CompTIA Network+ N10-009 (V9) Exam Practice Test 2

Reviewed by Editorial Team
The ProProfs editorial team is comprised of experienced subject matter experts. They've collectively created over 10,000 quizzes and lessons, serving over 100 million users. Our team includes in-house content moderators and subject matter experts, as well as a global network of rigorously trained contributors. All adhere to our comprehensive editorial guidelines, ensuring the delivery of high-quality content.
Learn about Our Editorial Process
| By Thames
T
Thames
Community Contributor
Quizzes Created: 11371 | Total Attempts: 9,893,164
| Questions: 30 | Updated: Sep 23, 2026
Please wait...
Question 1 / 31
🏆 Rank #-- ▾
0 %
0/100
Score 0/100

1. A security team wants a centralized system that aggregates logs from many different network devices and servers, correlating events across sources to detect potential security incidents. Which solution fits this need?

Explanation

A SIEM platform aggregates and correlates log data from many different devices and sources, helping detect patterns not visible from any single device's logs alone.

Submit
Please wait...
About This Quiz
CompTIA Network+ N10-009 (V9) Exam Practice Test 2 - Quiz

This assessment focuses on key concepts of the CompTIA Network+ N10-009 certification, evaluating your understanding of networking principles, protocols, and troubleshooting techniques. It is a valuable resource for anyone preparing for the certification exam, helping to reinforce essential skills and knowledge needed for success in the IT networking field.

2.

What first name or nickname would you like us to use?

You may optionally provide this to label your report, leaderboard, or certificate.

2. A network engineer wants to automatically discover which devices are directly connected to each switch port, including their device type and port information, without physically tracing cables. Which protocol supports this?

Explanation

LLDP and CDP allow directly connected devices to advertise information about themselves to their neighbors, enabling automatic discovery of physical topology. SNMP monitors device status, NTP synchronizes time, and STP prevents Layer 2 loops.

Submit

3. Match each command-line tool to its purpose.

Explanation

nslookup queries DNS resolution, ping tests basic reachability, traceroute shows each hop along a path, and netstat displays active connections and listening ports on the local machine.

Submit

4. Users in one area of an office report weak Wi-Fi signal and frequent disconnections, while users elsewhere in the building have no issues. Which two factors should be investigated first?

Explanation

Since the issue is localized to one area, insufficient coverage and localized interference/channel overlap are the most likely causes. A failed DHCP server, expired certificate, or DNS misconfiguration would typically affect the whole building.

Submit

5. A workstation can successfully communicate with other devices on its own local subnet but cannot reach any resources outside that subnet, including the internet. What is the most likely cause?

Explanation

Since local subnet communication works but off-subnet traffic fails entirely, an incorrect or missing default gateway is the most likely cause, since the gateway routes traffic beyond the local subnet.

Submit

6. A fiber link between two switches fails to establish a connection, and the technician discovers that one end has a single-mode transceiver installed while the other end has a multimode transceiver installed on the same fiber run. What is the most likely cause of the failure?

Explanation

Single-mode and multimode transceivers use different light sources and fiber core sizes, making them generally incompatible when paired on the same link.

Submit

7. A switch supporting Power over Ethernet begins refusing to power newly connected devices, even though those devices are confirmed to be PoE-compatible and properly cabled. What is the most likely cause?

Explanation

Each PoE switch has a total power budget shared across connected devices, and once exhausted, the switch refuses to power additional devices even if compatible and properly cabled.

Submit

8. A technician receives a report of "the internet is down" and, without asking any further questions, immediately begins replacing the office router. According to the troubleshooting methodology, what step did the technician skip?

Explanation

The methodology calls for gathering information and identifying symptoms before forming a theory, which the technician skipped by immediately replacing hardware based on a vague report.

Submit

9. A company wants to host a public-facing web server that external users can reach, while keeping that server isolated from the internal corporate network in case it's ever compromised. Which network zone concept should be used?

Explanation

A screened subnet, or DMZ, isolates public-facing servers in their own segment between the internet and internal network, limiting damage if that server is compromised.

Submit

10. A web server becomes unreachable after receiving an overwhelming volume of traffic originating from thousands of distinct IP addresses across many different networks simultaneously. What type of attack does this most likely describe?

Explanation

A DDoS attack originates from many distributed sources, often thousands of compromised devices, distinguishing it from a traditional DoS attack typically from a single source.

Submit

11. An attacker sets up a rogue wireless access point broadcasting the same SSID as a legitimate corporate network, hoping unsuspecting users will connect to it instead of the real network, allowing the attacker to intercept their traffic. What is this attack called?

Explanation

An evil twin attack involves a rogue access point mimicking a legitimate network's SSID to trick users into connecting, allowing traffic interception. VLAN hopping crosses VLAN boundaries, MAC flooding overwhelms a switch's MAC table, and ARP spoofing manipulates local Layer 2 mappings.

Submit

12. A company wants to restrict access to a sensitive application so that login attempts are only permitted when the user's device is physically located within a specific geographic area, such as company headquarters. Which security concept enables this?

Explanation

Geofencing restricts access based on a device's physical geographic location. MFA adds a second authentication factor unrelated to location, role-based access control restricts based on job role, and SSO allows one login for multiple systems.

Submit

13. A company wants administrators to first connect to a single, tightly controlled and monitored server before being allowed to access other sensitive internal systems, rather than connecting to those systems directly from their own workstations. Which solution fits this need?

Explanation

A jump box serves as a single, tightly controlled and monitored intermediary that administrators must pass through before accessing sensitive internal systems. A screened subnet isolates public-facing servers, a CDN caches content, and a load balancer distributes traffic.

Submit

14. A company wants to protect its DNS responses from being tampered with or spoofed in transit, ensuring clients can verify that DNS records genuinely came from the authoritative source and were not altered. Which technology addresses this?

Explanation

DNSSEC adds cryptographic signatures to DNS records, allowing resolvers to verify a response genuinely came from the authoritative source. DoH encrypts the query in transit but doesn't validate record authenticity the way DNSSEC does.

Submit

15. A company wants two data center sites where both sites actively process production traffic simultaneously, sharing the load, rather than having one site sit idle as a standby until needed. Which high-availability approach describes this?

Explanation

Active-active has multiple sites simultaneously processing traffic and sharing load, unlike active-passive where one site remains idle as a standby. Cold and warm sites describe DR site readiness levels, not simultaneous active load sharing.

Submit

16. A web application receiving heavy traffic needs incoming requests distributed across multiple backend servers to prevent any single server from becoming overwhelmed. Which appliance should be deployed?

Explanation

A load balancer distributes incoming traffic across multiple backend servers, preventing any single server from becoming overwhelmed. A proxy relays and filters requests, an IDS monitors for threats, and NAS provides shared file storage.

Submit

17. A network engineer needs to see the full contents of packets, including payload data, to diagnose an application-layer issue, rather than just summarized traffic statistics like source, destination, and volume. Which monitoring method should be used?

Explanation

Packet capture records the full contents of packets, including payload data, allowing deep inspection of application-layer issues. Flow data summarizes statistics without payload detail, SNMP polling retrieves device status, and baseline metrics compare against historical norms.

Submit

18. A network team wants to define a known-good, standardized configuration for all new switches before they're deployed, so that any future configuration drift can be detected by comparing against this reference. What should be created?

Explanation

A baseline or golden configuration establishes a known-good reference against which future configuration drift can be detected. A rack diagram documents physical layout, a heat map documents signal coverage, and an asset inventory tracks hardware/software assets.

Submit

19. Match each device to its correct function.

Explanation

A UPS provides battery backup, a PDU distributes power to multiple rack devices, a patch panel terminates and organizes cable runs, and a PoE injector delivers power over Ethernet when the switch itself doesn't support it.

Submit

20. A network engineer needs to provide wireless coverage across a long, narrow warehouse aisle, focusing signal strength along the aisle's length rather than spreading it in all directions. Which antenna type should be used?

Explanation

A directional antenna focuses signal strength in a specific direction, ideal for covering a long, narrow space like a warehouse aisle, rather than spreading signal evenly as an omnidirectional antenna would.

Submit

21. A company wants each employee to authenticate to the corporate wireless network using their own individual Active Directory credentials, rather than everyone sharing a single passphrase. Which wireless authentication method should be configured?

Explanation

Enterprise authentication uses 802.1X to authenticate each user individually against a backend server such as RADIUS, tied to Active Directory. PSK uses one shared passphrase, WEP is outdated, and a captive portal without authentication doesn't verify identity.

Submit

22. A server needs more bandwidth than a single network interface can provide, and the network team wants to combine multiple physical NICs into a single logical connection to the switch for both increased throughput and redundancy. Which technology should be configured?

Explanation

Link aggregation, often using LACP, combines multiple physical NICs into a single logical link, increasing throughput and providing redundancy. VLAN tagging segments traffic, spanning tree prevents loops, and jumbo frames increase frame size.

Submit

23. Two switches connected via a trunk link are configured with different native VLANs on each end. Which two statements about this situation are correct?

Explanation

Since native VLAN traffic is sent untagged, a mismatch means untagged frames can be misinterpreted as belonging to the wrong VLAN, a security risk exploited in VLAN hopping attacks. This is not automatically corrected and does not shut the trunk down.

Submit

24. A network wants two routers to share a single virtual IP address as the default gateway for a subnet, so that if the primary router fails, the secondary router automatically takes over without requiring any client reconfiguration. Which technology should be implemented?

Explanation

An FHRP allows two or more routers to share a virtual IP address as a redundant default gateway, automatically failing over without client reconfiguration. NAT and PAT translate addresses, and a subinterface is a logical division of a physical interface.

Submit

25. A company with offices connected via a mix of MPLS, cable, and cellular WAN links wants a single centrally managed policy that intelligently routes traffic over whichever link performs best, regardless of underlying transport type. Which technology fits this need?

Explanation

SD-WAN is transport agnostic, working across different underlying WAN transport types, while providing central policy management to route traffic over the best-performing link. VXLAN addresses data center Layer 2 extension, ZTA addresses security posture, and STP prevents Layer 2 loops.

Submit

26. Fill in the blank: allocating differently sized subnets from a single address block based on actual host requirements, rather than using equal fixed-size blocks, is called ____.

Explanation

VLSM allows subnets of different sizes to be created from a single address block, matching each network's actual number of devices rather than wasting addresses on equally sized blocks.

Submit

27. A data center wants a topology where every leaf switch connects to every spine switch, minimizing the number of hops between any two servers and providing predictable, consistent latency. Which topology is being described?

Explanation

A spine-and-leaf topology connects every leaf switch to every spine switch, ensuring any two devices are the same number of hops apart. Star/hub and spoke centralizes around one device, and point to point connects only two devices.

Submit

28. A data center needs a low-cost, low-latency connection between two adjacent switches in the same rack, over a very short distance, without needing separate transceivers and fiber. Which cable type is commonly used?

Explanation

DAC cables integrate the transceiver directly into the cable assembly, providing a low-cost, low-latency connection for short-distance, high-speed links. Single-mode fiber is for longer distances, Category 3 is outdated, and coaxial is not typical for switch-to-switch links.

Submit

29. A VoIP application is designed to tolerate occasional dropped packets in exchange for minimizing latency and avoiding retransmission delays. Which transport protocol is this application most likely using?

Explanation

UDP does not perform retransmission, minimizing latency at the cost of guaranteed delivery, fitting real-time applications like VoIP. TCP guarantees delivery but adds retransmission delay, ICMP is used for diagnostics, and GRE is a tunneling protocol.

Submit

30. A company wants to run functions traditionally performed by dedicated hardware, such as firewalls and routers, as software instances on standard servers instead. Which concept describes this approach?

Explanation

NFV replaces dedicated hardware appliances with software-based instances on standard server hardware. A CDN caches content, multitenancy describes shared infrastructure, and elasticity describes automatic scaling.

Submit
×
Saved
Thank you for your feedback!
View My Results
Cancel
  • All
    All (30)
  • Unanswered
    Unanswered ()
  • Answered
    Answered ()
A security team wants a centralized system that aggregates logs from...
A network engineer wants to automatically discover which devices are...
Match each command-line tool to its purpose.
Users in one area of an office report weak Wi-Fi signal and frequent...
A workstation can successfully communicate with other devices on its...
A fiber link between two switches fails to establish a connection, and...
A switch supporting Power over Ethernet begins refusing to power newly...
A technician receives a report of "the internet is down" and, without...
A company wants to host a public-facing web server that external users...
A web server becomes unreachable after receiving an overwhelming...
An attacker sets up a rogue wireless access point broadcasting the...
A company wants to restrict access to a sensitive application so that...
A company wants administrators to first connect to a single, tightly...
A company wants to protect its DNS responses from being tampered with...
A company wants two data center sites where both sites actively...
A web application receiving heavy traffic needs incoming requests...
A network engineer needs to see the full contents of packets,...
A network team wants to define a known-good, standardized...
Match each device to its correct function.
A network engineer needs to provide wireless coverage across a long,...
A company wants each employee to authenticate to the corporate...
A server needs more bandwidth than a single network interface can...
Two switches connected via a trunk link are configured with different...
A network wants two routers to share a single virtual IP address as...
A company with offices connected via a mix of MPLS, cable, and...
Fill in the blank: allocating differently sized subnets from a single...
A data center wants a topology where every leaf switch connects to...
A data center needs a low-cost, low-latency connection between two...
A VoIP application is designed to tolerate occasional dropped packets...
A company wants to run functions traditionally performed by dedicated...
play-Mute sad happy unanswered_answer up-hover down-hover success oval cancel Check box square blue
Alert!