SUBJECTS
|
BROWSE
|
CAREER CENTER
|
POPULAR
|
JOIN
|
LOGIN
Business Skills
|
Soft Skills
|
Basic Literacy
|
Certifications
About
|
Help
|
Privacy
|
Terms
|
Email
Search
Test your basic knowledge |
MCTS: Connecting To Networks
Start Test
Study First
Subjects
:
certifications
,
mcts
,
it-skills
Instructions:
Answer 50 questions in 15 minutes.
If you are not ready to take this test, you can
study here
.
Match each statement with the correct term.
Don't refresh. All questions and answers are randomly picked and ordered every time you load a test.
This is a study tool. The 3 wrong answers for each question are randomly chosen from answers to other questions. So, you might find at times the answers obvious, but you will see it re-enforces your understanding as you take the test each time.
1. ICS allows you to enable NAT on a server with just a few clicks. However - configuration options are very limited. For example - the internal interface must have the IP address ______. Additionally - you cannot use the DHCP Server role built into Win
certificate
192.168.0.1
WPA2.
IP Filters
2. With ______ DirectAccess clients connect directly to application servers using IPsec.
L2TP
Health Policies
gpupdate - net stop iphlpsvc - and net start iphlpsvc
End-to-end protection
3. Which server role is required to support authenticating wireless users to Active Directory?
RADIUS proxy
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
automatically applied
Standard
4. To configure a DirectAccess client - run the following three commands: ______.
Win Server 2003
gpupdate - net stop iphlpsvc - and net start iphlpsvc
the Windows XP
DirectAccess
5. Windows Server 2008 and Windows Vista support three VPN technologies:
Guest
L2TP
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
Network Policy And Access Services
6. DirectAccess uses ______ for all communications - which prevents users from accessing IPv4-only resources.
IPv6
gpupdate - net stop iphlpsvc - and net start iphlpsvc
End-to-end protection
192.168.0.1
7. This NPS template configures health policies - which must be added to the Health Policies condition of your network policy before they are enforced.
End-to-edge
WPA2.
IPsec
Health Policies
8. By default - RADIUS will stop authenticating users if it ______ the authentications.
L2TP
cannot log
Remote RADIUS Servers
VPN
9. Additionally - DirectAccess configures clients with globally routable ______ addresses. Therefore - you will need to use transition technologies - such as 6to4 - Teredo - and ISATAP - to allow connections across the IPv4 Internet and portions of your
IPv6
automatically applied
User only
Computer only
10. Passes authentication requests to a back-end server - such as a computer running Windows Server 2008 R2 and RADIUS.
End-to-end protection
WPA-EAP (also known as WPA-Enterprise)
IPsec
Computer only
11. This NPS template allows you to quickly configure the same RADIUS clients on different servers.
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
RADIUS Clients
Standard
Guest
12. Using ______ encapsulation allows SSTP to traverse many firewalls - NATs - and proxy servers that would cause PPTP and L2TP to fail.
Application servers and network infrastructure
the Windows XP
automatically applied
HTTP
13. The most straightforward approach to deploying WPA-EAP is to use a ______ to deploy certificates to both your RADIUS server and all wireless client computers. 1. Add the Active Directory Certificate Services role to a server in your domain. 2. In the
Computer or user
IP Filters
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
PKI
14. To use VPN Reconnect - both the VPN client and server must support the ______ VPN protocol.
Internet Key Exchange version 2 (IKEv2)
Remediation Server Groups
the Windows XP
WPA-EAP (also known as WPA-Enterprise)
15. DirectAccess requires the following _________________ to support IPv6 communications (which can include IPv6 translation technologies).:A DirectAccess server running Win Srvr 2008 R2 that is a member of a domain (but not a DC). - Clients must be dom
Web
DirectAccess
192.168.0.1
Application servers and network infrastructure
16. ______ can keep mobile users connected to your intranet any time they have an Internet connection.
DirectAccess
Configuration Model drop-down list - select Enabled.
Microsoft: Protected EAP (PEAP)
end-to-edge protection and end-to-end protection
17. In this wireless authentication mode - Windows authenticates to the wireless network prior to displaying the Windows logon screen.
Computer only
Shared Secrets
IPv6
Guest
18. This authentication method requires you to install a computer certificate on the RADIUS server and a computer certificate or user certificate on all wireless client computers.
Datacenter
Microsoft: Protected EAP (PEAP)
certificate
RADIUS Clients
19. This authentication method requires computer certificates to be installed on all RADIUS servers and requires all client computers to trust the CA that issued the computer certificate installed on the RADIUS server.
IP Filters
Microsoft: Secured Password (EAP-MS CHAP v2)
automatically applied
Win Server 2003
20. Windows ______ Server 2008 R2 does not include NPS.
WPA-EAP (also known as WPA-Enterprise)
Web
Allow Access
RADIUS
21. To improve Tracert performance - add the ___ parameter before the IP address to prevent DNS lookups.
Remote RADIUS Servers
-d
WPA2.
Application servers and network infrastructure
22. In this wireless authentication mode - Windows authenticates prior to logon by using computer credentials. After logon - Windows submits user credentials.
Network Policy Server (NPS)
IP Filters
Computer or user
Standard
23. With ______ protection DirectAccess clients connect to the DirectAccess server using IPsec.
the Windows XP
Computer only
End-to-edge
Microsoft: Protected EAP (PEAP)
24. This NPS template configures IPv4 or IPV6 filters to configure which networks can connect.
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
IPv6
Application servers and network infrastructure
IP Filters
25. DirectAccess was introduced with ______ and ______ - so clients on earlier operating systems will need to continue to use a traditional VPN.
Datacenter
HTTP
Windows 7 and Windows Server 2008 R2
RADIUS Clients
26. SSTP uses PPP authentication methods for user-level authentication and HTTP encapsulation over a _____ channel for data authentication - data integrity - and data encryption.
WPA2.
Secure Sockets Layer (SSL)
Network Policy Server (NPS)
Microsoft: Protected EAP (PEAP)
27. PPTP uses Point-to-Point Protocol (PPP) authentication methods for user-level authentication and ______ for data encryption.
PKI
Microsoft Point-to-Point Encryption (MPPE)
Remediation Server Groups
VPN
28. L2TP requires both the VPN clients and servers to have computer ______.
end-to-edge protection and end-to-end protection
Microsoft Point-to-Point Encryption (MPPE)
Health Policies
certificates
29. Windows wireless clients can authenticate using the following modes:
Remediation Server Groups
Win Server 2003
Computer or user - Computer only - User only - Guest
User only
30. Client IPv4 Address and Client IPv6 Address - Controls access based on the IP address of the client when the Win Server 2008 computer is acting as a ______ server.
Network Policy And Access Services
Standard
certificate
RADIUS
31. In this wireless authentication mode - Windows authenticates to the wireless network after the user logs on.
User only
Shared Secrets
VPN
IPsec
32. This NPS template stores remote RADIUS servers.
RADIUS proxy
Windows 7 and Windows Server 2008 R2
Health Policies
Remote RADIUS Servers
33. In this wireless authentication mode - Windows joins the network as a guest without authenticating.
end-to-edge protection and end-to-end protection
Microsoft: Secured Password (EAP-MS CHAP v2)
User only
Guest
34. You can choose from two different DirectAccess connection types: ______.
end-to-edge protection and end-to-end protection
Allow Access
Microsoft Point-to-Point Encryption (MPPE)
End-to-end protection
35. Win Server 2008 R2 can authenticate clients when they connect to wired or wireless networks by using ______.
PKI
certificates
Network Policy Server (NPS)
End-to-end protection
36. If you have existing RADIUS servers and you need a layer of abstraction between the access points and the RADIUS servers - or if you need to submit requests to different RADIUS servers based on specific criteria - you can configure Win Server 2008 or
RADIUS proxy
client
End-to-end protection
Remote RADIUS Servers
37. To create a PKI and enable autoenrollment so that domain member computers have the necessary certificates to support WPA-EAP wireless authentication - follow these steps:
Configuration Model drop-down list - select Enabled.
Microsoft: Secured Password (EAP-MS CHAP v2)
the Windows XP
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
38. Access Client IPv4 Address and Access Client IPv6 Address - Controls access based on the IP address of the client when the Win Server 2008 computer is acting as a ______ server.
VPN
Standard
Web
RADIUS
39. What is the strongest form of wireless network security supported by Windows 7 and Windows Server 2008 R2?
Secure Sockets Layer (SSL)
WPA2.
User only
Microsoft Point-to-Point Encryption (MPPE)
40. SSTP requires that the VPN server has a computer ______ installed and that clients trust the CA that issued the computer certificate.
End-to-end protection
certificate
Allow Access
end-to-edge protection and end-to-end protection
41. If your DirectAccess server is connected to the IPv6 Internet - allow the following types of packets:
cannot log
Web
certificates
Protocol 50 - inbound and outbound - UDP destination port 500 inbound - UDP source port 500 outbound - UDP destination port 4500 inbound - UDP source port 4500 outbound - ICMPv6 - inbound and outbound
42. If no Win Vista wireless network policy exists - computers running Win Vista - Win 7 - and Win Server 2008 will apply ______ policy.
the Windows XP
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
gpupdate - net stop iphlpsvc - and net start iphlpsvc
DirectAccess
43. Win Server 2008 R2 Enterprise and Win Server 2008 R2 ______ support NPS without restrictions.
Datacenter
Computer or user - Computer only - User only - Guest
gpupdate - net stop iphlpsvc - and net start iphlpsvc
HTTP
44. L2TP uses PPP authentication methods for user-level authentication and ______ for computer-level peer authentication - data authentication - data integrity - and data encryption.
Microsoft Point-to-Point Encryption (MPPE)
IPsec
Allow Access
IPv6
45. To configure Win Server 2008 R2 as a RADIUS server - first add the ______ role.
Network Policy And Access Services
RADIUS
Secure Sockets Layer (SSL)
certificates
46. If your DirectAccess server is connected to the IPv4 Internet - allow the following types of packets:
Protocol 41 - inbound and outbound - UDP destination port 3544 - inbound - UDP source port 3544 - outbound - TCP destination port 443 - inbound - TCP source port 443 - outbound
Internet Key Exchange version 2 (IKEv2)
Remote RADIUS Servers
Computer or user
47. This NPS template stores RADIUS shared secrets - allowing you to configure them without typing the shared secret at different computers.
Standard
Microsoft: Protected EAP (PEAP)
Point-to-Point Tunneling Protocol (PPTP) - Layer Two Tunneling Protocol (L2TP) - Secure Socket Tunneling Protocol (SS TP)
Shared Secrets
48. Win Vista wireless network policies are ______ to wireless clients running Win Vista - Win 7 - and Win Server 2008.
192.168.0.1
IPv6
automatically applied
Shared Secrets
49. Win XP wireless network policies apply to clients running Win XP with SP2 and ______.
certificates
DirectAccess
You must add the Network Policy And Access Services role to configure the server as a RADIUS server.
Win Server 2003
50. To configure the VPN client - first - grant VPN users remote access. In AD domain environments - you can do this by editing the user's properties - clicking the Dial-In tab - and then selecting ______.
192.168.0.1
cannot log
RADIUS Clients
Allow Access