QuestionQ375

Network Forensics and Traffic Analysis

You are a Network Administrator for Infonet Inc. The company has a Windows Server 2008 domain-based network. The network includes three Windows Server 2008 member servers and 150 Windows Vista client computers. In accordance with the company's security policy, you apply Windows Firewall settings to the computers on the network.

You are now troubleshooting a connectivity issue that might be caused by Windows Firewall. What should you do to identify connections that Windows Firewall permits or blocks?

  • A Configure Internet Protocol Security (IPSec).
  • B Configure Network address translation (NAT).
  • C Disable Windows firewall logging.
  • D Enable Windows firewall logging.
Explanation

Windows Firewall logging can record successful connections and dropped packets. Enabling those logging options provides the information needed to identify traffic that the firewall allows or blocks during connectivity troubleshooting.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!