Your company has offices in five locations around the country. Most of the users’ activity is local totheir own
network. Occasionally, some of the users in one location need to send confidential information to one of the
other four locations or to retrieve information from one of them. The communication between the remote
locations is sporadic and relatively infrequent, soyou have configured RRAS to use demand-dial lines to set up
the connections. Management’s only requirement is that any communication between the office locations be
appropriately secured. Which of the following stepsshould you take to ensure compliance with this
requirement? (Choose all that apply.)
A.
Configure CHAP on all the RRAS servers.
B.
Configure PAP on all the RRAS servers.
C.
Configure MPPE on all the RRAS servers.
D.
Configure L2TP on all the RRAS servers.
E.
Configure MS-CHAPv2 on all the RRAS servers.
Thanks seenagape for this. Can anyone confirm this is valid?
Possible technet: http://technet.microsoft.com/en-us/library/cc957963.aspx
“The communication between the remote locations is sporadic and relatively infrequent, so you have configured RRAS to use demand-dial lines to set up the connections. ”
—
some of the users in one location need to send confidential information to one of the
other four locations or to retrieve information from one of them.
–> Users need to pull files and place them. Both directions need to be secure. MS-CHAP v2 and EAP-TLS authentication methods provide mutual authentication. EAP-TLS is not in the list so it must be MS-CHAPv2.
—
Management’s only requirement is that any communication between the office locations be
appropriately secured.
–> Of the list, only MPPE would be an encryption method for Demand-dialing. The other would be IPSec, if it was in the list.
Does this include the new r2 updates?
it’s D and E. MPPE is used with PPTP and is insecure. and MS-CHAPv2 is the more secure authentication protocol
https://technet.microsoft.com/en-us/library/cc775646(v=ws.10).aspx
The L2TP mentioned in D, is really L2TP/IPsec. By itself, L2TP is almost never used.
L2tp doesnt used with chap, it has other encryption types
The L2TP message is encrypted with either Advanced Encryption
Standard (AES) or Triple Data Encryption Standard (3DES) by using encryption keys
The answer is C and E. This is over dialup lines.
Reference is the Sybex volume on this exam.