设为首页收藏本站language 语言切换
查看: 1882|回复: 2
收起左侧

70-412 求解

[复制链接]
发表于 2015-4-22 11:06:16 | 显示全部楼层 |阅读模式
QUESTION 86
You deploy an Active Directory Federation Services (AD FS) 2.1 infrastructure. The infrastructure uses
Active Directory as the attribute store.
Some users report that they fail to authenticate to the AD FS infrastructure.
You discover that only users who run third-party web browsers experience issues.
You need to ensure that all of the users can authenticate to the AD FS infrastructure successfully.
Which Windows PowerShell command should you run?
A. Set-ADFSProperties -ProxyTrustTokenLifetime 1:00:00
B. Set-ADFSProperties -AddProxyAuthenticationRules None
C. Set-ADFSProperties -SSOLifetime 1:00:00
D. Set-ADFSProperties -ExtendedProtectionTokenCheck None


答案:A or D

QUESTION 33
Your network contains an Active Directory domain named contoso.com. The domain contains four servers
named Server1, Server2, Server3, and Server4 that run Windows Server 2012 R2. All servers have the
Hyper-V server role and the Failover Clustering feature installed.


You need to replicate virtual machines from Cluster1 to Cluster2. Which three actions should you perform?
(Each correct answer presents part of the solution. Choose three.)
A. From Hyper-V Manager on a node in Cluster2, create three virtual machines.
B. From Cluster2, add and configure the Hyper-V Replica Broker role.
C. From Failover Cluster Manager on Cluster1, configure each virtual machine for replication.
D. From Cluster1, add and configure the Hyper-V Replica Broker role.
E. From Hyper-V Manager on a node in Cluster2/ modify the Hyper-V settings.


答案:ABC or BCD


QUESTION 133
Your network contains an Active Directory domain named contoso.com. The domain contains a server
named Server1 that runs Windows Server 2012 R2.Server1 is an enterprise root certification authority (CA) for contoso.com. You need to ensure that the
members of a group named Group1 can request code signing certificates. The certificates must be issued
automatically to the members.
Which two actions should you perform? (Each correct answer presents part of the solution.
Choose two.)
A. From Certificate Templates, modify the certificate template.
B. From Certification Authority, add a certificate template to be issued.
C. From Certificate Authority, modify the CA properties.
D. From Certificate Templates, duplicate a certificate template.
E. From Certificate Authority, stop and start the Active Directory Certificate Services (AD CS) service.


答案:AB or AD


发表于 2015-4-23 13:27:56 | 显示全部楼层
These answers are provided by www.examcollection.com 70-212.examcollection.premium.exam.218q

QUESTION 86
You deploy an Active Directory Federation Services (AD FS) 2.1 infrastructure. The infrastructure uses
Active Directory as the attribute store.
Some users report that they fail to authenticate to the AD FS infrastructure.
You discover that only users who run third-party web browsers experience issues.
You need to ensure that all of the users can authenticate to the AD FS infrastructure successfully.
Which Windows PowerShell command should you run?
A. Set-ADFSProperties -ProxyTrustTokenLifetime 1:00:00
B. Set-ADFSProperties -AddProxyAuthenticationRules None
C. Set-ADFSProperties -SSOLifetime 1:00:00
D. Set-ADFSProperties -ExtendedProtectionTokenCheck None

答案: D
Explanation:
Disable the extended Protection for authentication
To disable the Extended Protection for Authentication feature in AD FS 2.0
1. On a federation server, login using the Administrator account, open the Windows PowerShell command prompt, and then type the following command:
Set-ADFSProperties ­ExtendedProtectionTokenCheck None
2. Repeat this step on each federation server in the farm.

Note: Certain client browser software, such as Firefox, Chrome, and Safari, do not support the Extended Protection for Authentication capabilities that can be used across the Windows plat- form to protect against man-in-the-middle attacks. To prevent this type of attack from occurring over secure AD FS communications, AD FS 2.0 enforces (by default) that all communications use a channel binding token (CBT) to mitigate against this threat.

Reference: Configuring Advanced Options for AD FS 2.0


QUESTION 33
Your network contains an Active Directory domain named contoso.com. The domain contains four servers
named Server1, Server2, Server3, and Server4 that run Windows Server 2012 R2. All servers have the
Hyper-V server role and the Failover Clustering feature installed.


You need to replicate virtual machines from Cluster1 to Cluster2. Which three actions should you perform?
(Each correct answer presents part of the solution. Choose three.)
A. From Hyper-V Manager on a node in Cluster2, create three virtual machines.
B. From Cluster2, add and configure the Hyper-V Replica Broker role.
C. From Failover Cluster Manager on Cluster1, configure each virtual machine for replication.
D. From Cluster1, add and configure the Hyper-V Replica Broker role.
E. From Hyper-V Manager on a node in Cluster2/ modify the Hyper-V settings.

答案:BCD
Explanation:
These are two clusters, to replicate any VM to a cluster you need to configure the Replica Broker role on each cluster the last step should be enabling replication on the VMs.


QUESTION 133
Your network contains an Active Directory domain named contoso.com. The domain contains a server
named Server1 that runs Windows Server 2012 R2.Server1 is an enterprise root certification authority (CA) for contoso.com. You need to ensure that the
members of a group named Group1 can request code signing certificates. The certificates must be issued
automatically to the members.
Which two actions should you perform? (Each correct answer presents part of the solution.
Choose two.)
A. From Certificate Templates, modify the certificate template.
B. From Certification Authority, add a certificate template to be issued.
C. From Certificate Authority, modify the CA properties.
D. From Certificate Templates, duplicate a certificate template.
E. From Certificate Authority, stop and start the Active Directory Certificate Services (AD CS) service.

答案: AD
Explanation:
First modify the certificate template in Certificate Templates, then add it in Certification Author- ity.
沙发 2015-4-23 13:27:56 回复 收起回复
回复 支持 反对

使用道具 举报

您需要登录后才可以回帖 登录 | 论坛注册

本版积分规则

QQ|Archiver|手机版|小黑屋|sitemap|鸿鹄论坛 ( 京ICP备14027439号 )  

GMT+8, 2025-4-5 18:55 , Processed in 0.092846 second(s), 24 queries , Redis On.  

  Powered by Discuz!

  © 2001-2025 HH010.COM

快速回复 返回顶部 返回列表