Courseiva
mediumMultiple ChoiceObjective-mapped

220-1102 Practice Question: A technician is setting up remote access for a…

A technician is setting up remote access for a salesperson who frequently works from coffee shops. The company uses a VPN with two-factor authentication (2FA). The salesperson reports that after entering their username and password, they receive a prompt for a code but do not have their token. What should the technician do to resolve this?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Provide the user with a one-time bypass code from the administrator console.

This scenario tests knowledge of 2FA troubleshooting. The user has a token but does not have it available. The correct action is to provide a temporary bypass code, which is a standard feature of 2FA systems for such situations. Disabling 2FA would weaken security, and other options are not appropriate.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Disable two-factor authentication for the user's account temporarily.

    Why it's wrong here

    Temporarily disabling two-factor authentication (2FA) for a user's account significantly compromises security by removing a critical layer of protection against unauthorized access. This action leaves the account vulnerable to credential stuffing or phishing attacks, as only a password would then be required. While it would grant access, it is a poor security practice and should be avoided, especially when more secure alternatives like one-time bypass codes exist for legitimate access issues.

  • Provide the user with a one-time bypass code from the administrator console.

    Why this is correct

    Providing a user with a one-time bypass code from the administrator console is the most secure and appropriate solution when a user cannot access their two-factor authentication token. These codes are specifically designed to grant temporary access, typically for a single login session or a short duration, without permanently disabling the security measure. This method allows the user to regain access while maintaining the integrity of the 2FA system and minimizing the overall security risk.

  • Instruct the user to reset their password and try again.

    Why it's wrong here

    Instructing the user to reset their password will not resolve an issue with two-factor authentication. A password reset only addresses the first factor of authentication; the system will still require the second factor, such as a code from an authenticator app or a physical token, after the new password has been successfully entered. Therefore, this action is ineffective for bypassing a 2FA prompt and only adds an unnecessary step for the user.

  • Ask the user to connect from a different network location.

    Why it's wrong here

    Asking the user to connect from a different network location is irrelevant to resolving a two-factor authentication issue. The 2FA prompt is tied to the user's account and the authentication system's configuration, not the originating IP address or network segment. While some security policies might restrict access based on IP, the core 2FA mechanism itself requires a second factor regardless of the network, making this suggestion unhelpful for the stated problem.

Visual reference

Client Recursive Resolver Root DNS (13 root servers) TLD DNS (.com, .org, …) Authoritative example.com query IP addr answer

About these practice questions

Courseiva writes every 220-1202 question from scratch — 495 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 220-1202 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1202 exam.