โ† All MCSE Flashcard Decks

70-298: Designing Network Security Flashcards

6 cards from real MCSE practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 6 70-298: Designing Network Security flashcards as text
  1. What is the primary risk of using the 'Send unencrypted password to connect to third-party SMB servers' option in Windows security policy?

    Answer: Passwords transmitted in cleartext can be intercepted via network sniffing

    Sending unencrypted passwords exposes credentials to any attacker performing a network capture (sniffing attack) between the client and server.

  2. Which security setting controls the minimum age before a user can change their password again?

    Answer: Minimum password age

    The minimum password age setting prevents users from immediately cycling through passwords to reuse a favorite password that is blocked by password history.

  3. What does the 'No Override' (Enforced) GPO setting do?

    Answer: Prevents child OUs from blocking or overriding the GPO's settings

    Setting a GPO link as 'Enforced' (formerly 'No Override') prevents child OUs from using Block Inheritance to override that GPO's settings.

  4. Which protocol should be preferred over NTLM for authentication security in Windows Server 2003 environments?

    Answer: Kerberos v5

    Kerberos v5 provides mutual authentication, stronger cryptography, and ticket-based access control, making it more secure than NTLM for domain authentication.

  5. What is the purpose of a CRL (Certificate Revocation List) in a PKI environment?

    Answer: Lists certificates that have been revoked before their expiration date

    A CRL is a signed list published by the CA that identifies certificates that are no longer valid due to compromise, key loss, or organizational changes.

  6. Which Windows Server 2003 feature provides network access control by checking client health before granting full network access?

    Answer: Network Access Quarantine Control

    Network Access Quarantine Control holds a connecting client in a restricted network until a script verifies that the client meets security requirements such as antivirus currency.