| Exam news | |
| Audience profile | |
| Credit toward certification | |
| Preparation tools and resources | |
| Skills being measured by Exam 70-298 |
Exam 70-298 became available on December 9, 2003.
The Microsoft Certified Systems Engineer (MCSE) on Windows Server 2003 credential is intended for IT professionals who work in the typically complex computing environment of medium to large companies. An MCSE candidate should have at least one year of experience implementing and administering a network operating system in environments that have the following characteristics:
| • | 250 to 5,000 or more users |
| • | Three or more physical locations |
| • | Three or more domain controllers |
| • | Network services and resources such as messaging, database, file and print, proxy server, firewall, Internet, intranet, remote access, and client computer management |
| • | Connectivity requirements such as connecting branch offices and individual users in remote locations to the corporate network and connecting corporate networks to the Internet |
In addition, an MCSE candidate should have at least one year of experience in the following areas:
| • | Designing a network infrastructure |
| • | Implementing and administering a desktop operating system |
When you pass the Designing Security for a Windows Server 2003 Network exam, you achieve Microsoft Certified Professional (MCP) status. You also earn credit toward the following certifications:
| • | Core credit toward Microsoft Certified Systems Engineer (MCSE) on Windows Server 2003 certification |
| • | Core credit toward Microsoft Certified Systems Engineer (MCSE): Security on Windows Server 2003 certification |
In addition to your hands-on experience working with the product, we recommend that you use the following tools and training to help you prepare for this exam.
| • | Course 2830: Designing Security for Microsoft Networks |
| • |
| • | MeasureUp: Visit the MeasureUp Web site to take a practice test. |
| • | Self Test Software: Visit the Self Test Software Web site to take a practice test. |
| • | TechNet: Designed for IT professionals, this site includes how-to instructions, best practices, downloads, technical chats, and much more. |
| • | MSDN: The Microsoft Developer Network (MSDN) is a reference for developers that features code samples, technical articles, newsgroups, chats, and more. |
| • | Training and certification newsgroups: A newsgroup exists for every Microsoft certification. By participating in the ongoing dialogue, you take advantage of a unique opportunity to exchange ideas with and ask questions of others, including more than 750 Microsoft Most Valuable Professionals (MVPs) worldwide. |
This certification exam measures your ability to gather and analyze business requirements for a secure network infrastructure and design a security solution that meets those requirements. Before taking the exam, you should be proficient in the job skills listed in the following matrix. The matrix shows which Official Microsoft Learning Products may help you reach competency in the skills being tested in the exam.
| KEY: |
| Skills measured by exam 70-298 | Course 2830 | ||||||||||
| Creating the Conceptual Design for Network Infrastructure Security by Gathering and Analyzing Business and Technical Requirements | |||||||||||
Analyze business requirements for designing security. Considerations include existing policies and procedures, sensitivity of data, cost, legal requirements, end-user impact, interoperability, maintainability, scalability, and risk.
| |||||||||||
Design a framework for designing and implementing security. The framework should include prevention, detection, isolation, and recovery.
| |||||||||||
Analyze technical constraints when designing security.
| |||||||||||
| Creating the Logical Design for Network Infrastructure Security | |||||||||||
Design a public key infrastructure (PKI) that uses Certificate Services.
| |||||||||||
Design a logical authentication strategy.
| |||||||||||
Design security for network management.
| |||||||||||
Design a security update infrastructure.
| |||||||||||
| Creating the Physical Design for Network Infrastructure Security | |||||||||||
Design network infrastructure security.
| |||||||||||
Design security for wireless networks.
| |||||||||||
Design user authentication for Internet Information Services (IIS).
| |||||||||||
Design security for Internet Information Services (IIS).
| |||||||||||
Design security for communication between networks.
| |||||||||||
Design security for communication with external organizations.
| |||||||||||
Design security for servers that have specific roles. Roles include domain controller, network infrastructure server, file server, IIS server, terminal server, and POP3 mail server.
| |||||||||||
| Designing an Access Control Strategy for Data | |||||||||||
Design an access control strategy for directory services.
| |||||||||||
Design an access control strategy for files and folders.
| |||||||||||
Design an access control strategy for the registry.
| |||||||||||
| Creating the Physical Design for Client Infrastructure Security | |||||||||||
Design a client authentication strategy.
| |||||||||||
Design a security strategy for client remote access.
| |||||||||||
Design a strategy for securing client computers. Considerations include desktop and portable computers.
|
Note This preparation guide is subject to change at any time without prior notice and at the sole discretion of Microsoft. Microsoft exams might include adaptive testing technology and simulation items. Microsoft does not identify the format in which exams are presented. Please use the exam objectives listed in this preparation guide to prepare for the exam, regardless of its format.
| • | Learn more and download samples |