Explanation/Reference:
Explanation:
From Scenario:
Contoso identifies the following high-availability requirements for the planned deployment:
The network load balancer must be able to probe the health of each workload.
Load balancers that work on the Layer 7 of OSI model are intelligent. Layer 7 load balancer is aware of the type of traffic passing through it. This type of load balancer can inspect the content of the traffic between the clients and the Exchange server. From this inspection, it gets that results and uses this information to make its forwarding decisions. For example, it can route traffic based on the virtual directory to which a client is trying to connect, such as /owa, /ecp or /mapi and it can use a different routing logic, depending on the URL the client is connecting to. When using a Layer 7 load balancer, you can also leverage the capabilities of Exchange Server 2016 Managed Availability feature. This built-in feature of Exchange monitors the critical components and services of Exchange server and based on results it can take actions.
Note: Layer 7 load balancer can use this to detect functionality of critical services, and based on that information decide if it will forward client connections to that node. If the load balancer health check receives a 200 status response from health check web page, then the service or protocol is up and running. If the load balancer receives a 403 status code, then it means that Managed Availability has marked that protocol instance down on the Mailbox server.
Although it might look that load balancer actually performs a simple health check against the server nodes in the pool, health check web page provides an information about workload's health by taking into account multiple internal health check probes performed by Managed Availability.
Incorrect Answers:
D: Load balancers that work on Layer 4 are not aware of the actual traffic content being load balanced.
References: http://dizdarevic.ba/ddamirblog/?p=187
Testlet 1
Case study
Existing Environment
Active Directory
The network contains an Active Directory Domain Services (AD DS) forest named litware.com that has Active Directory Certificate Services (AD CS) deployed. The forest contains a site in Houston and a site in London. All domain controllers run Windows Server 2016.
Exchange Server
Litware has an Exchange Server 2016 organization that uses the namespaces of mail.litware.com and autodiscover.litware.com.
The organization contains the servers configured as shown in the following table.

All Internet email is routed through HOU-EX1.
Requirements
Business Goals
Litware has security concerns about the data and messaging content of the research and development department. Preventing information leaks is a priority.
All users must be able to access their corporate email from any device.
Litware plans to minimize the costs associated with changing the Exchange Server environment.
Planned Changes
Litware plans to implement a site resilience solution ensuring that outbound email messages can be delivered if one of the sites fail. The site resilience solution must allow all users to access their mailbox if a server fails in each site.
Availability Requirements
Litware identifies the following availability requirements:
Load balancing must support the following functionalities:
Load balancing must support the following functionalities:

- Provide SSL termination
- Remove failed Mailbox servers from the server pool.
- Data collected by Managed Availability from Outlook on the web must be used.
- Target server health must be configured as per-protocol so that only the affected client protocol is directed to another server if a server fails.
The site resilience solution must follow the bound namespace model.

Security Requirements
Litware identifies the following security requirements:
Users in the research and development department must be able to encrypt documents sent to external

users. The encrypted email messages must never be forwarded by the external recipients.
Only specific research and development department users must be able to access confidential internal

email regarding the high-security government contracts.
All certificates deployed to the Exchange organization must be issued by a trusted third-party

certification authority (CA).
The principle of least privilege must be applied to all users and permissions.

Compliance Requirements
Litware identifies the following compliance requirements:
Any new mailbox created for the auditing department must have a retention policy named Audit

immediately applied manually after the mailbox is created.
Each week, a team of regulation auditors must review the email messages sent and received by all the

research and development department users.
The regulation auditors must be able to review the email messages of mailboxes placed on Litigation

Hold.
The regulation auditors must be able to gain quick access to the email messages.
