nerdexam
Microsoft

70-642 · Question #248

Your network contains an Active Directory domain named contoso.com. The domain contains two sites named Site1 and Site2. The servers for the sites are configured as shown in the following table…

The correct answer is C. On each server, create connection security rules. See the full explanation below for the reasoning.

Question

Your network contains an Active Directory domain named contoso.com. The domain contains two sites named Site1 and Site2. The servers for the sites are configured as shown in the following table. Server1 hosts a standard primary zone for contoso.com. Server2 hosts a secondary zone for contoso.com. You need to ensure that all DNS replication traffic between Server1 and Server2 is encrypted. What should you do?

Options

  • AOn Server1, configure DNSSEC for the contoso.com zone.
  • BOn Server1, convert the contoso.com zone to an Active Directory-integrated zone.
  • COn each server, create connection security rules.
  • DOn each server, enable Encrypting File System (EFS) encryption for the contoso.com.dns file.

How the community answered

(29 responses)
  • A
    3% (1)
  • B
    7% (2)
  • C
    79% (23)
  • D
    10% (3)

Community Discussion

No community discussion yet for this question.

Full 70-642 Practice