1.
Your network contains an Active Directory domain named adatum.com. The domain contains a security group named G_Research and an organizational unit (OU) named OU_Research. All the users in the research department are members of G_Research and their user accounts are in OU_Research. You need to ensure that all the research department users change their password every 28 days and enforce a complex password that is 12 characters long. What should you do?
2.
Your network contains an Active Directory forest. The forest functional level is Windows Server 2016. The network contains Linux servers that use MIT Kerberos V5 to provide an authentication, authorization, and access service. You need to ensure that users can use their Active Directory credentials to access the resources on the Linux servers. The solution must minimize administrative effort. What should you implement?
3.
Your network contains an Active Directory domain named contoso.com. The domain functional level is Windows Server 2016. The domain contains the servers shown in the following table. The domain has several Managed Service Accounts. Server1 hosts a service named Service1 that runs in the security context of the LocalSystem account. You need to implement a group Managed Service Account to run Service1. Which two actions should you perform? Each correct answer presents part of the solution. NOTE: Each correct selection is worth one point.
4.
You network contains an Active Directory domain named contoso.com. The domain contains 1,000 desktop computers and 500 laptops. An organizational unit (OU) named OU1 contains the computer accounts for the desktop computers and the laptops. You create a Windows PowerShell script named Script1.ps1 that removes temporary files and cookies. You create a Group Policy object (GPO) named GPO1 and link GPO1 to OU1. You need to run the script once weekly only on the laptops. What should you do?
5.
Your network contains an Active Directory domain named contoso.com. You have an organizational unit (OU) named TestOU that contains test computers. You need to enable a technician named Tech1 to create Group Policy objects (GPOs) and to link the GPOs to TestOU. The solution must use the principle of least privilege. Which two actions should you perform? Each correct answer presents part of the solution.
6.
Your company recently deployed a new child domain to an Active Directory forest. You discover that a user modified the Default Domain Policy to configure several Windows components in the child domain. A company policy states that the Default Domain Policy must be used only to configure domain-wide security settings. You create a new Group Policy object (GPO) and configure the settings for the Windows components in the new GPO. You need to restore the Default Domain Policy to the default settings from when the domain was first installed. What should you do?
7.
Your network contains an Active Directory domain named contoso.com. You have an organizational unit (OU) named OU1 that contains the computer accounts from two servers and the user account of a user named User1. A Group Policy object (GPO) named GPO1 is linked to OU1. You have an application named App1 that installs by using an application installer named App1.exe. You need to publish App1 to OU1 by using Group Policy. What should you do?
8.
Your network contains an Active Directory domain named contoso.com. You have a Group Policy object (GPO) named GPO1. GPO1 is linked to an organizational unit (OU) named OU1. GPO1 contains several corporate desktop restrictions that apply to all computers. You plan to deploy a printer to the computers in OU1. You need to ensure that any user who signs in to a computer that runs Windows 10 in OU1 receives the new printer. All of the computers in OU1 must continue to apply the corporate desktop restrictions from GPO1. What should you configure?
9.
Your network contains an Active Directory domain named contoso.com. The domain contains a user named User1 and an organizational unit (OU) named OU1. You create a Group Policy object (GPO) named GPO1. You need to ensure that User1 can link GPO1 to OU1. What should you do?
10.
You network contains an active Directory domain. The domain contains 20 domain controllers. You discover that some Group Policy objects (PROs) are not being applied by all the domain controllers. You need to verify whether GPOs replicate successfully to all the domain controllers. What should you do?