
CompTIACloudNetX
Domain 2Objective 5
IAM Solutions CNX-001 Practice Questions (Page 6)
Part of the Network security domain, which accounts for 28% of the CNX-001 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~18–31 in this domain), expect 3–5 from this objective — we provide 31 practice questions to prepare you well beyond it. (estimate)
31questions here
7free pages
8concepts
28%of the exam
Questions 26–30
- 26
What is the primary purpose of Multifactor Authentication (MFA)?
Select an answer first - 27
When deploying a PKI, what is the purpose of a Certificate Revocation List (CRL)?
Select an answer first - 28
A defense contractor is deploying a two-tier PKI. The security team mandates that the root CA must be completely isolated from the network, and the issuing CA must be online. The contractor also requires that certificates for a high-availability web cluster be issued automatically. Which deployment should the administrator choose?
Select an answer first - 29
Which of the following is a common protocol used to implement Single Sign-On (SSO) in web-based applications?
Select an answer first - 30
A retail company is implementing MFA for its point-of-sale (POS) system administrators. The administrators work in stores with limited network connectivity. The security team requires MFA that works offline and does not rely on SMS or push notifications. Which MFA method should the administrator implement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “CNX-001” is a trademark of its owner, used for identification only.