Microsoft
70-243 · Question #93
70-243 Question #93: Real Exam Question with Answer & Explanation
The correct answer is A: Enable the Network Access Protection client agent.. Enabling NAP in SCCM 2012 requires activating the NAP client agent, configuring the site to publish to Active Directory, and deploying the system health validator point with the Network Policy Server role to enforce health policies.
Question
You install System Center 2012 Configuration Manager in your Active Directory environment. You configure a single Configuration Manager site. You need to enable Network Access Protection in your environment. You extend the Active Directory schema. You create the System Management container in Active Directory. You set permissions on the System Management container for the site server. Which three actions should you perform next?(Each correct answer presents part of the solution. Choose three.)
Options
- AEnable the Network Access Protection client agent.
- BEnable the Software Updates client agent.
- CConfigure the Configuration Manager site to publish settings to Active Directory.
- DConfigure the Configuration Manager site for native mode.
- EEnable the Desired Configuration Management client agent.
- FConfigure a server with the system health validator point and the Network Policy Server role.
Explanation
Enabling NAP in SCCM 2012 requires activating the NAP client agent, configuring the site to publish to Active Directory, and deploying the system health validator point with the Network Policy Server role to enforce health policies.
Common mistakes.
- B. The Software Updates client agent is used for patch management and is not a prerequisite for enabling Network Access Protection.
- D. Native mode (PKI certificate-based communication) is a site communication security configuration unrelated to the NAP feature setup steps.
- E. The Desired Configuration Management client agent is used for compliance settings baselines and is not required as part of the NAP enablement process.
Concept tested. Enabling Network Access Protection in SCCM 2012
Community Discussion
No community discussion yet for this question.