PrepAway - Latest Free Exam Questions & Answers

Author: seenagape

Which ports should you allow through the firewall?

Your network contains a Network Policy Server (NPS) named NPS1 and a network access server

named NAS1. NAS1 is configured to use NPS1 for authentication and accounting. A firewall separates NPS1 and NAS1.

You need to ensure that NAS1 can successfully send authentication and accounting messages to NPS1.

Which ports should you allow through the firewall?

You need to ensure that the external users can request certificates by using the new template

You have a server named Server1 that has the following Active Directory Certificate Services (AD CS) role services installed:

* Enterprise root certification authority (CA)
* Certificate Enrollment Web Service
* Certificate Enrollment Policy Web Service

You create a new certificate template.

External users report that the new template is unavailable when they request a new certificate. You verify that all other templates are available to the external users. You need to ensure that the external users can request certificates by using the new template.

What should you do on Server1?

You need to ensure that users from both forests can establish VPN connections by using their own domain accoun

Your network contains two Active Directory forests named contoso.com and fabrikam.com. You have a standalone Network Policy Server (NPS) named NPS1. You have a VPN server named VPN1. VPN1 is configured as a RADIUS client to NPS1. You need to ensure that users from both forests can establish VPN connections by using their own domain accounts.

What should you do?

You need to ensure that all users in the adatum

Your network contains two Active Directory forests named contoso.com and adatum.com. The functional level of both forests is Windows Server 2008 R2. Each forest contains one domain. Active Directory Certificate Services (AD CS) is configured in the contoso.com forest to allow users from both forests to automatically enroll user certificates. You need to ensure that all users in the adatum.com forest have a user certificate from the contoso.com certification authority (CA).

What should you configure in the adatum.com domain?

Which command should you run on Computer1?

Your network contains an Active Directory domain.

You have a server named Server1 that runs Windows Server 2008 R2. Server1 is an enterprise root certification authority (CA).

You have a client computer named Computer1 that runs Windows 7. You enable automatic certificate enrollment for all client computers that run Windows 7. You need to verify that the Windows 7 client computers can automatically enroll for certificates.

Which command should you run on Computer1?

You need to ensure that Server1 can read the dial-in properties of the user accounts in the eu

Your network contains an Active Directory forest. The forest contains two domains named contoso.com and eu.contoso.com.

You install a Network Policy Server (NPS) named Server1 in the contoso.com domain. You need to ensure that Server1 can read the dial-in properties of the user accounts in the eu.contoso.com domain.

What should you do?

You need to ensure that Server2 has the same RADIUS authentication and logging settings as Server1

Your network contains a Network Policy Server (NPS) named Server1. Server1 is configured to use SQL logging.

You add a second NPS server named Server2.

You need to ensure that Server2 has the same RADIUS authentication and logging settings as Server1. You export the NPS settings from Server1, and then import the settings to Server2.

What should you do next on Server2?