Comptia

N10-009 Free Practice Questions — Page 15

Question 137

Users in one building on the campus network report very slow network access. A network technician logs in to the router to see if there are any errors associated with traffic to and from that particular building. Which of the following commands will the technician most likely run?

A. show arp
B. show config
C. show route
D. show interface
Show Answer
Correct Answer: D
Explanation:
To investigate slow network access and check for errors related to traffic for a specific building, the technician needs interface-level statistics such as error counters, packet drops, bandwidth usage, and interface status. The 'show interface' command provides this information, making it the most appropriate troubleshooting command.

Question 138

A user is unable to reach a website and wants to verify its IP information. Which of the following tools is used to resolve the authoritative server to its FQDN?

A. ipconfig
B. arp
C. nslookup
D. ping
Show Answer
Correct Answer: C
Explanation:
nslookup is specifically used to query DNS servers to resolve a domain name (FQDN) to its IP address and can display authoritative DNS server information. The other tools do not perform DNS resolution.

Question 139

Which of the following most directly secures sensitive information on a network?

A. Data-in-transit encryption
B. Principle of least privilege
C. Role-based access controls
D. Multifactor authentication
Show Answer
Correct Answer: A
Explanation:
Data-in-transit encryption directly protects sensitive information as it travels across a network by preventing interception and eavesdropping. The other options focus on access control and authentication, which are important but do not directly secure the data itself while it is being transmitted.

Question 140

Computer A cannot reach Computer B in this network: Which of the following will resolve the issue?

A. Set up link aggregation between Switch A and Switch B on Gi0/9 and Gi0/10.
B. Configure spanning tree on Switch A and Switch
C. Establish a trunk connection between Switch A and Switch B.
D. Put Computer A and Computer B in the same /24 subnet.
Show Answer
Correct Answer: C
Explanation:
Computer A and Computer B are connected to different switches and rely on inter-switch connectivity for their VLAN traffic. Without a trunk link, only a single VLAN can pass between switches, preventing hosts in the same VLAN on different switches from communicating. Configuring a trunk between Switch A and Switch B allows the required VLAN traffic to traverse the link, resolving the issue. Link aggregation and spanning tree are not required for basic connectivity, and placing the hosts in the same IP subnet does not overcome VLAN separation.

Question 141

A network administrator is migrating the existing phone system to VoIP. The vendor requires a separate voice network for the phones to function. Which of the following technologies should the administrator use to allow for this configuration?

A. VLAN
B. VXLAN
C. VPN
D. VPC
Show Answer
Correct Answer: A
Explanation:
A VLAN allows the administrator to create a separate logical network for voice traffic over the existing physical infrastructure. This is a standard requirement for VoIP deployments to isolate voice from data, enable QoS, and meet vendor requirements. VXLAN, VPN, and VPC are not appropriate for simple on-premises voice network separation.

Question 142

A network administrator is redesigning a wireless network in which corporate and guest users share a single SSID that is configured with WPA2 PSK. Which of the following capabilities should be configured in order to improve security? (Choose two.)

A. Wi-Fi Protected Access
B. New SSID for contractors
C. Password authentication
D. Wired Equivalent Privacy
E. Captive portal
F. Wi-Fi Protected Setup
Show Answer
Correct Answer: B, E
Explanation:
To improve security when corporate and guest users are currently sharing a single WPA2‑PSK SSID, the network should be redesigned to better separate and control access. Creating a new SSID for non‑corporate users allows traffic separation and different security policies, reducing the risk to internal resources. Implementing a captive portal adds an additional authentication and authorization layer for guest access, enabling logging, access control, and terms‑of‑use enforcement. The other options are ineffective or reduce security: WPA and password authentication are already inherent to WPA2‑PSK, while WEP and WPS are insecure legacy mechanisms.

Question 143

An organization is concerned about rogue devices connecting to the network and wants the network team to implement a solution. Which of the following types of filtering should the network team use to address this concern?

A. MAC
B. Content
C. URL
D. IP
Show Answer
Correct Answer: A
Explanation:
Rogue devices are unauthorized hardware connecting to the network. MAC filtering allows the network to permit or deny access based on a device’s unique hardware (MAC) address, directly addressing the risk of unknown or unauthorized devices. Content, URL, and IP filtering control traffic or destinations, not device admission.

Question 144

Which of the following connectors allows a singular QSFP transceiver to have several physical connections?

A. RJ45
B. ST
C. LC
D. MPO
Show Answer
Correct Answer: D
Explanation:
QSFP transceivers use multiple parallel optical lanes, and an MPO (Multi-Fiber Push-On) connector bundles many fibers (commonly 8, 12, or 24) into a single connector, enabling one QSFP module to support several physical connections. RJ45, ST, and LC are single-fiber or single-connection connectors.

Question 145

A junior network administrator is auditing the company network and notices incrementing input errors on a long-range microwave interface. Which of the following is the most likely reason for the errors?

A. The parabolic signal is misaligned.
B. The omnidirectional signal is being jammed.
C. The omnidirectional signal is not strong enough to receive properly.
D. The parabolic signal uses improper routing protocols.
Show Answer
Correct Answer: A
Explanation:
Long-range microwave links use highly directional parabolic antennas. If the antenna is misaligned, signal strength and quality degrade, resulting in CRC/input errors. Omnidirectional antenna issues and routing protocols are not relevant to microwave interface input errors.

Question 146

A technician wants to experiment with NAC in a wireless environment. Which of the following NAC techniques should be implemented for wireless networking if ease of implementation is the most important factor?

A. Port security
B. EAPoL
C. 802.1X
D. MAC filtering
Show Answer
Correct Answer: D
Explanation:
In a wireless environment, MAC filtering is the easiest NAC technique to implement because it requires minimal configuration and no additional infrastructure. It simply involves allowing or denying devices based on their MAC addresses. By contrast, 802.1X and EAPoL require an authentication framework with a RADIUS server and more complex setup, and port security is primarily a wired concept. Since ease of implementation is the priority, MAC filtering is the best choice.

$19

Get all 518 questions with detailed answers and explanations

  • Instant download HTML + PDF delivered the moment payment clears.
  • Secure Stripe checkout we never see or store your card details.
  • 7-day refund if files are defective see our refund policy.