CompTIA Network+ N10-009 VPNs Secure Management Jump Hosts And OOB Access Practice Test

 

Objective 3.5 • 20 original questions

This CompTIA Network+ N10-009 practice test focuses on network access and management methods. All questions are original ExamSnap scenarios aligned to the current N10-009 blueprint; they are not copied from CompTIA exam content. Use the complete N10-009 collection for broader practice across all five domains. For broader exam preparation, review the CompTIA Network+ N10-009 Exam Dumps page.

Instructions: Select the best answer for each question. Review the explanation after answering; each distractor includes a reason it is not the best choice for that scenario.

Question 1

At Litware Manufacturing, a systems administrator is reviewing a network change. The requirement is to securely connect an entire branch LAN to headquarters over the internet. Which option is the best fit? The decision applies to a branch-office rollout.

  1. Split tunnel
  2. Jump box
  3. SSH
  4. Site-to-site VPN
  5. GUI

Correct answer: D

Why: Connects two networks through a persistent encrypted tunnel between gateways. This directly satisfies the requirement: securely connect an entire branch LAN to headquarters over the internet.

Option review:

A: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. However, it does not most directly satisfy the requirement in this scenario: securely connect an entire branch LAN to headquarters over the internet.

B: A hardened intermediary host provides controlled administrative access into a restricted network. However, it does not most directly satisfy the requirement in this scenario: securely connect an entire branch LAN to headquarters over the internet.

C: Provides encrypted command-line remote administration. However, it does not most directly satisfy the requirement in this scenario: securely connect an entire branch LAN to headquarters over the internet.

D: Connects two networks through a persistent encrypted tunnel between gateways. This directly satisfies the requirement: securely connect an entire branch LAN to headquarters over the internet.

E: Provides graphical administration through menus, dashboards, and forms. However, it does not most directly satisfy the requirement in this scenario: securely connect an entire branch LAN to headquarters over the internet.

Learning point: Use Site-to-site VPN when the key requirement is to securely connect an entire branch LAN to headquarters over the internet.

Question 2

A ticket at Woodgrove Bank says the team must give a remote employee secure access to internal resources. Which technology or concept most directly addresses this requirement? The decision applies to a campus refresh.

  1. Client-to-site VPN
  2. Out-of-band management
  3. Console
  4. GUI
  5. Jump box

Correct answer: A

Why: Connects an individual remote endpoint to an organization network. This directly satisfies the requirement: give a remote employee secure access to internal resources.

Option review:

A: Connects an individual remote endpoint to an organization network. This directly satisfies the requirement: give a remote employee secure access to internal resources.

B: Uses a separate management path/network so administrators can reach devices during production outages. However, it does not most directly satisfy the requirement in this scenario: give a remote employee secure access to internal resources.

C: Provides local/out-of-band serial-style access independent of normal IP connectivity. However, it does not most directly satisfy the requirement in this scenario: give a remote employee secure access to internal resources.

D: Provides graphical administration through menus, dashboards, and forms. However, it does not most directly satisfy the requirement in this scenario: give a remote employee secure access to internal resources.

E: A hardened intermediary host provides controlled administrative access into a restricted network. However, it does not most directly satisfy the requirement in this scenario: give a remote employee secure access to internal resources.

Learning point: Use Client-to-site VPN when the key requirement is to give a remote employee secure access to internal resources.

Question 3

During a design meeting at Blue Yonder Airlines, the junior network administrator needs to provide limited remote access without installing endpoint VPN software. What should be selected? The decision applies to a data-center segment.

  1. SSH
  2. Client-to-site VPN
  3. Jump box
  4. Clientless VPN
  5. GUI

Correct answer: D

Why: Provides remote access through a browser or portal without a full VPN client. This directly satisfies the requirement: provide limited remote access without installing endpoint VPN software.

Option review:

A: Provides encrypted command-line remote administration. However, it does not most directly satisfy the requirement in this scenario: provide limited remote access without installing endpoint VPN software.

B: Connects an individual remote endpoint to an organization network. However, it does not most directly satisfy the requirement in this scenario: provide limited remote access without installing endpoint VPN software.

C: A hardened intermediary host provides controlled administrative access into a restricted network. However, it does not most directly satisfy the requirement in this scenario: provide limited remote access without installing endpoint VPN software.

D: Provides remote access through a browser or portal without a full VPN client. This directly satisfies the requirement: provide limited remote access without installing endpoint VPN software.

E: Provides graphical administration through menus, dashboards, and forms. However, it does not most directly satisfy the requirement in this scenario: provide limited remote access without installing endpoint VPN software.

Learning point: Use Clientless VPN when the key requirement is to provide limited remote access without installing endpoint VPN software.

Question 4

Contoso Health is updating its network standard. Which option best meets the need to reduce VPN bandwidth by tunneling only enterprise-destined traffic? The decision applies to a remote-site migration.

  1. Clientless VPN
  2. Console
  3. In-band management
  4. Out-of-band management
  5. Split tunnel

Correct answer: E

Why: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. This directly satisfies the requirement: reduce VPN bandwidth by tunneling only enterprise-destined traffic.

Option review:

A: Provides remote access through a browser or portal without a full VPN client. However, it does not most directly satisfy the requirement in this scenario: reduce VPN bandwidth by tunneling only enterprise-destined traffic.

B: Provides local/out-of-band serial-style access independent of normal IP connectivity. However, it does not most directly satisfy the requirement in this scenario: reduce VPN bandwidth by tunneling only enterprise-destined traffic.

C: Management traffic shares the production data network. However, it does not most directly satisfy the requirement in this scenario: reduce VPN bandwidth by tunneling only enterprise-destined traffic.

D: Uses a separate management path/network so administrators can reach devices during production outages. However, it does not most directly satisfy the requirement in this scenario: reduce VPN bandwidth by tunneling only enterprise-destined traffic.

E: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. This directly satisfies the requirement: reduce VPN bandwidth by tunneling only enterprise-destined traffic.

Learning point: Use Split tunnel when the key requirement is to reduce VPN bandwidth by tunneling only enterprise-destined traffic.

Question 5

A field technician at Litware Manufacturing is validating a proposed solution. The design must force remote-user internet traffic through enterprise security controls. Which answer is most appropriate? The decision applies to a operations lab.

  1. GUI
  2. SSH
  3. Full tunnel
  4. Site-to-site VPN
  5. API

Correct answer: C

Why: Sends all client traffic through the VPN for centralized inspection and policy enforcement. This directly satisfies the requirement: force remote-user internet traffic through enterprise security controls.

Option review:

A: Provides graphical administration through menus, dashboards, and forms. However, it does not most directly satisfy the requirement in this scenario: force remote-user internet traffic through enterprise security controls.

B: Provides encrypted command-line remote administration. However, it does not most directly satisfy the requirement in this scenario: force remote-user internet traffic through enterprise security controls.

C: Sends all client traffic through the VPN for centralized inspection and policy enforcement. This directly satisfies the requirement: force remote-user internet traffic through enterprise security controls.

D: Connects two networks through a persistent encrypted tunnel between gateways. However, it does not most directly satisfy the requirement in this scenario: force remote-user internet traffic through enterprise security controls.

E: Provides programmatic management for automation and system integration. However, it does not most directly satisfy the requirement in this scenario: force remote-user internet traffic through enterprise security controls.

Learning point: Use Full tunnel when the key requirement is to force remote-user internet traffic through enterprise security controls.

Question 6

For a new deployment at Woodgrove Bank, the networking team wants to administer a network device securely from a remote CLI. Which choice most directly satisfies the goal? The decision applies to a production maintenance window.

  1. Clientless VPN
  2. Client-to-site VPN
  3. SSH
  4. Console
  5. In-band management

Correct answer: C

Why: Provides encrypted command-line remote administration. This directly satisfies the requirement: administer a network device securely from a remote CLI.

Option review:

A: Provides remote access through a browser or portal without a full VPN client. However, it does not most directly satisfy the requirement in this scenario: administer a network device securely from a remote CLI.

B: Connects an individual remote endpoint to an organization network. However, it does not most directly satisfy the requirement in this scenario: administer a network device securely from a remote CLI.

C: Provides encrypted command-line remote administration. This directly satisfies the requirement: administer a network device securely from a remote CLI.

D: Provides local/out-of-band serial-style access independent of normal IP connectivity. However, it does not most directly satisfy the requirement in this scenario: administer a network device securely from a remote CLI.

E: Management traffic shares the production data network. However, it does not most directly satisfy the requirement in this scenario: administer a network device securely from a remote CLI.

Learning point: Use SSH when the key requirement is to administer a network device securely from a remote CLI.

Question 7

At Blue Yonder Airlines, a systems administrator is reviewing a network change. The requirement is to manage a device using a graphical interface rather than commands. Which option is the best fit? The decision applies to a new floor deployment.

  1. Jump box
  2. Site-to-site VPN
  3. GUI
  4. SSH
  5. Split tunnel

Correct answer: C

Why: Provides graphical administration through menus, dashboards, and forms. This directly satisfies the requirement: manage a device using a graphical interface rather than commands.

Option review:

A: A hardened intermediary host provides controlled administrative access into a restricted network. However, it does not most directly satisfy the requirement in this scenario: manage a device using a graphical interface rather than commands.

B: Connects two networks through a persistent encrypted tunnel between gateways. However, it does not most directly satisfy the requirement in this scenario: manage a device using a graphical interface rather than commands.

C: Provides graphical administration through menus, dashboards, and forms. This directly satisfies the requirement: manage a device using a graphical interface rather than commands.

D: Provides encrypted command-line remote administration. However, it does not most directly satisfy the requirement in this scenario: manage a device using a graphical interface rather than commands.

E: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. However, it does not most directly satisfy the requirement in this scenario: manage a device using a graphical interface rather than commands.

Learning point: Use GUI when the key requirement is to manage a device using a graphical interface rather than commands.

Question 8

A ticket at Contoso Health says the team must automate network-device configuration from software. Which technology or concept most directly addresses this requirement? The decision applies to a service-recovery review.

  1. API
  2. Jump box
  3. Clientless VPN
  4. Split tunnel
  5. Client-to-site VPN

Correct answer: A

Why: Provides programmatic management for automation and system integration. This directly satisfies the requirement: automate network-device configuration from software.

Option review:

A: Provides programmatic management for automation and system integration. This directly satisfies the requirement: automate network-device configuration from software.

B: A hardened intermediary host provides controlled administrative access into a restricted network. However, it does not most directly satisfy the requirement in this scenario: automate network-device configuration from software.

C: Provides remote access through a browser or portal without a full VPN client. However, it does not most directly satisfy the requirement in this scenario: automate network-device configuration from software.

D: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. However, it does not most directly satisfy the requirement in this scenario: automate network-device configuration from software.

E: Connects an individual remote endpoint to an organization network. However, it does not most directly satisfy the requirement in this scenario: automate network-device configuration from software.

Learning point: Use API when the key requirement is to automate network-device configuration from software.

Question 9

During a design meeting at Litware Manufacturing, the junior network administrator needs to manage a device that has no working network connectivity. What should be selected? The decision applies to a branch-office rollout.

  1. Console
  2. Client-to-site VPN
  3. Clientless VPN
  4. SSH
  5. API

Correct answer: A

Why: Provides local/out-of-band serial-style access independent of normal IP connectivity. This directly satisfies the requirement: manage a device that has no working network connectivity.

Option review:

A: Provides local/out-of-band serial-style access independent of normal IP connectivity. This directly satisfies the requirement: manage a device that has no working network connectivity.

B: Connects an individual remote endpoint to an organization network. However, it does not most directly satisfy the requirement in this scenario: manage a device that has no working network connectivity.

C: Provides remote access through a browser or portal without a full VPN client. However, it does not most directly satisfy the requirement in this scenario: manage a device that has no working network connectivity.

D: Provides encrypted command-line remote administration. However, it does not most directly satisfy the requirement in this scenario: manage a device that has no working network connectivity.

E: Provides programmatic management for automation and system integration. However, it does not most directly satisfy the requirement in this scenario: manage a device that has no working network connectivity.

Learning point: Use Console when the key requirement is to manage a device that has no working network connectivity.

Question 10

Woodgrove Bank is updating its network standard. Which option best meets the need to centralize administrator entry into a sensitive management network? The decision applies to a campus refresh.

  1. Jump box
  2. API
  3. In-band management
  4. Full tunnel
  5. Split tunnel

Correct answer: A

Why: A hardened intermediary host provides controlled administrative access into a restricted network. This directly satisfies the requirement: centralize administrator entry into a sensitive management network.

Option review:

A: A hardened intermediary host provides controlled administrative access into a restricted network. This directly satisfies the requirement: centralize administrator entry into a sensitive management network.

B: Provides programmatic management for automation and system integration. However, it does not most directly satisfy the requirement in this scenario: centralize administrator entry into a sensitive management network.

C: Management traffic shares the production data network. However, it does not most directly satisfy the requirement in this scenario: centralize administrator entry into a sensitive management network.

D: Sends all client traffic through the VPN for centralized inspection and policy enforcement. However, it does not most directly satisfy the requirement in this scenario: centralize administrator entry into a sensitive management network.

E: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. However, it does not most directly satisfy the requirement in this scenario: centralize administrator entry into a sensitive management network.

Learning point: Use Jump box when the key requirement is to centralize administrator entry into a sensitive management network.

Question 11

A field technician at Blue Yonder Airlines is validating a proposed solution. The design must manage devices over the same network used for normal user traffic. Which answer is most appropriate? The decision applies to a data-center segment.

  1. API
  2. In-band management
  3. GUI
  4. Site-to-site VPN
  5. Full tunnel

Correct answer: B

Why: Management traffic shares the production data network. This directly satisfies the requirement: manage devices over the same network used for normal user traffic.

Option review:

A: Provides programmatic management for automation and system integration. However, it does not most directly satisfy the requirement in this scenario: manage devices over the same network used for normal user traffic.

B: Management traffic shares the production data network. This directly satisfies the requirement: manage devices over the same network used for normal user traffic.

C: Provides graphical administration through menus, dashboards, and forms. However, it does not most directly satisfy the requirement in this scenario: manage devices over the same network used for normal user traffic.

D: Connects two networks through a persistent encrypted tunnel between gateways. However, it does not most directly satisfy the requirement in this scenario: manage devices over the same network used for normal user traffic.

E: Sends all client traffic through the VPN for centralized inspection and policy enforcement. However, it does not most directly satisfy the requirement in this scenario: manage devices over the same network used for normal user traffic.

Learning point: Use In-band management when the key requirement is to manage devices over the same network used for normal user traffic.

Question 12

For a new deployment at Contoso Health, the networking team wants to retain device-management access even when the production data plane is unavailable. Which choice most directly satisfies the goal? The decision applies to a remote-site migration.

  1. API
  2. Out-of-band management
  3. Full tunnel
  4. SSH
  5. Site-to-site VPN

Correct answer: B

Why: Uses a separate management path/network so administrators can reach devices during production outages. This directly satisfies the requirement: retain device-management access even when the production data plane is unavailable.

Option review:

A: Provides programmatic management for automation and system integration. However, it does not most directly satisfy the requirement in this scenario: retain device-management access even when the production data plane is unavailable.

B: Uses a separate management path/network so administrators can reach devices during production outages. This directly satisfies the requirement: retain device-management access even when the production data plane is unavailable.

C: Sends all client traffic through the VPN for centralized inspection and policy enforcement. However, it does not most directly satisfy the requirement in this scenario: retain device-management access even when the production data plane is unavailable.

D: Provides encrypted command-line remote administration. However, it does not most directly satisfy the requirement in this scenario: retain device-management access even when the production data plane is unavailable.

E: Connects two networks through a persistent encrypted tunnel between gateways. However, it does not most directly satisfy the requirement in this scenario: retain device-management access even when the production data plane is unavailable.

Learning point: Use Out-of-band management when the key requirement is to retain device-management access even when the production data plane is unavailable.

Question 13

During a service-recovery review, Litware Manufacturing is comparing several networking concepts. Which option is accurately characterized by this statement: Connects two networks through a persistent encrypted tunnel between gateways.

  1. Split tunnel
  2. Clientless VPN
  3. Client-to-site VPN
  4. Console
  5. Site-to-site VPN

Correct answer: E

Why: Connects two networks through a persistent encrypted tunnel between gateways. This directly satisfies the requirement: Connects two networks through a persistent encrypted tunnel between gateways..

Option review:

A: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. However, it does not most directly satisfy the requirement in this scenario: Connects two networks through a persistent encrypted tunnel between gateways..

B: Provides remote access through a browser or portal without a full VPN client. However, it does not most directly satisfy the requirement in this scenario: Connects two networks through a persistent encrypted tunnel between gateways..

C: Connects an individual remote endpoint to an organization network. However, it does not most directly satisfy the requirement in this scenario: Connects two networks through a persistent encrypted tunnel between gateways..

D: Provides local/out-of-band serial-style access independent of normal IP connectivity. However, it does not most directly satisfy the requirement in this scenario: Connects two networks through a persistent encrypted tunnel between gateways..

E: Connects two networks through a persistent encrypted tunnel between gateways. This directly satisfies the requirement: Connects two networks through a persistent encrypted tunnel between gateways..

Learning point: Use Site-to-site VPN when the key requirement is to securely connect an entire branch LAN to headquarters over the internet.

Question 14

During a branch-office rollout, Woodgrove Bank is comparing several networking concepts. Which option is accurately characterized by this statement: Connects an individual remote endpoint to an organization network.

  1. SSH
  2. Client-to-site VPN
  3. API
  4. Clientless VPN
  5. Site-to-site VPN

Correct answer: B

Why: Connects an individual remote endpoint to an organization network. This directly satisfies the requirement: Connects an individual remote endpoint to an organization network..

Option review:

A: Provides encrypted command-line remote administration. However, it does not most directly satisfy the requirement in this scenario: Connects an individual remote endpoint to an organization network..

B: Connects an individual remote endpoint to an organization network. This directly satisfies the requirement: Connects an individual remote endpoint to an organization network..

C: Provides programmatic management for automation and system integration. However, it does not most directly satisfy the requirement in this scenario: Connects an individual remote endpoint to an organization network..

D: Provides remote access through a browser or portal without a full VPN client. However, it does not most directly satisfy the requirement in this scenario: Connects an individual remote endpoint to an organization network..

E: Connects two networks through a persistent encrypted tunnel between gateways. However, it does not most directly satisfy the requirement in this scenario: Connects an individual remote endpoint to an organization network..

Learning point: Use Client-to-site VPN when the key requirement is to give a remote employee secure access to internal resources.

Question 15

During a campus refresh, Blue Yonder Airlines is comparing several networking concepts. Which option is accurately characterized by this statement: Provides remote access through a browser or portal without a full VPN client.

  1. Console
  2. Clientless VPN
  3. Site-to-site VPN
  4. Jump box
  5. Full tunnel

Correct answer: B

Why: Provides remote access through a browser or portal without a full VPN client. This directly satisfies the requirement: Provides remote access through a browser or portal without a full VPN client..

Option review:

A: Provides local/out-of-band serial-style access independent of normal IP connectivity. However, it does not most directly satisfy the requirement in this scenario: Provides remote access through a browser or portal without a full VPN client..

B: Provides remote access through a browser or portal without a full VPN client. This directly satisfies the requirement: Provides remote access through a browser or portal without a full VPN client..

C: Connects two networks through a persistent encrypted tunnel between gateways. However, it does not most directly satisfy the requirement in this scenario: Provides remote access through a browser or portal without a full VPN client..

D: A hardened intermediary host provides controlled administrative access into a restricted network. However, it does not most directly satisfy the requirement in this scenario: Provides remote access through a browser or portal without a full VPN client..

E: Sends all client traffic through the VPN for centralized inspection and policy enforcement. However, it does not most directly satisfy the requirement in this scenario: Provides remote access through a browser or portal without a full VPN client..

Learning point: Use Clientless VPN when the key requirement is to provide limited remote access without installing endpoint VPN software.

Question 16

During a data-center segment, Contoso Health is comparing several networking concepts. Which option is accurately characterized by this statement: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection.

  1. In-band management
  2. Console
  3. Jump box
  4. Split tunnel
  5. Client-to-site VPN

Correct answer: D

Why: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. This directly satisfies the requirement: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection..

Option review:

A: Management traffic shares the production data network. However, it does not most directly satisfy the requirement in this scenario: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection..

B: Provides local/out-of-band serial-style access independent of normal IP connectivity. However, it does not most directly satisfy the requirement in this scenario: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection..

C: A hardened intermediary host provides controlled administrative access into a restricted network. However, it does not most directly satisfy the requirement in this scenario: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection..

D: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. This directly satisfies the requirement: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection..

E: Connects an individual remote endpoint to an organization network. However, it does not most directly satisfy the requirement in this scenario: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection..

Learning point: Use Split tunnel when the key requirement is to reduce VPN bandwidth by tunneling only enterprise-destined traffic.

Question 17

During a remote-site migration, Litware Manufacturing is comparing several networking concepts. Which option is accurately characterized by this statement: Sends all client traffic through the VPN for centralized inspection and policy enforcement.

  1. Jump box
  2. SSH
  3. Full tunnel
  4. Clientless VPN
  5. Console

Correct answer: C

Why: Sends all client traffic through the VPN for centralized inspection and policy enforcement. This directly satisfies the requirement: Sends all client traffic through the VPN for centralized inspection and policy enforcement..

Option review:

A: A hardened intermediary host provides controlled administrative access into a restricted network. However, it does not most directly satisfy the requirement in this scenario: Sends all client traffic through the VPN for centralized inspection and policy enforcement..

B: Provides encrypted command-line remote administration. However, it does not most directly satisfy the requirement in this scenario: Sends all client traffic through the VPN for centralized inspection and policy enforcement..

C: Sends all client traffic through the VPN for centralized inspection and policy enforcement. This directly satisfies the requirement: Sends all client traffic through the VPN for centralized inspection and policy enforcement..

D: Provides remote access through a browser or portal without a full VPN client. However, it does not most directly satisfy the requirement in this scenario: Sends all client traffic through the VPN for centralized inspection and policy enforcement..

E: Provides local/out-of-band serial-style access independent of normal IP connectivity. However, it does not most directly satisfy the requirement in this scenario: Sends all client traffic through the VPN for centralized inspection and policy enforcement..

Learning point: Use Full tunnel when the key requirement is to force remote-user internet traffic through enterprise security controls.

Question 18

During a operations lab, Woodgrove Bank is comparing several networking concepts. Which option is accurately characterized by this statement: Provides encrypted command-line remote administration.

  1. Split tunnel
  2. GUI
  3. Site-to-site VPN
  4. SSH
  5. API

Correct answer: D

Why: Provides encrypted command-line remote administration. This directly satisfies the requirement: Provides encrypted command-line remote administration..

Option review:

A: Sends only selected corporate traffic through the VPN while other traffic uses the local internet connection. However, it does not most directly satisfy the requirement in this scenario: Provides encrypted command-line remote administration..

B: Provides graphical administration through menus, dashboards, and forms. However, it does not most directly satisfy the requirement in this scenario: Provides encrypted command-line remote administration..

C: Connects two networks through a persistent encrypted tunnel between gateways. However, it does not most directly satisfy the requirement in this scenario: Provides encrypted command-line remote administration..

D: Provides encrypted command-line remote administration. This directly satisfies the requirement: Provides encrypted command-line remote administration..

E: Provides programmatic management for automation and system integration. However, it does not most directly satisfy the requirement in this scenario: Provides encrypted command-line remote administration..

Learning point: Use SSH when the key requirement is to administer a network device securely from a remote CLI.

Question 19

During a production maintenance window, Blue Yonder Airlines is comparing several networking concepts. Which option is accurately characterized by this statement: Provides graphical administration through menus, dashboards, and forms.

  1. GUI
  2. Site-to-site VPN
  3. Console
  4. Client-to-site VPN
  5. In-band management

Correct answer: A

Why: Provides graphical administration through menus, dashboards, and forms. This directly satisfies the requirement: Provides graphical administration through menus, dashboards, and forms..

Option review:

A: Provides graphical administration through menus, dashboards, and forms. This directly satisfies the requirement: Provides graphical administration through menus, dashboards, and forms..

B: Connects two networks through a persistent encrypted tunnel between gateways. However, it does not most directly satisfy the requirement in this scenario: Provides graphical administration through menus, dashboards, and forms..

C: Provides local/out-of-band serial-style access independent of normal IP connectivity. However, it does not most directly satisfy the requirement in this scenario: Provides graphical administration through menus, dashboards, and forms..

D: Connects an individual remote endpoint to an organization network. However, it does not most directly satisfy the requirement in this scenario: Provides graphical administration through menus, dashboards, and forms..

E: Management traffic shares the production data network. However, it does not most directly satisfy the requirement in this scenario: Provides graphical administration through menus, dashboards, and forms..

Learning point: Use GUI when the key requirement is to manage a device using a graphical interface rather than commands.

Question 20

During a new floor deployment, Contoso Health is comparing several networking concepts. Which option is accurately characterized by this statement: Provides programmatic management for automation and system integration.

  1. SSH
  2. Full tunnel
  3. API
  4. Client-to-site VPN
  5. Console

Correct answer: C

Why: Provides programmatic management for automation and system integration. This directly satisfies the requirement: Provides programmatic management for automation and system integration..

Option review:

A: Provides encrypted command-line remote administration. However, it does not most directly satisfy the requirement in this scenario: Provides programmatic management for automation and system integration..

B: Sends all client traffic through the VPN for centralized inspection and policy enforcement. However, it does not most directly satisfy the requirement in this scenario: Provides programmatic management for automation and system integration..

C: Provides programmatic management for automation and system integration. This directly satisfies the requirement: Provides programmatic management for automation and system integration..

D: Connects an individual remote endpoint to an organization network. However, it does not most directly satisfy the requirement in this scenario: Provides programmatic management for automation and system integration..

E: Provides local/out-of-band serial-style access independent of normal IP connectivity. However, it does not most directly satisfy the requirement in this scenario: Provides programmatic management for automation and system integration..

Learning point: Use API when the key requirement is to automate network-device configuration from software.

Popular posts

img