Test information:
Number of questions: 66
Time allowed in minutes: 120
Required passing score: 65%
Languages: English
The test contains five sections, totaling 65ti multiple-choice questions. The
percentages after each section title reflect the approximate distribution of the
total question set across the sections.
Section 1 - Datacap Architecture (17%)
Demonstrate understanding of Datacap architecture
Explain general architecture
Explain capacity planning and load balancing configuration
Demonstrate an understanding of distributed environments
Demonstrate an understanding of mobile architecture
Demonstrate an understanding of High Availability and Scaling
Demonstrate an understanding of High Availability and Scaling
Identify minimum installation requirements
Demonstrate knowledge of Datacap databases
Demonstrate knowledge of Datacap application offerings
Demonstrate understanding of wTM
Section 2 - Analyze Business Requirements (19%)
Determine what information to gather from images
Identify ingestion sources
Determine business validation rules
Determine workflow steps
Demonstrate understanding of export requirements
Determine security requirements
Determine reporting requirements
Section 3 - Design a Datacap Taskmaster Solution (26%)
Demonstrate knowledge of creating Datacap document hierarchy
Analyze job and task design
Demonstrate knowledge of ingestion
Demonstrate knowledge of document conversions
Demonstrate knowledge of page identification
Demonstrate general page id knowledge
Demonstrate knowledge of Fingerprinting
Demonstrate knowledge of recognition methodology
Demonstrate knowledge of validation techniques
Demonstrate knowledge of export approaches
Demonstrate knowledge of FastDoc
Demonstrate knowledge of RuleRunner
Demonstrate knowledge of critical Datacap folder/file configuration
Section 4 - Develop Application and Solution Components (29%)
Identify uses of Maintenance Manager
Demonstrate understanding of Report Viewer
Demonstrate understanding of RuleRunner
Demonstrate knowledge of using FastDoc admin
Demonstrate understanding of Datacap Studio
Demonstrate understanding of Studio AppWizard
Demonstrate knowledge of how to develop Task Profiles
Demonstrate knowledge of how to develop rulesets, rules, and functions
Demonstrate knowledge of applying rules to Datacap Document Hierarchy (DCO)
Demonstrate understanding of web administration
Section 5 - Solution Testing and Deployment (9%)
Demonstrate knowledge of performing solution testing
Demonstrate knowledge on how to use Datacap Studio to test
Explain steps required to move solution between deployment targets
Demonstrate ability to enable logging for all the components
Demonstrated knowledge of troubleshooting techniques
IBM Certified Solution Designer - Datacap V9.0
Job Role Description / Target Audience
This intermediate level certification test certifies that the successful
candidate has the knowledge to create the theoretical and/or detailed technical
design of an application, solution, and infrastructure using IBM Datacap V9.0.
Provide expertise to evaluate and choose between alternatives; assist with
balancing costs with capabilities and priorities. Identify products /
technologies / processes to be included, and determine points of required
integration and customization. Identify sizing and capacity issues, as well as
conflicts with existing processes or environments.
Recommended Prerequisite Skills
Before preparing for this certification, basic understanding of the following is
recommended and assumed:
- Knowledge of IBM Datacap components: FastDoc, Datacap Web Server, Report
Viewer, Desktop, Dstudio, RuleRunner, Maintenance Manager, Datacap Navigator and
Dashboard
- IBM Content Navigator
- Knowledge of WebSphere Application Server
- Cloud technologies
- Ability to write actions for IBM Datacap: VBScript, C#, XML
- Knowledge of Microsoft IIS
- Knowledge of Out-of-the-Box component interfaces
- Knowledge of content acquisition: import, fax, email and scan
- Knowledge of document and image conversion
- Knowledge of document hierarchy
- Knowledge of document and page identification
- Knowledge of recognition
- Knowledge of routing: branching, jumping and splitting
- Knowledge of verification and validation
- Knowledge of export and repositories
- Knowledge of databases
- Authentication and Authorization
Wednesday, May 10, 2017
Monday, May 8, 2017
C2070-993 IBM Case Manager V5.2.1 Solution Designer
Test information:
Number of questions: 62
Time allowed in minutes: 120
Required passing score: 57%
Languages: English
The test contains five sections, totaling 62 multiple-choice questions. The percentages after each section title reflect the approximate distribution of the total question set across the sections.
Section 1 - Planning and Architecture (18%)
Demonstrate an understanding of IBM Case Manager Architecture
Identify solutions best addressed by Case Manager
Identify key differences between development and production environments
Identify integrated products and add-on software capabilities including licensing
Section 2 - Designing a Case Solution (30%)
Demonstrate an understanding of the Case Manager object model
Demonstrate an understanding of Case Builder and its Artifacts
Demonstrate an understanding of external documents
Demonstrate an understanding of Case Task and Process Fragments
Demonstrate an understanding of the Page Designer
Demonstrate an understanding of IBM Content Navigator integration
Demonstrate an understanding of the security model
Demonstrate the use of the Case Operations Component
Section 3 - Deploying, Testing and Troubleshooting a Case Solution (15%)
Demonstrate an understanding of the deployment structure and its limitations
Demonstrate knowledge of project areas
Demonstrate the use of the Case Manager Administration Client
Demonstrate knowledge of solution deployment troubleshooting
Demonstrate knowledge of solution comparison
Section 4 - Extending a Case Management Solution (16%)
Demonstrate knowledge of integrating custom widgets and business rules
Identify IBM capabilities to extend Case Manager
Demonstrate an understanding of building a custom application using REST service and JavaScript APIs
Demonstrate an understanding of mobile integration
Section 5 - Solution Migration (13%)
Demonstrate an understanding of Case Manager Configuration Manager, Case Manager Administration Client and FileNet Deployment Manager
Demonstrate an understanding of the requirements and steps to migrate a solution
Demonstrate an understanding of configuring security in a production environment
Section 6 - Business Metrics and Analytics (8%)
Demonstrate knowledge of using Case Analyzer
Demonstrate knowledge of using Case Monitor and Cognos RTM
Demonstrate knowledge of using Watson Content Analytics with Enterprise Search
IBM Certified Solution Designer - Case Manager V5.2.1
Job Role Description / Target Audience
This intermediate level certification test certifies that the successful candidate has the knowledge to create the theoretical and/or detailed technical design of an application, solution, and infrastructure using IBM Case Manager v5.2.1 (ICM). Provide expertise to evaluate and choose between alternatives; assist with balancing costs with capabilities and priorities. Identify products / technologies / processes to be included, and determine points of required integration and customization. Identify sizing and capacity issues, as well as conflicts with existing processes or environments.
Recommended Prerequisite Skills
Before preparing for this certification, basic understanding of the following is recommended and assumed for your environment:
- Knowledge of IBM Case Manager
- Knowledge of IBM FileNet Content Platform Engine
- Knowledge of supported Application Servers
- Knowledge of Content Navigator
- Knowledge of Cognos RealTime Monitoring
- Knowledge of Watson Content Analytics
- Knowledge of Box integration
- Knowledge of VCS integration
Number of questions: 62
Time allowed in minutes: 120
Required passing score: 57%
Languages: English
The test contains five sections, totaling 62 multiple-choice questions. The percentages after each section title reflect the approximate distribution of the total question set across the sections.
Section 1 - Planning and Architecture (18%)
Demonstrate an understanding of IBM Case Manager Architecture
Identify solutions best addressed by Case Manager
Identify key differences between development and production environments
Identify integrated products and add-on software capabilities including licensing
Section 2 - Designing a Case Solution (30%)
Demonstrate an understanding of the Case Manager object model
Demonstrate an understanding of Case Builder and its Artifacts
Demonstrate an understanding of external documents
Demonstrate an understanding of Case Task and Process Fragments
Demonstrate an understanding of the Page Designer
Demonstrate an understanding of IBM Content Navigator integration
Demonstrate an understanding of the security model
Demonstrate the use of the Case Operations Component
Section 3 - Deploying, Testing and Troubleshooting a Case Solution (15%)
Demonstrate an understanding of the deployment structure and its limitations
Demonstrate knowledge of project areas
Demonstrate the use of the Case Manager Administration Client
Demonstrate knowledge of solution deployment troubleshooting
Demonstrate knowledge of solution comparison
Section 4 - Extending a Case Management Solution (16%)
Demonstrate knowledge of integrating custom widgets and business rules
Identify IBM capabilities to extend Case Manager
Demonstrate an understanding of building a custom application using REST service and JavaScript APIs
Demonstrate an understanding of mobile integration
Section 5 - Solution Migration (13%)
Demonstrate an understanding of Case Manager Configuration Manager, Case Manager Administration Client and FileNet Deployment Manager
Demonstrate an understanding of the requirements and steps to migrate a solution
Demonstrate an understanding of configuring security in a production environment
Section 6 - Business Metrics and Analytics (8%)
Demonstrate knowledge of using Case Analyzer
Demonstrate knowledge of using Case Monitor and Cognos RTM
Demonstrate knowledge of using Watson Content Analytics with Enterprise Search
IBM Certified Solution Designer - Case Manager V5.2.1
Job Role Description / Target Audience
This intermediate level certification test certifies that the successful candidate has the knowledge to create the theoretical and/or detailed technical design of an application, solution, and infrastructure using IBM Case Manager v5.2.1 (ICM). Provide expertise to evaluate and choose between alternatives; assist with balancing costs with capabilities and priorities. Identify products / technologies / processes to be included, and determine points of required integration and customization. Identify sizing and capacity issues, as well as conflicts with existing processes or environments.
Recommended Prerequisite Skills
Before preparing for this certification, basic understanding of the following is recommended and assumed for your environment:
- Knowledge of IBM Case Manager
- Knowledge of IBM FileNet Content Platform Engine
- Knowledge of supported Application Servers
- Knowledge of Content Navigator
- Knowledge of Cognos RealTime Monitoring
- Knowledge of Watson Content Analytics
- Knowledge of Box integration
- Knowledge of VCS integration
Tuesday, November 1, 2016
Exam 70-734 OEM Preinstallation for Windows 10
Published: June 16, 2016
Languages: English, Japanese
Audiences: IT professionals
Technology: Windows 10, Microsoft Assessment and Deployment Kit (ADK)
Credit toward certification: MCP
This exam measures your ability to accomplish the technical tasks listed below. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Prepare deployments
Prepare the environment
Prepare Assessment and Deployment Kit (ADK), prepare USB, design an answer file, create a default user profile, preserve preinstalled OEM drivers
Identify a business strategy for deploying operating system images
Identify a build-to-order or build-to-plan approach, select a deployment method, implement end-user upgrade paths
Determine hardware configurations
Determine Unified Extensible Firmware Interface (UEFI) requirements, configure network and storage drivers, configure a boot device
Build a Windows Preinstallation Environment (Windows PE or WinPE)
Troubleshoot a problematic installation in WinPE, customize a WinPE installation, create a 32-bit or 64-bit WinPE environment, manage Windows PE packages
Create, capture, and deploy images
Create a reference installation
Set up and capture a reference PC, preinstall Microsoft and third-party desktop applications, set up a Push-Button Restore, evaluate deployment logs, prepare and test Out-of-Box Experience (OOBE)
Determine redistribution licensing requirements
Determine redistribution rights and technical requirements, select licensed recovery types, determine OEM preinstallation requirements
Manage deployments
Manage images
Upgrade a Windows edition, perform online or offline servicing, activate a grace period timer, manage nested images within Windows Imaging File Format (WIMS), add and remove packages, add and remove drivers, set the multilingual deployment of an operating system, manage application updates
Apply a reference installation
Perform drive partitioning, deploy reference and recovery images, set up Push-Button Recovery with REAgentC and BCD commands
Validate an image
Validate an image in audit mode, validate Push-Button Reset, sysprep images to OOBE, identify causes of driver failure, finalize installation, validate licensing requirements and components
Languages: English, Japanese
Audiences: IT professionals
Technology: Windows 10, Microsoft Assessment and Deployment Kit (ADK)
Credit toward certification: MCP
This exam measures your ability to accomplish the technical tasks listed below. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Prepare deployments
Prepare the environment
Prepare Assessment and Deployment Kit (ADK), prepare USB, design an answer file, create a default user profile, preserve preinstalled OEM drivers
Identify a business strategy for deploying operating system images
Identify a build-to-order or build-to-plan approach, select a deployment method, implement end-user upgrade paths
Determine hardware configurations
Determine Unified Extensible Firmware Interface (UEFI) requirements, configure network and storage drivers, configure a boot device
Build a Windows Preinstallation Environment (Windows PE or WinPE)
Troubleshoot a problematic installation in WinPE, customize a WinPE installation, create a 32-bit or 64-bit WinPE environment, manage Windows PE packages
Create, capture, and deploy images
Create a reference installation
Set up and capture a reference PC, preinstall Microsoft and third-party desktop applications, set up a Push-Button Restore, evaluate deployment logs, prepare and test Out-of-Box Experience (OOBE)
Determine redistribution licensing requirements
Determine redistribution rights and technical requirements, select licensed recovery types, determine OEM preinstallation requirements
Manage deployments
Manage images
Upgrade a Windows edition, perform online or offline servicing, activate a grace period timer, manage nested images within Windows Imaging File Format (WIMS), add and remove packages, add and remove drivers, set the multilingual deployment of an operating system, manage application updates
Apply a reference installation
Perform drive partitioning, deploy reference and recovery images, set up Push-Button Recovery with REAgentC and BCD commands
Validate an image
Validate an image in audit mode, validate Push-Button Reset, sysprep images to OOBE, identify causes of driver failure, finalize installation, validate licensing requirements and components
Saturday, October 15, 2016
Exam 70-744 Securing Windows Server 2016 (In development)
Published: November 3, 2016
Languages: English
Audiences: IT professionals
Technology: Windows Server 2016
Credit toward certification: MCSE
Skills measured
This exam measures your ability to accomplish the technical tasks listed below. The percentages indicate the relative weight of each major topic area on the exam. The higher the percentage, the more questions you are likely to see on that content area on the exam. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Implement server hardening solutions (25–30%)
Configure disk and file encryption
Determine hardware and firmware requirements for secure boot and encryption key functionality; deploy BitLocker encryption; deploy BitLocker without a Trusted Platform Module (TPM); deploy BitLocker with a TPM only; configure the Network Unlock feature; configure BitLocker Group Policy settings; enable Bitlocker to use secure boot for platform and BCD integrity validation; configure BitLocker on Clustered Shared Volumes (CSVs) and Storage Area Networks (SANs); implement BitLocker Recovery Process using self-recovery and recovery password retrieval solutions; configure BitLocker for virtual machines (VMs) in Hyper-V; determine usage scenarios for Encrypting File System (EFS); configure the EFS recovery agent; manage EFS and BitLocker certificates, including backup and restore
Implement server patching and updating solutions
Install and configure Windows Server Update Services (WSUS), manage updates using WSUS, create computer groups, configure update approvals and deployments, configure automatic updates, configure WSUS reporting, troubleshoot WSUS configuration and deployments
Implement malware protection
Implement antimalware solution with Windows Defender, integrate Windows Defender with WSUS and Windows Update, configure Windows Defender using Group Policy, configure Windows Defender scans using Windows PowerShell, implement AppLocker rules, implement AppLocker rules using Windows PowerShell, implement Control Flow Guard, implement Code Integrity (Device Guard) Policies, create Code Integrity policy rules, create Code Integrity file rules
Protect credentials
Determine requirements for implementing Credential Guard; configure Credential Guard using Group Policy, WMI, command prompt, and Windows PowerShell; implement NTLM blocking
Create security baselines
Install and configure Security Compliance Manager (SCM); create, view, and import security baselines; deploy configurations to domain and non-domain joined servers
Secure a virtualization infrastructure (5–10%)
Implement a Guarded Fabric solution
Install and configure the Host Guardian Service (HGS), configure Admin-trusted attestation, configure TPM-trusted attestation, configure the Key Protection Service using HGS, migrate Shielded VMs to other guarded hosts, configure Nano Server as TPM attested guarded host, troubleshoot guarded hosts
Implement Shielded and encryption-supported VMs
Determine requirements and scenarios for implementing Shielded VMs, create a Shielded VM using only a Hyper-V environment, enable and configure vTPM to allow an operating system and data disk encryption within a VM, determine requirements and scenarios for implementing encryption-supported VMs, troubleshoot Shielded and encryption-supported VMs
Secure a network infrastructure (10–15%)
Configure Windows Firewall
Configure Windows Firewall with Advanced Security; configure network location profiles; configure and deploy profile rules; configure firewall rules for multiple profiles using Group Policy; configure connection security rules using Group Policy, the GUI management console, or Windows PowerShell; configure Windows Firewall to allow or deny applications, scopes, ports, and users using Group Policy, the GUI management console, or Windows PowerShell; configure authenticated firewall exceptions; import and export settings
Implement a software-defined Distributed Firewall
Determine requirements and scenarios for Distributed Firewall implementation with software-defined networking, determine usage scenarios for Distributed Firewall policies and network security groups
Secure network traffic
Configure IPsec transport and tunnel modes, configure IPsec authentication options, configure connection security rules, implement isolation zones, implement domain isolation, implement server isolation zones, determine SMB 3.1.1 protocol security scenarios and implementations, enable SMB encryption on SMB Shares, configure SMB signing via Group Policy, disable SMB 1.0, secure DNS traffic using DNSSEC and DNS policies, install and configure Microsoft Message Analyzer (MMA) to analyze network traffic
Manage privileged identities (25–30%)
Implement an Enhanced Security Administrative Environment (ESAE) administrative forest design approach
Determine usage scenarios and requirements for implementing ESAE forest design architecture to create a dedicated administrative forest, determine usage scenarios and requirements for implementing clean source principals in an Active Directory architecture
Implement Just-in-Time (JIT) Administration
Create a new administrative (bastion) forest in an existing Active Directory environment using Microsoft Identity Manager (MIM), configure trusts between production and bastion forests, create shadow principals in bastion forest, configure the MIM web portal, request privileged access using the MIM web portal, determine requirements and usage scenarios for Privileged Access Management (PAM) solutions, create and implement MIM policies, implement Just-in-Time administration principals using time-based policies, request privileged access using Windows PowerShell
Implement Just-Enough-Administration (JEA)
Enable a JEA solution on Windows Server 2016; create and configure session configuration files, create and configure role capability files, create a JEA endpoint, connect to a JEA endpoint on a server for administration, view logs, download WMF 5.1 to a Windows Server 2008 R2, configure a JEA endpoint on a server using Desired State Configuration (DSC)
Implement Privileged Access Workstations (PAWs) and User Rights Assignments
Implement a PAWS solution, configure User Rights Assignment group policies, configure security options settings in Group Policy, enable and configure Remote Credential Guard for remote desktop access
Implement Local Administrator Password Solution (LAPS)
Install and configure the LAPS tool, secure local administrator passwords using LAPS, manage password parameters and properties using LAPS
Implement threat detection solutions (15–20%)
Configure advanced audit policies
Determine the differences and usage scenarios for using local audit policies and advanced auditing policies; implement auditing using Group Policy and AuditPol.exe; implement auditing using Windows PowerShell; create expression-based audit policies; configure the Audit PNP Activity policy; configure the Audit Group Membership policy; enable and configure Module, Script Block, and Transcription logging in Windows PowerShell
Install and configure Microsoft Advanced Threat Analytics (ATA)
Determine usage scenarios for ATA; determine deployment requirements for ATA, install and configure ATA Gateway on a dedicated server, install and configure ATA Lightweight Gateway directly on a domain controller, configure alerts in ATA Center when suspicious activity is detected, review and edit suspicious activities on the attack time line
Determine threat detection solutions using Operations Management Suite (OMS)
Determine usage and deployment scenarios for OMS, determine security and auditing functions available for use; determine Log Analytics usage scenarios
Implement workload-specific security (5–10%)
Secure application development and server workload infrastructure
Determine usage scenarios, supported server workloads, and requirements for Nano Server deployments; install and configure Nano Server; implement security policies on Nano Servers using Desired State Configuration (DSC); determine usage scenarios and requirements for Windows Server and Hyper-V containers; install and configure Hyper-V containers
Implement a secure file services infrastructure and Dynamic Access Control (DAC)
Install the File Server Resource Manager (FSRM) role service, configure quotas, configure file screens, configure storage reports, configure file management tasks, configure File Classification Infrastructure (FCI) using FSRM, implement work folders, configure file access auditing, configure user and device claim types, implement policy changes and staging, perform access-denied remediation, create and configure Central Access rules and policies, create and configure resource properties and lists
Languages: English
Audiences: IT professionals
Technology: Windows Server 2016
Credit toward certification: MCSE
Skills measured
This exam measures your ability to accomplish the technical tasks listed below. The percentages indicate the relative weight of each major topic area on the exam. The higher the percentage, the more questions you are likely to see on that content area on the exam. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Implement server hardening solutions (25–30%)
Configure disk and file encryption
Determine hardware and firmware requirements for secure boot and encryption key functionality; deploy BitLocker encryption; deploy BitLocker without a Trusted Platform Module (TPM); deploy BitLocker with a TPM only; configure the Network Unlock feature; configure BitLocker Group Policy settings; enable Bitlocker to use secure boot for platform and BCD integrity validation; configure BitLocker on Clustered Shared Volumes (CSVs) and Storage Area Networks (SANs); implement BitLocker Recovery Process using self-recovery and recovery password retrieval solutions; configure BitLocker for virtual machines (VMs) in Hyper-V; determine usage scenarios for Encrypting File System (EFS); configure the EFS recovery agent; manage EFS and BitLocker certificates, including backup and restore
Implement server patching and updating solutions
Install and configure Windows Server Update Services (WSUS), manage updates using WSUS, create computer groups, configure update approvals and deployments, configure automatic updates, configure WSUS reporting, troubleshoot WSUS configuration and deployments
Implement malware protection
Implement antimalware solution with Windows Defender, integrate Windows Defender with WSUS and Windows Update, configure Windows Defender using Group Policy, configure Windows Defender scans using Windows PowerShell, implement AppLocker rules, implement AppLocker rules using Windows PowerShell, implement Control Flow Guard, implement Code Integrity (Device Guard) Policies, create Code Integrity policy rules, create Code Integrity file rules
Protect credentials
Determine requirements for implementing Credential Guard; configure Credential Guard using Group Policy, WMI, command prompt, and Windows PowerShell; implement NTLM blocking
Create security baselines
Install and configure Security Compliance Manager (SCM); create, view, and import security baselines; deploy configurations to domain and non-domain joined servers
Secure a virtualization infrastructure (5–10%)
Implement a Guarded Fabric solution
Install and configure the Host Guardian Service (HGS), configure Admin-trusted attestation, configure TPM-trusted attestation, configure the Key Protection Service using HGS, migrate Shielded VMs to other guarded hosts, configure Nano Server as TPM attested guarded host, troubleshoot guarded hosts
Implement Shielded and encryption-supported VMs
Determine requirements and scenarios for implementing Shielded VMs, create a Shielded VM using only a Hyper-V environment, enable and configure vTPM to allow an operating system and data disk encryption within a VM, determine requirements and scenarios for implementing encryption-supported VMs, troubleshoot Shielded and encryption-supported VMs
Secure a network infrastructure (10–15%)
Configure Windows Firewall
Configure Windows Firewall with Advanced Security; configure network location profiles; configure and deploy profile rules; configure firewall rules for multiple profiles using Group Policy; configure connection security rules using Group Policy, the GUI management console, or Windows PowerShell; configure Windows Firewall to allow or deny applications, scopes, ports, and users using Group Policy, the GUI management console, or Windows PowerShell; configure authenticated firewall exceptions; import and export settings
Implement a software-defined Distributed Firewall
Determine requirements and scenarios for Distributed Firewall implementation with software-defined networking, determine usage scenarios for Distributed Firewall policies and network security groups
Secure network traffic
Configure IPsec transport and tunnel modes, configure IPsec authentication options, configure connection security rules, implement isolation zones, implement domain isolation, implement server isolation zones, determine SMB 3.1.1 protocol security scenarios and implementations, enable SMB encryption on SMB Shares, configure SMB signing via Group Policy, disable SMB 1.0, secure DNS traffic using DNSSEC and DNS policies, install and configure Microsoft Message Analyzer (MMA) to analyze network traffic
Manage privileged identities (25–30%)
Implement an Enhanced Security Administrative Environment (ESAE) administrative forest design approach
Determine usage scenarios and requirements for implementing ESAE forest design architecture to create a dedicated administrative forest, determine usage scenarios and requirements for implementing clean source principals in an Active Directory architecture
Implement Just-in-Time (JIT) Administration
Create a new administrative (bastion) forest in an existing Active Directory environment using Microsoft Identity Manager (MIM), configure trusts between production and bastion forests, create shadow principals in bastion forest, configure the MIM web portal, request privileged access using the MIM web portal, determine requirements and usage scenarios for Privileged Access Management (PAM) solutions, create and implement MIM policies, implement Just-in-Time administration principals using time-based policies, request privileged access using Windows PowerShell
Implement Just-Enough-Administration (JEA)
Enable a JEA solution on Windows Server 2016; create and configure session configuration files, create and configure role capability files, create a JEA endpoint, connect to a JEA endpoint on a server for administration, view logs, download WMF 5.1 to a Windows Server 2008 R2, configure a JEA endpoint on a server using Desired State Configuration (DSC)
Implement Privileged Access Workstations (PAWs) and User Rights Assignments
Implement a PAWS solution, configure User Rights Assignment group policies, configure security options settings in Group Policy, enable and configure Remote Credential Guard for remote desktop access
Implement Local Administrator Password Solution (LAPS)
Install and configure the LAPS tool, secure local administrator passwords using LAPS, manage password parameters and properties using LAPS
Implement threat detection solutions (15–20%)
Configure advanced audit policies
Determine the differences and usage scenarios for using local audit policies and advanced auditing policies; implement auditing using Group Policy and AuditPol.exe; implement auditing using Windows PowerShell; create expression-based audit policies; configure the Audit PNP Activity policy; configure the Audit Group Membership policy; enable and configure Module, Script Block, and Transcription logging in Windows PowerShell
Install and configure Microsoft Advanced Threat Analytics (ATA)
Determine usage scenarios for ATA; determine deployment requirements for ATA, install and configure ATA Gateway on a dedicated server, install and configure ATA Lightweight Gateway directly on a domain controller, configure alerts in ATA Center when suspicious activity is detected, review and edit suspicious activities on the attack time line
Determine threat detection solutions using Operations Management Suite (OMS)
Determine usage and deployment scenarios for OMS, determine security and auditing functions available for use; determine Log Analytics usage scenarios
Implement workload-specific security (5–10%)
Secure application development and server workload infrastructure
Determine usage scenarios, supported server workloads, and requirements for Nano Server deployments; install and configure Nano Server; implement security policies on Nano Servers using Desired State Configuration (DSC); determine usage scenarios and requirements for Windows Server and Hyper-V containers; install and configure Hyper-V containers
Implement a secure file services infrastructure and Dynamic Access Control (DAC)
Install the File Server Resource Manager (FSRM) role service, configure quotas, configure file screens, configure storage reports, configure file management tasks, configure File Classification Infrastructure (FCI) using FSRM, implement work folders, configure file access auditing, configure user and device claim types, implement policy changes and staging, perform access-denied remediation, create and configure Central Access rules and policies, create and configure resource properties and lists
Thursday, September 8, 2016
Exam 70-685 Windows 7, Enterprise Desktop Support Technician
Published: November 27, 2009
Languages: English, German, Japanese
Audiences: IT professionals
Technology: Windows 7
Credit toward certification: MCP, Specialist
Skills measured
This exam measures your ability to accomplish the technical tasks listed below. The percentages indicate the relative weight of each major topic area on the exam. The higher the percentage, the more questions you are likely to see on that content area on the exam. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Identifying cause of and resolving desktop application issues (20-25%)
Solve software installation escalations
Installation permissions; local administrator requirement; licensing restrictions; digital signing
Solve software failure escalations
Checking the logs; checking whether the application runs in Safe mode; running the application in a previous version of Windows; repairing the installation; checking recently added programs; restoring or reimaging the system
Preparation resources
Help with Windows 7 compatibility problems
Five steps to Windows 7 application readiness
Performance monitoring getting started guide
Identifying cause of and resolving networking issues (20-25%)
Solve enterprise logon issues
Hardware vs. network; password expiration; trust relationships with machine accounts; determining logon context; logon hours compliance
Solve enterprise network connectivity issues
Determining scope of issue; determining whether it’s a PC or a network connectivity issue; TCP/IP; hardware and cabling; proxies; default gateway
Solve enterprise names resolution issues
Checking which DNS is assigned; flushing the DNS cache; nslookup to DNS server; checking the DHCP scopes
Solve enterprise network printer issues
Hardware failure; server issues; printer failure; network issues; driver issues
Preparation resources
Windows 7: Troubleshooting connections
Open the printer troubleshooter
Managing and maintaining systems that run Windows 7 client (20-25%)
Identify and/or resolve performance issues
Analyzing system and application logs; analyzing started services; setting power management; checking hard drive space; optimizing virtual memory
Solve hardware failure issues
Identifying bad sectors; diagnosing memory issues; recommending replacement hardware; updating the BIOS; determining which component is broken
Preparation resources
Check a drive for errors
Learn best practices for optimizing the virtual memory configuration
Run diagnostics to check your system for memory problems
Supporting mobile users (15-20%)
Solve enterprise wireless connectivity issues
Signal strength; encryption types; encryption keys; wireless profiles; mobile devices
Solve enterprise remote access issues
VPN client not connecting; IPv6 support; access and authentication to network resources
Preparation resources
Wired and wireless network problems
Troubleshoot Remote Desktop problems
Why am I having problems with my VPN connection?
Identifying cause of and resolving security issues (15-20%)
Solve Windows Internet Explorer security issues
Adding trusted sites; advanced settings; installing plug-ins; identifying group policy restrictions; certificates
Solve enterprise issues due to malicious software
Analyzing services; analyzing programs; analyzing processes; analyzing browser helper add-ons; user account control
Solve enterprise storage security issues
Requirements for installing; recovering encryption keys; key management
Solve enterprise software update issues
Identifying software update level; checking whether client is receiving regularly scheduled updates; identifying incompatibility of update with other applications
Preparation resources
Change Internet Explorer 9 security settings
Troubleshoot problems with installing updates
Security monitoring and attack detection planning guide
QUESTION 1
The chief financial officer (CFO) releases new guidelines that specify that only users from finance are allowed to run FinanceApp1.
Users in the Marketing OU report that they can run FinanceApp1.
You need to ensure that only users in the Finance OU can run FinanceApp1.
What should you do?
A. In the AllComputers GPO, create a new AppLocker executable rule.
B. In the Desktops GPO and the Laptops GPO, create a new Windows Installer rule.
C. In the AllComputers GPO, create a software restriction policy and define a new hash rule.
D. In the Desktops GPO and the Laptops GPO, create a software restriction policy and define a new path rule.
Answer: A
Explanation:
Chapter 10 p 467- 468
Understanding the difference between SRP and AppLocker
You might want to deploy application control policies onto Windows operating systems earlier than Windows
Server2008R2 or Windows7. You can use AppLocker policies only on the supported editions of Windows
Server2008R2 and Windows7, but you can use SRP on supported editions of Windows beginning with
Windows Server2003 and WindowsXP. http://technet.microsoft.com/en-us/library/ee460955(WS.10).aspx http://technet.microsoft.com/en-us/library/dd548340(WS.10).aspx
QUESTION 2
Users in the ERPApp1 pilot project report intermittent application issues.
You need to consolidate all application events for the users in a central location.
What should you do?
A. Configure event subscriptions.
B. Configure the Advanced Audit Policy Configuration settings.
C. Create a custom view in Event Viewer.
D. Create a user-defined Data Collector Set.
Answer: A
QUESTION 3
The help desk reports that users in the Marketing OU print draft documents, e-mails, and
other miscellaneous documents on Printer2.
You need to recommend a solution so that marketing users print documents to Printer1 by default.
What should you do?
A. Enable printer pooling.
B. Configure Group Policy Preferences.
C. Modify the priorities of the shared printers.
D. Modify the permissions of the shared printers.
Answer: B
QUESTION 4
The Office1 network link is brought offline for emergency maintenance.
Users in Office2 and Office3 report that they cannot connect to the wireless network.
You need to recommend changes to ensure that users in all offices can connect to the wireless network if a WAN link fails.
What should you recommend?
A. that redundant DHCP scopes be created
B. that additional RADIUS servers be deployed
C. that universal group caching be implemented
D. that additional default gateways be configured
Answer: B
QUESTION 5
The company is deploying a new application.
When users attempt to install the application, they receive an error message indicating that they need administrative privileges to install it.
You need to recommend a solution to ensure that users can install the application. The solution must adhere to the corporate security guidelines. What should you recommend?
A. Publish the application by using a Group Policy.
B. Disable User Account Control (UAC) by using a Group Policy.
C. Add all domain users to the local Power Users group by using Restricted Groups.
D. Add the current users to the local Administrators group by using Group Policy preferences.
Answer: A
Explanation:
http://magalan.co.uk/install_software_via_group_policy.html
Languages: English, German, Japanese
Audiences: IT professionals
Technology: Windows 7
Credit toward certification: MCP, Specialist
Skills measured
This exam measures your ability to accomplish the technical tasks listed below. The percentages indicate the relative weight of each major topic area on the exam. The higher the percentage, the more questions you are likely to see on that content area on the exam. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Identifying cause of and resolving desktop application issues (20-25%)
Solve software installation escalations
Installation permissions; local administrator requirement; licensing restrictions; digital signing
Solve software failure escalations
Checking the logs; checking whether the application runs in Safe mode; running the application in a previous version of Windows; repairing the installation; checking recently added programs; restoring or reimaging the system
Preparation resources
Help with Windows 7 compatibility problems
Five steps to Windows 7 application readiness
Performance monitoring getting started guide
Identifying cause of and resolving networking issues (20-25%)
Solve enterprise logon issues
Hardware vs. network; password expiration; trust relationships with machine accounts; determining logon context; logon hours compliance
Solve enterprise network connectivity issues
Determining scope of issue; determining whether it’s a PC or a network connectivity issue; TCP/IP; hardware and cabling; proxies; default gateway
Solve enterprise names resolution issues
Checking which DNS is assigned; flushing the DNS cache; nslookup to DNS server; checking the DHCP scopes
Solve enterprise network printer issues
Hardware failure; server issues; printer failure; network issues; driver issues
Preparation resources
Windows 7: Troubleshooting connections
Open the printer troubleshooter
Managing and maintaining systems that run Windows 7 client (20-25%)
Identify and/or resolve performance issues
Analyzing system and application logs; analyzing started services; setting power management; checking hard drive space; optimizing virtual memory
Solve hardware failure issues
Identifying bad sectors; diagnosing memory issues; recommending replacement hardware; updating the BIOS; determining which component is broken
Preparation resources
Check a drive for errors
Learn best practices for optimizing the virtual memory configuration
Run diagnostics to check your system for memory problems
Supporting mobile users (15-20%)
Solve enterprise wireless connectivity issues
Signal strength; encryption types; encryption keys; wireless profiles; mobile devices
Solve enterprise remote access issues
VPN client not connecting; IPv6 support; access and authentication to network resources
Preparation resources
Wired and wireless network problems
Troubleshoot Remote Desktop problems
Why am I having problems with my VPN connection?
Identifying cause of and resolving security issues (15-20%)
Solve Windows Internet Explorer security issues
Adding trusted sites; advanced settings; installing plug-ins; identifying group policy restrictions; certificates
Solve enterprise issues due to malicious software
Analyzing services; analyzing programs; analyzing processes; analyzing browser helper add-ons; user account control
Solve enterprise storage security issues
Requirements for installing; recovering encryption keys; key management
Solve enterprise software update issues
Identifying software update level; checking whether client is receiving regularly scheduled updates; identifying incompatibility of update with other applications
Preparation resources
Change Internet Explorer 9 security settings
Troubleshoot problems with installing updates
Security monitoring and attack detection planning guide
QUESTION 1
The chief financial officer (CFO) releases new guidelines that specify that only users from finance are allowed to run FinanceApp1.
Users in the Marketing OU report that they can run FinanceApp1.
You need to ensure that only users in the Finance OU can run FinanceApp1.
What should you do?
A. In the AllComputers GPO, create a new AppLocker executable rule.
B. In the Desktops GPO and the Laptops GPO, create a new Windows Installer rule.
C. In the AllComputers GPO, create a software restriction policy and define a new hash rule.
D. In the Desktops GPO and the Laptops GPO, create a software restriction policy and define a new path rule.
Answer: A
Explanation:
Chapter 10 p 467- 468
Understanding the difference between SRP and AppLocker
You might want to deploy application control policies onto Windows operating systems earlier than Windows
Server2008R2 or Windows7. You can use AppLocker policies only on the supported editions of Windows
Server2008R2 and Windows7, but you can use SRP on supported editions of Windows beginning with
Windows Server2003 and WindowsXP. http://technet.microsoft.com/en-us/library/ee460955(WS.10).aspx http://technet.microsoft.com/en-us/library/dd548340(WS.10).aspx
QUESTION 2
Users in the ERPApp1 pilot project report intermittent application issues.
You need to consolidate all application events for the users in a central location.
What should you do?
A. Configure event subscriptions.
B. Configure the Advanced Audit Policy Configuration settings.
C. Create a custom view in Event Viewer.
D. Create a user-defined Data Collector Set.
Answer: A
QUESTION 3
The help desk reports that users in the Marketing OU print draft documents, e-mails, and
other miscellaneous documents on Printer2.
You need to recommend a solution so that marketing users print documents to Printer1 by default.
What should you do?
A. Enable printer pooling.
B. Configure Group Policy Preferences.
C. Modify the priorities of the shared printers.
D. Modify the permissions of the shared printers.
Answer: B
QUESTION 4
The Office1 network link is brought offline for emergency maintenance.
Users in Office2 and Office3 report that they cannot connect to the wireless network.
You need to recommend changes to ensure that users in all offices can connect to the wireless network if a WAN link fails.
What should you recommend?
A. that redundant DHCP scopes be created
B. that additional RADIUS servers be deployed
C. that universal group caching be implemented
D. that additional default gateways be configured
Answer: B
QUESTION 5
The company is deploying a new application.
When users attempt to install the application, they receive an error message indicating that they need administrative privileges to install it.
You need to recommend a solution to ensure that users can install the application. The solution must adhere to the corporate security guidelines. What should you recommend?
A. Publish the application by using a Group Policy.
B. Disable User Account Control (UAC) by using a Group Policy.
C. Add all domain users to the local Power Users group by using Restricted Groups.
D. Add the current users to the local Administrators group by using Group Policy preferences.
Answer: A
Explanation:
http://magalan.co.uk/install_software_via_group_policy.html
Wednesday, July 13, 2016
600-510 NPDEV Developing with Network Programmability
Exam Number 600-510
Associated Certifications Cisco Network Application Developer Specialist
Duration 75 minutes (55 - 65 questions)
Available Languages English
Register Pearson VUE
Exam Policies Read current policies and requirements
Exam Tutorial Review type of exam questions
This exam tests a candidate's ability to develop network applications in the Cisco ONE programmable environment. It also tests the ability to develop the middle layer called Network Applications, which enables different service provider, campus, and data center use cases.
The Developing with Cisco Network Programmability (NPDEV) exam (600-510) is a 75-minute assessment with 55-65 questions. This exam tests a candidate's ability to develop network applications in the Cisco ONE programmable environment. It also tests the ability to develop the middle layer called Network Applications, which enables different service provider, campus, and data center use cases.
The following topics are general guidelines for the content likely to be included on the exam. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes, the guidelines below may change at any time without notice.
1.0 Interpreting the Requirements 20%
1.1 Gather requirements
1.1.a Analyze business requirements to determine application/network requirements
1.2 Map the requirements to capabilities
1.2.a Apply different API models
1.2.b Analyze application requirements to determine optimal application model
1.2.b [i] Controller-based
1.2.b [ii] Device-centric API (distributed)
1.3 Identify the application dependencies in conjunction with company environment (policies and IT infrastructure)
1.3.a Analyze current environment and identify known dependencies
1.4 Draft the block diagram and functional specifications
1.4.a Create a flow chart/diagram to represent how the application is going to work
1.5 Document application/networking touch points
1.5.a Document how application interacts with other elements of the environment
2.0 Developing Applications 30%
2.1 Planning phase
2.1.a Define the data structure
2.1.b Create and interpret application functional block diagrams
2.2 Development phase
2.2.a Apply coding principles
2.2.b Interpret compiler outputs and warnings
2.2.c Utilize APIC APIs
2.2.c [i] REST
2.2.c [ii] Python SDK
2.2.c [iii] ACI Toolkit
2.2.d Utilize APIC-EM APIs
2.2.e Utilize Cisco Open SDN Controller APIs
2.3 Implementation phase
2.3.a Create a distribution package
2.3.b Describe OVA files
3.0 Security 12%
3.1 Define access policies
3.2 Describe SSL certificates
4.0 Testing 13%
4.1 Create a test plan
4.1.a Identify best practices for application testing
4.1.b Define acceptance criteria
4.1. c Document test plan
4.2 Perform test cycle
4.2.a Verify the test environment
4.2.a [i] Validate test environment
4.2.a [ii] Document initial state of test
4.2.b Execute the test plan
4.2.b [i] Utilize network traffic generators and packet capture tools to validate application
5.0 Troubleshooting Applications (Post Deployment) 25%
5.1 Identifying the problem
5.1.a Describe the steps to identify and isolate the problem
5.1.b Identify tools available for troubleshooting and monitoring
5.1.c Utilize logs, output, or application behavior to determine from a code standpoint what is causing the problem
5.2 Remediating the problem
5.2.a Implement solution to identified problem
5.2.b Validate solution fully corrects identified problem
Associated Certifications Cisco Network Application Developer Specialist
Duration 75 minutes (55 - 65 questions)
Available Languages English
Register Pearson VUE
Exam Policies Read current policies and requirements
Exam Tutorial Review type of exam questions
This exam tests a candidate's ability to develop network applications in the Cisco ONE programmable environment. It also tests the ability to develop the middle layer called Network Applications, which enables different service provider, campus, and data center use cases.
The Developing with Cisco Network Programmability (NPDEV) exam (600-510) is a 75-minute assessment with 55-65 questions. This exam tests a candidate's ability to develop network applications in the Cisco ONE programmable environment. It also tests the ability to develop the middle layer called Network Applications, which enables different service provider, campus, and data center use cases.
The following topics are general guidelines for the content likely to be included on the exam. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes, the guidelines below may change at any time without notice.
1.0 Interpreting the Requirements 20%
1.1 Gather requirements
1.1.a Analyze business requirements to determine application/network requirements
1.2 Map the requirements to capabilities
1.2.a Apply different API models
1.2.b Analyze application requirements to determine optimal application model
1.2.b [i] Controller-based
1.2.b [ii] Device-centric API (distributed)
1.3 Identify the application dependencies in conjunction with company environment (policies and IT infrastructure)
1.3.a Analyze current environment and identify known dependencies
1.4 Draft the block diagram and functional specifications
1.4.a Create a flow chart/diagram to represent how the application is going to work
1.5 Document application/networking touch points
1.5.a Document how application interacts with other elements of the environment
2.0 Developing Applications 30%
2.1 Planning phase
2.1.a Define the data structure
2.1.b Create and interpret application functional block diagrams
2.2 Development phase
2.2.a Apply coding principles
2.2.b Interpret compiler outputs and warnings
2.2.c Utilize APIC APIs
2.2.c [i] REST
2.2.c [ii] Python SDK
2.2.c [iii] ACI Toolkit
2.2.d Utilize APIC-EM APIs
2.2.e Utilize Cisco Open SDN Controller APIs
2.3 Implementation phase
2.3.a Create a distribution package
2.3.b Describe OVA files
3.0 Security 12%
3.1 Define access policies
3.2 Describe SSL certificates
4.0 Testing 13%
4.1 Create a test plan
4.1.a Identify best practices for application testing
4.1.b Define acceptance criteria
4.1. c Document test plan
4.2 Perform test cycle
4.2.a Verify the test environment
4.2.a [i] Validate test environment
4.2.a [ii] Document initial state of test
4.2.b Execute the test plan
4.2.b [i] Utilize network traffic generators and packet capture tools to validate application
5.0 Troubleshooting Applications (Post Deployment) 25%
5.1 Identifying the problem
5.1.a Describe the steps to identify and isolate the problem
5.1.b Identify tools available for troubleshooting and monitoring
5.1.c Utilize logs, output, or application behavior to determine from a code standpoint what is causing the problem
5.2 Remediating the problem
5.2.a Implement solution to identified problem
5.2.b Validate solution fully corrects identified problem
Saturday, May 28, 2016
Fearing forced Windows 10 upgrades, users are disabling critical updates instead
Some Windows 7 and 8 users would rather chance a malware infection than an
involuntary Windows 10 upgrade.
Microsoft stepped on the gas in its quest to drive Windows 7 and 8 users to Windows 10 over the past couple of weeks, rolling the upgrade out as a Recommended update. Watch out! The only behavior that could deny the Windows 10 upgrade before—closing the pop-up by pressing the X in the upper-right corner—now counts as consent for the upgrade, and worse, the upgrade installation can automatically begin even if you take no action whatsoever.
It’s nasty business, and it’s tricking legions of happy Windows 7 and 8 users into Windows 10. Over the past week, I’ve received more contact from readers about this issue than I have about everything else I’ve written over the rest of my career combined. But beyond merely burning bridges with consumers, these forced, non-consensual upgrades could have more insidious consequences.
“I fear some segment of consumers will turn off Windows Update as a result,” Wes Miller, research vice president at Directions on Microsoft, told me. “Which is a very bad side effect.”
Indeed it is. Windows Update delivers critical updates to your PC, plugging holes in the operating system and slamming the door on potential hack attacks. Keeping your operating system patched is a crucial part of staying secure on the modern web. That’s why PCWorld and many other technology experts advise users that the best course of action is usually to leave the Windows default intact, letting the OS download and install Recommended updates automatically. Doing otherwise is dangerous, unless you’re an expert yourself.
Using that critical avenue to push Windows 10 on people—pardon, “make it easier for consumers to upgrade to Windows 10”—violates the trust people hold in the sanctity of Windows Update. And, yes, as a direct result of Microsoft’s actions, at least some people are disabling Windows Update on their Windows 7 and 8 PCs.
Here are just a couple of the readers who reached out to me directly to say they’ve disabled Windows Updates to avoid being forced into Windows 10.
Microsoft stepped on the gas in its quest to drive Windows 7 and 8 users to Windows 10 over the past couple of weeks, rolling the upgrade out as a Recommended update. Watch out! The only behavior that could deny the Windows 10 upgrade before—closing the pop-up by pressing the X in the upper-right corner—now counts as consent for the upgrade, and worse, the upgrade installation can automatically begin even if you take no action whatsoever.
It’s nasty business, and it’s tricking legions of happy Windows 7 and 8 users into Windows 10. Over the past week, I’ve received more contact from readers about this issue than I have about everything else I’ve written over the rest of my career combined. But beyond merely burning bridges with consumers, these forced, non-consensual upgrades could have more insidious consequences.
“I fear some segment of consumers will turn off Windows Update as a result,” Wes Miller, research vice president at Directions on Microsoft, told me. “Which is a very bad side effect.”
Indeed it is. Windows Update delivers critical updates to your PC, plugging holes in the operating system and slamming the door on potential hack attacks. Keeping your operating system patched is a crucial part of staying secure on the modern web. That’s why PCWorld and many other technology experts advise users that the best course of action is usually to leave the Windows default intact, letting the OS download and install Recommended updates automatically. Doing otherwise is dangerous, unless you’re an expert yourself.
Using that critical avenue to push Windows 10 on people—pardon, “make it easier for consumers to upgrade to Windows 10”—violates the trust people hold in the sanctity of Windows Update. And, yes, as a direct result of Microsoft’s actions, at least some people are disabling Windows Update on their Windows 7 and 8 PCs.
Here are just a couple of the readers who reached out to me directly to say they’ve disabled Windows Updates to avoid being forced into Windows 10.
Subscribe to:
Posts (Atom)