1/132
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai |
|---|
No study sessions yet.
Forward the packet out Serial0/0/0
Refer to the exhibit. What will router R1 do with a packet that has a destination IPv6 address of 2001:db8:cafe:5::1?

ip route 10.10.0.0 255.255.0.0 209.165.200.225 100
Refer to the exhibit. Currently router R1 uses an EIGRP route learned from Branch2 to reach the 10.10.0.0/16 network. Which floating static route would create a backup route to the 10.10.0.0/16 network in the event that the link between R1 and Branch2 goes down?

Change the destination network and mask to 0.0.0.0 0.0.0.0
Refer to the exhibit. R1 was configured with the static route command ip route 209.165.200.224 255.255.255.224 S0/0/0 and consequently users on network 172.16.0.0/16 are unable to reach resources on the Internet. How should this static route be changed to allow user traffic from the LAN to reach the Internet?
ip route 0.0.0.0 0.0.0.0 S0/0/0
Which option shows a correctly configured IPv4 default static route?
ipv6 route 2001:db8:12:10::/64 S0/0/1 fe80::2
Refer to the exhibit. Which static route command can be entered on R1 to forward traffic to the LAN connected to R2?

introducing a rogue switch and enabling trunking
What is a method to launch a VLAN hopping attack?
MAC address table overflow
A cybersecurity analyst is using the macof tool to evaluate configurations of switches deployed in the backbone network of an organization. Which type of LAN attack is the analyst targeting during this evaluation?
The state is not maintained by the DHCPv6 server under stateless DHCPv6 operation.
Refer to the exhibit. A network administrator is configuring a router as a DHCPv6 server. The administrator issues a show ipv6 dhcp pool command to verify the configuration. Which statement explains the reason that the number of active clients is 0?

the virtual IP address and the virtual MAC address for the HSRP group 1
Refer to the exhibit. A network administrator configured routers R1 and R2 as part of HSRP group 1. After the routers have been reloaded, a user on Host1 complained of lack of connectivity to the Internet The network administrator issued the show standby brief command on both routers to verify the HSRP operations. In addition, the administrator observed the ARP table on Host1. Which entry should be seen in the ARP table on Host1 in order to gain connectivity to the Internet?

Frame forwarding decisions are based on MAC address and port mappings in the CAM table.
Which statement is correct about how a Layer 2 switch determines how to forward frames?
The broadcast domain expands to all switches.
Which statement describes a result after multiple Cisco LAN switches are interconnected?
SW1 floods the frame on all ports on SW1, excluding the port through which the frame entered the switch.
Refer to the exhibit. How is a frame sent from PCA forwarded to PCC if the MAC address table on switch SW1 is empty?

Because these VLANs are stored in a file that is called vlan.dat that is located in flash memory, this file must be manually deleted.
An administrator is trying to remove configurations from a switch. After using the command erase startup-config and reloading the switch, the administrator finds that VLANs 10 and 100 still exist on the switch. Why were these VLANs not removed?
STP will block one of the redundant links.
Refer to the exhibit. A network administrator has connected two switches together using EtherChannel technology. If STP is running, what will be the end result?
Configure SSH.
What is a secure configuration option for remote access to a network device?
WPA2 with AES
Which wireless encryption method is the most secure?
wireless router
After attaching four PCs to the switch ports, configuring the SSID and setting authentication properties for a small office network, a technician successfully tests the connectivity of all PCs that are connected to the switch and WLAN. A firewall is then configured on the device prior to connecting it to the Internet. What type of network device includes all of the described features?
Source MAC: 00E0.FE91.7799
Source IP: 10.1.1.10
Refer to the exhibit. Host A has sent a packet to host B. What will be the source MAC and IP addresses on the packet when it arrives at host B?

Packets with a destination network that is not 10.10.0.0/16 or is not 10.20.0.0/16 or is not a directly connected network will be forwarded to the Internet.
Refer to the exhibit. In addition to static routes directing traffic to networks 10.10.0.0/16 and 10.20.0.0/16, Router HQ is also configured with the following command:
ip route 0.0.0.0 0.0.0.0 serial 0/1/1 What is the purpose of this command?

STP
What protocol or technology disables redundant paths to eliminate Layer 2 loops?
because VLAN 99 has not yet been created
Refer to the exhibit. Based on the exhibited configuration and output, why is VLAN 99 missing?

server & transparent
Which two VTP modes allow for the creation, modification, and deletion of VLANs on the local switch? (Choose two.)
Link types are determined automatically.
A network administrator is preparing the implementation of Rapid PVST+ on a production network. How are the Rapid PVST+ link types determined on the switch interfaces?
Ethernet multiaccess interfaces will require fully specified static routes to avoid routing inconsistencies.
How will a router handle static routing differently if Cisco Express Forwarding is disabled?
S 10.17.2.0/24 [1/0] via 10.16.2.2
Refer to the exhibit. Which route was configured as a static route to a specific network using the next-hop address?

It enables portfast on a specific switch interface.
What is the effect of entering the spanning-tree portfast configuration command on a switch?
FE80::/10
What is the IPv6 prefix that is used for link-local addresses?
The allowed VLANs on the backup link were not configured correctly.
Successful inter-VLAN routing has been operating on a network with multiple VLANs across multiple switches for some time. When an inter-switch trunk link fails and Spanning Tree Protocol brings up a backup trunk link, it is reported that hosts on two VLANs can access some, but not all the network resources that could be accessed previously. Hosts on all other VLANS do not have this problem. What is the most likely cause of this problem?
interface range GigabitEthernet 0/4 – 5
Which command will start the process to bundle two physical interfaces to create an EtherChannel group via LACP?
The switch will forward the frame out all ports except the incoming port.
What action takes place when a frame entering a switch has a multicast destination MAC address?
Check the configuration of the exit interface on the new static route.
A junior technician was adding a route to a LAN router. A traceroute to a device on the new network revealed a wrong path and unreachable status. What should be done or checked?
Remove the route using the no ip route command.
A static route has been configured on a router. However, the destination network no longer exists. What should an administrator do to remove the static route from the routing table?
R1 is configured as a DHCPv4 relay agent.
Refer to the exhibit. What can be concluded about the configuration shown on R1?

The ip helper-address command was applied on the wrong interface.
Refer to the exhibit. R1 has been configured as shown. However, PC1 is not able to receive an IPv4 address. What is the problem?

traps
What is the common term given to SNMP log messages that are generated by network devices and sent to the SNMP server?
CONTROLLER
A network administrator is adding a new WLAN on a Cisco 3500 series WLC. Which tab should the administrator use to create a new VLAN interface to be used for the new WLAN?
to reduce outsiders intercepting data or accessing the wireless network by using a well-known address range
A network administrator is configuring a WLAN. Why would the administrator change the default DHCP IPv4 addresses on an AP?
all PortFast-enabled ports
On what switch ports should BPDU guard be enabled to enhance STP stability?
rogue switches on a network
Which network attack is mitigated by enabling BPDU guard?
It uses the MAC-address-to-IP-address binding database to validate an ARP packet.
Why is DHCP snooping required when using the Dynamic ARP Inspection feature?
Change the administrative distance to 120.
Refer to the exhibit. Router R1 has an OSPF neighbor relationship with the ISP router over the 192.168.0.32 network. The 192.168.0.36 network link should serve as a backup when the OSPF link goes down. The floating static route command ip route 0.0.0.0 0.0.0.0 S0/0/1 100 was issued on R1 and now traffic is using the backup link even when the OSPF link is up and functioning. Which change should be made to the static route command so that traffic will only use the OSPF link when it is up?

2682112
Refer to the exhibit. What is the metric to forward a data packet with the IPv6 destination address 2001:DB8:ACAD:E:240:BFF:FED4:9DD2?

ipv6 nd other-config-flag
Refer to the exhibit. Which statement shown in the output allows router R1 to respond to stateless DHCPv6 requests?

Ensure that the old default route has been removed from the company edge routers.
A company has just switched to a new ISP. The ISP has completed and checked the connection from its site to the company. However, employees at the company are not able to access the internet. What should be done or checked?
the source MAC address and the incoming port
Which information does a switch use to populate the MAC address table?
PAgP
Refer to the exhibit. A network administrator is reviewing the configuration of switch S1. Which protocol has been implemented to group multiple physical ports into one logical link?

floating static route
Which type of static route is configured with a greater administrative distance to provide a backup route to a route learned from a dynamic routing protocol?
The switch forwards the frame out of the specified port.
What action takes place when a frame entering a switch has a unicast destination MAC address appearing in the MAC address table?
R2(config)# ip route 172.16.2.0 255.255.255.0 172.16.3.1
The exhibit shows two PCs called PC A and PC B, two routes called R1 and R2, and two switches. PC A has the address 172.16.1.1/24 and is connected to a switch and into an interface on R1 that has the IP address 172.16.1.254. PC B has the address 172.16.2.1/24 and is connected to a switch that is connected to another interface on R1 with the IP address 172.16.2.254. The serial interface on R1 has the address 172.16.3.1 and is connected to the serial interface on R2 that has the address 172.16.3.2/24. R2 is connected to the internet cloud. Which command will create a static route on R2 in order to reach PC B?

EtherChannel
What protocol or technology allows data to transmit over redundant switch links?
Configure either trunk port in the dynamic desirable mode.
Refer to the exhibit. The network administrator configures both switches as displayed. However, host C is unable to ping host D and host E is unable to ping host F. What action should the administrator take to enable this communication?

It disables an unused port.
What is the effect of entering the shutdown configuration command on a switch?
so that the attacker can see frames that are destined for other hosts
What would be the primary reason an attacker would launch a MAC address overflow attack?
Immediately after successful authentication against an AAA data source
During the AAA process, when will authorization be implemented?
sticky secure MAC addresses
A company security policy requires that all MAC addressing be dynamically learned and added to both the MAC address table and the running configuration on each switch. Which port security configuration will accomplish this?
Trunk2
Refer to the exhibit. Which trunk link will not forward any traffic after the root bridge election process is complete?

SLAAC
Which method of IPv6 prefix assignment relies on the prefix contained in RA messages?
to eliminate outsiders scanning for available SSIDs in the area
A network administrator is configuring a WLAN. Why would the administrator disable the broadcast feature for the SSID?
turning on DHCP snooping
Which mitigation technique would prevent rogue servers from providing false IP configuration parameters to clients?
restrict
A network administrator configures the port security feature on a switch. The security policy specifies that each access port should allow up to two MAC addresses. When the maximum number of MAC addresses is reached, a frame with the unknown source MAC address is dropped and a notification is sent to the syslog server. Which security violation mode should be configured for each access port?
HSRP
What protocol or technology defines a group of routers, one of them defined as active and another one as standby?
RTA is using the same subnet for VLAN 20 and VLAN 30.
Refer to the exhibit. After attempting to enter the configuration that is shown in router RTA, an administrator receives an error and users on VLAN 20 report that they are unable to reach users on VLAN 30. What is causing the problem?

Create static routes to all internal networks and a default route to the internet.
A technician is configuring a router for a small company with multiple WLANs and doesn’t need the complexity of a dynamic routing protocol. What should be done or checked?
channels 1, 6, and 11
A company is deploying a wireless network in the distribution facility in a Boston suburb. The warehouse is quite large and it requires multiple access points to be used. Because some of the company devices still operate at 2.4GHz, the network administrator decides to deploy the 802.11g standard. Which channel assignments on the multiple access points will make sure that the wireless channels are not overlapping?
a key that matches the key on the AP
A network administrator of a small advertising company is configuring WLAN security by using the WPA2 PSK method. Which credential do office users need in order to connect their laptops to the WLAN?
alternate, designated, root, root
Refer to the exhibit. What are the possible port roles for ports A, B, C, and D in this RSTP-enabled network?

ip route 172.16.1.0 255.255.255.0 s0/0/0 121
Refer to the exhibit. Which static route would an IT technician enter to create a backup route to the 172.16.1.0 network that is only used if the primary RIP learned route fails?

Enable port security.
What mitigation plan is best for thwarting a DoS attack that is creating a MAC address table overflow?
The 5 GHz band has more channels and is less crowded than the 2.4 GHz band, which makes it more suited to streaming multimedia.
A network engineer is troubleshooting a newly deployed wireless network that is using the latest 802.11 standards. When users access high bandwidth services such as streaming video, the wireless network performance is poor. To improve performance the network engineer decides to configure a 5 Ghz frequency band SSID and train users to use that SSID for streaming media services. Why might this solution improve the wireless network performance for that type of service?
broadcast DHCPREQUEST
Which DHCPv4 message will a client send to accept an IPv4 address that is offered by a DHCP server?
MAC address of the virtual router
Refer to the exhibit. Which destination MAC address is used when frames are sent from the workstation to the default gateway?

The host sends an ICMPv6 neighbor solicitation message to the DHCP or SLAAC-learned address and if no neighbor advertisement is returned, the address is considered unique.
After a host has generated an IPv6 address by using the DHCPv6 or SLAAC process, how does the host verify that the address is unique and therefore usable?
SSH
Which protocol adds security to remote connections?
The encapsulation dot1Q 5 command contains the wrong VLAN.
Refer to the exhibit. A network administrator is verifying the configuration of inter-VLAN routing. Users complain that PC2 cannot communicate with PC1. Based on the output, what is the possible cause of the problem?

It identifies the VLAN number.
Refer to the exhibit. A network administrator is configuring inter-VLAN routing on a network. For now, only one VLAN is being used, but more will be added soon. What is the missing parameter that is shown as the highlighted question mark in the graphic?

DHCP starvation
What network attack seeks to create a DoS for clients by preventing them from being able to obtain a DHCP lease?
The IP address of the default gateway router is not contained in the excluded address list.
Refer to the exhibit. If the IP addresses of the default gateway router and the DNS server are correct, what is the configuration problem?

EtherChannel
What protocol or technology uses source IP to destination IP as a load-balancing mechanism?
DTP
What protocol should be disabled to help mitigate VLAN attacks?
VTP
What protocol or technology requires switches to be in server mode or client mode?
the ipv6 unicast-routing command
What command will enable a router to begin sending messages that allow it to configure a link-local address without using an IPv6 DHCP server?
Configure the port as an 802.1q trunk port.
A network administrator is using the router-on-a-stick model to configure a switch and a router for inter-VLAN routing. What configuration should be made on the switch port that connects to the router?
when packets are being dropped from a particular directly attached host
In which situation would a technician use the show interfaces switch command?
User accounts must be configured locally on each device, which is an unscalable authentication solution.
What is a drawback of the local database method of securing device access that can be solved by using AAA with centralized servers?
It sends a DHCPREQUEST that identifies which lease offer the client is accepting.
What action does a DHCPv4 client take if it receives more than one DHCPOFFER from multiple DHCP servers?
WPA2 Enterprise
What method of wireless authentication is dependent on a RADIUS authentication server?
The VLANs for user access ports should be different VLANs than any native VLANs used on trunk ports.
A network administrator has found a user sending a double-tagged 802.1Q frame to a switch. What is the best solution to prevent this type of attack?
WLANs
On a Cisco 3504 WLC Summary page ( Advanced > Summary ), which tab allows a network administrator to configure a particular WLAN with a WPA2 policy?
ipv6 route ::/0 serial 0/1/1
Refer to the exhibit. A network engineer is configuring IPv6 routing on the network. Which command issued on router HQ will configure a default route to the Internet to forward packets to an IPv6 destination network that is not listed in the routing table?
Check the statistics on the default route for oversaturation.
Users are complaining of sporadic access to the internet every afternoon. What should be done or checked?
The switch replaces the old entry and uses the more current port.
What action takes place when the source MAC address of a frame entering a switch appears in the MAC address table associated with a different port?
to facilitate group configuration and management of multiple WLANs through a WLC
A network administrator is configuring a WLAN. Why would the administrator use a WLAN controller?
The encapsulation is misconfigured on a subinterface.
Refer to the exhibit. A network administrator configures R1 for inter-VLAN routing between VLAN 10 and VLAN 20. However, the devices in VLAN 10 and VLAN 20 cannot communicate. Based on the configuration in the exhibit, what is a possible cause for the problem?

PortFast is not configured on all access ports.
A network administrator uses the spanning-tree portfast bpduguard default global configuration command to enable BPDU guard on a switch. However, BPDU guard is not activated on all access ports. What is the cause of the issue?
stateful
Refer to the exhibit. A network administrator is configuring the router R1 for IPv6 address assignment. Based on the partial configuration, which IPv6 global unicast address assignment scheme does the administrator intend to implement?

Although DTLS is enabled by default to secure the CAPWAP control channel, it is disabled by default for the data channel.
A WLAN engineer deploys a WLC and five wireless APs using the CAPWAP protocol with the DTLS feature to secure the control plane of the network devices. While testing the wireless network, the WLAN engineer notices that data traffic is being exchanged between the WLC and the APs in plain-text and is not being encrypted. What is the most likely reason for this?
to Fa0/1, Fa0/2, and Fa0/3 only
Refer to the exhibit. Consider that the main power has just been restored. PC3 issues a broadcast IPv4 DHCP request. To which port will SW1 forward this request?
Use the “show ip interface brief” command to see if an interface is down.
Employees are unable to connect to servers on one of the internal networks. What should be done or checked?
It enables DHCP snooping globally on a switch.
What is the effect of entering the ip dhcp snooping configuration command on a switch?
Check the routing table for a missing static route.
An administrator notices that large numbers of packets are being dropped on one of the branch routers. What should be done or checked?