It is more faster and easier to pass the Microsoft 70-697 exam by using Breathing Microsoft Configuring Windows Devices questuins and answers. Immediate access to the Down to date 70-697 Exam and find the same core area 70-697 questions with professionally verified answers, then PASS your exam with a high score now.

NEW QUESTION 1
Your network contains an Active Directory domain named contoso.com. All client computers in the domain run Windows 10 Enterprise. All domain users have roaming user profiles. You need to prevent a user named User2 from being able to save changes to his roaming user profile. Which file you modify?

  • A. ntuser.dat
  • B. ntuser.pol
  • C. system.dat
  • D. registry.pol

Answer: B

Explanation:
You would need to rename ntuser.pol to ntuser.dat to create a ‘mandatory’ profile.

NEW QUESTION 2
You have a computer named Client1. Client1 is joined to an Active Directory domain.
You need to join Client1 to an Azure Active Directory (Azure AD) tenant. What should you do first?

  • A. From the Local Group Policy Editor, modify the Add workstations to domain policy.
  • B. From the network adapter properties, modify the DNS suffix.
  • C. From System Control Panel, configure the computer to be a member of a workgroup.
  • D. From the System in the Settings app, modify the sign-in options.

Answer: D

Explanation:
https://blogs.technet.microsoft.com/enterprisemobility/2015/05/28/azure-ad-join-on- windows-10-devices/

NEW QUESTION 3
A company has Windows 10 Enterprise client computers. All user data is stored locally. Each data file has a system access control list (SACL).
You need to ensure that an event is generated when a user modifies a local file. Which audit policy setting should you configure?

  • A. Audit process tracking
  • B. Audit object access
  • C. Audit policy change
  • D. Audit privilege use

Answer: B

NEW QUESTION 4
Note: This question is part of a series of questions that use the same or similar answer choices. An answer choice may be correct for more than one question in the series. Each question is independent of the other questions in this series. Information and details in a question apply only to that question.
You have a laptop that is joined to an Active Directory domain. You establish a WiFi connection to a customer’s WiFi network.
You need to identify whether the current network location of the WiFi connection is private or public.
Which Control Panel application should you use?

  • A. Phone and Modem
  • B. RemoteApp and Desktop Connections
  • C. System
  • D. Credential Manager
  • E. Work Folders
  • F. Power Options
  • G. Sync Center
  • H. Network and Sharing Center

Answer: H

NEW QUESTION 5
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You are the system administrator for a sales company. You manage the Microsoft Office 365 environment for your company. You are investigating the requirements for Office 365 data loss prevention (DLP). All users have an Enterprise E5 license.
You must ensure that all users are prevented from storing social security numbers in Office 365.
You need to implement a DLP policy that meets the requirement.
Solution: Create a DLP policy with Yammer as a content source location. Does the solution meet the goal?

  • A. Yes
  • B. No

Answer: A

NEW QUESTION 6

You purchase a new Windows 10 Enterprise desktop computer. You have four external USB hard drives. You want to create a single volume by using the four USB drives. You want the volume to be expandable,
portable and resilient in the event of failure of an individual USB hard drive.
You need to create the required volume. What should you do?

  • A. From Control Panel, create a new Storage Space across 4 USB hard drive
  • B. Set resiliency type to Three-way mirror.
  • C. From Control Panel, create a new Storage Space across 4 USB hard drive
  • D. Set resiliency type to Parity.
  • E. From Disk Management, create a new spanned volume.
  • F. From Disk Management, create a new striped volume.

Answer: B

Explanation:
Storage Spaces can combine multiple hard drives into a single virtual drive. To create a storage space, you’ll have to connect two or more additional internal or external drives to your computer to create a storage pool. You can also specify an arbitrarily large logical size. When your existing drive begins to fill up and nears the physical limit, Windows will display a notification in the Action Center, prompting you to add additional physical storage space. Selecting the Parity resiliency type allows Windows to store parity information with the data, thereby protecting you from a single drive failure.

NEW QUESTION 7
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
A company has a forest trust with a partner organization. Users from both organizations log on to devices that run Windows 8.1.
You plan to replace the devices with devices running Windows 10.
You need to migrate user profiles from both forests using the least amount of administrative effort.
Solution: You migrate both profiles simultaneously by using the User State Migration Tool (USMT).
Does the solution meet the goal?

  • A. Yes
  • B. No

Answer: A

Explanation:
References: https://docs.microsoft.com/en-us/windows/deployment/usmt/usmt-migrate-user-accounts#bkmk-migrateall

NEW QUESTION 8
DRAG DROP
You are a systems administrator for a small company. You deploy five Windows 10 Enterprise computers.
You need to create a system image backup for each computer and save the image to a network share.
How should you construct the PowerShell command? To answer, drag the appropriate command component to the correct target. Each command component may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content.
NOTE: Each correct selection is worth one point.
70-697 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
70-697 dumps exhibit

NEW QUESTION 9
A company has Windows 10 Enterprise client computers.
When a user tries to print from his portable client computer while connected to the corporate network, he
discovers that the default printer is set to his home printer instead of to the office printer.
You need to ensure that the default printer for the computer is the office printer when the computer is
connected to the corporate network and the user's home printer when the computer is connected to his home network.
What should you do on the portable computer?

  • A. Install the corporate printer and set it as the default printe
  • B. Then add the home printer to the homegroupsettings.
  • C. In the printer properties of the corporate printer, configure the active port with the correct TCP/IP settings for the printer.
  • D. Set a default printer for each network.
  • E. Connect to the home network and choose Connect from the shared printer object context men
  • F. Thenconnect to the corporate network and choose Connect from the shared printer object context menu.

Answer: C

NEW QUESTION 10

Your network contains an Active Directory domain named contoso.com. Contoso.com is synchronized to a Microsoft Azure Active Directory. You have a Microsoft Intune subscription.
Your company plans to implement a Bring Your Own Device (BYOD) policy. You will provide users with access to corporate data from their personal iOS devices.
You need to ensure that you can manage the personal iOS devices. What should you do first?

  • A. Install the Company Portal app from the Apple App Store.
  • B. Create a device enrollment manager account.
  • C. Set a DNS alias for the enrollment server address.
  • D. Configure the Intune Service to Service Connector for Hosted Exchange.
  • E. Enroll for an Apple Push Notification (APN) certificate.

Answer: E

Explanation:
An Apple Push Notification service (APNs) certificate must first be imported from Apple so that you can manage iOS devices. The certificate allows Intune to manage iOS devices and institutes an accredited and encrypted IP connection with the mobile device management authority services.

NEW QUESTION 11
Group Policy is a set of rules which control the working environment of user accounts and computer accounts. Group Policy provides the centralized management and configuration of operating systems, applications and users’ settings in an Active Directory environment.
In other words, Group Policy in part controls what users can and can’t do on a computer system.
Which one of these policies requires a reboot?

  • A. Turn off Windows Defender
  • B. Turn off Autoplay for non-volume devices
  • C. Disable Active Desktop
  • D. Turn off Data Execution Prevention for Explorer

Answer: D

Explanation:
A reboot is REQUIRED when turning off Data Execution Prevention (DEP) for Explorer.

NEW QUESTION 12
A company has an Active Directory Domain Services (AD DS) domain. All client computers run Windows 10 Enterprise and joined to the domain.
You have the following requirements:
Ensure that files in shared network folders are available offline.
Maximize efficiency for users who connect to shared network folders from a mobile device
You need to configure Group Policy settings to meet the requirements. What should you do first?

  • A. Enable the Enable file synchronization on costed networks policy setting.
  • B. Enable the Synchronize all offline files when logging on policy settings.
  • C. Enable and configure the Configure slow-link mode policy setting.
  • D. Enable and configure the Specify administratively assigned Offline Files policy setting.

Answer: C

Explanation:
References: https://technet.microsoft.com/en-us/library/hh968298.aspx

NEW QUESTION 13
DRAG DROP
You administer the Windows 10 desktop environment for an organization. All desktop machines have Windows 10 Enterprise edition installed and are joined to the domain trey.com. All servers in trey.com run either Windows Server 2012 or Windows Server 2012 R2.
Users are permitted to bring their own devices. Users must be able to access their data from all devices including Apple iOS devices.
You need to implement a solution that provides the access to the data from all devices and synchronizes data across all devices without requiring subscription services.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order. (Choose three.)
70-697 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
References:
https://docs.microsoft.com/en-us/windows-server/storage/work-folders/deploy-work-folders#step-5-create-security-groups-for-work-folders https://www.grouppolicy.biz/2013/07/how-to-setup-work-folder-using-group-policy/

NEW QUESTION 14
You are a systems administrator for your company. The company has employees who work remotely by using a virtual private network (VPN) connection from their computers, which run Windows 8 Pro.
These employees use an application to access the company intranet database servers. The company recently decided to distribute the latest version of the application through using a public cloud.
Some users report that every time they try to download the application by using Internet Explorer, they receive a warning message that indicates the application could harm their computer.
You need to recommend a solution that prevents this warning message from appearing, without compromising the security protection of the computers. What should you do?

  • A. Publish the application through a public file transfer protocol (FTP) site.
  • B. Publish the application through an intranet web site.
  • C. Instruct employees to disable the SmartScreen Filter from within the Internet Explorer settings.
  • D. Publish the application to Windows Store.

Answer: B

Explanation:
As the publication is to be published on the cloud, we should publish in through the Windows Store.

NEW QUESTION 15
DRAG DROP
A company has a main office located in Miami, and branch offices in Boston, Los Angeles and Portland. The Office Networks are configured as described in the following table.
70-697 dumps exhibit
A management computer in the main office, named COMPUTER1, runs windows 8
and several third-party management applications. You need to meet the following requirements:
Ensure that only users in the Boston office can connect to COMPUTER1 by using http.
Ensure that only users in the Los Angeles office can connect COMPUTER1 by using https
Ensure that only users in the Portland office can connect to COMPUTER1 by using FTP.
You are configuring access to COMPUTER1. How should you configure windows firewall?
70-697 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
* First Row: 10.20.0.0/16, 21, TCP
The Portland users, on network 10.20.0.0/16, need FTP, which uses TCP port 21.
* Second Row: 10.30.0.0/16, 80, TCP
The Boston users, on network10.30.0.0/16, need HTTP, which uses TCP port 80.
*Third row:10.40.0.0/16, 443, TCP
The Los Angles users, on network 10.40.0.0/16, need HTTPS, which uses TCP port 443.
References: https://en.wikipedi a.org/wiki/List_of_TCP_and_UDP_port_numbers

NEW QUESTION 16
A company has Windows 10 Enterprise client computers. Client computers are connected to
a corporate private network. You deploy a Remote Desktop Gateway, DirectAccess, and a VPN server at the corporate main office.
Users are currently unable to connect from their home computers to their work computers by using Remote Desktop.
You need to ensure that users can remotely connect to their office computers by using Remote Desktop. Users must not be able to access any other corporate network resource by using the local Windows installation from their home computers.
Which setting should you configure on the home computers?

  • A. Remote Desktop local resources
  • B. Virtual Private Network connection
  • C. Remote Desktop Gateway IP address
  • D. DirectAccess connection

Answer: C

Explanation:
The solution is to deploy Remote Desktop Gateway in the office. Remote users can then connect to their computers on the office network by using Remote Desktop client on their home computers configured with the IP address of the Remote Desktop Gateway. Remote Desktop Gateway (RD Gateway) is a role service that enables authorized remote users to connect to resources on an internal corporate or private network, from any Internet-connected device that can run the Remote Desktop Connection (RDC) client. The network resources can be Remote Desktop Session Host (RD Session Host) servers, RD Session Host servers running RemoteApp programs, or computers with Remote Desktop enabled. RD Gateway uses the Remote Desktop Protocol (RDP) over HTTPS to establish a secure, encrypted connection between remote users on the Internet and the internal network resources on which their productivity applications run. RD Gateway provides a comprehensive security configuration model that enables you to control access to specific internal
network resources. RD Gateway provides a point-to-point RDP connection, rather than allowing remote users access to all internal network resources.
Incorrect Answers:
B: Remote Desktop local resources determine which local resources (printers, drives etc.) are available in a Remote Desktop connection. However, this solution makes no provision for actually connecting to the office network.
C: Virtual Private Network connections would enable remote access to the office network but this solution would not prevent users accessing other corporate network resources.
D: DirectAccess connections would enable remote access to the office network but this solution would not prevent users accessing other corporate network resources.
References: https://technet.microsoft.com/engb/library/cc731150.aspx

NEW QUESTION 17

You have a network that contains Window 10 Enterprise computers.
The network configuration of one of the computers is shown in the following output.
70-697 dumps exhibit
Use the drop-down menus to select the answer choice that completes each statement basedon the information presented in the output.
NOTE: Each correct selection is worth one point.
70-697 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
The exhibit below shows that the computer obtained its IPv4 address from a DHCP server. It also shows when the DHCP lease was obtained and when it will expire.
70-697 dumps exhibit
The IPv6 address shown below starts with ‘fe80’. This is an auto-configuration address, not an address obtained from a DHCP server.
70-697 dumps exhibit
The IP address of the Default Gateway is 10.1.1.1

NEW QUESTION 18
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You manage a corporate network. All servers run Windows Server 2016. All servers and client devices are joined to an Active Directory Domain Services (AD DS) domain named adatum.com. The use of VPN servers on the network is strictly prohibited.
Users must be able to access the corporate network in addition to Work Folders when they work at home on Windows 10 devices. You install, configure, and publish the certificate revocation list (CRL) for an internal Active Directory Certificate Services (AD CS) server.
You need to configure the environment to allow your users to register devices. Solution: You create a DNS CNAME record of enterpriseregistration.adatum.com. You deploy Active Directory Federation Services (AD FS) and point the DNS record to your AD FS server. You deploy a Web Application Proxy server for the clients to connect to establish Internet connectivity to the device registration connection.
Does the solution meet the goal?

  • A. Yes
  • B. No

Answer: A

Explanation:
References:
https://blog.nextxpert.com/2013/11/27/publishing-work-folders-with-web-application-proxy-2/

NEW QUESTION 19

You have an image of Windows 10 Enterprise named Image1. Image1 has version number 1.0.0.0 of a custom, line-of-business universal app named App1.
You deploy Image1 to Computer1 for a user named User1.
You need to update App1 to version 1.0.0.1 on Computer1 for User1 only.
What command should you run? To answer, select the appropriate options in the answer area.
70-697 dumps exhibit
70-697 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
In this question, we need to update App1 to version1.0.0.1 onComputer1 “for User1 only”. The Add–AppxPackage cmdlet adds a signed app package (.appx) to a user account.
To update the application, we need to use the –path parameter to specify the path to the upgraded application.

NEW QUESTION 20
DRAG DROP
You administer 50 laptops that run Windows 7 Professional 32-bit. You want to install Windows 10 Enterprise 64-bit on every laptop. Users will keep their own laptops.
You need to ensure that user application settings, Windows settings, and user files are maintained after Windows 10 Enterprise is installed.
Which four actions should you perform in sequence?
70-697 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
Box 1: First we copy the User State Migration Tool to the source computer. Box 2: Scanstatewith /nocompress
The ScanState command is usedwith the User State Migration Tool (USMT) 5.0 to scan the source computer, collect the files and settings, and create a store.
We use the /nocompress option as the only available loadstate option, in step 4, uses /nocompress.
Box 3: Delete old partitions, and install windows 8 on a new partition.
After you create a migration store on a server, you will install Windows 8 and load the files and settings from that migration store onto the destination computer. You can reformat the source computer (PC refresh) and use it as your destination computer, or you can use an additional computer (PC replacement).
Box 4: Loadstate
To apply migrated data to your hard drives, you connect the computer to your network, install USMT (this step is missing in this question),and then run LoadState. References: https://technet.microsoft.com/en-us/library/hh824873.aspx

NEW QUESTION 21
HOTSPOT
Your network contains a RemoteApp deployment named Deployment1. Deployment1 contains a collection named Collection1. Collection1 contains a RemoteApp named App1.
You can run App1 by connecting to an RD Web Access server named Server1. You need to ensure that App1 meets the following requirements:
Appears on the All Apps section of the Start menu
Starts when a file with the App1 extension is double-clicked
What should you do for each requirement? To answer, select the appropriate options in the answer area.
70-697 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:

References:
http://techgenix.com/distribution-of-remote-apps-and-desktops-in-windows-server- 2012/
https://www.rdsgurus.com/working-with-rd-web-access-in-windows-server-2012/ http://sourcedaddy.com/windows-7/publishing-and-configuring-remoteapp- programs.html

NEW QUESTION 22
Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You are the system administrator for a sales company. You manage the Microsoft Office 365 environment for your company. You are investigating the requirements for Microsoft Office 365 data loss prevention (DLP). All users have an Enterprise E5 license.
You must ensure that all users are prevented from storing social security numbers in Office 365.
You need to implement a DLP policy that meets the requirement.
Solution: Create a DLP policy with Microsoft SharePoint Online sites as a content source location.
Does the solution meet the goal?

  • A. Yes
  • B. No

Answer: B

NEW QUESTION 23
HOTSPOT
You are a consultant at a small company. The company’s employees use Windows 10 Enterprise computers.
An employee wants to share his printer with only selected users. You need to enable the correct settings.
Which two tab settings should you modify? To answer, select the appropriate tab settings in the answer area.
70-697 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
70-697 dumps exhibit

NEW QUESTION 24
You administer Windows 10 Enterprise computers. You have secured the computers by using BitLocker.
You have distributed a new application to the computers. Users report that file associations for ZIP archives is broken and users are unable to open ZIP files.
You need to design a solution that recovers file association. You also need to ensure that BitLocker encryption settings are maintained. What should you do?

  • A. Restore computer from the latest restore point.
  • B. Modify setting in Change default settings for media or devices.
  • C. Delete the HKEY CLASSES_ROOT\exefile\shell\open\command registry key.
  • D. Select Reset your PC.

Answer: A

NEW QUESTION 25
Your network contains an Active Directory domain and 100 Windows 10 client computers. All software is deployed by using Microsoft Application Virtualization (App-V) 5.0.
Users are NOT configured as local administrators.
Your company purchases a subscription to Microsoft Office 365 that includes Office 365 ProPlus.
You need to create an App-V package for Office 365 ProPlus. What should you do?

  • A. Run the Office Customization Tool (OCT), run the App-V Sequencer and then run Setup /Packager.
  • B. Download the Office Deployment Tool for Click-to-Run, run the App-V Sequencer and then run Setup /Admin.
  • C. Download the Office Deployment Tool for Click-to-Run, run Setup /Download and then run Setup /Packager.
  • D. Run the Office Customization Tool (OCT), run Setup /Download and then run the App-V Sequencer.

Answer: C

Explanation:
The Office Deployment Tool allows the administrator to customize and manage Office 2013Volume License or Office 365 Click-to-Run deployments.
The Office Deployment Tool Setup runs the following tasks:
Setup /Download – Downloads files to create an Office 15 installation Setup /Configure – Adds, removes, or configures an Office 15 installation Setup /Packager – Produces an Office 15 App-V package

NEW QUESTION 26
You administer computers that run Windows 8 Enterprise and are members of an Active Directory domain. Some volumes on the computers are encrypted with BitLocker.
The BitLocker recovery passwords are stored in Active Directory. A user forgets the BitLocker password to local drive E: and is unable to access the protected volume. You need to provide a BitLocker recovery key to unlock the protected volume.
Which two actions should you perform? (Each correct answer presents part of the solution. Choose two.)

  • A. Ask the user to run the manage–bde–protectors–disable e: command.
  • B. Ask the user for his or her logon name.
  • C. Ask the user to run the manage–bde–unlock E:–pw command.
  • D. Ask the user for his or her computer name.
  • E. Ask the user for a recovery key ID for the protected drive.

Answer: CD

Explanation:
D: To view the recovery passwords for a computer you would need the computer name:
In Active Directory Users and Computers, locate and then click the container in which the computer is located.
Right-click the computer object, and then click Properties.
In the Properties dialog box, click the BitLocker Recovery tab to view the BitLocker recovery passwords that are associated with the particular computer.
C: The Manage–bde: unlock command unlocks a BitLocker-protected drive by using a recovery password or a recovery key.

NEW QUESTION 27
You manage a corporate network. All servers run Windows Server 2016. All servers and client devices are joined to an Active Directory Domain Services (AD DS) domain named adatum.com.
The use of VPN servers
on the network is strictly prohibited.
Users must be able to access the corporate network in addition to Work Folders when they work at home on Windows 10 devices. You install, configure, and publish the certificate revocation list (CRL) for an internal Active Directory Certificate Services (AD CS) server.
You need to configure the environment to allow your users to register devices. Solution: You create a DNS A record of deviceregistration.adatum.com. You deploy Active Directory Federation
Services (AD FS) and point the DNS record to your AD FS server. You deploy a Web Application Proxy server for the clients to establish Internet connectivity for the device registration. Does the solution meet the goal?

  • A. Yes
  • B. No

Answer: B

Explanation:
References: https://blog.nextxpert.com/2013/11/27/publishing-work-folders-with- web-application-proxy-2/

NEW QUESTION 28
Your network contains an Active Directory domain. The domain contains Windows 10 Enterprise client
computers.
Users frequently use USB drives to store sensitive files that are used on multiple computers.
Your corporate security policy states that all removable storage devices such as USB data drives, must be
encrypted.
You need to ensure that if a user forgets the password for a USB disk that is encrypted by using BitLocker To Go, the user can resolve the issue themselves. What should you do?

  • A. Instruct the user to open BitLocker Drive Encryption, select Back up recovery key, and then select Save to a file.
  • B. From an elevated command prompt, run Manage-BDE -ForceRecovery.
  • C. For each computer, create a USB startup key.
  • D. Implement the BitLocker Network Unlock feature.

Answer: A

NEW QUESTION 29
DRAG DROP
You manage update compliance for Windows 10 desktop computers that are part of a domain. You need to configure new desktops to automatically receive updates from an intranet resource that you manage.
Which three actions should you perform in sequence?
70-697 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
Box 1: Create a GPO that enables automatic updates through the intranet source.
Box 2: gpupdate /force
The Gpupdate command refreshes local and Active Directory-based Group Policy settings, including security settings. The /force Ignores all processing optimizations and reapplies all settings.
Box 3: Configure the clients to install updates automatically.

NEW QUESTION 30
......

P.S. Surepassexam now are offering 100% pass ensure 70-697 dumps! All 70-697 exam questions have been updated with correct answers: https://www.surepassexam.com/70-697-exam-dumps.html (339 New Questions)