nerdexam
Microsoft

70-649 · Question #269

Your network contains two Active Directory forests named contoso.com and fabrikam.com. You have a standalone Network Policy Server (NPS) named NPS1. You have a VPN server named VPN1. VPN1 is configure

The correct answer is B. On NPS1, configure connection request policies.. Connection request policies allow you to designate whether connection requests are processed locally orforwarded to remote RADIUS servers. For NAP VPN or 802.1X, you must configure PEAP authentication in connection request policy.

Configuring Network Infrastructure

Question

Your network contains two Active Directory forests named contoso.com and fabrikam.com. You have a standalone Network Policy Server (NPS) named NPS1. You have a VPN server named VPN1. VPN1 is configured as a RADIUS client to NPS1. You need to ensure that users from both forests can establish VPN connections by using their own domain accounts. What should you do?

Options

  • AOn NPS1, configure remediation server groups.
  • BOn NPS1, configure connection request policies.
  • COn VPN1, modify the DNS suffix search order.
  • DOn VPN1, modify the IKEv2 Client connection controls.

How the community answered

(43 responses)
  • A
    5% (2)
  • B
    72% (31)
  • C
    14% (6)
  • D
    9% (4)

Explanation

Connection request policies allow you to designate whether connection requests are processed locally orforwarded to remote RADIUS servers. For NAP VPN or 802.1X, you must configure PEAP authentication in connection request policy.

Topics

#NPS#RADIUS#connection request policies#multi-forest authentication

Community Discussion

No community discussion yet for this question.

Full 70-649 Practice