6.1 Flashcards

1
Q

You manage a network with a single location. You want to use WSUS to make sure that only approved
updates are applied to all client computers. Client computers should download all approved updates from a
WSUS server in your location.
You install WSUS on one server. You synchronize the list of updates on the server, and approve the updates
that you want applied to client computers.
You check the client computers and find that only the approved updates are being applied, but updates are
being downloaded from the Microsoft Update website and not your local WSUS server.
What should you do?

In a GPO that applies to all client computers, edit the Enable client-side targeting policy and specify the Unassigned Computers group.

In a GPO that applies to all client computers, edit the Specify intranet Microsoft Update service
location policy and specify your internal WSUS server.

Edit the WSUS server properties to store updates locally on the server.

In a GPO that applies to all client computers, enable the Configure Automatic Updates policy.

A

Edit the WSUS server properties to store updates locally on the server.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

You manage a network with a single location. You want to use WSUS to make sure that only approved
updates are applied to all client computers. Client computers should download all approved updates from the
Microsoft Update website.
You install WSUS on one server. You synchronize the list of updates on the server, and approve the updates
that you want applied to client computers.
You check the client computers and find that they are downloading updates from the Microsoft Update
website, but they are downloading updates that you have not approved.
What should you do?

Configure the WSUS server to store update files locally.

In a GPO that applies to all client computers, edit the Specify intranet Microsoft Update service location policy and specify your internal WSUS server.

In a GPO that applies to all client computers, edit the Enable client-side targeting policy and specify
the Unassigned Computers group.

In a GPO that applies to all client computers, enable the Configure Automatic Updates policy.

A

In a GPO that applies to all client computers, edit the Specify intranet Microsoft Update service location policy and specify your internal WSUS server.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

You manage a network with two locations: San Jose and Oakland. The two networks are connected with a
WAN link, and each site has its own Internet connection. Srvl is in San Jose, and Srv2 is in Oakland.
You decide to implement a WSUS solution using Srvl and Srv2 as WSUS servers. Your solution should meet
the following requirements:

Client computers should contact the WSUS server in their site for a list of approvals and download the
updates from the WSUS server in their site.
All updates for both sites are approved from Srvl.
You must minimize traffic on the WAN link between the two sites.
You have completed the configuration of the WSUS server in the San Jose location. How should you configure
Srv2 in Oakland to meet the design requirements?

Configure Srv2 to synchronize with Srvl as a replica of Srvl. Configure the server to store updates locally, and to download updates from Microsoft Update.

Configure Srv2 to synchronize with Srvl and operate in autonomous mode. Configure the server to not
store updates locally.

Configure Srv2 to synchronize with Microsoft Update and to store files locally.

Configure Srv2 to synchronize with Srvl as a replica of Srvl. Configure the server to store updates locally, and to download updates from Srvl.

A

Configure Srv2 to synchronize with Srvl as a replica of Srvl. Configure the server to store updates locally, and to download updates from Microsoft Update.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

You manage a network with two locations: San Jose and Oakland. The two networks are connected with a
WAN link, and each site has its own Internet connection.
You decide to implement a WSUS solution using a WSUS server in each location. Srv1 is in San Jose, and
Srv2 is in Oakland. Client computers should contact the WSUS server in their site for a list of approvals, with
all approved updates being downloaded directly from the Microsoft Update website. You want to centrally
manage all updates, approving updates for both sites from Srvl.
You configure Srv1 and Srv2 as WSUS servers, with Srv2 as a replica of Srvl.
How should you complete the configuration for the Oakland location? (Select two. Each choice is a required
part of the solution.)

In a GPO that applies to all client computers in Oakland, edit the Specify intranet Microsoft Update service location policy and specify Srv2.

Configure Srv2 to store updates locally.

Configure Srv2 to not store updates locally.

In a GPO that applies to all client computers in Oakland, edit the Specify intranet Microsoft Update service location policy and specify Srvl.

A

In a GPO that applies to all client computers in Oakland, edit the Specify intranet Microsoft Update service location policy and specify Srv2.

Configure Srv2 to not store updates locally.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

You manage a network with two locations: San Jose and Oakland. The two networks are connected with a
WAN link, and each site has its own Internet connection.
You decide to implement a WSUS solution with a single WSUS server in the San Jose location. You want to
make sure that client computers only download updates that have been approved on the WSUS server. To
minimize bandwidth use between the two locations, all client computers in Oakland should download the
updates from the Microsoft Update website using the local Internet connection.
You install WSUS on Srv1 in the Oakland location.
What should you do to complete the configuration for hosts in Oakland? (Select two. Each choice is a required
part of the solution.)

Add a computer group called SanJose, and configure Srvl to use client-side targeting.

In a GPO that applies to all client computers in Oakland, disable the Specify intranet Microsoft Update service location policy.

Configure Srvl to store updates locally.

Configure Srvl to not store updates locally.

In a GPO that applies to all client computers in Oakland, edit the Specify intranet Microsoft Update service location policy and specify Srvl.

In a GPO that applies to all client computers in Oakland, edit the Enable client-side targeting policy and specify the SanJose group.

A

Configure Srvl to not store updates locally.

In a GPO that applies to all client computers in Oakland, edit the Specify intranet Microsoft Update service location policy and specify Srvl.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

You are the administrator for a network with a single Active Directory domain called westsim.com. All
servers run Windows Server 2012 R2. All clients run Windows 8.
You have installed WSUS on a single member server for your entire network. You have configured the server
to automatically approve new versions of previously approved updates. You store updates locally on the D:
SUS\content folder, and clients download updates directly from your WSUS server. You verify that clients are
downloading the updates.
You get an e-mail notifying you of an updated security patch that applies to an update that you have
previously approved. You check a client system and find that the newest update has not yet been applied. On
the WSUS server, you do not see the new update listed.
What should you do?

Configure a rule to automatically approve the new update.

Synchronize your WSUS server with Microsoft Update.

On the WSUS server, approve the new update.

On the WSUS server, enable downloading of express installation files.

On client computers, run Gpupdate.

A

Synchronize your WSUS server with Microsoft Update.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

You are the administrator for a network with a single Active Directory domain called westsim.com. All
servers run Windows Server 2012 R2. All clients run Windows 7 or Windows 8.
You have installed WSUS on a single member server for your entire network. You have configured the server
to automatically approve new versions of previously approved updates. You store updates locally on the D:
SUS\content folder, and clients download updates directly from your WSUS server. You verify that clients are
downloading the updates.
You get an e-mail notifying you of a new security patch. You check a client system and find that the newest
update has not yet been applied. On the WSUS server, you see the new patch in the list of available updates,
but it is not being applied to client systems.
What should you do?

Synchronize your WSUS server with Microsoft Update.

On the WSUS server, enable downloading of express installation files.

On the WSUS server, approve the new update.

On client computers, run Gpupdate.

A

On the WSUS server, approve the new update.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

You manage a network with a single location. You have previously deployed a WSUS server in your location
to specify the approved list of updates. All client computers are configured to download updates from your
local WSUS server.
Members of the Accounting department report that a new system update causes instability with their
accounting software. You want to prevent this update from being applied to the accounting department
computers, but you still want to ensure that all other updates are being applied as they should.
What should you do?

Configure an Update Rule on the WSUS server to exclude the problematic update.

Configure a second WSUS server as a replica to the first WSUS server. Configure accounting computers to use this new server for updates.

Unapprove the problematic update on the WSUS server. Configure non-accounting computers to use Microsoft Update instead of the WSUS server.

Configure client side targeting on the WSUS server and computers in the Accounting department.

A

Configure client side targeting on the WSUS server and computers in the Accounting department.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

You are the administrator for a network with a single Active Directory domain called westsim.com. All computer accounts reside in Organizational Units (OUs) that correspond to departments.

You have previously deployed a WSUS server in your location to specify the approved list of updates. All client computers are configured to download updates from your local WSUS server. You decide that you need to configure a separate update approval list for all computers in the Marketing department. You want the update list to be automatically identified based on the department membership for the computer.

What should you do? (Select three. Each choice is a required part of the solution.)

Link a GPO to the Marketing OU. In the GPO, edit the Enable client-side targeting policy and specify
the Marketing Computers group.

In the WSUS console, create a Marketing Computers group.

Create an Active Directory group called Marketing Computers. Make all computers in the Marketing
department members of this group.

In the WSUS console, edit the options for Computers, and specify Use Group Policy or registry
settings on computers.

In the WSUS console, manually move all Marketing department computers to the Marketing Computers
group.

In the WSUS console, edit the options for Computers, and specify Use the Update Services console.

A

Link a GPO to the Marketing OU. In the GPO, edit the Enable client-side targeting policy and specify
the Marketing Computers group.

In the WSUS console, create a Marketing Computers group.

In the WSUS console, edit the options for Computers, and specify Use Group Policy or registry
settings on computers.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

You need to deploy a new WSUS server that uses a Microsoft SQL server instead of the default internal
database service.
Click the options you would select in the Select role services screen of the Add Roles and Features Wizard to
do this. (Select two.)

A

WSUS Services

Database

How well did you know this?
1
Not at all
2
3
4
5
Perfectly