lab 9-2 Flashcards

1
Q

Which of the following is required to enable a VPN server and VPN clients to use the L2TP protocol?

A. Delta CRL
B. Pre-Shared Key
C. Key Recovery Agent
D. Base CRL

A

Pre-Shared Key

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Computer certificates have been successfully been assigned to VPN Servers and VPN Clients to use the Layer 2 Tunneling Protocol VPN (L2TP). What is the common characteristic of the certificates issued for the VPN server and VPN client?

A. The certificates assigned to both VPN servers and VPN clients come from a self-signed Certification Authority server.

B. The devices must have a copy of the Delta CRL to verify certificate validity.

C. The certificates assigned to both VPN servers and VPN clients come from a third-party Certification Authority server.

D. The devices must have a copy of the Base CRL to verify certificate validity.

A

The devices must have a copy of the Base CRL to verify certificate validity

The certificates assigned to both VPN servers and VPN clients come from a third-party Certification Authority server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which of the following network encryption protocols applies to L2TP VPN servers?

A. IPsec

B. RSA

C. Blowfish

D. SSL

A

IPsec

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are some security risks if a pre-shared key is used to enable L2TP on a VPN server and VPN clients? [Choose all that apply]

A. Pre-shared key is readable as plain text on the VPN client’s dial-in properties.

B. Pre-shared key is readable as plain text on the L2TP-enabled VPN server.

C. Pre-shared key is transmitted as clear text over the network.

D. Pre-shared key is traceable to the organization’s Certification Authority.

A

Pre-shared key is readable as plain text on the L2TP-enabled VPN server.

Pre-shared key is readable as plain text on the VPN client’s dial-in properties.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

You just installed the Active Directory Certification Authority (CA) server from which a VPN server and a number of VPN clients will request for computer certificates. The VPN server was successful in its certificate enrollment. One of the VPN clients receives an error that all certificate templates are unavailable in the enrollment wizard. Which of the following actions can resolve this issue on the VPN client? [Choose all that apply]

A. Add the VPN clients to the Certificate Enrollment group.

B. Restart the VPN client.

C. Verify the Key Recovery Agent account on the VPN client.

D. Check the VPN client’s membership in the domain.

A

Check the VPN client’s membership in the domain.

Restart the VPN client.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly