0% found this document useful (0 votes)
68 views

Test 2

Uploaded by

beeni1705
Copyright
© © All Rights Reserved
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
68 views

Test 2

Uploaded by

beeni1705
Copyright
© © All Rights Reserved
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 53

CCNA 200-301 - Summary Test 2: Dynamic Routing - IP Services - WAN - IPv6 -

Wireless - Automation

Number: 200-301
Passing Score: 500
Time Limit: 120 min
File Version: 1.0

Welcome to the exam CCNA 200-301 - Summary Test 2: Dynamic Routing - IP Services - WAN - IPv6 -
Wireless - Automation. Click "Begin" to start your exam.
Attention: You should be make sure with your choose. You'll not be able to go back after the clicking "Next"
button.

Questions: 50
Time: 120 minutes
Version: 2020
Passing score: 500/1000

Viet Professional Co. Ltd. VnPro ®


-------------------------------------------------------------------------
149/1D Ung Van Khiem Street Ward 25 Binh Thanh District HCMC
Tel: (028) 35124257
Fax: (028) 5124314
Home Page : http://www.vnpro.vn
Support forum: http://www.vnpro.org
Blog VnPro : http://www.vnpro.org/blog
Network channel: http://www.dancisco.com

Good luck for your exam!

Sections
1. IP Routing Technologies
2. Route Summarization - VLSM
3. OSPF
4. Access Control Lists
5. Network Address Translation
6. WAN - VPN
7. IPv6
8. Wireless LAN
9. Automation
IP Routing Technologies

QUESTION 1
A router has learned four possible routes that could be used to reach a destination network. One route is from
EIGRP and has a composite metric of 20514560. Another route is from OSPF with a metric of 782. The next is
from RIPv2 and has a metric of 4. The last is from static route. Which route or routes will the router install in the
routing table?

A. the OSPF route


B. the EIGRP route
C. the RIPv2 route
D. the OSPF and RIPv2 routes

Correct Answer: B
Section: IP Routing Technologies

QUESTION 2
Refer to the exhibit.

What path will packets take from a host on the 192.168.10.192/26 network to a host on the LAN attached to
router R1?

A. The path of the packets will be R3 to R2 to R1.


B. The path of the packets will be R3 to R2.
C. The path of the packets will be both R3 to R2 to R1 AND R3 to R1.
D. The path of the packets will be R3 to R1.

Correct Answer: D
Section: IP Routing Technologies

QUESTION 3
Refer to the exhibit.

The administrator would like to reduce the size of the routing table on the Central router. Which partial routing
table entry in the Central router represents a route summary that represents the LANs in Phoenix but no
additional subnets?

A. 10.0.0.0/22 is subnetted, 1 subnets


D 10.0.0.0 [90/20514560] via 10.2.0.2, 6w0d, Serial0/1
B. 10.0.0.0/28 is subnetted, 1 subnets
D 10.2.0.0 [90/20514560] via 10.2.0.2, 6w0d, Serial0/1
C. 10.0.0.0/30 is subnetted, 1 subnets
D 10.2.2.0 [90/20514560] via 10.2.0.2, 6w0d, Serial0/1
D. 10.0.0.0/22 is subnetted, 1 subnets
D 10.4.0.0 [90/20514560] via 10.2.0.2, 6w0d, Serial0/1
E. 10.0.0.0/28 is subnetted, 1 subnets
D 10.4.4.0 [90/20514560] via 10.2.0.2, 6w0d, Serial0/1
F. 10.0.0.0/30 is subnetted, 1 subnets
D 10.4.4.4 [90/20514560] via 10.2.0.2, 6w0d, Serial0/1

Correct Answer: D
Section: IP Routing Technologies

QUESTION 4
What is the default administrative distance of EIGRP and OSPF?

A. 80 and 90
B. 90 and 100
C. 80 and 120
D. 90 and 110
E. 90 and 120

Correct Answer: D
Section: IP Routing Technologies

QUESTION 5
Refer to the exhibit.

Based on the exhibited routing table, how will packets from a host within the 192.168.10.192/26 LAN be
forwarded to 192.168.10.1?

A. The router will forward packets from R3 to R2 to R1.


B. The router will forward packets from R3 to R1 to R2.
C. The router will forward packets from R3 to R2 to R1 AND from R3 to R1.
D. The router will forward packets from R3 to R1.

Correct Answer: C
Section: IP Routing Technologies

QUESTION 6
According to the routing table, where will the router send a packet destined for 10.1.5.75?

A. 10.1.1.2
B. 10.1.2.2
C. 10.1.3.3
D. 10.1.4.4

Correct Answer: B
Section: IP Routing Technologies

QUESTION 7
Select the best answer: Router VnPro receives information about network 192.168.10.0/24 from multiple
sources. What will the router consider the most reliable information about the path to that network?

A. a directly connected interface with an address of 192.168.10.254/24


B. a static route to network 192.168.10.0/24
C. a RIP update for network 192.168.10.0/24
D. an OSPF update for network 192.168.0.0/16
E. a default route with a next hop address of 192.168.10.1
F. a static route to network 192.168.10.0/24 with a local serial interface configured as the next hop

Correct Answer: A
Section: IP Routing Technologies

QUESTION 8

Select and Place:


Correct Answer:

Section: IP Routing Technologies

QUESTION 9

Select and Place:


Correct Answer:
Section: IP Routing Technologies

QUESTION 10
Which protocols use bandwidth to calculation metric? (Choose two answers.)

A. RIP-1
B. RIP-2
C. EIGRP
D. OSPF

Correct Answer: CD
Section: IP Routing Technologies

QUESTION 11
Which of the following commands correctly configures a static route?

A. ip route 10.1.3.0 255.255.255.0 10.1.130.253


B. ip route 10.1.3.0 serial 0
C. ip route 10.1.3.0 /24 10.1.130.253
D. ip route 10.1.3.0 /24 serial 0

Correct Answer: A
Section: IP Routing Technologies
QUESTION 12
VnPro PC007’s IP address and mask are 10.215.14.8 and 255.255.255.0. The user then runs cmd and ping
10.215.13.7 .Which of the following answers is the most likely to happen?

A. The PC sends packets directly to the host with address 10.215.13.7


B. The PC sends packets to its default gateway.
C. The PC sends a DNS query for 10.215.13.7.
D. The PC sends an ARP looking for the MAC address of the DHCP server.

Correct Answer: B
Section: IP Routing Technologies

QUESTION 13
What aspect of the routing table is impacted by the command ip route 0.0.0.0 0.0.0.0?

A. Network mask
B. Metric
C. Administrative distance
D. Gateway of Last Resort

Correct Answer: D
Section: IP Routing Technologies

QUESTION 14
If a router cannot find a best match, what might the router use to route the traffic?

A. 255.255.255.255/0
B. 0.0.0.0/32
C. 0.0.0.0/0
D. 127.0.0.1/32
E. 255.255.255.255/32

Correct Answer: C
Section: IP Routing Technologies

QUESTION 15
Which is not dynamic routing protocol? (Choose three answers).

A. Static route
B. DTP
C. BGP
D. VTP
E. IS-IS
F. IGRP

Correct Answer: ABD


Section: IP Routing Technologies

QUESTION 16
What type of routing protocol is considered more sophisticated and builds a map of the network?

A. Hybrid
B. Path Vector
C. Distance Vector
D. Link State

Correct Answer: D
Section: IP Routing Technologies

QUESTION 17
Which of the following is the main protocol enabling the Internet to function with inter-AS routing?

A. IS-IS
B. RIP
C. BGP
D. EIGRP
E. OSPF

Correct Answer: C
Section: IP Routing Technologies

QUESTION 18
Where is internal routing found?

A. Only within service providers


B. Within Autonomous Systems
C. Between Autonomous Systems
D. In lab environments only

Correct Answer: B
Section: IP Routing Technologies

QUESTION 19
What feature do you use in order to create a floating static route?

A. Metric
B. Dampening
C. Route suppression
D. Administrative Distance

Correct Answer: D
Section: IP Routing Technologies

QUESTION 20
Which value is indicated by the next hop in a routing table?

A. Preference of the route source.


B. IP address of the remote router for forwarding the packets.
C. How the route was learned.
D. Exit interface IP address for forwarding the packets.

Correct Answer: B
Section: IP Routing Technologies

QUESTION 21
Refer to the exhibit.
A network administrator is adding two new hosts to SwitchA. Which three values could be used for the
configuration of these hosts? (Choose three.)

A. host A IP address: 192.168.1.110


B. host A IP address: 192.168.1.64
C. host A default gateway: 192.168.1.78
D. host B IP address: 192.168.1.128
E. host B default gateway: 192.168.1.130
F. host B IP address: 192.168.1.190

Correct Answer: CEF


Section: IP Routing Technologies

QUESTION 22
Which routing protocol provides the fastest convergence and greatest flexibility within a campus environment?

A. OSPF
B. IS-IS
C. BGP
D. EIGRP
E. RIP

Correct Answer: D
Section: IP Routing Technologies
Route Summarization - VLSM

QUESTION 1
Which of the following summarized subnets are not valid summaries that include subnets 10.1.55.0, 10.1.56.0,
and 10.1.57.0, mask 255.255.255.0? (Choose two answers.)

A. 10.0.0.0 255.0.0.0
B. 10.1.0.0 255.255.0.0
C. 10.1.55.0 255.255.255.0
D. 10.1.48.0 255.255.248.0
E. 10.1.32.0 255.255.224.0

Correct Answer: CD
Section: Route Summarization - VLSM

QUESTION 2
Which of the following would be considered the best subnet/mask to add for a new summary route that
summarizes routes for subnets 192.168.1.64/28, 192.168.1.80/28, and 192.168.1.96/28?

A. 192.168.1.0/25
B. 192.168.1.64/26
C. 192.168.1.32/26
D. 192.168.1.64/27

Correct Answer: B
Section: Route Summarization - VLSM

QUESTION 3
Refer to the exhibit.

What is the most appropriate summarization for these routes?

A. 10.0.0.0 /21
B. 10.0.0.0 /22
C. 10.0.0.0 /23
D. 10.0.0.0 /24

Correct Answer: B
Section: Route Summarization - VLSM

QUESTION 4
Refer to the exhibit.
What summary address would be sent from router A?

A. 172.16.0.0 /16
B. 172.16.0.0 /20
C. 172.16.0.0 /24
D. 172.32.0.0 /16
E. 172.32.0.0 /17
F. 172.64.0.0 /16

Correct Answer: A
Section: Route Summarization - VLSM

QUESTION 5
Refer to the exhibit.

What is the most efficient summarization that R1 can use to advertise its networks to R2?

A. 172.1.0.0/22
B. 172.1.0.0/21
C. 172.1.4.0/22
D. 172.1.4.0/24
172.1.5.0/24
172.1.6.0/24
172.1.7.0/24
E. 172.1.4.0/25
172.1.4.128/25
172.1.5.0/24
172.1.6.0/24
172.1.7.0/24

Correct Answer: C
Section: Route Summarization - VLSM

QUESTION 6
Refer to the exhibit.

Which address range efficiently summarizes the routing table of the addresses for router Main?

A. 172.16.0.0./21
B. 172.16.0.0./20
C. 172.16.0.0./16
D. 172.16.0.0/18

Correct Answer: B
Section: Route Summarization - VLSM

QUESTION 7
Which of the following routing protocols support VLSM? (Choose three answers.)

A. RIP-1
B. RIP-2
C. EIGRP
D. OSPF

Correct Answer: BCD


Section: Route Summarization - VLSM

QUESTION 8
R1 has configured interface Fa0/0 with the ip address 10.5.48.1 255.255.240.0 command. Which of the
following subnets, when configured on another interface on R1, would not be considered an overlapping VLSM
subnet?

A. 10.5.0.0 255.255.240.0
B. 10.4.0.0 255.254.0.0
C. 10.5.32.0 255.255.224.0
D. 10.5.0.0 255.255.128.0

Correct Answer: A
Section: Route Summarization - VLSM

QUESTION 9
R4 has a connected route for 172.16.8.0/22. Which of the following answers lists a subnet that overlaps with
this subnet?

A. 172.16.0.0/21
B. 172.16.6.0/23
C. 172.16.16.0/20
D. 172.16.11.0/25

Correct Answer: D
Section: Route Summarization - VLSM

QUESTION 10
Which of the following interior routing protocols not support VLSM?

A. RIP-1
B. RIP-2
C. EIGRP
D. OSPF

Correct Answer: A
Section: Route Summarization - VLSM
OSPF

QUESTION 1
Which parameter or parameters are used to calculate OSPF cost in Cisco routers?

A. Bandwidth
B. Bandwidth and Delay
C. Bandwidth, Delay, and MTU
D. Bandwidth, MTU, Reliability, Delay, and Load

Correct Answer: A
Section: OSPF

QUESTION 2
Refer to the graphic.

Router R2 can't establish neighbor with Router R3. What are possible reasons for this problem? (Choose two.)

A. All of the routers need to be configured for backbone Area 0.


B. R1 and R2 are the DR and BDR, so OSPF will not establish neighbor adjacency with R3.
C. A static route has been configured from R1 to R3 and prevents the neighbor adjacency from being
established.
D. The hello and dead interval timers are not set to the same values on R2 and R3.
E. EIGRP is also configured on these routers with a lower administrative distance.
F. R2 and R3 are configured in different areas.

Correct Answer: DF
Section: OSPF

QUESTION 3
A network associate has configured OSPF with the command:

City(config-router)# network 192.168.12.128 0.0.0.63 area 0

After completing the configuration, the associate discovers that not all the interfaces are participating in OSPF.
Which two of the interfaces shown in the exhibit will participate in OSPF according to this configuration
statement? (Choose two.)

A. FastEthernet0 /0
B. FastEthernet0 /1
C. Serial0/0
D. Serial0/1.102
E. Serial0/1.103
F. Serial0/1.104

Correct Answer: EF
Section: OSPF

QUESTION 4

What router ID will OSPF use if the router ID has not been manually set?

A. 10.1.1.2
B. 10.154.154.1
C. 172.16.5.1
D. 192.168.5.3
E. 2.2.2.2

Correct Answer: C
Section: OSPF

QUESTION 5
Three routers configure OSPF area 0, all network commands are correct and not modifire OSPF priority. Which
answer is true if we clear ip ospf process same time?

A. DR - R3 ; BDR - R2
B. DR - R2 ; BDR - R3
C. DR - R3 ; BDR - R1
D. DR - R1 ; BDR - R3

Correct Answer: D
Section: OSPF

QUESTION 6
Select protocol use link-state logic? (Choose two).

A. RIP-1
B. RIP-2
C. EIGRP
D. OSPF
E. IS-IS

Correct Answer: DE
Section: OSPF

QUESTION 7
Which statement describes the process ID that is used to run OSPF on a router?

A. It is globally significant and is used to represent the AS number.


B. It is locally significant and is used to identify an instance of the OSPF database.
C. It is globally significant and is used to identify OSPF stub areas.
D. It is locally significant and must be the same throughout an area.

Correct Answer: B
Section: OSPF

QUESTION 8
Refer to the exhibit.
If the router Cisco returns the given output and has not had its router ID set manually, what value will OSPF use
as its router ID?

A. 192.168.1.1
B. 172.16.1.1
C. 1.1.1.1
D. 2.2.2.2
E. 111.1.1.1

Correct Answer: E
Section: OSPF

QUESTION 9
What command sequence will configure a router to run OSPF and add network 10.1.1.0 /25 to area 0?
(Choose two)

A. router ospf area 0


network 10.1.1.0 255.255.255.0 area 0
B. router ospf
network 10.1.1.0 0.0.0.255
C. router ospf 1
network 10.1.1.0 0.0.0.255 area 0
D. router ospf area 0
network 10.1.1.0 0.0.0.255 area 0
E. router ospf
network 10.1.1.0 255.255.255.0 area 0
F. router ospf 1
network 10.1.1.0 0.0.0.127 area 0

Correct Answer: CF
Section: OSPF

QUESTION 10
Which of the following commands list the OSPF neighbors off interface serial 0/0? (Choose two answers.)

A. show ip ospf neighbor


B. show ip ospf interface brief
C. show ip neighbor
D. show ip interface
E. show ip ospf neighbor serial 0/0

Correct Answer: AE
Section: OSPF

QUESTION 11
Select the correct answer: Which of the following is true about how a router using a link-state routing protocol
chooses the best route to reach a subnet?

A. The router finds the best route in the link-state database.


B. The router calculates the best route by running the SPF algorithm against the information in the link-state
database.
C. The router compares the metrics listed for that subnet in the updates received from each neighbor and
picks the best (lowest) metric route.
D. The router uses the path that has the lowest hop count.

Correct Answer: B
Section: OSPF

QUESTION 12
Which of the algorithm OSPF runs to calculate the currently best route? (Choose two answers.)

A. SPF
B. DUAL
C. Feasible successor
D. Dijkstra
E. Good old common sense

Correct Answer: AD
Section: OSPF

QUESTION 13
Which of the following network commands, following the command router ospf 1, tells this router to start using
OSPF on interfaces whose IP addresses are 10.1.1.1, 10.1.100.1, and 10.1.120.1?

A. network 10.0.0.0 255.0.0.0 area 0


B. network 10.0.0.0 0.255.255.255 0
C. network 10.0.0.0 0.0.0.255 area 0
D. network 10.1.0.0 0.0.255.255 area 0

Correct Answer: D
Section: OSPF

QUESTION 14
Which of the following network commands, following the command router ospf 1, tells this router to start using
OSPF on interfaces whose IP addresses are 10.1.1.1, 10.1.100.1, and 10.1.120.1?

A. network 0.0.0.0 255.255.255.255 area 0


B. network 10.0.0.0 0.255.255.0 area 0
C. network 10.1.1.0 0.x.1x.0 area 0
D. network 10.1.1.0 255.0.0.0 area 0
E. network 10.0.0.0 255.0.0.0 area 0

Correct Answer: A
Section: OSPF

QUESTION 15
What statement about OSPFv2 is true?

A. The dead timers do not need to match between neighbors.


B. The hello timers do not need to match between neighbors.
C. The area ID must match between neighbors.
D. The network command must be used.

Correct Answer: C
Section: OSPF

QUESTION 16
In the following exhibit, which router is the designated router?

A. Router A
B. Router B
C. Router C
D. Router D
E. Router E

Correct Answer: B
Section: OSPF

QUESTION 17
OSPF routing uses the concept of areas. What are the characteristics of OSPF areas? (Chose two)

A. Each OSPF area requires a loopback interface to be configured


B. Single area OSPF networks must be configured in area 1
C. Area 0 is called the backbone area
D. Hierarchical OSPF networks do not require multiple areas
E. Multiple OSPF areas must connect to area 0

Correct Answer: CE
Section: OSPF

QUESTION 18
Router R1 is unable to establish an OSPF neighbor relationship with router R2. What is possible reason for this
problem?

A. All of the routers need to be configured for backbone Area 1.


B. EIGRP is also configured on these routers with a lower administrative distance.
C. A static route has been configured from R1 to R2 and prevents the neighbor adjacency from being
established.
D. R1 and R2 are configured in different areas.

Correct Answer: D
Section: OSPF

QUESTION 19
When the OSPF priorities on all the routers are the same, how is the DR selected?

A. The router with the lowest router ID


B. The router with the highest router ID
C. The router with the priority set to 0
D. One is randomly selected

Correct Answer: B
Section: OSPF

QUESTION 20
What happens when the DR fails?

A. The BDR becomes the DR and an election for a new BDR occurs.
B. A new DR is elected.
C. The router ID is changed.
D. The priority of the OSPF router is set to 0.

Correct Answer: A
Section: OSPF
Access Control Lists

QUESTION 1
Which of the following answers list a valid number that can be used with extended numbered IP ACLs?
(Choose two answers.)

A. 1666
B. 2666
C. 199
D. 66
E. 1999

Correct Answer: BC
Section: Access Control Lists

QUESTION 2
Which of the following wildcard masks is most useful for matching all IP packets in subnet 172.30.0.0 with
subnet mask 255.255.248.0?

A. 0.0.0.15
B. 0.0.0.31
C. 0.0.16.255
D. 0.0.15.255
E. 0.0.15.0
F. 0.0.248.255
G. 0.0.7.255

Correct Answer: G
Section: Access Control Lists

QUESTION 3
ACL 10 has three statements, in the following order, with address and wildcard mask values as follows:
11.0.0.0 0.255.255.255, 11.1.0.0 0.0.255.255, 11.1.111.0 0.0.0.255 and 11.1.111.1 0.0.0.0. If a router tried to
match a packet sourced from IP address 11.1.111.1 using this ACL, which ACL statement does a router
consider the packet to have matched?

A. First
B. Second
C. Third
D. Fourth
E. Implied deny at the end of the ACL

Correct Answer: A
Section: Access Control Lists

QUESTION 4
Which of the following access-list commands matches all packets sent from hosts in subnet 10.215.12.0/25?

A. access-list 10 permit 10.215.12.0 0.0.255.0


B. access-list 10 permit 10.215.12 0.0.1.255
C. access-list 10 permit 10.215.12.0
D. access-list 10 permit 10.215.12.0 0.0.0.127
E. access-list 10 permit 10.215.12.0 0.0.0.0
Correct Answer: D
Section: Access Control Lists

QUESTION 5
Which of the following fields can be compared based on an extended IP ACL? (Choose three answers).

A. Port
B. Source IP address
C. Destination IP address
D. URL
E. Filename for FTP transfers

Correct Answer: ABC


Section: Access Control Lists

QUESTION 6
Which of the following access-list commands permit packets going from host 172.16.13.1 to all web servers
whose IP addresses begin with 192.168.100? (Choose two answers.)

A. access-list 100 permit tcp 172.16.13.1 0.0.0.1 192.168.100.0 0.0.0.255 eq 443


B. access-list 100 permit tcp 172.16.13.1 0.0.0.0 192.168.100.0 0.0.0.255 eq www
C. access-list 2000 permit ip 172.16.13.1 0.0.0.0 eq www 192.168.100.0 0.0.0.255
D. access-list 2000 permit tcp host 172.16.13.1 eq www 192.168.100.0 0.0.0.255
E. access-list 2000 permit tcp host 172.16.13.1 192.168.100.0 0.0.0.255 eq 443
F. access-list 100 permit udp host 172.16.13.1 192.168.100.0 0.0.0.255 eq www

Correct Answer: BE
Section: Access Control Lists

QUESTION 7
Which of the following access-list commands permits packets going to any web client from all web servers
whose IP addresses begin with 172.29.5?

A. access-list 101 permit tcp host 172.168.4.8 172.29.5.0 0.0.0.255 eq www


B. access-list 111 permit ip host 192.168.1.15 172.29.5.0 0.0.0.255 eq 443
C. access-list 2345 permit tcp any eq www 172.29.5.0 0.0.0.255
D. access-list 2345 permit tcp 172.29.5.0 0.0.0.255 eq 80 255.255.255.255 255.255.255.255
E. access-list 2345 permit tcp 172.29.5.0 0.0.0.255 eq 70 0.0.0.0 255.255.255.255
F. access-list 101 permit tcp host 10.1.1.1 172.29.5.0 0.0.255.255 eq www

Correct Answer: D
Section: Access Control Lists

QUESTION 8
What general guideline should you follow when placing standard IP ACLs?

A. Perform all filtering on output if at all possible.


B. Put more general statements early in the ACL.
C. Filter packets as close to the source as possible.
D. Order the ACL commands based on the source IP addresses, from lowest to highest, to improve
performance.
E. Filter packets as close to the destination as possible.

Correct Answer: E
Section: Access Control Lists

QUESTION 9
Which command use to verify ACLs?

A. show access-list
B. show standard access-list
C. show extended access-list
D. show all access-list

Correct Answer: A
Section: Access Control Lists

QUESTION 10
There are two types of access lists: (Choose two answers).

A. Standard access-list
B. Number access-list
C. Extended access-list
D. Name access-list
E. Access-group access-list

Correct Answer: AC
Section: Access Control Lists

QUESTION 11
Refer to the exhibit.

ACL 1
Statements are written in this order
A permit any
B permit 192.168.1.198 0.0.0.0
C permit 192.168.1.193 0.0.0.0
D deny 192.168.1.192 0.0.0.7

Statements A, B, C, and D of ACL 1 have been entered in the shown order and applied to interface f0/0
inbound, to prevent all hosts (except those whose addresses are the first and last IP of subnet
192.168.1.192/29) from accessing the network. But as is, the ACL does not restrict anyone from the network.
How can the ACL statements be re-arranged so that the system works as intended?

A. ACDB
B. BADC
C. DCBA
D. CDAB
E. CBDA

Correct Answer: E
Section: Access Control Lists

QUESTION 12
Refer to the configuration below:

hostname Router
!
enable password cisco
!
access-list 12 permit any
!
access-list 120 deny tcp any any eq 23
access-list 120 permit ip any any
!
interface f0/0
no shutdown
ip address 192.168.1.1 255.255.255.0
ip access-group 120 in
!
line vty 0 4
no login
access-class 12 in
!
end

A network administrator cannot establish a Telnet session with the indicated router. What is the cause of this
failure?

A. Enable password is not set.


B. ACL 120 is blocking Telnet access.
C. The vty password is missing.
D. The console password is missing.
E. ACL 12 is blocking Telnet access.

Correct Answer: B
Section: Access Control Lists

QUESTION 13
Which two statements about access lists that are applied to an interface are true?

A. You can place as many access lists as you want on any interface.
B. You can apply two IP access list on an interface, one for inbound and one for outbound data.
C. You can configure one access list, per direction, per Layer 3 protocol.
D. You can apply only one access list on any interface.
E. You can configure one access list, per direction, per Layer 2 protocol.

Correct Answer: BC
Section: Access Control Lists

QUESTION 14
Which item represents the standard IP ACL?

A. access-list 10 permit ip any any


B. access-list 98 permit 192.168.1.1 0.0.255.255
C. access list 112 deny tcp host 172.16.10.1 any
D. access-list 2699 permit udp any host 192.168.1.1 eq 53
E. access-list 1500 deny ip 172.16.10.0 0.0.0.255

Correct Answer: B
Section: Access Control Lists

QUESTION 15
A network administrator is configuring ACLs on a Cisco router, to allow traffic from hosts on networks
192.168.168.0, 192.168.169.0, 192.168.170.0 and 192.168.171.0 only. Which ACL statement would you use to
accomplish this task?
A. access-list 1 permit 192.168.169.0 0.0.255.255
B. access-list 1 permit 192.168.170.0 0.0.0.255
C. access-list 1 permit 192.168.168.0 255.255.252.0
D. access-list 1 permit 192.168.168.0 0.0.3.255
E. access-list 1 permit 192.168.168.0 0.0.7.255

Correct Answer: D
Section: Access Control Lists

QUESTION 16
Which of the following is a valid extended IP access list?

A. access-list 111 permit ip host 164.42.20.0 any eq 80


B. access-list 111 permit ip host 164.42.20.0 any eq www
C. access-list 111 permit tcp host 164.42.20.0 any eq 80
D. access-list 111 permit icmp host 164.42.20.0 any eq www
E. access-list 1111 permit udp host 164.42.20.0 any eq 69

Correct Answer: C
Section: Access Control Lists

QUESTION 17
Your manager has asked you to block traffic from the system with the IP address of 172.16.5.5. You have
configured an access list using the commands show in the figure below, but now no traffic from any system can
pass through the interface. Why?

access-list 1 deny host 172.16.5.5

interface s0/0
ip access-group 1 in

A. Access lists have an implied deny all at the bottom.


B. You need a subnet mask in the access list command.
C. You should have used ip access-class instead of ip access-group.
D. You should have used a permit instead of deny.

Correct Answer: A
Section: Access Control Lists

QUESTION 18
You would like to ensure that only systems on the 148.27.31.64/27 subnet can telnet into your router. What
commands would you use?

A. access-list 2 permit 148.27.31.64 0.0.0.31


line vty 0 4
access-class 2 in
B. access-list 2 permit 148.27.31.64 255.255.255.224
line vty 0 4
access-class 2 in
C. access-list 2 permit 148.27.31.64 0.0.0.31
line vty 0 4
access-group 2
D. access-list 2 permit 148.27.31.64 255.255.255.224
line vty 0 4
access-group 2 in
E. access-list 2 permit 148.27.31.64 0.0.0.32
line vty 0 4
access-class 2

Correct Answer: A
Section: Access Control Lists

QUESTION 19
What is the result of the access list in the figure below?

access-list 100 deny ip host 10.10.10.10 172.31.31.0 0.0.0.255


access-list 100 deny tcp host 10.10.10.10 host 30.30.30.30 eq www
access-list 100 permit ip any any

A. It denies the 10.10.10.10 system from accessing the 172.31.31.0 network, denies the system of 10.10.10.10
from accessing the website on 30.30.30.30, and permits all others.
B. It denies the 172.31.31.0 network from accessing the 10.10.10.10 system, denies the system of 10.10.10.10
from accessing the website on 30.30.30.30, and permits all others.
C. It denies the 10.10.10.10 system from accessing the 172.31.31.0 network, all systems from accessing the
website on 30.30.30.30, and permits all others.
D. It denies the 10.10.10.10 system from accessing the 172.31.31.0 network, all systems from accessing the
website on 30.30.30.30, and denies all others.

Correct Answer: A
Section: Access Control Lists

QUESTION 20
Refer to the exhibit.

ACL 100
access-list 100 deny tcp 192.168.1.1 0.0.0.255 any eq 80
access-list 100 deny ip any any

RouterA#show ip interface
FastEthernet0/0 is up, line protocol is up
Internet address is 192.16.1.144/20
Broadcast address is 255.255.255.255
Address determined by DHCP
MTU is 1500 bytes
Helper address is not set
Directed broadcast forwarding is enabled
Outgoing access list is 100
Inbound access list is not set
Proxy ARP is enabled

An attempt to deny web access to a subnet blocks all traffic from the subnet. Which interface command
immediately removes the effect of ACL 100?

A. no ip access-class 100 in
B. no ip access-class 100 out
C. no ip access-group 100 in
D. no ip access-group 100 out
E. no ip access-list 100 in

Correct Answer: D
Section: Access Control Lists
QUESTION 21
Which command will achieve the same goal as the command "access-list 2 permit host 192.168.2.2"?

A. access-list 2 permit 192.168.2.2 255.255.255.255


B. access-list 2 permit 192.168.2.2 0.0.0.0
C. ip access-list 2 permit host 192.168.2.2
D. access-list 2 deny 192.168.2.2
E. access-class 2 permit 192.168.2.2 0.0.0.0

Correct Answer: B
Section: Access Control Lists

QUESTION 22
Which statement is correct about an access control list?

A. Packets are compared sequentially against each line in an access list, and the last matching condition is the
action taken.
B. Packets are compared sequentially against each line in an access list until a match is made.
C. Packets are compared, and if no matching rule exists, they are allowed.
D. At the end of the access control list, there is an implicit allow.

Correct Answer: B
Section: Access Control Lists

QUESTION 23
Which statement configures a valid access list?

A. Router(config)#access-list 1 deny any any


B. Router(config)#access-list 189 deny any host 192.168.1.5 eq 22
C. Router(config)#access-list 143 permit tcp host 192.168.8.3 eq 80 any
D. Router(config)#access-list 153 permit any host 192.168.4.5 eq 22
E. Router(config)#access-list 99 deny tcp host 192.168.2.7 any eq 443

Correct Answer: C
Section: Access Control Lists

QUESTION 24
You want to apply an access list of 198 to an interface to filter traffic into the interface. Which command will
achieve this?

A. Router(config)#ip access-list 198 in fast 0/1


B. Router(config-if)#ip access-list 198 in
C. Router(config-if)#ip access-class 198 in
D. Router(config-if)#ip access-group 198 in
E. Router(config-if)#access-group 198 in
F. Router(config-if)#ip access-group 198 out

Correct Answer: D
Section: Access Control Lists

QUESTION 25
Refer to the graphic. It has been decided that PC1 should be denied access to Server1. Which of the following
commands are required to prevent only PC1 from accessing Server1 while allowing all other traffic to flow
normally? (Choose two)

A. Router(config)# interface fa0/1


Router(config-if)# ip access-group 101 out
B. Router(config)# interface fa0/1
Router(config-if)# ip access-group 101 in
C. Router(config)# access-list 101 deny ip host 172.16.161.150 host 172.16.162.163
Router(config)# access-list 101 permit ip any any
D. Router(config)# access-list 101 deny ip 172.16.161.150 0.0.0.255 172.16.162.163 0.0.0.0
Router(config)# access-list 101 permit ip any any

Correct Answer: AC
Section: Access Control Lists
Network Address Translation

QUESTION 1
Which of the following are private addresses according to RFC 1918? (Choose three answers.)

A. 172.31.1.0
B. 172.32.0.1
C. 12.254.1.1
D. 10.10.255.10
E. 191.168.1.1
F. 192.168.1.1

Correct Answer: ADF


Section: Network Address Translation

QUESTION 2
Which three statements about static NAT translations are false?

A. They allow connections to be initiated from the outside.


B. They require no inside or outside interface markings because addresses are statically defined.
C. They are always present in the NAT table.
D. They can be configured with access lists, to allow two or more connections to be initiated from the outside.
E. The number of inside global IP addresses must be equal to the number of inside local IP addresses.
F. They are less secure than dynamic NAT.

Correct Answer: BDF


Section: Network Address Translation

QUESTION 3
Which command use to verify NAT?

A. show ip nat translation


B. show ip nat detail
C. show ip nat descripton
D. show ip nat summary
E. show ip translation nat
F. show ip nat

Correct Answer: A
Section: Network Address Translation

QUESTION 4
Refer to the exhibit.

VnPro#show ip nat translations


Pro Inside global Inside local Outside local Outside global
icmp 200.0.0.20:2 192.168.1.1:2 8.8.8.8:2 8.8.8.8:2
icmp 200.0.0.20:3 192.168.2.1:3 8.8.8.8:3 8.8.8.8:3

Based on the output that is shown, what type of NAT has been implemented?

A. static NAT with a NAT pool


B. PAT using an external interface
C. static NAT with one entry
D. dynamic NAT with a pool of two public IP addresses
E. Symmetric NAT

Correct Answer: B
Section: Network Address Translation

QUESTION 5
Refer to the exhibit.

R1(config)#ip nat inside source static 192.168.11.11 209.165.200.1


R1(config)#interface f0/0
R1(config-if)#ip nat inside

What has to be done in order to complete the static NAT configuration on R1?

A. R1 should be configured with the command ip nat inside source static 209.165.200.1 192.168.11.11.
B. R1 should be configured with the command ip nat inside source static 209.165.200.200 192.168.11.11.
C. Interface S0/0/0 should be configured with the command ip nat outside.
D. Interface Fa0/0 should be configured with the command ip nat inside.
E. Interface Fa0/0 should be configured with the command no ip nat inside.

Correct Answer: C
Section: Network Address Translation

QUESTION 6
Your manager has asked what would be a good use of static NAT?

A. Share a single public IP address to all internal systems


B. For internal clients to surf the Internet
C. To allow DHCP to assign the address
D. For publishing an internal system to the Internet
E. Static NAT has less latency than dynamic NAT

Correct Answer: D
Section: Network Address Translation

QUESTION 7
You have created access list 1 that lists the IP addresses for NAT usage. What command would you use to
configure the router so that those addresses can use NAT?

A. R1(config)#nat access list 1


B. R1(config)#ip nat interface serial 0/0 overload
C. R1(config)#ip nat inside source list 1 interface serial 0/0 overload
D. R1(config)#ip nat inside source list 1
E. R1(config)#ip nat source list 1 interface serial 0/0 overload

Correct Answer: C
Section: Network Address Translation

QUESTION 8
What type of NAT maps a single public address to all internal addresses?

A. Overloading
B. Static
C. Internal
D. Public
E. Dynamic

Correct Answer: A
Section: Network Address Translation

QUESTION 9
Which of the following are two disadvantages of using NAT?

A. Translation introduces switching path delays


B. Introduces security weaknesses
C. Increases flexibility when connecting to the Internet
D. NAT reduces address overlap occurrence
E. NAT protects network security because private networks are not advertised
F. NAT causes loss of end-to-end IP traceability

Correct Answer: AF
Section: Network Address Translation

QUESTION 10
Which two addresses types are included in NAT?

A. inside global
B. global outside
C. outside internet
D. inside internet
E. outside local
F. local outside

Correct Answer: AE
Section: Network Address Translation

QUESTION 11
When configuring dynamic NAT, why must you configure an access-list?

A. The access-list allows incoming access from outside global addresses.


B. The access-list allows outgoing access from inside local addresses.
C. The access-list allows outgoing access from outside local addresses.
D. The access-list allows outgoing access from inside global addresses.
E. The access-list allows incoming access from inside global addresses.
Correct Answer: B
Section: Network Address Translation

QUESTION 12
Looking at the figure below, which of the following would be used to configure NAT on the router? Assume the
IP addresses are already assigned to the interfaces.

A. NY-R1(config)#access-list 1 permit 192.168.4.64 255.255.255.224


NY-R1(config)#ip nat inside source list 1 interface serial 0/0 overload
NY-R1(config)#interface Serial0/0
NY-R1(config-if)#ip nat outside
NY-R1(config-if)#interface FastEthernet0/1
NY-R1(config-if)#ip nat inside
B. NY-R1(config)#access-list 1 permit 192.168.4.64 0.0.0.31
NY-R1(config)#ip nat inside source list 1 interface serial 0/0 overload
NY-R1(config)#interface Serial0/0
NY-R1(config-if)#ip nat inside
NY-R1(config-if)#interface FastEthernet0/1
NY-R1(config-if)#ip nat outside
C. NY-R1(config)#access-list 1 permit 192.168.4.64 0.0.0.31
NY-R1(config)#ip nat inside source list 1 interface Fast Ethernet 0/1 overload
NY-R1(config)#interface Serial0/0
NY-R1(config-if)#ip nat outside
NY-R1(config-if)#interface FastEthernet0/1
NY-R1(config-if)#ip nat inside
D. NY-R1(config)#access-list 1 permit 192.168.4.64 0.0.0.31
NY-R1(config)#ip nat inside source list 1 interface serial 0/0 overload
NY-R1(config)#interface Serial0/0
NY-R1(config-if)#ip nat outside
NY-R1(config-if)#interface FastEthernet0/1
NY-R1(config-if)#ip nat inside

Correct Answer: D
Section: Network Address Translation
QUESTION 13
In the following exhibit, which command will configure Port Address Translation?

A. RouterA(config)#access-list 1 permit 192.168.1.0 0.0.0.255


RouterA(config)#ip nat pool VnPro 179.43.44.1 179.43.44.1
RouterA(config)#ip nat inside source list 1 pool EntPool
B. RouterA(config)#ip nat pool VnPro 179.43.44.1 179.43.44.1 netmask 255.255.255.0
RouterA(config)#ip nat source pool EntPool
C. RouterA(config)#access-list 1 permit 192.168.1.0 0.0.0.255
RouterA(config)#ip nat pool VnPro 179.43.44.1 179.43.44.1 netmask 255.255.255.0
RouterA(config)#ip nat inside source list 1 pool VnPro overload
D. RouterA(config)#access-list 1 permit 192.168.1.0 0.0.0.255
RouterA(config)#ip nat pool VnPro 179.43.44.1 179.43.44.1 netmask 255.255.255.0
RouterA(config)#ip nat inside source list 1 pool EntPool
E. RouterA(config)#access-list 1 permit 192.168.1.0 0.0.0.255
RouterA(config)#ip nat pool VnPro 179.43.44.1 179.43.44.1
RouterA(config)#ip nat inside source list 1 pool EntPool overload

Correct Answer: C
Section: Network Address Translation

QUESTION 14
Refer to the exhibit.

ip nat pool VNPRO 10.20.30.40 10.20.30.140 netmask 255.255.255.0


!
interface gigabitethernet 0
description ISP Connection
ip address 10.20.30.2 255.255.255.0
ip nat outside
!
interface gigabitethernet 1
description Ethernet to Firewall G0
ip address 10.10.10.1 255.255.255.0
ip nat inside
!
access-list 10 permit 10.10.0.0 0.0.255.255

What command sequence will enable PAT from the inside to outside network?

A. (config)# ip nat pool VNPRO 10.20.30.2 netmask 255.255.255.0 overload


B. (config-if)# ip nat outside overload
C. (config-if)# ip nat inside source list 10 interface gigabitethernet 0 overload
D. (config-if)# ip nat inside overload
E. (config)# ip nat inside source list 10 interface gigabitethernet 0 overload
F. (config)# ip nat inside source list 10 interface gigabitethernet 1 overload

Correct Answer: E
Section: Network Address Translation

QUESTION 15
Refer to the exhibit. What two statements are true of the configuration for this network?

A. Address translation on fa0/1 is not required for DMZ Devices to access the Internet.
B. Because of the addressing on interface FastEthernet0/1, the Serial0/0 interface address will not support the
NAT configuration as shown.
C. The number 1 referred to in the ip nat inside source command references access-list number 1.
D. ExternalRouter must be configured with static routers to network 172.16.1.0/24.
E. The fa0/1 IP address overlaps with the space used by s0/0.

Correct Answer: AC
Section: Network Address Translation
WAN - VPN

QUESTION 1
At which layer of the TCP/IP model does PPP perform?

A. Network Access
B. Internet
C. Transport
D. Application
E. Network

Correct Answer: A
Section: WAN - VPN

QUESTION 2
Which two options are valid WAN connectivity methods?

A. CHAP
B. WAP
C. ADSL
D. L2TPv3
E. Leased Line

Correct Answer: CE
Section: WAN - VPN

QUESTION 3
Which statements about using the CHAP authentication mechanism in a PPP link are true? (Choose three.)

A. CHAP uses a two-way handshake.


B. CHAP uses a three-way handshake.
C. CHAP authentication periodically occurs after link establishment.
D. CHAP authentication passwords are not sent in plaintext.
E. CHAP authentication is performed only upon link establishment.
F. CHAP has no protection from playback attacks.

Correct Answer: BCD


Section: WAN - VPN

QUESTION 4
Which PPP subprotocol perform multiple layer 3 protocol encapsulation?

A. NCP
B. ISDN
C. SLIP
D. LCP
E. DLCI

Correct Answer: A
Section: WAN - VPN

QUESTION 5
Which command use to verify PPPoE?
A. show pppoe session
B. show pppoe line
C. show pppoe connect
D. show pppoe vty
E. show ppoe

Correct Answer: A
Section: WAN - VPN

QUESTION 6
What is the default encapsulation type on Cisco serial interfaces?

A. PPP
B. HDLC
C. ATM
D. X25
E. Frame Relay

Correct Answer: B
Section: WAN - VPN

QUESTION 7
Which PPP subprotocol sets up the PPP link?

A. NCP
B. ISDN
C. SLIP
D. LCP
E. DLCI

Correct Answer: D
Section: WAN - VPN

QUESTION 8
Which interface type does a PPPoE client use to establish a session?

A. physical
B. loopback
C. visual-template
D. dialer
E. tunnel

Correct Answer: D
Section: WAN - VPN

QUESTION 9
Why won’t the serial link between the Corp router and the Remote router come up?

Corp#sh int s0/0


Serial0/0 is up, line protocol is down
Hardware is PowerQUICC Serial
Internet address is 192.168.12.1/24
MTU 1500 bytes, BW 1544 Kbit, DLY 20000 usec,
reliability 254/255, txload 1/255, rxload 1/255
Encapsulation HDLC, loopback not set
Remote#sh int s0/0
Serial0/0 is up, line protocol is down
Hardware is PowerQUICC Serial
Internet address is 192.168.12.2/24
MTU 1500 bytes, BW 1544 Kbit, DLY 20000 usec,
reliability 254/255, txload 1/255, rxload 1/255
Encapsulation PPP, loopback not set

A. The serial cable is faulty.


B. The IP addresses are not in the same subnet.
C. The subnet masks are not correct.
D. The keepalive settings are not correct.
E. The layer 2 frame types are not compatible.

Correct Answer: E
Section: WAN - VPN

QUESTION 10
Which of the following are true in regards to PPP versus HDLC?

A. HDLC only supports PAP authentication.


B. PPP supports authentication.
C. HDLC is vendor neutral.
D. PPP is Cisco specific.
E. PPP is vendor neutral.

Correct Answer: BE
Section: WAN - VPN

QUESTION 11
What are three reasons that an organization with multiple branch offices and roaming users might implement
the site - to - site VPN solution instead of point-to-point WAN links?

A. reduced cost
B. better security
C. broadband incompatibility
D. increased throughput
E. scalability
F. reduced latency

Correct Answer: ABE


Section: WAN - VPN

QUESTION 12
Select two benifits of VPN?

A. security
B. scalability
C. easy configuration
D. easy monitor
E. best performance

Correct Answer: AB
Section: WAN - VPN

QUESTION 13
In the following exhibit, you are configuring a GRE tunnel. What is wrong with this configuration?

A. Nothing is wrong with the configuration.


B. The destination on Router A of the tunnel is incorrect.
C. The network is un-routable.
D. The serial interfaces are on different networks.
E. The tunnel source must be an IP address, not interface.

Correct Answer: C
Section: WAN - VPN

QUESTION 14
In the following exhibit, you are configuring a GRE tunnel and need to configure a route statement on Router A.
Which is the correct route statement?
A. RouterA(config)# ip route 192.168.1.0 255.255.255.0 tunnel 0
B. RouterA(config)# ip route 192.168.12.0 255.255.255.0 tunnel 0
C. RouterA(config)# ip route 192.168.1.0 255.255.255.0 serial 0/0/1
D. RouterA(config)# ip route 192.168.2.0 255.255.255.0 192.168.12.1
E. RouterA(config)# ip route 192.168.2.0 255.255.255.0 192.168.12.2

Correct Answer: E
Section: WAN - VPN

QUESTION 15
Which of the following is an industry-wide standard suite of protocols and algorithms that allows for secure data
transmission over an IP-based network that functions at the layer 3 Network layer of the OSI model?

A. HDLC
B. Cable
C. VPN
D. IPSec
E. xDSL

Correct Answer: D
Section: WAN - VPN

QUESTION 16
Which of the following statements is false about GRE Tunnel?

A. Tunneling of arbitrary OSI Layer 3 payload is the primary goal of GRE


B. Stateless (no flow control mechanisms)
C. No security (no confidentiality, data authentication, or integrity assurance)
D. 24-byte overhead by default (20-byte IP header and 4-byte GRE header)
E. GRE isn't the default tunnel mode

Correct Answer: E
Section: WAN - VPN
IPV6

QUESTION 1
Which address types are used in IPv6? (Choose three answers.)

A. Unicast
B. Multicast
C. Anycast
D. Broadcast
E. Localcast
F. Cryptocast

Correct Answer: ABC


Section: IPv6

QUESTION 2
An engineer has configured a router to use EUI-64, and was asked to document the IPv6 address of the router.
The router has the following interface parameters:

mac address C901.420F.0007


subnet 2017:DB:0:1::/64

Which IPv6 addresses should the engineer add to the documentation?

A. 2017:DB:0:1:C901:42FF:FE0F:7
B. 2017:DB:0:1:CB01:42FF:FE0F:7
C. 2017:DB:0:1:C901:42FE:FE0F:7
D. 2017:DB:0:1:CA01:42FE:800F:7
E. 2017:DB:0:1:CB01:42FF:FF0F:7

Correct Answer: B
Section: IPv6

QUESTION 3
Which of the following are invalid IPv6 addresses? (Choose all apply)

A. FC55:3030:2340::0010
B. BA:02::1111:1111::1111
C. CD01:245F:0000:15CE:0000:589A:FABC:0001
D. CA12::75BA:0:0:62DC:CA01
E. C55:30:01:02FC:10:ABF0:10:07:08

Correct Answer: BE
Section: IPv6

QUESTION 4
Select the valid IPv6 addresses. (Choose all apply)

A. 172:00::16:0:1
B. 2017:0000:00:g0a8:0101:42::
C. 2016:dead:beef:4dad:23:46:bb:101
D. 2002::
E. :::1
F. 2001:3452::4952:2837::
Correct Answer: ACD
Section: IPv6

QUESTION 5
What are the main benefits of IPv6? (Choose three answers).

A. Larger address space


B. Stateless autoconfiguration
C. Mobile IPv4
D. Increased packet header efficiency
E. Optional IPsec
F. Enhanced DHCP usage

Correct Answer: ABD


Section: IPv6

QUESTION 6
Which are routing protocols that support IPv6? (Choose three answers).

A. RIPng
B. RIPv2
C. EIGRPv6
D. OSPFv2
E. OSPFv3
F. OSPFv4

Correct Answer: ACE


Section: IPv6

QUESTION 7
Which of the following commands could you use to assign an IPv6 address to your router?

A. Router(config-if)# ip address fe01:3112:abcd::0001 255.255.255.0


B. Router(config-if)# ipv6 address fe01:3112:abcd::0001/48
C. Router(config-if)# ip address 6 fe01:3112:abcd::0001 255.255.255.0
D. Router(config-if)# ip address v6 fe01:3112:abcd::0001/48
E. Router(config-if)# ipv6 address fe01:3112:abcd::0001 255.255.255.0
F. Router(config-if)# ip6 address fe01:3112:abcd::0001/48

Correct Answer: B
Section: IPv6

QUESTION 8
Which of the following is the shortest abbreviation for the IPv6 prefix:
2018:1234:0500:0000:0000:0000:0000:0000/64

A. 2018:1234:0500::/64
B. 2018:1234:0500:0:0:0:0:0/64
C. 2018:1234:500::/64
D. 2018:1234:05::/64
E. 2018:1234:050::/64
Correct Answer: C
Section: IPv6

QUESTION 9
Which command will allow you to verify the IPv6 addresses configured on a router?

A. Router#show ipv6
B. Router#show ip interfaces brief
C. Router#show ipv6 interfaces brief
D. Router#show ipv6 brief
E. Router#show ip6 interfaces brief

Correct Answer: C
Section: IPv6

QUESTION 10
On interface f0/1, you type "ipv6 address 2001:db8:110:2345::1234/64". Which statement is true?

A. The router will calculate a network ID of 2000:0db8::


B. The IPv6 address of 2000:0db8:0110:2345:1234:0000:0000:0000/128 will be assigned to f0/1
C. The router will calculate a network ID of 2000:0db8:0110:2345::/64 for f0/1
D. The router will calculate a network ID of 2000:0db8:0110:2345:0000/64 for f0/1
E. The router will calculate a network ID of 2000:0db8:0110:2345:1234::/64 for f0/1

Correct Answer: C
Section: IPv6

QUESTION 11
Which three of these statements are true of IPv6 address representation?

A. The first 64 bits represent the dynamically created interface ID.


B. A single interface may be assigned multiple IPv6 addresses of any type.
C. Every IPv6 interface contains at least one loopback address.
D. Leading zeros in an IPv6 16 bit hexadecimal field are mandatory.
E. Successive fields of zeros can be represented as :: only once per address.

Correct Answer: BCE


Section: IPv6

QUESTION 12
Refer to the exhibit. What is required to complete the IPv6 routing configurations shown?

Router1#
interface S1/1
ipv6 address 2001:410:FFFF:1::1/64
ipv6 ospf 1 area 0
!
interface S2/0
ipv6 address 3FFF:B00:FFFF:1::2/64
ipv6 ospf 1 area 0
!
ipv6 router ospf 1
router-id 10.1.1.3
-----------------------------------------------------
Router2#
interface S3/0
ipv6 address 3FFE:B00:FFFF:1::1/64
ipv6 ospf 2 area 0
!
ipv6 router ospf 2
router-id 10.1.1.4

A. Interface authentication must be configured.


B. The process-id of OSPF must be the same on all routers.
C. IP unicast routing must be enabled.
D. IPv4 addresses must be applied to the interfaces.

Correct Answer: C
Section: IPv6

QUESTION 13
Which two statements are true about IPv6?

A. Only one IPv6 address is assigned per node.


B. Only one IPv6 address can be assigned to each interface.
C. Each host can auto configure its address without the aid of a DHCP server.
D. IPv6 hosts use anycast addresses to assign IP addresses to interfaces.
E. Leading zeros in an IPv6 16 bit hexadecimal field are optional.

Correct Answer: CE
Section: IPv6

QUESTION 14
Which command will create a default route through f0/0 for IPv6?

A. Router(config)# ip route 0.0.0.0 0.0.0.0 f0/0


B. Router(config)# ipv6 route 0.0.0.0 0.0.0.0 f0/0
C. Router(config)# ipv6 route ::/0 f0/0
D. Router(config)# ip route ::/0 f0/0
E. Router(config)# ip6 route ::/0 f0/0
F. Router(config)# ip route v6 ::/0 f0/0

Correct Answer: C
Section: IPv6

QUESTION 15
Which statement is true about the command ipv6 ospf 1 area 0?

A. It must be issued in router global configuration mode to enable the OSPF process for IPv6.
B. It must be issued in interface configuration mode to enable the OSPF process for IPv6.
C. It must be issued before the network command to enable the OSPF process for IPv6.
D. It must be issued after the network command to enable the OSPF process for IPv6.
E. It must be issued in router privileged mode to enable the OSPF process for IPv6.

Correct Answer: B
Section: IPv6
Wireless LAN

QUESTION 1
Wired Ethernet and Wi-Fi are based on which two IEEE standards, respectively?

A. 802.1, 802.3
B. 802.3, 802.1
C. 802.3, 802.11
D. 802.11, 802.3

Correct Answer: C
Section: Wireless LAN

QUESTION 2
Devices using a wireless LAN must operate in which one of the following modes?

A. Round-robin access
B. Half duplex
C. Full duplex
D. None of these answers

Correct Answer: B
Section: Wireless LAN

QUESTION 3
An access point is set up to offer wireless coverage in an office. Which one of the following is the correct
802.11 term for the resulting standalone network?

A. BSA
B. BSD
C. BSS
D. IBSS

Correct Answer: C
Section: Wireless LAN

QUESTION 4
Which one of the following is used to uniquely identify an AP and the basic service set it maintains with its
associated wireless clients?

A. SSID
B. BSSID
C. Ethernet MAC address
D. Radio MAC address

Correct Answer: B
Section: Wireless LAN

QUESTION 5
Which of the following are frequency bands commonly used for Wi-Fi? (Choose all that apply.)

A. 2.5 KHz
B. 2.5 MHz
C. 5 MHz
D. 2.5 GHz
E. 5 GHz

Correct Answer: DE
Section: Wireless LAN

QUESTION 6
Which of the following are considered to be nonoverlapping channels? (Choose all that apply.)

A. Channels 1, 2, and 3 in the 2.4-GHz band


B. Channels 1, 5, and 10 in the 2.4-GHz band
C. Channels 1, 6, and 11 in the 2.4-GHz band
D. Channels 40, 44, and 48 in the 5-GHz band

Correct Answer: CD
Section: Wireless LAN

QUESTION 7
Which one of the following terms best describes a Cisco wireless access point that operates in a standalone,
independent manner?

A. Autonomous AP
B. Independent AP
C. Lightweight AP
D. Embedded AP

Correct Answer: A
Section: Wireless LAN

QUESTION 8
The Cisco Meraki cloud-based APs are most accurately described by which one of the following statements?

A. Autonomous APs joined to a WLC


B. Autonomous APs centrally managed
C. Lightweight APs joined to a WLC
D. Lightweight APs centrally managed

Correct Answer: B
Section: Wireless LAN

QUESTION 9
How does a lightweight access point communicate with a wireless LAN controller?

A. Through an IPsec tunnel


B. Through a CAPWAP tunnel
C. Through a GRE tunnel
D. Directly over Layer 2

Correct Answer: B
Section: Wireless LAN

QUESTION 10
Which one of the following is not needed for a lightweight AP in default local mode to be able to support three
SSIDs that are bound to three VLANs?
A. A trunk link carrying three VLANs
B. An access link bound to a single VLAN
C. A WLC connected to three VLANs
D. A CAPWAP tunnel to a WLC

Correct Answer: A
Section: Wireless LAN

QUESTION 11
Which of the following are necessary components of a secure wireless connection? (Choose all that apply.)

A. Encryption
B. MIC
C. Authentication
D. All of these answers are correct.

Correct Answer: D
Section: Wireless LAN

QUESTION 12
Which one of the following is used as the authentication framework when 802.1x is used on a WLAN?

A. Open authentication
B. WEP
C. EAP
D. WPA

Correct Answer: C
Section: Wireless LAN

QUESTION 13
A pre-shared key is used in which of the following wireless security configurations? (Choose all that apply.)

A. WPA2 personal mode


B. WPA2 enterprise mode
C. WPA3 personal mode
D. WPA3 enterprise mode

Correct Answer: AC
Section: Wireless LAN

QUESTION 14
Suppose you need to connect a lightweight AP to a network. Which one of the following link types would be
necessary?

A. Access mode link


B. Trunk mode link
C. LAG mode link
D. EtherChannel link

Correct Answer: A
Section: Wireless LAN

QUESTION 15
An autonomous AP will be configured to support three WLANs that correspond to three VLANs. The AP will
connect to the network over which one of the following?.

A. Access mode link


B. Trunk mode link
C. LAG mode link
D. EtherChannel link

Correct Answer: B
Section: (none)

QUESTION 16
Suppose you would like to connect to a WLC to configure a new WLAN on it. Which one of the following is a
valid method to use?

A. SSH
B. HTTPS
C. HTTP
D. All of these answers are correct.

Correct Answer: D
Section: Wireless LAN

QUESTION 17
Which two of the following things are bound together when a new WLAN is created?

A. VLAN
B. AP
C. Controller interface
D. SSID

Correct Answer: CD
Section: Wireless LAN
Automation

QUESTION 1
A Layer 2 switch examines a frame’s destination MAC address and chooses to forward that frame out port G0/1
only. That action occurs as part of which plane of the switch?

A. Data plane
B. Management plane
C. Control plane
D. Table plane

Correct Answer: A
Section: Automation

QUESTION 2
A router uses OSPF to learn routes and adds those to the IPv4 routing table. That action occurs as part of
which plane of the switch?

A. Data plane
B. Management plane
C. Control plane
D. Table plane

Correct Answer: C
Section: Automation

QUESTION 3
A network uses an SDN architecture with switches and a centralized controller. Which of the following terms
describes a function or functions expected to be found on the switches but not on the controller?

A. A northbound interface
B. A southbound interface
C. Data plane functions
D. Control plane functions

Correct Answer: C
Section: Automation

QUESTION 4
In Cisco Software-Defined Access (SDA), which term refers to the devices and cabling, along with configuration
that allows the network device nodes enough IP connectivity to send IP packets to each other?

A. Fabric
B. Overlay
C. Underlay
D. VXLAN

Correct Answer: C
Section: Automation

QUESTION 5
In Cisco Software-Defined Access (SDA), which term refers to the functions that deliver endpoint packets
across the network using tunnels between the ingress and egress fabric nodes?

A. Fabric
B. Overlay
C. Underlay
D. VXLAN

Correct Answer: B
Section: Automation

QUESTION 6
In Software-Defined Access (SDA), which of the answers are part of the overlay data plane?

A. LISP
B. GRE
C. OSPF
D. VXLAN

Correct Answer: D
Section: Automation

QUESTION 7
Which answers correctly describe the format of the JSON text below? (Choose two answers.)

A. One JSON object that has one key:value pair


B. One JSON object that has three key:value pairs
C. A JSON object whose value is a second JSON object
D. A JSON object whose value is a JSON array

Correct Answer: AD
Section: Automation

You might also like