FC0-U71 Infrastructure Practice Question
A company wants to manage and secure employee smartphones used for work. Which technology should they implement?
⚠ Common exam trap
FC0-U71 often tests whether candidates confuse network security tools (VPN, DNS, NAT) with endpoint management, so the trap is picking VPN because it sounds security-related.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
MDM
Mobile Device Management (MDM) is the technology designed to enroll, configure, secure, and remotely manage employee smartphones and tablets. It enforces policies such as passcode requirements, encryption, app whitelisting, and remote wipe. This directly addresses the company's need to manage and secure work devices.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
DNS
Why it's wrong here
DNS resolves domain names to IP addresses and offers no mechanism for enrolling, configuring, or wiping employee smartphones. It is tempting because DNS filtering can block malicious domains, but device management requires an MDM platform enforcing policies on the handsets themselves.
- ✗
VPN
Why it's wrong here
A VPN encrypts traffic in transit but provides no device enrolment, policy enforcement, or remote wipe capability. It is tempting because VPNs secure remote connectivity, yet managing and securing smartphones requires mobile device management, which handles configuration, compliance, and device control.
- ✓
MDM
Why this is correct
MDM enforces configuration profiles, encryption and remote wipe across employee smartphones, satisfying the requirement to manage and secure work devices. It centrally applies passcode, patch and application policies to iOS and Android endpoints, giving IT the control needed over mobile hardware that Microsoft Entra ID alone cannot provide.
- ✗
NAT
Why it's wrong here
NAT translates private addresses to public ones for outbound connectivity; it cannot enrol devices, push policies, or remotely wipe smartphones. It is tempting because NAT is ubiquitous in networks, but managing and securing employee handsets requires mobile device management, not address translation.
Go deeper
Related to this question
About these practice questions
One of 988 original FC0-U71 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official CompTIA exam blueprint
This FC0-U71 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the FC0-U71 exam.