+ Reply to Thread
Results 1 to 3 of 3
  1. Senior Member
    Join Date
    Oct 2004
    Location
    Suriname
    Posts
    208

    Certifications
    Network+.:.A+.:.MCP 70-270.:.Working on 70-290.:.
    #1

    Default question on 70-290 from the techexam practice exam

    2. You are the administrator at a large company. The company's Windows 2003 domain spans several remote locations, each with its own file servers. Some of the remote locations use application servers at the main office, and all the remote locations use a single shared Internet connection through a firewall located at the main office. Administrative permissions for local servers are delegated to local system admins, but once in a while they need your support. Several times, a local system admin has requested remote assistance from a buddy of his, to help him out with some problems on the file servers. How should you prevent local system admins from sending Remote Assistance invitations to people outside the corporate network? (Select the best answer)

    Practice exam answer is :

    e. Block inbound and outbound traffic to port 3389 at the firewall.

    I don't agree with this answer. If you block 3389 on the firewall nobody can remotely access a servers. Thats means i also can't remotly access something. Thus i mean the administrator in this scenario. How will i give them support via internet if port 3389 is closed.

    Can you enlight this question for me????
    Reply With Quote Quote  


  2. Login/register to remove this advertisement.
  3. Junior Member
    Join Date
    Apr 2004
    Posts
    5
    #2
    Correct, but the question is asking you to pick the "best" answer for this particular scenario. Therefore blocking 3389 will be the best solution.
    Reply With Quote Quote  

  4. Johan Hiemstra Site Admin Webmaster's Avatar
    Join Date
    Jun 2002
    Location
    52n31, 6e06
    Posts
    10,276
    Blog Entries
    3

    Certifications
    MCSE NT4 MCSA 2000/2003 Security+ (expired: CWNA, CNA, CCNA)
    #3
    How should you prevent local system admins from sending Remote Assistance invitations to people outside the corporate network? (Select the best answer)
    Thus i mean the administrator in this scenario. How will i give them support via internet if port 3389 is closed?
    You, the administrator, are inside the corporate network, so there's no firewall between you and the remote locations, they are in the same corporate WAN (they have to, cause they use the same shared Internet connection through a firewall located at the main office).
    Reply With Quote Quote  

+ Reply to Thread

Social Networking & Bookmarks


Featured Sponsors