CET 349 Final Practice Exam

0.0(0)
studied byStudied by 0 people
0.0(0)
full-widthCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/119

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

120 Terms

1
New cards
term image

alternate, designated, root, root

2
New cards
term image

MAC address of the virtual router

3
New cards

What is a secure configuration option for remote access to a network device?

Configure SSH

4
New cards

After a host has generated an IPv6 address by using the DHCPv6 or SLAAC process, how does the host verify that the address is unique and therefore usable?

The host sends an ICMPv6 neighbor solicitation message to the DHCP or SLAAC-learned address and if no neighbor advertisement is returned, the address is considered unique.

5
New cards
term image
  • Source MAC: 00E0.FE91.7799
    Source IP: 10.1.1.10


6
New cards

After attaching four PCs to the switch ports, configuring the SSID and setting authentication properties for a small office network, a technician successfully tests the connectivity of all PCs that are connected to the switch and WLAN. A firewall is then configured on the device prior to connecting it to the Internet. What type of network device includes all of the described features?

wireless router


7
New cards

Which wireless encryption method is the most secure?

WPA2 with AES

8
New cards
term image

STP will block one of the redundant links.

9
New cards

What are three techniques for mitigating VLAN attacks? (Choose three.)

Enable trunking manually.
Set the native VLAN to an unused VLAN.
Disable DTP.


10
New cards

An administrator is trying to remove configurations from a switch. After using the command erase startup-config and reloading the switch, the administrator finds that VLANs 10 and 100 still exist on the switch. Why were these VLANs not removed?

Because these VLANs are stored in a file that is called vlan.dat that is located in flash memory, this file must be manually deleted.

11
New cards
term image

ip route 172.16.1.0 255.255.255.0 s0/0/0 121

12
New cards
term image

Packets with a destination network that is not 10.10.0.0/16 or is not 10.20.0.0/16 or is not a directly connected network will be forwarded to the Internet.


13
New cards
term image

It identifies the VLAN number.

14
New cards
term image

SW1 floods the frame on all ports on SW1, excluding the port through which the frame entered the switch.

15
New cards

A network administrator is configuring a WLAN. Why would the administrator disable the broadcast feature for the SSID?

to eliminate outsiders scanning for available SSIDs in the area


16
New cards

Compared with dynamic routes, what are two advantages of using static routes on a router? (Choose two.)

They use fewer router resources.

They improve netw​ork security.



17
New cards
term image

S 10.17.2.0/24 [1/0] via 10.16.2.2

18
New cards
term image

2682112

19
New cards

A static route has been configured on a router. However, the destination network no longer exists. What should an administrator do to remove the static route from the routing table?

Remove the route using the no ip route command.

20
New cards

Which two statements are characteristics of routed ports on a multilayer switch? (Choose two.)​

They are not associated with a particular VLAN.

They support subinterfaces, like interfaces on the Cisco IOS routers.

21
New cards
term image

RTA is using the same subnet for VLAN 20 and VLAN 30.

22
New cards
term image

Trunk2

23
New cards

A network administrator is preparing the implementation of Rapid PVST+ on a production network. How are the Rapid PVST+ link types determined on the switch interfaces?

Link types are determined automatically.

24
New cards

Which two types of spanning tree protocols can cause suboptimal traffic flows because they assume only one spanning-tree instance for the entire bridged network? (Choose two.)

STP

RSTP

25
New cards

What action takes place when the source MAC address of a frame entering a switch appears in the MAC address table associated with a different port?

The switch replaces the old entry and uses the more current port.

26
New cards

A network administrator configures the port security feature on a switch. The security policy specifies that each access port should allow up to two MAC addresses. When the maximum number of MAC addresses is reached, a frame with the unknown source MAC address is dropped and a notification is sent to the syslog server. Which security violation mode should be configured for each access port?

restrict

27
New cards

Which network attack is mitigated by enabling BPDU guard?

rogue switches on a network

28
New cards

A network administrator uses the spanning-tree portfast bpduguard default global configuration command to enable BPDU guard on a switch. However, BPDU guard is not activated on all access ports. What is the cause of the issue?

PortFast is not configured on all access ports

29
New cards

A new Layer 3 switch is connected to a router and is being configured for interVLAN routing. What are three of the five steps required for the configuration? (Choose three.) Type A *

creating SVI interfaces
creating VLANs
assigning ports to VLANs

30
New cards

A new Layer 3 switch is connected to a router and is being configured for interVLAN routing. What are three of the five steps required for the configuration? (Choose three.) Type B

entering “no switchport” on the port connected to the router, assigning ports to VLANs, enabling IP routing

31
New cards

A company is deploying a wireless network in the distribution facility in a Boston suburb. The warehouse is quite large and it requires multiple access points to be used. Because some of the company devices still operate at 2.4GHz, the network administrator decides to deploy the 802.11g standard. Which channel assignments on the multiple access points will make sure that the wireless channels are not overlapping?

channels 1, 6, and 11

32
New cards

What method of wireless authentication is dependent on a RADIUS authentication server?

WPA2 Enterprise

33
New cards

An administrator notices that large numbers of packets are being dropped on one of the branch routers. What should be done or checked?

Check the routing table for a missing static route.

34
New cards

In which situation would a technician use the show interfaces switch command?

when packets are being dropped from a particular directly attached host

35
New cards
term image

The IP address of the default gateway router is not contained in the excluded address list.

36
New cards
term image

R1(config-if)# ip helper-address 10.2.0.250, R1(config)# interface G0/0

37
New cards
term image

The ip helper-address command was applied on the wrong interface.

38
New cards

What network attack seeks to create a DoS for clients by preventing them from being able to obtain a DHCP lease?

DHCP starvation

39
New cards

A cybersecurity analyst is using the macof tool to evaluate configurations of switches deployed in the backbone network of an organization. Which type of LAN attack is the analyst targeting during this evaluation?

MAC address table overflow

40
New cards

Which information does a switch use to populate the MAC address table?

the source MAC address and the incoming port

41
New cards

Which statement describes a result after multiple Cisco LAN switches are interconnected?

The broadcast domain expands to all switches.

42
New cards

Which method of IPv6 prefix assignment relies on the prefix contained in RA messages?

SLAAC

43
New cards

On a Cisco 3504 WLC Summary page ( Advanced > Summary ), which tab allows a network administrator to configure a particular WLAN with a WPA2 policy?

WLANs

44
New cards

A network administrator of a small advertising company is configuring WLAN security by using the WPA2 PSK method. Which credential do office users need in order to connect their laptops to the WLAN?

a key that matches the key on the AP

45
New cards

What two default wireless router settings can affect network security? (Choose two.)

The SSID is broadcast, A well-known administrator password is set.

46
New cards
term image

because VLAN 99 has not yet been created

47
New cards

Which three pairs of trunking modes will establish a functional trunk link between two Cisco switches? (Choose three.)

dynamic desirable – dynamic desirable
dynamic desirable – dynamic auto
dynamic desirable – trunk

48
New cards

Which three steps should be taken before moving a Cisco switch to a new VTP management domain? (Choose three.)

Select the correct VTP mode and version.
Reboot the switch.
Configure the switch with the name of the new management domain.

49
New cards

Select the three PAgP channel establishment modes. (Choose three.)

desirable
on

auto

50
New cards
term image

ipv6 route 2001:db8:12:10::/64 S0/0/1 fe80::2

51
New cards
term image

Change the destination network and mask to 0.0.0.0 0.0.0.0.

52
New cards
term image

ip route 10.10.0.0 255.255.0.0 209.165.200.225 100

53
New cards
term image

ipv6 route ::/0 serial 0/1/1

54
New cards

What protocol or technology uses a standby router to assume packet-forwarding responsibility if the active router fails?

HSRP

55
New cards

What is the effect of entering the ip arp inspection vlan 10 configuration command on a switch?

It enables DAI on specific switch interfaces previously configured with DHCP snooping.

56
New cards
term image

PAgP

57
New cards

Successful inter-VLAN routing has been operating on a network with multiple VLANs across multiple switches for some time. When an inter-switch trunk link fails and Spanning Tree Protocol brings up a backup trunk link, it is reported that hosts on two VLANs can access some, but not all the network resources that could be accessed previously. Hosts on all other VLANS do not have this problem. What is the most likely cause of this problem?

The protected edge port function on the backup trunk interfaces has been disabled.

58
New cards
term image

The interface is incorrect

59
New cards

What protocol or technology uses source IP to destination IP as a load-balancing mechanism?

EtherChannel

60
New cards
term image

Change the administrative distance to 120.

61
New cards

Which type of static route is configured with a greater administrative distance to provide a backup route to a route learned from a dynamic routing protocol?

floating static route

62
New cards

Which option shows a correctly configured IPv4 default static route?

ip route 0.0.0.0 0.0.0.0 S0/0/0

63
New cards

Which command will start the process to bundle two physical interfaces to create an EtherChannel group via LACP?

interface range GigabitEthernet 0/4 – 5

64
New cards

What would be the primary reason an attacker would launch a MAC address overflow attack?

so that the attacker can see frames that are destined for other hosts

65
New cards

What is a method to launch a VLAN hopping attack?

introducing a rogue switch and enabling trunking

66
New cards
term image

fa0/21, fa0/10, fa0/13

67
New cards

What is the common term given to SNMP log messages that are generated by network devices and sent to the SNMP server?

traps

68
New cards

A technician is troubleshooting a slow WLAN and decides to use the split-the-traffic approach. Which two parameters would have to be configured to do this? (Choose two.)

Configure the 5 GHz band for streaming multimedia and time sensitive traffic, Configure the 2.4 GHz band for basic internet traffic that is not time sensitive.

69
New cards

A company security policy requires that all MAC addressing be dynamically learned and added to both the MAC address table and the running configuration on each switch. Which port security configuration will accomplish this?

sticky secure MAC addresses

70
New cards

What is the IPv6 prefix that is used for link-local addresses?

FE80::/10

71
New cards

What action takes place when a frame entering a switch has a unicast destination MAC address that is not in the MAC address table?

The switch will forward the frame out all ports except the incoming port.

72
New cards

A new switch is to be added to an existing network in a remote office. The network administrator does not want the technicians in the remote office to be able to add new VLANs to the switch, but the switch should receive VLAN updates from the VTP domain. Which two steps must be performed to configure VTP on the new switch to meet these conditions? (Choose two.)

Configure the existing VTP domain name on the new switch, Configure the new switch as a VTP client.

73
New cards
term image

host F, host D, host C

74
New cards

A technician is configuring a router for a small company with multiple WLANs and doesn’t need the complexity of a dynamic routing protocol. What should be done or checked?

Create static routes to all internal networks and a default route to the internet.

75
New cards

Which two functions are performed by a WLC when using split media access control (MAC)? (Choose two.)

association and re-association of roaming clients, frame queuing and packet prioritization

76
New cards
term image

the virtual IP address and the virtual MAC address for the HSRP group 1

77
New cards

A network administrator is configuring a new Cisco switch for remote management access. Which three items must be configured on the switch for the task? (Choose three.)

IP address, default gateway, vty lines

78
New cards
term image

R1 is configured as a DHCPv4 relay agent.

79
New cards

What action does a DHCPv4 client take if it receives more than one DHCPOFFER from multiple DHCP servers?

It sends a DHCPREQUEST that identifies which lease offer the client is accepting

80
New cards

What protocol should be disabled to help mitigate VLAN attacks?

DTP

81
New cards

Why is DHCP snooping required when using the Dynamic ARP Inspection feature?

It uses the MAC-address-to-IP-address binding database to validate an ARP packet.

82
New cards

To obtain an overview of the spanning tree status of a switched network, a network engineer issues the show spanning-tree command on a switch. Which two items of information will this command display? (Choose two.)

The role of the ports in all VLANs, The root bridge BID.

83
New cards

A WLAN engineer deploys a WLC and five wireless APs using the CAPWAP protocol with the DTLS feature to secure the control plane of the network devices. While testing the wireless network, the WLAN engineer notices that data traffic is being exchanged between the WLC and the APs in plain-text and is not being encrypted. What is the most likely reason for this?

Although DTLS is enabled by default to secure the CAPWAP control channel, it is disabled by default for the data channel.

84
New cards
term image

Configure either trunk port in the dynamic desirable mode.

85
New cards

What action takes place when the source MAC address of a frame entering a switch is not in the MAC address table?

The switch adds the MAC address and incoming port number to the table.

86
New cards

A technician is configuring a wireless network for a small business using a SOHO wireless router. Which two authentication methods are used, if the router is configured with WPA2? (Choose two.) **

personal, AES

87
New cards

A network administrator is adding a new WLAN on a Cisco 3500 series WLC. Which tab should the administrator use to create a new VLAN interface to be used for the new WLAN?

CONTROLLER

88
New cards
term image

The port channel ID is 2,The EtherChannel is down.

89
New cards

Which three statements accurately describe duplex and speed settings on Cisco 2960 switches? (Choose three.)

An autonegotiation failure can result in connectivity issues.
The duplex and speed settings of each switch port can be manually configured.
When the speed is set to 1000 Mb/s, the switch ports will operate in full-duplex mode.

90
New cards
term image

(config)# ip routing

(config)# interface gigabitethernet 1/1
(config-if)# no switchport
(config-if)# ip address 192.168.1.2 255.255.255.252

91
New cards
term image

to Fa0/1, Fa0/2, and Fa0/3 only

92
New cards

Which statement is correct about how a Layer 2 switch determines how to forward frames?

Frame forwarding decisions are based on MAC address and port mappings in the CAM table.

93
New cards

Employees are unable to connect to servers on one of the internal networks. What should be done or checked?

Use the “show ip interface brief” command to see if an interface is down.

94
New cards

What protocol or technology requires switches to be in server mode or client mode?

VTP

95
New cards

What is the effect of entering the shutdown configuration command on a switch?

It disables an unused port.

96
New cards

What else is required when configuring an IPv6 static route using a next-hop link-local address? **

interface number and type

97
New cards

A junior technician was adding a route to a LAN router. A traceroute to a device on the new network revealed a wrong path and unreachable status. What should be done or checked?

Check the configuration of the exit interface on the new static route.

98
New cards

A network engineer is troubleshooting a newly deployed wireless network that is using the latest 802.11 standards. When users access high bandwidth services such as streaming video, the wireless network performance is poor. To improve performance the network engineer decides to configure a 5 Ghz frequency band SSID and train users to use that SSID for streaming media services. Why might this solution improve the wireless network performance for that type of service?

The 5 GHz band has more channels and is less crowded than the 2.4 GHz band, which makes it more suited to streaming multimedia.

99
New cards

On what switch ports should BPDU guard be enabled to enhance STP stability?

all PortFast-enabled ports

100
New cards

How will a router handle static routing differently if Cisco Express Forwarding is disabled?

Ethernet multiaccess interfaces will require fully specified static routes to avoid routing inconsistencies.