What should you recommend doing in each branch office?

###BeginCaseStudy###
Case Study: 14
Fabrikam Inc
COMPANY OVERVIEW
Fabrikam Inc. is a manufacturing company that has a main office and 10 branch offices.
PLANNED CHANGES
Fabrikam plans to implement the following changes in the fabrikam.com domain:
In the main office, implement two Hyper-V servers.
Migrate all of the user accounts from research.fabrikam.com to fabrikam.com.
On the Hyper-V servers in the main office, deploy 20 virtual machines (VMs) that run Windows
Server 2008 R2.
In the perimeter network, implement a server that has the Routing and Remote Access service
(RRASJ role service installed.
EXISTING ENVIRONMENT
Fabrikam.com contains application servers that run either Windows Server 2003, Windows Server
2008 Service Pack 2 (SP2), or Windows Server 2008 R2. All of the application servers run services
that use domain user accounts as service accounts.
Each branch office contains the following servers:
A domain controller for fabrikam.com that runs a 32-bit version of Windows Server 2008 SP2
A member server that runs Windows Server 2008 R2 and has the Hyper-V server role installed
Business Goals
All proposed solutions must minimize hardware and software costs.
Existing Active Directory Environment

The network contains a single Active Directory forest. The forest contains two domains named
fabrikam.com and research.fabrikam.com.
An Active Directory site exists for each office.
The main office has three domain controllers for fabrikam.com that run Windows Server 2008 R2.
The relevant organizational units (OUs) and Group Policy objects (GPOs) for fabrikam.com are
configured as shown in the following table.

The Default Domain Policy GPO for fabrikam.com requires that the password for each user account
be changed every 30 days.
Existing Network Infrastructure
The network contains an internal network and a perimeter network that are separated by a firewall.
Only the perimeter network is accessible from the Internet.
All domain controllers are located in the internal network.
REQUIREMENTS
Technical Requirements
Fabrikam must meet the following technical requirements:
Minimize administrative effort.
Support the use of Hyper-V live migration.
Minimize the number of ports opened on all of the firewalls.
Ensure that the VMs are available if a single host server fails.
Minimize and control the amount of Active Directory replication traffic between the offices.
Ensure that the users in the branch offices always authenticate to a local server when they log on.
Ensure that the users are migrated to fabrikam.com can access the servers in research.fabrikam.com
by using their current permissions.
Security Requirements
Fabrikam must meet the following security requirements:
Ensure that the passwords for all service accounts expire every 60 days.
Maintain the current policy for changing the passwords of all other user accounts.
###EndCaseStudy###

You need to recommend a hardware solution for the domain controllers in the branch offices.
The solution must meet the company’s technical requirements.
What should you recommend doing in each branch office?

###BeginCaseStudy###
Case Study: 14
Fabrikam Inc
COMPANY OVERVIEW
Fabrikam Inc. is a manufacturing company that has a main office and 10 branch offices.
PLANNED CHANGES
Fabrikam plans to implement the following changes in the fabrikam.com domain:
In the main office, implement two Hyper-V servers.
Migrate all of the user accounts from research.fabrikam.com to fabrikam.com.
On the Hyper-V servers in the main office, deploy 20 virtual machines (VMs) that run Windows
Server 2008 R2.
In the perimeter network, implement a server that has the Routing and Remote Access service
(RRASJ role service installed.
EXISTING ENVIRONMENT
Fabrikam.com contains application servers that run either Windows Server 2003, Windows Server
2008 Service Pack 2 (SP2), or Windows Server 2008 R2. All of the application servers run services
that use domain user accounts as service accounts.
Each branch office contains the following servers:
A domain controller for fabrikam.com that runs a 32-bit version of Windows Server 2008 SP2
A member server that runs Windows Server 2008 R2 and has the Hyper-V server role installed
Business Goals
All proposed solutions must minimize hardware and software costs.
Existing Active Directory Environment

The network contains a single Active Directory forest. The forest contains two domains named
fabrikam.com and research.fabrikam.com.
An Active Directory site exists for each office.
The main office has three domain controllers for fabrikam.com that run Windows Server 2008 R2.
The relevant organizational units (OUs) and Group Policy objects (GPOs) for fabrikam.com are
configured as shown in the following table.

The Default Domain Policy GPO for fabrikam.com requires that the password for each user account
be changed every 30 days.
Existing Network Infrastructure
The network contains an internal network and a perimeter network that are separated by a firewall.
Only the perimeter network is accessible from the Internet.
All domain controllers are located in the internal network.
REQUIREMENTS
Technical Requirements
Fabrikam must meet the following technical requirements:
Minimize administrative effort.
Support the use of Hyper-V live migration.
Minimize the number of ports opened on all of the firewalls.
Ensure that the VMs are available if a single host server fails.
Minimize and control the amount of Active Directory replication traffic between the offices.
Ensure that the users in the branch offices always authenticate to a local server when they log on.
Ensure that the users are migrated to fabrikam.com can access the servers in research.fabrikam.com
by using their current permissions.
Security Requirements
Fabrikam must meet the following security requirements:
Ensure that the passwords for all service accounts expire every 60 days.
Maintain the current policy for changing the passwords of all other user accounts.
###EndCaseStudy###

You need to recommend a hardware solution for the domain controllers in the branch offices.
The solution must meet the company’s technical requirements.
What should you recommend doing in each branch office?

A.
Install Windows Server 2008 R2 on each existing domain controller.

B.
Install a new server as a VM that runs Windows Server 2008 R2, and then promote the server to a
writable domain controller.

C.
Install a new server as a VM that runs Windows Server 2008 R2, and then promote the server to a
Read only domain controller (RODC).

D.
Install a new physical server that runs Windows Server 2008 R2, and then promote the server to a
Read only domain controller (RODC).

Explanation:



Leave a Reply 0

Your email address will not be published. Required fields are marked *