You have a guarded fabric that consists of the servers shown in the following table. You need to ensure that you can start the shielded virtual machines on the Hyper-V hosts if the Hyper-V hosts cannot connect to the HGS. What should you do?
A.
On Server1, run Set-HgsKeyProtectionConfiguration.
B.
On Server1, Server2, and Server3, configure admin-trusted attestation.
C.
On Server1, run Set-HgsKeyProtectionAttestationSignerCertificatePolicy.
D.
On Server4, and Server5, disable the heartbeat integration service on the shielded virtual machines.
It looks like offline mode and fallback mode are new features of server 2019, so the given answer of setting it to admin trusted may be the only way to do it in server 2016
https://docs.microsoft.com/en-us/windows-insider/archive/new-in-rs5-server
According to the provided link
https://docs.microsoft.com/en-us/windows-server/security/guarded-fabric-shielded-vm/guarded-fabric-confirm-hosts-can-attest-successfully
Offline mode allows your shielded VM to turn on when HGS cannot be reached, so long as the security configuration of your Hyper-V host has not changed. Offline mode works by caching a special version of the VM TPM key protector on the Hyper-V host.
To enable support for offline mode, run the following command on an HGS node:
Set-HgsKeyProtectionConfiguration -AllowKeyMaterialCaching:$true
Therefore, the answer should be A
sorry, i'm wrong: "To use the fallback option, you'll need to set up two HGS servers. They can run Windows Server 2019 or Windows Server 2016 and either be part of the same or different clusters." In new versions Win Server 2016 as it appears it will works...
Applies to: Windows Server 2019, Windows Server (Semi-Annual Channel), Windows Server 2016. this will be a tricky question
upvoted 1 times
...
...
This section is not available anymore. Please use the main Exam Page.70-744 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
c3r3br4l
4 years, 3 months agoSamsOtro
4 years, 5 months agohkshado
4 years, 8 months agoKidCastaldo
4 years, 6 months agoexpert_ms
4 years, 5 months agoexpert_ms
4 years, 5 months ago[Removed]
4 years, 7 months ago