SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
Search
Test your basic knowledge |
MCTS: Connecting To Networks
Start Test
Study First
Subjects
:
certifications
,
mcts
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. This NPS template allows you to quickly configure the same RADIUS clients on different servers.
Web
Allow Access
end-to-edge protection and end-to-end protection
RADIUS Clients
2. SSTP requires that the VPN server has a computer ______ installed and that clients trust the CA that issued the computer certificate.
Web
certificate
Shared Secrets
gpupdate - net stop iphlpsvc - and net start iphlpsvc
3. With ______ DirectAccess clients connect directly to application servers using IPsec.
Network Policy Server (NPS)
End-to-end protection
Microsoft: Secured Password (EAP-MS CHAP v2)
WPA2.
4. To configure Win Server 2008 R2 as a RADIUS server - first add the ______ role.
VPN
IPv6
Secure Sockets Layer (SSL)
Network Policy And Access Services
5. In this wireless authentication mode - Windows authenticates prior to logon by using computer credentials. After logon - Windows submits user credentials.
IPv6
Health Policies
Computer or user
Shared Secrets
6. The most straightforward approach to deploying WPA-EAP is to use a ______ to deploy certificates to both your RADIUS server and all wireless client computers. 1. Add the Active Directory Certificate Services role to a server in your domain. 2. In the
cannot log
Datacenter
PKI
Guest
7. L2TP requires both the VPN clients and servers to have computer ______.
End-to-end protection
Microsoft: Secured Password (EAP-MS CHAP v2)
PKI
certificates
8. With ______ protection DirectAccess clients connect to the DirectAccess server using IPsec.
Windows 7 and Windows Server 2008 R2
end-to-edge protection and end-to-end protection
End-to-edge
Computer or user - Computer only - User only - Guest
9. ______ is the only VPN technology that can be used across the IPv6 Internet.
L2TP
DirectAccess
RADIUS Clients
gpupdate - net stop iphlpsvc - and net start iphlpsvc
10. In this wireless authentication mode - Windows authenticates to the wireless network after the user logs on.
Computer or user
Guest
User only
certificates
11. By default - RADIUS will stop authenticating users if it ______ the authentications.
cannot log
VPN
Microsoft: Protected EAP (PEAP)
Network Policy And Access Services
12. Windows ______ Server 2008 R2 does not include NPS.
WPA-EAP (also known as WPA-Enterprise)
client
RADIUS
Web
13. Win Server 2008 R2 can authenticate clients when they connect to wired or wireless networks by using ______.
Microsoft: Secured Password (EAP-MS CHAP v2)
Network Policy Server (NPS)
RADIUS proxy
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
14. ______ can keep mobile users connected to your intranet any time they have an Internet connection.
Standard
RADIUS
DirectAccess
Microsoft Point-to-Point Encryption (MPPE)
15. Access Client IPv4 Address and Access Client IPv6 Address - Controls access based on the IP address of the client when the Win Server 2008 computer is acting as a ______ server.
End-to-edge
VPN
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
client
16. You can use ______ - a feature new to Win Server 2008 R2 - to reduce repetitive NPS configuration tasks.
-d
certificate
certificates
NPS templates
17. Windows wireless clients can authenticate using the following modes:
Computer or user - Computer only - User only - Guest
Remediation Server Groups
Computer or user
DirectAccess
18. Windows Server 2008 and Windows Vista support three VPN technologies:
Computer or user - Computer only - User only - Guest
cannot log
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
HTTP
19. If your DirectAccess server is connected to the IPv4 Internet - allow the following types of packets:
PKI
certificates
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
Windows 7 and Windows Server 2008 R2
20. PPTP uses Point-to-Point Protocol (PPP) authentication methods for user-level authentication and ______ for data encryption.
Windows 7 and Windows Server 2008 R2
Microsoft Point-to-Point Encryption (MPPE)
PKI
End-to-edge
21. This NPS template stores RADIUS shared secrets - allowing you to configure them without typing the shared secret at different computers.
IPsec
HTTP
PKI
Shared Secrets
22. DirectAccess uses ______ for all communications - which prevents users from accessing IPv4-only resources.
IPv6
Internet Key Exchange version 2 (IKEv2)
WPA2.
PKI
23. SSTP uses PPP authentication methods for user-level authentication and HTTP encapsulation over a _____ channel for data authentication - data integrity - and data encryption.
Secure Sockets Layer (SSL)
cannot log
Remote RADIUS Servers
Network Policy Server (NPS)
24. SSTP is supported only by Win Server 2008 (as a VPN server or client) and Win Vista with Service Pack 1 (as a VPN ______).
Datacenter
automatically applied
client
PKI
25. If you have existing RADIUS servers and you need a layer of abstraction between the access points and the RADIUS servers - or if you need to submit requests to different RADIUS servers based on specific criteria - you can configure Win Server 2008 or
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
Windows 7 and Windows Server 2008 R2
RADIUS proxy
PKI
26. This NPS template configures health policies - which must be added to the Health Policies condition of your network policy before they are enforced.
Application servers and network infrastructure
Health Policies
PKI
gpupdate - net stop iphlpsvc - and net start iphlpsvc
27. In this wireless authentication mode - Windows authenticates to the wireless network prior to displaying the Windows logon screen.
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
WPA-EAP (also known as WPA-Enterprise)
Microsoft: Protected EAP (PEAP)
Computer only
28. In this wireless authentication mode - Windows joins the network as a guest without authenticating.
certificates
Guest
Configuration Model drop-down list - select Enabled.
end-to-edge protection and end-to-end protection
29. Passes authentication requests to a back-end server - such as a computer running Windows Server 2008 R2 and RADIUS.
Internet Key Exchange version 2 (IKEv2)
PKI
WPA-EAP (also known as WPA-Enterprise)
Network Policy And Access Services
30. Which server role is required to support authenticating wireless users to Active Directory?
192.168.0.1
end-to-edge protection and end-to-end protection
Computer only
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
31. To improve Tracert performance - add the ___ parameter before the IP address to prevent DNS lookups.
Network Policy And Access Services
-d
HTTP
Health Policies
32. Win Server 2008 R2 Enterprise and Win Server 2008 R2 ______ support NPS without restrictions.
WPA-EAP (also known as WPA-Enterprise)
Datacenter
VPN
Network Policy And Access Services
33. To use VPN Reconnect - both the VPN client and server must support the ______ VPN protocol.
gpupdate - net stop iphlpsvc - and net start iphlpsvc
End-to-end protection
Internet Key Exchange version 2 (IKEv2)
Datacenter
34. To configure a DirectAccess client - run the following three commands: ______.
HTTP
gpupdate - net stop iphlpsvc - and net start iphlpsvc
Guest
Secure Sockets Layer (SSL)
35. This NPS template configures IPv4 or IPV6 filters to configure which networks can connect.
PKI
IP Filters
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
Remote RADIUS Servers
36. Win Server 2008 R2 ______ supports NPS with a maximum of 50 RADIUS clients and 2 remote RADIUS server groups.
Secure Sockets Layer (SSL)
Standard
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
192.168.0.1
37. This authentication method requires you to install a computer certificate on the RADIUS server and a computer certificate or user certificate on all wireless client computers.
Configuration Model drop-down list - select Enabled.
Allow Access
certificate
Microsoft: Protected EAP (PEAP)
38. This authentication method requires computer certificates to be installed on all RADIUS servers and requires all client computers to trust the CA that issued the computer certificate installed on the RADIUS server.
Application servers and network infrastructure
Microsoft: Secured Password (EAP-MS CHAP v2)
HTTP
Health Policies
39. DirectAccess was introduced with ______ and ______ - so clients on earlier operating systems will need to continue to use a traditional VPN.
Windows 7 and Windows Server 2008 R2
Shared Secrets
cannot log
end-to-edge protection and end-to-end protection
40. Using ______ encapsulation allows SSTP to traverse many firewalls - NATs - and proxy servers that would cause PPTP and L2TP to fail.
Network Policy And Access Services
HTTP
IPv6
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
41. If your DirectAccess server is connected to the IPv6 Internet - allow the following types of packets:
Microsoft: Secured Password (EAP-MS CHAP v2)
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
Network Policy Server (NPS)
Microsoft Point-to-Point Encryption (MPPE)
42. What is the strongest form of wireless network security supported by Windows 7 and Windows Server 2008 R2?
Remediation Server Groups
IPv6
User only
WPA2.
43. If no Win Vista wireless network policy exists - computers running Win Vista - Win 7 - and Win Server 2008 will apply ______ policy.
the Windows XP
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
automatically applied
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
44. Additionally - DirectAccess configures clients with globally routable ______ addresses. Therefore - you will need to use transition technologies - such as 6to4 - Teredo - and ISATAP - to allow connections across the IPv4 Internet and portions of your
IPv6
End-to-end protection
IP Filters
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
45. This NPS template configures remediation server groups - which are groups of servers that unauthenticated clients can access.
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
end-to-edge protection and end-to-end protection
Microsoft: Secured Password (EAP-MS CHAP v2)
Remediation Server Groups
46. L2TP uses PPP authentication methods for user-level authentication and ______ for computer-level peer authentication - data authentication - data integrity - and data encryption.
IPsec
End-to-end protection
Allow Access
Application servers and network infrastructure
47. ICS allows you to enable NAT on a server with just a few clicks. However - configuration options are very limited. For example - the internal interface must have the IP address ______. Additionally - you cannot use the DHCP Server role built into Win
HTTP
Web
192.168.0.1
automatically applied
48. This NPS template stores remote RADIUS servers.
192.168.0.1
Computer or user - Computer only - User only - Guest
Remote RADIUS Servers
IP Filters
49. Win XP wireless network policies apply to clients running Win XP with SP2 and ______.
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
Datacenter
Win Server 2003
WPA-EAP (also known as WPA-Enterprise)
50. You can choose from two different DirectAccess connection types: ______.
192.168.0.1
RADIUS proxy
end-to-edge protection and end-to-end protection
WPA2.