Cisco CCNA 3 v7.0 Module 6-8

studied byStudied by 0 people
0.0(0)
learn
LearnA personalized and smart learning plan
exam
Practice TestTake a test on your terms and definitions
spaced repetition
Spaced RepetitionScientifically backed study method
heart puzzle
Matching GameHow quick can you match all your cards?
flashcards
FlashcardsStudy terms and definitions

1 / 65

encourage image

There's no tags or description

Looks like no one added any tags here yet for you.

66 Terms

1

Which two statements accurately describe an advantage or a disadvantage when deploying NAT for IPv4 in a network? (Choose two.)

-NAT provides a solution to slow down the IPv4 address depletion.

-NAT introduces problems for some applications that require end-to-end connectivity.

New cards
2

A network administrator wants to examine the active NAT translations on a border router. Which command would perform the task?

Router# show ip nat translations

New cards
3

What are two tasks to perform when configuring static NAT? (Choose two.)

-Create a mapping between the inside local and outside local addresses.

-Identify the participating interfaces as inside or outside interfaces.

New cards
4

What is a disadvantage of NAT?

There is no end-to-end addressing.

New cards
5

Refer to the exhibit. From the perspective of R1, the NAT router, which address is the inside global address?

209.165.200.225

New cards
6

Refer to the exhibit. Given the commands as shown, how many hosts on the internal LAN off R1 can have simultaneous NAT translations on R1?

1

New cards
7

Refer to the exhibit. A network administrator has just configured address translation and is verifying the configuration. What three things can the administrator verify? (Choose three.)

-A standard access list numbered 1 was used as part of the configuration process.

-Address translation is working.

-Two types of NAT are enabled.

New cards
8

Refer to the exhibit. NAT is configured on RT1 and RT2. The PC is sending a request to the web server. What IPv4 address is the source IP address in the packet between RT2 and the web server?

209.165.200.245

New cards
9

Refer to the exhibit. Based on the output that is shown, what type of NAT has been implemented?

PAT using an external interface

New cards
10

Refer to the exhibit. From the perspective of users behind the NAT router, what type of NAT address is 209.165.201.1?

Inside global

New cards
11

Refer to the exhibit. Static NAT is being configured to allow PC 1 access to the web server on the internal network. What two addresses are needed in place of A and B to complete the static NAT configuration? (Choose two.)

- A = 10.1.0.13

- B = 209.165.201.1

New cards
12

What is the purpose of the overload keyword in the ip nat inside source list 1 pool NAT_POOL overload command?

It allows many inside hosts to share one or a few inside global addresses.

New cards
13

Refer to the exhibit. Which source address is being used by router R1 for packets being forwarded to the Internet?

209.165.200.225

New cards
14

Refer to the exhibit. The NAT configuration applied to the router is as follows:

Not enough information is given to determine if both static and dynamic NAT are working.

New cards
15

Which situation describes data transmissions over a WAN connection?

An employee shares a database file with a co-worker who is located in a branch office on the other side of the city.

New cards
16

Which two technologies are categorized as private WAN infrastructures? (Choose two.

-Frame Relay

-MetroE

New cards
17

Which network scenario will require the use of a WAN?

Employees need to connect to the corporate email server through a VPN while traveling.

New cards
18

What are two hashing algorithms used with IPsec AH to guarantee authenticity? (Choose two.)

-SHA

-MD5

New cards
19

What two algorithms can be part of an IPsec policy to provide encryption and hashing to protect interesting traffic? (Choose two.)

-SHA

-AES

New cards
20

Which VPN solution allows the use of a web browser to establish a secure, remote-access VPN tunnel to the ASA?

Clientless SSL

New cards
21

Which IPsec security function provides assurance that the data received via a VPN has not been modified in transit?

integrity

New cards
22

Which two types of VPNs are examples of enterprise-managed remote access VPNs? (Choose two.)

-clientless SSL VPN

-client-based IPsec VPN

New cards
23

Which is a requirement of a site-to-site VPN?

It requires a VPN gateway at each end of the tunnel to encrypt and decrypt traffic.

New cards
24

What is the function of the Diffie-Hellman algorithm within the IPsec framework

allows peers to exchange shared keys

New cards
25

What does NAT overloading use to track multiple internal hosts that use one inside global address?

port numbers

New cards
26

Refer to the exhibit. R1 is configured for static NAT. What IP address will Internet hosts use to reach PC1?

209.165.200.225

New cards
27

Which type of VPN uses the public key infrastructure and digital certificates?​

SSL VPN

New cards
28

Which two WAN infrastructure services are examples of private connections? (Choose two.)

-Frame Relay

-T1/E1

New cards
29

Which two statements about the relationship between LANs and WANs are true? (Choose two.)

-WANs are typically operated through multiple ISPs, but LANs are typically operated by single organizations or individuals.

-WANs connect LANs at slower speed bandwidth than LANs connect their internal end devices.

New cards
30

Which statement describes an important characteristic of a site-to-site VPN?

It must be statically set up.

New cards
31

How is "tunneling" accomplished in a VPN?

New headers from one or more VPN protocols encapsulate the original packets.

New cards
32

Which statement describes a VPN?

VPNs use virtual connections to create a private network through a public network.

New cards
33

Open the PT Activity. Perform the tasks in the activity instructions and then answer the question.

What problem is causing PC-A to be unable to communicate with the Internet?

The NAT interfaces are not correctly assigned.

New cards
34

What type of address is 64.100.190.189?

public

New cards
35

Which type of VPN routes packets through virtual tunnel interfaces for encryption and forwarding?

IPsec virtual tunnel interface

New cards
36

Refer to the exhibit. What has to be done in order to complete the static NAT configuration on R1?

Interface S0/0/0 should be configured with the command ip nat outside.

New cards
37

In NAT terms, what address type refers to the globally routable IPv4 address of a destination host on the Internet?

Outside Global

New cards
38

Refer to the exhibit. Which two statements are correct based on the output as shown in the exhibit? (Choose two.)

-The output is the result of the show ip nat translations command.

-The host with the address 209.165.200.235 will respond to requests by using a source address of 192.168.10.10.

New cards
39

Which circumstance would result in an enterprise deciding to implement a corporate WAN?

when its employees become distributed across many branch locations

New cards
40

What is the function of the Hashed Message Authentication Code (HMAC) algorithm in setting up an IPsec VPN?

guarantees message integrity

New cards
41

What algorithm is used with IPsec to provide data confidentiality?

AES

New cards
42

Which two technologies provide enterprise-managed VPN solutions? (Choose two.)

-Remote Access VPN

-Site to Site VPN

New cards
43

Refer to the exhibit. A network administrator is viewing the output from the command show ip nat translations. Which statement correctly describes the NAT translation that is occurring on router RT2?​

The traffic from a source IPv4 address of 192.168.254.253 is being translated to 192.0.2.88 by means of static NAT.

New cards
44

What type of address is 10.100.126.126?

private

New cards
45

Which type of VPN connects using the Transport Layer Security (TLS) feature?

SSL VPN

New cards
46

Which two end points can be on the other side of an ASA site-to-site VPN configured using ASDM? (Choose two.)

-ISR router

-another ASA

New cards
47

Which protocol creates a virtual point-to-point connection to tunnel unencrypted traffic between Cisco routers from a variety of protocols?

GRE

New cards
48

What is a disadvantage when both sides of a communication use PAT?

End-to-end IPv4 traceability is lost.

New cards
49

What two addresses are specified in a static NAT configuration?

the inside local and the inside global

New cards
50

A company is considering updating the campus WAN connection. Which two WAN options are examples of the private WAN architecture? (Choose two.)

-leased line

-Ethernet WAN

New cards
51

What type of address is 128.107.240.239?

Public

New cards
52

Which type of VPN has both Layer 2 and Layer 3 implementations?

MPLS VPN

New cards
53

Refer to the exhibit. A network administrator has configured R2 for PAT. Why is the configuration incorrect?

NAT-POOL2 is bound to the wrong ACL

New cards
54

Which type of VPN allows multicast and broadcast traffic over a secure site-to-site VPN?

GRE over IPSEC

New cards
55

Which type of VPN involves passenger, carrier, and transport protocols?

GRE over IPsec

New cards
56

Refer to the exhibit. A network administrator is viewing the output from the command show ip nat translations . Which statement correctly describes the NAT translation that is occurring on router RT2?​

The traffic from a source IPv4 address of 192.168.254.253 is being translated to 192.0.2.88 by means of static NAT.

New cards
57

What type of address is 10.131.48.7?

Private

New cards
58

Which type of VPN supports multiple sites by applying configurations to virtual interfaces instead of physical interfaces?

IPsec virtual tunnel interface

New cards
59

Which type of VPN involves a nonsecure tunneling protocol being encapsulated by IPsec?

GRE over IPsec

New cards
60

What type of address is 10.19.6.7?

Private

New cards
61

What type of address is 64.101.198.197?

Public

New cards
62

What type of address is 64.101.198.107

Public

New cards
63

What type of address is 10.100.34.34?

Private

New cards
64

What type of address is 192.168.7.126?

Private

New cards
65

What type of address is 198.133.219.148?

Public

New cards
66

Which two end points can be on the other side of an ASA site-to-site VPN? (Choose two.)

-router

-another ASA

New cards
robot