exam questions

Exam 70-741 All Questions

View all questions & answers for the 70-741 exam

Exam 70-741 topic 1 question 46 discussion

Actual exam question from Microsoft's 70-741
Question #: 46
Topic #: 1
[All 70-741 Questions]

Note: This question is part of a series of questions that use the same scenario. For your convenience, the scenario is repeated in each question. Each question presents a different goal and answer choices, but the text of the scenario is exactly the same in each question in this series.
Your network contains an Active Directory domain named contoso.com. The functional level of the domain is Windows Server 2012.
The network uses an address space of 192.168.0.0/16 and contains multiple subnets.
The network is not connected to the Internet.
The domain contains three servers configured as shown in the following table.


Client computers obtain TCP/IP settings from Server3.
You add a second network adapter to Server2. You connect the new network adapter to the Internet. You install the Routing role service on Server2.
Server1 has four DNS zones configured as shown in the following table.


You need to ensure that when a record is added dynamically to fabrikam.com, only the computer that created the record can modify the record. The solution must allow administrators to modify all of the records in fabrikam.com.
What should you do?

  • A. Change fabrikam.com to an Active Directory-integrated zone.
  • B. Raise the functional level of the domain.
  • C. Modify the security settings of the Fabrikam.com.dns file.
  • D. Modify the Start of Authority (SOA) settings of fabrikam.com
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️
https://technet.microsoft.com/en-us/library/cc753751(v=ws.11).aspx

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
coleman
Highly Voted 5 years, 7 months ago
. A. Change fabrikam.com to an Active Directory-integrated zone. As fabrikam.com is current a standard primary zone, you cannot implement zone and record security. You have to convert it into Active Directory integrated zone first.
upvoted 9 times
CassarJ
5 years, 5 months ago
Correct. The advantage of AD-Integrated Dns zones are secure dynamic updates which allow the admin to control what can be updated and prevent unauthorised computers from overwriting existing names in DNS
upvoted 2 times
...
...
panda
Most Recent 4 years, 5 months ago
Following questions, including this question, have common preconditions. But each question isn't same. page09/question44:scavenging page09/question45:NAT configuration page09/question46:secure dynamic updates page10/question47:GlobalNames page18/question86:DNS record type
upvoted 2 times
...
panda
4 years, 5 months ago
I think A is correct. B. Raise the functional level of the domain. It isn't related to secure dynamic update. C. Modify the security settings of the Fabrikam.com.dns file. The security settings does'nt include secure dynamic update. D. Modify the Start of Authority (SOA) settings of fabrikam.com SOA specifies a DNS when you start system.
upvoted 1 times
...
ykarma
4 years, 7 months ago
Not sure if this whole set of series question was on the exam but pay attention to it, cos i think it was. My exam was November 27th 2020. Was only able to memorize 54 questions, and my exam had a total of 54 questions
upvoted 2 times
...
MrRiver
5 years, 8 months ago
only AD-Integrated DNS Zones support: secure dynamic updates -> thats what we need here
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...