Microsoft 70-744 Exam Practice Questions (P. 4)
- Full Access (205 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #16
Your network contains an Active Directory domain named contoso.com. The domain contains 100 servers.
You deploy the Local Administrator Password Solution (LAPS) to the network.
You deploy a new server named FinanceServer5, and join FinanceServer5 to the domain.
You need to ensure that the passwords of the local administrators of FinanceServer5 are available to the LAPS administrators.
What should you do?
You deploy the Local Administrator Password Solution (LAPS) to the network.
You deploy a new server named FinanceServer5, and join FinanceServer5 to the domain.
You need to ensure that the passwords of the local administrators of FinanceServer5 are available to the LAPS administrators.
What should you do?
- AOn FinanceServer5, register AdmPwd.dll.
- BOn FinanceServer5, install the LAPS Windows PowerShell module.
- CIn the domain, modify the permissions for the computer account of FinanceServer5.
- DIn the domain, modify the permissions of the Domain Controllers organizational unit (OU).
Correct Answer:
A
References:
https://gallery.technet.microsoft.com/Step-by-Step-Deploy-Local-7c9ef772
A
References:
https://gallery.technet.microsoft.com/Step-by-Step-Deploy-Local-7c9ef772
send
light_mode
delete
Question #17
Your network contains an Active Directory domain named contoso.com. The domain contains four servers. The servers are configured as shown in the following table.

You need to manage FS1 and FS2 by using Just Enough Administration (JEA).
What should you do before you can implement JEA?

You need to manage FS1 and FS2 by using Just Enough Administration (JEA).
What should you do before you can implement JEA?
- AInstall Microsoft.NET Framework 4.6.2 on FS2.
- BInstall Microsoft.NET Framework 4.6.2 on FS1.
- CInstall Windows Management Framework 5.0 on FS2.
- DUpgrade DC1 to Windows Server 2016.
Correct Answer:
C
References:
https://blogs.technet.microsoft.com/privatecloud/2014/05/14/just-enough-administration-step-by-step/
C
References:
https://blogs.technet.microsoft.com/privatecloud/2014/05/14/just-enough-administration-step-by-step/
send
light_mode
delete
Question #18
HOTSPOT -
Your network contains an Active Directory forest named contoso.com.
The forest has Microsoft Identity Manager (MIM) 2016 deployed.
You implement Privileged Access Management (PAM).
You need to request privileged access from a client computer in contoso.com by using PAM.
How should you complete the Windows PowerShell script? To answer, select the appropriate options in the answer area.
Hot Area:

Your network contains an Active Directory forest named contoso.com.
The forest has Microsoft Identity Manager (MIM) 2016 deployed.
You implement Privileged Access Management (PAM).
You need to request privileged access from a client computer in contoso.com by using PAM.
How should you complete the Windows PowerShell script? To answer, select the appropriate options in the answer area.
Hot Area:

Correct Answer:
References:
https://technet.microsoft.com/en-us/library/mt604089.aspx
https://technet.microsoft.com/en-us/library/mt604084.aspx

References:
https://technet.microsoft.com/en-us/library/mt604089.aspx
https://technet.microsoft.com/en-us/library/mt604084.aspx
send
light_mode
delete
Question #19
Your network contains an Active Directory domain named contoso.com. The domain contains five servers. All servers run Windows Server 2016.
A new security policy states that you must modify the infrastructure to meet the following requirements:
✑ Limit the rights of administrators.
✑ Minimize the attack surface of the forest.
✑ Support Multi-Factor authentication for administrators.
You need to recommend a solution that meets the new security policy requirements.
What should you recommend deploying?
A new security policy states that you must modify the infrastructure to meet the following requirements:
✑ Limit the rights of administrators.
✑ Minimize the attack surface of the forest.
✑ Support Multi-Factor authentication for administrators.
You need to recommend a solution that meets the new security policy requirements.
What should you recommend deploying?
- Aan administrative forest
- Bdomain isolation
- Can administrative domain in contoso.com
- Dthe Local Administrator Password Solution (LAPS)
Correct Answer:
A
References:
https://docs.microsoft.com/en-us/windows-server/identity/securing-privileged-access/securing-privileged-access-reference-material#ESAE_BM
A
References:
https://docs.microsoft.com/en-us/windows-server/identity/securing-privileged-access/securing-privileged-access-reference-material#ESAE_BM
send
light_mode
delete
Question #20
Your network contains two single-domain Active Directory forests named contoso.com and contosoadmin.com. Contosoadmin.com contains all of the user accounts used to manage the servers in contoso.com.
You need to recommend a workstation solution that provides the highest level of protection from vulnerabilities and attacks.
What should you include in the recommendation?
You need to recommend a workstation solution that provides the highest level of protection from vulnerabilities and attacks.
What should you include in the recommendation?
- AProvide a Privileged Access Workstation (PAW) for each user account in both forests. Join each PAW to the contoso.com domain.
- BProvide a Privileged Access Workstation (PAW) for each user in the contoso.com forest. Join each PAW to the contoso.com domain.
- CProvide a Privileged Access Workstation (PAW) for each administrator. Join each PAW to the contoso.com domain.
- DProvide a Privileged Access Workstation (PAW) for each administrator. Join each PAW to the contosoadmin.com domain.
Correct Answer:
D
References:
https://docs.microsoft.com/en-us/windows-server/identity/securing-privileged-access/privileged-access-workstations
D
References:
https://docs.microsoft.com/en-us/windows-server/identity/securing-privileged-access/privileged-access-workstations
send
light_mode
delete
All Pages