70-291 Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure Training Boot Camp


Microsoft ™

70-291 Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure



Note 1: 70-291 Exhibit and all related diagrams are not shown in demo questions.
Note 2: 70-291 Answers are not shown in demo questions.
Exhibits and Answers are only provided in the Full Version.


Demo Question 7.


Exhibit, Network Topology You work as the network administrator at EliteCertify.com. The EliteCertify.com network consists of a single Active Directory domain named EliteCertify.com. All servers on the EliteCertify.com network run Windows Server 2003 and all client computers run Windows XP Professional. EliteCertify.com has its headquarters in Miami and a branch office in Chicago. Headquarters has a server named EliteCertify -SR21 and the branch office has a server named EliteCertify -SR22. Both EliteCertify -SR21 and EliteCertify -SR22 have dedicated external connections to the internet. The relevant portion of the network is illustrated in the exhibit. You have received instruction from the CIO to configure a private network that allows for Internet-based communication between headquarters and the branch office whilst ensuring this communication is secured by using IPSec encryption. Which of the following actions should achieve this configuration? Each correct answer presents part of the solution. Select two.

A. A VPN connection must be configured between EliteCertify -SR21 and EliteCertify -SR22 that uses the L2TP tunneling protocol.
B. A VPN connection must be configured between EliteCertify -SR21 and EliteCertify -SR22 that uses the PPTP tunneling protocol.
C. A certification authority (C must be installed and configured in the Active Directory domain.
D. A third-party S/MIME certificate must be installed on EliteCertify -SR21 and EliteCertify -SR22.
E. Configure a remote access policy to require the use of the EAP-TLS authentication protocol for each perimeter network server.


Display Answer


Purchase Full Version:


70-291 Printable PDF Prep Guide $49.95 BUY NOW!

70-291 Test Simulation Engine $69.95 BUY NOW!

70-291 PDF & Test Simulation Engine $99.95 BUY NOW!




Answer: A, C

Explanation: A virtual private network (VPN) is a private network that uses links across private or public networks (such as the Internet). When data is sent over the remote link, it is encapsulated, encrypted, and requires authentication services. And Layer 2 Tunneling Protocol (L2TP) is a generic tunneling protocol that allows encapsulation of one network protocol's data within another protocol. It is used in conjunction with IPSec to enable virtual private network (VPN) access to Windows 2003 networks. If you want the Internet-based communication between headquarters servers and client computers and between the branch office servers and client computers to be secure and make use of IPSec encryption, then it would be logical to make use of a VPN that uses L2TP tunneling between headquarters and the branch office. In addition, to secure the communication, you should also make use of a certification authority in the Active Directory domain. Incorrect answers: B. PPTP tunneling, though also a tunneling protocol is not as suited to the situation as L2TP is to the situation at hand. D. This answer suggests the wrong type of certificate. Thus this option should not be considered. E. EAP-Transport Level Security (TLS) allows you to use public-key certificates as an authenticator. TLS is very similar to the familiar Secure Sockets Layer (SSL) protocol used for web browsers. When EAP-TLS is turned on, the client and server send TLS-encrypted messages back and forth. EAP-TLS is the strongest authentication method you can use; as a bonus, it supports smart cards. However, EAP-TLS requires your RRAS server to be part of a Windows 2000 or Server 2003 domain. This is not what is required under the given circumstances. Reference: James Chellis, Paul Robichaux & Matthew Sheltz, MCSA/MCSE. Windows Server 2003 Network Infrastructure Implementation, Management, and Maintenance Study Guide, Sybex Inc., Alameda, 2003, pp. 344-346, 479



  • Based on the latest 70-291 exam objectives!
  • Designed like actual 70-291 exam questions!
  • 100% Verified Realistic 70-291 Exam Questions and Answers!
  • Exhibits, Drag&Drop and Simulation 70-291 Questions Included!
  • Constantly Updated Guide to Reflect the Current 70-291 Exams!
  • Detailed Explanations for Most Guide Practice Exams!
 Sponsored Links
Japan Exam



SCWCD
310-081 310-220

$59 Get Detail

MCDBA
70-228 70-229
70-290 70-293

$119 Get Detail

MCSE 2003 Security
70-270 70-290
70-291 70-292
70-293 70-294
70-298 70-299

$239 Get Detail

MCDST
70-271 70-272

$59 Get Detail

MCSE
70-270 70-290
70-291 70-293
70-294 70-297
70-298
$209 Get Detail


England
Many thanks to your complete solution in 3Com Test Simulation Engine, Study Guides and PDF practice exams which are very ...


NY, USA
I wanted to take a few minutes to thank EliteCertify for passing 3 exams towards my MCSE. ...


London, UK
First class site! Just passed 70-290 and achieved my MCSE & MCSA. ...





Keyword
This site is both PayPal and VeriSign Verified. 128-bit SSL Encryption!
More questions about Order Security?