Geekcert Microsoft 70-743 the Most Up to Date VCE And PDF Instant Download

Do not worry about that if you are stuck in the MCSA Hotest 70-743 vce exam difficulties, Geekcert will assist you all your way through the MCSA Latest 70-743 pdf dumps Upgrading Your Skills to MCSA Windows Server 2016 exam with the most update MCSA Jan 15,2022 Newest 70-743 QAs PDF and VCE dumps. Geekcert exam Latest 70-743 QAs preparation materials are the most comprehensive material, covering every key knowledge of Newest 70-743 vce Upgrading Your Skills to MCSA Windows Server 2016 exam.

70-743 certification – 70-743 certifications. get your 70-743 certification easily. Geekcert expert team is ready to help you. latest Geekcert 70-743 exam dumps pdf and vce free download. 70-743 exam academy – free online 70-743 exam study guide resource for 70-743 associate specialty exams. get your 70-743 certification easily. Geekcert expert team is ready to help you.

We Geekcert has our own expert team. They selected and published the latest 70-743 preparation materials from Microsoft Official Exam-Center: https://www.geekcert.com/70-743.html

The following are the 70-743 free dumps. Go through and check the validity and accuracy of our 70-743 dumps.70-743 free dumps are questions from the latest full 70-743 dumps. Check 70-743 free questions to get a better understanding of 70-743 exams.

Question 1:

Note: This question is part of a series of a questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solutions,

while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

Your network contains an Active Directory forest named contoso.com. The forest contains a member server named Server1 that runs Windows Server 2016. All domain controllers run Windows Server 2012 R2.

Contoso.com has the following configuration.

You plan to deploy an Active Directory Federation Services (AD FS) farm on Server1 and to configure device registration.

You need to configure Active Directory to support the planned deployment.

Solution: You upgrade a domain controller to Windows Server 2016.

Does this meet the goal?

A. Yes

B. No

Correct Answer: A

New installations of AD FS 2016 require the Active Directory 2016 schema (minimum version 85). Upgrading a domain controller will upgrade the schema. Note: upgrading the schema is not the same as upgrading the domain for forest functional level. Upgrading the functional level is not required.


Question 2:

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some questions sets might have more than one correct solutions,

while others might not have a correct solution.

After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.

Your network contains an Active Directory forest named contoso.com. The forest contains a member server named Server1 that runs Windows Server 2016. All domain controllers run Windows Server 2012 R2.

Contoso.com has the following configuration:

You plan to deploy an Active Directory Federation Services (AD FS) farm on Server1 and to configure device registration.

You need to configure Active Directory to support the planned deployment.

Solution: You run adprep.exe from the Windows Server 2016 installation media.

Does this meet the goal?

A. Yes

B. No

Correct Answer: A

New installations of AD FS 2016 require the Active Directory 2016 schema (minimum version 85). You can upgrade the schema by running adprep.exe.


Question 3:

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution. Determine whether the solution meets the stated goals.

Your network contains an Active Directory domain named contoso.com. The domain contains a DNS server named Server1. All client computers run Windows 10. On Server1, you have the following zone configuration.

You need to ensure that all of the client computers in the domain perform DNSSEC validation for the fabrikam.com namespace.

Solution: From Windows PowerShell on Server1, you run the Add-DnsServertrustAnchor cmdlet.

Does this meet the goal?

A. Yes

B. No

Correct Answer: B

The Add-DnsServerTrustAnchor command adds a trust anchor to a DNS server. A trust anchor (or trust “point”) is a public cryptographic key for a signed zone. Trust anchors must be configured on every non-authoritative DNS server that will attempt to validate DNS data. Trust Anchors have no direct relation to DSSEC validation.

References: https://docs.microsoft.com/en-us/powershell/module/dnsserver/add-dnsservertrustanchor?view=winserver2012-ps https://technet.microsoft.com/en-us/library/dn593672(v=ws.11).aspx https://docs.microsoft.com/en-us/windows-server/networking/dns/deploy/apply-filters-on-dns-queries


Question 4:

Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution. Determine whether the solution meets the stated goals.

Your network contains an Active Directory domain named contoso.com. The domain contains a DNS server named Server1. All client computers run Windows 10. On Server1, you have the following zone configuration.

You need to ensure that all of the client computers in the domain perform DNSSEC validation for the fabrikam.com namespace.

Solution: From a Group Policy object (GPO) in the domain, you add a rule to the Name Resolution Policy Table (NRPT).

Does this meet the goal?

A. Yes

B. No

Correct Answer: A

The NRPT stores configurations and settings that are used to deploy DNS Security Extensions (DNSSEC), and also stores information related to DirectAccess, a remote access technology.

Note: The Name Resolution Policy Table (NRPT) is a new feature available in Windows Server 2008 R2. The NRPT is a table that contains rules you can configure to specify DNS settings or special behavior for names or namespaces. When performing DNS name resolution, the DNS Client service checks the NRPT before sending a DNS query. If a DNS query or response matches an entry in the NRPT, it is handled according to settings in the policy. Queries and responses that do not match an NRPT entry are processed normally.

References: https://technet.microsoft.com/en-us/library/ee649207(v=ws.10).aspx https://www.microsoftpressstore.com/articles/article.aspx?p=2756482


Question 5:

You have a server named Server1 that runs Windows Server 2016. You need to configure Server1 as a multitenant RAS Gateway. What should you install on Server1?

A. the Network Controller server role

B. the Remote Access server role

C. the Data Center Bridging feature

D. the Network Policy and Access Services server role

Correct Answer: B

RAS Gateway – Multitenant. You can deploy RAS Gateway as a multitenant, software-based edge gateway and router when you are using Hyper-V Network Virtualization or you have VM networks deployed with virtual Local Area Networks (VLANs). With the RAS Gateway, Cloud Service Providers (CSPs) and Enterprises can enable datacenter and cloud network traffic routing between virtual and physical networks, including the Internet. With the RAS Gateway, your tenants can use point-so-site VPN connections to access their VM network resources in the datacenter from anywhere. You can also provide tenants with site-to-site VPN connections between their remote sites and your CSP datacenter. In addition, you can configure the RAS Gateway with BGP for dynamic routing, and you can enable Network Address Translation (NAT) to provide Internet access for VMs on VM networks.

References: https://technet.microsoft.com/en-us/windows-server-docs/networking/remote-access/remote-access


Question 6:

You have an Active Directory domain that contains several Hyper-V hosts that run Windows Server 2016.

You plan to deploy network virtualization and to centrally manage Datacenter Firewall policies.

Which component must you install for the planned deployment?

A. the Routing role service

B. the Canary Network Diagnostics feature

C. the Network Controller server role

D. the Data Center Bridging feature

Correct Answer: C

Using Windows PowerShell, the REST API, or a management application, you can use Network Controller to manage the following physical and virtual network infrastructure:

*

Datacenter Firewall This Network Controller feature allows you to configure and manage allow/deny firewall Access Control rules for your workload VMs for both East/West and North/South network traffic in your datacenter. The firewall rules are plumbed in the vSwitch port of workload VMs, and so they are distributed across your workload in the datacenter. Using the Northbound API, you can define the firewall rules for both incoming and outgoing traffic from the workload VM. You can also configure each firewall rule to log the traffic that was allowed or denied by the rule.

*

Hyper-V VMs and virtual switches

*

Remote Access Service (RAS) Multitenant Gateways, Virtual Gateways, and gateway pools

*

Load Balancers

References: https://technet.microsoft.com/en-us/library/dn859239.aspx

https://docs.microsoft.com/en-us/windows-server/networking/sdn/technologies/network-controller/network-controller


Question 7:

You have a Nano Server named Nano1.

You deploy several containers to Nano1 that use an image named Image1.

You need to deploy a new container to Nano1 that uses Image1.

What should you run?

A. the Install-WindowsFeature cmdlet

B. the docker run command

C. the docker load command

D. the Install-NanoServerPackage cmdlet

Correct Answer: B

When an operator executes docker run, the container process that runs is isolated in that it has its own file system, its own networking, and its own isolated process tree separate from the host. The basic docker run command takes this form:

$ docker run [OPTIONS] IMAGE[:TAG|@DIGEST] [COMMAND] [ARG…]


Question 8:

You have a Hyper-V host named Server1 that runs Windows Server 2016.

Server1 has a virtual machine named VM1. VM1 is configured to run the Docker daemon.

On VM1, you have a container network that uses transparent mode.

You need to ensure that containers that run on VM1 can obtain IP addresses from DHCP.

What should you do?

A. On VM1, run docker network connect.

B. On Server1, run docker network connect.

C. On VM1, run Get-VMNetworkAdapter 璙MName VM1 | Set-VMNetworkAdapter 璏acAddressSpoofing On.

D. On Server1, run Get-VMNetworkAdapter 璙MName VM1 | Set-VMNetworkAdapter ?MacAddressSpoofing On.

Correct Answer: D

If the container host is virtualized, and you wish to use DHCP for IP assignment, you must enable MACAddressSpoofing.

PS C:\> Get-VMNetworkAdapter -VMName ContainerHostVM | Set-VMNetworkAdapter -MacAddressSpoofing On

The command needs to be run on the Hyper-V host.


Question 9:

You have a failover cluster named Cluster1.

A virtual machine named VM1 is a highly available virtual machine that runs on Cluster1. A custom application named App1 runs on VM1.

You need to configure monitoring on VM1. If App1 adds an error entry to the Application event log, VM1 should be automatically rebooted and moved to another cluster node.

Which tool should you use?

A. Resource Monitor

B. Failover Cluster Manager

C. Server Manager

D. Hyper-V Manager

Correct Answer: B

Do you have a large number of virtualized workloads in your cluster? Have you been looking for a solution that allows you to detect if any of the virtualized workloads in your cluster are behaving abnormally? Would you like the cluster service to take recovery actions when these workloads are in an unhealthy state? In Windows Server 2012/2016, there is a great new feature, in Failover Clustering called “VM Monitoring”, which does exactly that ?it allows you monitor the health state of applications that are running within a virtual machine and then reports that to the host level so that it can take recovery actions.

VM Monitoring can be easily configured using the Failover Cluster Manager through the following steps:

Right click on the Virtual Machine role on which you want to configure monitoring

Select “More Actions” and then the “Configure Monitoring” options

You will then see a list of services that can be configured for monitoring using the Failover Cluster Manager.

References: https://blogs.msdn.microsoft.com/clustering/2012/04/18/how-to-configure-vm-monitoring-in-windows-server-2012/


Question 10:

You have a server named Server1 that runs Windows Server 2016.

The disk configuration for Server1 is shown in the exhibit. (Click the Exhibit button.)

You add Server1 to a cluster.

You need to ensure that you can use Disk 1 for Storage Spaces Direct.

What should you do first?

A. Set Disk 1 to offline.

B. Convert Partition (E:) to ReFS.

C. Convert Disk 1 to a dynamic disk.

D. Delete Partition (E:).

Correct Answer: D

The disks used in Storage Spaces Direct cannot contain existing partitions.


Question 11:

Your network contains an Active Directory domain. The domain contains two Hyper-V hosts.

You plan to perform live migrations between the hosts.

You need to ensure that the live migration traffic is authenticated by using Kerberos.

What should you do first?

A. From Server Manager, install the Host Guardian Service server role on a domain controller.

B. From Active Directory Users and Computers, add the computer accounts for both servers to the Cryptographic Operators group.

C. From Active Directory Users and Computers, modify the Delegation properties of the computer accounts for both servers.

D. From Server Manager, install the Host Guardian Service server role on both servers.

Correct Answer: C

If you have decided to use Kerberos to authenticate live migration traffic, configure constrained delegation before you proceed to the rest of the steps.

To configure constrained delegation

Open the Active Directory Users and Computers snap-in.

From the navigation pane, select the domain and double-click the Computers folder.

From the Computers folder, right-click the computer account of the source server and then click Properties.

In the Properties dialog box, click the Delegation tab.

On the delegation tab, select Trust this computer for delegation to the specified services only. Under that option, select Use Kerberos only.

References:

https://docs.microsoft.com/en-us/windows-server/virtualization/hyper-v/deploy/set-up-hosts-for-live-migration-without-failover-clustering


Question 12:

Your network contains three Hyper-V hosts. You add all of the hosts to a cluster.

You need to create highly available storage spaces that connect to directly attached storage on the hosts.

Which cmdlet should you use?

A. Update-ClusterVirtualMachineConfiguration

B. Enable-ClusterStorageSpacesDirect

C. Set-StoragePool

D. Add-ClusterDisk

Correct Answer: B

The Enable-ClusterStorageSpacesDirect cmdlet enables highly available Storage Spaces that use directly attached storage Storage Spaces Direct (S2D) on a cluster.


Question 13:

You are configuring a Windows Server 2016 failover cluster in a workgroup.

Before installing one of the nodes, you run the ipconfig /all command and receive the following output.

You need to ensure that Server1 can be added as a node in the cluster. What should you do?

A. Configure a DNS suffix.

B. Enable NetBIOS over TCP/IP.

C. Change the Node Type to Broadcast.

D. Assign a static IP address.

Correct Answer: A

In addition to the pre-requisites of Single-domain clusters, there are additional pre-requisites for Multi-domain or Workgroup clusters in the Windows Server 2016 including Primary DNS Suffix Requirements.

*

Each cluster node needs to have a primary DNS suffix.

*

For Multi-domain Clusters: The DNS suffix for all the domains in the cluster, should be present on all cluster nodes…

Note: Failover Clusters can now be created in the following configurations:

Single-domain Clusters: Clusters with all nodes joined to the same domain

Multi-domain Clusters: Clusters with nodes which are members of different domains

Workgroup Clusters: Clusters with nodes which are member servers / workgroup (not domain joined)

References: https://blogs.msdn.microsoft.com/clustering/2015/08/17/workgroup-and-multi-domain-clusters-in-windows-server-2016/


Question 14:

Your network contains an Active Directory forest named contoso.com.

You have an Active Directory Federation Services (AD FS) farm. The farm contains a server named Server1 that runs Windows Server 2012 R2.

You add a server named Server2 to the farm. Server2 runs Windows Server 2016.

You remove Server1 from the farm.

You need to ensure that you can use role separation to manage the farm.

Which cmdlet should you run?

A. Update-AdfsRelyingPartyTrust

B. Invoke-AdfsFarmBehaviorLevelRaise

C. Set-AdfsFarmInformation

D. Set-AdfsProperties

Correct Answer: B

AD FS for Windows Server 2016 introduces the ability to have separation between server administrators and AD FS service administrators.

After upgrading our ADFS servers to Windows Server 2016, the last step is to raise the Farm Behavior Level using the Invoke-AdfsFarmBehaviorLevelRaise PowerShell cmdlet.

To upgrade the farm behavior level from Windows Server 2012 R2 to Windows Server 2016 use the Invoke-ADFSFarmBehaviorLevelRaise cmdlet.

References: https://technet.microsoft.com/en-us/library/mt605334(v=ws.11).aspx


Question 15:

Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series.

Information and details provided in a question apply only to that question.

You have a Hyper-V host named Server1 that runs Windows Server 2016. Server1 contains a virtual machine named VM1.

You need to ensure that you can use nested virtualization on VM1.

What should you run on Server1?

A. the Mount-VHD cmdlet

B. the Diskpart command

C. the Set-VHD cmdlet

D. the Set-VM cmdlet

E. the Set-VMHost cmdlet

F. the Set-VMProcessor cmdlet

G. the Install-WindowsFeature cmdlet

H. the Optimize-VHD cmdlet

Correct Answer: F

Configure Nested Virtualization

Create a virtual machine.

While the virtual machine is in the OFF state, run the following command on the physical Hyper-V host. This enables nested virtualization for the virtual machine.

Set-VMProcessor -VMName -ExposeVirtualizationExtensions $true

References: https://msdn.microsoft.com/en-us/virtualization/hyperv_on_windows/user_guide/nesting


Leave a Reply

Your email address will not be published.