AZ-800 Exam Question 51

Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain contains a DNS server named Server1. Server1 hosts a DNS zone named fabrikam.com that was signed by DNSSEC.
You need to ensure that all the member servers in the domain perform DNSSEC validation for the fabrikam.com namespace.
What should you do?
  • AZ-800 Exam Question 52

    Your network contains an Active Directory Domain Services (AD DS) forest named contoso.com. The forest contains a child domain named east.contoso.com and the servers shown in the following table.

    You need to create a folder for the Central Store to manage Group Policy template files for the entire forest.
    What should you name the folder, and on which server should you create the folder? To answer, select the appropriate options in the answer area.
    NOTE: Each correct selection is worth one point.

    AZ-800 Exam Question 53

    You have a server named Server1 that has Windows Admin Center installed. The certificate used by Windows Admin Center was obtained from a certification authority (CA).
    The certificate expires.
    You need to replace the certificate.
    Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.

    AZ-800 Exam Question 54

    Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com.
    You need to identify which server is the PDC emulator for the domain.
    Solution: From Active Directory Sites and Services, you right-click Default-First-Site-Name in the console tree, and then select Properties.
    Does this meet the goal?
  • AZ-800 Exam Question 55

    Your network contains two Active Directory Domain Services (AD DS) forests named contoso.com and fabrikam.com. Contoso.com contains three child domains named amer.contoso.com, apac.contoso.com, and emea.contoso.com. Fabrikam.com contains a child domain named apac.fabrikam.com. A bidirectional forest trust exists between contoso.com and fabrikam.com.
    You need to provide users in the contoso.com forest with access to the resources in the fabrikam.com forest.
    The solution must meet the following requirements:
    * Users in contoso.com must only be added directly to groups in the contoso.com forest.
    * Permissions to access the resources in fabrikam.com must only be granted directly to groups in the fabrikam.com forest.
    * The number of groups must be minimized.
    Which type of groups should you use to organize the users and to assign permissions? To answer, drag the appropriate group types to the correct requirements. Each group type may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
    NOTE: Each correct selection is worth one point.