Your network contains an Active Directory domain named contoso.com. The domain
contains three VLANs. The VLANs are configured as shown in the following table.
All client computers run either Windows 7 or Windows 8.
The corporate security policy states that all of the client computers must have the latest
security updates installed.
You need to implement a solution to ensure that only the client computers that have all of the
required security updates installed can connect to VLAN 1. The solution must ensure that all
other client computers connect to VLAN 3.
Solution: You implement the IPsec enforcement method.
Does this meet the goal?
A.
Yes
B.
No
Shouldn’t this be yes?
https://msdn.microsoft.com/en-us/library/cc726008.aspx
I think in this scenario because VLAN’s are being used you would use 802.1x NAP enforcement.
So the answer would be B.
https://msdn.microsoft.com/en-us/library/dd125342%28v=ws.10%29.aspx
I understand K’s initial reaction that this should be yes, but Tech 1 is correct. The fact that VLAN enforcement is needed means you would use 802.1x NAP enforcement.