The Microsoft exam 70-298 measures an individual’s propensity to design gage in favour of a Microsoft Windows Server 2003 network. Before intriguing the 70-298 exam, you should lore the following:
Plan gage templates based on computer job.
Configure registry and CV modus operandi permissions, account policies, most of all.pol files, audit policies, owner rights aim, gage options, modus operandi services, restricted groups, and when it happened logs.
Troubleshoot gage pattern problems in a diverse operating modus operandi place.
Deploy gage templates on using Active Directory-based Group Policy objects (GPOs) and on using command-line tools and scripting.
Troubleshoot gage game plan patrimony and extermination of gage pattern settings.
Plan network zones in favour of computer roles and gage in favour of infrastructure services including DHCP and DNS.
Plan and configure gage settings and software proviso policies.
Plan and configure auditing and logging in favour of a computer job.
Plan the deployment of serving packs and hotfixes.
Analyze gage configuration on using tools such as Microsoft Baseline Security Analyzer (MBSA), the MBSA command-line aid, and Security Configuration and Analysis. For lesson, evaluating the applicability of serving packs and hotfixes, testing the compatibility of serving packs and hotfixes in favour of existing applications.
Assess all the go forward ground levels on using the MBSA GUI aid and MBSA command-line aid with scripted solutions.
Plan ground deployment environments in favour of both the cicerone and forging phases, amount deployment of multiple hotfixes, and rollback scheme.
Deploy serving packs and hotfixes on unheard of and existing servers and shopper computers.
Configure IPSec authentication and forthwith encryption levels.
Plan IPSec deployment such as choosing IPSec fashion, authentication methods in favour of IPSec, and evaluation the functionality of existing applications and services.
Configure the forthwith IPSec minute such as Authentication Header (AH) and Encapsulating Security Payload (ESP).
Deploy IPSec policies on using Local game plan objects or Group Policy objects (GPOs).
Configure IPSec inbound and outbound filters and clarify actions.
Deploy IPSec policies on using commands and scripts.
Monitor IPSec policies on using IP Security Monitor and Configure IPSec logging. Tools CV IPSecPol and NetSh.
Troubleshoot IPSec certificates including company confidence in policies and certificate revocation CV (CRL) checking.
Plan wireless access policies and configure wireless encryption.
Plan the authentication and encryption methods in favour of a wireless network.
Install and configure wireless affirm in favour of shopper computers.
Install certificates in favour of SSL and Renew certificates.
Configure SSL in favour of fix communication.
Configure authentication in favour of fix remote access.
Configure and troubleshoot accepted surreptitiously network (VPN) protocols including Internet serving provider (ISP), shopper operating modus operandi, network usher in transmitting devices, Routing and Remote Access servers, and firewall servers. Authentication types CV PAP, CHAP, MS-CHAP, MS-CHAP v2, EAP-MD5, EAP-TLS, and multifactor authentication that combines soignВe cards and EAP.
Manage shopper configuration in favour of remote access gage on using tools such as remote access game plan and the Connection Manager Administration Kit.
Plan and configure authentication protocols, multifactor authentication, authentication in favour of Web users, delegated authentication.
Plan, configure, and troubleshoot confidence in relationships.
Decide which types of groups to exigency execrate and expect gage body latitude and nested body arrange.
Plan and troubleshoot the aim of owner rights and expect requirements in favour of digital signatures.
Configure access whim lists (ACLs).
Install and configure ictus, medial, and issuing certification authorities (CAs).
Configure certificate templates and archival and deliverance of keys.
Considerations CV renewals and hierarchy.
Configure, look after, and troubleshoot the magazine of certificate revocation lists (CRLs).
Back up and reawaken the CA.
Deploy and repeal certificates to users, computers, and CAs.
Partager ce billet