want to improve your study at 70-649? here we provide the most newest reference and Q&A to help you know it well.
here show you some demos
1. Your company has a main office and 15 branch offices. The company has a single Active Directory
domain. All servers run Windows Server 2008.You need to ensure that the VPN connections between the
main office and the branch offices meet the following requirements:
All data must be encrypted by using end-to-end encryption.
The VPN connection must use computer-level authentication.
User names and passwords cannot be used for authentication.
What should you do?
A. Configure an IPsec connection to use tunnel mode and preshared key authentication.
B. Configure a PPTP connection to use version 2 of the MS-CHAP v2 authentication.
C. Configure a L2TP/IPsec connection to use the EAP-TLS authentication.
D. Configure a L2TP/IPsec connection to use version 2 of the MS-CHAP v2 authentication.
Answer: C
2. Your company has Active Directory Certificate Services (AD CS) and Network Access Protection (NAP)
deployed on the network. You need to ensure that NAP policies are enforced on portable computers that
use a wireless connection to access the network. What should you do?
A. Configure all access points to use 802.1X authentication.
B. Configure all portable computers to use MS-CHAP v2 authentication.
C. Use the Group Policy Management Console to access the wireless Group Policy settings, and enable
the Prevent connections to ad-hoc networks option.
D. Use the Group Policy Management Console to access the wireless Group Policy settings, and disable
the Prevent connections to infrastructure networks option.
Answer: A
3. Your company has 10 servers that run Windows Server 2008. The servers have RDP enabled for
server administration. RDP is configured to use default security settings. All administrators' computers run
Windows Vista. You need to ensure the RDP connections are as secure as possible. Which two actions
should you perform? (Each correct
Answer presents part of the solution. Choose two.)
A. Set the security layer for each server to the RDP Security Layer.
B. Configure the firewall on each server to block port 3389.
The safer , easier way to help you pass any IT exams.
C. Acquire user certificates from the internal certificate authority.
D. Configure each server to allow connections only to Remote Desktop client computers that use Network
Level Authentication.
Answer: CD
more information passcert
here show you some demos
1. Your company has a main office and 15 branch offices. The company has a single Active Directory
domain. All servers run Windows Server 2008.You need to ensure that the VPN connections between the
main office and the branch offices meet the following requirements:
All data must be encrypted by using end-to-end encryption.
The VPN connection must use computer-level authentication.
User names and passwords cannot be used for authentication.
What should you do?
A. Configure an IPsec connection to use tunnel mode and preshared key authentication.
B. Configure a PPTP connection to use version 2 of the MS-CHAP v2 authentication.
C. Configure a L2TP/IPsec connection to use the EAP-TLS authentication.
D. Configure a L2TP/IPsec connection to use version 2 of the MS-CHAP v2 authentication.
Answer: C
2. Your company has Active Directory Certificate Services (AD CS) and Network Access Protection (NAP)
deployed on the network. You need to ensure that NAP policies are enforced on portable computers that
use a wireless connection to access the network. What should you do?
A. Configure all access points to use 802.1X authentication.
B. Configure all portable computers to use MS-CHAP v2 authentication.
C. Use the Group Policy Management Console to access the wireless Group Policy settings, and enable
the Prevent connections to ad-hoc networks option.
D. Use the Group Policy Management Console to access the wireless Group Policy settings, and disable
the Prevent connections to infrastructure networks option.
Answer: A
3. Your company has 10 servers that run Windows Server 2008. The servers have RDP enabled for
server administration. RDP is configured to use default security settings. All administrators' computers run
Windows Vista. You need to ensure the RDP connections are as secure as possible. Which two actions
should you perform? (Each correct
Answer presents part of the solution. Choose two.)
A. Set the security layer for each server to the RDP Security Layer.
B. Configure the firewall on each server to block port 3389.
The safer , easier way to help you pass any IT exams.
C. Acquire user certificates from the internal certificate authority.
D. Configure each server to allow connections only to Remote Desktop client computers that use Network
Level Authentication.
Answer: CD
more information passcert