200-301 Exam - Free Actual Q&As, Page 1 - ExamTopics501-600
200-301 Exam - Free Actual Q&As, Page 1 - ExamTopics501-600
A. 00-05-42-38-53-31
B. 00-00-5E-00-01-0a
C. 00-00-0C-07-AD-89
D. 00-07-C0-70-AB-01
Correct Answer: B
Why would VRRP be implemented when configuring a new subnet in a multivendor environment?
A. when a gateway protocol is required that supports more than two Cisco devices for redundancy
B. to interoperate normally with all vendors and provide additional security features for Cisco devices
D. to enable normal operations to continue after a member failure without requiring a change in a host ARP cache
Correct Answer: B
VRRP is the industry standards based FHRP similar to Cisco's HSRP but is supported by multiple vendors.
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 1/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Correct Answer: B
Which type of address is shared by routers in a HSRP implementation and used by hosts on the subnet as their default gateway address?
A. multicast address
B. virtual IP address
C. loopback IP address
D. broadcast address
Correct Answer: B
A. 00:05:5e:19:0c:14
B. 00:05:0c:07:ac:14
C. 04:15:26:73:3c:0e
D. 00:00:0c:07:ac:0e
Correct Answer: D
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 2/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. Router R1 is added to the network and configured with the 10.0.0.64/26 and 10.0.20.0/26 subnets. However, traffic destined
for the LAN on
R3 is not accessible. Which command when executed on R1 defines a static route to reach the R3 LAN?
Correct Answer: D
We need to specify the destination network (10.0.15.0/24) and the next hop IP of the router to get to that network (10.0.20.3).
A router has two static routes to the same destination network under the same OSPF process. How does the router forward packets to the
destination if the net- hop devices are different?
B. The router chooses the next hop with the lowest IP address.
C. The router chooses the next hop with the lowest MAC address.
Correct Answer: D
Load balancing is a standard functionality of Cisco IOS Software that is available across all router platforms. It is inherent to the forwarding
process in the router, and it enables a router to use multiple paths to a destination when it forwards packets. The number of paths used is
limited by the number of entries that the routing protocol puts in the routing table. Four entries is the default in Cisco IOS Software for IP
routing protocols except for BGP. BGP has a default of one entry.
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 3/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
What does the implementation of a first-hop redundancy protocol protect against on a network?
C. spanning-tree loops
D. root-bridge loss
Correct Answer: A
A. LLDP
B. EEM
C. CDP
D. NTP
Correct Answer: D
B. a DHCP pool
D. PAT
Correct Answer: C
Which NAT term is defined as a group of addresses available for NAT use?
A. NAT pool
B. dynamic NAT
C. static NAT
D. one-way NAT
Correct Answer: A
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 4/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Which command can you enter to allow Telnet to be supported in addition to SSH?
D. privilege level 15
Correct Answer: A
Refer to the exhibit. After you apply the given configuration to a router, the DHCP clients behind the device cannot communicate with hosts
outside of their subnet.
Which action is most likely to correct the problem?
Correct Answer: D
Refer to the exhibit. Which rule does the DHCP server use when there is an IP address conflict?
A. The address is removed from the pool until the conflict is resolved.
Correct Answer: A
An address conflict occurs when two hosts use the same IP address. During address assignment, DHCP checks for conflicts using ping and
gratuitous ARP. If a conflict is detected, the address is removed from the pool. The address will not be assigned until the administrator resolves
the conflict.
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 5/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Which command can you enter to determine the addresses that have been assigned on a DHCP Server?
Correct Answer: C
Correct Answer: A
Which command is used to verify the DHCP relay agent address that has been set up on your Cisco IOS router?
C. show ip route
D. show ip interface
E. show interface
Correct Answer: D
Correct Answer: A
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 6/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
What are two roles of Domain Name Services (DNS)? (Choose two.)
C. improves security by protecting IP addresses under Fully Qualified Domain Names (FQDNs)
E. allows a single host name to be shared across more than one IP address
Correct Answer: DE
Which Cisco IOS command will indicate that interface GigabitEthernet 0/0 is configured via DHCP?
Correct Answer: D
What will happen if you configure the logging trap debug command on a router?
A. It causes the router to send messages with lower severity levels to the syslog server
B. It causes the router to send all messages with the severity levels Warning, Error, Critical, and Emergency to the syslog server
D. It causes the router to stop sending all messages to the syslog server
Correct Answer: C
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 7/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
A network administrator enters the following command on a router: logging trap 3. What are three message types that will be sent to the Syslog
server? (Choose three.)
A. informational
B. emergency
C. warning
D. critical
E. debug
F. error
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 8/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
DRAG DROP -
Drag and drop the network protocols from the left onto the correct transport services on the right.
Select and Place:
Correct Answer:
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 9/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
A network engineer must back up 20 network router configurations globally within a customer environment. Which protocol allows the engineer to
perform this function using the Cisco IOS MIB?
A. ARP
B. SNMP
C. SMTP
D. CDP
Correct Answer: B
SNMP is an application-layer protocol that provides a message format for communication between SNMP managers and agents. SNMP
provides a standardized framework and a common language used for the monitoring and management of devices in a network.
The SNMP framework has three parts:
ג€¢ An SNMP manager
ג€¢ An SNMP agent
ג€¢ A Management Information Base (MIB)
The Management Information Base (MIB) is a virtual information storage area for network management information, which consists of
collections of managed objects.
With SNMP, the network administrator can send commands to multiple routers to do the backup.
A. ip address dhcp
B. ip dhcp client
C. ip helper-address
D. ip dhcp pool
Correct Answer: A
If we want to get an IP address from the DHCP server on a Cisco device, we can use the command ג€ip address dhcpג€.
Note: The command ג€ip helper-addressג€ enables a router to become a DHCP Relay Agent.
A. It sends information about MIB variables in response to requests from the NMS
C. It coordinates user authentication between a network device and a TACACS+ or RADIUS server
D. It requests information from remote network nodes about catastrophic system events
Correct Answer: A
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 10/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
What are two roles of the Dynamic Host Configuration Protocol (DHCP)? (Choose two.)
A. The DHCP server assigns IP addresses without requiring the client to renew them.
D. The DHCP server offers the ability to exclude specific IP addresses from a pool of IP addresses.
Correct Answer: BD
A. ntp peer
B. ntp master
C. ntp authenticate
D. ntp server
Correct Answer: B
What event has occurred if a router sends a notice level message to a syslog server?
Correct Answer: B
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 11/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. An engineer deploys a topology in which R1 obtains its IP configuration from DHCP. If the switch and DHCP server
configurations are complete and correct, which two sets of commands must be configured on R1 and R2 to complete the task? (Choose two.)
Correct Answer: BC
Which two actions are performed by the Weighted Random Early Detection mechanism? (Choose two.)
Correct Answer: DE
Weighted Random Early Detection (WRED) is just a congestion avoidance mechanism. WRED drops packets selectively based on IP precedence.
Edge routers assign IP precedences to packets as they enter the network. When a packet arrives, the following events occur:
1. The average queue size is calculated.
2. If the average is less than the minimum queue threshold, the arriving packet is queued.
3. If the average is between the minimum queue threshold for that type of traffic and the maximum threshold for the interface, the packet is
either dropped or queued, depending on the packet drop probability for that type of traffic.
4. If the average queue size is greater than the maximum threshold, the packet is dropped.
WRED reduces the chances of tail drop (when the queue is full, the packet is dropped) by selectively dropping packets when the output interface
begins to show signs of congestion (thus it can mitigate congestion by preventing the queue from filling up). By dropping some packets early
rather than waiting until the queue is full, WRED avoids dropping large numbers of packets at once and minimizes the chances of global
synchronization. Thus, WRED allows the transmission line to be used fully at all times.
WRED generally drops packets selectively based on IP precedence. Packets with a higher IP precedence are less likely to be dropped than
packets with a lower precedence. Thus, the higher the priority of a packet, the higher the probability that the packet will be delivered.
Reference:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_conavd/configuration/15-mt/qos-conavd-15-mt-book/qos-conavd-cfg-wred.html
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 12/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. An engineer configured NAT translations and has verified that the configuration is correct. Which IP address is the source IP
after the NAT has taken place?
A. 10.4.4.4
B. 10.4.4.5
C. 172.23.103.10
D. 172.23.104.4
Correct Answer: C
Correct Answer: C
Usually no action is required when a route flaps so it generates the notification syslog level message (level 5).
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 13/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
DRAG DROP -
Drag and drop the functions from the left onto the correct network components on the right.
Select and Place:
Correct Answer:
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 14/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Which two tasks must be performed to configure NTP to a trusted server in client mode on a single network device? (Choose two.)
Correct Answer: AC
To configure authentication, perform this task in privileged mode:
Step 1: Configure an authentication key pair for NTP and specify whether the key will be trusted or untrusted.
Step 2: Set the IP address of the NTP server and the public key.
Step 3: Enable NTP client mode.
Step 4: Enable NTP authentication.
Step 5: Verify the NTP configuration.
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst4000/8-2glx/configuration/guide/ntp.html
B. It reduces routing failures by allowing Layer 3 load balancing between OSPF neighbors that have the same link metric
C. It allows a router to use bridge priorities to create multiple loop-free paths to a single destination
D. It reduces routing failures by allowing more than one router to represent itself as the default gateway of a network
Correct Answer: D
An engineer is configuring NAT to translate the source subnet of 10.10.0.0/24 to any one of three addresses: 192.168.3.1, 192.168.3.2, or
192.168.3.3. Which configuration should be used?
A. enable configure terminal ip nat pool mypool 192.168.3.1 192.168.3.3 prefix-length 30 access-list 1 permit 10.10.0.0 0.0.0.255 ip nat
outside destination list 1 pool mypool interface g1/1 ip nat inside interface g1/2 ip nat outside
B. enable configure terminal ip nat pool mypool 192.168.3.1 192.168.3.3 prefix-length 30 access-list 1 permit 10.10.0.0 0.0.0.254 ip nat inside
source list 1 pool mypool interface g1/1 ip nat inside interface g1/2 ip nat outside
C. enable configure terminal ip nat pool mypool 192.168.3.1 192.168.3.3 prefix-length 30 route map permit 10.10.0.0 255.255.255.0 ip nat
outside destination list 1 pool mypool interface g1/1 ip nat inside interface g1/2 ip nat outside
D. enable configure terminal ip nat pool mypool 192.168.3.1 192.168.3.3 prefix-length 30 access-list 1 permit 10.10.0.0 0.0.0.255 ip nat inside
source list 1 pool mypool interface g1/1 ip nat inside interface g1/2 ip nat outside
Correct Answer: D
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 15/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
When the active router in an HSRP group fails, which router assumes the role and forwards packets?
A. forwarding
B. listening
C. standby
D. backup
Correct Answer: C
What protocol allows an engineer to back up 20 network router configurations globally while using the copy function?
A. TCP
B. SMTP
C. FTP
D. SNMP
Correct Answer: D
A. outside global
B. outside local
C. inside global
D. inside local
E. outside public
F. inside public
Correct Answer: C
NAT use four types of addresses:
✑ Inside local address - The IP address assigned to a host on the inside network. The address is usually not an IP address assigned by the
Internet Network
Information Center (InterNIC) or service provider. This address is likely to be an RFC 1918 private address.
✑ Inside global address - A legitimate IP address assigned by the InterNIC or service provider that represents one or more inside local IP
addresses to the outside world.
✑ Outside local address - The IP address of an outside host as it is known to the hosts on the inside network.
✑ Outside global address - The IP address assigned to a host on the outside network. The owner of the host assigns this address.
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 16/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Which two pieces of information can you determine from the output of the show ntp status command? (Choose two.)
Correct Answer: BD
Below is the output of the ג€show ntp statusג€ command. From this output we learn that R1 has a stratum of 10 and it is getting clock from
10.1.2.1.
Which keyword in a NAT configuration enables the use of one outside IP address for multiple inside hosts?
A. source
B. static
C. pool
D. overload
Correct Answer: D
By adding the keyword ג€overloadג€ at the end of a NAT statement, NAT becomes PAT (Port Address Translation). This is also a kind of
dynamic NAT that maps multiple private IP addresses to a single public IP address (many-to-one) by using different ports. Static NAT and
Dynamic NAT both require a one-to-one mapping from the inside local to the inside global address. By using PAT, you can have thousands of
users connect to the Internet using only one real global IP address. PAT is the technology that helps us not run out of public IP address on the
Internet. This is the most popular type of NAT.
An example of using ג€overloadג€ keyword is shown below:
R1(config)# ip nat inside source list 1 interface ethernet1 overload
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 17/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Which feature or protocol determines whether the QOS on the network is sufficient to support IP services?
A. LLDP
B. CDP
C. IP SLA
D. EEM
Correct Answer: C
IP SLA allows an IT professional to collect information about network performance in real time. Therefore it helps determine whether the QoS
on the network is sufficient for IP services or not.
Cisco IOS Embedded Event Manager (EEM) is a powerful and flexible subsystem that provides real-time network event detection and onboard
automation. It gives you the ability to adapt the behavior of your network devices to align with your business needs.
In QoS, which prioritization method is appropriate for interactive voice and video?
A. traffic policing
B. round-robin scheduling
C. low-latency queuing
D. expedited forwarding
Correct Answer: C
Low Latency Queuing (LLQ) is the preferred queuing policy for VoIP audio. Given the stringent delay/jitter sensitive requirements of voice and
video and the need to synchronize audio and video for CUVA, priority (LLQ) queuing is the recommended for all video traffic as well. Note that,
for video, priority bandwidth is generally fudged up by 20% to account for the overhead.
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 18/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
DRAG DROP -
Drag and drop the SNMP components from the left onto the descriptions on the right.
Select and Place:
Correct Answer:
Correct Answer: D
The primary reasons you would use traffic shaping are to control access to available bandwidth, to ensure that traffic conforms to the policies
established for it, and to regulate the flow of traffic in order to avoid congestion that can occur when the sent traffic exceeds the access speed
of its remote, target interface.
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 19/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
B. transfers a backup configuration file from a server to a switch using a username and password
Correct Answer: A
Correct Answer: B
Where does the configuration reside when a helper address is configured lo support DHCP?
Correct Answer: B
What facilitates a Telnet connection between devices by entering the device name?
A. SNMP
B. DNS lookup
C. syslog
D. NTP
Correct Answer: B
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 20/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
A. 0
B. 2
C. 4
D. 6
Correct Answer: D
Reference:
https://en.wikipedia.org/wiki/Syslog
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 21/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
DRAG DROP -
Refer to the exhibit. An engineer is configuring the router to provide static NAT for the webserver. Drag and drop the configuration commands from
the left onto the letters that correspond to its position in the configuration on the fight.
Select and Place:
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 22/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Correct Answer:
A. CBWFQ
B. FRTS
C. CAR
D. PBR
E. PQ
Correct Answer: AE
Which QoS tool is used to optimize voice traffic on a network that is primarily intended for data traffic?
A. WRED
B. FIFO
C. WFQ
D. PQ
Correct Answer: D
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 23/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
An engineer is installing a new wireless printer with a static IP address on the Wi-Fi network. Which feature must be enabled and configured to
prevent connection issues with the printer?
A. client exclusion
C. passive client
D. static IP tunneling
Correct Answer: C
Passive clients are wireless devices, such as scales and printers that are configured with a static IP address. These clients do not transmit any
IP information such as IP address, subnet mask, and gateway information when they associate with an access point. As a result, when passive
clients are used, the controller never knows the IP address unless they use the DHCP.
Reference:
https://www.cisco.com/c/en/us/td/docs/wireless/controller/7-4/configuration/guides/consolidated/b_cg74_CONSOLIDATED/
m_configuring_passive_clients.html
When a client and server are not on the same physical network, which device is used to forward requests and replies between client and server for
DHCP?
A. DHCPOFFER
C. DHCP server
D. DHCPDISCOVER
Correct Answer: B
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 24/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. The ntp server 192.168.0.3 command has been configured on router 1 to make it an NTP client of router 2. Which command
must be configured on router 2 so that it operates in server-only mode and relies only on its internal clock?
C. Router2(config)#ntp passive
D. Router2(config)#ntp master 4
Correct Answer: D
Which protocol requires authentication to transfer a backup configuration file from a router to a remote server?
A. FTP
B. SMTP
C. TFTP
D. DTP
Correct Answer: A
Which condition must be met before an NMS handles an SNMP trap from an agent?
A. The NMS must receive the same trap from two different SNMP agents to verify that it is reliable.
B. The NMS must receive a trap and an inform message from the SNMP agent within a configured interval.
C. The NMS software must be loaded with the MIB associated with the trap.
D. The NMS must be configured on the same router as the SNMP agent.
Correct Answer: C
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 25/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
An engineer is configuring switch SW1 to act as an NTP server when all upstream NTP server connectivity fails. Which configuration must be
used?
Correct Answer: B
ntp server192.168.1.1 makes the SW1 a client to the primary server reachable with an IP address of 192.168.1.1
NTP server makes SW1 a server and uses its own internal clock to provide the time when the connectivity to the primary server 192.168.1.1
fails.
A network administrator must enable DHCP services between two sites. What must be configured for the router to pass DHCPDISCOVER
messages on to the server?
A. DHCP Binding
C. DHCP Snooping
D. a DHCP Pool
Correct Answer: B
A. alert
B. critical
C. notice
D. debug
Correct Answer: D
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 26/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
On workstations running Microsoft Windows, which protocol provides the default gateway for the device?
A. STP
B. DHCP
C. SNMP
D. DNS
Correct Answer: B
Which two statements about NTP operations are true? (Choose two.)
B. Cisco routers can act as both NTP authoritative servers and NTP clients.
Correct Answer: AB
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 27/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. Which configuration must be applied to the router that configures PAT to translate all addresses in VLAN 200 while allowing
devices on VLAN
100 to use their own IP addresses?
A. Router1(config)#access-list 99 permit 192.168.100.32 0.0.0.31 Router1(config)#ip nat inside source list 99 interface gi1/0/0 overload
Router1(config)#interface gi2/0/1.200 Router1(config)#ip nat inside Router1(config)#interface gi1/0/0 Router1(config)#ip nat outside
B. Router1(config)#access-list 99 permit 192.168.100.0 0.0.0.255 Router1(config)#ip nat inside source list 99 interface gi1/0/0 overload
Router1(config)#interface gi2/0/1.200 Router1(config)#ip nat inside Router1(config)#interface gi1/0/0 Router1(config)#ip nat outside
C. Router1(config)#access-list 99 permit 209.165.201.2 255.255.255.255 Router1(config)#ip nat inside source list 99 interface gi1/0/0
overload Router1(config)#interface gi2/0/1.200 Router1(config)#ip nat inside Router1(config)#interface gi1/0/0 Router1(config)#ip nat
outside
D. Router1(config)#access- list 99 permit 209.165.201.2 0.0.0.0 Router1(config)#ip nat inside source list 99 interface gi1/0/0 overload
Router1(config)#interface gi2/0/1.200 Router1(config)#ip nat inside Router1(config)#interface gi1/0/0 Router1(config)#ip nat outside
Correct Answer: A
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 28/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. Which two commands must be added to update the configuration of router R1 so that it accepts only encrypted connections?
(Choose two.)
D. line vty 0 4
E. ip ssh version 2
Correct Answer: CE
A. snmp-server user
B. snmp-server host
D. snmp-server community
Correct Answer: A
Reference:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/snmp/configuration/15-e/snmp-15-e-book.pdf
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 29/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
A. ntp authenticate ntp authentication-key 2 sha1 CISCO123 ntp source Loopback0 ntp access-group server-only 10 ntp master 2 ! access-list
10 permit udp host 209.165.200.225 any eq 123
B. ntp authenticate ntp authentication-key 2 md5 CISCO123 ntp interface Loopback0 ntp access-group server-only 10 ntp stratum 2 ! access-
list 10 permit 209.165.200.225
C. ntp authenticate ntp authentication-key 2 md5 CISCO123 ntp source Loopback0 ntp access-group server-only 10 ntp master 2 ! access-list
10 permit 209.165.200.225
D. ntp authenticate ntp authentication-key 2 md5 CISCO123 ntp source Loopback0 ntp access-group server-only 10 ntp stratum 2 ! access-list
10 permit udp host 209.165.200.225 any eq 123
Correct Answer: D
B. uses separate control and data connections to move files between server and client
D. devices are directly connected and use UDP to pass file information
Correct Answer: B
Reference:
https://en.wikipedia.org/wiki/File_Transfer_Protocol#:~:text=The%20File%20Transfer%20Protocol%20(FTP,the%20client%20and%20the%20serv
er
A network engineer is configuring a switch so that it is remotely reachable via SSH. The engineer has already configured the host name on the
router. Which additional command must the engineer configure before entering the command to generate the RSA key?
A. password password
B. ip ssh authentication-retries 2
C. ip domain-name domain
Correct Answer: C
Reference:
https://www.letsconfig.com/how-to-configure-ssh-on-cisco-ios-devices/
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 30/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Which QoS traffic handling technique retains excess packets in a queue and reschedules these packets for later transmission when the configured
maximum bandwidth has been surpassed?
A. traffic policing
C. traffic prioritization
D. traffic shaping
Correct Answer: D
Reference:
https://www.cisco.com/c/en/us/support/docs/quality-of-service-qos/qos-policing/19645-policevsshape.html
A. ip dhcp relay
B. ip dhcp pool
C. ip address dhcp
D. ip helper-address
Correct Answer: D
Reference:
https://www.cisco.com/en/US/docs/ios/12_4t/ip_addr/configuration/guide/htdhcpre.html#:~:text=ip%20helper%2Daddress%20address,-
Example%
3A&text=Forwards%20UPD%20broadcasts%2C%20including%20BOOTP%20and%20DHCP.&text=The%20address%20argument%20can%20be,to%
20respond
%20to%20DHCP%20requests
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 31/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. The DHCP server and clients are connected to the same switch. What is the next step to complete the DHCP configuration to
allow clients on
VLAN 1 to receive addresses from the DHCP server?
A. Configure the ip dhcp snooping trust command on the interface that is connected to the DHCP client.
B. Configure ip dhcp relay information option command on the interface that is connected to the DHCP server.
C. Configure ip dhcp snooping trust command on the interface that is connected to the DHCP server.
D. Configure the ip dhcp information option command on the interface that is connected to the DHCP client.
Correct Answer: C
A network analyst is tasked with configuring the date and time on a router using EXEC mode. The date must be set to January 1, 2020 and the
time must be set to
12:00 am. Which command should be used?
A. clock timezone
D. clock set
Correct Answer: D
Which command creates a static NAT binding for a PC address of 10.1.1.1 to the public routable address 209.165.200.225 assigned to the PC?
Correct Answer: A
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 32/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
A. STP
B. VTP
C. 802.1Q
D. DTP
Correct Answer: C
Correct Answer: A
Which QoS forwarding per-hop behavior changes a specific value in a packet header to set the class of service for the packet?
A. shaping
B. classification
C. policing
D. marking
Correct Answer: D
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 33/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. How should the configuration be updated to allow PC1 and PC2 access to the Internet?
C. Remove the overload keyword from the ip nat inside source command
Correct Answer: D
Correct Answer: B
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 34/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. Which configuration enables DHCP addressing for hosts connected to interface FastEthernet0/1 on router R4?
A. interface FastEthernet0/1 ip helper-address 10.0.1.1 ! access-list 100 permit tcp host 10.0.1.1 eq 67 host 10.148.2.1
B. interface FastEthernet0/0 ip helper-address 10.0.1.1 ! access-list 100 permit udp host 10.0.1.1 eq bootps host 10.148.2.1
C. interface FastEthernet0/0 ip helper-address 10.0.1.1 ! access-list 100 permit host 10.0.1.1 host 10.148.2.1 eq bootps
D. interface FastEthernet0/1 ip helper-address 10.0.1.1 ! access-list 100 permit udp host 10.0.1.1 eq bootps host 10.148.2.1
Correct Answer: A
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 35/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
DRAG DROP -
Drag and drop the SNMP manager and agent identifier commands from the left onto the functions on the right.
Select and Place:
Correct Answer:
An engineer is configuring SSH version 2 exclusively on the R1 router. What is the minimum configuration required to permit remote management
using the cryptographic protocol?
A. hostname R1 service password-encryption crypto key generate rsa general-keys modulus 1024 username cisco privilege 15 password 0
cisco123 ip ssh version 2 line vty 0 15 transport input ssh login local
B. hostname R1 ip domain name cisco crypto key generate rsa general-keys modulus 1024 username cisco privilege 15 password 0 cisco123
ip ssh version 2 line vty 0 15 transport input ssh login local
C. hostname R1 crypto key generate rsa general-keys modulus 1024 username cisco privilege 15 password 0 cisco123 ip ssh version 2 line vty
0 15 transport input ssh login local
D. hostname R1 ip domain name cisco crypto key generate rsa general-keys modulus 1024 username cisco privilege 15 password 0 cisco123
ip ssh version 2 line vty 0 15 transport input all login local
Correct Answer: B
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 36/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Which per-hop traffic-control feature does an ISP implement to mitigate the potential negative effects of a customer exceeding its committed
bandwidth?
A. policing
B. queuing
C. marking
D. shaping
Correct Answer: A
DRAG DROP -
Drag and drop the QoS terms from the left onto the descriptions on the right.
Select and Place:
Correct Answer:
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 37/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
A. console
B. Telnet
C. SSH
D. Bash
Correct Answer: B
DRAG DROP -
Drag and drop the functions of SNMP fault-management from the left onto the definitions on the right.
Select and Place:
Correct Answer:
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 38/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. Which router or router group are NTP clients?
A. R1
B. R2 and R3
Correct Answer: D
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 39/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. What is the next step to complete the implementation for the partial NAT configuration shown?
B. Reconfigure the static NAT entries that overlap the NAT pool.
Correct Answer: B
D. set of values that represent the processes that can generate a log message
Correct Answer: D
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 40/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
DRAG DROP -
Drag and drop the functions of DHCP from the left onto any of the positions on the right. Not all functions are used.
Select and Place:
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 41/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Correct Answer:
Refer to the exhibit. A newly configured PC fails to connect to the internet by using TCP port 80 to www.cisco.com. Which setting must be
modified for the connection to work?
A. Subnet Mask
B. DNS Servers
C. Default Gateway
D. DHCP Servers
Correct Answer: B
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 42/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Which QoS queuing method discards or marks packets that exceed the desired bit rate of traffic flow?
A. CBWFQ
B. policing
C. LLQ
D. shaping
Correct Answer: B
Use the police command to mark a packet with different quality of service (QoS) values based on conformance to the service-level agreement.
Traffic policing allows you to control the maximum rate of traffic transmitted or received on an interface.
Reference:
https://www.cisco.com/c/en/us/td/docs/ios/qos/configuration/guide/12_2sr/qos_12_2sr_book/traffic_policing.html
Which QoS per-hop behavior changes the value of the ToS field in the IPv4 packet header?
A. Shaping
B. Policing
C. Classification
D. Marking
Correct Answer: D
Correct Answer: D
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 43/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Correct Answer: C
Refer to the exhibit. Which plan must be implemented to ensure optimal QoS marking practices on this network?
A. Trust the IP phone markings on SW1 and mark traffic entering SW2 at SW2
B. As traffic traverses MLS1 remark the traffic, but trust all markings at the access layer
C. Remark traffic as it traverses R1 and trust all markings at the access layer.
D. As traffic enters from the access layer on SW1 and SW2, trust all traffic markings.
Correct Answer: A
Tell the switch to trust CoS markings from a Cisco IP phone on the access port. Cisco IP phones use 802.1q tags, these .1q tags contain the
CoS value, to mark voice traffic at layer 2. When it's forwarded upstream, the DSCP value is trusted (on the uplink port) and unchanged, but the
.1q tag (and with it the CoS value) is stripped off by the upstream switch when received over the trunk.
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 44/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
D. by increasing jitter
Correct Answer: C
Which QoS tool can you use to optimize voice traffic on a network that is primarily intended for data traffic?
A. WRED
B. FIFO
C. PQ
D. WFQ
Correct Answer: C
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 45/46
25/08/23, 04:30 200-301 Exam – Free Actual Q&As, Page 1 | ExamTopics
Refer to the exhibit. Users on existing VLAN 100 can reach sites on the Internet. Which action must the administrator take to establish
connectivity to the Internet for users in VLAN 200?
B. Configure the ip nat outside command on another interface for VLAN 200
Correct Answer: D
https://www.examtopics.com/exams/cisco/200-301/custom-view/ 46/46