CompTIA Network+ Practice Test for Subdomain 4.3 #03

Welcome to today’s CompTIA Network+ practice test!

This practice test uses our new UI!

Today’s practice test is based on Subdomain 4.3 (Given a scenario, apply network security features, defense techniques, and solutions) from the CompTIA Network+ N10-009 objectives.

This beginner-level practice test is inspired by the CompTIA Network+ (N10-009) exam and is designed to help you reinforce key networking concepts on a daily basis.

These questions are not official exam questions, nor are they brain dumps, but they reflect topics and scenarios relevant to the Network+ certification. Use them to test your knowledge, identify areas for improvement, and build daily cybersecurity habits.

Note: CompTIA and Network+ are registered trademarks of CompTIA. This content is not affiliated with or endorsed by CompTIA.

To choose CompTIA Network+ practice tests based on specific domains/subdomains, click that link.

Recommended read: Ultimate CompTIA Network+ Study Guide (2026)

CompTIA Network+ Practice Test of the Day 260703
10 questions • Single best answer
Question 1
A SOC analyst at a financial services firm is auditing newly deployed edge switches. Several unused physical ports are found active, and all devices retain factory credentials. Which action best reduces the attack surface on these devices?
    Question 2
    A security engineer at a university needs devices to present valid credentials to an infrastructure switch before being granted LAN access. The solution must integrate with an existing RADIUS server. Which technology best meets this requirement?
      Question 3
      A network administrator at a logistics company needs to permit only HTTP and HTTPS traffic from the branch office subnet to the internet while blocking all other outbound protocols. Which solution should be applied to the router's WAN interface?
        Question 4
        A security architect at a healthcare provider is designing a zone to host public-facing web servers reachable from the internet while remaining isolated from the internal corporate network. Which network design provides this isolation?
          Question 5
          A wireless engineer at a small accounting firm wants to restrict the internal SSID to company-issued laptops only, without deploying enterprise authentication infrastructure. Which wireless security feature should be implemented?
            Question 6
            A network security team at a school district must prevent students from accessing social media and gambling websites while keeping general internet access available for academic use. Which control best addresses this requirement?
              Question 7
              A junior network engineer reviewing firewall policy observes that unsolicited inbound sessions from the untrusted internet zone are reaching internal hosts without inspection. The LAN is the trusted zone and the internet is the untrusted zone. What is the appropriate resolution?
                Question 8
                A PKI administrator at a government agency needs to ensure compromised certificates are systematically invalidated and that network devices can verify certificate validity before establishing encrypted sessions. Which key management mechanism should be implemented?
                  Question 9
                  A network engineer at a retail chain is concerned about unauthorized devices being plugged into open Ethernet jacks at store locations. She wants each switch port to allow only a fixed number of known MAC addresses and block all others. Which feature should she configure?
                    Question 10
                    A newly hired technician at a regional ISP discovers that managed switches throughout the distribution layer still use factory default usernames and passwords. Which device hardening action must be taken immediately to address this vulnerability?

                      Leave a Comment

                      Your email address will not be published. Required fields are marked *

                      Scroll to Top