New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the CompTIA CloudNetX CNX-001 Questions and answers with CertsForce

Viewing page 1 out of 3 pages
Viewing questions 1-10 out of questions
Questions # 1:

Application development team users are having issues accessing the database server within the cloud environment. All other users are able to use SSH to access this server without issues. The network architect reviews the following information to troubleshoot the issue:

Question # 1

Traceroute output from an application developer's machine with the assigned IP 192.168.2.7:

Question # 1

    Application development gateway: 192.168.2.1/24

    Server segment gateway: 192.168.1.1/24

    Database server: 192.168.1.9

    Application developer machine IP: 192.168.2.7

    Traceroute ends at hop 4: 192.168.4.1 (server segment firewall), then times out

Which of the following is the most likely cause of the issue?

Options:

A.

The core firewall is blocking the traffic.


B.

Network security groups do not have the correct outbound rule configured.


C.

The server segment firewall is dropping the traffic.


D.

The server segment gateway is having bandwidth issues.


Expert Solution
Questions # 2:

A network architect is designing a new network for a rural hospital system. Given the following requirements:

    Highly available

    Consistent data transmission

    Resilient to simultaneous failures

Which of the following topologies should the architect use?

Options:

A.

Collapsed core


B.

Hub-and-spoke


C.

Mesh


D.

Star


Expert Solution
Questions # 3:

A network administrator needs to resolve connectivity issues in a hybrid cloud setup. Workstations and VMs are not able to access Application A. Workstations are able to access Server B.

INSTRUCTIONS

Click on workstations, VMs, firewalls, and NSGs to troubleshoot and gather information. Type help in the terminal to view a list of available commands.

Select the appropriate device(s) requiring remediation and identify the associated issue(s).

If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Question # 3

Question # 3

Question # 3

Question # 3

Question # 3

Question # 3

Question # 3

Question # 3

Question # 3

Question # 3

Question # 3

Question # 3


Expert Solution
Questions # 4:

A company deployed new applications in the cloud and configured a site-to-site VPN to connect the internal data center with the cloud. The IT team wants the internal servers to connect to those applications without using public IP addresses. Which of the following is the best solution?

Options:

A.

Create a DNS server in the cloud. Configure the DNS server in the customer data center to forward DNS requests for cloud resources to the cloud DNS server.


B.

Configure a NAT server on the cloud to allow internal servers to connect to the applications through the NAT server.


C.

Register applications on the cloud with a public DNS server and configure internal servers to connect to them using their public DNS names.


D.

Configure proxy service in the site-to-site VPN to allow internal servers to access applications through the proxy.


Expert Solution
Questions # 5:

Security policy states that all inbound traffic to the environment needs to be restricted, but all external outbound traffic is allowed within the hybrid cloud environment. A new application server was recently set up in the cloud. Which of the following would most likely need to be configured so that the server has the appropriate access set up? (Choose two.)

Options:

A.

Application gateway


B.

IPS


C.

Port security


D.

Firewall


E.

Network security group


F.

Screened subnet


Expert Solution
Questions # 6:

A company hosts its applications on the cloud and is expanding its business to Europe. Thecompany must comply with General Data Protection Regulation (GDPR) to limit European customers' access to data. The network team configures the firewall rules but finds that some customers in the United States can access data hosted in Europe. Which of the following is the best option for the network team to configure?

Options:

A.

SASE


B.

Network security groups


C.

CDN


D.

Geofencing rule


Expert Solution
Questions # 7:

A company is experiencing multiple switch failures. The network analyst discovers the following:

    Network recovery time is unacceptable and occurs after the shutdown of some switches.

    Some loops were detected in the network.

    No broadcast storm was detected.

Which of the following is the most cost-effective solution?

Options:

A.

Add a new Layer 3 switch.


B.

Add multiple VLANs.


C.

Implement STP.


D.

Implement tagging.


Expert Solution
Questions # 8:

A company provides an API that runs on the public cloud for its customers. A fixed number of VMs host the APIs. During peak hours, the company notices a spike in usage that results in network communication speeds slowing down for all customers. The management team has decided that access for all customers should be fair and accessible at all times. Which of the following is the most cost-effective way to address this issue?

Options:

A.

Use an allow list for customers using APIs.


B.

Increase the number of VMs running APIs.


C.

Enable throttling on APIs.


D.

Increase the MTU on the VMs.


Expert Solution
Questions # 9:

An administrator must ensure that credit card numbers are not contained in any outside messaging or file transfers from the organization. Which of the following controls meets this requirement?

Options:

A.

Intrusion detection system


B.

Egress filtering


C.

Data loss prevention


D.

Encryption in transit


Expert Solution
Questions # 10:

A call center company provides its services through a VoIP infrastructure. Recently, the call center set up an application to manage its documents on a cloud application. The application is causing recurring audio losses for VoIP callers. The network administrator needs to fix the issue with the least expensive solution. Which of the following is the best approach?

Options:

A.

Adding a second internet link and physically splitting voice and data networks into different routes


B.

Configuring QoS rules at the internet router to prioritize the VoIP calls


C.

Creating two VLANs, one for voice and the other for data


D.

Setting up VoIP devices to use a voice codec with a higher compression rate


Expert Solution
Viewing page 1 out of 3 pages
Viewing questions 1-10 out of questions