Courseiva

CompTIA Tech+ (FC0-U71) (FC0-U71) — Questions 451–525

988 questions total · 14pages · All types, answers revealed

Page 6

Page 7 of 14

Page 8
451
MCQeasy

A user complains that their laptop battery drains rapidly even while plugged into a docking station that supports USB Power Delivery. The dock is connected with a cable that fits the USB-C port. Which of the following is the MOST likely cause?

A.The docking station is using the USB 2.0 protocol instead of USB 3.2.
B.The dock provides less power than the laptop requires under its current workload.
C.The laptop's battery is failing and can no longer hold a charge.
D.The USB-C cable is a charge-only cable and cannot carry data.
AnswerB

USB Power Delivery negotiates a wattage both sides support. If the dock supplies, for example, 45 W while the laptop needs 65 W or more during heavy use, the battery will slowly discharge to make up the difference even though the dock is connected. This is the classic symptom of an underpowered dock, and it matches the scenario where the cable fits and power is clearly being delivered but the battery still drains.

Why this answer

USB Power Delivery allows a charger and device to agree on a wattage both support. When the dock's maximum output is lower than what the laptop consumes during demanding tasks, the shortfall is drawn from the battery, so the charge level falls even though the dock is connected. Checking the dock's rated wattage against the laptop's power adapter rating reveals the mismatch.

Exam trap

The trap here is assuming that any working USB-C connection automatically supplies enough power to both run the laptop and charge its battery.

452
MCQeasy

A developer needs to store a collection of student names and their corresponding grades. The data should be accessed quickly by student name. Which data structure is most appropriate?

A.Array
B.Queue
C.Stack
D.Dictionary
AnswerD

A dictionary stores key-value pairs, mapping each student name directly to a grade. Hash-based lookup gives average constant-time access by name, satisfying the quick retrieval requirement that a list or array would only meet through linear searching.

Why this answer

A dictionary (also known as a hash map or associative array) stores key-value pairs, allowing O(1) average-time lookups by key. Since the developer needs to access grades quickly by student name, the dictionary's hashing mechanism directly maps each name to its corresponding grade, making it the most appropriate choice.

Exam trap

CompTIA ITF+ often tests the distinction between sequential data structures (arrays, queues, stacks) and associative data structures (dictionaries), trapping candidates who confuse 'ordered collection' with 'keyed access'.

How to eliminate wrong answers

Option A is wrong because an array stores elements by numeric index, not by a string key like a student name, requiring a linear search or manual mapping to find a grade. Option B is wrong because a queue is a FIFO (First-In, First-Out) data structure designed for ordered processing, not for key-based lookups. Option C is wrong because a stack is a LIFO (Last-In, First-Out) data structure used for undo operations or expression evaluation, not for associating names with grades.

453
MCQmedium

Which of the following character encodings can represent characters from virtually all written languages?

A.Unicode/UTF-8
B.EBCDIC
C.Extended ASCII
D.ASCII
AnswerA

Unicode assigns a unique code point to every character across the world's writing systems, and UTF-8 encodes those code points as variable-length byte sequences. This satisfies the requirement to represent characters from virtually all written languages, unlike single-byte encodings such as ASCII or ISO-8859-1, which cover only limited repertoires.

Why this answer

Unicode (UTF-8) is variable-width and supports all languages.

454
Multi-Selecthard

A developer is learning version control. Which THREE of the following are core Git concepts? (Select 3)

Select 3 answers
A.Debugger
B.Branch
C.Compiler
D.Repository
E.Commit
AnswersB, D, E

A branch is a movable pointer to a commit, letting developers diverge from the main line of history and work on isolated changes without affecting other work. This satisfies the stem's requirement for a core Git concept, as branching is fundamental to Git's distributed model and commit graph structure.

Why this answer

Option B (Branch) is correct because a branch in Git is a lightweight movable pointer to a commit, allowing parallel lines of development that can later be merged. Option D (Repository) is correct because the repository (.git directory plus working tree) is the core data store holding all objects, refs, and history that Git operates on. Option E (Commit) is correct because a commit is Git's fundamental snapshot object recording a tree, parent commit(s), author, and message, forming the history graph.

Options A (Debugger) and C (Compiler) are incorrect because they are software development tools unrelated to Git's version-control model; Git neither debugs nor compiles code.

455
MCQhard

An e-commerce application experiences a data anomaly where an order is partially recorded: the order header is saved but some order line items are missing due to a system crash. Which property of database transactions is violated?

A.Consistency
B.Isolation
C.Atomicity
D.Durability
AnswerC

Atomicity treats a transaction as all-or-nothing, so a crash mid-transaction must roll back the saved order header rather than leave partial data. The missing line items show the transaction was not committed as a single unit.

Why this answer

Atomicity ensures that a transaction is treated as a single, indivisible unit of work: either all operations (e.g., saving the order header and all line items) complete successfully, or none are applied. In this scenario, the system crash caused a partial write, leaving the order header committed while line items were lost, which directly violates atomicity. The database should have rolled back the entire transaction upon crash recovery, preventing the partial state.

Exam trap

The trap here is that candidates confuse 'consistency' (which relates to data integrity rules) with the all-or-nothing requirement of atomicity, especially when the partial data appears to violate business logic rather than the transaction boundary.

How to eliminate wrong answers

Option A is wrong because consistency ensures that a transaction transforms the database from one valid state to another, respecting all defined rules (e.g., constraints, triggers); a partially recorded order could still be consistent if the missing line items are allowed by schema, but the core issue is the incomplete unit of work. Option B is wrong because isolation deals with concurrent transaction visibility (e.g., preventing dirty reads or lost updates via locking or MVCC), not with the all-or-nothing completion of a single transaction. Option D is wrong because durability guarantees that once a transaction is committed, its changes survive system failures (e.g., via write-ahead logging); here the header was saved but the line items were not, so the transaction was never fully committed, and durability is not violated.

456
MCQmedium

A student is converting the hexadecimal number 2F to decimal. What is the correct decimal value?

A.59
B.32
C.63
D.47
AnswerD

Hexadecimal 2F converts by expanding place values: 2 × 16¹ = 32, and F represents 15, so 15 × 16⁰ = 15. Summing 32 + 15 gives 47, satisfying the stem's requirement to convert 2F to its decimal equivalent.

Why this answer

Hexadecimal is base-16, so each digit represents a power of 16. For 2F, the '2' is in the 16s place (2 × 16 = 32) and 'F' represents 15 in the 1s place (15 × 1 = 15). Adding these gives 32 + 15 = 47, which is the correct decimal equivalent.

Exam trap

FC0-U71 often tests number-system conversions where candidates forget that hex letters (A–F) map to 10–15, leading them to misread 'F' as a decimal digit or skip it entirely.

How to eliminate wrong answers

Option A (59) is wrong because it results from misreading 'F' as 27 or incorrectly computing 2×16+27; the hex digit F is always 15, not 27. Option B (32) is wrong because it only converts the '2' digit (2 × 16 = 32) and ignores the 'F' entirely. Option C (63) is wrong because it treats the value as if both digits were maxed out (3F would be 63, or it confuses 2F with 3F).

457
MCQhard

A company has a server that hosts a critical database. The server uses RAID 5 with three disks. One disk fails. What is the immediate impact on data availability?

A.Data is available only after replacing the disk
B.The server will shut down
C.All data on the array is lost
D.Data is still available, but performance may degrade
AnswerD

RAID 5 distributes parity across all three disks, so a single disk failure leaves data reconstructable from the surviving disks and parity. The array continues serving data, but reads require parity calculations, degrading performance until the failed disk is rebuilt.

Why this answer

RAID 5 uses block-level striping with distributed parity. With three disks, the array can tolerate a single disk failure without data loss because the parity information on the remaining two disks can reconstruct the missing data on the fly. Therefore, data remains fully available immediately after one disk fails, though read and write performance may degrade due to the overhead of parity calculation and reconstruction.

Exam trap

The trap here is that candidates often confuse RAID 5 with RAID 0, assuming any disk failure causes total data loss, or they mistakenly think the array becomes completely unavailable until the disk is replaced.

How to eliminate wrong answers

Option A is wrong because RAID 5 does not require a replacement disk to maintain data availability; the array continues to operate in a degraded state using parity. Option B is wrong because RAID 5 is designed to survive a single disk failure without shutting down; the server remains operational. Option C is wrong because RAID 5 with three disks provides fault tolerance for one disk failure; data is not lost unless a second disk fails before the first is replaced.

458
MCQmedium

A user needs to install a new application on a Windows 10 computer but does not have administrative privileges. The application requires writing to the Program Files directory and modifying system registry keys. What will happen when the user attempts to install the application?

A.The user will be prompted for administrative credentials via User Account Control.
B.The installation will proceed but the application will run in a limited mode.
C.The application will install to the user's AppData folder automatically.
D.The installation will complete but the application will be unable to launch.
AnswerA

User Account Control (UAC) detects the attempt to write to protected areas and prompts for an administrator's credentials. If the user can provide them, the installation continues with elevated privileges. This is the standard behavior when a standard user tries to perform a task requiring admin rights on Windows 10.

Why this answer

When a standard user attempts an action that requires administrative privileges, such as writing to Program Files or modifying the registry, Windows triggers a User Account Control prompt asking for administrator credentials. If valid credentials are provided, the action proceeds with elevated rights; otherwise, it is blocked. This is the expected behavior on Windows 10.

Exam trap

The trap here is thinking that Windows will automatically find a way to install without admin rights, when in fact it will prompt for credentials or fail.

459
MCQmedium

Which backup strategy involves keeping three copies of data on two different media types with one copy offsite?

A.3-2-1 backup rule
B.Full backup
C.Differential backup
D.Incremental backup
AnswerA

The 3-2-1 rule specifies three copies of data, stored on two different media types, with one copy held offsite. This matches the stem's requirement exactly, providing redundancy against media failure and site-level disasters such as fire or theft.

Why this answer

The 3-2-1 backup rule is a widely recommended strategy that specifies: at least 3 copies of data, on 2 different media types, with 1 copy stored offsite. This ensures redundancy and protection against various failure scenarios, including local disasters. The other options are specific backup types, not strategies for copy distribution.

Exam trap

FC0-U71 often tests the confusion between specific backup types (full, incremental, differential) and overarching backup strategies like the 3-2-1 rule, so candidates must distinguish between the method of copying data and the policy for storing copies.

How to eliminate wrong answers

Option B is wrong because a full backup is a type of backup that copies all data every time, but it does not dictate the number of copies, media types, or offsite storage. Option C is wrong because a differential backup only copies changes since the last full backup, and again does not address the 3-2-1 principle. Option D is wrong because an incremental backup copies only changes since the last backup of any type, and similarly does not involve the 3-2-1 rule.

460
MCQmedium

Which of the following is a key difference between a vulnerability and a threat in cybersecurity?

A.A vulnerability is a potential harm, while a threat is a weakness
B.A vulnerability is always present, while a threat is actively exploited
C.A vulnerability is a weakness, while a threat is a potential danger
D.A vulnerability can be patched, but a threat cannot be mitigated
AnswerC

A vulnerability is an exploitable weakness in a system, whereas a threat is any potential danger or actor that could exploit it. This axis of difference satisfies the stem directly: the weakness versus the danger, not the likelihood or impact of either.

Why this answer

A vulnerability is a weakness or flaw in a system (e.g., unpatched software, misconfiguration) that could be exploited, while a threat is any potential danger or actor that could exploit that weakness (e.g., a hacker, malware, or natural disaster). Option C correctly captures this weakness-versus-danger distinction. Understanding the difference is essential for risk assessment, since risk = threat × vulnerability × impact.

Exam trap

FC0-U71 often tests the vulnerability/threat definition swap; the trap is picking the option that sounds comprehensive (like 'always present' or 'cannot be mitigated') instead of the precise weakness-versus-danger distinction.

How to eliminate wrong answers

Option A is wrong because it reverses the definitions — a vulnerability is a weakness, not a potential harm, and a threat is a potential danger, not a weakness. Option B is wrong because vulnerabilities are not 'always present' (they can be remediated) and threats are not necessarily 'actively exploited' (a threat can be latent). Option D is wrong because threats can absolutely be mitigated (via controls like firewalls, training, or insurance), and some vulnerabilities cannot be patched (e.g., legacy systems), so the statement is both inaccurate and overly absolute.

461
Multi-Selecthard

A startup is choosing a data store for a product catalog where each item may have a different set of attributes, such as a camera with lens mount and sensor size versus a book with ISBN and page count. The catalog is read far more often than it is written, and the schema is expected to change frequently. Which TWO characteristics make a document-oriented NoSQL store a suitable fit? (Choose two.)

Select 2 answers
A.It enforces a fixed column layout that all catalog items must follow
B.Each item can be stored as a self-contained document whose fields vary from item to item
C.It guarantees strict multi-table referential integrity across all catalog records
D.It requires every query to join at least three collections before returning a result
E.The schema can evolve by adding or removing fields in documents without a planned migration of every existing record
AnswersB, E

A document store keeps each catalog item as a single record with its own set of named fields, so a camera record and a book record can coexist without forcing every item to share one rigid column layout. This directly matches the requirement that items carry different attributes and that the shape of records can evolve.

Why this answer

Variable per-item attributes and frequent schema change are the two driving requirements. A document store satisfies both because each item carries its own fields and new fields can be introduced incrementally rather than through a global migration. Fixed column layouts and cross-table integrity guarantees describe relational behavior instead.

Exam trap

The trap here is assuming a flexible data store must also provide the same referential integrity guarantees as a relational database, when those are separate properties.

462
MCQmedium

A user is trying to access a file located at 'C:\Users\John\Documents\report.docx'. This is an example of which type of file path?

A.Symbolic link
B.Relative path
C.Network path
D.Absolute path
AnswerD

The path begins at the drive root 'C:\', giving the full location from the file system's top level. This satisfies the stem's requirement for a path that is unambiguous regardless of the current working directory, unlike a relative path which depends on the present location.

Why this answer

An absolute path specifies the complete location of a file from the root of the file system, including the drive letter on Windows. 'C:\Users\John\Documents\report.docx' starts at the C: drive root and fully qualifies every directory down to the file, so it is an absolute (fully qualified) path. Relative paths, by contrast, are resolved against the current working directory.

Exam trap

The trap is assuming any path containing folders is 'relative' — candidates must check whether the path starts from the root (drive letter or '/') to classify it as absolute.

How to eliminate wrong answers

Option A is wrong because a symbolic link is a special file that points to another file or directory, not a way of describing a path's completeness. Option B is wrong because a relative path would be something like 'Documents\report.docx' or '..\report.docx', resolved from the current directory rather than the drive root. Option C is wrong because a network path uses a UNC format such as '\\server\share\report.docx', not a local drive-letter path.

463
MCQmedium

A user is selecting a web browser for everyday use. Which of the following is NOT a web browser?

A.Microsoft Teams
B.Apple Safari
C.Mozilla Firefox
D.Google Chrome
AnswerA

Microsoft Teams is a collaboration and communication platform, not a web browser. It renders content within its own application shell and does not provide general-purpose URL navigation or browsing features, unlike Chrome, Edge, Firefox or Safari, so it is the correct non-browser answer.

Why this answer

Microsoft Teams is a collaboration and unified communications platform, not a web browser. It provides chat, meetings, calling, and file sharing, and although it has a web client, that client runs inside a browser rather than being one. Safari, Firefox, and Chrome are all dedicated web browsers that render HTML, execute JavaScript, and manage HTTP/HTTPS sessions.

Exam trap

The trap is that Microsoft Teams has a web version, so candidates may assume it is a browser — the exam tests whether you distinguish a web-based application from a browser itself.

How to eliminate wrong answers

Option B is wrong because Apple Safari is a full web browser developed by Apple, available on macOS, iOS, and iPadOS. Option C is wrong because Mozilla Firefox is an open-source web browser maintained by the Mozilla Foundation. Option D is wrong because Google Chrome is a Chromium-based web browser from Google and is currently the most widely used browser worldwide.

464
MCQmedium

Which cloud service model provides users with access to software applications over the internet without managing the underlying infrastructure?

A.PaaS
B.IaaS
C.SaaS
D.DaaS
AnswerC

SaaS delivers fully functional applications over the internet, with the provider managing all underlying infrastructure — servers, storage, networking and runtime. This directly satisfies the stem's constraint of accessing software without managing infrastructure, unlike IaaS or PaaS, where you still control operating systems or deployment environments.

Why this answer

SaaS (Software as a Service) delivers fully functional applications over the internet, with the provider managing all underlying infrastructure — servers, storage, networking, and the application itself. The user simply accesses the software via a browser or client, with no responsibility for patching, scaling, or maintaining the platform. Examples include Microsoft 365, Salesforce, and Google Workspace.

Exam trap

FC0-U71 often tests the boundary between SaaS and PaaS — candidates confuse 'access to software' with 'platform to build software,' so read carefully whether the user is consuming an app or building one.

How to eliminate wrong answers

Option A is wrong because PaaS provides a development and deployment platform (runtime, middleware, OS) on which customers build and host their own applications — the customer still manages the app and data. Option B is wrong because IaaS delivers raw compute, storage, and networking (e.g., EC2, VMs) where the customer manages the OS, middleware, and applications. Option D is wrong because DaaS (Desktop as a Service) delivers virtual desktops to end users, which is a specialized subset of SaaS but not the general model described in the question.

465
MCQmedium

Which of the following malware types is characterized by self-replication without needing to attach to a host file?

A.Worm
B.Virus
C.Trojan
D.Ransomware
AnswerA

A worm self-replicates across networks without attaching to a host file, satisfying the stem's defining constraint. Unlike viruses, which require a host executable to spread, worms propagate independently via exploits or network shares, consuming bandwidth and executing payloads autonomously. This distinction makes worm the precise match for the scenario described.

Why this answer

A worm is a standalone malware program that self-replicates and spreads across networks without requiring a host file or user intervention. It exploits vulnerabilities or uses social engineering to move between systems, often consuming bandwidth and system resources. Unlike viruses, worms do not need to attach themselves to legitimate files to propagate.

Exam trap

FC0-U71 often tests the misconception that all self-replicating malware are viruses, but the key differentiator is the need for a host file; worms are standalone, viruses are not.

How to eliminate wrong answers

Option B is wrong because a virus requires a host file (e.g., an executable or document) to attach to and replicate; it cannot spread independently. Option C is wrong because a Trojan is a type of malware that disguises itself as legitimate software but does not self-replicate; it relies on user execution. Option D is wrong because ransomware is a payload that encrypts files and demands payment, but it does not self-replicate; it is typically delivered via other means like phishing or exploits.

466
MCQmedium

A software tester is verifying that individual functions within a module work correctly in isolation. Which type of testing is being performed?

A.Integration testing
B.Unit testing
C.System testing
D.User acceptance testing
AnswerB

Unit testing verifies individual functions or methods in isolation, typically by the developer, before integration. This matches the stem's scenario of checking single functions within a module independently, distinguishing it from integration testing, which exercises interactions between combined components.

Why this answer

Unit testing verifies individual functions or methods within a module in isolation, which matches the tester's goal of confirming that each function works correctly on its own. It is typically performed by developers using frameworks such as JUnit, NUnit, or pytest, and it precedes integration testing in the software development lifecycle. Because the question specifies 'individual functions within a module... in isolation,' unit testing is the precise match.

Exam trap

The trap here is confusing the level of granularity — candidates see 'module' and jump to integration testing, but the key phrase is 'individual functions... in isolation,' which is the defining characteristic of unit testing.

How to eliminate wrong answers

Option A is wrong because integration testing verifies that multiple units or modules interact correctly together, not functions in isolation. Option C is wrong because system testing validates the complete, integrated application against requirements end-to-end, not individual functions. Option D is wrong because user acceptance testing is performed by end users or business stakeholders to confirm the software meets business needs, not to test internal function logic.

467
MCQhard

A data center administrator is considering virtualization to consolidate multiple physical servers. Which of the following is the PRIMARY benefit of using virtual machines in this environment?

A.Reduction in the total amount of physical hardware needed
B.Increased performance for each application
C.Improved security by isolating applications
D.Better utilization of physical hardware resources
AnswerD

Virtual machines share one physical host's CPU, memory, and storage across many guests, raising utilisation from the low levels typical of one-application-per-server sprawl. This consolidation directly satisfies the stem's primary benefit, whereas redundancy, isolation, and portability are secondary outcomes.

Why this answer

The primary benefit of virtualization in a data center is better utilization of physical hardware resources. By running multiple virtual machines on a single physical host, the hypervisor allows the underlying CPU, memory, and storage to be shared efficiently, reducing idle capacity and maximizing the return on hardware investment.

Exam trap

The trap here is that candidates often mistake a desirable outcome (reduced hardware count) for the primary technical benefit, when the exam expects the underlying principle of resource utilization efficiency.

How to eliminate wrong answers

Option A is wrong because while virtualization often leads to a reduction in the total amount of physical hardware needed, that is a secondary outcome of better resource utilization, not the primary technical benefit. Option B is wrong because virtual machines typically introduce a slight performance overhead due to hypervisor abstraction, so they do not increase performance for each application; in fact, performance may be slightly lower than bare-metal. Option C is wrong because while hypervisors provide isolation between VMs, improved security is a secondary advantage, not the primary driver for consolidation; the main goal is resource efficiency.

468
MCQmedium

A user needs to retrieve all product names and prices from a table named 'Products' where the price is greater than 50. Which SQL statement should be used?

A.SELECT name, price FROM Products WHERE price > 50;
B.GET name, price FROM Products WHERE price > 50;
C.SELECT name, price FROM Products;
D.SELECT * FROM Products WHERE price > 50;
AnswerA

SELECT name, price FROM Products WHERE price > 50; projects only the two required columns and applies the greater-than filter on price, returning exactly the product names and prices requested. The WHERE clause enforces the price constraint.

Why this answer

The correct SQL statement must select the columns 'name' and 'price' from the 'Products' table and filter rows where 'price' is greater than 50. Option A does exactly this with proper SELECT, FROM, and WHERE clauses. It retrieves only the required columns and applies the correct condition.

Exam trap

The trap is selecting Option D because it filters correctly, but the question specifically asks for 'all product names and prices', not all columns — candidates must read the column requirements carefully.

How to eliminate wrong answers

Option B is wrong because 'GET' is not a valid SQL keyword for retrieving data; the correct keyword is 'SELECT'. Option C is wrong because it omits the WHERE clause, so it would return all products regardless of price, not just those over 50. Option D is wrong because although it filters correctly, it uses 'SELECT *' which returns all columns, not just 'name' and 'price' as requested.

469
Multi-Selectmedium

A user wants to install software on a macOS computer. Which TWO file types are commonly used as installer packages on macOS? (Select TWO.)

Select 2 answers
A..pkg
B..exe
C..dmg
D..msi
E..deb
AnswersA, C

.pkg is Apple's native installer package format, containing scripts and payloads that macOS Installer executes to place files and configure the system. It satisfies the installer-package requirement directly, unlike .dmg disk images, which merely mount as volumes.

Why this answer

Option A (.pkg) is correct because macOS uses flat package files (.pkg) as native installer packages that the Installer.app utility opens to place files and run installation scripts. Option C (.dmg) is correct because a disk image (.dmg) is a common macOS distribution container that, once mounted, typically holds an app bundle or a .pkg installer the user runs to install software. Option B (.exe) is not correct because .exe is a Windows executable format that macOS does not natively execute as an installer.

Option D (.msi) is not correct because .msi is a Windows Installer package format used by Windows systems. Option E (.deb) is not correct because .deb is a Debian/Ubuntu Linux package format, not a macOS installer type.

Exam trap

FC0-U71 often tests cross-platform file-extension confusion, so candidates who associate .exe or .msi with 'installer' generically may incorrectly select them for macOS.

470
MCQeasy

A technician runs the ipconfig command and observes the following output: IPv4 Address. . . . . . . . . . . : 192.168.1.10 Subnet Mask . . . . . . . . . . . : 255.255.255.0 Default Gateway . . . . . . . . . : 192.168.1.1 Based on the output, which of the following can the technician conclude?

A.The computer has internet access
B.The DNS server is reachable
C.The computer can communicate on the local network
D.The default gateway is not configured
AnswerC

The 192.168.1.10 address with a 255.255.255.0 mask places the host on the 192.168.1.0/24 subnet, and the gateway 192.168.1.1 sits in that same range. This confirms local subnet communication is possible, though internet reachability is not proven.

Why this answer

The output from commands such as ipconfig or ifconfig typically shows the computer's IP address and subnet mask. A valid IP address on a local subnet (e.g., 192.168.x.x with a 255.255.255.0 mask) indicates the computer can communicate with other devices on the same local network, as no gateway or internet access is required for local communication. The presence of a default gateway does not confirm internet access or DNS reachability without further testing.

Exam trap

The trap is that candidates may see a default gateway listed and assume the computer has internet access, but the output only shows configuration, not connectivity. Without testing reachability (e.g., by pinging the gateway or an external host), internet access cannot be confirmed.

How to eliminate wrong answers

Option A is wrong because the output does not show any successful ping or traceroute to an external IP address or domain, so internet access cannot be confirmed. Option B is wrong because the output does not display any DNS server address or a successful nslookup/dig query, so DNS reachability is not verified. Option D is wrong because the output shows a default gateway of 192.168.1.1, which is configured; the question asks what can be concluded, and the gateway is present, not missing.

471
MCQmedium

A software development team is in the process of gathering requirements from stakeholders, identifying project scope, and creating a project plan. After this phase, they will move to analyzing requirements in detail. In which phase of the SDLC is the team currently working?

A.Analysis
B.Design
C.Implementation
D.Planning
AnswerD

Planning covers requirements gathering, scope definition and project plan creation, which the stem describes as the current work. Detailed requirements analysis belongs to the subsequent analysis phase, so the team has not yet entered it. This matches the SDLC sequence where planning precedes analysis.

Why this answer

The team is gathering requirements, identifying scope, and creating a project plan, which are all activities of the Planning phase in the SDLC. The Analysis phase follows Planning and involves detailed requirement analysis, not the initial gathering and scoping. Therefore, option D is correct.

Exam trap

The trap here is that candidates often confuse 'gathering requirements' with the Analysis phase, but in the SDLC, initial high-level requirements gathering is part of Planning, while detailed analysis happens in the subsequent Analysis phase.

How to eliminate wrong answers

Option A is wrong because the Analysis phase occurs after Planning and focuses on detailed requirement analysis, not initial gathering and scoping. Option B is wrong because the Design phase comes after Analysis and involves creating system architecture and design specifications. Option C is wrong because the Implementation phase is where coding and development happen, after design is complete.

472
Multi-Selecthard

Which THREE of the following are common file formats for images?

Select 3 answers
A..mp3
B..docx
C..gif
D..png
E..jpg
AnswersC, D, E

.gif is a raster image format supporting up to 256 colours, lossless compression and simple animation, which satisfies the stem's requirement for a common image file format. Its palette limitation distinguishes it from .jpg and .png, but it remains a standard web image type alongside those formats.

Why this answer

Option C (.gif) is correct because GIF (Graphics Interchange Format) is a standard raster image format supporting indexed color and animation. Option D (.png) is correct because PNG (Portable Network Graphics) is a common lossless raster image format widely used for web graphics. Option E (.jpg) is correct because JPEG (.jpg) is a ubiquitous lossy compressed raster image format for photographs.

Option A (.mp3) is incorrect because MP3 is an audio compression format, not an image format. Option B (.docx) is incorrect because DOCX is a Microsoft Word document format for text and rich content, not an image format.

Exam trap

The trap here is that candidates may confuse file extensions based on common usage (e.g., .mp3 for music or .docx for documents) rather than recognizing them as non-image formats, leading them to select these incorrect options.

473
MCQeasy

A user is unable to insert a new record into a database table because a required field is missing. Which database concept enforces that a field must have a value?

A.NOT NULL constraint
B.Primary key
C.Index
D.Foreign key
AnswerA

A NOT NULL constraint directly enforces that a column cannot store a missing value, rejecting any insert that omits the required field. This satisfies the stem's constraint precisely: the record fails because the mandatory field has no value, and NOT NULL is the mechanism that blocks such inserts at the database level.

Why this answer

A NOT NULL constraint is a database rule that prevents a field from containing a NULL value, ensuring that a value must be provided for that column when inserting or updating a record. In this scenario, the user cannot insert a new record because the required field is missing, which directly violates the NOT NULL constraint. This constraint is enforced at the database engine level, typically during the INSERT or UPDATE operation, and will raise an error if the field is omitted or set to NULL.

Exam trap

The trap here is that candidates often confuse the NOT NULL constraint with the primary key, thinking that a primary key's uniqueness property is what enforces a required value, but the primary key's NOT NULL behavior is a side effect, not its defining purpose.

How to eliminate wrong answers

Option B (Primary key) is wrong because a primary key uniquely identifies each row in a table and implicitly enforces NOT NULL and uniqueness, but the question specifically asks about a constraint that enforces a field must have a value—a primary key's primary role is uniqueness, not just requiring a value. Option C (Index) is wrong because an index is a data structure that improves query performance by allowing faster data retrieval; it does not enforce any requirement for a field to have a value. Option D (Foreign key) is wrong because a foreign key enforces referential integrity between two tables, ensuring that a value in one table matches a value in another table's primary key; it does not require that a field itself must have a value.

474
MCQhard

A security analyst is explaining the difference between a threat and a vulnerability. Which statement accurately describes this difference?

A.A vulnerability is a risk, and a threat is a countermeasure.
B.A threat is a weakness in a system, and a vulnerability is an attack that exploits it.
C.A threat is a potential cause of harm, and a vulnerability is a weakness that can be exploited.
D.A vulnerability is a potential harm, and a threat is likelihood times impact.
AnswerC

A threat is any potential occurrence or actor that could cause harm, whereas a vulnerability is an internal weakness — such as a flaw or misconfiguration — that a threat can exploit. This distinction separates external causes from exploitable conditions, matching the stem's request to differentiate the two terms accurately.

Why this answer

A vulnerability is a weakness, while a threat is a potential danger that exploits that weakness.

475
MCQeasy

A developer needs to visually represent the logic of a program, including decisions (yes/no branches) and processes. Which tool should the developer use?

A.Data dictionary
B.Algorithm
C.Flowchart
D.Pseudocode
AnswerC

A flowchart uses standardised symbols — diamonds for yes/no decisions and rectangles for processes — to visually map program logic and branching paths. This directly satisfies the stem's requirement to represent decisions and processes, unlike plain pseudocode or a written algorithm, which describe logic textually without symbolic visual structure.

Why this answer

A flowchart is a diagram that visually represents the step-by-step logic of a program using standardized symbols, including diamonds for decisions (yes/no branches) and rectangles for processes. Because the developer needs a visual representation that includes decision branches and processes, a flowchart is the correct tool. Flowcharts are commonly used in the design phase before coding to map control flow clearly.

Exam trap

The trap is conflating 'algorithm' or 'pseudocode' with a visual tool — both describe logic but neither is a diagram, and the question explicitly asks for a visual representation with decision branches.

How to eliminate wrong answers

Option A is wrong because a data dictionary documents data elements, their types, and relationships — it does not visually depict program logic or decision branches. Option B is wrong because an algorithm is the logical procedure or set of steps itself, not a visual representation tool; it can be expressed in many forms. Option D is wrong because pseudocode is a text-based, structured English description of logic, not a visual diagram with decision symbols.

476
MCQmedium

A company wants to ensure that sensitive documents are not readable if a laptop is stolen. Which of the following provides the best protection?

A.Full disk encryption
B.Antivirus software
C.Firewall
D.Strong password on user account
AnswerA

Full disk encryption protects data at rest by encrypting the entire drive, so a thief cannot read sensitive documents without the decryption key. This directly satisfies the constraint that files remain unreadable if the laptop is physically stolen, unlike file-level or password-only protections.

Why this answer

Full disk encryption (FDE) encrypts the entire storage drive, so if a laptop is stolen, the data remains unreadable without the decryption key. It protects data at rest even if the attacker removes the drive or boots from external media. This directly addresses the risk of physical theft.

Exam trap

The trap is that candidates pick 'strong password' thinking it protects the data, but passwords can be bypassed by removing the drive — the exam tests whether you know that only encryption makes data unreadable without the key.

How to eliminate wrong answers

Option B is wrong because antivirus software protects against malware, not physical theft of a device. Option C is wrong because a firewall controls network traffic and does nothing to protect data on a stolen laptop. Option D is wrong because a strong user account password can be bypassed by removing the drive or using offline attacks, and it does not encrypt the data itself.

477
Multi-Selecteasy

Which TWO data types are considered unstructured? (Select exactly two.)

Select 2 answers
A.Email messages
B.Video files
C.Spreadsheet cells
D.Database records
E.Relational data
AnswersA, B

Email content is unstructured, though headers may have some structure.

Why this answer

Email messages are considered unstructured data because they contain free-form text, attachments, and metadata that do not conform to a predefined data model or schema. Unlike structured data stored in rows and columns, email content lacks a fixed format, making it difficult to query directly using traditional database tools.

Exam trap

The trap here is that candidates often confuse 'unstructured' with 'unorganized' and incorrectly assume that email messages are structured because they have fields like To, From, and Subject, but the core content (body and attachments) is free-form and lacks a fixed schema.

478
MCQeasy

A user needs to connect a wireless keyboard and mouse to a desktop computer. Which of the following technologies is most commonly used for this purpose?

A.Wi-Fi
B.Cellular
C.NFC
D.Bluetooth
AnswerD

Bluetooth is the standard short-range wireless technology built into keyboards and mice, pairing directly with a desktop's adapter. Alternatives such as Wi-Fi or NFC do not serve peripheral input, so Bluetooth satisfies the stem's requirement.

Why this answer

Bluetooth is correct because it is the standard wireless technology for connecting peripherals like keyboards and mice to a desktop computer over short distances. It operates in the 2.4 GHz band and is designed for low-power, low-data-rate personal area networks, making it ideal for input devices. Most wireless keyboards and mice use Bluetooth or a proprietary 2.4 GHz USB dongle, but Bluetooth is the most common built-in technology.

Exam trap

The trap is that candidates may choose Wi-Fi because it is also wireless, but Wi-Fi is for networking, not for connecting peripherals like keyboards and mice.

How to eliminate wrong answers

Option A is wrong because Wi-Fi is designed for high-bandwidth network connectivity, not for low-power peripheral connections, and it consumes more power and requires more complex pairing. Option B is wrong because cellular is used for wide-area mobile connectivity, not for connecting a keyboard and mouse to a computer. Option C is wrong because NFC is for very short-range communication (a few centimeters) and is used for payments and pairing, not for continuous peripheral input.

479
MCQeasy

A user is unable to open a .docx file. The user has the correct application installed. Which of the following is the MOST likely cause?

A.The hard drive is full.
B.The operating system is outdated.
C.The network is down.
D.The file is corrupted.
AnswerD

With the correct application already installed, a corrupted .docx is the most likely cause: damaged file structure or content prevents Word from parsing and opening it, typically producing a repair or unreadable-content error rather than a missing-application prompt.

Why this answer

The .docx file is a compressed XML-based format used by Microsoft Word. Even with the correct application installed, if the file's internal structure is damaged (e.g., due to incomplete download, bad sectors, or software crash), the application cannot parse it and will fail to open. File corruption is the most direct cause of an application being unable to open a specific file when the application itself is functional.

Exam trap

The trap here is that candidates may confuse file corruption with environmental issues like disk space or network connectivity, but the question specifies the user has the correct application, so the problem must be with the file itself, not the system or network.

How to eliminate wrong answers

Option A is wrong because a full hard drive would prevent saving new files or cause system instability, but it does not prevent opening an existing .docx file that is already stored. Option B is wrong because an outdated operating system might lack compatibility with newer software versions, but the user has the correct application installed and the .docx format is supported by Word 2007 and later on any supported OS. Option C is wrong because the network being down affects access to remote files or online services, but opening a locally stored .docx file does not require network connectivity.

480
Multi-Selecteasy

Which TWO of the following are recommended practices for physical security in an office environment? (Select two.)

Select 2 answers
A.Locking computer screens when leaving the desk
B.Writing passwords on sticky notes and attaching them to monitors
C.Sharing access badges with colleagues
D.Shredding documents containing sensitive information before disposal
E.Leaving doors propped open for convenience
AnswersA, D

Locking the screen when leaving a desk prevents unauthorised individuals from accessing data or systems on an unattended workstation. This directly addresses physical security by removing the opportunity for shoulder-surfing or walk-up misuse of an open session.

Why this answer

Option A is correct because locking the screen when leaving a desk prevents unauthorized individuals from accessing the system and data in the user's absence, which is a fundamental physical-access control in an office. Option D is correct because shredding documents containing sensitive information before disposal prevents dumpster-diving attacks and unauthorized recovery of confidential data, aligning with secure media disposal practices. Option B is not recommended because writing passwords on sticky notes exposes credentials to anyone who can physically see the monitor, defeating authentication controls.

Option C is not recommended because sharing access badges breaks individual accountability and allows unauthorized entry under someone else's identity. Option E is not recommended because propping doors open bypasses physical access controls and enables tailgating or unauthorized entry into restricted areas.

Exam trap

FC0-U71 often tests whether candidates can distinguish genuine security practices from obviously bad habits; the trap is overthinking and selecting 'sharing badges' as teamwork or 'propping doors' as convenience rather than recognizing them as violations.

481
MCQmedium

A user wants to connect a Bluetooth keyboard to a tablet. What is the first step the user must perform to establish the connection?

A.Pair the devices
B.Connect via USB cable
C.Install a driver
D.Enable NFC
AnswerA

Pairing establishes the trusted link between tablet and keyboard, exchanging the security keys needed before any input can be transmitted. Without pairing first, the tablet cannot recognise or connect to the keyboard, so pairing is the prerequisite step before connection and use.

Why this answer

Before a Bluetooth keyboard can communicate with a tablet, the two devices must be paired, which establishes a trusted relationship and exchanges link keys. Pairing is the first step; only after pairing can the devices connect automatically or manually. USB, drivers, and NFC are not required for standard Bluetooth keyboard setup.

Exam trap

The trap is that some keyboards support USB or NFC-assisted pairing, so candidates may pick a plausible-sounding alternative instead of the universal first step: pairing the devices.

How to eliminate wrong answers

Option B is wrong because connecting via USB cable is a wired connection and is not part of establishing a Bluetooth pairing; some keyboards support USB for charging or as an alternative, but it is not the first Bluetooth step. Option C is wrong because modern operating systems include generic Bluetooth HID drivers, so manual driver installation is typically unnecessary. Option D is wrong because NFC is a separate short-range technology used for tap-to-pair on some devices, but it is not a required or universal first step for Bluetooth pairing.

482
MCQmedium

A company wants to ensure that if one hard drive fails, no data is lost. Which RAID level should be implemented?

A.RAID 5
B.RAID 1
C.JBOD
D.RAID 0
AnswerB

RAID 1 mirrors data identically across two drives, so a single disk failure leaves a complete copy available with no data loss and no rebuild delay. This directly satisfies the requirement for continued data availability after one drive fails.

Why this answer

RAID 1 (mirroring) writes identical data to two or more drives simultaneously, so if one drive fails, the other contains a complete copy of all data, resulting in zero data loss. This directly meets the requirement that no data is lost upon a single hard drive failure.

Exam trap

The trap here is that candidates often confuse RAID 5 as the 'standard' fault-tolerant RAID and forget that RAID 1 is the simplest and most direct solution for zero data loss with a single drive failure, especially when the question does not specify a minimum number of drives or performance requirements.

How to eliminate wrong answers

Option A is wrong because RAID 5 uses distributed parity across all drives and can tolerate a single drive failure without data loss, but it requires a minimum of three drives and involves parity calculations that can impact write performance; however, the question asks for the simplest and most direct answer for zero data loss with a single drive failure, and RAID 1 is the classic choice. Option C is wrong because JBOD (Just a Bunch Of Disks) provides no redundancy or fault tolerance; if one drive fails, all data on that drive is lost. Option D is wrong because RAID 0 (striping) offers no redundancy; it actually increases the risk of data loss because a single drive failure destroys all data in the array.

483
MCQeasy

A junior developer is tasked with fixing a bug where a variable is unexpectedly undefined. The developer suspects the variable is not within scope. Which programming concept describes where a variable can be accessed?

A.Loop
B.Scope
C.Data type
D.Function
AnswerB

Scope defines the region of a program where a variable is visible and accessible. The bug arises because the variable is referenced outside its declared scope, so identifying scope boundaries is the concept that explains where access is permitted.

Why this answer

Scope is the programming concept that defines the region of code where a variable is accessible. If a variable is unexpectedly undefined, it is often because it was declared outside the current block or function, making it out of scope. In JavaScript, for example, variables declared with `let` or `const` inside a block are not accessible outside that block.

Exam trap

The trap here is that candidates confuse 'function' (a code block) with 'scope' (the accessibility region), thinking that simply being inside a function guarantees access, when in reality scope is determined by declaration location and keyword (e.g., `var` vs `let`).

How to eliminate wrong answers

Option A is wrong because a loop is a control structure for repeating code, not a concept that determines variable accessibility. Option C is wrong because a data type defines what kind of value a variable holds (e.g., string, number), not where it can be accessed. Option D is wrong because a function is a reusable block of code, but scope is the broader concept that includes function scope, block scope, and global scope.

484
MCQhard

Refer to the exhibit. PC1 (192.168.1.10) cannot communicate with PC2 (192.168.2.10). What is the most likely cause?

A.PC2 has an incorrect default gateway
B.Router1 lacks a route to the 192.168.2.0/24 network
C.Switch1 is not routing between VLANs
D.PC1 has an incorrect subnet mask
AnswerB

PC1 and PC2 sit on different subnets, so traffic must be routed. Without a route for 192.168.2.0/24 in its routing table, Router1 drops the packets, breaking connectivity. The missing route is the specific fault preventing communication.

Why this answer

Router1 lacks a route to the 192.168.2.0/24 network, so when PC1 sends traffic to PC2, Router1 does not have a destination network entry in its routing table to forward the packets. Without a route, the router drops the packets and may send an ICMP Destination Unreachable message back to PC1. This is the most likely cause because PC1 can reach its default gateway (Router1), but Router1 cannot forward traffic to the remote subnet.

Exam trap

The trap here is that candidates often assume a router automatically knows all networks in a topology, but routers only know directly connected networks unless routes are explicitly configured or learned via a routing protocol.

How to eliminate wrong answers

Option A is wrong because PC2's default gateway is only used when PC2 sends traffic to a different subnet; it does not affect PC1's ability to reach PC2. Option C is wrong because Switch1 is a Layer 2 switch and does not perform routing between VLANs; routing between subnets requires a Layer 3 device like a router. Option D is wrong because if PC1 had an incorrect subnet mask, it would not be able to communicate with its own default gateway or any host on its local subnet, but the problem states PC1 cannot communicate specifically with PC2 on a different subnet, not with its local network.

485
MCQeasy

Which of the following best describes the function of a DNS server?

A.Hosts web pages
B.Forwards traffic between networks
C.Resolves domain names to IP addresses
D.Assigns IP addresses to devices
AnswerC

A DNS server maps human-readable domain names to their corresponding IP addresses, enabling clients to locate services without memorising numeric addresses. This directly satisfies the stem's requirement to describe the server's core function: translating queries such as example.com into routable addresses that devices use to establish connections across IP networks.

Why this answer

A DNS (Domain Name System) server translates human-readable domain names (e.g., www.example.com) into machine-readable IP addresses (e.g., 192.0.2.1). This resolution process is fundamental to network communication, as applications rely on IP addresses to locate and connect to servers. Without DNS, users would need to memorize numeric IP addresses for every website or service.

Exam trap

CompTIA often tests the distinction between DNS and DHCP, as candidates frequently confuse 'resolving names' with 'assigning addresses' — both are critical network services but serve entirely different purposes.

How to eliminate wrong answers

Option A is wrong because hosting web pages is the function of a web server (e.g., Apache, Nginx), not a DNS server. Option B is wrong because forwarding traffic between networks is the role of a router (operating at Layer 3 of the OSI model), not a DNS server. Option D is wrong because assigning IP addresses to devices is the function of a DHCP (Dynamic Host Configuration Protocol) server, which uses UDP ports 67 and 68.

486
MCQeasy

A user installs a productivity suite on a Windows 11 laptop. The license agreement states the software may be installed on only one computer and cannot be copied or modified. Which type of software license does this describe?

A.Open source license
B.Shareware license
C.Freeware license
D.Proprietary license
AnswerD

A proprietary license keeps the source code private and restricts copying, modification, and redistribution. The scenario matches exactly: one installation, no copying, no modification. This is the standard commercial end-user license used by most paid productivity suites, so it is the correct classification.

Why this answer

A proprietary license is the only model that restricts installation to one computer and forbids copying or modifying the software. Open source, freeware, and shareware each permit broader use or imply a trial-then-pay model, none of which match the single-machine, no-copy restriction stated in the scenario.

Exam trap

The trap here is assuming that any no-cost software is open source, when freeware and proprietary free editions still restrict copying and modification.

487
MCQhard

A software engineer is working on a collaborative project and needs to track changes to the source code. Which of the following tools is specifically designed for version control?

A.Compiler
B.Debugger
C.IDE
D.Git
AnswerD

Git is a distributed version control system that records snapshots of source code, enabling branching, merging and history tracking. It directly satisfies the requirement to track changes across a collaborative project, unlike build or ticketing tools.

Why this answer

Git is a distributed version control system (DVCS) designed specifically to track changes to source code, maintain history, and support branching/merging across collaborative teams. It records snapshots of the repository and lets multiple developers work concurrently without overwriting each other's changes. The other tools serve different roles in the development lifecycle and do not provide version history or change tracking.

Exam trap

The trap here is conflating general developer tooling (IDE, compiler, debugger) with version control — candidates may pick 'IDE' because modern IDEs bundle Git integration, but the question asks for the tool specifically designed for version control.

How to eliminate wrong answers

Option A is wrong because a compiler translates source code into machine code or bytecode (e.g., gcc, javac) and has no concept of version history or change tracking. Option B is wrong because a debugger (e.g., gdb) is used to inspect and step through running code to find defects, not to track revisions. Option C is wrong because an Integrated Development Environment (IDE) such as Visual Studio or IntelliJ is a code-editing and build environment that may integrate with Git but is not itself a version control tool.

488
Multi-Selecteasy

Which TWO of the following are characteristics of a client-server network?

Select 2 answers
A.No dedicated server required
B.Resources are shared from servers
C.Centralized management
D.All devices are equal
E.Typically used in small offices with few computers
AnswersB, C

In a client-server network, servers host and provide shared resources such as files, printers, and applications, while clients request them. This centralised resource provisioning is a defining characteristic, distinguishing it from peer-to-peer networks where each node shares its own resources directly.

Why this answer

In a client-server network, resources such as files, printers, and applications are hosted and shared from dedicated servers, which is exactly what option B describes, so B is correct. Option C is also correct because client-server architectures centralize administration—user accounts, security policies, and data are managed on the servers rather than on each individual workstation. Options A and D describe peer-to-peer networking, where no dedicated server is required and all devices act as equals, so they do not fit the client-server model.

Option E is also a peer-to-peer trait, since small offices with few computers typically avoid the cost and complexity of dedicated servers.

Exam trap

CompTIA often tests the misconception that client-server networks can function without a dedicated server, confusing them with peer-to-peer networks where all devices are equal and share resources directly.

489
MCQhard

A software development team is using a version control system to manage their codebase. They want to create an isolated copy of the main codebase to develop a new feature without affecting the main line of development. Which Git operation should they use?

A.git branch
B.git merge
C.git commit
D.git clone
AnswerA

git branch creates a new branch, which is an independent line of development. This allows the team to work on a new feature in isolation without impacting the main branch. Changes made on the branch can later be merged back. This is the standard Git operation for isolating feature work and aligns perfectly with the scenario.

Why this answer

git branch is the correct operation because it creates a new branch, which is an isolated line of development. This allows the team to work on the feature without affecting the main branch. git commit records changes, git merge combines branches, and git clone copies a repository. Only branching provides the required isolation for feature development.

Exam trap

The trap here is confusing branching with cloning; cloning creates a separate repository copy, while branching creates an isolated line within the same repository.

490
MCQmedium

Based on the exhibit, what is the most likely cause of the error?

A.Network outage
B.Power supply failure
C.Bad memory stick
D.Disk error
AnswerD

A disk error, such as a failing drive or unreadable sector, prevents the operating system from accessing required files, producing boot or read failures. The exhibit's error text points to storage-level failure rather than memory, network or application faults.

Why this answer

The exhibit shows a 'Disk Boot Failure' or similar error, which indicates the system cannot find a valid boot sector on the hard drive. This is most commonly caused by a disk error, such as a corrupted master boot record (MBR), bad sectors, or a disconnected data cable. Option D is correct because the error message directly points to a storage device issue, not a network, power, or memory problem.

Exam trap

The trap here is that candidates may confuse a 'Disk Boot Failure' with a memory or power issue because they all can cause the system to fail to start, but the specific error message isolates the problem to the storage device.

How to eliminate wrong answers

Option A is wrong because a network outage would cause connectivity errors (e.g., 'Network Unreachable'), not a boot failure, as booting is a local process independent of network availability. Option B is wrong because a power supply failure would result in the system not powering on at all or sudden shutdowns, not a specific disk-related error message. Option C is wrong because a bad memory stick typically causes system crashes, blue screens (BSOD), or POST beep codes, not a 'Disk Boot Failure' message, which is specific to the storage subsystem.

491
MCQeasy

A user installed a new photo editing application. After opening it, the user receives an error that the application cannot find a required DLL file. Which of the following is the MOST likely cause?

A.The application did not install all necessary components.
B.The application configuration file is corrupted.
C.The computer does not have enough RAM to run the application.
D.The graphics driver is outdated.
AnswerA

A missing DLL indicates the installer failed to deploy a shared library the application links against at runtime, so incomplete installation is the most likely cause. Corrupted media, insufficient permissions or incompatible hardware would produce different errors, not a specific missing-file message.

Why this answer

A DLL (Dynamic Link Library) file is a shared code library that applications call at runtime. If the application installer did not copy all required DLLs to the system (e.g., missing Visual C++ Redistributable or a specific runtime component), the application will fail with a 'DLL not found' error. This is the most common cause because the installation process was incomplete or corrupted, not because of hardware or driver issues.

Exam trap

The trap here is that candidates may confuse a missing DLL error with a corrupted configuration file or hardware insufficiency, but CompTIA tests the understanding that DLL errors are almost always a missing or incomplete installation of shared components, not a hardware or driver fault.

How to eliminate wrong answers

Option B is wrong because a corrupted configuration file (e.g., .ini, .xml, or registry settings) would typically cause application misbehavior or crashes at startup, not a missing DLL error—the OS loader reports missing DLLs before the configuration file is even read. Option C is wrong because insufficient RAM causes out-of-memory errors, slow performance, or application crashes, not a specific 'DLL not found' error; the OS loader can still locate and load DLLs regardless of available RAM. Option D is wrong because an outdated graphics driver would cause rendering issues, display artifacts, or DirectX/OpenGL errors, not a missing DLL error—DLLs are system or application files, not driver files.

492
MCQmedium

A user reports that their laptop's Wi-Fi connection is slow and frequently drops when they are in the living room, but works fine in the office near the router. The router supports both 2.4GHz and 5GHz bands. Which band should the user connect to for better performance in the living room?

A.Cellular
B.5GHz
C.2.4GHz
D.Bluetooth
AnswerC

2.4GHz signals penetrate walls and travel further than 5GHz, which attenuates quickly with distance and obstacles. At living-room range from the router, the 2.4GHz band delivers a more stable, usable connection despite lower peak throughput.

Why this answer

The 2.4GHz band has longer wavelength and better wall penetration, so it maintains a usable signal at greater distances and through obstacles like walls between the office and living room. Although 5GHz offers higher throughput at close range, its shorter wavelength causes faster attenuation through walls, explaining the drops in the living room. For range and obstacle penetration, 2.4GHz is the correct choice.

Exam trap

FC0-U71 often tests the misconception that 'faster band = better band' — candidates pick 5GHz for performance without considering that range and obstacle penetration favor 2.4GHz at distance.

How to eliminate wrong answers

Option A is wrong because cellular is a mobile network technology, not a Wi-Fi band, and is unrelated to the router's 2.4GHz/5GHz choice. Option B is wrong because 5GHz, while faster at close range, has shorter range and poorer wall penetration, which would worsen the living-room experience. Option D is wrong because Bluetooth is a short-range personal area network technology (typically ~10 meters) used for peripherals, not for connecting a laptop to a Wi-Fi router.

493
MCQhard

A developer is creating a cloud-based application that needs to authenticate third-party services before allowing access to its API. The developer decides to use a method where each third-party service receives a unique key that must be included in each API request. This method is known as:

A.Session-based authentication
B.API key authentication
C.Basic authentication
D.OAuth
AnswerB

API key authentication issues each third-party service a distinct key transmitted with every API request, letting the application validate the caller's identity before granting access. This directly satisfies the stem's requirement for a unique per-service credential included in each request, unlike token-based or certificate schemes.

Why this answer

API key authentication issues a unique key to each third-party service, which is then included in every API request (typically in a header or query string) so the server can identify and authorize the caller. This matches the scenario exactly: unique keys per consumer, presented on each request. It is a lightweight, stateless credential mechanism distinct from user-session or delegated-authorization models.

Exam trap

FC0-U71 often tests the confusion between API keys (simple per-service credentials sent on every request) and OAuth (delegated token-based authorization), so candidates pick OAuth whenever 'third-party' appears.

How to eliminate wrong answers

Option A is wrong because session-based authentication relies on the server creating a session (usually via a cookie or session ID) after a user logs in, which is designed for interactive user sessions rather than machine-to-machine third-party API access. Option C is wrong because Basic authentication transmits a base64-encoded username:password pair in the Authorization header, not a unique per-service key, and it is not the mechanism described. Option D is wrong because OAuth is a delegated authorization framework that issues access tokens via an authorization server and flows (e.g., authorization code, client credentials), which is far more complex than simply issuing a unique key per service.

494
MCQeasy

A technician needs to identify a network interface on a device. Which notational system is most commonly associated with MAC addresses?

A.Hexadecimal
B.Binary
C.Octal
D.Decimal
AnswerA

MAC addresses are 48-bit identifiers written as six colon- or hyphen-separated octets, each expressed in hexadecimal (0–9, A–F). Hexadecimal's base-16 grouping maps cleanly onto 8-bit bytes, so this notation uniquely satisfies the stem's requirement for identifying a network interface's hardware address.

Why this answer

MAC addresses are 48-bit identifiers typically written as six groups of two hexadecimal digits separated by colons or hyphens (e.g., 00:1A:2B:3C:4D:5E). Hexadecimal is the notational system most commonly associated with MAC addresses because each byte maps cleanly to two hex digits, making the address compact and readable. This is why network tools, ipconfig/ifconfig output, and switch ARP tables all display MAC addresses in hex.

Exam trap

FC0-U71 often tests basic notational systems — the trap is overthinking it and choosing binary because MAC addresses are 'hardware' addresses, when the standard human-readable format is hexadecimal.

How to eliminate wrong answers

Option B is wrong because although MAC addresses are ultimately binary at the hardware level, binary notation (48 bits of 0s and 1s) is not the common human-readable representation — it would be unwieldy. Option C is wrong because octal is base-8 and is rarely used for MAC addresses; it appears in some Unix file permission contexts, not network hardware addressing. Option D is wrong because decimal is base-10 and is not the standard for MAC addresses, though it may appear in some vendor tools or conversions — the canonical representation is hexadecimal.

495
MCQhard

An organization implements a security control that requires users to swipe a smart card and then enter a PIN to access a secure facility. Which combination of authentication factors does this represent?

A.Something you are and something you have
B.Something you know and something you do
C.Something you have and something you know
D.Something you know and something you are
AnswerC

A smart card is a physical token, satisfying something you have, while the PIN is memorised knowledge, satisfying something you know. Combining these two distinct factor categories constitutes multi-factor authentication, exactly as the stem's swipe-then-PIN control requires.

Why this answer

A smart card is a physical token the user possesses, satisfying 'something you have,' while a PIN is a memorized secret, satisfying 'something you know.' Combining these two different factor categories constitutes multi-factor authentication (MFA), which is stronger than single-factor or same-category authentication. This is a classic two-factor physical access control scenario.

Exam trap

The trap is that candidates must correctly categorize each credential into the right factor class — many mistakenly classify a PIN as 'something you are' or a smart card as 'something you know,' or fail to recognize that two different categories are required for MFA.

How to eliminate wrong answers

Option A is wrong because 'something you are' refers to biometrics (fingerprint, iris, face), and no biometric factor is present here. Option B is wrong because 'something you do' refers to behavioral biometrics like typing rhythm or gait, which are not involved. Option D is wrong because it pairs 'something you know' with 'something you are,' but the smart card is a possession factor, not a biometric.

496
MCQhard

An employee receives a phone call from someone claiming to be from the IT department. The caller states there is a security issue and requests the employee's login credentials to 'fix the problem'. What should the employee do?

A.Give a temporary password to see if the issue resolves.
B.Provide the credentials because the caller sounds knowledgeable.
C.Hang up and call the IT department using the official number.
D.Ask for a call-back number and verify the caller's identity later.
AnswerC

Verifying the caller through the IT department's official number defeats caller-ID spoofing, since the employee initiates contact rather than trusting an inbound request. Legitimate IT staff never need credentials, so refusing and independently confirming is the correct response.

Why this answer

The employee should never provide credentials in response to an unsolicited request, even if the caller sounds knowledgeable. Hanging up and calling the IT department using the official number ensures the request is verified through a trusted communication channel, preventing a social engineering attack such as phishing or pretexting.

Exam trap

The trap here is that candidates may think verifying the caller's identity later (Option D) is sufficient, but the correct procedure is to immediately terminate the call and independently verify using a trusted number, as call-back numbers can be spoofed or part of a coordinated attack.

How to eliminate wrong answers

Option A is wrong because providing even a temporary password could allow an attacker to gain unauthorized access, especially if the temporary password is later used to reset the actual credentials. Option B is wrong because the caller sounding knowledgeable is a common social engineering tactic; technical knowledge does not verify identity, and credentials should never be shared over the phone. Option D is wrong because asking for a call-back number does not guarantee the caller is legitimate; the number could be a spoofed or compromised line, and the employee should independently verify using a known official number.

497
Multi-Selecthard

Which THREE of the following are examples of multi-factor authentication? (Select three.)

Select 3 answers
A.A smart card and a PIN
B.A password and a fingerprint scan
C.A retina scan and a fingerprint scan
D.A username and password
E.A one-time code sent to a phone and a password
AnswersA, B, E

A smart card (something you have) combined with a PIN (something you know) draws on two distinct authentication factors, satisfying multi-factor authentication. Possession of the card alone or knowledge of the PIN alone is insufficient, so both categories must be presented to authenticate.

Why this answer

Multi-factor authentication (MFA) requires combining factors from different categories: something you know (password, PIN), something you have (smart card, phone, token), and something you are (biometrics such as fingerprint or retina scan). Option A is correct because a smart card (something you have) plus a PIN (something you know) combines two distinct factor types. Option B is correct because a password (something you know) plus a fingerprint scan (something you are) also mixes two different factor categories.

Option E is correct because a one-time code sent to a phone (something you have) plus a password (something you know) likewise draws on two separate factor types. Option C does not qualify because a retina scan and a fingerprint scan are both biometrics, i.e., two instances of the same 'something you are' factor. Option D does not qualify because a username and password are both 'something you know' and represent a single authentication factor.

Exam trap

FC0-U71 often tests whether candidates confuse 'multiple authentication steps' with 'multiple authentication factors' — picking two passwords or two biometrics because they look like two checks, when MFA strictly requires different factor categories.

498
MCQeasy

A user needs to store customer information including name, address, and order history. Which database type is most appropriate?

A.Hierarchical database
B.Flat-file database
C.NoSQL database
D.Relational database
AnswerD

Customer name, address and order history form structured, related entities with defined fields and relationships. A relational database enforces schemas and joins across customer and order tables, preserving referential integrity and supporting the querying this scenario requires.

Why this answer

A relational database is the most appropriate choice because it organizes data into tables with rows and columns, allowing efficient storage and retrieval of structured customer information (name, address) while supporting relationships to order history via foreign keys. This structure enables ACID compliance and complex queries using SQL, which is ideal for transactional data with clear schema requirements.

Exam trap

The trap here is that candidates often choose NoSQL databases (Option C) because they assume 'order history' implies large-scale or flexible data, but the question specifies structured customer information with clear relationships, making relational databases the correct fit for ACID-compliant transactional integrity.

How to eliminate wrong answers

Option A is wrong because hierarchical databases organize data in a tree-like structure with parent-child relationships, which is inflexible for modeling many-to-many relationships between customers and orders without redundancy. Option B is wrong because flat-file databases store all data in a single table or file, leading to data duplication and difficulty managing related entities like order history without manual normalization. Option C is wrong because NoSQL databases are designed for unstructured or semi-structured data and horizontal scaling, but they lack the strict schema enforcement and relational integrity needed for consistent customer-order associations.

499
MCQmedium

Refer to the exhibit. The user is unable to browse the internet using domain names but can access websites by IP address. Which configuration is most likely incorrect?

A.IPv4 address
B.Subnet mask
C.DNS server addresses
D.DHCP enabled
AnswerC

Incorrect DNS server addresses prevent name resolution, so domain-name lookups fail while direct IP routing still works. Since the user reaches websites by IP address, the network path is intact; only the resolver configuration is broken. Correcting the DNS server entries restores browsing by domain name.

Why this answer

The user can access websites by IP address but not by domain name, which indicates that DNS resolution is failing. The DNS server addresses configuration is most likely incorrect, as the client cannot translate domain names to IP addresses without a valid DNS server. This is a classic symptom of a misconfigured or missing DNS server setting.

Exam trap

The trap here is that candidates often confuse DNS failure with general connectivity issues, but the ability to browse by IP address proves that routing and IP configuration are correct, isolating the problem to DNS server settings.

How to eliminate wrong answers

Option A is wrong because an incorrect IPv4 address would prevent all network communication, including accessing websites by IP address. Option B is wrong because an incorrect subnet mask would cause local network connectivity issues but would not specifically break DNS resolution while allowing direct IP access. Option D is wrong because DHCP being enabled or disabled does not directly cause DNS failure; even with static IP configuration, DNS servers can be manually set correctly.

500
Multi-Selectmedium

Which TWO of the following are examples of popular relational database management systems (RDBMS)? (Select TWO.)

Select 2 answers
A.Cassandra
B.MySQL
C.MongoDB
D.PostgreSQL
E.Redis
AnswersB, D

MySQL is a widely deployed open-source relational database management system, storing data in tables with SQL querying and ACID transactions. It satisfies the stem's requirement for a popular RDBMS example, distinguishing it from NoSQL or non-relational alternatives.

Why this answer

MySQL (B) is a widely used open-source relational database management system that stores data in tables with rows and columns and supports SQL, making it a correct example of an RDBMS. PostgreSQL (D) is likewise a popular open-source relational database management system that enforces ACID transactions, foreign keys, and SQL compliance, so it also qualifies as an RDBMS. The remaining options are non-relational: Cassandra (A) is a distributed wide-column NoSQL store, MongoDB (C) is a document-oriented NoSQL database, and Redis (E) is an in-memory key-value data store, none of which implement the relational table-and-SQL model.

Exam trap

FC0-U71 often tests whether candidates can distinguish RDBMS from NoSQL by name recognition alone — MongoDB, Cassandra, and Redis are frequently mistaken for relational databases because they are all 'databases,' but only MySQL and PostgreSQL use relational tables and SQL.

501
MCQeasy

Which of the following units represents the largest amount of data?

A.Megabyte (MB)
B.Terabyte (TB)
C.Gigabyte (GB)
D.Kilobyte (KB)
AnswerB

A terabyte equals 1,024 gigabytes, exceeding gigabyte, megabyte and kilobyte, making it the largest unit listed. The axis of difference is the binary order of magnitude: each step multiplies by 1,024, so TB sits three orders above GB.

Why this answer

A terabyte (TB) is the largest unit among the options, equal to approximately 1,000 gigabytes or 1 trillion bytes (decimal) / 1,099,511,627,776 bytes (binary TiB). The hierarchy from smallest to largest here is kilobyte < megabyte < gigabyte < terabyte, each step being roughly 1,000x (decimal) or 1,024x (binary).

Exam trap

FC0-U71 often tests unit ordering with familiar-sounding terms — the trap is that candidates may confuse the prefixes (kilo, mega, giga, tera) or forget that tera is larger than giga.

How to eliminate wrong answers

Option A is wrong because a megabyte (MB) is smaller than a terabyte — 1 TB ≈ 1,000,000 MB. Option C is wrong because a gigabyte (GB) is smaller than a terabyte — 1 TB ≈ 1,000 GB. Option D is wrong because a kilobyte (KB) is the smallest unit listed — 1 TB ≈ 1,000,000,000 KB.

502
MCQhard

A server has four hard drives configured in RAID 5. One drive fails. What must the technician do to restore full redundancy?

A.Replace all drives and reconfigure RAID
B.Simply replace the drive with a larger capacity drive
C.Replace the failed drive and rebuild the array
D.Replace the failed drive and restore from backup
AnswerC

RAID 5 stores parity across all member disks, letting data be reconstructed from the surviving three drives. Fitting a replacement disk and rebuilding restores redundancy; until the rebuild completes, the array runs degraded with no further fault tolerance.

Why this answer

RAID 5 uses distributed parity across all drives, allowing the array to tolerate a single drive failure without data loss. When a drive fails, the technician must replace the failed drive and then rebuild the array, during which the RAID controller reconstructs the missing data from the parity information on the remaining drives. This restores full redundancy by returning the array to a fault-tolerant state.

Exam trap

The trap here is that candidates may think a simple drive replacement automatically restores redundancy, but they must understand that the array must be explicitly rebuilt (either automatically or manually) to regenerate the missing data from parity.

How to eliminate wrong answers

Option A is wrong because replacing all drives and reconfiguring RAID is unnecessary and causes data loss; RAID 5 can recover from a single drive failure by rebuilding onto a new drive. Option B is wrong because simply replacing the failed drive with a larger capacity drive does not automatically trigger a rebuild, and RAID 5 typically requires drives of the same size; the array must be explicitly rebuilt to restore redundancy. Option D is wrong because restoring from backup is an extreme measure that is not required; RAID 5's parity mechanism allows direct rebuild without backup, and backup should only be used if multiple drives fail or the rebuild fails.

503
MCQeasy

A user wants to ensure data confidentiality. Which action is most appropriate?

A.Encrypt files
B.Change password
C.Share with everyone
D.Delete files
AnswerA

Encryption renders file contents unreadable without the correct decryption key, so intercepted or stolen data cannot be interpreted. That directly enforces confidentiality, which the user explicitly wants, whereas hashing, backups or access logs address integrity, availability or accountability instead.

Why this answer

Encrypting files using algorithms like AES-256 ensures that even if unauthorized users gain access to the data, they cannot read it without the decryption key. This directly addresses the goal of data confidentiality by transforming plaintext into ciphertext that is unreadable without the proper key.

Exam trap

The trap here is that candidates often confuse authentication (changing a password) with confidentiality (encryption), assuming that restricting access alone is sufficient to keep data secret, but encryption is the only mechanism that protects data at rest from unauthorized viewing.

How to eliminate wrong answers

Option B is wrong because changing a password controls access but does not protect the confidentiality of data already stored; an attacker who bypasses authentication can still read unencrypted files. Option C is wrong because sharing with everyone explicitly violates confidentiality by granting unauthorized access to the data. Option D is wrong because deleting files removes the data but does not protect confidentiality during its lifecycle; deleted files can often be recovered from disk using forensic tools, and deletion does not prevent exposure before deletion.

504
Multi-Selecthard

A help desk technician is coaching a new employee on how to recognize social engineering attempts that arrive by phone and text message rather than email. Which TWO characteristics should the technician tell the employee to treat as warning signs? (Choose two.)

Select 2 answers
A.The message is sent during normal business hours from a number the employee does not recognize
B.The caller refuses to provide a callback number and pressures the employee to read aloud a one-time verification code
C.The caller creates urgency by claiming the account will be locked within minutes unless information is confirmed
D.The text message contains a company logo and a polite greeting
E.The message arrives on a company-issued mobile phone
AnswersB, C

Refusing a callback number prevents the target from independently verifying the caller's identity, which is exactly what an impostor wants. Requesting a one-time code is a serious red flag because those codes exist to prove possession of the account holder's device, and sharing one can hand over an active session. Together these behaviors indicate an attempt to bypass multifactor authentication.

Why this answer

Social engineering succeeds by manipulating people rather than technology, so the reliable indicators concern the pressure tactics and verification refusals used by the attacker. Demanding immediate action and blocking independent verification while requesting a one-time code both point to an attempt to bypass normal identity checks. Familiar-looking branding, timing, and the receiving device are all easily imitated and therefore poor signals.

Exam trap

The trap here is treating cosmetic details such as logos, polite wording, or the phone used as evidence of legitimacy instead of focusing on the pressure and verification behavior.

505
MCQmedium

Refer to the exhibit. What is the purpose of the 'no shutdown' command in this router configuration?

A.Remove the IP address
B.Reset the interface configuration
C.Disable the interface
D.Enable the interface
AnswerD

The 'no shutdown' command administratively enables a router interface, reversing its default disabled state. Interfaces arrive shut down, so this satisfies the exhibit's requirement to bring the configured port into an operational, up state so it can pass traffic.

Why this answer

The 'no shutdown' command is used in Cisco IOS to administratively bring an interface from the 'administratively down' state to an operational 'up/up' state. By default, many router interfaces are placed in a shutdown state upon initial configuration, and issuing 'no shutdown' enables the interface to send and receive traffic.

Exam trap

CompTIA often tests the misconception that 'no shutdown' is used to remove a configuration or reset an interface, when in fact it specifically toggles the administrative state from disabled to enabled.

How to eliminate wrong answers

Option A is wrong because 'no shutdown' does not remove the IP address; the 'no ip address' command is used to remove an IP address from an interface. Option B is wrong because 'no shutdown' does not reset the interface configuration; the 'default interface' command resets an interface to its factory defaults. Option C is wrong because 'no shutdown' is the opposite of disabling an interface; the 'shutdown' command disables the interface, while 'no shutdown' enables it.

506
MCQhard

A web application uses a JavaScript function to validate user input on a registration form. The function checks that the password is at least 8 characters long and contains a number. When a user submits the form with a password "abc123", the validation passes even though the password has only 6 characters. The developer examines the code and finds that the function uses the condition: if (password.length >= 8 || /\d/.test(password)). Which logical error is causing this bug?

A.The condition uses OR instead of AND.
B.The function is not called.
C.The regular expression is incorrect.
D.The length check is incorrect because it uses >= instead of >.
AnswerA

The OR operator makes the condition true when either test passes, so "abc123" satisfies the digit check despite failing the length check. Replacing OR with AND would require both the eight-character minimum and a number, fixing the validation bug.

Why this answer

The condition uses OR (||) instead of AND (&&), so the validation passes if either condition is true. "abc123" has a number, so it passes. The regular expression is correct, length check is appropriate, and the function is called.

507
Multi-Selectmedium

A company is choosing between public, private, and hybrid cloud deployments. Which TWO statements correctly describe characteristics of these cloud models? (Select TWO.)

Select 2 answers
A.Public cloud offers the highest level of control over security.
B.Private cloud requires no upfront capital expenditure.
C.In a public cloud, resources are shared among multiple organizations.
D.A private cloud is owned and operated by a third-party provider.
E.A hybrid cloud combines public and private cloud resources.
AnswersC, E

In a public cloud, compute, storage and network resources are pooled and shared across multiple tenants, with isolation enforced by the provider. This satisfies the stem by correctly describing the multi-tenant resource-sharing characteristic of public cloud.

Why this answer

Option C is correct because in a public cloud deployment, the cloud provider's infrastructure (compute, storage, networking) is multi-tenant, meaning resources are pooled and shared among many different organizations, which is the defining characteristic of public cloud. Option E is correct because a hybrid cloud is precisely defined as a composition of two or more distinct cloud infrastructures (typically a private cloud plus a public cloud) that remain unique entities but are bound together by technology enabling data and application portability. Option A is incorrect because public cloud generally offers the least direct control over security, since the provider manages the underlying infrastructure; private cloud typically gives the highest control.

Option B is incorrect because a private cloud usually requires significant upfront capital expenditure for hardware and infrastructure, unlike public cloud's pay-as-you-go model. Option D is incorrect because a private cloud is owned and operated by the organization itself (or a dedicated third party exclusively for that organization), not by a third-party provider on shared infrastructure as described.

Exam trap

FC0-U71 often tests cloud models by swapping characteristics — the trap is that candidates assume public cloud gives more control (it gives less) or that private cloud is cheap (it requires high CAPEX).

508
MCQmedium

An application is displaying an error message: "Cannot write to file. The file may be read-only or in use by another application." Which of the following is the LEAST likely cause?

A.The file has been deleted.
B.The file system is full.
C.The file is open in another program.
D.The user does not have write permissions.
AnswerA

A deleted file produces a "file not found" error, not a write failure. Read-only attributes and locks held by other processes both block writing, so deletion is the least likely explanation for the message shown.

Why this answer

If the file has been deleted, the error message would typically be 'File not found' or 'The system cannot find the file specified,' not a write failure related to read-only status or another application's lock. The error specifically indicates a write conflict or permission issue, not a missing file. Therefore, a deleted file is the least likely cause among the options.

Exam trap

The trap here is that candidates may assume a deleted file could cause a write error, but the specific wording 'read-only or in use' points to permission or locking issues, not a missing file, which would produce a distinct error message.

How to eliminate wrong answers

Option B is wrong because a full file system prevents new data from being written, which can produce an error about being unable to write to the file, often with messages like 'Disk full' or 'No space left on device.' Option C is wrong because if the file is open in another program, the operating system (e.g., Windows with exclusive locks) will deny write access, generating exactly this type of error. Option D is wrong because lacking write permissions (e.g., NTFS ACLs or Unix file mode bits) will cause a write denial, often reported as 'Access denied' or 'Cannot write to file' depending on the application.

509
Multi-Selectmedium

Which TWO of the following are examples of NoSQL database types?

Select 2 answers
A.Spreadsheet
B.Relational database
C.Flat file
D.Document store
E.Key-value store
AnswersD, E

Document stores hold semi-structured data as JSON-like documents, each with its own schema, and are a recognised NoSQL category alongside key-value, column-family and graph stores. This satisfies the stem's requirement for a NoSQL database type.

Why this answer

A document store (D) is a NoSQL database type that stores semi-structured data as JSON-like documents (e.g., MongoDB, CouchDB), allowing flexible, schema-less records. A key-value store (E) is also a NoSQL type that maps unique keys to values for fast lookups (e.g., Redis, DynamoDB), which is a core category of NoSQL databases. Spreadsheets (A) are productivity tools, not database types, and lack the querying and scaling characteristics of databases.

A relational database (B) is the SQL model using tables, rows, and columns with fixed schemas, so it is not NoSQL. A flat file (C) is a simple file format for storing data, not a NoSQL database category.

Exam trap

FC0-U71 often tests whether candidates can distinguish NoSQL database TYPES from generic data storage formats — spreadsheets and flat files are storage formats, not NoSQL categories, and relational databases are the opposite of NoSQL.

510
MCQmedium

A small business wants to replace its on-premises email server with a service where the provider manages the servers, patching, and uptime. Employees will access email through a web browser and mobile apps. Which cloud service model is the business adopting?

A.Platform as a Service (PaaS)
B.Desktop as a Service (DaaS)
C.Software as a Service (SaaS)
D.Infrastructure as a Service (IaaS)
AnswerC

SaaS delivers a complete, provider-managed application over the internet. The provider owns the servers, applies patches, and guarantees uptime, while users simply log in through a browser or mobile app. This exactly matches the email replacement described, making SaaS the correct cloud service model for the scenario.

Why this answer

SaaS is the only model where the provider manages the entire application stack, including servers, patching, and uptime, while users consume the software through a browser or app. IaaS and PaaS leave significant management to the customer, and DaaS delivers desktops rather than a managed email application.

Exam trap

The trap here is confusing a managed application with a managed platform, when the business is consuming finished email software rather than building on a runtime.

511
MCQhard

During a sprint retrospective, the team identifies that too many bugs are being discovered late in the development cycle. They decide to introduce a practice where developers write tests for individual functions before coding the functions themselves. This approach is an example of:

A.User acceptance testing
B.Integration testing
C.System testing
D.Unit testing
AnswerD

Unit testing exercises individual functions in isolation, so writing those tests before implementation — test-driven development — forces developers to define expected behaviour up front. That early verification catches defects at the function level during the sprint, directly addressing the stem's constraint of bugs being discovered late in the development cycle.

Why this answer

Writing tests for individual functions before writing the functions themselves is the definition of unit testing, and doing so before coding is specifically test-driven development (TDD). Unit tests isolate the smallest testable pieces of code (functions, methods) to verify correctness. This matches the scenario's focus on individual functions and early bug detection.

Exam trap

FC0-U71 often tests the confusion between unit testing (individual functions, done early, often TDD) and integration/system/UAT testing (later, broader scope), so candidates pick the broader test type when the question emphasizes 'individual functions.'

How to eliminate wrong answers

Option A is wrong because user acceptance testing (UAT) is performed by end users or business stakeholders to confirm the system meets business requirements, typically near the end of the cycle — the opposite of early function-level testing. Option B is wrong because integration testing verifies that multiple modules or services work together, not individual functions in isolation. Option C is wrong because system testing validates the complete, integrated system against requirements, which occurs after unit and integration testing, not before coding functions.

512
Multi-Selectmedium

A user wants to install a program on their Ubuntu Linux system. Which TWO file extensions are commonly used for Linux installer packages? (Select TWO.)

Select 2 answers
A..deb
B..dmg
C..exe
D..rpm
E..msi
AnswersA, D

The .deb format is the native package format for Debian-based distributions, including Ubuntu. It satisfies the stem's Ubuntu constraint directly, since Ubuntu derives from Debian and its package manager, dpkg, installs .deb files. Other Linux families use different formats, such as .rpm on Red Hat-based systems.

Why this answer

Option A (.deb) is correct because Debian-based distributions such as Ubuntu use .deb packages, which are installed with dpkg or apt (e.g., apt install ./package.deb). Option D (.rpm) is correct because .rpm is the standard package format used by RPM-based Linux distributions like Red Hat Enterprise Linux, Fedora, and openSUSE, and it is commonly recognized as a Linux installer package format. Option B (.dmg) is incorrect because it is a macOS disk image format, not a Linux package.

Option C (.exe) is incorrect because it is a Windows executable format. Option E (.msi) is incorrect because it is a Windows Installer package format.

513
Multi-Selecthard

A technician is preparing a Windows workstation for a user who needs to run a legacy line-of-business program that requires specific runtime libraries and direct access to a hardware security key. The technician must choose installation and configuration steps that support these requirements. Which TWO actions are appropriate? (Choose two.)

Select 2 answers
A.Configure the application to run in compatibility mode for an older version of Windows.
B.Convert the system drive to a different file system before installing the application.
C.Disable User Account Control for all users on the workstation.
D.Install the required runtime libraries before launching the legacy application.
E.Install the driver and middleware required for the hardware security key.
AnswersD, E

Legacy applications often depend on specific runtime libraries, such as particular versions of a framework or runtime, that are not present on a modern default Windows installation. Installing those libraries first ensures the program can load its dependencies and start correctly. This is a direct, necessary step to meet the stated requirement for specific runtime libraries.

Why this answer

The legacy program requires specific runtime libraries and access to a hardware security key. Installing the runtime libraries first ensures the application can load, and installing the key's driver and middleware enables the application to communicate with the hardware. Compatibility mode, disabling User Account Control, and changing the file system do not meet those two specific requirements.

Exam trap

The trap here is treating compatibility mode as a cure-all for legacy software when the real blockers are missing runtime libraries and missing hardware driver support.

514
MCQeasy

A programmer writes a step-by-step description of a solution in plain English without using any specific programming language syntax. What is this description called?

A.Source code
B.Bug report
C.Flowchart
D.Pseudocode
AnswerD

Pseudocode expresses an algorithm's logic in structured plain English, free of any language's syntax rules, so it can be read and verified by anyone. This directly satisfies the stem's constraint: a step-by-step solution description written without language-specific syntax.

Why this answer

Pseudocode is a plain-language, step-by-step description of an algorithm that uses programming-like constructs but no specific language syntax. It is used to plan logic before coding. Source code is actual code in a programming language, a bug report documents defects, and a flowchart uses symbols to represent flow.

Exam trap

FC0-U71 often tests the distinction between pseudocode and a flowchart—candidates may confuse the textual step-by-step nature of pseudocode with the graphical symbols of a flowchart.

How to eliminate wrong answers

Option A is wrong because source code is written in a specific programming language with correct syntax, not plain English. Option B is wrong because a bug report describes a defect or issue, not a solution algorithm. Option C is wrong because a flowchart is a graphical representation using standard symbols (ovals, rectangles, diamonds) to depict process flow, not a textual step-by-step description.

515
MCQeasy

Which device is used to connect multiple devices within the same network segment and forward data based on MAC addresses?

A.Hub
B.Modem
C.Switch
D.Router
AnswerC

A switch operates at Layer 2, maintaining a MAC address table and forwarding frames only to the port associated with the destination MAC. This segments collision domains and delivers traffic within the same network segment, unlike a hub which floods every port.

Why this answer

A switch operates at Layer 2 (Data Link Layer) of the OSI model and uses MAC addresses to make forwarding decisions. It maintains a MAC address table (CAM table) to learn which port each device is connected to, allowing it to forward frames only to the intended destination port, reducing collisions and improving network efficiency.

Exam trap

The trap here is that candidates often confuse a switch with a hub because both connect multiple devices, but the key distinction is that a switch forwards based on MAC addresses while a hub simply repeats signals without any addressing logic.

How to eliminate wrong answers

Option A is wrong because a hub operates at Layer 1 (Physical Layer) and simply repeats electrical signals out all ports, without any intelligence to read or forward based on MAC addresses. Option B is wrong because a modem (modulator-demodulator) converts digital signals to analog for transmission over telephone or cable lines and does not forward data within a local network segment based on MAC addresses. Option D is wrong because a router operates at Layer 3 (Network Layer) and forwards packets based on IP addresses, not MAC addresses, and is used to connect different network segments or subnets.

516
MCQeasy

A home user wants to connect a desktop computer to the internet using a wireless connection. The computer does not have built-in Wi-Fi. What is the simplest and most cost-effective solution? The user has a wireless router already installed and working.

A.Install a wireless network adapter (USB or PCIe)
B.Use a powerline adapter to extend the network
C.Replace the computer with a laptop that has Wi-Fi
D.Run an Ethernet cable from the router to the computer
AnswerA

A USB or PCIe wireless adapter adds 802.11 capability to a desktop lacking built-in Wi-Fi, using the existing router's access point. It costs far less than replacing the router or running cabling, and needs no reconfiguration of the network.

Why this answer

A wireless network adapter (USB or PCIe) adds Wi-Fi capability to a desktop that lacks it, directly connecting to the existing wireless router. This is the simplest and most cost-effective solution because it requires no new infrastructure or cabling, and USB adapters are plug-and-play with minimal setup.

Exam trap

The trap here is that candidates may overthink the solution and choose a more complex option like powerline adapters or Ethernet, missing that the simplest fix is a low-cost wireless adapter that directly addresses the missing Wi-Fi hardware.

How to eliminate wrong answers

Option B is wrong because a powerline adapter extends the network over electrical wiring, which is more expensive and complex than adding a simple wireless adapter, and still requires a wired connection to the computer. Option C is wrong because replacing the entire computer is far more costly and unnecessary when a $20–$30 adapter solves the problem. Option D is wrong because running an Ethernet cable is a viable solution but is not the simplest or most cost-effective—it involves physical cabling, potential drilling, and is less convenient than a wireless adapter.

517
MCQeasy

Which network device converts the signal from an Internet Service Provider (ISP) into a digital signal that a home network can use?

A.Access point
B.Switch
C.Router
D.Modem
AnswerD

The modem demodulates the ISP's carrier signal, whether coaxial, fibre or DSL, into digital Ethernet frames the home network can route. This directly satisfies the stem's conversion requirement, distinguishing it from a router, which forwards traffic but does not perform that signal translation.

Why this answer

A modem modulates and demodulates signals from the ISP (e.g., cable, DSL) into digital data for the home network.

518
MCQeasy

A user needs to edit a video file for a presentation. Which type of application is most suitable?

A.Spreadsheet software
B.Database software
C.Video editing software
D.Audio editing software
AnswerC

Video editing software provides timeline-based tools for trimming, splicing and re-encoding footage, directly satisfying the requirement to edit a video file. Unlike media players, which only decode and render playback, it supports non-linear modification and export in presentation-compatible formats, making it the suitable application category here.

Why this answer

Video editing software is specifically designed to manipulate video files, offering features like trimming, transitions, effects, and timeline-based editing. For editing a video file for a presentation, this type of application provides the necessary tools to adjust the video content, add text overlays, and synchronize audio, making it the most suitable choice.

Exam trap

The trap here is that candidates may confuse audio editing software with video editing software, assuming that because video contains audio, an audio editor can handle the entire task, but it lacks the visual timeline and frame-level controls required for video manipulation.

How to eliminate wrong answers

Option A is wrong because spreadsheet software (e.g., Microsoft Excel) is used for numerical data analysis, calculations, and charting, not for manipulating video files. Option B is wrong because database software (e.g., Microsoft Access) is designed for storing, querying, and managing structured data, not for editing multimedia content. Option D is wrong because audio editing software (e.g., Audacity) focuses on sound waveforms, effects, and mixing, lacking the timeline and visual track capabilities required to edit video frames and sequences.

519
MCQhard

A user wants to sync their contacts and calendar between their Android phone and tablet. Which method is most commonly used?

A.Google account sync
B.iCloud sync
C.Bluetooth pairing
D.NFC
AnswerA

A Google account stores contacts and calendar in the cloud, and Android devices signed into the same account sync that data automatically. This satisfies the stem's requirement to sync between phone and tablet without cables or manual transfer.

Why this answer

Android devices natively integrate with Google accounts, which sync contacts, calendar, Gmail, and other Google services across devices when the same account is signed in. This is the default and most common method for syncing an Android phone and tablet. No third-party tools or pairing are required — signing into the same Google account on both devices enables automatic sync.

Exam trap

FC0-U71 often tests ecosystem confusion — candidates pick iCloud because it is a well-known sync service, forgetting that iCloud is Apple-only and Android relies on Google account sync.

How to eliminate wrong answers

Option B is wrong because iCloud is Apple's ecosystem service for iOS/macOS devices and is not natively supported for syncing contacts and calendars on Android. Option C is wrong because Bluetooth pairing is used for short-range device-to-device connections (headphones, file transfer) and does not provide continuous cloud-based contact/calendar synchronization. Option D is wrong because NFC is a very short-range tap-based communication technology used for payments and pairing, not for syncing data between devices.

520
MCQhard

A developer writes code in C++ and must convert it to machine code before execution. This process is called:

A.Interpretation
B.Compilation
C.Linking
D.Debugging
AnswerB

Compilation translates C++ source directly into machine code before execution, satisfying the stem's requirement for a prior conversion step. Unlike interpretation, which executes instructions line by line at runtime, compilation produces a standalone binary. This matches the scenario where code must be converted ahead of execution.

Why this answer

Compilation is the process of translating source code written in a high-level language like C++ into machine code that the computer can execute. This is done by a compiler before execution.

Exam trap

FC0-U71 often tests the difference between compilation and interpretation. Candidates may confuse linking with compilation, but linking is a separate step that occurs after compilation. The question specifically asks for the translation to machine code, which is compilation.

How to eliminate wrong answers

Option A is wrong because interpretation executes code line by line without producing a separate machine code file; C++ is typically compiled, not interpreted. Option C is wrong because linking is the process of combining compiled object files and libraries into a single executable, but it is not the translation from source to machine code. Option D is wrong because debugging is the process of finding and fixing errors in code, not translation.

521
Multi-Selecteasy

Which TWO of the following are examples of operating systems?

Select 2 answers
A.Windows 10
B.Adobe Photoshop
C.Google Chrome
D.Linux
E.Microsoft Office
AnswersA, D

Windows 10 is a genuine operating system: it manages hardware, schedules processes and provides a user interface, satisfying the stem's requirement for an OS example. It is not an application, protocol or cloud service, so it fits the category directly alongside other qualifying options.

Why this answer

Windows 10 (A) is a correct answer because it is a full operating system released by Microsoft that manages hardware, provides a graphical user interface, and runs applications. Linux (D) is also correct because it is a family of open-source operating system kernels and distributions (such as Ubuntu, Fedora, and Debian) that manage system resources and provide the platform on which applications run. Adobe Photoshop (B) is not an operating system but an image-editing application that runs on top of an OS.

Google Chrome (C) is a web browser, not an OS, despite Chrome OS being a separate product. Microsoft Office (E) is a productivity application suite, not an operating system.

Exam trap

The trap here is that candidates often confuse application software (like browsers or office suites) with operating systems because they are commonly used and bundled with the OS, but the exam tests the fundamental distinction that an OS manages system resources while applications perform specific user tasks.

522
MCQhard

A developer is working on a collaborative software project and uses Git for version control. The developer creates a new feature on a separate branch. After completing the feature, what is the typical next step to integrate the changes into the main branch?

A.Commit the changes directly to the main branch
B.Delete the feature branch without merging
C.Merge the feature branch into the main branch
D.Push the branch to the remote repository
AnswerC

Git integrates completed branch work by merging the feature branch into the main branch, combining the divergent commit histories. This satisfies the stem's scenario of a finished feature being brought back into the mainline after development on a separate branch.

Why this answer

After completing work on a feature branch, the typical next step is to merge the feature branch into the main branch to integrate the changes. This is the standard Git workflow: create a branch, commit changes, then merge back into the mainline (often via a pull request). Merging combines the histories and brings the feature into the main branch.

Exam trap

FC0-U71 often tests the misconception that pushing a branch to a remote repository integrates it into main — candidates pick 'push' instead of 'merge,' but pushing only publishes the branch.

How to eliminate wrong answers

Option A is wrong because committing directly to the main branch bypasses the branch-based workflow and can introduce untested changes; the question states the developer already created a separate branch, so the next step is to integrate that branch, not commit directly. Option B is wrong because deleting the feature branch without merging discards the work entirely. Option D is wrong because pushing the branch to the remote repository only publishes the branch; it does not integrate the changes into the main branch — a merge (or pull request) is still required.

523
Multi-Selectmedium

A company is choosing collaboration software. Which TWO of the following are examples of collaboration applications? (Select 2)

Select 2 answers
A.Microsoft Excel
B.Google Chrome
C.Microsoft Teams
D.Adobe Photoshop
E.Slack
AnswersC, E

Microsoft Teams is a collaboration application: it combines persistent chat, channels, file sharing, and integrated audio/video meetings, letting teams work together on shared content. That real-time, multi-user interaction satisfies the question's requirement for a collaboration tool.

Why this answer

Microsoft Teams (C) is a collaboration application because it combines persistent team chat, channels, threaded conversations, file sharing, and integrated voice/video meetings in a single workspace. Slack (E) is likewise a collaboration application, providing channel-based messaging, direct messages, file sharing, and integrations with third-party services for team communication. The remaining options are not collaboration applications: Microsoft Excel (A) is a spreadsheet productivity application, Google Chrome (B) is a web browser, and Adobe Photoshop (D) is an image editing and graphics application.

524
MCQeasy

An employee working from a coffee shop connects a laptop to an open wireless network to check webmail. The employee wants to prevent other patrons on that same network from capturing the login credentials in transit. Which technology BEST provides this protection?

A.A virtual private network (VPN) tunnel to the company network
B.Full-disk encryption enabled on the laptop drive
C.A screen privacy filter placed over the laptop display
D.A host-based firewall enabled on the laptop
AnswerA

A VPN encrypts traffic from the laptop to the company gateway, so other users sharing the open wireless link see only ciphertext even if they capture the frames. Because the tunnel is established before the webmail session travels, credentials and content are shielded from local eavesdroppers. This directly addresses the risk of interception on an untrusted network.

Why this answer

On an open wireless network, frames are broadcast over a shared medium where any nearby device can capture them, so confidentiality must come from encryption applied to the traffic itself. A VPN creates an encrypted tunnel from the laptop to a trusted endpoint, hiding credentials and content from local eavesdroppers. Firewalls, screen filters, and disk encryption each defend different assets and none encrypts data in transit.

Exam trap

The trap here is confusing controls that protect data at rest or the physical screen with a control that protects data in transit over an untrusted network.

525
MCQeasy

A small accounting firm stores client tax records on a shared network folder. The owner wants to ensure that only the three staff members who prepare taxes can open those files, while other employees can still access the general office folder. Which security concept should the owner apply to the tax records folder?

A.Full disk encryption on each employee workstation
B.A firewall rule that blocks the file server's SMB port for non-tax staff
C.Access control lists (ACLs) that grant permissions only to the tax preparers group
D.Antivirus software configured to scan the shared folder nightly
AnswerC

ACLs are the standard mechanism for assigning permissions to specific users or groups on file and folder resources. By granting access only to a tax preparers group, the owner enforces authorization so that other employees are denied access to the tax records while remaining able to reach the general office folder, which matches the scenario exactly.

Why this answer

The requirement is an authorization decision about who may read specific files on a shared server. ACLs attached to the tax folder let the owner grant permissions to a tax preparers group and deny everyone else, while leaving the general office folder open to all staff. Encryption, firewalls, and antivirus address different risks and cannot enforce per-user file access.

Exam trap

The trap here is assuming that any protective technology, such as encryption or antivirus, can restrict which users open a file, when only permissions such as ACLs perform that authorization function.

Page 6

Page 7 of 14

Page 8