mediumMultiple ChoiceObjective-mapped
220-1102 Practice Question: A technician is setting up remote access for a…
A technician is setting up remote access for a salesperson who frequently works from coffee shops. The company uses a VPN with two-factor authentication (2FA). The salesperson reports that after entering their username and password, they receive a prompt for a code but do not have their token. What should the technician do to resolve this?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Provide the user with a one-time bypass code from the administrator console.
This scenario tests knowledge of 2FA troubleshooting. The user has a token but does not have it available. The correct action is to provide a temporary bypass code, which is a standard feature of 2FA systems for such situations. Disabling 2FA would weaken security, and other options are not appropriate.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Disable two-factor authentication for the user's account temporarily.
Why it's wrong here
Temporarily disabling two-factor authentication (2FA) for a user's account significantly compromises security by removing a critical layer of protection against unauthorized access. This action leaves the account vulnerable to credential stuffing or phishing attacks, as only a password would then be required. While it would grant access, it is a poor security practice and should be avoided, especially when more secure alternatives like one-time bypass codes exist for legitimate access issues.
- ✓
Provide the user with a one-time bypass code from the administrator console.
Why this is correct
Providing a user with a one-time bypass code from the administrator console is the most secure and appropriate solution when a user cannot access their two-factor authentication token. These codes are specifically designed to grant temporary access, typically for a single login session or a short duration, without permanently disabling the security measure. This method allows the user to regain access while maintaining the integrity of the 2FA system and minimizing the overall security risk.
- ✗
Instruct the user to reset their password and try again.
Why it's wrong here
Instructing the user to reset their password will not resolve an issue with two-factor authentication. A password reset only addresses the first factor of authentication; the system will still require the second factor, such as a code from an authenticator app or a physical token, after the new password has been successfully entered. Therefore, this action is ineffective for bypassing a 2FA prompt and only adds an unnecessary step for the user.
- ✗
Ask the user to connect from a different network location.
Why it's wrong here
Asking the user to connect from a different network location is irrelevant to resolving a two-factor authentication issue. The 2FA prompt is tied to the user's account and the authentication system's configuration, not the originating IP address or network segment. While some security policies might restrict access based on IP, the core 2FA mechanism itself requires a second factor regardless of the network, making this suggestion unhelpful for the stated problem.
Visual reference
Go deeper
Related to this question
Learn chapter
File Systems: NTFS, FAT32, exFAT
Key term
VPN
A VPN creates an encrypted tunnel over a public network to securely connect remote users or sites to a private network.
Key term
Security
Security in IT is the practice of protecting systems, networks, and data from unauthorized access, damage, or theft.
About these practice questions
Courseiva writes every 220-1202 question from scratch — 495 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 220-1202 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1202 exam.