walid - lebanon from Lebanon -
May 18 2013, 8:40 PMReport Spam
the dump is still valid in lebanon, passed with 815 yesterday, 5-6 new questions
Mark Raymond Eustaquio from Saudi Arabia -
May 18 2013, 10:28 AMReport Spam
Thanks God, I passed today(May 18, 2013) the Exam..3 or 4 questions new!!! This Dumps is very very valid here in Saudi Arabia....Review and understand carefully everything and You will pass the exam...May God Bless everyone...!!!.......and Have a Good DAy.
Ankit from Unknown -
May 18 2013, 1:31 AMReport Spam
Dumps. Around 75 % came from this dump remaining few came from other latest dumps. This dump is valid in India. Need to carefully understand & summarize this dump. Passed Yesterday with 792 Marks.
LP from United States -
May 17 2013, 4:16 PMReport Spam
Wooo Hooo! ! !
I gotta tell ya fellas, I passed the exam yesterday! These dumps are fantastic. If you know them you'll do fine. I had 50 questions and 120minutes. I finished with 45minutes remaining. Almost every single question was from these dumps. Maybe one new question. See below.
Here's what I can remember off the top of my head:
- one new question where they're asking what command you can run to determine which domain controllers have the global catalog.
- drag and drop question where you have to place "assign to user", "publish to user" and "assign to computer".
- exam F #38. You have to pick the correct subnet for the site. I’m pretty sure I got that one wrong. Wish I could’ve remembered the right answer!
- be sure to know ALL the questions were they have more than 4 choices ... the ones where they give you a) through j) as possible answers. I think I had every single one of those on my exam!
- exam i #15. It’s one of those drag and drop questions where you have to relocate the active directory instance LDS1 from the c: drive to the d: drive ... net stop LDS1, ntdsutil tool, net start LDS1.
- learn all of the questions regarding PSO’s (password setting objects) and certificate services.
- one question on preparing to use the active directory recycle bin … remember that the forest functional level has to be at windows 2008 R2. I got that one right!
As I mentioned if you study all these dumps you’ll do fine. Best of luck to you all!
LP
Bertha@SA from South Africa -
May 17 2013, 7:05 AMReport Spam
@Mbeko,mkhaya(homeboy) make sure u read all those 400 nd something questions nd make it a point that u knw each and every question by ur heart nd soul,pls dnt memorise,make sure u knw ur material coz these exams cost a fortune.u knw what? gudluck
Jithu from India -
May 17 2013, 6:43 AMReport Spam
Passed in India
815/1000
1 New Q(about DNS Manager with 3 Exhibit)
Jose Ernest from United States -
May 16 2013, 4:55 PMReport Spam
Jose Ernest from United States.
I pass 70-640 today. It is true that most of the questions are based on this vce quiz. 90% from the exam referred to vce.
1- Forest-wide
2- Domain operations master
3- AD LDS
4- Ntdsutil
5- Repadmin
6- DSamain
7- DNS
8 DCPROMO
9 AD LDP
10 Certificate Template
11 Certificate Authority
12 AD RMS
13 Trust between sites
14 Adprep/foresprep
15 Configure link order
15 Data Collector Set
Refer to VCE question between: A,B,D, E, J, H, K, L, M - Good luck
al from United States -
May 16 2013, 3:38 PMReport Spam
I Password 70-648 with 900 today i studies this and 642 by bruce study this and all good CA questions are all correct i got 18 CA questions and passed them all just study hard from this exam and all is fine :)
Young D from Togo -
May 16 2013, 9:21 AMReport Spam
Still valid. I pass today and have 838, no new questions. Good luck
Mbangwa from South Africa -
May 16 2013, 6:15 AMReport Spam
Dump valid in South Africa passed yesterday
Richard from Unknown -
May 16 2013, 5:59 AMReport Spam
hamza, here's your strategy: Study the book, practice this exam and pass.
hamza from Morocco -
May 15 2013, 8:04 PMReport Spam
Hi, guys plz i want to know how i should study this dump, i mean is there any strategy or something, it's my first time for an certif exam, and thank's
Borntowin from Togo -
May 15 2013, 4:42 PMReport Spam
Dump still valid. pass today 930. only two nex questions. Thanks venomous
DrZarkoff from Macedonia -
May 14 2013, 10:32 PMReport Spam
Valid in MKD. Some new questions (3-4), but nothing hard.
Many thanks, Venomus!
Mbeko from South Africa -
May 14 2013, 7:45 PMReport Spam
Its my 1st time preparing for a Microsoft Exam and the 1st time using these dumps. So I just wanna find out from the people who passed, must I go through all these exam trainings from Exam A to Exam L or is there a certain way that you guys prepare for this?
Ali From Lebanon from Lebanon -
May 14 2013, 6:44 PMReport Spam
Hi all,
passed today with 930, this dump is valid just 5 new questions including group policy, dns and active directory, also there is around 8 questions about certificates from this dump, and when I saw the final result the surprise is , all my wrong answers are related to active directory certificates services , so you should be very careful from the certificates questions. lot of wrong answers with the certificates questions
ROHAN from India -
May 14 2013, 3:33 PMReport Spam
Passed today with 836.
Dump is valid in India.
1 or 2 questions are new.
Thanks Venomous
Ladezz from South Africa -
May 14 2013, 8:07 AMReport Spam
dump is still valid in S.A passed yesterday with 792...my advise know the exam dump like the back of you hand dont memorize you must try understand all the questions
Dump Valid in India. Passed today with 815 marks. 3 or 4 new questions. Many Thanks to Venomous !!!!!
nowara from Egypt -
May 13 2013, 10:53 PMReport Spam
Dump is still valid passed today with 769 1 new question .thanks venomous
KMFB from United States -
May 13 2013, 10:31 PMReport Spam
Good Dump! Passed my 70-640 today with a 861/1000
blakrepublican from United States -
May 13 2013, 8:43 PMReport Spam
Still legit. 4 new questions on test today. Passed. MCITP server 2008 certified!
Mikha from Egypt -
May 13 2013, 6:10 PMReport Spam
@ Mike
Congratulations Mike, I was expecting a High score for smart guy like you, now you should join us in the up coming exam mess, 70-647, :D
BTW, the dead line for the exam is end of June this year.
Mike from Canada -
May 13 2013, 5:45 PMReport Spam
I need one correct answer............... for study
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2 Enterprise. You need to ensure that all of the members of a group named Group1 can view the event log entries for Certificate Services. Which snap-in should you use?
A. Certificate Templates
B. Certification Authority
C. Authorization Manager
D. Active Directory Users and Computers
E.TPM Management
F. Security Templates
G. Group Policy Management
H. Enterprise PKI
I. Certificates
Daniele from Netherlands -
May 13 2013, 9:20 AMReport Spam
Passed today in the Netherlands with 700 points. 4-5 new questions, the rest was from this dump. Dump valid but if you wanna make sure you'll pass, a lot of side studying is required.
Thanks Venomous!
plillammesh from Kenya -
May 13 2013, 8:46 AMReport Spam
Could those who have taken the exam give us a hint of the new questions added.I taking this exam on 20/05/2013 and im beginning to get nervous.Any hint pliiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiz
Tomo from Croatia -
May 13 2013, 8:40 AMReport Spam
Hello everybody.
Dump is valid in Croatia.
Passed today with 700 :-)
About 10 new questions.
Thank you Venomous!
Mike from Costa Rica -
May 12 2013, 3:22 AMReport Spam
Passed exam yesterday, scored 907. Two new questions, all the other were on this Dumb. It seems that only the certificates questions are with problems. Study this dump well and you should score 800 at least.
igbe from Nigeria -
May 11 2013, 10:13 PMReport Spam
took this exam today.dumb is still valid in nigeria. 90% questions came from this dump. i scored 792
Al from United Kingdom -
May 11 2013, 9:55 PMReport Spam
Mike it's G you need to use group policy to enable group 1 access to the ca events in the event viewer
Selim from Turkey -
May 11 2013, 7:48 PMReport Spam
Hi Noone,
I just checked MS web site and it is true that These certifications will be retired on July 31, 2013. If you already passed 642 and 646 exams, then you should get this one (640) also. As I understand, if you have System Administrator Certification for 2008, you can upgrade it to 2012 by just taking one exam which is 417. Good Luck.
Selim from Turkey -
May 11 2013, 7:36 PMReport Spam
I took the exam today. My score is 815. There are 6 or 7 new questions.
Noone from Bulgaria -
May 11 2013, 7:34 PMReport Spam
Guys,
is this ture that 70-640 will be retired?
Is there any sense to study and to pass this exam?
Selim Atmaca from Turkey -
May 11 2013, 7:33 PMReport Spam
Hi Mike,
The correct answer is A. Certificate Templates
Nkosi from South Africa -
May 11 2013, 8:22 AMReport Spam
The MCITP: Enterprise Administrator certification and the MCITP: Server Administrator certification will continue to be awarded until July 31, 2013. After July 31, 2013, these certifications will be retired, but the MCSA: Windows Server 2008 certification will remain in market.
If you are close to achieving an MCITP on Windows Server 2008, we encourage you to complete your certification, and then you can take advantage of a shorter path to upgrade your certification to the MCSE: Server Infrastructure certification or the MCSE: Desktop Infrastructure certification. By achieving multiple certifications, you show continued dedication to learning new skills and you increase your value to your organization.
Mike from Canada -
May 10 2013, 6:09 PMReport Spam
someone post the correct anwser,,,,,,,,,,,
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2 Enterprise. You need to ensure that all of the members of a group named Group1 can view the event log entries for Certificate Services. Which snap-in should you use?
A. Certificate Templates
B. Certification Authority
C. Authorization Manager
D. Active Directory Users and Computers
E.TPM Management
F. Security Templates
G. Group Policy Management
H. Enterprise PKI
I. Certificates
Reza from Malaysia -
May 10 2013, 8:41 AMReport Spam
Still valid in Malaysia, Passed with 836 score, only 5-6 questions was new.
Tq
Mike from Costa Rica -
May 09 2013, 6:00 PMReport Spam
@Sid,
Answer should be B, "member of properties for user 1". Why? Well, remember that RODCs do not store passwords unless the user is added to the "Allowed to replicate password" group. Each RODC have 2 built-in groups, Allowed to replicate and Denied to replicate. Hence, you should add the user1 account to the Allowed to replicate password group.
@LP,
That one is a mess. While some Microsoft KB points to being B, install the certificate services on member server, C may have also some sence. Why? Well, standard editions don't have the full CA functionalities. Microsoft recomendation is to use them only as Stand Alone CAs.
If this question comes in my exam, I would choose C, hoping that be the answer Microsoft is looking for. :-/
Sid from Unknown -
May 09 2013, 1:14 PMReport Spam
what is the answer for this question and why ???
Your network contains an Active Directory domain named contoso.com. The network has a branch office site that contains a read-only domain controller (RODC) named RODC1. RODC1 runs Windows Server 2008 R2.
A user named User1 logs on to a computer in the branch office site. You discover that the password of User1 is not stored on RODC1. You need to ensure that User1′s password is stored on RODC1.
What should you modify?
A.
the Member Of properties of RODC1
B.
the Member Of properties of User1
C.
the Security properties of RODC1
D.
the Security properties of User1
Roy from South Africa -
May 09 2013, 1:11 PMReport Spam
Dump still Valid. Passed today with 769/1000 some wrong answers but still good
Muhammad Umair from Pakistan -
May 09 2013, 12:38 PMReport Spam
Failed Today 75%Valid Dumps ONly :( :( anyone Can Tell Me How Can i Purcahse This Pool...Pleaseee
samill from India -
May 09 2013, 11:31 AMReport Spam
hi maxi im sahilll frm srilanka if u dont mind i want contact with u so pls send ur mobile no to my email (niplanka3g@gmail.com)
Hien Ngoc Dinh from Vietnam -
May 09 2013, 11:26 AMReport Spam
I passed to day with 723 in Vietnam, i'm sure 40q true but i don't know why :((.
1 new question:
Answer: change A record of consoto.com to 10.0.0.2
shanmugam from United States -
May 09 2013, 9:49 AMReport Spam
just passed with 900
maxi from Sri Lanka -
May 09 2013, 9:08 AMReport Spam
out of 50, 45 were in the dump
I got through today with 838.
no new questions as some of you guys already mentioned them here. I believe that there wrong answers. specially be careful with certificate cervices questions. that's the main area in the dump with wrong answers. find exact answers for them I am sure you can score 900+
Thanks Venomous!
Ryusuki from South Africa -
May 09 2013, 7:27 AMReport Spam
@sahill - Agreed , i also completely confuse which question is wrong on the dump and really need some good advice.
i will be also be grateful, if someone kind enough to drop me a mail of a list of wrong question from the dump. My email: ricky0616_20@hotmail.com
Baten from Unknown -
May 09 2013, 6:08 AMReport Spam
Is there any website for MCITP as like as 9tut for CCNA
LP from United States -
May 09 2013, 2:27 AMReport Spam
Exam G question 33.
So which answer is correct: B or C? The explanation seems to point to both.
Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Server 2008 R2 Standard.
You need to create an enterprise subordinate certification authority (CA) that can issue certificates based on version 3 certificate templates.
You must achieve this goal by using the minimum amount of administrative effort.
What should you do first?
(B) Install the Active Directory Certificate Services (AD CS) role on the member server.
-OR-
(C) Upgrade the member server to Windows Server 2008 R2 Enterprise.
@Mike
Good Luck. I think you'll do fine if you studied these dumps...even though there are a few wrong answers.
Mike from United States -
May 08 2013, 9:48 PMReport Spam
@LP,
Thanks. I'll be sitting for the exam on friday, however nowing that some answers are wrong adds a little fear to it.... Anyway, as you said, if this question comes on exam I will chose D, change zone transfer settings.
LP from United States -
May 08 2013, 3:45 PMReport Spam
@Mike
Yeah, on Exam D question 15 I would have picked choice D as well ... even though the listed answer is A. Anyone else have any ideas about this question?
I did some research on my 2008 DNS AD integrated environment here and I don't see how the answer could be choice A because all the replication options you can pick in there would still allow replication.
There's only 3 radio buttons you can choose from with DNS replication:
- to all DNS servers in this forest
- to all DNS servers in this domain
- to all Domain Controllers in this domain (for Win2000 compatibility)
all of these don't seem to have any affect in this case because the RODC is in the forest and is in the domain and is a domain controller.
When I take the exam I'll choose choice D "modify the zone transfer settings..." unless someone else here can explain otherwise.
Anyone have any ideas on this question?
guill from Suriname -
May 08 2013, 10:42 AMReport Spam
pass yesterday with 769/1000. dump is valid, no new questions. no abc questions.studie book and dump hard that is my advice.the exam is tricky.
Yevgeny from Israel -
May 08 2013, 7:31 AMReport Spam
Still valit got 861
Mike from Costa Rica -
May 08 2013, 2:12 AMReport Spam
Guys, I need a light on this one.... Exam D, Question15 speaks about how to avoid a DC from getting a zone transfer. Answer on file is A, modify the replicaciontio scope, however ins't a best idea to take out the server from the zone transfers tab? Or I'm missing something here?
hamody from Egypt -
May 07 2013, 3:35 PMReport Spam
الحمــــــــــــــــــد لله رب العالمين valid 2 day thanks dump valid in egypt 80% thanks god
sa from Sri Lanka -
May 07 2013, 9:02 AMReport Spam
It is a valid dump!
I got through today with 838.
No new questions. But believe there may be some wrong answers.
But it won't be a problem if everything can be studied as give in the dump.
Thanks Venomous!
infin8 from Unknown -
May 07 2013, 5:04 AMReport Spam
Great dump passed today with 838 very happy with that valid in Australia
guill from Suriname -
May 06 2013, 11:48 AMReport Spam
hey jerry what was the new question?
guill from Suriname -
May 06 2013, 10:37 AMReport Spam
hey guys, my exam is tomorrow.any tips???but many thanks mikha from egypt.and congrats
jerry from Cameroon -
May 06 2013, 10:13 AMReport Spam
passed today guys with 792/1000.the dump I used is 80percent valid eventhough some answers are wrong.saw just 1 new qustion.
nic0 from France -
May 06 2013, 9:02 AMReport Spam
Passed today with 792.
Dump is valid in FR. 1 New question. Thanks Venomous! :]
Good luck guys
Sitao from Singapore -
May 06 2013, 2:05 AMReport Spam
Passed the exam yesterday scored with 861/1000.I would say the dump is 90% vaild,but some answers are wrong.
hi Mikha happy easter i from egypt
i have this exam after tomorrow 7-5-2013
please Need your phone number (very important)
my number 01227511750
email samyit@hotmail.com
many thanks
Mikha from Egypt -
May 05 2013, 4:39 PMReport Spam
@ Jerry , @ guill
The exam questions were so much like what we have in the dump, but I face couple new questions. One of them was about the DNS and the summary of that Question is You have two DNS Servers, DC1 and DC2, and on dc1 you have primary standard zone and on dc2 you have secondary zone configured for the zone in Dc1, the thing was he was asking you to secure that zone transfer between the two servers. there was no any option to change the zone into Active directory zone. two choices were not valid at all, the other two choices were 1- apply IPSEC on both Dc1 and DC2
2-Applying the DNSSEC. I chose the DNSSEC option, I beilieve I was not right.
Another question was in the GPO and asking you to filter one specific Universal group that have many users from two different departments, I chose the Security filter.
But I'm not sure if we can apply security filter on Universal group, the other set of choices were the standard choices like apply Loopback policy on merge or replace mode, and Group policy Preferences, the rest of options are not applicable to GPO.
Most of the questions are multi-choices like in exam G K J and L. Study the FSMO roles and Domain/forest Prep and on which server you can run them.
Most of the questions are the same in the Dump, but pay attention the context of some question look a little bit different, but they still addressing the same idea of the dump questions. It won't be hard if you studied this dump well.
No dropList of Drag and drop qs,
BTW, there was no ABC company or those stupid questions about NIC2 or stuff that not related to 70-640 topics in section C dump. GooD LucK :D
jerry from Cameroon -
May 05 2013, 10:49 AMReport Spam
@vce.this is the url http://kat.ph/working-dumps-for-70-640-microsoft-exam-t7228206.html
note that you have to have utorrent or its equivalent installed on your pc.
thanks
jerry from Cameroon -
May 05 2013, 10:44 AMReport Spam
@mikha.thanks very much for the explanations.please I am taking this exam in 2 to 3 days time.so how was the exam, any new question?
guill from Suriname -
May 05 2013, 12:43 AMReport Spam
hey Mikha from Egypt what are the new questions???my exam is over 2 days.and how many questions and droplets???
Mikha from Egypt -
May 04 2013, 1:50 PMReport Spam
I Passed today with score of 890, the dump is 80% valid. Good luck guys
Mike from Costa Rica -
May 04 2013, 2:06 AMReport Spam
@Mikha,
Thanks for the answer, did not see that it was enterprise just for the AD RMS...
Mikha from Egypt -
May 04 2013, 1:28 AMReport Spam
@ Mike,
I think Domain Admin, should be sufficient, because in the question it says You have a "Single Domain". Also says "User1 is a member of only the AD RMS Enterprise Administrators group". .... ...
I believe being a part of two groups at the same computer won't help , because you will have to have the right to modify in Active Directory Partition, SCP location. Domain Administrative credential is needed at least to complete this Job.
Mikha from Egypt -
May 04 2013, 1:28 AMReport Spam
@ Mikhe,
I think Domain Admin, should be sufficient, because in the question it says You have a "Single Domain". Also says "User1 is a member of only the AD RMS Enterprise Administrators group". .... ...
I believe being a part of two groups at the same computer won't help , because you will have to have the right to modify in Active Directory Partition, SCP location. Domain Administrative credential is needed at least to complete this Job.
Mikha from Egypt -
May 04 2013, 1:07 AMReport Spam
Your company has an Active Directory domain.
You plan to install the Active Directory Certificate Services (AD CS) server role on a member server that runs Windows Server 2008 R2.
You need to ensure that members of the Account Operators group are able to issue smartcard credentials. They should not be able to revoke certificates.
Which three actions should you perform? (Each correct answer presents part of the solution. Choose three.)
A)Create an Enrollment Agent certificate.
B)Create a Smartcard logon certificate.
C)Restrict enrollment agents for the Smartcard logon certificate to the D)Account Operator group.
E)Install the AD CS role and configure it as an Enterprise Root CA.
E)Install the AD CS role and configure it as a Standalone CA.
F)Restrict certificate managers for the Smartcard logon certificate to the Account Operator group.
answer in Dump (BC and D)
I believe the answer should be AB and C,
Because in order to have an enrollment agent you should issue him a certificate first so he can enroll on behalf of others.
Here are some links : http://technet.microsoft.com/en-us/library/cc753800%28v=ws.10%29.aspx
Link 2:
http://secadmins.com/index.php/enroll-for-a-smart-card-certificate-on-behalf-of-other-users/
Link 3: http://technet.microsoft.com/en-us/library/cc754154.aspx
Read this at the End of the Page
Note
The user or group that you applied enrollment agent restrictions to must have a valid enrollment agent certificate for the CA before they can act as an enrollment agent, whether restricted enrollment agent permissions have or have not been configured.
Mike from Costa Rica -
May 04 2013, 12:36 AMReport Spam
Guys, quick one.... On question D, 45 about the Service connection Points for AD RMS, the answer is set to "Domain administrators", however as per http://technet.microsoft.com/em-us/library/ee221059(v=ws.10).aspx, Enterprise Administrators is the required right for this. Also, as far as I understand, the diference between domain admin and enterprise admin is the scope of rights (first one only on domain, second one on entire forest). Is not the correct answer for this B, AD RMS service group?
Mikha from Egypt -
May 03 2013, 9:24 PMReport Spam
@ jerry, I believe the question that you posted is one of the wrong answered questions in this dump, as per the Dump the answer is B, but this answer does not make sense. If you noticed these two lines in the question: 1- "deploy a new Enterprise Intermediate CA certificate TO ALL COMPUTERS IN THE DOMAIN"
2- "All servers run Windows Server 2008 R2".
According to Microsoft TechNet website there are some new Group Policy features in R2 regarding certificates deployment such as "Deploy intermediate certification authority (CA) certificates to client computers"
Here's the Link : http://technet.microsoft.com/en-us/library/cc725911%28v=ws.10%29.aspx
"Certificate settings in Group Policy enable administrators to manage the certificate settings on all the computers in the domain from a central location. Configuring the settings by using Group Policy can effect changes throughout the entire domain. The following are a few examples where administrators can use the new certificate-related settings to:
((((Deploy intermediate certification authority (CA) certificates to client computers.))))
Ensure that users never install applications that have been signed with an unapproved publisher certificate.
Configure network timeouts to better control the chain-building timeouts for large certification revocation lists (CRLs).
Extend CRL expiration times if a delay in publishing a new CRL is affecting applications. ........................
.................................In addition, four new policy stores have been added under Public Key Policies for use in distributing different types of certificates to clients:
Intermediate Certification Authorities
Trusted Publishers
Untrusted Certificates
Trusted People
SO The ANSWER SHOULD BE "D"...What do you think guys!!
Umair ahmed from Pakistan -
May 03 2013, 9:19 PMReport Spam
thanks Venomous, dump stil valid in PAKISTAN
passed exam with 815
@jerry cant seem to find the dump tht u mentioned OVAJ 2????? Jus copy paste theURL plz.. i check it out
jerry from Cameroon -
May 03 2013, 2:49 PMReport Spam
PLEASE I need an answer for this questions
-Your company has an active directory domain. all server run windows server 2008 R2.your company uses and enterprise root CA and an enterprise intermediate CA. The enterprise intermediate CA expires. you need to deploy a new enterprise intermediate CA to all computers in the domain.
What should you do
A-Import the the new certificate into the intermediate certification store on the enterprise root CA server
B-Import the new certificate into the intermediate certification store on the enterprise intermediate r CA server
C-Import the new certificate into the intermediate certification store in the default domain controllers GPO
D-Import the new certificate into the intermediate certification store in the default domain GPO
jerry from Cameroon -
May 03 2013, 2:45 PMReport Spam
HI TO EVERYONE.this dump Microsoft.Pass4Sure.70-640.v2012-08-30 OVAJ 2.vce, might be usefull to you guys.I just downloaded from kat.ph website and it appears most of the answers has been corrected already.
indikagac from Sri Lanka -
May 03 2013, 10:03 AMReport Spam
pass 2 day 746/1000 Dump is still valid sri lanka...... questions a all in dump
Thanks Venomous! now activat my MCSA & MCSE
Saad from Canada -
May 02 2013, 6:04 PMReport Spam
Saad - I will say it will get you through the exam but realistically speaking you will require to study very hard and have good understanding grip of the entire material
jerry from Cameroon -
May 02 2013, 1:33 PMReport Spam
Rob
thanks for the federation service answers
jerry from Cameroon -
May 02 2013, 1:30 PMReport Spam
@Rob.please I also need the answer for this qusetions
2-Your network contains an active directory domain. all domain controllers run windows server 2003.You replace all domain controllers with domain controllers that run windows server 2008 R2.You raise the functional level of the domain to windows server 200 R2.you need to minimize the amount of sysvol replication traffic on the network.
A-Raise the functional level of the forest to windows server 2008 R2
B-Modify the path of sysvol folder on all domain controllers
C-On global catalogue server, run repadmin.exe and specify the KCC parameter
D-On the domain controller that holds the PDC emulator role, run dfsrmig.exe
some says C and others D
b. In the event viewer, Applications, Event ID column look for event ID 674.
c. Open a browser window, and then type the Federation Service URL for the new federation server.
jerry from Cameroon -
May 02 2013, 1:27 PMReport Spam
@Rob.thanks very much.then how about this one
You had installed an Active Directory Federation Services (AD FS) role on a Windows server 2008 in your organization.
Now you need to test the connectivity of clients in the network to ensure that they can successfully reach the new Federation server and Federation server is operational.
What should you do? (Select all that apply)
a. Go to Services tab, and check if Active Directory Federation Services is running.
b. In the event viewer, Applications, Event ID column look for event ID 674.
c. Open a browser window, and then type the Federation Service URL for the new federation server.
d. None of the above
Rob from Canada -
May 02 2013, 12:53 PMReport Spam
Jerry,
Correct Answers:
A-Register a service principal name for (SPN) for ADRMS
D-Configure the useAppPooll credentials attribute in the IIS
jerry from Cameroon -
May 02 2013, 12:25 PMReport Spam
please can somebody tell me what the 2 right answers are in this questions?
1-Active Directory Right Management services are deployed. you need to configure ADRMS to use Kerberos authentication. What two actions should you perform?
A-Register a service principal name for (SPN) for ADRMS
B-Register a service connection point (SCP) for ADRMS
C-Configure the Identity settings of the _DRMSapppol application pool
D-Configure the useAppPooll credentials attribute in the IIS
Jan from Finland -
May 02 2013, 8:57 AMReport Spam
Just passed with 700 today in South Africa.
All questions from this dump. maybe 5 new questions
3 drag and drop q, no ABC.com only contoso.com q's
This dump has to have many wrong answers... Better studdy it hard...
J from United States -
May 01 2013, 6:48 PMReport Spam
Exam E Q50
which one is right answer
thxxx
AFN from Afghanistan -
May 01 2013, 6:57 AMReport Spam
Passed yesterday, this dump is valid.
Thanks to Venomous and all others who contributed to it.
D from United States -
May 01 2013, 2:11 AMReport Spam
Exam F Q1
which one is the right answer please help me out
thank you
DUMP >> NOT << VALID in Canada. Maybe 40% of the entire .vce was on the exam. 29-04-2013
Blizz from United States -
Apr 29 2013, 8:51 PMReport Spam
@guill thanks, i'm going through again, i keep missing by a few questions! I nearly passed last exam this one is lower for some reason! But i get destroyed by the certificate services section. I will take your advice and analyze the questions much more for a small change.
MARCIO from Brazil -
Apr 29 2013, 7:23 PMReport Spam
I passed the exam 70-640 with 746 points today. 1 new issue that was not in the simulated.
guill from Suriname -
Apr 29 2013, 6:52 PMReport Spam
@blizz,too many questions look like the same but you have different answers.you have to analyze the dump.this 640 exam is a tricky exam guys.but i think the dump is good.
Blizz from United States -
Apr 29 2013, 6:24 PMReport Spam
tons of answers wrong in this dump, i kept getting 80%+ on these and i failed again with 605. Questions came from it but answers are wrong, certificate services was my weakness too.
guill from Suriname -
Apr 29 2013, 6:21 PMReport Spam
hey guys i'm preparing for 640 exam.can someone help me with the new questions en faulty answers in the dump?
Rais from Pakistan -
Apr 29 2013, 4:59 PMReport Spam
Dear Abdul Samad plz contact me at this email i am also preparing for 70-640.
rais_kundi@yahoo.com
its urgent........................................................................................
guill from Suriname -
Apr 29 2013, 1:04 PMReport Spam
I gotta tell ya fellas, I passed the exam yesterday! These dumps are fantastic. If you know them you'll do fine. I had 50 questions and 120minutes. I finished with 45minutes remaining. Almost every single question was from these dumps. Maybe one new question. See below.
Here's what I can remember off the top of my head:
- one new question where they're asking what command you can run to determine which domain controllers have the global catalog.
- drag and drop question where you have to place "assign to user", "publish to user" and "assign to computer".
- exam F #38. You have to pick the correct subnet for the site. I’m pretty sure I got that one wrong. Wish I could’ve remembered the right answer!
- be sure to know ALL the questions were they have more than 4 choices ... the ones where they give you a) through j) as possible answers. I think I had every single one of those on my exam!
- exam i #15. It’s one of those drag and drop questions where you have to relocate the active directory instance LDS1 from the c: drive to the d: drive ... net stop LDS1, ntdsutil tool, net start LDS1.
- learn all of the questions regarding PSO’s (password setting objects) and certificate services.
- one question on preparing to use the active directory recycle bin … remember that the forest functional level has to be at windows 2008 R2. I got that one right!
As I mentioned if you study all these dumps you’ll do fine. Best of luck to you all!
LP
815/1000
1 New Q(about DNS Manager with 3 Exhibit)
I pass 70-640 today. It is true that most of the questions are based on this vce quiz. 90% from the exam referred to vce.
1- Forest-wide
2- Domain operations master
3- AD LDS
4- Ntdsutil
5- Repadmin
6- DSamain
7- DNS
8 DCPROMO
9 AD LDP
10 Certificate Template
11 Certificate Authority
12 AD RMS
13 Trust between sites
14 Adprep/foresprep
15 Configure link order
15 Data Collector Set
Refer to VCE question between: A,B,D, E, J, H, K, L, M - Good luck
Many thanks, Venomus!
passed today with 930, this dump is valid just 5 new questions including group policy, dns and active directory, also there is around 8 questions about certificates from this dump, and when I saw the final result the surprise is , all my wrong answers are related to active directory certificates services , so you should be very careful from the certificates questions. lot of wrong answers with the certificates questions
Dump is valid in India.
1 or 2 questions are new.
Thanks Venomous
Congratulations Mike, I was expecting a High score for smart guy like you, now you should join us in the up coming exam mess, 70-647, :D
BTW, the dead line for the exam is end of June this year.
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2 Enterprise. You need to ensure that all of the members of a group named Group1 can view the event log entries for Certificate Services. Which snap-in should you use?
A. Certificate Templates
B. Certification Authority
C. Authorization Manager
D. Active Directory Users and Computers
E.TPM Management
F. Security Templates
G. Group Policy Management
H. Enterprise PKI
I. Certificates
Thanks Venomous!
Dump is valid in Croatia.
Passed today with 700 :-)
About 10 new questions.
Thank you Venomous!
I just checked MS web site and it is true that These certifications will be retired on July 31, 2013. If you already passed 642 and 646 exams, then you should get this one (640) also. As I understand, if you have System Administrator Certification for 2008, you can upgrade it to 2012 by just taking one exam which is 417. Good Luck.
is this ture that 70-640 will be retired?
Is there any sense to study and to pass this exam?
The correct answer is A. Certificate Templates
If you are close to achieving an MCITP on Windows Server 2008, we encourage you to complete your certification, and then you can take advantage of a shorter path to upgrade your certification to the MCSE: Server Infrastructure certification or the MCSE: Desktop Infrastructure certification. By achieving multiple certifications, you show continued dedication to learning new skills and you increase your value to your organization.
Your network contains an enterprise certification authority (CA) that runs Windows Server 2008 R2 Enterprise. You need to ensure that all of the members of a group named Group1 can view the event log entries for Certificate Services. Which snap-in should you use?
A. Certificate Templates
B. Certification Authority
C. Authorization Manager
D. Active Directory Users and Computers
E.TPM Management
F. Security Templates
G. Group Policy Management
H. Enterprise PKI
I. Certificates
Tq
Answer should be B, "member of properties for user 1". Why? Well, remember that RODCs do not store passwords unless the user is added to the "Allowed to replicate password" group. Each RODC have 2 built-in groups, Allowed to replicate and Denied to replicate. Hence, you should add the user1 account to the Allowed to replicate password group.
@LP,
That one is a mess. While some Microsoft KB points to being B, install the certificate services on member server, C may have also some sence. Why? Well, standard editions don't have the full CA functionalities. Microsoft recomendation is to use them only as Stand Alone CAs.
If this question comes in my exam, I would choose C, hoping that be the answer Microsoft is looking for. :-/
Your network contains an Active Directory domain named contoso.com. The network has a branch office site that contains a read-only domain controller (RODC) named RODC1. RODC1 runs Windows Server 2008 R2.
A user named User1 logs on to a computer in the branch office site. You discover that the password of User1 is not stored on RODC1. You need to ensure that User1′s password is stored on RODC1.
What should you modify?
A.
the Member Of properties of RODC1
B.
the Member Of properties of User1
C.
the Security properties of RODC1
D.
the Security properties of User1
1 new question:
Answer: change A record of consoto.com to 10.0.0.2
I got through today with 838.
no new questions as some of you guys already mentioned them here. I believe that there wrong answers. specially be careful with certificate cervices questions. that's the main area in the dump with wrong answers. find exact answers for them I am sure you can score 900+
Thanks Venomous!
i will be also be grateful, if someone kind enough to drop me a mail of a list of wrong question from the dump. My email: ricky0616_20@hotmail.com
So which answer is correct: B or C? The explanation seems to point to both.
Your network contains an Active Directory domain named contoso.com. Contoso.com contains a member server that runs Windows Server 2008 R2 Standard.
You need to create an enterprise subordinate certification authority (CA) that can issue certificates based on version 3 certificate templates.
You must achieve this goal by using the minimum amount of administrative effort.
What should you do first?
(B) Install the Active Directory Certificate Services (AD CS) role on the member server.
-OR-
(C) Upgrade the member server to Windows Server 2008 R2 Enterprise.
@Mike
Good Luck. I think you'll do fine if you studied these dumps...even though there are a few wrong answers.
Thanks. I'll be sitting for the exam on friday, however nowing that some answers are wrong adds a little fear to it.... Anyway, as you said, if this question comes on exam I will chose D, change zone transfer settings.
Yeah, on Exam D question 15 I would have picked choice D as well ... even though the listed answer is A. Anyone else have any ideas about this question?
I did some research on my 2008 DNS AD integrated environment here and I don't see how the answer could be choice A because all the replication options you can pick in there would still allow replication.
There's only 3 radio buttons you can choose from with DNS replication:
- to all DNS servers in this forest
- to all DNS servers in this domain
- to all Domain Controllers in this domain (for Win2000 compatibility)
all of these don't seem to have any affect in this case because the RODC is in the forest and is in the domain and is a domain controller.
When I take the exam I'll choose choice D "modify the zone transfer settings..." unless someone else here can explain otherwise.
Anyone have any ideas on this question?
I got through today with 838.
No new questions. But believe there may be some wrong answers.
But it won't be a problem if everything can be studied as give in the dump.
Thanks Venomous!
Dump is valid in FR. 1 New question. Thanks Venomous! :]
Good luck guys
i have this exam after tomorrow 7-5-2013
please Need your phone number (very important)
my number 01227511750
email samyit@hotmail.com
many thanks
The exam questions were so much like what we have in the dump, but I face couple new questions. One of them was about the DNS and the summary of that Question is You have two DNS Servers, DC1 and DC2, and on dc1 you have primary standard zone and on dc2 you have secondary zone configured for the zone in Dc1, the thing was he was asking you to secure that zone transfer between the two servers. there was no any option to change the zone into Active directory zone. two choices were not valid at all, the other two choices were 1- apply IPSEC on both Dc1 and DC2
2-Applying the DNSSEC. I chose the DNSSEC option, I beilieve I was not right.
Another question was in the GPO and asking you to filter one specific Universal group that have many users from two different departments, I chose the Security filter.
But I'm not sure if we can apply security filter on Universal group, the other set of choices were the standard choices like apply Loopback policy on merge or replace mode, and Group policy Preferences, the rest of options are not applicable to GPO.
Most of the questions are multi-choices like in exam G K J and L. Study the FSMO roles and Domain/forest Prep and on which server you can run them.
Most of the questions are the same in the Dump, but pay attention the context of some question look a little bit different, but they still addressing the same idea of the dump questions. It won't be hard if you studied this dump well.
No dropList of Drag and drop qs,
BTW, there was no ABC company or those stupid questions about NIC2 or stuff that not related to 70-640 topics in section C dump. GooD LucK :D
note that you have to have utorrent or its equivalent installed on your pc.
thanks
Thanks for the answer, did not see that it was enterprise just for the AD RMS...
I think Domain Admin, should be sufficient, because in the question it says You have a "Single Domain". Also says "User1 is a member of only the AD RMS Enterprise Administrators group". .... ...
I believe being a part of two groups at the same computer won't help , because you will have to have the right to modify in Active Directory Partition, SCP location. Domain Administrative credential is needed at least to complete this Job.
I think Domain Admin, should be sufficient, because in the question it says You have a "Single Domain". Also says "User1 is a member of only the AD RMS Enterprise Administrators group". .... ...
I believe being a part of two groups at the same computer won't help , because you will have to have the right to modify in Active Directory Partition, SCP location. Domain Administrative credential is needed at least to complete this Job.
You plan to install the Active Directory Certificate Services (AD CS) server role on a member server that runs Windows Server 2008 R2.
You need to ensure that members of the Account Operators group are able to issue smartcard credentials. They should not be able to revoke certificates.
Which three actions should you perform? (Each correct answer presents part of the solution. Choose three.)
A)Create an Enrollment Agent certificate.
B)Create a Smartcard logon certificate.
C)Restrict enrollment agents for the Smartcard logon certificate to the D)Account Operator group.
E)Install the AD CS role and configure it as an Enterprise Root CA.
E)Install the AD CS role and configure it as a Standalone CA.
F)Restrict certificate managers for the Smartcard logon certificate to the Account Operator group.
answer in Dump (BC and D)
I believe the answer should be AB and C,
Because in order to have an enrollment agent you should issue him a certificate first so he can enroll on behalf of others.
Here are some links : http://technet.microsoft.com/en-us/library/cc753800%28v=ws.10%29.aspx
Link 2:
http://secadmins.com/index.php/enroll-for-a-smart-card-certificate-on-behalf-of-other-users/
Link 3: http://technet.microsoft.com/en-us/library/cc754154.aspx
Read this at the End of the Page
Note
The user or group that you applied enrollment agent restrictions to must have a valid enrollment agent certificate for the CA before they can act as an enrollment agent, whether restricted enrollment agent permissions have or have not been configured.
2- "All servers run Windows Server 2008 R2".
According to Microsoft TechNet website there are some new Group Policy features in R2 regarding certificates deployment such as "Deploy intermediate certification authority (CA) certificates to client computers"
Here's the Link : http://technet.microsoft.com/en-us/library/cc725911%28v=ws.10%29.aspx
"Certificate settings in Group Policy enable administrators to manage the certificate settings on all the computers in the domain from a central location. Configuring the settings by using Group Policy can effect changes throughout the entire domain. The following are a few examples where administrators can use the new certificate-related settings to:
((((Deploy intermediate certification authority (CA) certificates to client computers.))))
Ensure that users never install applications that have been signed with an unapproved publisher certificate.
Configure network timeouts to better control the chain-building timeouts for large certification revocation lists (CRLs).
Extend CRL expiration times if a delay in publishing a new CRL is affecting applications. ........................
.................................In addition, four new policy stores have been added under Public Key Policies for use in distributing different types of certificates to clients:
Intermediate Certification Authorities
Trusted Publishers
Untrusted Certificates
Trusted People
SO The ANSWER SHOULD BE "D"...What do you think guys!!
passed exam with 815
-Your company has an active directory domain. all server run windows server 2008 R2.your company uses and enterprise root CA and an enterprise intermediate CA. The enterprise intermediate CA expires. you need to deploy a new enterprise intermediate CA to all computers in the domain.
What should you do
A-Import the the new certificate into the intermediate certification store on the enterprise root CA server
B-Import the new certificate into the intermediate certification store on the enterprise intermediate r CA server
C-Import the new certificate into the intermediate certification store in the default domain controllers GPO
D-Import the new certificate into the intermediate certification store in the default domain GPO
Thanks Venomous! now activat my MCSA & MCSE
thanks for the federation service answers
2-Your network contains an active directory domain. all domain controllers run windows server 2003.You replace all domain controllers with domain controllers that run windows server 2008 R2.You raise the functional level of the domain to windows server 200 R2.you need to minimize the amount of sysvol replication traffic on the network.
A-Raise the functional level of the forest to windows server 2008 R2
B-Modify the path of sysvol folder on all domain controllers
C-On global catalogue server, run repadmin.exe and specify the KCC parameter
D-On the domain controller that holds the PDC emulator role, run dfsrmig.exe
some says C and others D
b. In the event viewer, Applications, Event ID column look for event ID 674.
c. Open a browser window, and then type the Federation Service URL for the new federation server.
You had installed an Active Directory Federation Services (AD FS) role on a Windows server 2008 in your organization.
Now you need to test the connectivity of clients in the network to ensure that they can successfully reach the new Federation server and Federation server is operational.
What should you do? (Select all that apply)
a. Go to Services tab, and check if Active Directory Federation Services is running.
b. In the event viewer, Applications, Event ID column look for event ID 674.
c. Open a browser window, and then type the Federation Service URL for the new federation server.
d. None of the above
Correct Answers:
A-Register a service principal name for (SPN) for ADRMS
D-Configure the useAppPooll credentials attribute in the IIS
1-Active Directory Right Management services are deployed. you need to configure ADRMS to use Kerberos authentication. What two actions should you perform?
A-Register a service principal name for (SPN) for ADRMS
B-Register a service connection point (SCP) for ADRMS
C-Configure the Identity settings of the _DRMSapppol application pool
D-Configure the useAppPooll credentials attribute in the IIS
All questions from this dump. maybe 5 new questions
3 drag and drop q, no ABC.com only contoso.com q's
This dump has to have many wrong answers... Better studdy it hard...
which one is right answer
thxxx
Thanks to Venomous and all others who contributed to it.
which one is the right answer please help me out
thank you
rais_kundi@yahoo.com
its urgent........................................................................................