Study guide · Core notes

Networking & Cloud Core Notes: addresses, names, and models

Reference notes for how hosts are addressed, how names resolve, which device forwards traffic, and where the customer's job starts in IaaS, PaaS, and SaaS.

Subject path · vendor-neutral10 modulesReviewed October 2026

How to read these notes: Items tagged Extra sit outside the everyday set, such as Wi-Fi 7 and legacy ports. Learn the unmarked items first. New to the topic? Start with the overview for domains and a study plan. Port and cloud facts match the CompTIA A+ notes.

Module 1: OSI and TCP/IP

Use the layer to decide which address or device is involved.

OSI layers you need for everyday troubleshooting, with the matching TCP/IP grouping.
OSINameWhat you see thereTCP/IP grouping
7ApplicationHTTP, DNS, SMTP, and the programs users touchApplication
6PresentationFormatting and encryption such as TLSApplication
5SessionStarting and ending a conversation between programsApplication
4TransportTCP and UDP, and port numbersTransport
3NetworkIP addresses and routersInternet
2Data LinkMAC addresses, switches, and Wi-Fi framesLink
1PhysicalCables, radio, bits, and hubsLink

TCP

Connection-oriented. A handshake sets up the session, and lost segments are retransmitted. Use it when the bytes must arrive intact, as with web pages, SSH, and file copies.

UDP

Connectionless. There is no handshake and no guarantee of delivery. DHCP, most DNS lookups, and voice or video often use it because a late retry is worse than a dropped packet.

Address versus port: An IP address identifies a host on a network. A port identifies a program on that host. HTTPS on a server is IP plus TCP port 443, not the IP alone.

Module 2: IPv4, IPv6, and CIDR

Know which ranges are private, which mean "no DHCP," and how many hosts a prefix allows.

Address types used in this study path.
TypeRange
Private (RFC 1918)10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16
APIPA169.254.0.0/16
IPv4 loopback127.0.0.1
IPv6 loopback::1
IPv6 link-localfe80::/10
IPv6 global unicast2000::/3
Common IPv4 prefixes. Usable hosts exclude the network and broadcast addresses.
PrefixMaskUsable hosts
/8255.0.0.016,777,214
/16255.255.0.065,534
/24255.255.255.0254
/25255.255.255.128126
/26255.255.255.19262
/27255.255.255.22430
/28255.255.255.24014

IPv4 addresses are 32 bits, written as four decimal octets. IPv6 addresses are 128 bits, written as eight hexadecimal groups. You may replace one run of zero groups with ::, and only once. 172.16.0.0/12 covers 172.16.0.0 through 172.31.255.255, so 172.32.0.1 is not private. NAT lets many private hosts share a public address; the private ranges themselves are not routed on the public internet.

Default gateway: The router on the host's own subnet. Traffic for other networks is sent there. A wrong mask can make a host treat a remote address as local and skip the gateway.

Module 3: Ports you should recognize

Learn the number, the transport, the job, and whether the protocol encrypts by default.

Everyday ports. Rows marked Extra are context beyond the core set.
PortProtocolTransportPurpose
20, 21FTPTCPFile transfer. 21 is control and 20 is data. Not encrypted. SFTP is SSH on 22, not FTP.
22SSH, SFTPTCPEncrypted remote shell and file transfer over SSH.
23TelnetTCPLegacy remote shell in clear text. Replace it with SSH.
25SMTPTCPSending and relaying email.
53DNSUDP and TCPNames to addresses. TCP is used for large responses and zone transfers.
67, 68DHCPUDP67 is the server and 68 is the client.
69TFTP ExtraUDPSimple unauthenticated file transfer, often for network boot.
80HTTPTCPWeb traffic without TLS.
110POP3TCPDownloads mail to one client and usually removes it from the server.
143IMAPTCPReads mail that stays on the server and syncs across devices.
389LDAPTCPDirectory queries. LDAPS on 636 is Extra.
443HTTPSTCPWeb traffic protected by TLS.
445SMBTCPWindows file and printer sharing.
3389RDPTCPGraphical remote desktop.

Devices and media

Pick the device by the problem. A Wi-Fi name is not a routing problem, and a full disk is not a switch problem.

What each common network device actually decides.
DeviceDecision it makes
Hub ExtraRepeats an electrical signal out every port. It has no MAC table. Modern networks use switches.
SwitchForwards a frame to the port where that destination MAC was learned. Unknown unicasts are flooded.
RouterForwards packets between IP networks using a routing table. The default gateway is a router interface.
Access pointBridges wireless clients onto the wired LAN. It does not, by itself, route between IP networks.
FirewallAllows or blocks traffic by rules such as address, port, and state. It is not a substitute for patching.
ModemConverts between the local network and the provider's link, such as cable or DSL.
Load balancerSpreads client requests across several servers so one host is not the only path.

Copper and fiber

  • Twisted-pair copper (Cat5e, Cat6) carries Ethernet over limited distances and can pick up electrical noise.
  • Fiber uses light, resists electromagnetic interference, and reaches farther.
  • Power over Ethernet (PoE) supplies power to devices such as access points and phones on the same cable as data.

MAC versus IP

A MAC address is a layer 2 identifier on the local link, usually 48 bits. A switch uses it. An IP address is a layer 3 identifier that routers use between networks. ARP (or Neighbor Discovery on IPv6) connects an IP address to a MAC address on the local subnet.

Wireless standards

Speeds are theoretical maximums. Real throughput is lower. These match the CompTIA A+ wireless table.

802.11 generations used in this study path.
StandardBandMax rateWhat to remember
802.11a5 GHz54 MbpsLegacy. Less interference than 2.4 GHz, shorter range.
802.11b2.4 GHz11 MbpsLegacy. Microwaves, cordless phones, and Bluetooth overlap this band.
802.11g2.4 GHz54 MbpsBackward-compatible with 802.11b.
802.11n (Wi-Fi 4)2.4 and 5 GHz600 MbpsMIMO and channel bonding.
802.11ac (Wi-Fi 5)5 GHzabout 6.9 GbpsDownlink MU-MIMO and beamforming.
802.11ax (Wi-Fi 6 / 6E)2.4, 5, and 6 GHzabout 9.6 Gbps6 GHz is Wi-Fi 6E. OFDMA helps dense networks. 6 GHz requires WPA3.
802.11be (Wi-Fi 7) Extra2.4, 5, and 6 GHzabout 46 Gbps320 MHz channels and multi-link operation.

2.4 GHz channels: In North America, channels 1, 6, and 11 do not overlap. Putting two access points on channel 1 and channel 2 makes them interfere. The SSID is the network name clients look for; hiding it is not encryption.

DNS and DHCP

A host needs an address before it can use a name, and a name before people can remember the address.

DNS record types and the DHCP lease exchange.
NameRole
AA hostname to an IPv4 address.
AAAAA hostname to an IPv6 address.
CNAMEAn alias that points at another hostname, not directly at an IP address.
MXThe mail servers that accept email for a domain.
NSThe authoritative name servers for a zone.
TXTText, often used for SPF and other mail checks.
PTR ExtraAn IP address back to a name (reverse DNS).
DHCP DiscoverThe client broadcasts to find a server (UDP 68 to 67).
DHCP OfferA server offers an address and options such as mask, gateway, and DNS.
DHCP RequestThe client asks to take that offer.
DHCP AckThe server confirms the lease. The four steps are DORA: Discover, Offer, Request, Ack.

Commands: On Windows, ipconfig /all shows the lease, ipconfig /release and ipconfig /renew redo DHCP, and ipconfig /flushdns clears the local resolver cache. nslookup queries DNS. On Linux, ip addr and resolvectl or dig are the usual tools. See the Linux CLI networking notes for ip and ss.

A first troubleshooting split

Change one thing at a time, and test from the host outward.

What a successful or failed test usually means. Confirm on the host before you reconfigure the network.
What you observeLikely place to look
Address is 169.254.x.xDHCP failed. Check the cable or Wi-Fi association, the VLAN, the DHCP server, and the scope, then renew.
Cannot ping the default gatewayLocal link, wrong address or mask, wireless not associated, or the gateway is down.
Gateway answers, a public IP does notThe path past the gateway: routing, NAT, or the provider link.
Public IP answers, the hostname does notDNS. Check the configured DNS servers, then the record. Flush the local cache after a record change.
Name resolves, the page still failsThe application or its port: firewall, TLS certificate, or the service is not listening.

ping sends ICMP echo requests and shows whether a host answers. It does not prove that TCP port 443 is open. tracert on Windows and traceroute on Linux list routers along the path. A timeout at one hop can be a filter, not always a broken link.

Cloud service and deployment models

The same definitions are in the CompTIA A+ cloud notes.

Who operates each layer. The customer always keeps responsibility for data and access decisions.
Service modelProvider operatesCustomer operatesExample
IaaSHardware, networking, storage, and virtualizationGuest OS, middleware, runtime, applications, and dataA virtual machine such as Amazon EC2 or an Azure VM
PaaSEverything in IaaS plus the OS and runtimeApplications and dataA platform you deploy code to, such as Google App Engine
SaaSThe application stackSettings, accounts, and dataMicrosoft 365, Google Workspace, Salesforce

Deployment models

  • Public: multitenant infrastructure owned by a provider and reached over the internet.
  • Private: single-tenant cloud for one organization, on premises or hosted.
  • Hybrid: public and private connected so workloads can move, often over a VPN or a dedicated link.
  • Community: shared by several organizations with the same compliance or mission needs.

Characteristics

  • Elasticity: capacity grows and shrinks with demand, often automatically.
  • Scalability: the design can take on more load. Elasticity is the automatic, both-directions case.
  • Metered use: you pay for what you consume, including data transfer.
  • OpEx versus CapEx: cloud spend is usually an operating expense instead of buying servers up front.

Regions, storage, and compute

Vendor menus differ. The ideas below are the ones that transfer.

Region and availability zone

A region is a geographic area where a provider runs data centers. An availability zone is an isolated site inside that region, with separate power and networking. Putting instances in more than one zone reduces the chance that one site failure takes the service down. A content delivery network caches copies closer to users so they do not all fetch the original object across the world.

Three storage shapes

  • Block: a volume attached to a compute instance, like a disk. The guest OS formats it.
  • File: a shared filesystem reached by many instances, often over NFS or SMB.
  • Object: blobs with metadata, stored and fetched by an API. Typical for backups, images, and static files.

Virtual machines and containers

A Type 1 hypervisor (VMware ESXi, Microsoft Hyper-V, Proxmox VE) runs on the hardware. A Type 2 hypervisor (VirtualBox, VMware Workstation, Parallels) runs on a host operating system. A container shares the host kernel instead of booting a full guest OS, so it starts faster and uses less overhead. A virtual private cloud is an isolated virtual network where you choose subnets, route tables, and gateways.

Scaling patterns

  • Vertical: a bigger instance, more CPU or memory.
  • Horizontal: more instances behind a load balancer.
  • Horizontal scaling needs a way to share state, or no state on the instance.

Identity, encryption, and shared responsibility

The provider secures the cloud platform. You secure what you put in it. The line moves with the service model: on IaaS you patch the guest OS, on SaaS the provider patches the application, and in every model you decide who can see the data.

Controls this path expects you to distinguish.
IdeaWhat it means in practice
HTTP versus HTTPSHTTP on TCP 80 is readable on the path. HTTPS is HTTP inside TLS, usually on TCP 443.
In transit versus at restTLS protects data while it moves. Encryption at rest protects stored disks and objects if the media is copied.
WPA2 and WPA3Both encrypt Wi-Fi. WEP is obsolete. An open network does not encrypt. Wi-Fi 6E on 6 GHz requires WPA3.
MFAMore than one factor: something you know, something you have, or something you are. A second password is not a second factor.
Least privilegeGrant only the access a person or service needs. Prefer a role the service assumes over a long-lived access key stored on disk.
Security groupA virtual firewall on a cloud resource. It filters traffic to that resource. It does not patch the operating system or classify the data.
Public object storeAn object container left open to the internet exposes the files. Lock it down and do not store secrets in a public bucket.

Frequently asked questions

What is the difference between a switch and a router?

A switch forwards frames on a local network using MAC addresses. A router forwards packets between IP networks using IP addresses and a routing table. An access point attaches wireless clients; it is not a router by itself.

Why does 169.254.x.x mean a DHCP problem?

169.254.0.0/16 is the APIPA range. A host picks it when it cannot lease an address from DHCP. Check the link, the DHCP server or scope, then release and renew the lease.

Who patches the operating system on IaaS?

The customer. In IaaS the provider operates the hardware, network, storage, and virtualization. The customer manages the guest operating system, applications, and data.

Cloud product names and Wi-Fi certifications change. Use these notes for the model, then confirm the current console and standard with the provider.

Continue the networking and cloud study path

Drill the facts, then test them under a timer.

Networking & cloud hub →
Available

Overview

Scope, domains, address and port map, cloud models, and a study plan.

Available · You are here

Core Notes

Reference notes for layers, addresses, ports, devices, Wi-Fi, DNS, DHCP, and cloud models.

Available

Practice Exams

200 original questions with custom exams, explanations, and a score report by domain.

Related Tools

Useful companions while you study.

All study topics →