Comptia

N10-009 Free Practice Questions — Page 22

Question 208

Which of the following is used to separate a corporate network into multiple logical networks?

A. Load balancer
B. VLAN
C. CDN
D. IPS
Show Answer
Correct Answer: B
Explanation:
A VLAN (Virtual Local Area Network) logically segments a physical corporate network into multiple isolated networks at the data link layer. This allows separation of traffic, improved security, and better network management without requiring separate physical infrastructure.

Question 209

A tourist attempts to access an online banking site on a mobile device while in a public place. Which of the following is the tourist most likely to experience?

A. Vishing
B. Tailgating
C. Shoulder surfing
D. Peripheral attack
Show Answer
Correct Answer: C
Explanation:
Accessing an online banking site in a public place exposes the tourist to the risk of others nearby observing the screen or keystrokes. This type of attack is known as shoulder surfing. The other options involve different attack methods that do not specifically rely on visual observation in public spaces.

Question 210

A network engineer wants to implement a secure solution that provides authentication and encryption to gather and monitor logs within the company network. Which of the following tools will accomplish this task?

A. Syslog
B. RADIUS
C. SNMPv3
D. API
Show Answer
Correct Answer: C
Explanation:
The requirement is to securely gather and monitor logs with both authentication and encryption. SNMPv3 provides built-in security features including user-based authentication (HMAC) and encryption (AES/DES) for management and monitoring traffic. Syslog lacks encryption by default, RADIUS is for AAA rather than log monitoring, and a generic API does not inherently provide a standardized secure logging/monitoring solution.

Question 211

A junior network administrator gets a text message from a number posing as the domain registrar of the firm. The administrator is tricked into providing global administrator credentials. Which of the following attacks is taking place?

A. DNS poisoning
B. ARP spoofing
C. Vishing
D. Smishing
Show Answer
Correct Answer: D
Explanation:
The attacker uses a fraudulent text message posing as a trusted entity (the domain registrar) to trick the administrator into revealing credentials. This is SMS-based phishing, known as smishing. DNS poisoning and ARP spoofing are network-level attacks, and vishing involves voice calls, not text messages.

Question 212

Which of the following will allow secure, remote access to internal applications?

A. VPN
B. CDN
C. SAN
D. IDS
Show Answer
Correct Answer: A
Explanation:
A VPN (Virtual Private Network) provides secure, remote access to internal applications by creating an encrypted tunnel between the remote user and the internal network. The other options serve different purposes: a CDN delivers content, a SAN provides storage, and an IDS detects intrusions but does not provide access.

Question 213

Users report connectivity issues after a network switch is replaced. There are three separate subnets for users, voice, and servers. The users cannot reach the resources in the server subnet. Upon investigation, a separate voice switch has thousands of discarded packets, but no users report issues making or receiving calls. Which of the following is most likely the issue?

A. Incorrect cable
B. Port administratively disabled
C. VLAN misconfiguration
D. Duplex setting
Show Answer
Correct Answer: C
Explanation:
The presence of three separate subnets implies VLAN segmentation. After the switch replacement, users cannot reach the server subnet, indicating a failure in VLAN tagging, trunking, or inter-VLAN routing on the new switch. The thousands of discarded packets on the voice switch suggest mismatched VLAN tagging or trunk configuration, yet voice still works because the voice VLAN itself is intact. Other options (bad cable, disabled port, duplex mismatch) would more likely cause total loss of connectivity or call quality issues, not selective inter-subnet failure.

Question 214

Which of the following are benefits of implementing MFA and SSO in an enterprise environment? (Choose two.)

A. Eliminating the number of password resets
B. Centralizing user account management activities
C. Adding an extra layer of security against compromised credentials
D. Reducing the overhead of security tokens
E. Enforcing conditional access policies
F. Leveraging threat feed information from external sources
Show Answer
Correct Answer: B, C
Explanation:
SSO centralizes authentication through a single identity provider, which simplifies and centralizes user account provisioning, deprovisioning, and auditing (B). MFA strengthens authentication by requiring additional factors beyond passwords, significantly reducing the risk from compromised credentials (C). Other options describe features not inherent to MFA/SSO or benefits that are not generally guaranteed.

Question 215

A company experiences an incident involving a user who connects an unmanaged switch to the network. Which of the following technologies should the company implement to help avoid similar incidents without conducting an asset inventory?

A. Screened subnet
B. 802.1X
C. MAC filtering
D. Port security
Show Answer
Correct Answer: D
Explanation:
An unmanaged switch introduces multiple MAC addresses behind a single switch port. Port security directly mitigates this by limiting the number of MAC addresses allowed per port and taking action (restrict/shutdown) when the limit is exceeded, immediately blocking hubs or unmanaged switches. This can be implemented locally on switches and does not require a prebuilt asset inventory or external authentication infrastructure. 802.1X would also prevent unauthorized access but requires broader NAC infrastructure and is beyond what the question implies.

Question 216

Two companies successfully merged. Following the merger, a network administrator identified a connection bottleneck. The newly formed company plans to acquire a high-end 40GB switch and redesign the network from a three-tier model to a collapsed core. Which of the following should the administrator do until the new devices are acquired?

A. Implement the FHRP.
B. Configure a route selection metric change.
C. Install a load balancer.
D. Enable link aggregation.
Show Answer
Correct Answer: D
Explanation:
The immediate issue is a bandwidth bottleneck between network segments after the merger. Until the new 40Gb switch and collapsed core design are implemented, the administrator should increase available bandwidth using existing hardware. Link aggregation combines multiple physical links into one logical link, effectively increasing throughput and providing redundancy without requiring new devices. The other options do not directly address a bandwidth bottleneck.

Question 217

Which of the following network ports is used when a client accesses an SFTP server?

A. 22
B. 80
C. 443
D. 3389
Show Answer
Correct Answer: A
Explanation:
SFTP (SSH File Transfer Protocol) runs over SSH, which by default uses TCP port 22. The other options correspond to HTTP (80), HTTPS (443), and RDP (3389), not SFTP.

$19

Get all 518 questions with detailed answers and explanations

  • Instant download HTML + PDF delivered the moment payment clears.
  • Secure Stripe checkout we never see or store your card details.
  • 7-day refund if files are defective see our refund policy.