合格させるN10-008日本語試験問題で実際テストエンジンPDFには614問題あります [Q256-Q275]

Share

合格させるN10-008日本語試験問題で実際テストエンジンPDFには614問題あります

最新をゲットせよ!N10-008日本語認定練習テスト問題の試験問題集

質問 # 256
ある会社が大企業に買収されています。取得プロセスの一環として、会社の住所はクライアントを企業組織のページにリダイレクトする必要があります。次の DNS レコードのうち、作成する必要があるのはどれですか?

  • A. TXT
  • B. SOA
  • C. NS
  • D. CNAME

正解:D

解説:
Reference:
https://www.namecheap.com/support/knowledgebase/article.aspx/9604/2237/types-of-domain-redirects-301-302


質問 # 257
ネットワーク技術者は、ファイアウォールの通過を許可するために必要なアクセス要件を備えた会社用の新しいファイアウォールを構成しています。通常、ファイアウォールの最後のルールとして適用されるのは、次のうちどれですか?

  • A. 暗黙の拒否
  • B. DHCP スヌーピング
  • C. セキュア SNMP
  • D. ポートセキュリティ

正解:A

解説:
Implicit deny is a firewall rule that blocks all traffic that is not explicitly allowed by other rules. Implicit deny is usually applied as the last rule in the firewall to ensure that only the necessary access requirements are allowed through the firewall and that any unwanted or malicious traffic is rejected. Implicit deny can also provide a default security policy and a baseline for auditing and logging purposes.
Secure SNMP is a protocol that allows network devices to send event messages to a centralized server or console for logging and analysis. Secure SNMP can be used to monitor and manage the status, performance, and configuration of network devices. Secure SNMP can also help to detect and respond to potential problems or faults on the network. However, secure SNMP is not a firewall rule; it is a network management protocol.
Port security is a feature that allows a switch to restrict the devices that can connect to a specific port based on their MAC addresses. Port security can help to prevent unauthorized access, spoofing, or MAC flooding attacks on the switch. However, port security is not a firewall rule; it is a switch feature.
DHCP snooping is a feature that allows a switch to filter DHCP messages and prevent rogue DHCP servers from assigning IP addresses to devices on the network. DHCP snooping can help to prevent IP address conflicts, spoofing, or denial-of-service attacks on the network. However, DHCP snooping is not a firewall rule; it is a switch feature.


質問 # 258
次のデバイスのうち、さまざまな場所に設置されたアクセス ポイントを構成および集中管理するために使用されるデバイスはどれですか?

  • A. ロードバランサー
  • B. ワイヤレスコントローラー
  • C. VPN コンセントレータ
  • D. プロキシ サーバー

正解:B

解説:
Explanation
Access points (APs) can be configured and centrally managed using a wireless LAN controller (WLC). A WLC is a device that connects to multiple APs and provides centralized management and control of those APs. The WLC can be used to configure settings such as wireless network parameters, security settings, and quality of service (QoS) policies. Additionally, the WLC can be used to monitor the status of connected APs, track client connections, and gather statistics on network usage. Some vendors such as Cisco, Aruba, Ruckus, etc. provide wireless LAN controllers as part of their wireless networking solutions.


質問 # 259
LAN 上の 2 人のユーザーがビデオ通話を確立します。次の OSI モデル レイヤーのうち、呼び出しの開始調整と終了を保証するものはどれですか?

  • A. セッション
  • B. フィジカル
  • C. データリンク
  • D. 輸送

正解:A

解説:
Explanation
The OSI model layer that ensures the initiation, coordination, and termination of a video call is the session layer. The session layer is responsible for establishing, maintaining, and terminating communication sessions between two devices on a network.


質問 # 260
ネットワーク技術者は、新しい受付担当者のためにアナログの卓上電話を設置しています。新しい電話回線を運用した後、技術者は新しいコネクタで cnmp する必要があります。この場合に使用される可能性が最も高いコネクタは次のうちどれですか?

  • A. RJ11
  • B. RJ45
  • C. DB25
  • D. DB9

正解:D


質問 # 261
クライアント デバイスはネットワークに入ることができず、ネットワーク管理者は DHCP スコープが使い果たされていると判断します。管理者は、新しい DHCP プールの作成を避けたいと考えています。問題を解決するために管理者が実行できることは次のうちどれですか?

  • A. ロードバランサーをインストールする
  • B. さらにスイッチを取り付ける
  • C. リース時間を短くする
  • D. VLAN 数を減らす

正解:C

解説:
Explanation
To resolve the issue of DHCP scope exhaustion without creating a new DHCP pool, the administrator can reduce the lease time. By decreasing the lease time, the IP addresses assigned by DHCP will be released back to the DHCP scope more quickly, allowing them to be assigned to new devices.
References:
CompTIA Network+ Certification Study Guide, Exam N10-007, Fourth Edition, Chapter 2: The OSI Model and Networking Protocols, Objective 2.3: Given a scenario, implement and configure the appropriate addressing schema.
https://www.networkcomputing.com/data-centers/10-tips-optimizing-dhcp-performance


質問 # 262
ある都市は、自宅で旅行するときや、サービスをわなにする近隣都市の地方自治体の調達で働くことができる必要がある新しい従業員を雇いました。従業員にはラップトップが支給され、技術者は可能なすべての場所からネットワークに安全にアクセスできるようにするための適切なソリューションについて従業員をトレーニングする必要があります。

  • A. 旅行先と、その他すべてのリモート アクセス用の従業員のラップトップ上のサイト間ソフトウェアとの間のクライアント対サイト VPN
  • B. 2 つの都市間のクライアント対サイト VPN、および他のすべてのリモート アクセス用の従業員のラップトップ上のサイト対サイト ソフトウェア
  • C. 2 つの都市間のサイト間 VPN と、従業員のラップトップ上のクライアント対サイト ソフトウェアによるその他すべてのリモート アクセス
  • D. 自宅と都市間のサイト間 VPN と、その他すべてのリモート アクセス用の従業員のラップトップ上のサイト間ソフトウェア

正解:C

解説:
Explanation
The technician would most likely train the employee on using site-to-site VPNs between the two city locations and client-to-site software on the employee's laptop for all other remote access. A VPN (Virtual Private Network) is a technology that creates a secure and encrypted tunnel over a public network such as the Internet.
It allows remote users or sites to access a private network as if they were directly connected to it. A site-to-site VPN connects two or more networks, such as branch offices or data centers, using a VPN gateway device at each site. A client-to-site VPN connects individual users, such as mobile workers or telecommuters, using a VPN client software on their devices. In this scenario, the employee needs to access the network from different locations, such as home, travel, or another city. Therefore, the technician would train the employee on how to use site-to-site VPNs to connect to the network from another city location that shares services, and how to use client-to-site software to connect to the network from home or travel locations. References:
https://www.cisco.com/c/en/us/support/docs/security-vpn/ipsec-negotiation-ike-protocols/14106-how-vpn-works


質問 # 263
ネットワーク ユーザーは、ファイアウォールへの最近のファームウェア アップグレードが、アップグレードを促した問題を解決しなかったと報告しました。次のうち、次に実行する必要があるのはどれですか?

  • A. 問題を IT 管理チームにエスカレートして、ユーザーのマネージャーと新しい SLA について交渉します。
  • B. 追加情報を収集して、ユーザーの懸念が同様の症状を伴う別の問題によって引き起こされたものではないことを確認します。
  • C. サービス チケットを再度開き、新しいメンテナンス ウィンドウをリクエストして、以前のファームウェア バージョンにロールバックします。
  • D. ファイアウォール ベンダーのサポートを利用して、分割統治型のトラブルシューティング方法を採用します。

正解:B

解説:
Explanation
Before taking any further action, it is important to verify that the problem reported by the users is the same as the one that prompted the firmware upgrade. It is possible that the firmware upgrade did resolve the original issue, but a new or different issue has arisen with similar symptoms. By gathering additional information from the users, such as error messages, screenshots, logs, or network traces, the technician can confirm or rule out this possibility and avoid wasting time and resources on unnecessary steps.
Reopening the service ticket, requesting a new maintenance window, and rolling back to the anterior firmware version (A) is a possible option if the firmware upgrade did not resolve the original issue and caused more problems. However, this should not be done without first verifying that the users' concerns are related to the firmware upgrade and not a different issue.
Employing a divide-and-conquer troubleshooting methodology by engaging the firewall vendor's support is another possible option if the technician needs assistance from the vendor to diagnose or resolve the issue.
However, this should also not be done without first gathering additional information from the users to narrow down the scope of the problem and provide relevant details to the vendor.
Escalating the issue to the IT management team in order to negotiate a new SLA with the user's manager (D) is not a relevant option at this stage. An SLA (Service Level Agreement) is a contract that defines the expectations and responsibilities of both parties in terms of service quality, availability, performance, and response time. Negotiating a new SLA does not address the root cause of the issue or help to resolve it.
Moreover, escalating an issue to management should only be done when all other options have been exhausted or when there is a significant impact or risk to the business.


質問 # 264
次のファウリング プロトコルのうち、主要な ISP が大規模なインターネット トラフィックを処理するために一般的に使用しているものはどれですか?

  • A. BGP
  • B. OSPF
  • C. RIP
  • D. EIGRP

正解:A


質問 # 265
次の OSI モデル レイヤーのうち、ユーザーがリモート コンピューターからファイルにアクセスしてダウンロードできるようにするものはどれですか?

  • A. アプリケーション
  • B. ネットワーク
  • C. プレゼンテーション
  • D. セッション

正解:A

解説:
Explanation
The application layer of the OSI model (Open Systems Interconnection) is responsible for providing services to applications that allow users to access and download files from a remote computer. These services include file transfer, email, and web access, as well as other related services. In order for a user to access and download files from a remote computer, the application layer must provide the necessary services that allow the user to interact with the remote computer.


質問 # 266
IT オフィサーが新しい WAP をインストールしています。次のうち、担当者がユーザーを WAP に安全に接続するために変更する必要があるのはどれですか?

  • A. AES 暗号化
  • B. TKIP 暗号化プロトコル
  • C. 帯域内の最高周波数へのチャネル
  • D. 周波数の動的選択

正解:A


質問 # 267
技術者が大手小売店に複数の UPS ユニットを設置しています。技術者は、新旧の機器に対するすべての変更を追跡する必要があります。技術者がこれらの変更を記録できるようにするのは、次のうちどれですか?

  • A. スマートロッカー
  • B. カメラ
  • C. 資産タグ
  • D. アクセス制御前庭

正解:C

解説:
Explanation
Asset tags will allow the technician to record changes to new and old equipment when installing multiple UPS units in a major retail store. Asset tags are labels or stickers that are attached to physical assets such as computers, printers, servers, or UPS units. They usually contain information such as asset name, serial number, barcode, QR code, or RFID chip that can be scanned or read by an asset management system or software. Asset tags help track inventory, location, status, maintenance, and ownership of assets. References:
https://www.camcode.com/asset-tags/asset-tagging-guide/


質問 # 268
次の攻撃のうち、ユーザー データを暗号化し、回復するために適切なバックアップの実装を必要とするのはどれですか?

  • A. DDoS
  • B. ランサムウェア
  • C. フィッシング
  • D. MAC スプーフィング

正解:B

解説:
Explanation
Ransomware is a type of malware that encrypts user data and demands a ransom for its decryption.
Ransomware can prevent users from accessing their files and applications, and cause data loss or corruption. A proper backup implementation is essential to recover from a ransomware attack, as it can help restore the encrypted data without paying the ransom or relying on the attackers' decryption key. References:
https://www.comptia.org/blog/what-is-ransomware


質問 # 269
電力会社はネットワーク管理者に、週末に建物の電源を切ることを通知します。サーバーのダウンを防ぐための最善の解決策は次のうちどれですか?

  • A. ジェネレーター
  • B. 無停電電源装置
  • C. 冗長電源
  • D. 配電ユニット

正解:C


質問 # 270
ネットワーク管理者は、インターネットに公開されているアプリケーションで重大な脆弱性が検出されたというレポートを受け取りました。次のうち、適切な次のステップはどれですか?

  • A. サーバーにネットワークアクセス制御エージェントをインストールします。
  • B. アプリケーションをホストする新しいサーバーをデプロイします。
  • C. 脆弱なアプリケーション サーバーを直ちにシャットダウンします。
  • D. リスクを評価するために、既知のエクスプロイトの存在を確認します。

正解:D


質問 # 271
次の OSI モデル レイヤーのうち、ワイヤレス インフラストラクチャの MAC フィルター リストが機能するのはどれですか?

  • A. ネットワーク
  • B. セッション
  • C. 物理
  • D. データリンク

正解:D

解説:
Explanation
A MAC filter list is a security feature that allows or denies access to a wireless network based on the MAC address of the device. A MAC address is a unique identifier assigned to a network interface card (NIC) at the physical layer of the OSI model. However, MAC filtering operates at the data link layer of the OSI model, where MAC addresses are used to encapsulate and deliver data frames between devices on the same network segment.
References: CompTIA Network+ Certification Exam Objectives Version 7.0 (N10-007), Objective 3.1: Given a scenario, install and configure wireless LAN infrastructure and implement the appropriate technologies in support of wireless capable devices.


質問 # 272
次のシステムのうち、スクリーニングされたサブネットで見つかる可能性が最も高いのはどれですか?

  • A. FTP
  • B. LDAP
  • C. 半径
  • D. SQL

正解:A

解説:
FTP (File Transfer Protocol) is a system that would most likely be found in a screened subnet. A screened subnet, or triple-homed firewall, is a network architecture where a single firewall is used with three network interfaces. It provides additional protection from outside cyber attacks by adding a perimeter network to isolate or separate the internal network from the public-facing internet1. A screened subnet typically hosts systems that need to be accessed by both internal and external users, such as web servers, email servers, or FTP servers. Reference: https://www.techtarget.com/searchsecurity/definition/screened-subnet#:~:text=A%20screened%20subnet%2C%20or%20triple-homed%20firewall%2C%20refers%20to,a%20perimeter%20network%20to%20isolate%20or%20separate%20the 1


質問 # 273
使用可能な SFP ポートがないネットワーク スイッチにファイバー ケーブルを接続するための有効で費用対効果の高いソリューションは、次のうちどれですか?

  • A. 追加のトランシーバー モジュールをインストールし、GBIC を使用します。
  • B. コネクタのタイプを SC タイプから F タイプに変更します。
  • C. メディアコンバーターと UTP ケーブルを使用する
  • D. ループバック アダプターを使用して接続します。

正解:C


質問 # 274
次のうち、宛先 IP アドレスを使用してパケットを転送するのはどれですか?

  • A. ルーター
  • B. レイヤ 2 スイッチ
  • C. リピーター
  • D. ブリッジ

正解:A

解説:
Explanation
A router is a device that uses the destination IP address to forward packets between different networks. A bridge and a Layer 2 switch operate at the data link layer and use MAC addresses to forward frames within the same network. A repeater is a device that amplifies or regenerates signals at the physical layer.


質問 # 275
......

N10-008日本語試験問題集でPDF問題とテストエンジン:https://www.goshiken.com/CompTIA/N10-008J-mondaishu.html