โ† All 70-413 Exam Flashcard Decks

Network Access Services Flashcards

7 cards from real 70-413 Exam practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Network Access Services flashcards as text
  1. What is the primary purpose of the Network Location Server (NLS) in a DirectAccess deployment?

    Answer: To allow DirectAccess clients to detect whether they are on the internal or external network

    The NLS is an internal HTTPS server that DirectAccess clients probe; if reachable, the client knows it is on the internal network and suppresses DirectAccess tunnels.

  2. How are DirectAccess client configuration settings deployed to Windows client computers in an enterprise environment?

    Answer: Via a DirectAccess Client Settings Group Policy Object linked to the client OU

    The DirectAccess setup wizard automatically creates a GPO containing client-side DirectAccess settings, which administrators link to OUs containing the target client computers.

  3. Which Windows Server role must be installed on the server designated as a DirectAccess gateway?

    Answer: Remote Access

    The Remote Access server role contains the DirectAccess and VPN (RAS) role service, which must be installed and configured to enable DirectAccess gateway functionality.

  4. When DirectAccess clients behind NAT devices cannot use Teredo because UDP port 3544 is blocked, what automatic fallback mechanism ensures connectivity?

    Answer: The client automatically falls back to IP-HTTPS for connectivity

    When Teredo fails due to blocked UDP traffic, DirectAccess clients automatically fall back to IP-HTTPS, which uses TCP port 443 and works through most NAT and firewall configurations.

  5. Which PKI requirement must be satisfied before deploying DirectAccess with IPsec in an enterprise environment?

    Answer: Computer certificates issued by an internal CA deployed to both the DA server and all DA clients

    DirectAccess uses IPsec for tunnel authentication, which requires computer certificates issued by a trusted internal CA to be installed on both the DirectAccess server and all participating client computers.

  6. What is the function of the Name Resolution Policy Table (NRPT) in a DirectAccess deployment?

    Answer: To direct DNS queries for internal namespaces to internal DNS servers while using public DNS for external names

    The NRPT is a table of rules that maps DNS suffixes to specific DNS servers; it ensures internal names resolve against corporate DNS via DirectAccess tunnels while external names use the client's public DNS.

  7. Which Windows client operating system editions support DirectAccess in a Windows Server 2012 R2 environment?

    Answer: Windows 7 Enterprise or Ultimate and later Enterprise/Education editions

    DirectAccess requires Windows 7 Enterprise or Ultimate (or later Enterprise/Education editions), as these SKUs include the necessary DirectAccess client components and domain-join requirements.