Microsoft 70-298 Braindumps
| Exam details |
|---|
| 70-298 : Designing Security for a MS Windows Server 2003 Network |
| Certification provider: Microsoft |
| 70-298 Exam Topics |
| 70-298 Exam Info |
Prerequisites: An MCSE candidate should have at least one year of experience implementing and administering a network operating system in environments that have the following characteristics:
- 250 to 5,000 or more users
- Three or more physical locations
- Three or more domain controllers
- Network services and resources such as messaging, database, file and print, proxy server, firewall, Internet, intranet, remote access, and client computer management
- Connectivity requirements such as connecting branch offices and individual users in remote locations to the corporate network and connecting corporate networks to the Internet
- Designing a network infrastructure
- Implementing and administering a desktop operating system
Exam Format:
They are using case studies with a combination of the following: Multiple Choice, Hot Area, Active Screen, Drag and Drop, Build List – sort and reorder, and Build a Tree.
Number of Questions:
There are 50 questions.
Time:
150 Minutes
Price:
$125 (USD)
Passing Score:
700
Difficulty Rating:
4/5
| Displaying Rows 1 - 30 of 91 | Pages: 1 2 3 4 ![]() |
70-298 Exam Topics
- Creating the Conceptual Design for Network Infrastructure Security by Gathering and Analyzing Business and Technical Requirements
- Analyze business requirements for designing security. Considerations include existing policies and procedures, sensitivity of data, cost, legal requirements, end-user impact, interoperability, maintainability, scalability, and risk.
- Analyze existing security policies and procedures.
- Analyze the organizational requirements for securing data.
- Analyze the security requirements of different types of data.
- Analyze risks to security within the current IT administration structure and security practices.
- Design a framework for designing and implementing security. The framework should include prevention, detection, isolation, and recovery.
- Predict threats to your network from internal and external sources.
- Design a process for responding to incidents.
- Design segmented networks.
- Design a process for recovering services.
- Analyze technical constraints when designing security.
- Identify capabilities of the existing infrastructure.
- Identify technology limitations.
- Analyze interoperability constraints.
- Analyze business requirements for designing security. Considerations include existing policies and procedures, sensitivity of data, cost, legal requirements, end-user impact, interoperability, maintainability, scalability, and risk.
- Creating the Logical Design for Network Infrastructure Security.
- Design a public key infrastructure (PKI) that uses Certificate Services.
- Design a certification authority (CA) hierarchy implementation. Types include geographical, organizational, and trusted.
- Design enrollment and distribution processes.
- Establish renewal, revocation and auditing processes.
- Design security for CA servers.
- Design a logical authentication strategy.
- Design certificate distribution.
- Design forest and domain trust models.
- Design security that meets interoperability requirements.
- Establish account and password requirements for security.
- Design security for network management.
- Manage the risk of managing networks.
- Design the administration of servers by using common administration tools. Tools include Microsoft Management Console (MMC), Terminal Server, Remote Desktop for Administration, Remote Assistance, and Telnet.
- Design security for Emergency Management Services.
- Design a security update infrastructure.
- Design a Software Update Services (SUS) infrastructure.
- Design Group Policy to deploy software updates.
- Design a strategy for identifying computers that are not at the current patch level.
- Design a public key infrastructure (PKI) that uses Certificate Services.
- Creating the Physical Design for Network Infrastructure Security.
- Design network infrastructure security.
- Specify the required protocols for a firewall configuration.
- Design IP filtering.
- Design an IPSec policy.
- Secure a DNS implementation.
- Design security for data transmission.
- Design security for wireless networks.
- Design public and private wireless LANs.
- Design 802.1x authentication for wireless networks.
- Design user authentication for Internet Information Services (IIS).
- Design user authentication for a Web site by using certificates.
- Design user authentication for a Web site by using IIS authentication.
- Design user authentication for a Web site by using RADIUS for IIS authentication.
- Design security for Internet Information Services (IIS).
- Design security for Web sites that have different technical requirements by enabling only the minimum required services.
- Design a monitoring strategy for IIS.
- Design an IIS baseline that is based on business requirements.
- Design a content management strategy for updating an IIS server.
- Design security for communication between networks.
- Select protocols for VPN access.
- Design VPN connectivity.
- Design demand-dial routing between internal networks.
- Design security for communication with external organizations.
- Design an extranet infrastructure.
- Design a strategy for cross-certification of Certificate Services.
- Design security for servers that have specific roles. Roles include domain controller, network infrastructure server, file server, IIS server, terminal server, and POP3 mail server.
- Define a baseline security template for all systems.
- Create a plan to modify baseline security templates according to role.
- Design network infrastructure security.
- Designing an Access Control Strategy for Data.
- Design an access control strategy for directory services.
- Create a delegation strategy.
- Analyze auditing requirements.
- Design the appropriate group strategy for accessing resources.
- Design a permission structure for directory service objects.
- Design an access control strategy for files and folders.
- Design a strategy for the encryption and decryption of files and folders.
- Design a permission structure for files and folders.
- Design security for a backup and recovery strategy.
- Analyze auditing requirements.
- Design an access control strategy for the registry.
- Design a permission structure for registry objects.
- Analyze auditing requirements.
- Design an access control strategy for directory services.
- Creating the Physical Design for Client Infrastructure Security.
- Design a client authentication strategy.
- Analyze authentication requirements.
- Establish account and password security requirements.
- Design a security strategy for client remote access.
- Design remote access policies.
- Design access to internal resources.
- Design an authentication provider and accounting strategy for remote network access by using Internet Authentication Service (IAS).
- Design a strategy for securing client computers. Considerations include desktop and portable computers.
- Design a strategy for hardening client operating systems.
- Design a strategy for restricting user access to operating system features.
- Design a client authentication strategy.
70-298 Exam Info
Exam Layout and Design: The format is as follows:
- Multiple Choice: Multiple-choice questions come in two main forms. One is a straightforward question followed by several potential answers, of which one or more is correct. The other type of multiple-choice question is more complex and based on a specific scenario. The scenario may focus on several areas or objectives.
- Hot Area: You will be asked you to select an element or elements in a graphic to indicate the correct answer. You click an element to select or deselect it.
- Active Screen: Tests your working knowledge of the product by presenting you with a dialog box and requiring you to configure or change one or more options in order to answer the question.
- Drag and Drop: Requires you to drag source objects into the correct target area in order to answer the question.
- Build List and Reorder: You will be needed to create a list, in the correct order that represents the steps required to complete the stated problem.
- Build a Tree: You are being asked to drag source nodes into the answer tree area in their correct location in order to answer the question.
Intended Audience: The exam of 70 298: Designing a Microsoft Windows Server 2003 Active Directory and Network Infrastructure is designed for IT professionals who work in the typically complex computing environment of medium to large companies.
The exam 70-298 has a difficulty rating of 4/5. This certification exam measures your skill to gather and analyze business requirements for a secure network infrastructure and design a security solution that meets those requirements. The exam consists of 50 questions. The formation of this exam is Form-Based Multiple Choice, Drag and Drop, Hot Area, Active Screen, Create a Tree, List, sort and order and Performance-based questions. All candidates have 150 Minutes to complete the exam. The required score to pass the exam 70-298 is 700.
When you pass the Designing Security for a Windows Server 2003 Network exam, you achieve Microsoft Certified Professional (MCP) status.
What you need to know
You should be able to create the theoretical Design for Network Infrastructure Security by Gathering and Analyzing Business and Technical Requirements. This means you should be able to analyze the existing security policies and procedures. You should also have the knowledge to analyze the organizational requirements for securing data. You must have the knowledge of the security requirements of different types of data. You must be able to examine risks to security within the current IT administration structure and security practices.
You must be able to design a framework for designing and implementing security. The framework should include prevention, detection, isolation, and recovery. This means that you must be able to predict threats to your network from internal and external sources. You should be able to set up a process for responding to incidents. You should, be able to design a segmented networks. You should be able to set up a process for recovering services.
You should be able to analyze technical constraints when designing security. You should be able to identify capabilities of the existing infrastructure. You should identify technology limitations. You should be able to interoperability constraints.
You should be able to Creating the Logical Design for Network Infrastructure Security. This means you should be able to design a public key infrastructure (PKI) that uses Certificate Services. This all means you must be able to set up a certification authority (CA) hierarchy implementation. Types include geographical, organizational, and trusted. You should be able to design enrollment and distribution processes. You should be able to establish renewal, revocation and auditing processes. You must also be able to design security for CA servers.
You should be by the means to design a logical authentication strategy. This means you should be able to design certificate distribution create. You should also design forest and domain trust models. You should be able to design security that meets interoperability requirements. You should be able to create a account and password requirements for security.
You should be able to design security for network management. This means you should be able to mange the risk of managing networks. You should be able to set up the administration of servers by using common administration tools. Tools include Microsoft Management Console (MMC), Terminal Server, Remote Desktop for Administration, Remote Assistance, and Telnet. You should be able to design security for Emergency Management Services.
You should be able to set up a security update infrastructure. You should be able to specify the required protocols for a firewall configuration. This means you should be able to set up a Software Update Services (SUS) infrastructure. You must design a Group Policy to deploy software updates. You should be able to design a strategy for identifying computers that are not at the current patch level.
You should be able to create the Physical Design for Network Infrastructure Security. This means you must design network infrastructure security. You should be able to identify the needed protocols for a firewall configuration. You should be able to design IP filtering and IPSec policies. You should be able to secure a DNS implementation. You should be able to set up a security for data transmission.
You should be able to design security for wireless networks. This means you should be able to design public and private wireless LANs. You should be able to set up 802.1x authentication for wireless networks.
You should be able to design user authentication for Internet Information Services (IIS). This means you should be able to set up user authentication for a Web site by using certificates. You must design user authentication for a Web site by using IIS authentication. You should be able to set up user authentication for a Web site by using RADIUS for IIS authentication.
You should be able to design security for Internet Information Services (IIS). You should be able to design security for Web sites that have different technical requirements by enabling only the minimum required services. You should know how to design a monitoring strategy for IIS. You should be able to design an IIS baseline that is based on business requirements. You should be able to design a satisfied management strategy for updating an IIS server.
You should be able to set up security for communication between networks. That means you must select the appropriate protocols for VPN access. You should be able to design VPN connectivity. You should be able to design demand-dial routing between internal networks.
You should be able to set up security for communication with external organizations. This means you must set up an extranet infrastructure. And be able to set up a strategy for cross-certification of Certificate Services.
You should be able to design security for servers that have specific roles. Roles include domain controller, network infrastructure server, file server, IIS server, terminal server, and POP3 mail server. You should define a baseline security template for all systems. You should be able to create a plan to modify baseline security templates according to role.
You should be able to design an Access Control Strategy for Data. You should design an access control strategy for directory services. This means you should be able to create a delegation strategy. You should analyze auditing requirements. You should be able to setup the appropriate group strategy for accessing resources, and be able to set up a permission structure for directory service objects.
You should be able to design an access control strategy for files and folders. This means you should be able to set up a strategy for the encryption and decryption of files and folders. You should be able to design a permission structure for files and folders. You should be able to set up security for a backup and recovery strategy. You should be able to analyze auditing requirements.
You should be able to set up an access control strategy for the registry. This includes the design of permission structures for registry objects. You should be able to analyze auditing requirements.
You should be able to create the Physical Design for Client Infrastructure Security. You should be able to set up a client authentication strategy. This includes the analyzing of authentication requirements. You should be able to establish account and password security requirements.
You should be able to design a security strategy for client remote access. You should be able to set up remote access policies. You should be able to design access to internal resources. You also should be able to set up an authentication provider and accounting strategy for remote network access by using Internet Authentication Service (IAS).
You should be able to set up a strategy for securing client computers. Considerations include desktop and portable computers. This means you should be able to set up a strategy for hardening client operating systems. You should be able to design a strategy for restricting user access to operating system features.
| CertYourself - Free Practice Exams, Free Study Guides For MCSE, CCNA, A+, MCSD, N+ and much much more |
| Testking - The acknowledged leader in Certification Preparation |
| Real-Exams - We have the Questions you will see in your Exams |
| ExactQuestions - Register for free and Take FREE IT Courses! Click Here! |
| Exact-Exams - Quality Exam Preparation - Available NOW! |



Title
Date



