Objective 2.11220-1202

2.11 Given a scenario, configure relevant security settings in a browser.

Objective 2.11 sits in Security, which carries 28% of the A+ Core 2 exam. The questions below are original, written from the official objective title above, and each explanation cites the CompTIA page it rests on.

Objective title verbatim from the official objectives. CompTIA exam page

A worked example

Shown solved, with the whole explanation open: this is what every question here carries.

SecurityEasy

A developer opens a browser to test a locally hosted web application that must accept inbound connections on a custom port. Windows Firewall blocks the connection attempt by default. Which default inbound behavior explains this?

Correct.

The concept

Windows Firewall applies a default posture to inbound and outbound traffic that determines whether unsolicited connections reach applications like a locally hosted web server.

Why this answer

By default, Windows Firewall blocks all incoming traffic unless the traffic was solicited by the device or matches an explicit allow rule, which is why the unsolicited inbound connection to the test server is blocked.

  • Correct: this is the documented default inbound behavior of Windows Firewall.
  • BIncorrect: outgoing traffic, not incoming, is allowed by default unless a rule blocks it, so this reverses the actual default inbound stance.
  • CIncorrect: this describes the default outbound behavior, not the inbound behavior causing the block described in the scenario.
  • DIncorrect: the domain profile is applied automatically only on domain-joined devices detecting a domain controller and does not describe the general inbound default.
Read the sourceMicrosoft Learn: Windows Firewall
Verified against learn.microsoft.com · 2026-07-27
browser-securitywindows-firewalldefault-behavior

Now you: objective 2.11 questions

No account needed. The explanation opens when you answer.

Sample question 1 of 2

SecurityModerate

A user downloads a browser extension installer from an unfamiliar site. Before the download finishes, Windows Defender Antivirus flags the file as malicious even though no known virus signature matches it. Which capability caused this detection?

Sample question 2 of 2

SecurityHard

A technician wants Windows Defender Antivirus to remain running in passive mode while a third-party antivirus product with its own browser protection extension acts as the primary scanner. Which condition determines whether passive mode is available on this device?

Full A+ Core 2 question bank coming

We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.

Read the sources

These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.

More objectives in Security