exam questions

Exam 70-412 All Questions

View all questions & answers for the 70-412 exam

Exam 70-412 topic 1 question 20 discussion

Actual exam question from Microsoft's 70-412
Question #: 20
Topic #: 1
[All 70-412 Questions]

Your network contains a perimeter network and an internal network. The internal network contains an Active Directory Federation Services (AD FS) 2.1 infrastructure. The infrastructure uses Active Directory as the attribute store.
You plan to deploy a federation server proxy to a server named Server2 in the perimeter network.
You need to identify which value must be included in the certificate that is deployed to Server2.
What should you identify?

  • A. The FQDN of the AD FS server
  • B. The name of the Federation Service
  • C. The name of the Active Directory domain
  • D. The public IP address of Server2
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️
To add a host (A) record to corporate DNS for a federation server On a DNS server for the corporate network, open the DNS snap-in.
1. In the console tree, right-click the applicable forward lookup zone, and then click New Host (A).
2. In Name, type only the computer name of the federation server or federation server cluster (for example, type fs for the fully qualified domain name (FQDN) fs.adatum.com).
3. In IP address, type the IP address for the federation server or federation server cluster (for example, 192.168.1.4).
4. Click Add Host.
Reference: Add a host (A) record to corporate DNS for a federation server http://technet.microsoft.com/en-us/library/cc776786(v=ws.10).aspx

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
xXxOlivierxXx
Highly Voted 5 years, 10 months ago
The answer proposed here doesn't make any sense and it's not even related to the question. The correct answer is "The name of the Federation Service". "It is important to verify that the subject name in the server authentication certificate matches the Federation Service name value that is specified in the AD FS Management snap-in. To locate this value, open the snap-in, right-click Service, click Edit Federation Service Properties, and then find the value in Federation Service name text box." https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/design/certificate-requirements-for-federation-server-proxies
upvoted 7 times
ITNoob22
5 years, 7 months ago
Thanks I didnt even read the explination...I was just disapointed that I got it "wrong". I really appreciate the post and hope that somebody fixes this answer
upvoted 1 times
...
...
Rezerestibeiro27
Most Recent 4 years, 1 month ago
Checklist: Setting Up a Federation Server Proxy (https://technet.microsoft.com/en-us/library/dd807100.aspx) Certificate Requirements for Federation Server Proxies “It is important to verify that the subject name in the server authentication certificate matches the Federation Service name value that is specified in the AD FS Management snap-in. To locate this value, open the snap-in, right-click Service, click Edit Federation Service Properties, and then find the value in Federation Service name text box.” https://technet.microsoft.com/en-us/library/dd807054.aspx
upvoted 1 times
...
DanStafford
4 years, 10 months ago
Correct answer is B, the name of the federation service: https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/design/certificate-requirements-for-federation-server-proxies
upvoted 4 times
...
flowbro
5 years ago
"It is important to verify that the subject name in the server authentication certificate matches the Federation Service name value that is specified in the AD FS Management snap-in." per the link below so service name should be correct answer
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago