nerdexam
Microsoft

70-642 · Question #223

Your network contains an Active Directory domain. All client computers run Windows XP Service Pack 3 (SP3). The domain contains a member server named Server1 that runs Windows Server 2008 R2. On…

The correct answer is C. From a Group Policy object (GPO), enable the Client (Respond Only) IPSec policy on all. Client (Respond Only)-This default policy contains one rule, the default response rule. The default response rule secures communication only upon request by another computer. This policy does not attempt to negotiate security for any other traffic.

Configuring Windows Firewall with Advanced Security

Question

Your network contains an Active Directory domain. All client computers run Windows XP Service Pack 3 (SP3). The domain contains a member server named Server1 that runs Windows Server 2008 R2. On Server1, you create a connection security rule that requires authentication for inbound and outbound connections. You configure the connection security rule to use Kerberos authentication. You need to ensure that the client computers can connect to Server1. The solution must ensure that all connections to Server1 are encrypted. What should you do?

Options

  • AFrom the Windows Firewall with Advanced Security console, create an inbound rule on
  • BFrom the Windows Firewall with Advanced Security console, create an outbound rule on
  • CFrom a Group Policy object (GPO), enable the Client (Respond Only) IPSec policy on all
  • DFrom a Group Policy object (GPO), configure the Network Security: LDAP client signing

How the community answered

(42 responses)
  • A
    5% (2)
  • B
    14% (6)
  • C
    71% (30)
  • D
    10% (4)

Explanation

Client (Respond Only)-This default policy contains one rule, the default response rule. The default response rule secures communication only upon request by another computer. This policy does not attempt to negotiate security for any other traffic.

Topics

#IPSec policy#Group Policy#Kerberos authentication#connection security rule

Community Discussion

No community discussion yet for this question.

Full 70-642 Practice