Vendor: Microsoft
Certifications: Windows Server 2012
Exam Name: Administering Windows Server 2012
Exam Code: 70-411
Total Questions: 234 Q&As
Last Updated: Mar 15, 2017
Published: September 17, 2012
Languages: English, Chinese (Simplified), French, German, Japanese, Portuguese (Brazil)
Audiences:IT professionals
Technology: Windows Server 2012 R2
Credit toward certification: MCP, MCSA, MCSE
MCSA 70-411 Sections

Deploy, manage and maintain servers 15% to 20%
Configure file and print servicestd> 15% to 20%
Configure network services and access 15% to 20%
Configure a Network Policy Server (NPS) infrastructure 10% to 15%
Configure and manage Active Directory 10% to 15%
Configure and manage Group Policy 15% to 20%

Testcos Latest and Most Accurate 70-411 Exam Material Q&As(6-11)

70-411 exam Question No : 6 HOTSPOT – (Topic 0)  Your network contains a RADIUS server named Server1.
You install a new server named Server2 that runs Windows Server 2012 R2 and has
Network Policy Server (NPS) installed.
You need to ensure that all accounting requests for Server2 are forwarded to Server1.
On Server2, you configure a Connection Request Policy.
What else should you configure on Server2? 
To answer, select the appropriate node in the answer area.
70-411 exam

70-411 exam


70-411 exam Question No : 7 – (Topic 0)  Your network contains an Active Directory domain named contoso.com. The domain
contains a server named Server1 that runs Windows Server 2012 R2 and has the Network
Policy Server role service installed.
An administrator creates a RADIUS client template named Template1.
You create a RADIUS client named Client1 by using Template 1.
You need to modify the shared secret for Client1.
What should you do first?
A. Configure the Advanced settings of Template1.
B. Set the Shared secret setting of Template1 to Manual.
C. Clear Enable this RADIUS client for Client1.
D. Clear Select an existing template for Client1.
Answer: D
Clear checkmark for Select an existing template in the new client wizard.
In New RADIUS Client, in Shared secret, do one of the following:
Bullet Ensure that Manual is selected, and then in Shared secret, type the strong password
that is also entered on the RADIUS client. Retype the shared secret in Confirm shared
70-411 exam

 70-411 exam



70-411 exam Question No : 8 – (Topic 0)
Your network contains an Active Directory domain named contoso.com. All servers run
Windows Server 2012 R2.
The domain contains a server named Server1 that has the Network Policy Server server ✑ ✑
role and the Remote Access server role installed. The domain contains a server named
Server2 that is configured as a RADIUS server.
Server1 provides VPN access to external users.
You need to ensure that all of the VPN connections to Server1 are logged to the RADIUS
server on Server2.
What should you run?
A. Add-RemoteAccessRadius -ServerNameServer1 -AccountingOnOffMsg Enabled –
SharedSecret “Secret” -Purpose Accounting
B. Set-RemoteAccessAccounting -AccountingOnOffMsg Enabled -AccountingOnOffMsg
C. Add-RemoteAccessRadius -ServerName Server2 -AccountingOnOffMsg Enabled –
SharedSecret “Secret” -Purpose Accounting
D. Set-RemoteAccessAccounting -EnableAccountingType Inbox -AccountingOnOffMsg
Answer: C
Adds a new external RADIUS server for VPN authentication, accounting for DirectAccess
(DA) and VPN, or one-time password (OTP) authentication for DA.
Indicates the enabled state for sending of accounting on or off messages. The acceptable
values for this parameter are:
Disabled. This is the default value. This parameter is applicable only when the RADIUS server is being added for Remote
Access accounting.

70-411 exam Question No : 9 – (Topic 0)
Your network contains four Network Policy Server (NPS) servers named Server1, Server2,
Servers, and Server4.
Server1 is configured as a RADIUS proxy that forwards connection requests to a remote
Explanation: During the NPS proxy configuration process, you can create remote RADIUS
server groups and then add RADIUS servers to each group. To configure load balancing,
you must have more than one RADIUS server per remote RADIUS server group. While
adding group members, or after creating a RADIUS server as a group member, you can
access the Add RADIUS server dialog box to configure the following items on the Load
Balancing tab:
Priority. Priority specifies the order of importance of the RADIUS server to the NPS proxy
server. Priority level must be assigned a value that is an integer, such as 1, 2, or 3. The
lower the number, the higher priority the NPS proxy gives to the RADIUS server. For
example, if the RADIUS server is assigned the highest priority of 1, the NPS proxy sends
connection requests to the RADIUS server first; if servers with priority 1 are not available,
NPS then sends connection requests to RADIUS servers with priority 2, and so on. You
can assign the same priority to multiple RADIUS servers, and then use the Weight setting
to load balance between them.
Weight. NPS uses this Weight setting to determine how many connection requests to send
to each group member when the group members have the same priority level. Weight
setting must be assigned a value between 1 and 100, and the value represents a
percentage of 100 percent. For example, if the remote RADIUS server group contains two
members that both have a priority level of 1 and a weight rating of 50, the NPS proxy
forwards 50 percent of the connection requests to each RADIUS server.
Advanced settings. These failover settingsprovide a way for NPS to determine whether the
remote RADIUS server is unavailable. If NPS determines that a RADIUS server is
unavailable, it can start sending connection requests to other group members. With these
settings you can configure the number of seconds that the NPS proxy waits for a response
from the RADIUS server before it considers the request dropped; the maximum number of
dropped requests before the NPS proxy identifies the RADIUS server as unavailable; and
the number of seconds that can elapse between requests before the NPS proxy identifies
the RADIUS server as unavailable.
The default priority is 1 and can be changed from 1 to 65535. So changing server 2 and 3
to priority 10 is not the way to go.
 70-411 exam


70-411 exam Question No : 10 DRAG DROP – (Topic 0)
Your network contains an Active Directory domain named contoso.com. All domain
controllers run Windows Server 2012 R2.
The domain contains an organizational unit (OU) named OU1. OU1 contains an OU named
OU2. OU2 contains a user named user1.
User1 is the member of a group named Group1. Group1 is in the Users container.
You create five Group Policy objects (GPO). The GPOs are configured as shown in the
following table.
The Authenticated Users group is assigned the default permissions to all of the GPOs.
There are no site-level GPOs.
You need to identify which three GPOs will be applied to User1 and in which order the
GPOs will be applied to User1.
Which three GPOs should you identify in sequence?
To answer, move the appropriate three GPOs from the list of GPOs to the answer area and
arrange them in the correct order.
70-411 exam

70-411 exam Question No : 11 – (Topic 0)
Your network contains an Active Directory domain named adatum.com.
A network administrator creates a Group Policy central store.
After the central store is created, you discover that when you create new Group Policy
objects (GPOs), the GPOs do not contain any Administrative Templates.
You need to ensure that the Administrative Templates appear in new GPOs.
What should you do?
A. Add your user account to the Group Policy Creator Owners group.
B. Configure all domain controllers as global catalog servers.
C. Copy files from %Windir%\Policydefimtions to the central store.
D. Modify the Delegation settings of the new GPOs.
Answer: C
To take advantage of the benefits of .admx files, you must create a Central Store in the
SYSVOL folder on a domain controller. The Central Store is a file location that is checked
by the Group Policy tools. The Group Policy tools use any .admx files that are in the
Central Store. The files that are in the Central Store are later replicated to all domain
controllers in the domain.

