If you’re preparing for the Security+ SY0-401 exam, you might like to check your readiness with a few Security+ free practice test questions. This page includes three free practice test questions from the following objective in the SY0-301 exam.
Master Security+ Performance Based Questions Video
Objective 1.4 Implement and use common protocols
- IPSec
- SNMP
- SSH
- DNS
- TLS
- SSL
- TCP/IP
- FTPS
- HTTPS
- SFTP
- SCP
- ICMP
- IPv4 vs. IPv6
The full explanations of all these questions are covered in the CompTIA Security+: Get Certified Get Ahead: SY0-401 Study Guide. This study guide includes over 450 realistic practice test questions to help you pass the Security+ exam, the first time you take it.
“Passed exam with this book as my only source”
– Amazon reviewer for
CompTIA Security+: Get Certified Get Ahead: SY0-401 Study Guide
Practice Test Question 1
Q. Which of the following protocols is a file transfer protocol using SSH?
A. SFTP
B. TFTP
C. SICMP
D. CCMP
Answer at end of post.
Learn by listening
Key points from the CompTIA Security+: Get Certified Get Ahead: SY0-401 Study Guide
Over one hour and 20 minutes of audio from the “Remember This” blocks
Over three hours and 20 minutes of questions and answers on audio.
Practice Test Question 2
Q. Your organization is creating a site-to-site VPN tunnel between the main business location and a remote office. What can they use to create the tunnel?
A. WPA2-Enterprise
B. RADIUS
C. NAC
D. IPsec
Answer at end of post.
Available through LearnZapp on your mobile phone
Practice Test Question 3
Q. What protocol is used to monitor and configure network devices?
A. ICMP
B. SFTP
C. SNMP
D. DNS
Answer at end of post.
These practice test questions are from the CompTIA Security+: Get Certified Get Ahead- SY0-401 Practice Test Questions book. It includes 275 realistic practice test questions with in-depth explanations for the CompTIA Security+ SY0-401 exam. If you’ve been studying for this exam and want to test your readiness, this book is for you.
It is also available as Kindle ebook for only $9.99 and the Kindle version also includes dozens of flash cards to help you reinforce key testable topics. You can download free Kindle apps from Amazon so that you can access the ebook from just about any platform including:
- Windows PC
- MAC
- iPhone
- iPad
- Android
- BlackBerry
- Windows Phone 7
You may also like to check out other the Security+ blogs and practice test questions from this link or individually here:
Here are some links to more resources to help you pass the Security+ exam the first time you take it.
- Security+ blogs organized by categories
- Security+ performance based questions
- Security+ study resources
- Security+ acronyms flashcards
- Security+ audio
- Active Fingerprinting vs Passive Fingerprinting
- Ports
- Intrusion Detection Systems and Intrusion Prevention Systems
- DoS, Smurf, and Fraggle Attacks
- Three Factors of Authentication and Multifactor Authentication
SY0-301: Exam Answer 1
Q. Which of the following protocols is a file transfer protocol using SSH?
A. SFTP
B. TFTP
C. SICMP
D. CCMP
A is correct. Secure FTP (SFTP) is a secure implementation of FTP, an extension of Secure Shell (SSH), and transmits data using port 22.
B is incorrect. Trivial FTP is a form of FTP using UDP to transmit smaller amounts of data than FTP.
C is incorrect. ICMP is a diagnostic protocol used by tools such as ping, but there is no such thing as SICMP.
D is incorrect. CCMP is an encryption protocol used with wireless networks.
Objective: 1.4 Implement and use common protocols
Pass the Security+ exam the first time you take it
CompTIA Security+: Get Certified Get Ahead: SY0-401 Study Guide
SY0-301 Exam: Answer 2
Q. Your organization is creating a site-to-site VPN tunnel between the main business location and a remote office. What can they use to create the tunnel?
A. WPA2-Enterprise
B. RADIUS
C. NAC
D. IPsec
Answer D is correct. IPsec is one of many tunneling protocols the organization can use to create a VPN tunnel.
A is incorrect. WPA2-Enterprise is a secure wireless protocol that includes authentication using an 802.1X server (often implemented as RADIUS).
B is incorrect. RADIUS provides authentication but doesn’t create a tunnel.
C is incorrect. NAC provides security for clients such as inspecting them for health, but doesn’t create the tunnel.
Objective: 1.4 Implement and use common protocols
If you’re looking for more information on the CompTIA Security+ exam, click here.
The link provides a listing of relevant blogs on the Get Certified Get Ahead site.
SY0-301: Answer 3
Q. What protocol is used to monitor and configure network devices?
A. ICMP
B. SFTP
C. SNMP
D. DNS
Answer C is correct. Simple Network Management Protocol (SNMP) can monitor and manage network devices such as routers or switches and uses device traps.
A is incorrect. Diagnostic tools such as ping use ICMP and many firewalls block ICMP traffic.
B is incorrect. SFTP is a secure form of FTP used to upload and download files.
D is incorrect. DNS resolves host names to IP addresses.
Objective: 1.4 Implement and use common protocols
If you want to take and pass the Security+ exam the first time you take it, check out the
CompTIA Security+: Get Certified Get Ahead: SY0-401 Study Guide.
Success is within your reach.