MCTS 70-642 Professional Standards & Competencies 4 — Questions and Answers
Question 1: An IT manager asks you to implement 802.1X authentication on the corporate network. What professional competency does this requirement address?
- Network performance tuning
- Network access control and security policy enforcement (Correct answer)
- Bandwidth cost reduction
- DNS load balancing
Correct answer: Network access control and security policy enforcement
802.1X enforces port-based network access control, ensuring only authenticated and authorized devices connect to the network.
Question 2: When configuring Windows Server 2008 R2, a technician notices that unnecessary services are running. What is the professional best practice?
- Leave all services running to ensure maximum compatibility
- Disable or remove services not required for the server's role to reduce attack surface (Correct answer)
- Document the services but make no changes
- Reinstall the operating system from scratch
Correct answer: Disable or remove services not required for the server's role to reduce attack surface
Disabling unnecessary services is a server hardening best practice that reduces the number of potential attack vectors.
Question 3: A network administrator must ensure that routing table changes on a Windows Server 2008 RRAS server are properly tracked. Which approach supports this requirement?
- Rely on memory for tracking changes
- Use configuration management tools and maintain a change log for all routing modifications (Correct answer)
- Allow all team members to make changes without documentation
- Disable RRAS logging to reduce overhead
Correct answer: Use configuration management tools and maintain a change log for all routing modifications
Configuration management and change logs provide an auditable record of routing changes, supporting troubleshooting and compliance.
Question 4: A junior technician asks how to handle a situation where they lack the skills to resolve a critical network issue. What is the professionally appropriate response?
- Attempt to fix it alone to avoid appearing incompetent
- Escalate to a more experienced colleague or senior engineer immediately (Correct answer)
- Tell the user the issue is resolved without actually fixing it
- Ignore the issue and wait for it to self-resolve
Correct answer: Escalate to a more experienced colleague or senior engineer immediately
Timely escalation when expertise is insufficient is a mark of professional competence and protects the organization from prolonged outages.
Question 5: A company implements a policy requiring encrypted communication between network management tools and servers. Which protocol should replace unencrypted SNMP v1/v2c?
- Telnet
- SNMPv3 with authentication and privacy settings (Correct answer)
- FTP
- HTTP
Correct answer: SNMPv3 with authentication and privacy settings
SNMPv3 provides authentication and encryption (privacy), making it the secure replacement for the unencrypted SNMPv1 and v2c protocols.
Question 6: After completing a Windows Server 2008 network configuration project, what should the administrator do to support future operations?
- Archive all project emails and delete technical notes
- Produce complete as-built documentation reflecting the final configuration (Correct answer)
- Hand off the server without documentation to the operations team
- Reset all configurations to defaults for the operations team to reconfigure
Correct answer: Produce complete as-built documentation reflecting the final configuration
As-built documentation accurately captures the final configuration, enabling future administrators to manage and troubleshoot the system effectively.
Question 7: Which regulatory framework is most relevant for a US-based healthcare organization implementing Windows Server 2008 network infrastructure controls?
- PCI DSS
- HIPAA Security Rule (Correct answer)
- SOX
- GDPR
Correct answer: HIPAA Security Rule
HIPAA's Security Rule mandates specific technical safeguards for protecting electronic Protected Health Information (ePHI) in healthcare environments.
An IT manager asks you to implement 802.1X authentication on the corporate network.
What professional competency does this requirement address?