NPS/RADIUS Flashcards
What are two policies found within the framework of the NPS that governs whether or not a client gets access to the network?
Connection Request Policies and Network Policies
What does RADIUS stand for?
Remote Access Dial-In User Service.
What is the difference between Connection Request Policies and Network Policies?
Connection Request Policies determine where a client’s authentication takes place, e.g., RADIUS server or locally.
Network Policies provides authorization to allow the VPN traffic.
Even if the Network Policy Server role is not installed, a “lite” version of the NPS is installed with Remote Access. True or False?
True.
Within the Connection Request Policies, the processing order is determined numerically starting with the lowest numbers. True or False?
True.
Using the Routing and Remote Access tool, which policy can be configured?
Network policies.
Which tab within the properties of a Connection Request policy, configures where authentication will take place for VPN clients?
Settings tab.
When viewing the Connection Request Policy properties, which tab provides the option to enable or disable the policy?
Overview tab.
Once a network policy is matched, no other network policies are considered. True or False?
True.
How do you alter the order of Network Policies within the Network Policies list?
Right click on the policy and select “Move Up or Move Down”.
Within a user’s account, what are their Dial-In properties set to by default?
Control access through NPS Network Policy
A Network Policy can override a user’s Dial-In permissions if the proper box is checked within the Network Policies Overview tab. True or False?
True.
Which role installs the Network Policy Server tool and turns a server into a NPS server?
Network Policy Server.
How do you configure a RADIUS server?
- Install the Network Policy and Access Services role
- Within the NPS tool, utilize the Getting Started screen and choose, from the drop down list, what your going to be using the RADIUS server for (VPN, wireless, or wired connections).
- For VPN connections, you’ll use the Configure VPN or Dial-Up Wizard.
As a result of the wizard, you’ll have created both Connection Request Policies and Network Policies for that connection (VPN/Dial-Up).
How do you configure a RAS server to forward authentication requests to a centralized RADIUS server?
- Navigate to: RAS server > NPS tool > Connection Request Polices > R-Click on policy > Settings tab > Authentication
- Click on “New” (to create a new Security group for our RADIUS servers) and add each RADIUS server to the group.
- Select the “Forward requests to the following remote RADIUS server group for authentication” radio button.