- Home
- Server Administration
- Windows
- Identity with Windows server 2016 (70-742)
51.
ABC Industries wants configuration modifications of the Certification Authority role
service to be logged. How would you implement this? (Choose all that apply.)
- A.You should consider enabling auditing of system events.
- B.You should consider enabling logging.
- C.You should consider enabling auditing of object access.
- D.You should consider enabling auditing of privilege use.
- E.You should consider enabling auditing of process tracking.
- Answer & Explanation
- Report
Answer : [B, C]
Explanation :
Explanation :
To enable AD FS auditing, you must check the boxes for Success Audits and Failure Audits on the Events tab of the Federation Service Properties dialog box. You must also enable Object Access Auditing in Local Policy or Group Policy. |
52.
Federation proxy services are installed through which of the following?
- A.Separate Active Directory Federation Proxy install download
- B.Server Manager ➢ Remote Access ➢ Web Proxy
- C.Server Manager ➢ Active Directory Federation Services ➢ Active Directory Proxy services
- D.Windows PowerShell ➢ Install-Windows-Feature Web Proxy
- Answer & Explanation
- Report
Answer : [B]
Explanation :
Explanation :
Federation Proxy Services are installed under Remote Access as a web application proxy server in Windows Server 2016. |
53.
The new Workplace Join feature supports which of following? (Choose all that apply.)
- A.Federates an iPhone to the corporate intranet
- B.Allows Windows 8 clients to process claim-based trusts
- C.Allows Windows 8 clients to form claim-based trusts automatically with the home domain
- D.None of the above
- Answer & Explanation
- Report
Answer : [A, B, C]
Explanation :
Explanation :
By using Workplace Join, information workers can join their personal devices with their company’s workplace computers to access company resources and services. When you join your personal device to your workplace, it becomes a known device and provides seamless second-factor authentication and single sign-on to workplace resources and applications. |
54.
You install and configure four Windows Server 2016 servers as an AD FS server farm. The
AD FS configuration database is stored in a Microsoft SQL Server 2012 database. You need
to ensure that AD FS will continue to function in the event of an AD FS server failure. You
also need to ensure that all four servers in the AD FS farm will actively perform AD FS
functions. What should you include in your solution?
- A.Windows Failover Clustering
- B.Windows Identity Foundation 3.5
- C.Network Load Balancing
- D.Web Proxy Server
- Answer & Explanation
- Report
Answer : [C]
Explanation :
Explanation :
Network Load Balancing (NLB) is the only support Microsoft solution for providing high availability across an ADFS server farm. Windows Failover Clustering does not currently support ADFS as one master server is allowed to write to the configuration database per farm. |
55.
Your network contains an Active Directory domain named contoso.com. You plan to
deploy a Windows 2016 Active Directory Federation Services (AD FS) farm that will contain
eight federation servers. You need to identify which technology or technologies must
be deployed on the network before you install the federation servers. Which technology or
technologies should you identify? (Choose all that apply.)
- A.Network Load Balancing
- B.Microsoft Forefront Identity Manager 2010
- C.Windows Internal Database feature
- D.Microsoft SQL Server 2016
- E.The Windows Identity Foundation 3.5 feature
- Answer & Explanation
- Report
Answer : [D]
Explanation :
Explanation :
The AD FS configuration database stores all of the configuration data. It contains information that a federation service requires to identify partners, certificates, attribute stores, claims, and so forth. You can store this configuration data in either a Microsoft SQL Server 2005 or newer database or the Windows Internal Database feature that is included with Windows Server 2008/2008 R2, Windows Server 2012/2012 R2, and Windows Server 2016. The Windows Internal Database supports only up to five federation servers in a farm. |