最新的Microsoft Configuring Windows Server Hybrid Advanced Services - AZ-801免費考試真題
You are planning the implementation of Cluster2 to support the on-premises migration plan.
You need to ensure that the disks on Cluster2 meet the security requirements.
In which order should you perform the actions? To answer, move all actions from the list of actions to the answer area and arrange them in the correct order.

Exhibit
Exhibit
You need to ensure that the disks on Cluster2 meet the security requirements.
In which order should you perform the actions? To answer, move all actions from the list of actions to the answer area and arrange them in the correct order.

Exhibit
Exhibit
正確答案:

Explanation:
Detailed Explanation
BitLocker can only be enabled on a Cluster Shared Volume after the underlying disk has already been added to the cluster and converted to a CSV, because BitLocker on a CSV disk must be enabled while the disk is taken offline to cluster I/O. The supported sequence is: first add the disk resource to the cluster, then convert it to a CSV, then place the CSV disk in maintenance mode (which takes it offline to other cluster nodes so it can be safely encrypted), then enable BitLocker on the volume while it is in maintenance mode, and finally update the volume ' s BitLockerProtectorInfo property so that Failover Clustering registers the unlock protector and can automatically unlock the volume on every node after maintenance mode ends. Performing the steps in any other order either fails outright (BitLocker cannot be enabled on a CSV that is still online to the cluster) or leaves the other cluster nodes unable to bring the volume back online after encryption.
Official Reference
Add BitLocker Drive Encryption to a cluster disk - https://learn.microsoft.com/en-us/windows-server
/failover-clustering/bitlocker

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an on-premises server named Server1 that runs Windows Server.
You have a Microsoft Sentinel instance.
You add the Windows Firewall data connector in Microsoft Sentinel.
You need to ensure that Microsoft Sentinel can collect Windows Firewall logs from Server1.
Solution: You install the Log Analytics agent on Server1
Does this meet the goal?
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You have an on-premises server named Server1 that runs Windows Server.
You have a Microsoft Sentinel instance.
You add the Windows Firewall data connector in Microsoft Sentinel.
You need to ensure that Microsoft Sentinel can collect Windows Firewall logs from Server1.
Solution: You install the Log Analytics agent on Server1
Does this meet the goal?
正確答案: A
說明:(僅 Fast2test 成員可見)
Your network contains an Active Directory Domain Services (AD DS) domain The domain contains an organizational unit (OU) named OU1 and a user named User1.
You plan to deploy a Hyper V failover cluster named Cluster1.
You need to prestage the account for Cluster! and ensure that User1 can deploy Cluster1. The solution must follow the principle of least privilege.
Which action should you perform, and which permissions should you grant to User1 for Cluster1? To answer, select the appropriate options in the answer area NOTE: Each correct selection is worth one point.

You plan to deploy a Hyper V failover cluster named Cluster1.
You need to prestage the account for Cluster! and ensure that User1 can deploy Cluster1. The solution must follow the principle of least privilege.
Which action should you perform, and which permissions should you grant to User1 for Cluster1? To answer, select the appropriate options in the answer area NOTE: Each correct selection is worth one point.

正確答案:

Explanation:
CORRECTED ANSWER: Action: Create a new computer account named Cluster1, and then disable the account. Permissions: grant User1 Full Control on the prestaged Cluster1 computer object.
Detailed Explanation
Prestaging a cluster name object involves creating a computer account for Cluster1 in AD DS and then disabling it, which lets the cluster creation process confirm during setup that the prestaged account is not already in active use before it takes ownership of it; leaving the account enabled bypasses this safety check.
To let User1 create the cluster without granting broader administrative rights, User1 is given Full Control permission specifically on that prestaged Cluster1 computer object rather than on the OU or on user rights more broadly, which satisfies the principle of least privilege while still allowing User1 to complete cluster creation.
Official Reference
Prestage cluster computer objects in AD DS - https://learn.microsoft.com/en-us/windows-server/failover- clustering/prestage-cluster-adds
You have a failover cluster named Cluster1 that has the following configurations:
* Number of nodes: 6
* Quorum: Dynamic quorum
* Witness: File share, Dynamic witness
What is the maximum number of nodes that can fail simultaneously while maintaining quorum?
* Number of nodes: 6
* Quorum: Dynamic quorum
* Witness: File share, Dynamic witness
What is the maximum number of nodes that can fail simultaneously while maintaining quorum?
正確答案: A
說明:(僅 Fast2test 成員可見)
You need to use a comma-separated value (CSV) file to import server inventory to Azure Migrate. Which fields are mandatory for each entry in the CSV file?
正確答案: A
說明:(僅 Fast2test 成員可見)
Your on-premises network is connected to Azure.
You have an Azure subscription. The subscription contains a virtual machine named VM1 that runs Windows Server.
You need to identify the latency between the on-premises network and VM1.
Which Azure Network Watcher settings should you use?
You have an Azure subscription. The subscription contains a virtual machine named VM1 that runs Windows Server.
You need to identify the latency between the on-premises network and VM1.
Which Azure Network Watcher settings should you use?
正確答案: C
說明:(僅 Fast2test 成員可見)
You have an on-premises Active Directory Domain Services (AD DS) domain that contains the resources shown in the following table.
The domain contains the domain controllers shown in the following table.
You configure a site link between Site1 and Site2 and set the replication interval to 20 minutes.
At 10:00 AM, connectivity between Site1 and Site2 fails.
Administrators perform the actions shown in the following table.
At 10:30 AM, connectivity between Site1 and Site2 is restored.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth dim point

Exhibit

Exhibit

Exhibit

The domain contains the domain controllers shown in the following table.
You configure a site link between Site1 and Site2 and set the replication interval to 20 minutes.
At 10:00 AM, connectivity between Site1 and Site2 fails.
Administrators perform the actions shown in the following table.
At 10:30 AM, connectivity between Site1 and Site2 is restored.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth dim point

Exhibit

Exhibit

Exhibit

正確答案:

Explanation:
CORRECTED ANSWER: Statement 1 (At 11:30 AM, User1 and User2 are members of Group1): No.
Statement 2 (At 11:30 AM, the phone number of User2 is 333-333): Yes. Statement 3 (At 11:30 AM, User3 is deleted): No.
Detailed Explanation
Group membership is stored as a linked, multivalued attribute, so DC2 ' s removal of User1 from Group1 and DC1 ' s addition of User2 to Group1 apply to two different values and merge without conflict once the 10:00-
10:30 partition heals; by 11:30 AM (well past the 20-minute replication interval), Group1 has converged to contain only User2, so the claim that both User1 and User2 are members is false. For the single-valued telephone-number attribute, Active Directory resolves a genuine conflict by comparing each domain controller ' s local originating-write version number for that attribute, using timestamp only as a tiebreaker when versions are equal; because DC1 wrote the attribute twice during the outage (222-222, then 333-333) while DC2 wrote it only once (444-444), DC1 ' s value carries the higher version and wins the conflict regardless of DC2 ' s later wall-clock time, so User2 ' s phone number converges to 333-333. For User3, DC1 moved it into OU1 while DC2, still seeing OU1 as empty, deleted OU1; when the two changes replicate together, Active Directory detects the now-orphaned User3 object and relocates it into the domain ' s LostAndFound container rather than deleting it, so User3 still exists at 11:30 AM.
Official Reference
How the Active Directory replication model works - https://learn.microsoft.com/en-us/previous-versions
/windows/it-pro/windows-server-2003/cc772726(v=ws.10)
You have an Azure virtual machine named VM1.
You enable Microsoft Defender SmartScreen on VM1.
You need to ensure that the SmartScreen messages displayed to users are logged.
What should you do?
You enable Microsoft Defender SmartScreen on VM1.
You need to ensure that the SmartScreen messages displayed to users are logged.
What should you do?
正確答案: D
說明:(僅 Fast2test 成員可見)
Your network contains an Active Directory Domain Services (AD DS) domain. The domain contains the servers shown in the following table.
Server3 contains a share named Share1.
On Server1, DHCP has the following configurations:
Conflict detection attempts: 3
An IPv4 scope named Scope1 that has the following settings:
1. Address Pool: 172.16.10.100 - 172.16.10.130
2. Address Leases:
* 172.16.10.100 computer1.contoso.com
* 172.16.10.101 computer2.contoso.com
Reservations: 172.16.10.101 computer2.contoso.com
Policies: Policy1
You perform the following actions:
* On Server1, you run
Export-DhcpServer -File \\Server3\Share1\File1.xml.
* On Server2, you run
Import-DhcpServer -File \\Server3\Share1\File1.xml
-BackupPath \\Server3\Share1.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Exhibit

Exhibit
Server3 contains a share named Share1.
On Server1, DHCP has the following configurations:
Conflict detection attempts: 3
An IPv4 scope named Scope1 that has the following settings:
1. Address Pool: 172.16.10.100 - 172.16.10.130
2. Address Leases:
* 172.16.10.100 computer1.contoso.com
* 172.16.10.101 computer2.contoso.com
Reservations: 172.16.10.101 computer2.contoso.com
Policies: Policy1
You perform the following actions:
* On Server1, you run
Export-DhcpServer -File \\Server3\Share1\File1.xml.
* On Server2, you run
Import-DhcpServer -File \\Server3\Share1\File1.xml
-BackupPath \\Server3\Share1.
For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.

Exhibit

Exhibit
正確答案:

Explanation:
CORRECTED ANSWER: Statement 1 (On Server2, Conflict detection attempts is set to 3): No. Statement 2 (On Server2, there is a reservation for computer2.contoso.com): Yes. Statement 3 (On Server2, Policy1 is applied to Scope1): Yes.
Detailed Explanation
Export-DhcpServer and Import-DhcpServer transfer the DHCP database ' s configuration objects-scopes, exclusion ranges, reservations, scope and server options, option/class definitions, and policies-as part of the exported XML, and reservations specifically travel with the scope configuration regardless of whether the - Leases switch is used, since -Leases only controls whether active client lease records are included. Conflict detection attempts, however, is a server-level behavioral setting (the number of ping tests the DHCP service performs before offering an address) that is configured and stored separately from the DHCP database ' s scope/option data, and it is not part of what these cmdlets migrate, so Server2 retains its own prior conflict detection configuration rather than inheriting Server1 ' s value of 3. DHCP policies such as Policy1 are scope- level configuration objects and are carried over with their associated scope during the import, so Policy1 remains applied to Scope1 on Server2 after the import completes.
Official Reference
Export-DhcpServer (DhcpServer) - https://learn.microsoft.com/en-us/powershell/module/dhcpserver/export- dhcpserver