Chapters 10 And 11

10 September 2022
4.7 (114 reviews)
50 test answers

Unlock all answers in this set

Unlock answers (46)
question
DirectAccess is for clients connected to which network?
answer
Internet.
question
How do the DirectAccess server and DirectAccess client authenticate each other?
answer
By using a computer and user credentials.
question
The Run the Remote Access Setup Wizard divides the installation into four separate installations that give you a great deal of control over settings and configurations. Which of the following is the correct description for the installation of Remote Access Servers?
answer
Configure the network connections based on one or two network cards and which adapters are internal and which adapters are external. You can also specify the use of smartcards and specify the certificate authority (CA) to use for DirectAccess to provide secure communications.
question
Which of the following can be used with DirectAccess and is valid for only one logon session or transaction?
answer
One-Time Password.
question
Which type of connectivity does DirectAccess provide between client computers and network resources?
answer
Seamless and always on.
question
Unlike traditional VPN connections, DirectAccess connections are established automatically and provide which kind of connectivity?
answer
Always on and seamless.
question
What is the most basic requirement for a DirectAccess implementation?
answer
The DirectAccess server must be part of an Active Directory domain.
question
Which type of server is the network location server (NLS)?
answer
Web.
question
Which Remote Access Management interface provides you with the most control?
answer
The Run the Remote Access Setup Wizard.
question
In addition to meeting operating system requirements, a DirectAccess client must be a member of which of the following?
answer
An AD domain.
question
Which of the following is the minimum client operating system required to use Secure Socket Tunneling Protocol (SSTP) VPN connections?
answer
Windows Vista SP1.
question
Which of the following is used to configure a point-to-site connection to Microsoft Azure?
answer
Virtual Dynamic Routing Gateway
question
For VPN connections involving Windows clients, which of the following is typically the preferred protocol?
answer
Layer 2 Tunneling Protocol (L2TP) with IPsec.
question
When using the CMAK to create a VPN profile, what must you do if you select the Allow the user to choose a VPN server before connecting option?
answer
You must provide a text listing of VPN servers.
question
Which VPN feature provides proof that users are who they claim to be?
answer
Authentication.
question
Which VPN protocol does not support using Password Authentication Protocol (PAP), Challenge Handshake Authentication Protocol (CHAP), and Microsoft Challenge Handshake Authentication Protocol Version 2 (MSCHAPv2), and instead can only use EAP-MSCHAPv2 or a certificate for authentication?
answer
Internet Key Exchange, Version 2 (IKEv2).
question
Which component of SSTP ensures that when there is a break in connectivity, the user can continue without restarting the connection?
answer
MOBIKE.
question
The Run the Remote Access Setup Wizard divides the installation into four separate installations that give you a great deal of control over settings and configurations. Which of the following is the correct description for the installation of Infrastructure Servers?
answer
Configure how the clients access the core infrastructure services such as Active Directory domain controllers and DNS servers. Specify an internal web server that can provide location services for infrastructure components to your DirectAccess clients.
question
The Run the Remote Access Setup Wizard divides the installation into four separate installations that give you a great deal of control over settings and configurations. Which of the following is the correct description for the installation of Remote Clients?
answer
Specify which clients within your organization can use DirectAccess. Specify the computer groups that you want to include and whether you want to include Windows 7 clients.
question
Which tool can be used to create and customize network connection profiles for deployment to client computers?
answer
Connection Manager Administration Kit.
question
DirectAccess was introduced with which workstation/server pair?
answer
Windows 7/Windows Server 2008 R2.
question
What advantage does the usage of SSTP for VPN connections offer firewall administrators?
answer
It uses a commonly open port.
question
Which utility is used to configure DirectAccess?
answer
Remote Access Management Console.
question
What does the acronym ISATAP stand for?
answer
Intra-Site Automatic Tunnel Addressing Protocol.
question
If the client cannot reach the DirectAccess server using 6to4 or Teredo tunneling, the client tries to connect using which protocol?
answer
IP-HTTPS.
question
Which VPN tunneling protocol uses IPSec with 3DES for data confidentiality?
answer
L2TP/IPSec.
question
Which of the following was a major obstacle to deploying DirectAccess in Windows Server 2008 R2 and Windows 7 that was removed in Windows Server 2012?
answer
The usage of a PKI.
question
To protect an enterprise network, you should install _________ that examine incoming and outgoing traffic.
answer
Firewalls.
question
Which VPN feature ensures packets are not modified while in transit?
answer
Data integrity.
question
Which of the following will you not find on the DMZ?
answer
SQL servers.
question
What is the best reason for deploying DirectAccess connectivity for remote users?
answer
Remote user's computers can be easily managed and kept up to date.
question
Windows Server 2012 varies from the Windows Server 2008 R2 implementation in that it does not require which of the following?
answer
Two consecutive public IP addresses
question
Which function does the Network Location Server play?
answer
It is a web server used by the client to determine whether it is on the corporate network.
question
Which of the following statements best describes the function of the DirectAccess infrastructure tunnel?
answer
It is used to communicate with the DNS server and to obtain Group Policy settings.
question
Which management solution for your off-network devices allows remote users to connect automatically whenever their clients detect an Internet connection?
answer
DirectAccess.
question
Which of the following filters traffic based on ports by using basic endpoint connections?
answer
NAT filtering.
question
Which type of connectivity does DirectAccess establish between workstation and server?
answer
bi-directional
question
Which network is considered to be the most protected network?
answer
Internal network.
question
Which VPN feature prevents readable access to data without possession of the appropriate key?
answer
Encryption.
question
Which step should be taken when you need to migrate from ForeFront UAG to Windows Server 2012 R2 DirectAccess and you want to minimize downtime?
answer
Perform a side-by-side migration.
question
Into which network should your public web servers be placed?
answer
DMZ.
question
Which of the following terms is best described as a feature that allows client computers to automatically connect to the company network whenever they have Internet access?
answer
DirectAccess.
question
Which operating system cannot act as a DirectAccess client?
answer
Windows Server 2008.
question
Which of the following is not a feature of DirectAccess in Windows Server 2012 R2?
answer
PXE boot.
question
Which firewall configuration is a single-point firewall that connects the internal network and the Internet?
answer
Bastion host.
question
Which of the following items would not meet the requirements for a DirectAccess server?
answer
A connection to the Internet through a NAT proxy.
question
The Run the Remote Access Setup Wizard divides the installation into four separate installations that give you a great deal of control over settings and configurations. Which of the following is the correct description for the installation of Application Servers?
answer
Configure your end-to-end authentication and security for the DirectAccess components. It also provides secure connections to individual servers.
question
You have a DirectAccess server that has two network adapters. One adapter is connected to the Internet and the other is connected to the internal network. Which topology should be selected?
answer
Edge
question
Which VPN feature guarantees that a transferred message was sent and received by the two parties claiming to have sent and received the message?
answer
Non-repudiation
question
Windows 8 and Windows Server 2012 support multiple types of EAP-based authentication for VPN connections. Which of these is not supported for VPN connections?
answer
EAP-TLS