Free CompTIA A+ 220-1202 practice questions

10 free CompTIA A+ 220-1202 practice questions with the correct answer and a full explanation for each, taken from the CertStash pack of 414 questions. Work through them, then open each answer to check your reasoning.

Question 1

A technician needs to provide remote support for a legacy Linux-based operating system from their Windows laptop. The solution needs to allow the technician to see what the user is doing and provide the ability to interact with the user's session.

Which of the following remote access technologies would support the use case?

  1. VPN
  2. VNC
  3. SSH
  4. RDP
Show answer and explanation

Correct answer: B. VNC

VNC (Virtual Network Computing) is the correct choice because it provides remote desktop access with GUI interaction capabilities, allowing the technician to see the user's screen and control the session. VNC works cross-platform, making it ideal for connecting from Windows to Linux systems. While SSH provides secure remote access, it is command-line only and does not provide the visual interaction required. VPN only encrypts network traffic but does not provide remote desktop capabilities. RDP is Windows-specific and would not natively support legacy Linux systems.

Why the other options are wrong

  • A. VPN only provides encrypted network connectivity, not remote desktop or session interaction.
  • C. SSH provides command-line access only, not the GUI visual interaction and control needed.
  • D. RDP is designed for Windows systems and does not natively support Linux operating systems.

Question 2

A network technician notices that most of the company's network switches are now en-f-life and need to be upgraded.

Which of the following should the technician do first?

  1. Implement the change.
  2. Approve the change.
  3. Propose the change.
  4. Schedule the change.
Show answer and explanation

Correct answer: C. Propose the change.

Proposing the change is the first step in proper change management procedures. Before any approval, scheduling, or implementation can occur, the technician must formally propose the change to document the need, scope, and justification for upgrading the en-f-life switches. This establishes the change request that will then go through approval and scheduling workflows.

Why the other options are wrong

  • A. Implementation cannot occur first; changes must be proposed, approved, and scheduled before implementation.
  • B. Approval comes after the change has been proposed and documented.
  • D. Scheduling occurs after the change is proposed and approved, not before.

Question 3

MFA for a custom web application on a user's smartphone is no longer working. The last time the user remembered it working was before taking a vacation to another country.

Which of the following should the technician do first?

  1. Verify the date and time settings.
  2. Apply mobile OS patches.
  3. Uninstall and reinstall the application.
  4. Escalate to the website developer.
Show answer and explanation

Correct answer: A. Verify the date and time settings.

Verifying the date and time settings is the correct first step because MFA systems, particularly time-based authentication methods like TOTP, are highly sensitive to device time synchronization. When the user traveled to another country, their device may have retained the original timezone or incorrect time, causing MFA tokens to become invalid. This is a simple check that often resolves authentication issues before attempting more complex troubleshooting steps.

Why the other options are wrong

  • B. Mobile OS patches may help but are not the first troubleshooting step for a tim-ensitive MFA issue.
  • C. Reinstalling the application is premature without checking basic time synchronization first.
  • D. Escalation to the developer should occur only after basic troubleshooting steps have been exhausted.

Question 4

Which of the following is found in an MSDS sheet for a battery backup?

  1. Installation instructions
  2. Emergency procedures
  3. Configuration steps
  4. Voltage specifications
Show answer and explanation

Correct answer: B. Emergency procedures

An MSDS (Material Safety Data Sheet) sheet contains emergency procedures, which is critical information for hazardous materials like batteries. MSDS sheets are designed to provide safety information including hazard identification, first-aid measures, and emergency procedures. This is essential for battery backups due to their potentially hazardous chemical contents. Installation instructions, configuration steps, and voltage specifications are technical product information typically found in user manuals or technical documentation, not MSDS sheets.

Why the other options are wrong

  • A. Installation instructions are found in user manuals or product documentation, not MSDS sheets.
  • C. Configuration steps are technical specifications found in product guides, not MSDS sheets.
  • D. Voltage specifications are electrical specifications found in technical datasheets, not MSDS sheets.

Question 5

The screen of a previously working computer repeatedly displays an OS Not Found error message when the computer is started. Only a USB drive, a keyboard, and a mouse are plugged into the computer.

Which of the following should a technician do first?

  1. Run data recovery tools on the disk.
  2. Partition the disk using the GPT format.
  3. Check boot options.
  4. Switch from UEFI to BIOS.
Show answer and explanation

Correct answer: C. Check boot options.

Checking boot options is the first step when encountering an 'OS Not Found' error. The computer may be configured to boot from the wrong device or in the wrong order. With only a USB drive, keyboard, and mouse connected, the system might be attempting to boot from a device that no longer contains a valid OS. Checking and correcting the boot order in BIOS/UEFI is the quickest troubleshooting step before attempting data recovery, disk partitioning, or firmware changes.

Why the other options are wrong

  • A. Data recovery tools are a last resort and should not be attempted first when basic boot configuration may be the issue.
  • B. Repartitioning the disk would be destructive and should only be considered after confirming boot configuration issues.
  • D. Switching UEFI to BIOS is not a first troubleshooting step and may not be necessary if boot options are correctly configured.

Question 6

A security administrator teaches all of an organization's staff members to use BitLocker To Go.

Which of the following best describes the reason for this training?

  1. To ensure that all removable media is password protected in case of loss or theft
  2. To enable Secure Boot and a BIOS-level password to prevent configuration changes
  3. To enforce VPN connectivity to be encrypted by hardware modules
  4. To configure all laptops to use the TPM as an encryption factor for hard drives
Show answer and explanation

Correct answer: A. To ensure that all removable media is password protected in case of loss or theft

BitLocker To Go is specifically designed to encrypt removable media such as USB drives and external hard drives. Training staff on this tool ensures that if removable media is lost or stolen, the data remains protected through encryption. This addresses the critical security need of protecting sensitive data that leaves the organization. BitLocker To Go creates password-protected encrypted volumes on portable devices to prevent unauthorized access in case of loss or theft.

Why the other options are wrong

  • B. Secure Boot and BIOS-level passwords are system-level security features, not the purpose of BitLocker To Go training.
  • C. BitLocker To Go does not enforce VPN connectivity or involve hardware encryption modules for VPN.
  • D. BitLocker To Go can work with TPM but is not specifically designed to configure laptop hard drives; it is primarily for removable media.

Question 7

Which of the following is used to detect and record access to restricted areas?

  1. Bollards
  2. Video surveillance
  3. Badge readers
  4. Fence
Show answer and explanation

Correct answer: B. Video surveillance

Video surveillance is the control used to detect and record activity in restricted areas. Cameras watch the space continuously and store footage, so an incident can be seen, reviewed, and used as evidence later, including tailgating or entry by someone with no credential at all. Badge readers, bollards, and fences are access controls or physical barriers; they restrict who gets in rather than providing visual detection and a recorded record of what happened in the area.

Why the other options are wrong

  • A. Bollards are physical barriers that block vehicles; they do not detect or record access attempts.
  • C. Badge readers authenticate and log credential use at a door, but they capture no view of the area and miss anyone entering without a badge.
  • D. Fences are perimeter barriers meant to deter and delay entry; they provide no detection or recording.

Question 8

An administrator received an email stating that the OS they are currently supporting will no longer be issued security updates and patches.

Which of the following is most likely the reason the administrator received this message?

  1. Support from the computer’s manufacturer is expiring.
  2. The OS will be considered end of life.
  3. The built-in security software is being removed from the next OS version.
  4. A new version of the OS will be released soon.
Show answer and explanation

Correct answer: B. The OS will be considered end of life.

When an operating system no longer receives security updates and patches, it has reached end of life status. End of life means the manufacturer is ceasing support and no longer issuing updates, security patches, or technical support for that OS version. This is an official lifecycle stage that indicates the OS version is aging out of support. While support expiration is related, the specific message about no longer issuing security updates directly indicates the OS has transitioned to end of life status.

Why the other options are wrong

  • A. While related, 'support expiring' is less precise than 'end of life' which specifically refers to cessation of all updates and patches.
  • C. Removal of built-in security software is a feature change, not the reason for ceasing security updates to the entire OS.
  • D. A new OS version release is independent of the current OS reaching end of life, though they may occur around the same time.

Question 9

Which of the following is the best way to distribute custom images to 800 devices that include four device vendor classes with two types of user groups?

  1. Use xcopy to clone the hard drives from one to another.
  2. Use robocopy to move the files to each device.
  3. Use a local image deployment tool for each device.
  4. Use a network-based remote installation tool.
Show answer and explanation

Correct answer: D. Use a network-based remote installation tool.

For distributing custom images to 800 devices across multiple vendor classes and user groups, a network-based remote installation tool (such as Windows Deployment Services, SCCM, or similar solutions) is the most efficient and scalable approach. It allows centralized management, supports multiple device types, and can be configured with different profiles for different user groups without manual intervention on each device.

Why the other options are wrong

  • A. xcopy is a file-copying utility designed for small-scale transfers, not bulk OS image deployment to hundreds of devices.
  • B. robocopy is a file synchronization tool, not an imaging solution, and would not efficiently deploy complete OS images across 800 devices.
  • C. Using a local tool on each device would be extremely time-consuming and impractical for 800 devices and would lack centralized control.

Question 10

Which of the following types of social engineering attacks sends an unsolicited text message to a user's mobile device?

  1. Impersonation
  2. Vishing
  3. Spear phishing
  4. Smishing
Show answer and explanation

Correct answer: D. Smishing

Smishing is the specific term for SMS phishing, sending malicious or deceptive text messages to mobile devices to trick users into clicking links or providing information. It combines 'SMS' and 'phishing' and is the direct answer to unsolicited text message attacks.

Why the other options are wrong

  • A. Impersonation is a general social engineering technique but does not specifically describe text message attacks.
  • B. Vishing is voice phishing conducted through phone calls, not text messages.
  • C. Spear phishing typically refers to targeted email attacks, not SMS-based attacks.

That was 10 of 414.

The full CompTIA A+ 220-1202 pack has all 414 questions, each with the answer, the explanation and why the other options are wrong, plus a questions-only copy for timed runs. US$39, paid once, with free monthly updates and a pass-or-your-money-back guarantee.

Get the full pack