Your network contains an Active Directory domain named contoso.com.
The domain contains two member servers named Server1 and Server2 that run Windows Server 2012.
Both servers have the Hyper-V server role installed.
The network contains an enterprise certification authority (CA).
All servers are enrolled automatically for a certificate-based on the Computer certificate template.
On Server1, you have a virtual machine named VM1. VM1 is replicated to Server2.
You need to encrypt the replication of VM1.
Which two actions should you perform? (Each correctanswer presents part of the solution. Choose two.)
A.
On Server1, modify the settings of VM1.
B.
On Server2, modify the settings of the virtual switch to which VM1 is connected.
C.
On Server1, modify the Hyper-V Settings.
D.
On Server1, modify the settings of the virtual switch to which VM1 is connected,
E.
On Server2, modify the settings of VM1.
F.
On Server2, modify the Hyper-V Settings.
Explanation:
Once you change the Hyper-V Settings of Server 2 toencrypt replications with a certificate, you then need to
change the replication information of VM1 to use the secure connection.
http://blogs.technet.com/b/yungchou/archive/2013/01/10/hyper-v-replica-explained.aspx
Step 1 is create a replication tunnel between the 2 servers (beginning at the destination)
Step 2 is enable the VM to be replicated over that SSL-Tunnel.
whats the answer ?
first F than A (when operational, but on the exam no one cares if you pick A before B)
NOT B, F of course
E and F.
VM1 must be enabled for replication on the replica server.
VM1 is already being replicated
The question is asking for you to encrypt it
F & A
Correct Answer is A. On Server1, modify the settings of VM1.
and F. On Server2, modify the Hyper-V Settings.
So Answers: AF
Explanation:
Once you change the Hyper-V Settings of Server 2 to encrypt replications with a certificate, you then need to change the replication information of VM1 to use the secure connection.
From Exam-Ref 70-412 page 186:
It’s important to understand the sequence of steps in configuring Hyper-V Replica. The first
step is to configure the server-level replication settings for both physical Hyper-V hosts, called
the primary server and the replica server. You can access these settings in Hyper-V Manager
by right-clicking a host server in the navigation pane, selecting Hyper-V Settings, and then
selecting Replication Configuration in the left column of the Hyper-V Settings dialog box.
Page 190:
After you configure both physical host servers, the next step in configuring Hyper-V Replica is
to configure the chosen VM for replication on the primary server.
Page 191:
EXAM TIP
If both authentication types are available for the VM and you want to change the authentication
type later to certificate-based authentication, you have to remove replication and
complete the Enable Replication wizard again. Before you do, however, make sure that
certificate-based authentication is also enabled in the Hyper-V Settings on the remote host
server.
So, if the certificate configuration is needed, I assumpt that it wasn’t enabled, right?
Based on EXAM TIP above, I should remove replication from both servers and re-enable.
So, the right answer is (in order) C, F, A.
This is a fucking trap question!
Who agree with me?
If I don’t mark hyper-v settings on server 1 “Use certificate-based auth…” check box, I’m unable to select it later, when configuring VM1 replication, and just Kerberos Auth will be available.