Free CompTIA CNX-001 Exam Questions (page: 3)

A company is experiencing Wi-Fi performance issues. Three Wi-Fi networks are available, each running on the 2.4 GHz band and on the same channel. Connecting to each Wi-Fi network yields slow performance.
Which of the following channels should the networks be configured to?

  1. Channel 1, Channel 2. and Channel 3
  2. Channel 2. Channel 4, and Channel 9
  3. Channel 1, Channel 6, and Channel 11
  4. Channel 3, Channel 5, and Channel 10

Answer(s): C

Explanation:

These are the three non-overlapping channels in the 2.4 GHz band, eliminating co-channel and adjacent-channel interference for optimal Wi-Fi performance.



A company hosts a cloud-based e-commerce application and only wants the application accessed from certain locations. The network team configures a cloud firewall with WAF enabled, but users can access the application globally.
Which of the following should the network team do?

  1. Reconfigure WAF rules.
  2. Configure a NAT gateway.
  3. Implement a CDN.
  4. Configure geo-restriction.

Answer(s): D

Explanation:

Geo-restriction lets you block or allow traffic based on the requester's geographic region, preventing access from locations you haven't authorized.



A network architect must ensure only certain departments can access specific resources while on premises. Those same users cannot be allowed to access those resources once they have left campus.
Which of the following would ensure access is provided according to these requirements?

  1. Enabling MFA for only those users within the departments needing access
  2. Configuring geofencing with the IPs of the resources
  3. Configuring UEBA to monitor all access to those resources during non-business hours
  4. Implementing a PKI-based authentication system to ensure access

Answer(s): B

Explanation:

By defining an IP-based geofence around the on-premises network addresses where those resources reside, you ensure that only users connecting from inside the campus IP ranges can reach them. As soon as the same users leave that network (and thus fall outside the geofenced IP block), access is automatically denied.



A security architect needs to increase the security controls around computer hardware installations.
The requirements are:

Auditable access logs to computer rooms

Alerts for unauthorized access attempts

Remote visibility to the inside of computer rooms

Which of the following controls best meet these requirements? (Choose two.)

  1. Video surveillance
  2. NFC access cards
  3. Motion sensors
  4. Locks and keys
  5. Security patrols
  6. Automated lighting

Answer(s): A,B

Explanation:

Video surveillance provides continuous, remote visibility into computer rooms and can be integrated with analytics to generate alerts on unauthorized presence.

NFC access cards enforce controlled entry with a system that logs every card swipe and issues alerts on failed or out-of-hours attempts, giving you auditable access records and immediate notifications of any suspicious activity.






Post your Comments and Discuss CompTIA CNX-001 exam prep with other Community members:

CNX-001 Exam Discussions & Posts