Testpassport

 sales@testpassport.jp

下記はMicrosoft 70-744試験問題集は実際の試験問題のバージョンの一部です。 MCSE 70-744問題集 は実際の試験問題バージョンには207問になります。すべての実際の試験問題は、勉強者が最初の試みで成功することを保証できます。70-744問題集の実際の試験問題でMicrosoft試験に不合格になった場合、全額で支払い手数料の払い戻しを受けられます。実際の試験問題をトレーニングしたいでしょうか? では、トレーニングしましょう!

 70-744フルバージョンを入手

問題#1

Your network contains two single-domain Active Directory forests named contoso.com and contosoadmin.com. Contosoadmin.com contains all of the user accounts used to manage the servers in contoso.com.
You need to recommend a workstation solution that provides the highest level of protection from vulnerabilities and attacks.
What should you include in the recommendation?

A. Provide a Privileged Access Workstation (PAW) for each user account in both forests. Join each PAW to the contoso.com domain.
B. Provide a Pnvileged Access Workstation (PAW) for each user in the contoso.com forest Join each PAW to the contoso.com domain.
C. Provide a Pnvileged Access Workstation (PAW) for each administrator. Join each PAW to the contoso.com domain.
D. Provide a Pnvileged Access Workstation (PAW) for each administrator. Join each PAW to the contosoadmin.com domain.

Explanation:
https://docs.microsoft.com/en-us/windows-server/identity/securing-privileged­access/securing-privilegedaccess-reference-material


問題#2

Your network contains an Active Directory domain named contoso.com. The domain contains five servers. All servers run Windows Server 2016.
A new secunty policy states that you must modify the infrastructure to meet the following requirements:
* Limit the nghts of administrators.
* Minimize the attack surface of the forest
* Support Multi-Factor authentication for administrators.
You need to recommend a solution that meets the new secunty policy requirements.
What should you recommend deploying?

A. an administrative forest
B. domain isolation
C. an administrative domain in contoso.com
D. the Local Administrator Password Solution (LAPS)

Explanation:
You have to “-Minimize the attack surface of the forest”, then you must create another forest for administrators.https://docs.microsoft.com/en-us/windows-server/identity/securing-privileged-access/securing-privilegedaccess-reference-material#ESAE_BMThis section contains an approach for an administrative forest based on the Enhanced Security AdministrativeEnvironment (ESAE) reference architecture deployedby Microsoft’s cybersecurity professional services teams to protect customers against cybersecurity attacks. Dedicated administrative forests allow organizations to host administrative accounts, workstations, and groups in an environment that has stronger security controlsthan the production environment.

問題#3

HOTSPOT
Your network contains an Active Directory forest named contoso.com. The forest has Microsoft Identity Manager (MIM) 2016 deployed. You implement Privileged Access Management (PAM). You need to request privileged access from a client computer in contoso.com by using PAM.
How should you complete the Windows PowerShell script? To answer, select the appropriate
options in the answer area.


A. 

Explanation:
$PAM = Get-PAMRoleForRequest | ? {$_,DisplayName -eq “CorpAdmins” } New-PAMRequest ­role $PAM
References: https://technet.microsoft.com/en-us/library/mt604089.aspx https://technet.microsoft.com/en-us/library/mt604084.aspx

問題#4

Your network contains an Active Directory domain named contoso.com. The domain contains four servers.
The servers are configured as shown in the following table.



You need to manage FS1 and FS2 by using Just Enough Administration (JEA).
What should you do before you can implement JEA?

A. Install Microsoft .NET Framework 4.6.2 on FS1
B. Upgrade DC1 to Windows Server 2016
C. Install Windows Management Framework 5.0 on FS2.
D. Deploy Microsoft Identity Manager (MIM) 2016 to the domain.

Explanation:
https://msdn.microsoft.com/en-us/library/dn896648.aspxThe current release of JEA is available on the following platforms:-Windows Server 2016 Technical Preview 5 and higher-Windows Server 2012 R2, Windows Server 2012, and Windows Server 2008 R2* with WindowsManagement Framework 5.0 installedFS1 is ready to be managed by JEA, but FS2 need some extra work to do, either upgrade it to Windows Server2016 or install Windows Management Framework5.0 installed,

問題#5

Your network contains an Active Directory domain named contoso.com. The domain contains 100 servers. You deploy the Local Administrator Password Solution (LAPS) to the network.
You deploy a new server named FinanceServer5, and join FinanceServerS to the domain. You need to ensure that the passwords of the local administrators of FinanceServer5 are available to the LAPS administrators.
What should you do?

A. On FinanceServerS, register AdmPwd.dll.
B. On FmanceServerS, install the LAPS Windows PowerShell module.
C. In the domain, modify the permissions for the computer account of FmanceServer5.
D. In the domain, modify the permissions of the Domain Controllers organizational unit (OU).

Explanation:
References: https://gallery.technet.microsoft.com/Step-by-Step-Deploy-Local-7c9ef772

試験コード: 70-744問題数量: 207 Q&As更新時間:  2020-05-12

  70-744フルバージョンを入手