 70-646): Windows Server 2008 Administrator

Microsoft online resources
• Windows Server 2008 – Learning Portal: Find special offers and information on training and certification.

• Product information: Visit the Windows Server 2008 Web site for detailed technology information.

• TechNet: Designed for IT professionals, this site includes how-to instructions, best practices, downloads, technical resources, newsgroups, and chats.

• MSDN: Designed for developers, the Microsoft Developer Network (MSDN) features code samples, technical articles, downloads, newsgroups, and chats.

• Microsoft Learning Community: Join newsgroups and visit community forums to connect with your peers for suggestions on training resources and advice on your certification path and studies.

Skills measured
This exam measures your ability to accomplish the technical tasks listed in the following table. The percentages indicate the relative weight of each major topic area on the exam
Skills measured by Exam 70-646
Planning for Server Deployment (19 percent)
Plan server installations and upgrades.

May include but is not limited to: Windows Server 2008 edition selection, rollback planning, Bitlocker implementation requirements

Plan for automated server deployment.

May include but is not limited to: standard server image, automation and scheduling of server deployments

Plan infrastructure services server roles.

May include but is not limited to: address assignment, name resolution, network access control, directory services, application services, certificate services

Plan application servers and services.

May include but is not limited to: virtualization server planning, availability, resilience, and accessibility

Plan file and print server roles.

May include but is not limited to: access permissions, storage quotas, replication, indexing, file storage policy, availability, printer publishing

Planning for Server Management (23 percent)
Plan server management strategies.

May include but is not limited to: remote administration, remote desktop, server management technologies, Server Manager and ServerManagerCMD, delegation policies and procedures

Plan for delegated administration.

May include but is not limited to: delegate authority, delegate Active Directory objects, application management

Plan and implement group policy strategy.

May include but is not limited to: GPO management, GPO backup and recovery, group policy troubleshooting, group policy planning

Monitoring and Maintaining Servers (20 percent)
Implement patch management strategy.

May include but is not limited to: operating system patch level maintenance, Windows Server Update Services (WSUS), application patch level maintenance

Monitor servers for performance evaluation and optimization.

May include but is not limited to: server and service monitoring, optimization, event management, trending and baseline analysis

Monitor and maintain security and policies.

May include but is not limited to: remote access, monitor and maintain NPAS, network access, server security, firewall rules and policies, authentication and authorization, data security, auditing

Planning Application and Data Provisioning (19 percent)
Provision applications.

May include but is not limited to: presentation virtualization, terminal server infrastructure, resource allocation, application virtualization alternatives, application deployment, System Center Configuration Manager

Provision data.

May include but is not limited to: shared resources, offline data access

Planning for Business Continuity and High Availability (19 percent)
Plan storage.

May include but is not limited to: storage solutions, storage management

Plan high availability.

May include but is not limited to: service redundancy, service availability

Plan for backup and recovery.

May include but is not limited to: data recovery strategy, server recovery strategy, directory service recovery strategy, object level recovery

1. Your network consists of a single Active Directory domain. All domain controllers run Windows Server
2008. All client computers run Windows Vista. You need to ensure that administrators are allowed to
install USB drives on their computers. You must prevent non-administrative users from installing USB
drives on their computers. What should you do?
A. Implement Windows BitLocker Drive Encryption (BitLocker).
B. Implement the Universal Description, Discovery, and Integration (UDDI) Services server role.
C. Use a Group Policy object (GPO) to configure device installation restrictions.
D. Use Windows Server Resource Manager (WSRM) to configure a per user resource access policy.
Answer: C
2. Your network consists of a single Active Directory forest that contains a root domain and two child
domains. All servers run Windows Server 2008.
A corporate policy has the following requirements.
All local guest accounts must be renamed and disabled.
All local administrator accounts must be renamed.
You need to recommend a solution that meets the requirements of the corporate policy.
What should you recommend?
A. Implement a Group Policy object (GPO) for each domain.
B. Implement a Group Policy object (GPO) for the root domain.
C. Deploy Network Policy and Access Services (NPAS) on all domain controllers in each domain.
D. Deploy Active Directory Rights Management Services (AD RMS) on the root domain controllers.
Answer: A
3. Your network consists of a single Active Directory forest. The forest contains three domains named
contoso.com, region1. contoso.com, and region2. contoso.com. The functional level of the three domains is
Windows Server 2008.
In contoso.com, employees from the helpdesk team are members of the Account Operators group. The
helpdesk employees are responsible for modifying the properties of user objects in contoso.com.
Employees frequently join and leave the helpdesk team.
You need to implement a solution for managing user accounts that meets the following requirements.
Enables the helpdesk employees to manage the user objects in all domains
Minimizes the administrative effort required to manage the frequent changes to the helpdesk staff
What should you do?
A. Assign Full Control permissions to the Account Operators group in contoso.com for user accounts in all
three domains.
B. Add the helpdesk user accounts to the Account Operators group in region1. contoso.com and to the
Account Operators group in region2. contoso.com.
C. Create a new global group in contoso.com named Helpdesk-group. Add the helpdesk user accounts to
Helpdesk-group. Add Helpdesk-group to the Account Operators group that is in all three domains.
D. Create a new global group in contoso.com named Helpdesk-group. Add the helpdesk user accounts to
Helpdesk-group. Add Helpdesk-group to the Accounts Operators group that is on every member server in
all three domains.
Answer: C
4. Your network contains 50 DNS servers that run Windows Server 2003. One of the DNS servers is
named Server1. Server1 has Adminpak.msi installed. Administrators use client computers that run
Windows Vista. The administrators manage the DNS servers by using a Remote Desktop Connection (RDC)
to connect to Server1. You replace the 50 DNS servers with new servers that run the Server Core
installation of Windows Server 2008. The Windows Server Core servers have the DNS server role
installed. You need to plan for the administration of the new DNS servers. The administrators must manage
the DNS server role by using a Microsoft Management Console (MMC). What should you include in your
plan?
A. Deploy Windows PowerShell to all administrators by using a Group Policy.
B. Deploy the Windows Server 2003 Adminpak.msi file to all administrators by using a Group Policy.
C. Provide remote access to the Windows Server 2008 Server Core servers.
D. Provide remote access to a Windows Server 2008 server that has the Remote Server Administration
Tools (RSAT) installed.
Answer: D
5. Your network consists of a single Active Directory domain. The network includes a branch office named Branch1. Branch1 contains a member server named Server1. Server1 runs Windows Server 2008 and
has the File Services server role installed. An organizational unit (OU) named Branch1-Servers contains
the computer objects for the servers in Branch1. A global group named Branch1?admins contains the
user accounts for the administrators. Administrators manage the shared folders on the servers in Branch1.
You need to ensure that the members of Branch1-admins can create shared folders on Server1. What
should you do?
A. Add the Branch1-admins group to the Power Users local group on Server1.
B. Add the Branch1-admins group to the Administrators local group on Server1.
C. Assign Full Control permissions on the Branch1-Servers OU to the Branch1-admins group.
D. Assign Create Shared Folders permissions on the Branch1-Servers OU to the Branch1-admins group.
Answer: B
6. Your network consists of a single Active Directory domain. The relevant portion of the Active Directory
domain is configured as shown in the following diagram.
The Staff organizational unit (OU) contains all user accounts except for the managers user accounts. The
Managers OU contains the managers user accounts and the following global groups.
Sales
Finance
Engineering
You create a new Group Policy object (GPO) named GPO1, and then link it to the Employees OU.
Users from the Engineering global group report that they are unable to access the Run command on the Start menu. You discover that the GPO1 settings are causing the issue.
You need to ensure that the users from the Engineering global group are able to access the Run command
on the Start menu.
What should you do?
A. Configure GPO1 to use the Enforce Policy option.
B. Configure Block Policy Inheritance on the Managers OU.
C. Configure Group Policy filtering on GPO1 for the Engineering global group.
D. Create a new child OU named Engineering under the Employees OU. Move the Engineering global
group to the new Engineering child OU.
Answer: C
7. Your network consists of a single Active Directory domain. You need to ensure that support technicians
can create Group Policy objects (GPOs) in the domain. You must give the support technicians a GPO that
contains the preconfigured settings that will be used to create new GPOs. What should you do?
A. Assign permissions on the Sysvol folder. Create a new Starter GPO.
B. Add the support technicians to the Group Policy Creator Owners group. Create a new Starter GPO.
C. Add the support technicians to the Account Operators group. Delegate control on the Users container.
Create an ADML file.
D. Add the support technicians to the Account Operators group. Delegate control on the Domain Controllers
organizational unit (OU). Create an ADMX file.
Answer: B
8. Your network consists of a single Active Directory domain. The functional level of the domain is Windows
Server 2008. The domain contains 200 Windows Server 2008 servers.
You need to plan a monitoring solution that meets the following requirements.
Sends a notification by e-mail to the administrator if an application error occurs on any of the servers
Uses the minimum amount of administrative effort
What should you include in your plan?
A. On one server, create event subscriptions for each server. On the server, attach tasks to the application
error events.
B. On one server, create an Event Trace Sessions Data Collector Set. On all servers, create a System
Performance Data Collector Set.
C. On all servers, create event subscriptions for one server. On all servers, attach a task for the application
error events.
D. On all servers, create a System Performance Data Collector Set. On one server, configure the report
settings for the new Data Collector set.
Answer: A
9. Your company has a main office and a branch office. All domain administrators are located in the main
office. Two support technicians are located in the branch office.
You plan to deploy a new Windows Server 2008 server in the branch office.
You need to plan for the management of the new Windows Server 2008 server. Your plan must meet the
following requirements.
Allow the support technicians to install server roles
Allow the support technicians to stop and start services
Minimize the security privileges granted to the support technicians
What should you include in your plan?
A. Add the support technicians to the Domain Admins group.
B. Assign the support technicians to the Administrators group on the new Windows Server 2008 server.
C. Configure the restricted enrollment agent on the new Windows Server 2008 server. Create a
permissions list for the support technicians.
D. Place the new Windows Server 2008 server in a new organizational unit (OU). Assign the support
technicians permission to modify objects in the new OU.
Answer: B
10. Your network consists of a single Active Directory domain. The domain contains an organizational unit
(OU) named Employees that contains all user accounts. The domain contains a global group named HR
Admins.
You need to plan for the delegation of administrative authority to meet the following requirements.
Allow HR Admins to create user accounts in the Employees OU.
Allow HR Admins to change the address attributes, the telephone number attributes, and the location
attributes for existing user accounts.
Prevent HR Admins from resetting the passwords for existing user accounts.
What should you include in your plan?
A. Move the HR Admins group to the Domain Controllers OU.
B. Add the HR Admins group to the Account Operators group.
C. Run the Delegation of Control Wizard on the Employees OU.
D. Create an OU named HR. Move the HR Admins group into the HR OU. Run the Delegation of Control
Wizard on the HR OU.
Answer: C
11. Your network contains five Windows Server 2008 servers that have Terminal Services installed.
You plan to establish a Terminal Services server farm.
You need to ensure that the server farm meets the following requirements.
New users automatically connect to the terminal server that has the fewest active sessions.
Disconnected users are redirected to the server that contains their previous session.
What should you implement?
A. Network Load Balancing (NLB)
B. Round-robin DNS
C. Terminal Services Gateway (TS Gateway)
D. Terminal Services Session Broker (TS Session Broker)
Answer: D
12. Your network contains a server that runs Windows Server 2008 and that functions as a file server. All
client computers are laptop computers that run Windows Vista. The network is not connected to the Internet.
Users in the organization save files that they want to share to a shared folder on the server. You need to
recommend a solution that allows users to access the shared files when they are disconnected from the
corporate network. What should you recommend?
A. Configure caching on the shared folder.
B. Implement Windows SharePoint Services 3. 0.
C. Install the Background Intelligent Transfer Service (BITS) server extensions.
D. Configure the Distributed File System (DFS) role service to host the shared folder.
Answer: A
13. Your network consists of a single Active Directory domain. All domain controllers run Windows Server
2008. There are five Windows Server 2003 servers that have the Terminal Server component installed. A
firewall server runs Microsoft Internet Security and Acceleration (ISA) Server 2006.
You need to create a remote access strategy for the terminal servers that meets the following requirements.
Restricts access to specific users
Minimizes the number of open ports on the firewall
Encrypts all remote connections to the terminal servers
What should you do?
A. Implement SSL bridging on the ISA Server. Require authentication on all inbound connections to the ISA
Server.
B. Implement port forwarding on the ISA Server. Require authentication on all inbound connections to the
ISA Server.
C. Upgrade a Windows Server 2003 server to Windows Server 2008. On the Windows Server 2008 server,
implement the Terminal Services Gateway (TS Gateway) role, and configure a Terminal Services resource
authorization policy (TS RAP).
D. Upgrade a Windows Server 2003 server to Windows Server 2008. On the Windows Server 2008 server,
implement the Terminal Services Gateway (TS Gateway) role, and configure a Terminal Services
connection authorization policy (TS CAP).
Answer: D
14. Your network consists of a single Active Directory forest. The network contains a server that runs
Windows Server 2008 named Server1. Server1 has the File Server role installed.
Users from the sales department use portable computers that run Windows Vista Business Edition. Users
from the sales department work from the office and from remote locations.
You need to design a data storage solution that meets the following requirements.
Users must be able to choose the documents that will be available when they are away from the
network.
Your solution must minimize the number of documents that are stored on users’ portable computers.
Your solution must minimize the time it takes for users to log on to the network.
What should you include in your design?
A. Configure offline files and enable manual caching.
B. Configure offline files and enable automatic caching.
C. Use local profiles and implement folder redirection.
D. Deploy roaming profiles and implement folder redirection.
Answer: A
15. Your company has a main office and two branch offices. Each office has a domain controller and file
servers. Your network consists of a single Active Directory domain. All servers run Windows Server 2008.
You need to plan the deployment of Distributed File System (DFS) to meet the following requirements.
Ensure that users see only the folders to which they have access
Ensure that users can access the data locally
Minimize the bandwidth required to replicate data
What should you include in your plan?
A. Deploy a stand-alone DFS namespace. Enable access-based enumeration and use DFS Replication.
B. Deploy a stand-alone DFS namespace. Enable access-based enumeration and use File Replication
Service (FRS).
C. Deploy a domain-based DFS namespace and use DFS Replication. Modify each share to be a hidden
share.
D. Deploy a domain-based DFS namespace and use File Replication Service (FRS). Modify each share to
be a hidden share.
Answer: A
1. Your organization has a computer with a Core 2 Duo processor that has the 32-bit Windows Server 2003 R2 Standard Edition operating system installed. Which of the following versions of Windows Server 2008 can this computer be upgraded to?
A. 32-bit version of Windows Server 2008 Standard Edition
B. 64-bit version of Windows Server 2008 Standard Edition
C. 32-bit version of Windows Server 2008 Datacenter Edition
D. 64-bit version of Windows Server 2008 Enterprise Edition
Answer: A

2. You are a Windows Server 2008 professional who has two years experience in using Windows Server 2008. You also have experience in using Windows Vista and the Windows server system. Your routine job is responsible for the server builds and configuration. Currently you are employed as a sever administrator in an international company which is named Wiikigo. You are in charge of the company network and provide technical support for your company. There are 10 Windows Server 2008 servers with Terminal Services installed contained in the company network. Now you receive an order from the CIO, you are asked to make a plan establishing a Terminal Services server farm. According to the requirement of the CIO, when you try to achieve this, not only the terminal server with the fewest active sessions can be connected by the new users automatically, but also the server with their previous session contained can redirect the disconnected users. To accomplish
this task, what action should be performed?
A. Round-robin DNS would be implemented to accomplish this task.
B. Terminal Services Gateway (TS Gateway) would be implemented to accomplish this task.
C. Terminal Services Session Broker (TS Session Broker) would be implemented to accomplish this task.
D. Network Load Balancing (NLB) would be implemented to accomplish this task.
Answer: C

3. You are a Windows Server 2008 professional who has two years experience in using Windows Server 2008. You also have experience in using Windows Vista and the Windows server system. Your routine job is responsible for the server builds and configuration. Currently you are employed as a sever administrator in an international company which is named Wiikigo. You are in charge of the company network and provide technical support for your company. There is a head office and a branch office in your company. The head office has all domain administrators while the branch office has two support technicians. Now you receive an order from the Company CIO, you are asked to make a plan for the deployment of a new Windows Server 2008 server in the branch office. According to the requirement of the CIO, when you try to achieve this, the support technicians should be allowed to install server roles and to stop and start services. What is more, you must use as
little security privileges granted to the support technicians as possible. Of the following options, what should be included in your plan?
A. In your plan, the restricted enrollment agent would be configured on the new Windows Server 2008 server and a permissions list would be created for the support technicians.
B. In your plan, the new Windows Server 2008 server would be placed in a new organizational unit (OU) and the support technicians permission would be assigned to modify objects in the new OU.
C. In your plan, the restricted enrollment agent would be configured on the new Windows Server 2008 server and the support technicians permission would be assigned to modify objects in the new OU.
D. In your plan, the support technicians would be added to the Domain Admins group.
E. In your plan, the support technicians would be assigned to the Administrators group on the new Windows Server 2008 server.
Answer: E

4. What new feature in Windows Server 2008 DFS allows users to see only files and folders on a file server that they have permission to access?
A. File screen
B. Access-based enumeration
C. Soft quota
D. Folder target
Answer: B

5. You are a Windows Server 2008 professional who has two years experience in using Windows Server 2008. You also have experience in using Windows Vista and the Windows server system. Your routine job is responsible for the server builds and configuration. Currently you are employed as a sever administrator in an international company which is named Wiikigo. You are in charge of the company network and provide technical support for your company. There is a single Active Directory domain in the company network. Now you receive an order form your manager, you are asked to make sure that in the domain, Group Policy objects (GPOs) can be created by support technicians. New GPOs will be created by using preconfigured settings. To create (GPOs), the support technicians must be provided with a GPO with the preconfigured settings contained. What action shouldd be performed to achieve this goal?
A. Before creating a new Starter GPO, the support technicians should be added to the Account Operators group.
B. Before creating a new Starter GPO, permissions should be assigned on the Sysvol folder.
C. Before creating a new Starter GPO, the support technicians should be added to the Group Policy Creator Owners group.
D. Before creating an ADML file, the support technicians should be added to the Account Operators group and control on the Users container should be delegated.
E: Before creating an ADML file, the support technicians should be added to the Account Operators group and control on the Domain Controllers organizational unit (OU) should be
delegated.
Answer: C

| January 21st, 2010 | Posted in Microsoft |

Comments are closed.