Courseiva
Security →mediumMultiple Choice

FC0-U71 Security Practice Question

A user is working from a coffee shop and needs to access the corporate file server. The user connects to the coffee shop's open Wi-Fi network and wants to ensure that the data transmitted between the laptop and the corporate network cannot be read by others on the same network. Which of the following should the user implement?

⚠ Common exam trap

The trap here is assuming that a firewall or disabling file sharing protects data in transit, when only encryption such as a VPN provides confidentiality on an untrusted network.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Use a VPN connection to the corporate network

When using an untrusted network such as open Wi-Fi, data in transit can be intercepted. A VPN encrypts the connection between the user's device and the corporate network, ensuring confidentiality. The other choices either do not encrypt traffic or address local sharing rather than protecting data as it travels, so they fail to meet the user's security need.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Use a VPN connection to the corporate network

    Why this is correct

    A VPN creates an encrypted tunnel between the laptop and the corporate network, protecting data from being read by others on the coffee shop Wi-Fi. Even if an attacker captures the traffic, it remains encrypted and unreadable. This directly addresses the need to keep transmitted data confidential while using an untrusted network, making it the correct solution.

  • ✗

    Change the Wi-Fi network password

    Why it's wrong here

    The coffee shop's Wi-Fi password is controlled by the coffee shop, not the user, and changing it would not encrypt the user's individual traffic. Even on a password-protected network, other users can often capture traffic. The user needs a method to protect data end-to-end, which changing a shared network password does not accomplish.

  • ✗

    Enable the laptop's host-based firewall

    Why it's wrong here

    A host-based firewall controls which network connections are allowed to and from the laptop, but it does not encrypt data in transit. Even with a firewall enabled, traffic sent over the open Wi-Fi can still be captured and read by others on the same network. The user's goal is confidentiality of transmitted data, which a firewall alone does not provide.

  • ✗

    Disable file sharing on the laptop

    Why it's wrong here

    Disabling file sharing prevents others from accessing files stored on the laptop, but it does not protect data being transmitted to the corporate file server. The user's concern is interception of data in transit over the open Wi-Fi. Turning off file sharing leaves the transmitted data unprotected, so it does not satisfy the requirement.

About these practice questions

One of 988 original FC0-U71 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official CompTIA exam blueprint

This FC0-U71 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the FC0-U71 exam.