SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MCTS: Connecting To Networks
Start Test
Study First
Subjects
:
certifications
,
mcts
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. The most straightforward approach to deploying WPA-EAP is to use a ______ to deploy certificates to both your RADIUS server and all wireless client computers. 1. Add the Active Directory Certificate Services role to a server in your domain. 2. In the
Secure Sockets Layer (SSL)
Shared Secrets
HTTP
PKI
2. In this wireless authentication mode - Windows authenticates to the wireless network after the user logs on.
certificates
User only
Computer or user
Guest
3. DirectAccess uses ______ for all communications - which prevents users from accessing IPv4-only resources.
HTTP
IPv6
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
Shared Secrets
4. To improve Tracert performance - add the ___ parameter before the IP address to prevent DNS lookups.
-d
the Windows XP
IPv6
certificate
5. With ______ protection DirectAccess clients connect to the DirectAccess server using IPsec.
End-to-edge
HTTP
Web
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
6. By default - RADIUS will stop authenticating users if it ______ the authentications.
Network Policy Server (NPS)
RADIUS
Standard
cannot log
7. To use VPN Reconnect - both the VPN client and server must support the ______ VPN protocol.
RADIUS proxy
automatically applied
WPA-EAP (also known as WPA-Enterprise)
Internet Key Exchange version 2 (IKEv2)
8. In this wireless authentication mode - Windows authenticates prior to logon by using computer credentials. After logon - Windows submits user credentials.
Computer or user
Remote RADIUS Servers
User only
Datacenter
9. Win XP wireless network policies apply to clients running Win XP with SP2 and ______.
Microsoft: Protected EAP (PEAP)
RADIUS proxy
WPA-EAP (also known as WPA-Enterprise)
Win Server 2003
10. Windows ______ Server 2008 R2 does not include NPS.
Guest
User only
-d
Web
11. This NPS template stores remote RADIUS servers.
Guest
192.168.0.1
Secure Sockets Layer (SSL)
Remote RADIUS Servers
12. If your DirectAccess server is connected to the IPv6 Internet - allow the following types of packets:
Internet Key Exchange version 2 (IKEv2)
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
cannot log
Shared Secrets
13. To configure a DirectAccess client - run the following three commands: ______.
gpupdate - net stop iphlpsvc - and net start iphlpsvc
VPN
Remote RADIUS Servers
end-to-edge protection and end-to-end protection
14. To create a PKI and enable autoenrollment so that domain member computers have the necessary certificates to support WPA-EAP wireless authentication - follow these steps:
Configuration Model drop-down list - select Enabled.
Standard
Microsoft: Secured Password (EAP-MS CHAP v2)
PKI
15. If your DirectAccess server is connected to the IPv4 Internet - allow the following types of packets:
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
automatically applied
the Windows XP
16. SSTP is supported only by Win Server 2008 (as a VPN server or client) and Win Vista with Service Pack 1 (as a VPN ______).
Shared Secrets
client
Remote RADIUS Servers
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
17. SSTP requires that the VPN server has a computer ______ installed and that clients trust the CA that issued the computer certificate.
Windows 7 and Windows Server 2008 R2
certificate
Computer only
Microsoft Point-to-Point Encryption (MPPE)
18. ______ can keep mobile users connected to your intranet any time they have an Internet connection.
Remote RADIUS Servers
DirectAccess
Windows 7 and Windows Server 2008 R2
PKI
19. ______ is the only VPN technology that can be used across the IPv6 Internet.
cannot log
192.168.0.1
L2TP
certificate
20. DirectAccess was introduced with ______ and ______ - so clients on earlier operating systems will need to continue to use a traditional VPN.
L2TP
Web
Windows 7 and Windows Server 2008 R2
IPv6
21. PPTP uses Point-to-Point Protocol (PPP) authentication methods for user-level authentication and ______ for data encryption.
certificate
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
Microsoft Point-to-Point Encryption (MPPE)
22. Using ______ encapsulation allows SSTP to traverse many firewalls - NATs - and proxy servers that would cause PPTP and L2TP to fail.
HTTP
cannot log
Microsoft Point-to-Point Encryption (MPPE)
VPN
23. Win Server 2008 R2 Enterprise and Win Server 2008 R2 ______ support NPS without restrictions.
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
Microsoft: Secured Password (EAP-MS CHAP v2)
Datacenter
IPv6
24. Windows wireless clients can authenticate using the following modes:
certificates
Windows 7 and Windows Server 2008 R2
client
Computer or user - Computer only - User only - Guest
25. This NPS template configures remediation server groups - which are groups of servers that unauthenticated clients can access.
192.168.0.1
Windows 7 and Windows Server 2008 R2
Remediation Server Groups
WPA-EAP (also known as WPA-Enterprise)
26. This authentication method requires you to install a computer certificate on the RADIUS server and a computer certificate or user certificate on all wireless client computers.
RADIUS
Computer or user
Microsoft: Protected EAP (PEAP)
IPv6
27. Windows Server 2008 and Windows Vista support three VPN technologies:
Standard
WPA-EAP (also known as WPA-Enterprise)
Network Policy Server (NPS)
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
28. In this wireless authentication mode - Windows authenticates to the wireless network prior to displaying the Windows logon screen.
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
Computer only
Remote RADIUS Servers
L2TP
29. This NPS template stores RADIUS shared secrets - allowing you to configure them without typing the shared secret at different computers.
IP Filters
L2TP
Remote RADIUS Servers
Shared Secrets
30. L2TP uses PPP authentication methods for user-level authentication and ______ for computer-level peer authentication - data authentication - data integrity - and data encryption.
IPsec
Configuration Model drop-down list - select Enabled.
VPN
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
31. This NPS template configures IPv4 or IPV6 filters to configure which networks can connect.
IP Filters
RADIUS Clients
HTTP
Windows 7 and Windows Server 2008 R2
32. Passes authentication requests to a back-end server - such as a computer running Windows Server 2008 R2 and RADIUS.
RADIUS Clients
gpupdate - net stop iphlpsvc - and net start iphlpsvc
WPA-EAP (also known as WPA-Enterprise)
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
33. L2TP requires both the VPN clients and servers to have computer ______.
PKI
certificates
IPsec
Remote RADIUS Servers
34. To configure the VPN client - first - grant VPN users remote access. In AD domain environments - you can do this by editing the user's properties - clicking the Dial-In tab - and then selecting ______.
IP Filters
-d
Allow Access
end-to-edge protection and end-to-end protection
35. You can use ______ - a feature new to Win Server 2008 R2 - to reduce repetitive NPS configuration tasks.
NPS templates
Configuration Model drop-down list - select Enabled.
RADIUS Clients
IPv6
36. If you have existing RADIUS servers and you need a layer of abstraction between the access points and the RADIUS servers - or if you need to submit requests to different RADIUS servers based on specific criteria - you can configure Win Server 2008 or
RADIUS proxy
Datacenter
WPA-EAP (also known as WPA-Enterprise)
Microsoft: Protected EAP (PEAP)
37. ICS allows you to enable NAT on a server with just a few clicks. However - configuration options are very limited. For example - the internal interface must have the IP address ______. Additionally - you cannot use the DHCP Server role built into Win
Secure Sockets Layer (SSL)
192.168.0.1
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
Health Policies
38. Win Server 2008 R2 can authenticate clients when they connect to wired or wireless networks by using ______.
certificates
Network Policy Server (NPS)
User only
Microsoft: Protected EAP (PEAP)
39. In this wireless authentication mode - Windows joins the network as a guest without authenticating.
the Windows XP
certificate
Health Policies
Guest
40. DirectAccess requires the following _________________ to support IPv6 communications (which can include IPv6 translation technologies).:A DirectAccess server running Win Srvr 2008 R2 that is a member of a domain (but not a DC). - Clients must be dom
client
Application servers and network infrastructure
Network Policy Server (NPS)
Remediation Server Groups
41. Win Vista wireless network policies are ______ to wireless clients running Win Vista - Win 7 - and Win Server 2008.
automatically applied
Application servers and network infrastructure
HTTP
VPN
42. Client IPv4 Address and Client IPv6 Address - Controls access based on the IP address of the client when the Win Server 2008 computer is acting as a ______ server.
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
VPN
Network Policy And Access Services
RADIUS
43. Which server role is required to support authenticating wireless users to Active Directory?
Configuration Model drop-down list - select Enabled.
RADIUS
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
certificate
44. What is the strongest form of wireless network security supported by Windows 7 and Windows Server 2008 R2?
L2TP
WPA2.
Windows 7 and Windows Server 2008 R2
Microsoft: Secured Password (EAP-MS CHAP v2)
45. This NPS template allows you to quickly configure the same RADIUS clients on different servers.
PKI
RADIUS Clients
certificate
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
46. Additionally - DirectAccess configures clients with globally routable ______ addresses. Therefore - you will need to use transition technologies - such as 6to4 - Teredo - and ISATAP - to allow connections across the IPv4 Internet and portions of your
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
Win Server 2003
IPv6
End-to-end protection
47. With ______ DirectAccess clients connect directly to application servers using IPsec.
end-to-edge protection and end-to-end protection
WPA-EAP (also known as WPA-Enterprise)
End-to-end protection
client
48. This NPS template configures health policies - which must be added to the Health Policies condition of your network policy before they are enforced.
192.168.0.1
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
Allow Access
Health Policies
49. Access Client IPv4 Address and Access Client IPv6 Address - Controls access based on the IP address of the client when the Win Server 2008 computer is acting as a ______ server.
Configuration Model drop-down list - select Enabled.
192.168.0.1
VPN
end-to-edge protection and end-to-end protection
50. If no Win Vista wireless network policy exists - computers running Win Vista - Win 7 - and Win Server 2008 will apply ______ policy.
the Windows XP
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
L2TP