SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MCTS: Connecting To Networks
Start Test
Study First
Subjects
:
certifications
,
mcts
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. L2TP uses PPP authentication methods for user-level authentication and ______ for computer-level peer authentication - data authentication - data integrity - and data encryption.
Application servers and network infrastructure
192.168.0.1
client
IPsec
2. SSTP uses PPP authentication methods for user-level authentication and HTTP encapsulation over a _____ channel for data authentication - data integrity - and data encryption.
Secure Sockets Layer (SSL)
End-to-end protection
client
IPv6
3. Using ______ encapsulation allows SSTP to traverse many firewalls - NATs - and proxy servers that would cause PPTP and L2TP to fail.
Microsoft: Protected EAP (PEAP)
HTTP
IPv6
Computer or user - Computer only - User only - Guest
4. Passes authentication requests to a back-end server - such as a computer running Windows Server 2008 R2 and RADIUS.
DirectAccess
Guest
Web
WPA-EAP (also known as WPA-Enterprise)
5. You can use ______ - a feature new to Win Server 2008 R2 - to reduce repetitive NPS configuration tasks.
HTTP
NPS templates
cannot log
Computer or user
6. SSTP is supported only by Win Server 2008 (as a VPN server or client) and Win Vista with Service Pack 1 (as a VPN ______).
HTTP
Remote RADIUS Servers
client
Microsoft: Protected EAP (PEAP)
7. DirectAccess was introduced with ______ and ______ - so clients on earlier operating systems will need to continue to use a traditional VPN.
Secure Sockets Layer (SSL)
automatically applied
Windows 7 and Windows Server 2008 R2
RADIUS proxy
8. In this wireless authentication mode - Windows joins the network as a guest without authenticating.
-d
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
Guest
Win Server 2003
9. Which server role is required to support authenticating wireless users to Active Directory?
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
End-to-edge
Allow Access
NPS templates
10. Additionally - DirectAccess configures clients with globally routable ______ addresses. Therefore - you will need to use transition technologies - such as 6to4 - Teredo - and ISATAP - to allow connections across the IPv4 Internet and portions of your
IPv6
End-to-edge
Win Server 2003
gpupdate - net stop iphlpsvc - and net start iphlpsvc
11. The most straightforward approach to deploying WPA-EAP is to use a ______ to deploy certificates to both your RADIUS server and all wireless client computers. 1. Add the Active Directory Certificate Services role to a server in your domain. 2. In the
certificate
certificates
Guest
PKI
12. L2TP requires both the VPN clients and servers to have computer ______.
Microsoft: Protected EAP (PEAP)
End-to-edge
certificates
Allow Access
13. This NPS template stores remote RADIUS servers.
Standard
RADIUS Clients
L2TP
Remote RADIUS Servers
14. In this wireless authentication mode - Windows authenticates prior to logon by using computer credentials. After logon - Windows submits user credentials.
Computer or user
Guest
cannot log
Win Server 2003
15. SSTP requires that the VPN server has a computer ______ installed and that clients trust the CA that issued the computer certificate.
certificate
DirectAccess
End-to-edge
PKI
16. To use VPN Reconnect - both the VPN client and server must support the ______ VPN protocol.
IPv6
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
Health Policies
Internet Key Exchange version 2 (IKEv2)
17. This NPS template stores RADIUS shared secrets - allowing you to configure them without typing the shared secret at different computers.
Shared Secrets
Datacenter
certificates
VPN
18. In this wireless authentication mode - Windows authenticates to the wireless network after the user logs on.
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
Datacenter
certificates
User only
19. To improve Tracert performance - add the ___ parameter before the IP address to prevent DNS lookups.
-d
Web
IPv6
PKI
20. PPTP uses Point-to-Point Protocol (PPP) authentication methods for user-level authentication and ______ for data encryption.
Microsoft Point-to-Point Encryption (MPPE)
certificate
PKI
Standard
21. By default - RADIUS will stop authenticating users if it ______ the authentications.
WPA-EAP (also known as WPA-Enterprise)
192.168.0.1
cannot log
IPv6
22. Client IPv4 Address and Client IPv6 Address - Controls access based on the IP address of the client when the Win Server 2008 computer is acting as a ______ server.
RADIUS
the Windows XP
End-to-end protection
WPA2.
23. To configure Win Server 2008 R2 as a RADIUS server - first add the ______ role.
Guest
Computer only
the Windows XP
Network Policy And Access Services
24. Windows wireless clients can authenticate using the following modes:
Computer only
Computer or user - Computer only - User only - Guest
VPN
RADIUS proxy
25. With ______ DirectAccess clients connect directly to application servers using IPsec.
IPv6
Computer or user
WPA2.
End-to-end protection
26. ______ can keep mobile users connected to your intranet any time they have an Internet connection.
DirectAccess
IP Filters
Internet Key Exchange version 2 (IKEv2)
Allow Access
27. If you have existing RADIUS servers and you need a layer of abstraction between the access points and the RADIUS servers - or if you need to submit requests to different RADIUS servers based on specific criteria - you can configure Win Server 2008 or
Shared Secrets
RADIUS proxy
certificates
Computer or user - Computer only - User only - Guest
28. ICS allows you to enable NAT on a server with just a few clicks. However - configuration options are very limited. For example - the internal interface must have the IP address ______. Additionally - you cannot use the DHCP Server role built into Win
end-to-edge protection and end-to-end protection
192.168.0.1
IPv6
RADIUS proxy
29. Win XP wireless network policies apply to clients running Win XP with SP2 and ______.
automatically applied
Win Server 2003
IPv6
IP Filters
30. You can choose from two different DirectAccess connection types: ______.
Guest
end-to-edge protection and end-to-end protection
VPN
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
31. Win Vista wireless network policies are ______ to wireless clients running Win Vista - Win 7 - and Win Server 2008.
Web
automatically applied
L2TP
End-to-edge
32. Windows Server 2008 and Windows Vista support three VPN technologies:
Win Server 2003
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
WPA-EAP (also known as WPA-Enterprise)
Microsoft: Protected EAP (PEAP)
33. To create a PKI and enable autoenrollment so that domain member computers have the necessary certificates to support WPA-EAP wireless authentication - follow these steps:
Microsoft: Secured Password (EAP-MS CHAP v2)
gpupdate - net stop iphlpsvc - and net start iphlpsvc
PKI
Configuration Model drop-down list - select Enabled.
34. If your DirectAccess server is connected to the IPv6 Internet - allow the following types of packets:
Shared Secrets
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
VPN
IP Filters
35. Windows ______ Server 2008 R2 does not include NPS.
HTTP
End-to-edge
Web
Computer only
36. What is the strongest form of wireless network security supported by Windows 7 and Windows Server 2008 R2?
Allow Access
Internet Key Exchange version 2 (IKEv2)
Computer or user - Computer only - User only - Guest
WPA2.
37. This authentication method requires you to install a computer certificate on the RADIUS server and a computer certificate or user certificate on all wireless client computers.
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
Microsoft: Protected EAP (PEAP)
certificates
RADIUS Clients
38. If no Win Vista wireless network policy exists - computers running Win Vista - Win 7 - and Win Server 2008 will apply ______ policy.
the Windows XP
Remediation Server Groups
gpupdate - net stop iphlpsvc - and net start iphlpsvc
L2TP
39. Win Server 2008 R2 Enterprise and Win Server 2008 R2 ______ support NPS without restrictions.
Remediation Server Groups
Datacenter
IPsec
DirectAccess
40. Win Server 2008 R2 ______ supports NPS with a maximum of 50 RADIUS clients and 2 remote RADIUS server groups.
Application servers and network infrastructure
Shared Secrets
automatically applied
Standard
41. ______ is the only VPN technology that can be used across the IPv6 Internet.
RADIUS
L2TP
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
IP Filters
42. To configure the VPN client - first - grant VPN users remote access. In AD domain environments - you can do this by editing the user's properties - clicking the Dial-In tab - and then selecting ______.
Computer or user - Computer only - User only - Guest
End-to-edge
Allow Access
Standard
43. In this wireless authentication mode - Windows authenticates to the wireless network prior to displaying the Windows logon screen.
IPv6
Computer only
L2TP
NPS templates
44. DirectAccess uses ______ for all communications - which prevents users from accessing IPv4-only resources.
the Windows XP
IPv6
DirectAccess
Windows 7 and Windows Server 2008 R2
45. Access Client IPv4 Address and Access Client IPv6 Address - Controls access based on the IP address of the client when the Win Server 2008 computer is acting as a ______ server.
VPN
the Windows XP
Remediation Server Groups
gpupdate - net stop iphlpsvc - and net start iphlpsvc
46. This NPS template configures IPv4 or IPV6 filters to configure which networks can connect.
IP Filters
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
WPA2.
Allow Access
47. This authentication method requires computer certificates to be installed on all RADIUS servers and requires all client computers to trust the CA that issued the computer certificate installed on the RADIUS server.
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
Microsoft Point-to-Point Encryption (MPPE)
Microsoft: Secured Password (EAP-MS CHAP v2)
VPN
48. This NPS template configures health policies - which must be added to the Health Policies condition of your network policy before they are enforced.
WPA2.
certificate
Health Policies
PKI
49. This NPS template configures remediation server groups - which are groups of servers that unauthenticated clients can access.
Computer or user - Computer only - User only - Guest
certificates
User only
Remediation Server Groups
50. To configure a DirectAccess client - run the following three commands: ______.
Computer or user - Computer only - User only - Guest
Guest
Remediation Server Groups
gpupdate - net stop iphlpsvc - and net start iphlpsvc