Vendor: Cisco

Exam Code: 200-120
Exam Name: CCNA - Cisco Certified Network Associate
(803)
Version: 14.111

QUESTION 1
Refer to the exhibit. What will Router1 do when it receives the data frame shown? (Choose
three.)

A.
B.
C.
D.
E.
F.

Router1
Router1
Router1
Router1
Router1
Router1

will strip off the source MAC address and replace it with the MAC address 0000.0c36.6965.
will strip off the source IP address and replace it with the IP address 192.168.40.1.
will strip off the destination MAC address and replace it with the MAC address 0000.0c07.4320.
will strip off the destination IP address and replace it with the IP address of 192.168.40.1.
will forward the data packet out interface FastEthernet0/1.
will forward the data packet out interface FastEthernet0/2.

Answer: ACF
Explanation:
Remember, the source and destination MAC changes as each router hop along with the TTL
being decremented but the source and destination IP address remain the same from source to
destination.

QUESTION 2
Refer to the exhibit. Which three statements correctly describe Network Device A? (Choose
three.)

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

A. With a network wide mask of 255.255.255.128, each interface does not require an IP address.
B. With a network wide mask of 255.255.255.128, each interface does require an IP address on a
unique IP subnet.
C. With a network wide mask of 255.255.255.0, must be a Layer 2 device for the PCs to communicate
with each other.
D. With a network wide mask of 255.255.255.0, must be a Layer 3 device for the PCs to communicate
with each other.
E. With a network wide mask of 255.255.254.0, each interface does not require an IP address.
Answer: BDE
Explanation:
If Subnet Mask is 255.255.255.128 the hosts vary from x.x.x.0 - x.x.x.127 & x.x.x.128x.x.x.255,so the IP Addresses of 2 hosts fall in different subnets so each interface needs an IP an
address so that they can communicate each other.
If Subnet Mask is 255.255.255.0 the 2 specified hosts fall in different subnets so they need a
Layer 3 device to communicate.
If Subnet Mask is 255.255.254.0 the 2 specified hosts are in same subnet so are in network
address and can be accommodated in same Layer 2 domain and can communicate with each
other directly using the Layer 2 address.

QUESTION 3
Which layer in the OSI reference model is responsible for determining the availability of the
receiving program and checking to see if enough resources exist for that communication?
A.
B.
C.
D.
E.

transport
network
presentation
session
application

Answer: E
Explanation:
This question is to examine the OSI reference model. The Application layer is responsible for
identifying and establishing the availability of the intended communication partner and
determining whether sufficient resources for the intended communication exist.

QUESTION 4
Refer to the exhibit. Host A pings interface S0/0 on router 3. What is the TTL value for that ping?

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

A.
B.
C.
D.

252
253
254
255

Answer: B
Explanation:
From the CCNA ICND2 Exam book: "Routers decrement the TTL by 1 every time they forward a
packet; if a router decrements the TTL to 0, it throws away the packet. This prevents packets
from rotating forever." I want to make it clear that before the router forwards a packet, the TTL is
still remain the same. For example in the topology above, pings to S0/1 and S0/0 of Router 2
have the same TTL.

QUESTION 5
Which of the following describes the roles of devices in a WAN? (Choose three.)
A.
B.
C.
D.
E.
F.

A CSU/DSU terminates a digital local loop.
A modem terminates a digital local loop.
A CSU/DSU terminates an analog local loop.
A modem terminates an analog local loop.
A router is commonly considered a DTE device.
A router is commonly considered a DCE device.

Answer: ADE
Explanation:

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

in telephony the local loop (also referred to as a subscriber line) is the physical link or circuit that connects from the demarcation point of the customer premises to the edge of the carrier or telecommunications service provider's network.com . http://www. A modem modulates outgoing digital signals from a computer or other digital device to analog signals for a conventional copper twisted pair telephone line and demodulates the incoming analog signal and converts it to a digital signal for the digital device.passexamvce. The network's DCE device (includes CSU/DSU) provides clocking to the DTE-connected interface (the router's serial interface). A CSU/DSU is used between two digital lines For more explanation of answer D. QUESTION 6 Refer to the exhibit. which entry will be in the ARP cache of HostA to support this transmission? Get Complete Collection of 200-120 Exam's Question and Answers. Therefore a modem terminates an analog local loop is correct. Refer to the exhibit.The idea behind a WAN is to be able to connect two DTE networks together through a DCE network. After HostA pings HostB.

E.passexamvce.A. and will be that of the remote host (HostB). D. The destination IP address will not change. B. Get Complete Collection of 200-120 Exam's Question and Answers. http://www. the ARP cache entry will be that of the Ethernet address of the local router (default gateway) for the physical MAC address. C. F. Answer: A Explanation: When a host needs to reach a device on another subnet.com .

http://www. D.com . The Data Link layer formats the message into pieces. E. what is known about the network interface port? A. According to this question the frame is damaged and discarded which will happen at the Data Link layer. D. B. Answer: C Explanation: Modern Ethernet networks built with switches and full-duplex connections no longer utilize CSMA/CD. This is an Ethernet port operating at half duplex. At which OSI layer did this happen? A. E. session transport network data link physical Answer: D Explanation: The Data Link layer provides the physical transmission of the data and handles error notification. B. D. This is a port on a network interface card in a PC. network topology. From this statement. E. This is a 10 Mb/s switch port. QUESTION 8 A network interface port has collision detection and carrier sensing enabled on a shared twisted pair network. and flow control. C. This is a 100 Mb/s switch port. C. Protocols Data Unit (PDU) on Datalink layer is called frame. What is the highest layer of the protocol stack that the network administrator is using for this operation? A.QUESTION 7 A network administrator is verifying the configuration of a newly installed host by establishing an FTP connection to a remote server. and adds a customized header containing the hardware destination and source address. This is an Ethernet port operating at full duplex.passexamvce. application presentation session transport internet data link Answer: A Explanation: FTP belongs to Application layer and it is also the highest layer of the OSI model. F. QUESTION 9 A receiving host computes the checksum on a frame and determines that the frame is damaged. The frame is then discarded. CSMA/CD is only used in obsolete shared media Ethernet (which uses repeater or hub). B. each called a data frame. C. Get Complete Collection of 200-120 Exam's Question and Answers.

PICT. such as ASCII text. IPX. AppleTalk DDP. The Presentation Layer (Layer 6) defining data formats. The IP and IPX protocols most closely match the OSI network layer (Layer 3) and are called Layer 3 protocols because their functions most closely match OSI's Layer 3. and may use flow control to prevent unnecessary congestion by attempting to send data at a rate that the network can accommodate. The presentation layer translates bits into voltages for transmission across the physical link. Examples includE. and DECnet SCP The Transport Layer (Layer 4) defines several functions.passexamvce. This allows the presentation layer to have a seamless view of an incoming stream of data. ATM. Examples include.com . FDDI. HDLC. or it might not. and end-to-end delivery rules. encryption. and MIDI. Internet browsers. control. The data link protocols define delivery across an individual link. The transport layer may provide for retransmission. FTP. including the choice of protocols. D. TCP. and FTAM.5/802. routing. It also defines how routing works and how routes are learned. The transport layer divides a data stream into segments and may add reliability and flow control information. NFS. RPC. error recovery. and how to fragment a packet into smaller packets to accommodate media with smaller maximum transmission unit sizes. SNMP. IEEE 802. These protocols are necessarily concerned with the type of media in use. Telnet.2.3/802. The most important Layer 4 functions are error recovery and flow control. B. and SPX. The Data Link Layer (Layer 2) is concerned with getting data across one particular link or medium. The Network Layer (Layer 3) defines end-to-end delivery of packets and defines logical addressing to accomplish this. Encryption also is defined as a presentation layer service. The data link layer adds physical source and destination addresses and an FCS to the segment.QUESTION 10 Which of the following correctly describe steps in the OSI data encapsulation process? (Choose two. BCD. Packets are created when the network layer adds Layer 3 addresses and control information to a segment. and ICMP. ASCII. IP. JPEG. binary. EBCDIC. GIF. PPP. Reordering of the incoming data stream when packets arrive out of order is included. QUESTION 11 Refer to the graphic. TIFF. and JPEG. The presentation layer can be presented with data if all flows occur in some cases. SQL. X.) A. Examples include. E.e. Answer: AD Explanation: The Application Layer (Layer 7) refers to communications services to applications and is the interface between the network and the application. depending on the choice of protocols.400 mail. The Session Layer (Layer 5) defines how to start. Both IP and IPX define logical addressing. C. i. This includes the control and management of multiple bidirectional messages so that the application can be notified if only some of a series of messages are completed. Examples include. SMTP gateways. Examples include. What will be the source MAC address of the frames received by Host A from the server? Get Complete Collection of 200-120 Exam's Question and Answers.2. MPEG. AppleTalk ASP. Frame Relay. NetBios names. Examples include. http://www. and IEEE 802. HTTP. Host A is communicating with the server.. UDP. and end communication sessions. Multiplexing of incoming data for different flows to applications on the same host is also performed. the learning of routing information. Packets are created when the network layer encapsulates a frame with source and destination host addresses and protocol-related control information. NFS. EBCDIC text.

If a packet has a hop count of 15. http://www. The router must ensure that the packet has not come too far to be forwarded. These network-layer headers contain source and destination network addresses. 2. C. the router builds a new MAC header for the packet. Routers make forwarding decisions based on the packet's network-layer header (such as an IPX header or IP header). IP headers contain a Time to Live (TTL) value. What two results would occur if the hub were to be replaced with a switch that is configured with one Ethernet VLAN? (Choose two. If an IP packet has a TTL value of 1. the router discards the packet. and the distance to those networks. Local devices address packets to the router's MAC address in the MAC header. 15 hops is the maximum number of hops (or routers) that a packet can cross. the router must perform the following steps: 1. the IP TTL value decrements as the IP packet is forwarded through each router. IPX headers contain a hop count. and remove the MAC header . 3. Determine the route to the destination. the MAC address of router interface e0 the MAC address of router interface e1 the MAC address of the server network interface the MAC address of host A Answer: A Explanation: Whereas switches can only examine and forward packets based on the contents of the MAC header. Routers maintain a routing table that lists available networks. The router then strips off the MAC header and examines the network. After receiving the packets. (If you want to read the IP routing tables on a Windows 95/98 workstation.passexamvce. D. Build the new MAC header and forward the packet.com . the router discards the packet.layer header to determine what to do with the packet. Check the incoming packet for corruption.) Get Complete Collection of 200-120 Exam's Question and Answers. A router cannot decrement the TTL value to 1 and then forward the packet. the router must build a new header. For example. type ROUTE PRINT in the DOS box. the direction to the desired network (the outgoing interface number). After determining which direction to forward the packet.) 4. B. The router checks the packet for MAC-layer errors. which increments as the packet is forwarded through each router.A. routers can look further into the packet to discover the network for which a packet is destined. Unlike the IPX hop count. The MAC header includes the router's MAC address and the final destination's MAC address or the MAC address of the next router in the path. Finally. Examine the age of the packet. By default. QUESTION 12 Refer to the exhibit.

and the other devices in the domain listen to the network in order to avoid data collisions. The number of broadcast domains would decrease. switch or bridge. How to count them? Broadcast Domain: No matter how many hosts or devices are connected together. Only one device in the collision domain may transmit at any one time. and the old CSMA/CD would be working overtime to try to get those packets re-sent every time there was a collision on the wire (since ethernet allows only one host to be transmitting at once without there being a traffic jam). These days. A Router is used to separate Broadcast-Domains (we could also call them Subnets Get Complete Collection of 200-120 Exam's Question and Answers. however. A collision domain is sometimes referred to as an Ethernet segment. http://www. Answer: CD Explanation: Basically. The simple way to look at it is this way: switches break up collision domains. but a collision domain can never have more than one broadcast domain associated with it.A. all these devices are in ONE Broadcast domain (assuming a single VLAN). Also. Broadcast Domain: Broadcasting sends a message to everyone on the local network (subnet). Since switches and bridges allow for broadcast traffic to go unswitched. The Client is asking for a IP Address. F. it doesn't get forwarded. Broadcast domains are exactly what they imply: they are network segments that allow broadcasts to be sent across them. Routers. a collision domain is a network segment that allows normal network traffic to flow back and forth. but the client does not know how to reach the DHCP Server. B. But only the DHCP Server will answer to the Request. In the old days of hubs. So the client sends a DHCP Discover packet to EVERY PC in the local subnet (Broadcast). Collision Domain: A group of Ethernet or Fast Ethernet devices in a CSMA/CD LAN that are connected by repeaters and compete for access on the network. you break up collision domains by switching packets bound for other collision domains. An example for Broadcasting would be DHCP Request from a Client PC.passexamvce. The number of collision domains would increase. The number of collision domains would decrease. The number of broadcast domains would remain the same. so when a broadcast hits a router (or the perimeter of a VLAN).com . while routers (and VLANs) break up collision domains and broadcast domains. With switches. The number of broadcast domains would increase. D. E. a broadcast domain can contain multiple collision domains. don't allow broadcasts through by default. since we mostly use switches to connect computers to the network. broadcasts can traverse collision domains freely. this meant you had a lot of collisions. if they are connected with a repeater. you generally have one collision domain to a PC. C. The number of collision domains would remain the same. hub.

we have 5 Collision domains.) A. each switched segment will contain one root bridge with all its ports in the forwarding state. D. Each device that is connected to a Layer 1 device (repeater.com . Microsegmentation reduces and can even eliminate collisions because each segment is its own collision domain -> . QUESTION 13 Which three statements accurately describe Layer 2 Ethernet switches? (Choose three. we have TWO broadcast domains. Notice that the Internet Layer of TCP/IP is equivalent to the Network Layer which is responsible for routing decision. B. If this switch is connected to another switch or a router. Note: Microsegmentation decreases the number of collisions but it increases the number of collision domains. Microsegmentation decreases the number of collisions on the network. we have one collision domain more. Answer: BDE Explanation: Microsegmentation is a network design (functionality) where each workstation or device on a network gets its own dedicated segment (collision domain) to the switch.or call them VLANs).. this is ONE Collision Domain. Collision Domain: Each connection from a single PC to a Layer 2 switch is ONE Collision domain. So. if 5 PCs are connected with separate cables to a switch. hub) will reside in ONE single collision domain. Each network device gets the full bandwidth of the segment and does not have to share the segment with other devices. If a switch receives a frame for an unknown destination. Spanning Tree Protocol allows switches to automatically share VLAN information. F. if a router stands between all these devices. QUESTION 14 Where does routing occur within the DoD TCP/IP reference model? A. All other switches in that broadcast domain will have only one root port.passexamvce. Switches that are configured with VLANs make forwarding decisions based on both Layer 2 and Layer 3 address information. D. Establishing VLANs increases the number of broadcast domains. C. E. In a properly functioning network with redundant switched paths. Get Complete Collection of 200-120 Exam's Question and Answers. application internet network transport Answer: B Explanation: The picture below shows the comparison between TCP/IP model & OSI model. B. If 5 Devices are connected to a Hub. For example. http://www. it uses ARP to resolve the address. C.

When the router receives this data. http://www.) A. it replaces the source MAC address with it own E1 interface's MAC address and replaces the destination MAC address with Host C's MAC address before Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce. C. F.com . the IP address of Switch 1 the MAC address of Switch 1 the IP address of Host C the MAC address of Host C the IP address of the router's E0 interface the MAC address of the router's E0 interface Answer: CF Explanation: While transferring data through many different networks. E. B. So in this case Host A will use the IP address of Host C and the MAC address of E0 interface to send data. Only the source and destination MAC addresses are changed.QUESTION 15 Refer to exhibit: Which destination addresses will be used by Host A to send data to Host C? (Choose two. D. the source and destination IP addresses are not changed.

which switch will be elected root bridge and why? A. C. To communicate on different network we have to use Layer 3 addresses (IP addresses) -> B is not correct. The switch having the lowest priority will win the election process. B. In this case. each frame has the same priority to transmit by default -> All devices need a physical address to identify itself. because it is the most centrally located switch Switch C. because it has the lowest priority Switch D. first check the priority value. because it is the most centrally located switch Switch B. E. http://www. QUESTION 16 For what two purposes does the Ethernet protocol use physical addresses? (Choose two.sending to Host C . Layer 2 frame and Layer 3 packet can be recognized via headers. they can not communicate -> QUESTION 17 Refer to the exhibit. C.) A. B. switch C has the lowest MAC Address so it becomes the root bridge. Layer 3 packet also contains physical address -> On Ethernet. D. D. MAC addresses are only used to communicate on the same network. E. Get Complete Collection of 200-120 Exam's Question and Answers. because it has the lowest MAC address Switch A. Based on the information given. F.com . If not. because it has the highest priority Answer: E Explanation: To elect the root bridge in the LAN. If Priority Value is the same then it checks the MAC Address. F. because it has the highest MAC address Switch C. Switch A. the switch having the lowest MAC Address will become the root bridge.passexamvce. to uniquely identify devices at Layer 2 to allow communication with devices on a different network to differentiate a Layer 2 frame from a Layer 3 packet to establish a priority system to determine which device gets to transmit first to allow communication between different devices on the same network to allow detection of a remote device when its physical address is unknown Answer: AE Explanation: Physical addresses or MAC addresses are used to identify devices at layer 2.

What will Switch-1 do with this data? A. Switch-1 will drop the data because it does not have an entry for that MAC address. Check the MAC address table of Switch1 and find that the MAC address of the host does not exist in the table. B. In particular. C. D. Switch-1 will forward the data to its default gateway. http://www.efa4.com . Switches work as follows: In output there is no MAC address of give host so switch floods to all ports except the source port. D. Switch-1 needs to send data to a host with a MAC address of 00b0. Switch1 will flood the data out all of its ports except the port from which the data originated to determine which port the host is located in. the port with lowest cost to the root bridge will become root port (on non-root switch). Switch-1 will flood the data out all of its ports except the port from which the data originated. E. QUESTION 19 What value is primarily used to determine which port becomes the root port on each nonroot switch in a spanning-tree topology? A. C.d056. Switch-1 will send an ARP request out all its ports except the port from which the data originated. Answer: B Explanation: This question tests the operating principles of the Layer 2 switch.QUESTION 18 Refer to the exhibit.passexamvce. Get Complete Collection of 200-120 Exam's Question and Answers. B. path cost lowest port MAC address VTP revision number highest port priority number port priority number and MAC address Answer: A Explanation: The path cost to the root bridge is the most important value to determine which port will become the root port on each non-root switch.

It creates a VLAN 999 interface. More bandwidth will be required than was needed previously. D. It designates VLAN 999 as the default for all unknown tagged traffic.) A.QUESTION 20 What is the function of the command switchport trunk native vlan 999 on a Cisco Catalyst switch? A. E.passexamvce. C. B. 802. Answer: B Explanation: Configuring the Native VLAN for Untagged Traffic A trunk port configured with 802. D. the switch forwards untagged traffic in the native VLAN configured for the port. STP (802. The native VLAN is VLAN 1 by default. B. IP address utilization will be more efficient.1d) is used to prevent Layer 2 loops. What is the effect of adding switch ports to a new VLAN on the switch? A.1q is a Frame Relay protocol which belongs to VLAN. It designates VLAN 999 for untagged traffic. QUESTION 21 Which two protocols are used by bridges and/or switches to prevent loops in a layer 2 network? (Choose two. 802.com . QUESTION 22 Which switch would STP choose to become the root bridge in the selection process? A. Get Complete Collection of 200-120 Exam's Question and Answers. B. It blocks VLAN 999 traffic from passing on the trunk. C. C.1d VTP 802. D.1q STP SAP Answer: AD Explanation: This question is to examine the STP protocol. SAP is a concept of the OSI model.1Q tagging can receive both tagged and untagged traffic. 32768: 11-22-33-44-55-66 32768: 22-33-44-55-66-77 32769: 11-22-33-44-55-65 32769: 22-33-44-55-66-78 Answer: A QUESTION 23 A switch is configured with all ports assigned to vlan 2 with full duplex FastEthernet to segment existing departmental traffic. By default. More collision domains will be created. C. http://www. B.

the network does not have to be configured. G.D. QUESTION 24 What are three benefits of implementing VLANs? (Choose three. 4. it helps reduce administrative costs when users are geographically dispersed. adds. Get Complete Collection of 200-120 Exam's Question and Answers. Improves network security High-security can be positioned in different VLAN groups to ensure that non-members cannot receive their broadcasts. and moves can be attained simply by making necessary configurations on the VLAN port.1Q trunks. Better administration VLANs facilitate grouping of multiple geographical stations.passexamvce. F. B.com . VLANs make it easier for IT staff to configure new logical groups. Inexpensive The popularity of VLANs is due to the fact that changes. Broadcast storms can be mitigated by decreasing the number of broadcast domains. 5. re-addressing. For instance.) A. 3. because the VLANs all belong to the same broadcast domain. http://www. 1. because network configuration can be made at ease when need arises. Answer: ACD Explanation: Benefits of VLANs VLAN is a network structure which allows users to communicate while in different locations by sharing one multicast domain and a single broadcast. A higher level of network security can be reached by separating sensitive data traffic from other network traffic. thus increasing their size. Segment multiple networks VLANs are typically used to achieve multiple purposes. On the other hand. Enhances performance A more efficient use of bandwidth can be achieved allowing many logical networks to use the same network infrastructure. E. Broadcast storms can be mitigated by increasing the number of broadcast domains. They provide numerous networking benefits and have become popular in the market. smaller broadcast domain. D. 6. thanks to 802. Since this is a full duplex switch. C. When VLAN users move to another physical location. Each VLAN creates a separate. 2. A more efficient use of bandwidth can be achieved allowing many logical networks to use the same network infrastructure. Better management A VLAN typically solve the scalability issues that exist in a large network by breaking the main domain into several VLAN groups or smaller broadcast configurations. Port-based VLANs increase switch-port use efficiency. A more efficient use of bandwidth can be achieved allowing many physical groups to use the same network infrastructure. Answer: D Explanation: Each VLAN creates its own broadcast domain. thus reducing their size. thereby encourage better control of multicast traffic as well as broadcast domains. An additional broadcast domain will be created. each port is a separate collision domain. Time-consuming. They are popularly used to reduce broadcast traffic. a router is added and workgroups relocated into centralized locations. and host reconfigurations is now a thing of the past.

Which set of commands is required to accomplish this task? Get Complete Collection of 200-120 Exam's Question and Answers. B. D.1D 802. Answer: BCE Explanation: When using VLAN the number and size of collision domains remain the same -> VLANs allow to group users by function.1w 802. C. They increase the size of collision domains. VLANs help minimize the incorrect configuration of VLANs so it enhances the security of the network -> . VLAN increases the size of broadcast domains but does not decrease the number of collision domains -> VLANs increase the number of broadcast domains while decreasing the size of the broadcast domains which increase the utilization of the links.passexamvce. A technician has installed SwitchB and needs to configure it for remote access from the management workstation connected to SwitchA . not by location or geography -> . They simplify switch administration. They can enhance network security.1Q) to be used. D. They increase the size of broadcast domains while decreasing the number of collision domains. E. They allow logical grouping of users by function.QUESTION 25 Which IEEE standard protocol is initiated as a result of successful DTP completion in a switch over Fast Ethernet? A.com . http://www. C.3ad 802.1Q Answer: D Explanation: Dynamic Trunking Protocol (DTP) is a Cisco proprietary protocol for negotiating trunking on a link between two devices and for negotiating the type of trunking encapsulation (802. They increase the number of broadcast domains while decreasing the size of the broadcast domains. It is also a big advantage of VLAN -> . 802. F.) A. VLANs are useful but they are more complex and need more administration -> QUESTION 27 Refer to the exhibit. QUESTION 26 Which of the following are benefits of VLANs? (Choose three. B.

254 255.0 SwitchB(config-if)# ip default-gateway 192.passexamvce.255.168.0 SwitchB(config-if)# no shutdown C. under what two scenarios can devices transmit? (Choose two.168.255.0 SwitchB(config-if)# no shutdown D. not to forward traffic sent by devices connected to the switch. In the exhibit.8.8.255.0 SwitchB(config-if)# no shutdown B.255.8. you must configure at least one default gateway.255.252 255. SwitchB(config)# ip default-gateway 192. SwitchB(config)# interface vlan 1 SwitchB(config-if)# ip address 192.168.255. For intersubnetwork communication to occur.com .168.8.168. SwitchB(config)# interface FastEthernet 0/1 SwitchB(config-if)# ip address 192.254 SwitchB(config)# interface vlan 1 SwitchB(config-if)# ip address 192. http://www.A. This default gateway is used to forward traffic originating from the switch only.168.255.255.255. E.0 SwitchB(config-if)# no shutdown E. QUESTION 28 In an Ethernet network.255. we often use VLAN 1 as the management VLAN (but in fact it is not secure). D.168.8. it must have a management IP address on a VLAN on that switch.) A.252 255.255. SwitchB(config)# ip route 192.0 SwitchB(config-if)# no shutdown Answer: C Explanation: To remote access to SwitchB. B.8. when they receive a special token when there is a carrier when they detect no other devices are sending when the medium is idle when the server grants access Get Complete Collection of 200-120 Exam's Question and Answers.168.255.8. we can recognize that the Management Workstation is in a different subnet from the SwitchB.252 255.8.252 255.255.254 255.252 255.168.254 SwitchB(config)# interface vlan 1 SwitchB(config-if)# ip address 192.0 SwitchB(config)# interface FastEthernet 0/1 SwitchB(config-if)# ip address 192.8.255. C. SwitchB(config)# ip default-network 192. Traditionally.

When there is no traffic detected. D. E. discarding listening learning forwarding disabled Answer: AD Explanation: http://www. the device continues to listen for traffic or collisions on the LAN.com .) A.com/en/US/tech/tk389/tk621/technologies_white_paper09186a0080094cfa. the signals collide and can not reach the destination. C.) A. If more than one device transmits simultaneously.) Get Complete Collection of 200-120 Exam's Question and Answers. B.cisco. show interface trunk show interface interface show ip interface brief show interface vlan show interface switchport Answer: AE QUESTION 31 Which of the following statements describe the network shown in the graphic? (Choose two. B. a device will transmit its message.shtml #states QUESTION 30 Which two commands can be used to verify a trunk link configuration status on a given Cisco switch interface? (Choose two. E. After the message is sent.passexamvce. it will wait for a specified amount of time before attempting to transmit. If a device detects another device is sending. the device returns to its default listening mode.Answer: CD Explanation: Ethernet network is a shared environment so all devices have the right to access to the medium. D. C. http://www. QUESTION 29 Which two states are the port states when RSTP has converged? (Choose two. While this transmission is occurring.

A. If more than one device transmits simultaneously. the signals collide and can not reach the destination. Answer: AF Explanation: Only router can break up broadcast domains so in the exhibit there are 2 broadcast domains: from e0 interface to the left is a broadcast domain and from e1 interface to the right is another broadcast domain ->. the device continues to listen for traffic or collisions on the LAN. E. When there is no traffic detected. C. There are seven collision domains in the network. B. B. After the message is sent. C. Get Complete Collection of 200-120 Exam's Question and Answers. D. a device will transmit its message. the device returns to its default listening mode. http://www. F. it will wait for a specified amount of time before attempting to transmit.com . While this transmission is occurring. spanning-tree uplinkfast spanning-tree mode rapid-pvst spanning-tree backbonefast spanning-tree mode mst Answer: B Explanation: Ethernet network is a shared environment so all devices have the right to access to the medium. Both router and switch can break up collision domains so there is only 1 collision domain on the left of the router (because hub doesn't break up collision domain) and there are 6 collision domains on the right of the router (1 collision domain from e1 interface to the switch + 5 collision domains for 5 PCs in Production) -> QUESTION 32 Which command enables RSTP on a switch? A. D. There are two broadcast domains in the network. If a device detects another device is sending.passexamvce. There are four broadcast domains in the network. There are six broadcast domains in the network. There are four collision domains in the network. There are five collision domains in the network.

E. Switch IP addresses must be configured in order for traffic to be forwarded between the switches. B. D. The link between the switches is configured in the wrong VLAN. Answer: B Explanation: Configuring the Native VLAN for Untagged Traffic Get Complete Collection of 200-120 Exam's Question and Answers. the connections between the switches must be configured as trunk ports. Based on the output shown. It blocks VLAN 999 traffic from passing on the trunk.com . It creates a VLAN 999 interface. D. but none of the hosts connected to SwitchA can communicate with hosts in the same VLAN connected to SwitchB. It designates VLAN 999 for untagged traffic.passexamvce. All switch ports are assigned to the correct VLANs. The link between the switches needs to be configured as a trunk. VTP is not configured to carry VLAN information between the switches. It designates VLAN 999 as the default for all unknown tagged traffic.QUESTION 33 Refer to the exhibit. C. The access link needs to be configured in multiple VLANs. QUESTION 34 What is the function of the command switchport trunk native vlan 999 on a Cisco Catalyst switch? A. http://www. B. what is the most likely problem? A. C. Answer: C Explanation: In order to pass traffic from VLANs on different switches.

QUESTION 35 Refer to the exhibit. D. Why has this switch not been elected the root bridge for VLAN1? Get Complete Collection of 200-120 Exam's Question and Answers. Broadcast addresses use an incorrect format for the switching table. http://www. Answer: C Explanation: Switches dynamically learn MAC addresses based on the source MAC addresses that it sees.A trunk port configured with 802. it will never learn the broadcast address. Broadcasts only use network layer addressing. By default. we must assume that there is a shorter path to the root bridge elsewhere.1Q tagging can receive both tagged and untagged traffic. The native VLAN is VLAN 1 by default. and since a broadcast is never the source. A broadcast frame is never forwarded by a switch. QUESTION 36 Why will a switch never learn a broadcast address? A. This switch is running RSTP while the elected designated switch is running 802. what is the reason that interface FastEthernet 0/10 is not the root port for VLAN 2? A. C. Broadcast frames are never sent to switches. Answer: C Explanation: Since the port is in the blocked status.1d Spanning Tree. C. B. This switch interface has a higher path cost to the root bridge than another in the topology. This switch has more than one interface connected to the root network segment in VLAN 2.passexamvce. A broadcast address will never be the source address of a frame. This switch has a lower bridge ID for VLAN 2 than the elected designated switch. B. Given the output shown from this Cisco Catalyst 2950. E. QUESTION 37 Refer to the exhibit.com . D. the switch forwards untagged traffic in the native VLAN configured for the port.

1 through 1001 B.passexamvce. QUESTION 39 Assuming the default switch configuration. E. It is running RSTP while the elected root bridge is running 802. D.com . It has a higher MAC address than the elected root bridge. modified. Generally.1q since it is standards based and will interoperate with other vendors.1q IGP ISL 802. QUESTION 38 Which two link protocols are used to carry multiple VLANs over a single link? (Choose two. and this switch has a bridge ID priority of 32768. It has more than one interface that is connected to the root network segment. 2 through 1001 Get Complete Collection of 200-120 Exam's Question and Answers.) A.A. C. and removed on a Cisco switch? A. VTP 802. the industry standard 802. D. most network engineers prefer to use 802. C. which VLAN range can be added. It has a higher bridge ID than the elected root bridge.1d spanning tree.1q or the Cisco proprietary ISL.3u Answer: BD Explanation: Cisco switches can use two different encapsulation types for trunks. http://www. B. which is higher than the roots priority of 20481. Answer: D Explanation: The root bridge is determined by the lowest bridge ID. B.

2 through 1005 Answer: B Explanation: VLAN 1 is the default VLAN on Cisco switch. the VLAN ID can be determined from the source MAC address and the MAC address table.Fa0/0 Switch B . Ports between switches should be configured in access mode so that VLANs can span across the ports.) A. C. QUESTION 40 Which statement about VLAN operation on Cisco Catalyst switches is true? A. F.Fa0/1 Switch C . 1 through 1002 D. When a packet is received from an 802. so incoming frames with unknown destinations are only transmitted to ports that reside in the same VLAN as the incoming frame. Unknown unicast frames are retransmitted only to the ports that belong to the same VLAN. B.C.Fa0/1 Switch B .Fa0/1 Answer: BCD Explanation: Get Complete Collection of 200-120 Exam's Question and Answers. D. modified or removed. Switch A . E. Which ports will be STP designated ports if all the links are operating at the same bandwidth? (Choose three.com . It always exists and can not be added.1Q trunk. Answer: B Explanation: Each VLAN resides in its own broadcast domain. B.passexamvce.Fa0/0 Switch C . QUESTION 41 Refer to the topology shown in the exhibit. D. Broadcast and multicast frames are retransmitted to ports that are configured on different VLAN.Fa0/0 Switch A . http://www. C. VLANs 1002-1005 are default VLANs for FDDI & Token Ring and they can't be deleted or used for Ethernet.

The three switches in the figure all have the default priority. if the costs happen to be the same. Select the root port on the non-root bridge. http://www. Next. we can find DP on each link. QUESTION 42 Refer to the exhibit. Get Complete Collection of 200-120 Exam's Question and Answers. Based on the exhibit above. the connection between the switches must be a trunk. First. so we should compare the MAC address. compare the path cost. The ports only need to be connected by a crossover cable. The smallest will be selected as the root port. The DP on the link between SwitchA and SwitchC is SwitchA'Fa0/1. How should the FastEthernet0/1 ports on the 2950 model switches that are shown in the exhibit be configured to allow connectivity between all devices? A. 3. because it has the smallest MAC address.passexamvce. SwitchX(config)# interface fastethernet 0/1 SwitchX(config-if)# switchport mode trunk SwitchX(config-if)# switchport trunk vlan 1 SwitchX(config-if)# switchport trunk vlan 10 SwitchX(config-if)# switchport trunk vlan 20 Answer: B Explanation: IN order for multiple VLANs to cross switches. then compare the BID. B. still the smallest will be selected. select the root bridge. the smallest will be selected. Bridge-id= bridge priority + MAC address. 2.This question is to check the spanning tree election problem. the individual VLANs should not be listed over that trunk interface. SwitchX(config)# interface fastethernet 0/1 SwitchX(config-if)# switchport mode access SwitchX(config-if)# switchport access vlan 1 D. First. The "switchport mode trunk" command is all that is needed. 1. which can be accomplished by comparing the bridge ID. Each link has a DP. select the Designated Port. it is easy to find that SwitchB is the root bridge. SwitchX(config)# interface fastethernet 0/1 SwitchX(config-if)# switchport mode trunk C. which can be completed through comparing root path cost.com .

which significantly reduces the convergence time after a topology change occurs in the network.A forwarding port for every LAN segment * Alternate port . C. the switch must be attached to a hub. RSTP significantly reduces topology reconverging time after a link failure. D. or forwarding. discarding.A best alternate path to the root bridge. RSTP is typically able to respond less than 10 seconds of a physical link failure. RSTP expands the STP port roles by adding the alternate and backup roles.com . learning. The alternative port moves to the forwarding state if there is a failure on the designated port for the segment. RSTP provides a faster transition to the forwarding state on point-to-point links than STP does. RSTP bridge port roles: * Root port . While STP can take 30 to 50 seconds to transit from a blocking state to a forwarding state. Answer: ABD Explanation: One big disadvantage of STP is the low convergence which is very important in switched network.QUESTION 43 Which three statements about RSTP are true? (Choose three.A backup/redundant path to a segment where another bridge port already connects. F. RSTP works by adding an alternative port and a backup port compared to STP.) A. RSTP also uses the STP proposal-agreement sequence. These ports are allowed to immediately enter the forwarding state rather than passively wait for the network to converge.1w introduced an evolution of the Spanning Tree Protocol: Rapid Spanning Tree Protocol (RSTP). E. A frame on VLAN 1 on switch S1 is sent to switch S2 where the frame is received on VLAN 2. * Backup port .Not strictly part of STP. To have two links to the same collision domain. The backup port applies only when a single switch has two links to the same segment (collision domain). a network administrator can manually disable a port QUESTION 44 Refer to the exhibit. in 2001. the IEEE with document 802. B.passexamvce. To overcome this problem. * Disabled port .A forwarding port that is the closest to the root bridge in terms of path cost * Designated port . RSTP port states are blocking. http://www. What causes this behavior? Get Complete Collection of 200-120 Exam's Question and Answers. RSTP uses the same timer-based process as STP on point-to-point links. This path is different than using the root port.

C.A.com . D.passexamvce. http://www. data link Get Complete Collection of 200-120 Exam's Question and Answers. QUESTION 45 At which layer of the OSI model is RSTP used to prevent loops? A. the native VLANs are different so although S1 will tag it as VLAN 1 it will be received by S2. B. physical B. trunk mode mismatches allowing only VLAN 2 on the destination native VLAN mismatches VLANs that do not correspond to a unique IP subnet Answer: C Explanation: Untagged frames are encapsulated with the native VLAN. In this case.

network D.com . F. If the address is unknown. the switch looks at the destination hardware address and finds the interface if it is in its MAC address table. QUESTION 47 Refer to the exhibit.C. C. Which statement is true? Get Complete Collection of 200-120 Exam's Question and Answers. One of the most important fields in BPDUs is the Bridge Priority in which the MAC address is used to elect the Root Bridge -> RSTP operates at Layer 2 ?Data Link layer -> .passexamvce. transport Answer: B Explanation: RSTP and STP operate on switches and are based on the exchange of Bridge Protocol Data Units (BPDUs) between switches. the frame is broadcast on all interfaces except the one it was received on. E. http://www. QUESTION 46 What does a Layer 2 switch use to decide where to forward a received frame? A. source MAC address source IP address source switch port destination IP address destination port address destination MAC address Answer: F Explanation: When a frame is received. D. B.

596d. B. SwitchA has one Root port and 1 Alternative port so it is not the root bridge.1580 is the MAC address of this switch. project teams. Traceroute is used to verify the Get Complete Collection of 200-120 Exam's Question and Answers. added security dedicated bandwidth provides segmentation allows switches to route traffic between subinterfaces contains collisions Answer: AC Explanation: A VLAN is a switched network that is logically segmented on an organizational basis.596d. by functions. D. By containing traffic originating on a particular LAN only to other LANs in the same VLAN. QUESTION 48 Which two benefits are provided by creating VLANs? (Choose two. The Fa0/11 role confirms that SwitchA is the root bridge for VLAN 20. VLAN 20 is running the Per VLAN Spanning Tree Protocol. D. not of the root bridge. E.A. C.596d. pingaddress tracertaddress tracerouteaddress arpaddress Answer: A Explanation: ICMP pings are used to verify connectivity between two IP hosts. The technology logically segments the network into separate Layer 2 broadcast domains whereby packets are switched between ports designated to be within the same VLAN. B. Security: VLANs also improve security by isolating groups.2a00 -> All of the interface roles of the root bridge are designated. Fa0/11 is the root port so we can confirm this switch is not the root bridge -> From the output we learn this switch is running Rapid STP. and no users outside that VLAN can communicate with them LAN Segmentation VLANs allow logical network topologies to overlay the physical switched infrastructure such that any arbitrary collection of LAN ports can be combined into an autonomous user group or community of interest. SwitchA is not the root bridge.passexamvce. QUESTION 49 Which command can be used from a PC to verify the connectivity between hosts that connect through a switch in the same LAN? A. or applications rather than on a physical or geographical basis. switched virtual networks avoid wasting bandwidth. B. C. C. Answer: D Explanation: Only non-root bridge can have root port. The MAC address of the root bridge is 0017.) A.1580. possible on the same physical segment. D. The MAC address of the root bridge is 0017. http://www.com . because not all of the interface roles are designated. not PVST -> 0017. High-security users can be grouped into a VLAN.

split horizon routing loops. C. QUESTION 50 Based on the network shown in the graphic. http://www. Which option contains both the potential networking problem and the protocol or setting that should be used to prevent the problem? A. split horizon switching loops. F. VTP routing loops.passexamvce.) Get Complete Collection of 200-120 Exam's Question and Answers. E.router hop path traffic will take but in this case since the hosts are in the same LAN there will be no router hops involved.1D IEEE algorithm by exchanging BPDU messages with other switches to detect loops. QUESTION 51 Refer to the exhibit. routing loops. and then removes the loop by shutting down selected bridge interfaces. STP Answer: F Explanation: The Spanning-Tree Protocol (STP) prevents loops from being formed when switches or bridges are interconnected via multiple paths. B. Which two statements are true about interVLAN routing in the topology that is shown in the exhibit? (Choose two. hold down timers switching loops. STP switching loops. This algorithm guarantees that there is one and only one active path between two network devices.com . D. Spanning-Tree Protocol implements the 802.

Answer: DF QUESTION 52 Which two of these are characteristics of the 802. C. Which three of these show the correct RSTP port roles for the indicated switches and interfaces? (Choose three.) Get Complete Collection of 200-120 Exam's Question and Answers. Router1 will not play a role in communications between host A and host D The FastEthernet 0/0 interface on Router1 must be configured with subinterfaces. E. as well as being configured to run RSTP. Non-marked frame carries no VLAN identification information. http://www. It is a Layer 2 messaging protocol which maintains VLAN configurations across networks. Router1 needs more LAN interfaces to accommodate the VLANs that are shown in the exhibit.1Q is a standardized relay method that inserts 4 bytes field into the original Ethernet frame and re-calculate the FCS.3 frame header. It includes an 8-bit field which specifies the priority of a frame.) A.1Q protocol. Answer: BE Explanation: 802. D. The FastEthernet 0/0 interface on Router1 and the FastEthernet 0/1 interface on Switch2 trunk ports must be configured using the same encapsulation type. It is used exclusively for tagging VLAN frames and does not address network reconvergence following switched network topology changes. B. D. It is a trunking protocol capable of carrying untagged frames. Host E and host F use the same IP gateway address. E.passexamvce. Each of these four switches has been configured with a hostname.A.com . and thus requires that the FCS be recomputed. or Virtual Bridged Local Area Networks protocol. It modifies the 802. B. QUESTION 53 Refer to the exhibit.1Q frame relay supports two types of frame: marked and non-marked. No other configuration changes have been made. F. C. Router1 and Switch2 should be connected via a crossover cable. mainly stipulates the realization of the VLAN.1Q protocol? (Choose two. 802. 802.

root SwitchD. Because SwitchC is the root bridge so the 2 ports nearest SwitchC on SwitchA (Fa0/1) and SwitchD (Gi0/2) will be root ports.. designated SwitchC. Now we come to the most difficult part of this question: SwitchB must have a root port so which port will it choose? To answer this question we need to know about STP cost and port cost. SwitchA. Fa0/2. Gi0/2. C.passexamvce. F.A. Gi0/2.com . B. Switch C has lowest MAC address so it will become root bridge and 2 of its ports (Fa0/1 & Fa0/2) will be designated ports. http://www. In general. the lower the value of its cost. "cost" is calculated based on bandwidth of the link. D. root SwitchB. root SwitchB. This can be calculated from the "cost to the root bridge" of each switch because a switch always advertises its cost to the root bridge in its BPDU. Get Complete Collection of 200-120 Exam's Question and Answers. Below are the cost values you should memorize: SwitchB will choose the interface with lower cost to the root bridge as the root port so we must calculate the cost on interface Gi0/1 & Gi0/2 of SwitchB to the root bridge. Gi0/1. E. root Answer: ABF Explanation: The question says "no other configuration changes have been made" so we can understand these switches have the same bridge priority. The receiving switch will add its local port cost value to the cost in the BPDU. The higher the bandwidth on a link. designated SwitchA. Fa0/2. Fa0/1.

It is rather easy as the MAC address of SwitchA is lower than that of SwitchB so Fa0/2 of SwitchA will be designated port while Gi0/2 of SwitchB will be alternative port. Below summaries all the port roles of these switches: Get Complete Collection of 200-120 Exam's Question and Answers. http://www. SwitchB adds another 4 and learns that it can reach SwitchC via Gi0/1 port with a total cost of 8. The same process happens for SwitchA and SwitchB learns that it can reach SwitchC via Gi0/2 with a total cost of 23 -> Switch B chooses Gi0/1 as its root port -> Now our last task is to identify the port roles of the ports between SwitchA & SwitchB.One more thing to notice is that a root bridge always advertises the cost to the root bridge (itself) with an initial value of 0.com . Switch D adds 4 (the cost value of 1Gbps link) and advertises this value (4) to SwitchB. Now let's have a look at the topology again SwitchC advertises its cost to the root bridge with a value of 0.passexamvce.

to provide optimized bandwidth usage.cisco. Each instance of PVST+ on a VLAN has a single root switch. PVST+ allows the root switch location to be optimized per VLAN.passexamvce.+ DP: Designated Port (forwarding state) + RP: Root Port (forwarding state) QUESTION 54 What is one benefit of PVST+? A. host A is unavailable.com/en/US/docs/switches/lan/catalyst3750x_3560x/software/release/12. However. The administrator's attempt to telnet to the switch from host B fails. The network administrator normally establishes a Telnet session with the switch from host A . Answer: C Explanation: The PVST+ provides Layer 2 load-balancing for the VLAN on which it runs. PVST+ supports Layer 3 load balancing without loops.com . this process ensures that the network topology is maintained and optimized per VLAN. PVST+ reduces the CPU cycles for all the switches in the network. C.html QUESTION 55 Refer to the exhibit. http://www. B.2_55_s e/configuration/guide/swstp. You can create different logical topologies by using the VLANs on your network to ensure that all of your links are used but that no one link is oversubscribed. What is the issue? Get Complete Collection of 200-120 Exam's Question and Answers. Because each switch has the same information about the network. PVST+ automatically selects the root bridge location. http://www. D. but pings to the other two hosts are successful. This root switch propagates the spanning-tree information associated with that VLAN to all other switches in the network.

B. E. transparent auto on desirable blocking forwarding Answer: BCD QUESTION 57 Refer to the exhibit. Host B needs to be assigned an IP address in VLAN 1. C. E. C. Answer: D Explanation: Ping was successful form host B to other hosts because of intervlan routing configured on router. http://www. But to manage switch via telnet the VLAN32 on the switch needs to be configured interface vlan32 along with ip address and its appropriate default-gateway address.) A. Since VLAN1 interface is already configure on switch Host A was able to telnet switch.A. QUESTION 56 Which are valid modes for a switch port used as a VLAN trunk? (Choose three. F. The switch interfaces need the appropriate IP addresses assigned. Which switch provides the spanning-tree designated port role for the network segment that services the printers? Get Complete Collection of 200-120 Exam's Question and Answers. Host B and the switch need to be in the same subnet. B. D. D. The switch interface connected to the router is down.com .passexamvce. The switch needs an appropriate default gateway assigned.

A.
B.
C.
D.

Switch1
Switch2
Switch3
Switch4

Answer: C
Explanation:
Printers are connected by hubs. Decide the switch that provides the spanning-tree designated
port role between Switch3 and Switch4. They have the same priority 32768. Compare their MAC
addresses. Switch3 with a smaller MAC address will provide a designated port for printers.

QUESTION 58
Refer to Exhibit. How many broadcast domains are shown in the graphic assuming only the
default VLAN is configured on the switches?

A. one

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

B. two
C. six
D. twelve
Answer: A
Explanation:
Only router can break up broadcast domains but in this exhibit no router is used so there is only 1
broadcast domain.
For your information, there are 7 collision domains in this exhibit (6 collision domains between
hubs & switches + 1 collision between the two switches).

QUESTION 59
Which three of these statements regarding 802.1Q trunking are correct? (Choose three.)
A.
B.
C.
D.
E.

802.1Q native VLAN frames are untagged by default.
802.1Q trunking ports can also be secure ports.
802.1Q trunks can use 10 Mb/s Ethernet interfaces.
802.1Q trunks require full-duplex, point-to-point connectivity.
802.1Q trunks should have native VLANs that are the same at both ends.

Answer: ACE
Explanation:
By default, 802.1Q trunk defined Native VLAN in order to forward unmarked frame. Switches can
forward Layer 2 frame from Native VLAN on unmarked trunks port. Receiver switches will
transmit all unmarked packets to Native VLAN. Native VLAN is the default VLAN configuration of
port. Note for the 802.1Q trunk ports between two devices, the same Native VLAN configuration
is required on both sides of the link. If the Native VLAN in 802.1Q trunk ports on same trunk link
is properly configured, it could lead to layer 2 loops. The 802.1Q trunk link transmits VLAN
information through Ethernet.

QUESTION 60
Refer to the exhibit. The output that is shown is generated at a switch. Which three statements
are true? (Choose three.)

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

A.
B.
C.
D.
E.
F.

All ports will be in a state of discarding, learning, or forwarding.
Thirty VLANs have been configured on this switch.
The bridge priority is lower than the default value for spanning tree.
All interfaces that are shown are on shared media.
All designated ports are in a forwarding state.
This switch must be the root bridge for all VLANs on this switch.

Answer: ACE
Explanation:
From the output, we see that all ports are in Designated role (forwarding state). The command
"show spanning-tree vlan 30 only shows us information about VLAN 30. We don't know how
many VLAN exists in this switch ->
The bridge priority of this switch is 24606 which is lower than the default value bridge priority
32768 -> .
All three interfaces on this switch have the connection type "p2p", which means Point-to-point
environment ?not a shared media >;
The only thing we can specify is this switch is the root bridge for VLAN 3o but we can not
guarantee it is also the root bridge for other VLANs ->

QUESTION 61
Refer to the exhibit. At the end of an RSTP election process, which access layer switch port will
assume the discarding role?

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

A.
B.
C.
D.
E.
F.

Switch3, port fa0/1
Switch3, port fa0/12
Switch4, port fa0/11
Switch4, port fa0/2
Switch3, port Gi0/1
Switch3, port Gi0/2

Answer: C
Explanation:
In this question, we only care about the Access Layer switches (Switch3 & 4). Switch 3 has a
lower bridge ID than Switch 4 (because the MAC of Switch3 is smaller than that of Switch4) so
both ports of Switch3 will be in forwarding state. The alternative port will surely belong to Switch4.
Switch4 will need to block one of its ports to avoid a bridging loop between the two switches. But
how does Switch4 select its blocked port? Well, the answer is based on the BPDUs it receives
from Switch3. A BPDU is superior than another if it has:
1. A lower Root Bridge ID
2. A lower path cost to the Root
3. A lower Sending Bridge ID
4. A lower Sending Port ID
These four parameters are examined in order. In this specific case, all the BPDUs sent by
Switch3 have the same Root Bridge ID, the same path cost to the Root and the same Sending
Bridge ID. The only parameter left to select the best one is the Sending Port ID (Port ID = port
priority + port index). In this case the port priorities are equal because they use the default value,
so Switch4 will compare port index values, which are unique to each port on the switch, and
because Fa0/12 is inferior to Fa0/1, Switch4 will select the port connected with Fa0/1 (of Switch3)
as its root port and block the other port -> Port fa0/11 of Switch4 will be blocked (discarding role).

QUESTION 62
Which term describes a spanning-tree network that has all switch ports in either the blocking or
fowarding state?
A.
B.
C.
D.

converged
redundant
provisioned
spanned

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

com . not revolution.1W. B. D. C.Answer: A Explanation: Spanning Tree Protocol convergence (Layer 2 convergence) happens when bridges and switches have transitioned to either the forwarding or blocking state.1D standard evolution. RSTP is 802. E.1D STP. rapid spanning tree protocol (IEEE802. RSTP defines new port roles.1D STP. but also defines status of 3 ports: discarding status. http://www. E. Answer: BE Explanation: When network topology changes. It retains most of the parameters. referred to as RSTP) will speed up significantly the speed to re-calculate spanning tree. Which two statements are true of the interfaces on Switch1? (Choose two. transparent auto on desirable client forwarding Answer: BCD QUESTION 64 Which two of these statements regarding RSTP are correct? (Choose two.) A. D. QUESTION 63 What are the possible trunking modes for a switch port? (Choose three. Designated and Non-Designated) in all switches are selected. RSTP cannot operate with PVST+. B. C.) Get Complete Collection of 200-120 Exam's Question and Answers. QUESTION 65 Refer to the exhibit. RSTP not only defines the role of other ports: alternative port and backup port. and makes no changes. RSTP is a proprietary implementation of IEEE 802. F. root bridge is elected and all port roles (Root. When layer 2 is converged. learning status.) A. RSTP is compatible with the original IEEE 802. RSTP defines no new port states. forwarding status.passexamvce.

FastEthernet0/1 is configured as a trunk link. and these MAC are in different VLAN. E. Thus we know that Fa0/5 is connected to a Hub. FastEthernet0/1 is connected to a host with multiple network interface cards. there are multiple MAC addresses from different VLANs attached to the FastEthernet 0/1 interface. Based on the output shown. From this we know that Fa0/1 is the trunk interface. F. C. QUESTION 66 Three switches are connected to one another via trunk ports. B. FastEthernet0/5 has statically assigned MAC addresses. http://www. A hub is connected directly to FastEthernet0/5. seven MAC addresses correspond to Fa0/1. F0/5 corresponds to two MAC addresses in the same VLAN. Fa0/1 is connected to Switch2. Answer: BE Explanation: Carefully observe the information given after command show. Multiple devices are connected directly to FastEthernet0/1.A. Interface FastEthernet0/2 has been disabled. Only trunks are able to pass information from devices in multiple VLANs. However.passexamvce.com . From the information given by show cdp neighbors we find that there is no Fa0/5 in CDP neighbor. Assuming the default switch Get Complete Collection of 200-120 Exam's Question and Answers. D.

which switch is elected as the root bridge for the spanning-tree instance of VLAN 1? A. E.configuration. if a Cisco switch has the default priority value of 32. http://www. D. VLANs utilize packet filtering to enhance network security.ciscopress. the switch with the highest MAC address the switch with the lowest MAC address the switch with the highest IP address the switch with the lowest IP address Answer: B Explanation: Each switch in your network will have a Bridge ID Priority value.) A. VLANs provide a low-latency internetworking alternative to routed networks. For example. VLANs establish broadcast domains in switched networks. Answer: AEF Explanation: VLAN technology is often used in practice. VLANs allow access to network services based on department. E. reduces routing table entries auto-negotiation of media rates efficient utilization of MAC addresses dedicated communications between devices ease of management and troubleshooting Answer: AE Explanation: Here are some of the benefits of hierarchical addressing: Reference: http://www. Therefore.com/articles/article.768 and a MAC address of 1122-33-44-55-66. The lowest BID will win the election process. because it can better control layer2 broadcast to improve network security. or changing hosts on the network. if the switch priority is left at the default.asp?p=174107 QUESTION 69 What is the alternative notation for the IPv6 address Get Complete Collection of 200-120 Exam's Question and Answers. not physical location. B. Packet filtering is a function of firewall instead of VLAN. C.) A. QUESTION 68 Which two benefits are provided by using a hierarchical addressing network addressing scheme? (Choose two. D.passexamvce. moving.com . This BID is a combination of a default priority value and the switch's MAC address. This makes network more flexible and scalable. the BID would be 32768:11-22-33-44-55-66. the MAC address is the deciding factor in the root bridge election. with the priority value listed first. C. C. D. B. F. B. QUESTION 67 What are three advantages of VLANs? (Choose three. VLANs can greatly simplify adding. VLANs provide a method of conserving IP addresses in large networks. more commonly referred to as a BID.

Which statements describe the addressing scheme that is in use in the network? (Choose three.1. C.255.192.com . B.16. The subnet mask in use is 255. QUESTION 71 Get Complete Collection of 200-120 Exam's Question and Answers. D.205 can be assigned to hosts in VLAN1 The LAN interface of the router is configured with one IP address.1. Answer: BCF Explanation: The subnet mask in use is 255.25 can be assigned to hosts in VLAN1: The usable host range in this subnet is 172.128. F.255.16.255. which is needed.) A.1-172. The IP address 172.255. the extra 0's can only be compressed once. E.126 The LAN interface of the router is configured with multiple IP addresses: The router will need 2 subinterfaces for the single physical interface. http://www.1. D. one with an IP address that belongs in each VLAN.16. QUESTION 70 Refer to the diagram.255. All hosts have connectivity with one another. B. It is important to note that the double colon (::) can only be used once within a single IPv6 address notation. The IP address 172. C. The subnet mask in use is 255.16. So. B514 : 82C3 : 0029 : EC7A : EC72 B514 : 82C3 :: 0029 : EC7A : EC72 B514 : 82C3 : 0029 :: EC7A : 0000 : EC72 B514 : 82C3 :: 0029 : EC7A : 0 : EC72 Answer: D Explanation: There are two ways that an IPv6 address can be additionally compressed: compressing leading zeros and substituting a group of consecutive zeros with a single double colon (::).passexamvce.128: This is subnet mask will support up to 126 hosts.B514:82C3:0000:0000:0029:EC7A:0000:EC72? A.1. Both of these can be used in any number of combinations to notate the same address.16.25 can be assigned to hosts in VLAN1 The IP address 172.1.255. The LAN interface of the router is configured with multiple IP addresses.

248 Default Gateway: 192.168.254 Subnet Mask: 255. IP address: 192.20.passexamvce.255. E.30 Subnet Mask: 255. IP address: 192.14 Subnet Mask: 255. F. no broadcast change of source address in the IPv6 header change of destination address in the IPv6 header Telnet access does not require a password autoconfiguration NAT Answer: AE Explanation: IPv6 does not use broadcasts. Which of the following should be entered into the IP properties box for the sales server? A. B. C. D. For network 192. IP address: 192. then that is the only allowable address for the interface. and autoconfiguration is a feature of IPV6 that allows for hosts to automatically obtain an IPv6 address. E.20. Link-local addresses start with FF00::/10.Which two statements describe characteristics of IPv6 unicast addressing? (Choose two. What are two valid reasons for adopting IPv6 over IPv4? (Choose two.9 B. Link-local addresses start with FE00:/12. Global addresses start with 2000::/3. http://www. Answer: AD Explanation: Below is the list of common kinds of IPv6 addresses: QUESTION 72 The network administrator has been asked to give reasons for moving from IPv4 to IPv6.20.255.20.255.168. D.20.24/29.168. B.20.168.) A.255.) A.255. C.1 C. There is only one loopback address and it is ::1.255.20.248 Default Gateway: 192.com .168. the router is assigned the first usable host address while the sales server is given the last usable host address. QUESTION 73 An administrator must assign static IP addresses to the servers in a network.25 Get Complete Collection of 200-120 Exam's Question and Answers.0 Default Gateway: 192. If a global address is assigned to an interface.168.168.

D. D. QUESTION 75 How many bits are contained in each field of an IPv6 address? A. QUESTION 76 What are three approaches that are used when migrating from an IPv4 addressing scheme to an IPv6 scheme.240 Default Gateway: 192.D.168. B.224 255. 0.255. D.20.168.168. B.passexamvce.20.240 Default Gateway: 192.24.168.20. An example of an IPv6 address is 2001:0db8:85a3:0000:0000:8a2e:0370:7334.30 Subnet Mask: 255. each group representing 16 bits (two octets).255. E.255.30 Subnet Mask: 255. http://www.20.255.0.255. 24 4 8 16 Answer: D Explanation: An IPv6 address is represented as eight groups of four hexadecimal digits.255. The groups are separated by colons (:).255.17 E.168. a mask of 255.com . IP address: 192. C.255. IP address: 192.168.25 (router) ?192. (Choose three.24/29 network.252 255. E.224 will allow for up to 8 networks with 32 IP addresses each (30 usable).30 (used for the sales server).255.0 255. with each LAN containing 5 to 26 hosts? A. B. C. the usable hosts are 192.255.) A.25 Answer: C Explanation: For the 192.20. C.255. enable dual-stack routing configure IPv6 directly configure IPv4 tunnels between IPv6 islands use proxying and translation to translate IPv6 packets into IPv4 packets statically map IPv4 addresses to IPv6 addresses Get Complete Collection of 200-120 Exam's Question and Answers.255.255.0.240 255.168.24. QUESTION 74 Which subnet mask would be appropriate for a network address range to be subnetted for up to eight LANs.240 Answer: D Explanation: For a class C network.255.

64. F.64. In this VLSM addressing scheme. QUESTION 78 How is an EUI-64 format interface ID created from a 48-bit MAC address? Get Complete Collection of 200-120 Exam's Question and Answers.0 /24 172.16. 172.passexamvce. Dual stack uses a combination of both native IPv4 and IPv6.0/18.16.F.32.0.16.16.128. and dual stack. http://www. what summary address would be sent from router A? A.0/24 and 172.0. D. translators. Tunnels are used to carry one protocol inside another.16. QUESTION 77 Refer to the exhibit. With dual stack.0/18. devices are able to run IPv4 and IPv6 together and if IPv6 communication is possible that is the preferred protocol. C.0 /16 Answer: A Explanation: Router A receives 3 subnets: 172. B or .0.0.0.com . All these 3 subnets have the same form of 172. -> Only answer A has these 2 conditions -> .32. while translators simply translate IPv6 packets into IPv4 packets.0 /17 172.0 /20 172.0.16. 172.0 /16 172.32. B.x so our summarized subnet must be also in that form -> Only A. The smallest subnet mask of these 3 subnets is /18 so our summarized subnet must also have its subnet mask equal or smaller than /18. use DHCPv6 to map IPv4 addresses to IPv6 addresses Answer: ACD Explanation: Several methods are used terms of migration including tunneling.0 /16 172. Hosts can simultaneously reach IPv4 and IPv6 content.16.x. E.

255.4.1. C. B.4.0. D.0/22 subnet encompasses all routes from the IP range 172.1. 172.0 ?172.0/24 172.4.128/25 172.7.1.7.0/22 172.0/22 172.com . 172.0/24 172. QUESTION 80 Which option is a valid IPv6 address? A.0/24 172.1.1.0. What is the most efficient summarization that R1 can use to advertise its networks to R2? A.0/24 Answer: C Explanation: The 172.0/24 E.1. B.4. E.1.1.1.6. by appending 0xFF to the MAC address by prefixing the MAC address with 0xFFEE by prefixing the MAC address with 0xFF and appending 0xFF to it by inserting 0xFFFE between the upper three bytes and the lower three bytes of the MAC address by prefixing the MAC address with 0xF and inserting 0xF after each of its first three bytes Answer: D Explanation: The modified EUI-64 format interface identifier is derived from the 48-bit link-layer (MAC) address by inserting the hexadecimal number FFFE between the upper three bytes (OUI field) and the lower three bytes (serial number) of the link layer address.5.4.6.1.4. QUESTION 79 Refer to the exhibit. C. http://www.7.5.1. 2002:7654:A1AD:61:81AF:CCC1 Get Complete Collection of 200-120 Exam's Question and Answers.0/25 172.A.1.1. D. 2001:0000:130F::099a::12a B.0/21 172.0/24 172.1.0/24 172.1.passexamvce.

255.C. Working with only one Class B address. An example of an IPv6 address is 2001:0db8:85a3:0000:0000:8a2e:0370:7334. B. FEC0:ABCD:WXYZ:0067::2A4 D. D. C. Anycast is designed to send a packet to the nearest interface that is apart of that anycast group. The sender creates a packet and forwards the packet to the anycast address as the destination address which goes to the nearest router. F.) A.255. E.255. C. F. QUESTION 82 A national retail chain needs to design an IP addressing scheme to support a nationwide network.255. However in a LAN setting the nearest interface is found depending on the order the neighbors were learned. E. each group representing 16 bits (two octets).192 255. 2004:1:25A4:886F::1 Answer: D Explanation: An IPv6 address is represented as eight groups of four hexadecimal digits. but this can only be done once in an IP address.224 255.248.0 255.com .255.252. The company needs a minimum of 300 sub-networks and a maximum of 50 host addresses per subnet. These IPv6 addresses are global addresses.0 Answer: BE Explanation: Subnetting is used to break the network into smaller more efficient subnets to prevent excessive rates of Ethernet packet collision in a large network. Routers are used to manage traffic and constitute borders between subnets.passexamvce.128 255.0 255.) A. one-to-many communication model one-to-nearest communication model any-to-many communication model a unique IPv6 address for each device in the group the same address for multiple devices in the group delivery of packets to the group interface that is closest to the sending device Answer: BEF Explanation: A new address type made specifically for IPv6 is called the Anycast Address. these addresses can be assigned to more than one interface unlike an IPv6 unicast address. The groups are separated by colons (:). B.255. QUESTION 81 Which three are characteristics of an IPv6 anycast address? (Choose three. 255.255.255. The leading 0's in a group can be collapsed using ::. A routing prefix is the sequence of leading bits of an IP address that precede the portion of the Get Complete Collection of 200-120 Exam's Question and Answers. which of the following subnet masks will support an appropriate addressing scheme? (Choose two.255. The nearest router or interface is found by using the metric of a routing protocol currently running on the network. D.255. with the organization's network address space (see also Autonomous System) partitioned into a tree-like structure. Such subnets can be arranged hierarchically. http://www. The anycast packet in a LAN setting forwards the packet to the neighbor it learned about first.

255. E.190 Answer: ACF QUESTION 84 Which IPv6 address is the all-router multicast group? A. http://www. the routing prefix is often expressed as a "subnet mask".1.0 is the subnet mask for the 192.1.168.79 host A IP address: 192.1. Which three values could be used for the configuration of these hosts? (Choose three. host A IP address: 192. A network administrator is adding two new hosts to Switch A . In IPv4 networks.address used as host identifier.0 network with a 24-bit routing prefix (192.1. FF02::1 FF02::2 FF02::3 FF02::4 Answer: B Explanation: Well-known IPv6 multicast addresses: Address Description ff02::1 All nodes on the local network segment Get Complete Collection of 200-120 Exam's Question and Answers.1.168. F. An IPv4 subnet mask is frequently expressed in quad-dotted decimal representation.129 host B IP address: 192.168.) A. C.128 host B default gateway: 192.78 host B IP address: 192.168.168.passexamvce.. QUESTION 83 Refer to the exhibit. e.168. C. B. which is a bit mask covering the number of bits used in the prefix.1.1. D.64 host A default gateway: 192. B.168.1.0/24).168.com . 255. D.g.255.

Which address range efficiently summarizes the routing table of the addresses for router Main? A. The leading 0's in a group can be collapsed using ::.0 and does it more efficiently than the /16 and /18 subnets.16./16 172.16.0.0.0. B.com .0.ff02::2 All routers on the local network segment QUESTION 85 Refer to the exhibit.16. The /21 subnet will not include all the other subnets in this one single summarized address. The groups are separated by colons (:).passexamvce.0 172. QUESTION 86 Which IPv6 address is valid? A. http://www./20 network is the best option as it includes all networks from 172.16./20 172. 2001:0db8:0000:130F:0000:0000:08GC:140B 2001:0db8:0:130H::87C:140B 2031::130F::9C0:876A:130B 2031:0:130F::9C0:876A:130B Answer: D Explanation: An IPv6 address is represented as eight groups of four hexadecimal digits. C. B.0.16.0. C.0. QUESTION 87 Which command can you use to manually assign a static IPv6 address to a router interface? Get Complete Collection of 200-120 Exam's Question and Answers.0.16.16.0/18 Answer: B Explanation: The 172./21 172. each group representing 16 bits (two octets).0. D. 172.0. An example of an IPv6 address is 2001:0db8:85a3:0000:0000:8a2e:0370:7334. but this can only be done once in an IP address. D.16.

10.10. The network used for point-to-point connection should be /30. FE80::380e:611a:e14f:3d69 FE81::280f:512b:e14f:3d69 FEFE:0345:5f1b::e14d:3d69 FE08::280e:611:a:f14f:3d69 Answer: A Explanation: In the Internet Protocol Version 6 (IPv6). the address block fe80::/10 has been reserved for linklocal unicast addressing. QUESTION 88 Which of these represents an IPv6 link-local address? A. They may be assigned by automatic (stateless) or stateful (e. It is now ready to find and load an IOS image.255.255.0.10. 10. D.252 10.0000 0000 /30 = 1111 1111.0. Which IP addressing scheme defines the address range and subnet mask that meet the requirement and waste the fewest subnet and host addresses? A. D.1111 1100 (borrow 7 bits) QUESTION 90 A Cisco router is booting and has just completed the POST process.255. E.passexamvce.0/18 subnetted with mask 255.0/25 subnetted with mask 255. C.255.10. B. What function does the router perform next? Get Complete Collection of 200-120 Exam's Question and Answers. D.252 10.255.com .0.252 10.0/24 subnetted with mask 255.252 Answer: D Explanation: We need 113 point-to-point links which equal to 113 sub-networks < 128 so we need to borrow 7 bits (because 2^7 = 128).1.0/23 subnetted with mask 255. QUESTION 89 The network administrator is asked to configure 113 point-to-point links.10.255.1.255.0/23 is the correct answer.1111 1111. manual) mechanisms. B. So our initial network should be 30 ?7 = 23. C. The actual link local addresses are assigned with the prefix fe80::/64. use the "ipv6 address" command and specify the IP address you wish to use.A.255. C.255. ipv6 autoconfig 2001:db8:2222:7272::72/64 ipv6 address 2001:db8:2222:7272::72/64 ipv6 address PREFIX_1 ::1/64 ipv6 autoconfig Answer: B Explanation: To assign an IPv6 address to an interface. http://www.252 10.g. So 10. You can understand it more clearly when writing it in binary form: /23 = 1111 1111.10.255.0/16 subnetted with mask 255.0.1111 1110. B.

Bootstrap starts IOS load .com .Check configuration registerto see what mode the router should boot up in (usually 0x2102 to read startup-config in NVRAM / or 0x2142 to start in "setup-mode") . Hence . What is the meaning of the output MTU 1500 bytes? A. C. What is needed to allow communication between the VLANs? A. D. QUESTION 92 On a corporate network. http://www.load IOS from Flash. It checks the configuration register. a router with subinterfaces configured on the physical interface that is connected to the switch a router with an IP address on the physical interface connected to the switch a switch with an access link that is configured between the switches a switch with a trunk link that is configured between the switches Answer: A Explanation: Different VLANs can't communicate with each other .Router does POST . it is needed to connect a router to a switch . The minimum segment size that can traverse this interface is 1500 bytes. B. The maximum segment size that can traverse this interface is 1500 bytes. It inspects the configuration file in NVRAM for boot instructions. Answer: E Explanation: The Maximum Transmission Unit (MTU) defines the maximum Layer 3 packet (in bytes) that the layer can pass onwards. C. C. The maximum packet size that can traverse this interface is 1500 bytes. D. then make the sub-interface Get Complete Collection of 200-120 Exam's Question and Answers. Answer: A Explanation: Default (normal) Boot SequencePower on Router . It loads the first image file in flash memory. they can communicate with the help of Layer3 router. The maximum number of bytes that can traverse this interface per second is 1500. The minimum packet size that can traverse this interface is 1500 bytes. F. hosts on the same VLAN can communicate with each other. E.A.passexamvce. but they are unable to communicate with hosts on different VLANs.check the startup-config file in NVRAM for boot-system commands . B. It attempts to boot from a TFTP server. QUESTION 91 Refer to the exhibit. The maximum frame size that can traverse this interface is 1500 bytes. B. D.

x.x.x y.1 RouterA(config-subif)#encapsulation ? dot1Q IEEE 802. you need to use VLAN trunking between the switches. C.com . establishing Trunking links to achieve communications of devices which belong to different VLANs. The attached devices are unaware of any VLAN structure. show protocols show process show system show version Answer: B Explanation: The "show process" (in fact.y. D. the full command is "show processes") command gives us lots of information about each process but in fact it is not easy to read.1Q Virtual LAN RouterA(config-subif)#encapsulation dot1Q or isl VLAN ID RouterA(config-subif)# ip address x. Get Complete Collection of 200-120 Exam's Question and Answers. When using VLANs in networks that have multiple interconnected switches.y. With VLAN trunking. Below shows the output of this command (some next pages are omitted) A more friendly way to check the CPU utilization is the command "show processes cpu history". By default. End user devices connect to switch ports that provide simple connectivity to a single VLAN each. B. only hosts that are members of the same VLAN can communicate. http://www.passexamvce. To change this and allow inter-VLAN communication. you need a router or a layer 3 switch. Here is the example of configuring the router for inter-vlan communication RouterA(config)#int f0/0.on the router to connect to the switch. the switches tag each frame sent between switches so that the receiving switch knows to what VLAN the frame belongs.y QUESTION 93 Which command displays CPU utilization? A.

one hour. and 72 hours are clearly shown: + The Y-axis of the graph is the CPU utilization. Get Complete Collection of 200-120 Exam's Question and Answers. QUESTION 94 What two things will a router do when running a distance vector routing protocol? (Choose two. Use the shortest-path algorithm to the determine best path.) A. from the last graph (last 72 hours) we learn that the highest CPU utilization within 72 hours is 37% about six hours ago. Send entire routing table to all routers in the routing domain. Send periodic updates regardless of topology changes. B.+ The X-axis of the graph is the increment within the period displayed in the graph For example. C. http://www.in which the total CPU usage on the router over a period of time: one minute.passexamvce.com .

1 111.111. In distance vector routing protocols.133.2.133.133.2. Answer: AD Explanation: Distance means how far and Vector means in which direction.133 133. R2#show ip ospf database OSPF Router with ID (2.4 776 0x80000004 0x005643 1111.111.2.4. http://www.4 10.2 793 0x80000003 0x004F85 210. The routing updates proceed step by step from router to router.3 133. E.D.4.111.2) (Process ID 1) Router Link States (Area 0) Link ID ADV Router Age Seq# Checksum Link count2.133 812 0x80000001 0x004BA910.2.4.133 775 0x80000005 0x00B5B1 2 Net Link States (Area 0) Link ID ADV Router Age Seq# Checksum10.111. C. B. C.4. Distance Vector routing protocols pass periodic copies of routing table to neighbor routers and accumulate distance vectors. D.com .4. What is the maximum size of an IOS file that could be loaded if the original IOS is also kept in flash? A.111 755 0x80000001 0x007F1610.111.111 111. routers discover the best path to destination from each neighbor.111. 3 MB 4 MB 5 MB 7 MB 8 MB Get Complete Collection of 200-120 Exam's Question and Answers.2.2 2.133. The technician wants to upload a new IOS in the router while keeping the existing IOS.2. E.2.133.4. D. B.4. Update the routing table based on updates from their neighbors.111 755 0x80000005 0x0059CA 2133.111.133. Here is an example: Here is the lsa database on R2.2. show ip ospf link-state show ip ospf lsa database show ip ospf neighbors show ip ospf database Answer: D Explanation: The "show ip ospf database" command displays the link states.4.3 133.passexamvce.133.1.133 775 0x80000001 0x00C31F QUESTION 96 Refer to the exhibit.1 111.133. QUESTION 95 Which command is used to display the collection of OSPF link states? A.111 794 0x80000001 0x001E8B10.1. Maintain the topology of the entire network in its database.111.

D.2.0.0.0. The CDP information was sent by port Serial0/0 of the London router.0 172.16.2.0.) A. F. The London router is a Cisco 2610.0 (next hop)" commands can be used to set the default gateway in a Cisco router. The Manchester serial address is 10.0 0. The two exhibited devices are the only Cisco devices on the network.) A.0.0.0 0.255.0 0.1.Answer: B Explanation: In this example. QUESTION 98 Refer to the exhibit.0.0.0.1 ip route 0.16. http://www.0. B.252.0 ip default-network 0.com . so another file as large as 4MB can be loaded in addition to the original file.0.255. C.2.1. The Manchester router is a Cisco 2610.2. E. D. what three statements are true of these devices? (Choose three. C.0 172.0.1.0.1. B.0. The serial network between the two devices has a mask of 255.0. The Manchester serial address is 10.8 are being used already.16.0 0.passexamvce. QUESTION 97 If IP routing is enabled.0. E.1 Answer: CE Explanation: Both the "ip default-network" and "ip route 0. Get Complete Collection of 200-120 Exam's Question and Answers. The CDP information was received on port Serial0/0 of the Manchester router. but 3.0 ip route 172. ip default-gateway 0.0 ip default-route 0. Given the output that is shown.0.1 0.1.0. which two commands set the gateway of last resort to the default gateway? (Choose two.0. there are a total of 8 MB.0.

255.252.63 area 0 After completing the configuration. you need to increase the AD of the static route so that it is higher than the dynamic routing protocol. If you want to have the dynamic routing protocol used and have the static route be used only as a backup. Therefore there are only 2 available hosts in this network (22 ?2 = 2). So we can deduce the ip address (of the serial interface) of Manchester router is 10.1.1.1. E.64 0. meaning it will be preferred over all dynamic routing protocols.passexamvce.0. D. as shown in the output -> Maybe the most difficult choice of this question is the answer E or F.255. in this case it is the port of Manchester router.0. A network associate has configured OSPF with the command: City(config-router)# network 192. B. and "Port ID (outgoing port)" refers to the port on the neighbor router.168.2 and the question stated that the subnet mask of the network between two router is 255. QUESTION 99 Which parameter would you tune to affect the selection of a static route as a backup. we learn that the IP address of the neighbor router is 10. Please notice that "Interface" refers to the local port on the local router.Answer: ACE Explanation: From the output.1 -> The platform of the neighbor router is cisco 2610.1. when a dynamic protocol is also being used? A. hop count administrative distance link bandwidth link delay link cost Answer: B Explanation: By default the administrative distance of a static route is 1.com . http://www. QUESTION 100 Refer to the exhibit.) Get Complete Collection of 200-120 Exam's Question and Answers. the associate discovers that not all the interfaces are participating in OSPF.12. Which three of the interfaces shown in the exhibit will participate in OSPF according to this configuration statement? (Choose three. C.

2.0.0.64/26.12.0.1100 0000) + Network address: 192.2.0 [90/20514560] via 10.168.104 Answer: BCD Explanation: The "network 192.1111 1111.64 0.0.0. Serial0/1 D.0. D.2. 1 subnets D 10. Serial0/1 Get Complete Collection of 200-120 Exam's Question and Answers.2.A.2. E. The Lakeside Company has the internetwork in the exhibit.0/30 is subnetted. 6w0d.0.0 [90/20514560] via 10. http://www.103 Serial0/1. B.2.12.0. 1 subnets D 10.2.0. C.63 equals to network 192.0/28 is subnetted.passexamvce.0.1111 1111.2. 10.0 [90/20514560] via 10.64 + Broadcast address: 192.168. QUESTION 101 Refer to the exhibit. 6w0d.0/22 is subnetted. Serial0/1 B. F. Serial0/1 C.0.0. 6w0d. 1 subnets D 10.168.com .0 [90/20514560] via 10. 10.12. The administrator would like to reduce the size of the routing table on the Central router. 1 subnets D 10.0/22 is subnetted. FastEthernet0 /0 FastEthernet0 /1 Serial0/0 Serial0/1.168.2. This network has: + Increment: 64 (/26= 1111 1111.0.102 Serial0/1.0.4.0.0.127 Therefore all interface in the range of this network will join OSPF.12. Which partial routing table entry in the Central router represents a route summary that represents the LANs in Phoenix but no additional subnets? A. 6w0d.0.0.2. 10.2. 10.

255.com .0 fa0/0: + 10.4.4.0.2. 10. 6w0d.0.6.5. the amount of available ROM B.0 [90/20514560] via 10. http://www.) A.6.4.0/22 route includes 10.0 255.6. what should be checked on the router.0/24 only.0.0. 10.255.2.0 0.6. HFD(config)# ip route 10.5.3.4.2. HFD(config)# ip route 10.4.0.0/24 network is to be configured on the HFD router.255. the version of the bootstrap software present on the router Get Complete Collection of 200-120 Exam's Question and Answers.0 Answer: CD Explanation: The simple syntax of static route: ip route destination-network-address subnet-mask {next-hop-IP-address | exit-interface} + destination-network-address: destination network address of the remote network + subnet mask: subnet mask of the destination network + next-hop-IP-address: the IP address of the receiving interface on the next-hop router + exit-interface: the local interface of this router where the packets will go out In the statement "ip route 10.5.5.255 10.0/24 and 10.0.6 255.255 10.0.0.5.5.0.255. Serial0/1 Answer: D Explanation: The 10.0.6.E.0.255 fa0/0 B. upgraded version of the IOS.5.255. Serial0/1 F. Which commands will accomplish this? (Choose two.4.0/28 is subnetted.255.6 0. 1 subnets D 10.4.4.6.0/24. 10.0 0.4.5.1. HFD(config)# ip route 10. HFD(config)# ip route 10.0.0 255.0 255. 10.255.0 255.0 10.0.5.255.0/24. QUESTION 102 Refer to the graphic.4.0 fa0/0 D.4 [90/20514560] via 10.6. A static route to the 10.5.5.6 E.4.6.255. 6w0d.0 10.0 F.6 C.0.5.255.passexamvce. and which command should be used to gather this information? (Choose two.6. HFD(config)# ip route 10.) A. the amount of available flash and RAM memory C. 1 subnets D 10.4.0: the destination network +fa0/0: the exit-interface QUESTION 103 Before installing a new.2.4. HFD(config)# ip route 10.5.2.0/30 is subnetted.

com . show processes F. show reload show boot show running-config show version Answer: D Explanation: The "show version" command can be used to show the last method to powercycle (reset) a router Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce. C. QUESTION 104 Which command reveals the last method used to powercycle a router? A.D. show version E. show running-config Answer: BD Explanation: When upgrading new version of the IOS we need to copy the IOS to the Flash so first we have to check if the Flash has enough memory or not. We can check both with the "show version" command. D. Also running the new IOS may require more RAM than the older one so we should check the available RAM too. http://www. B.

http://www. tracert address traceroute address telnet address ssh address Answer: B Explanation: In computing. C. The history of the Get Complete Collection of 200-120 Exam's Question and Answers. D. B.QUESTION 105 Which command would you use on a Cisco router to verify the Layer 3 path to a host? A.com . traceroute is a computer network diagnostic tool for displaying the route (path) and measuring transit delays of packets across an Internet Protocol (IP) network.passexamvce.

In turn. B. F. Areas are introduced to put a boundary on the explosion of link-state updates.com . OSPF has introduced new concepts such as authentication of routing updates. which is a departure from the Bellman-Ford vector based algorithms used in traditional Internet routing protocols such as RIP. As the term flooding implies. http://www. A network administrator configures a new router and enters the copy startupconfig running-config command on the router. each received LSA is copied and forwarded to every neighbor except the one that sent the LSA. route summarization. In keeping with the friendly neighbor terminology.) A. It is simpler to configure than RIP v2. C. D. F. The protocol will define a Hello packet format and a procedure for exchanging the packets and processing the information the packets contain. C. Any change in routing information is flooded to all routers in the network. then the connection is lost and the route cannot be evaluated. It increases routing overhead on the network. B. Variable Length Subnet Masks (VLSM). QUESTION 107 Which statements describe the routing protocol OSPF? (Choose three. hello packets SAP messages sent by other routers LSAs from other routers beacons received on point-to-point links routing tables received from other link-state routers TTL packets from designated routers Answer: AC Explanation: Neighbor discovery is the first step in getting a link state environment up and running. the sum of the mean times in each hop indicates the total time spent to establish the connection. Ping. QUESTION 106 What information does a router running a link-state protocol use to build and maintain its topological database? (Choose two. It supports VLSM. on the other hand.) A. It allows extensive control of routing updates. After the adjacencies are established. the advertisements are sent to every neighbor. It is used to route between autonomous systems. the routers may begin sending out LSAs. Traceroute proceeds unless all (three) sent packets are lost more than twice. D. a Hello protocol is used for this step. E. Flooding and calculation of the Dijkstra algorithm on a router is limited to changes within an area. only computes the final round-trip times from the destination point.route is recorded as the round-trip times of the packets received from each successive host (remote node) in the route (path). Answer: ACE Explanation: The OSPF protocol is based on link-state technology. OSPF uses flooding to exchange link-state updates between routers. and so forth. It confines network instability to one area of the network. The network administrator powers down the router Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce. QUESTION 108 Refer to the exhibit. E.

The boot system flash command is missing from the configuration. http://www. B. it enters the system configuration dialog as shown. Answer: A Explanation: The "System Configuration Dialog" appears only when no startup configuration file is found. E. C. Note: We can tell the router to ignore the start-up configuration on the next reload by setting the register to 0?142. ATM HDLC Frame Relay PPP Answer: C Explanation: This question is to examine the show int command. The configuration register is set to 0x2102.passexamvce. So everything configured was deleted.and sets it up at a remote location. The router is configured with the boot system startup command. Get Complete Collection of 200-120 Exam's Question and Answers. C. When the router starts. The configuration register is set to 0x2100. The network administrator failed to save the configuration. D. QUESTION 109 Refer to the exhibit. B. This will make the "System Configuration Dialog" appear at the next reload. Which WAN protocol is being used? A. What is the cause of the problem? A. D. The network administrator has made a mistake because the command "copy startup-config runningconfig" will copy the startup config (which is empty) over the running config (which is configured by the administrator).com .

Each routing protocol is prioritized in order of most to least reliable (believable) with the help of an administrative distance value. provides common view of entire topology exchanges routing tables with neighbors calculates shortest path utilizes event-triggered updates utilizes frequent periodic updates Answer: ACD Explanation: Each of routers running link-state routing protocol learns paths to all the destinations in its "area" so we can say although it is a bit unclear. http://www." QUESTION 110 What is the default administrative distance of OSPF? A.. "LMI enq sent. Link-state routing protocols generate routing updates only (not the whole routing table) when a Get Complete Collection of 200-120 Exam's Question and Answers. Administrative distance defines the reliability of a routing protocol.com . D.passexamvce. 90 100 110 120 Answer: C Explanation: Administrative distance is the feature that routers use in order to select the best path when there are two or more different routes to the same destination from two different routing protocols. C. C. we can know that the data link protocol used in this network is the Frame Relay protocol. B. D.According to the information provided in the exhibit. Default Distance Value Table This table lists the administrative distance default values of the protocols that Cisco supports: Route Source Default Distance Values Connected interface Static route Enhanced Interior Gateway Routing Protocol (EIGRP) summary route External Border Gateway Protocol (BGP) Internal EIGRP IGRP OSPF Intermediate System-to-Intermediate System (IS-IS) Routing Information Protocol (RIP) Exterior Gateway Protocol (EGP) On Demand Routing (ODR) External EIGRP Internal BGP Unknown* QUESTION 111 Which characteristics are representative of a link-state routing protocol? (Choose three. B.) A.. E.

The router will forward packets from R3 to R1 to R2. how will packets from a host within the 192. All the interfaces have been properly configured and IP routing is operational.1? A.168.168.168.passexamvce. Answer: C Explanation: From the routing table we learn that network 192.9 &192.10. Based on the exhibited routing table. What is true about this configuration? Get Complete Collection of 200-120 Exam's Question and Answers. The router will forward packets from R3 to R2 to R1 AND from R3 to R1. The hosts in the VLANs have been configured with the appropriate default gateway. QUESTION 113 Refer to the exhibit. The router will forward packets from R3 to R2 to R1.10. http://www.change occurs in the network topology so Link-state routing protocol like OSPF uses Dijkstra algorithm to calculate the shortest path -> .192/26 LAN be forwarded to 192. B.168.168. The router will forward packets from R3 to R1. C. Unlike Distance vector routing protocol (which utilizes frequent periodic updates).10.com .10.5) -> traffic to this network will be load-balancing. D. C-router is to be used as a "router-on-a-stick" to route between the VLANs.10. link-state routing protocol utilizes event-triggered updates (only sends update when a change occurs) -> QUESTION 112 Refer to the exhibit.0/30 is learned via 2 equal-cost paths (192.

These commands need to be added to the configuration: C-router(config)# router rip C-router(config-router)# network 172. QUESTION 114 Which command would you configure globally on a Cisco router that would allow you to view directly connected Cisco devices? A. No further routing configuration is required.19. Since the C-router already knows how to get to all three networks.0 0.0 B. no routing protocols need to be configured. disable it with the no cdp run command. These commands need to be added to the configuration: C-router(config)# router ospf 1 C-router(config-router)# network 172. Answer: D Explanation: Since all the same router (C-router) is the default gateway for all three VLANs.passexamvce.A. use the cdp run command in global configuration mode. D.0 D. The "cdp enable" command is an interface command.0. not global. all traffic destined to a different VLA will be sent to the C-router. QUESTION 115 Refer to the exhibit. If you prefer not to use the CDP capability.255 area 0 C. C. The C-router will have knowledge of all three networks since they will appear as directly connected in the routing table. In order to reenable CDP.0. These commands need to be added to the configuration: C-router(config)# router eigrp 123 C-router(config-router)# network 172. enable cdp cdp enable cdp run run cdp Answer: C Explanation: CDP is enabled on Cisco routers by default.0.3.com . B.0.19.19. http://www. Why is flash memory erased prior to upgrading the IOS image from the TFTP server? Get Complete Collection of 200-120 Exam's Question and Answers.

Flash memory on Cisco routers can contain only a single IOS image. the router asked "Erasing flash before copying? [confirm]" and the administrator confirmed (by pressing Enter) so the flash was deleted. Erasing current flash content is requested during the copy dialog. D.5.167/ c1600-k8sy-mz. B. In order for the router to use the new image as the default. http://www.bin (Not enough space on device) QUESTION 116 Refer to the exhibit. According to the routing table. C. Answer: C Explanation: During the copy process.2.l23-16a. the flash has enough space to copy a new IOS without deleting the current one.65? Get Complete Collection of 200-120 Exam's Question and Answers.168. it must be the only IOS image in flash.A. The current IOS is deleted just because the administrator wants to do so. The router cannot verify that the Cisco IOS image currently in flash is valid. Note: In this case.com . If the flash does not have enough space you will see an error message like this: %Error copying tftp://192. where will the router send a packet destined for 10.passexamvce.1.

255. The subnet mask is /28.2 10.25. Note: From the output above.1.240 192.168.255.16 255.255.64/27 subnets but the "longest prefix match" algorithm will choose the most specific subnet mask -> the prefix "/29 will be chosen to route the packet.4.25. Therefore the next-hop should be 10.1. 10.1.24 + 192.5. E.168.16 + 192.16 255.255.passexamvce.255. QUESTION 117 Refer to the exhibit.64/29 & 10.0 255.255.255.2 10.255.5.255.255. Which address and mask combination represents a summary of the routes learned by EIGRP? A.255.1.1.A.25. C.1111 1111. The mask is 255.16 255. 28 ?16 = 12 but 12 is not an exponentiation of 2 so we must choose 16 (24). The binary version of 16 is 10000.168.0 255.252 Answer: C Explanation: The binary version of 20 is 10100.com .28 -> The increment should bE.25.28 255. The binary version of 24 is 11000.25. 192.1.28 255. Therefore the subnet mask is /28 (=1111 1111.3.168.25.168.168.65 belongs to 10.255. 10.3 10.255.1. http://www.240 Get Complete Collection of 200-120 Exam's Question and Answers.240 192.11110000) = 255.25. B.168.25.1.255.1. The binary version of 28 is 11100.255.25.240.168.25.4 Answer: C Explanation: The destination IP address 10.64/28. C.255. D.255.252 192.168. B.2.25. D.240 192.5.5.3 -> .3. F.1.168. EIGRP learned 4 routes and we need to find out the summary of them: + 192.168.255.1111 1111.20 + 192.252 192.240 So the best answer should be 192.

F. The operational status of the interfaces cannot be determined from the output shown. D. B.QUESTION 118 Refer to the exhibit. + ROM (used if no other source is found) QUESTION 120 Refer to the exhibit. RAM NVRAM flash memory HTTP server TFTP server Telnet server Answer: CE Explanation: The following locations can be configured as a source for the IOS image: 1.passexamvce. + TFTP server 3.com . C. Two interfaces have problems. Serial0/0 is down because it has been disabled using the "shutdown" command.) A. E. what is the operational status of the interfaces of R2 as indicated by the command output shown? A. if the router ID has not been manually set. C. what router ID will OSPF use for this router? Get Complete Collection of 200-120 Exam's Question and Answers. QUESTION 119 Which two locations can be configured as a source for the IOS image in the boot system command? (Choose two. Given the output for this command. Assuming that the entire network topology is shown. One interface has a problem. http://www. D. + Flash (the default location) 2. The interfaces are functioning correctly. B. Answer: C Explanation: The output shown shows normal operational status of the router's interfaces.

1.535.1 172.A. B. D. Hello packets are sent to each neighbor to determine the processor identifier. What commands must be configured on the 2950 switch and the router to allow communication between host 1 and host 2? (Choose two.1 192.) Router(config)# router ospf 1 A. Answer: CD Explanation: Multiple OSPF processes can be configured on a router using multiple process ID's. 10. C. Different process identifiers can be used to run multiple OSPF processes The process number can be any number from 1 to 65. C. E.1.com . D. The valid process ID's are shown below: Edge-B(config)#router ospf ? <1-65535> Process ID QUESTION 122 Refer to the exhibit.) Get Complete Collection of 200-120 Exam's Question and Answers.154.2 10. B.5. All OSPF routers in an area must have the same process ID Only one process number can be used on the same router.16.154. http://www.passexamvce. QUESTION 121 Which two statements describe the process identifier that is used in the command to configure OSPF on a router? (Choose two.168.3 Answer: C Explanation: The highest IP address of all loopback interfaces will be chosen -> Loopback 0 will be chosen as the router ID.5.

0 C.2 Router(config-subif)# encapsulation dot1q 20 Router(config-subif)# ip address 192.255.255. Router(config)# router eigrp 100 Router(config-router)# network 192.0 Router(config-router)# network 192.168. QUESTION 123 Refer to the exhibit.0 Router(config-if)# no shut down B.255.passexamvce.0 Router(config)# interface fastethernet 0/0. the connection to the router need to be configured as a trunk using the switchport mode trunk command and it will need a default gateway for VLAN 1.20.) Get Complete Collection of 200-120 Exam's Question and Answers.10. Router(config)# interface fastethernet 0/0 Router(config-if)# ip address 192. Switch1(config)# interface fastethernet 0/1 Switch1(config-if)# switchport mode trunk F.com . http://www.168.1 255.168.1 Router(config-subif)# encapsulation dot1q 10 Router(config-subif)# ip address 192. Router(config)# interface fastethernet 0/0 Router(config-if)# no shut down Router(config)# interface fastethernet 0/0.20. Switch1(config)# interface vlan 1 Switch1(config-if)# ip default-gateway 192.1 255.168.255.0 D.10. where each subinterface is assigned a VLAN and IP address for each VLAN. Switch1(config)# vlan database Switch1(config-vlan)# vtp domain XYZ Switch1(config-vlan)# vtp server E.A.1 255. For what two reasons has the router loaded its IOS image from the location that is shown? (Choose two. On the switch.255.168.1.1.1 Answer: BE Explanation: The router will need to use subinterfaces.168.255.

Router1 defaulted to ROMMON mode and loaded the IOS image from a TFTP server. Bootstrap code executed 3. use default fallback sequence to locate the IOS (Flash. http://www. Answer: AC Explanation: The loading sequence of CISCO IOS is as follows: Booting up the router and locating the Cisco IOS 1. ROM (partial IOS) or keep retrying TFTP depending upon router model 5. Flash (sequential) b. [If boot system commands fail.passexamvce. TFTP server (netboot) c. D. E. but there is no startup-config file. Router1 is acting as a TFTP server for other routers.15 = startup-config in NVRAM 4. What can be determined about the router from the console output? Get Complete Collection of 200-120 Exam's Question and Answers. Cisco routers will first attempt to load an image from TFTP for management purposes. ROM)?] If no boot system commands in startup-config use the default fallback sequence in locating the IOS: a. Run boot system commands in order they appear in startup-config to locate the IOS b. the router will use the default fallback sequence for locating the IOS and then it will enter setup mode or the setup dialogue.com . Check for boot system commands (NVRAM) If boot system commands in startup-config a. POST (power on self test) 2. Startup-config filE.A. Router1 cannot locate a valid IOS image in flash memory. Check Configuration Register value (NVRAM) which can be modified using the config-register command 0 = ROM Monitor mode 1 = ROM IOS 2 . C. B. QUESTION 124 Refer to the exhibit. If IOS is loaded. TFTP. Router1 has specific boot system commands that instruct it to load IOS from a TFTP server.

QUESTION 125 Which three elements must be used when you configure a router interface for VLAN trunking? (Choose three.com/RouterOnAStickCCNACertificationExamTutorial. C. F. E.com . Router(config)# router Router(config)# router Router(config)# router Router(config-router)# Router(config-router)# Router(config-router)# ospf 0 ospf 1 ospf area 0 network 192. C.16.168. one physical interface for each subinterface one IP network or subnetwork for each subinterface a management domain for each subinterface subinterface encapsulation identifiers that match VLAN tags one subinterface per VLAN subinterface numbering that matches VLAN tags Answer: BDE Explanation: This scenario is commonly called a router on a stick.) A.0. B. Configuration file is normal and will load in 15 seconds.168.thebryantadvantage. No configuration file was found in the PCMCIA card.0.255.255 area 0 network 192.168. http://www. D. No configuration file was found in NVRAM.0 0. No configuration file was found in flash. C.255 0 network 192.0/24 to OSPF area 0? (Choose two. the System Configuration Dialog will appear to ask if we want to enter the initial configuration dialog or not.16. E.0.16. D. Answer: A Explanation: When no startup configuration file is found in NVRAM.168. B. D.htm QUESTION 126 Which commands are required to properly configure a router to run OSPF and to add network 192. B.passexamvce.16.0 0. well written article on this operation can be found here: http://www.) A. F.A. A short.0.255.0 255.0 area 0 Answer: BE Get Complete Collection of 200-120 Exam's Question and Answers.

10.168.10.0/24 a RIP update for network 192.0/24 from multiple sources. show cdp neigbors B. the ranges from 1 to 65535 so o is an invalid number -> but To configure OSPF. it will choose the best one based on a couple of things. QUESTION 127 A router receives information about network 192. B. B. we need a wildcard in the "network" statement. First. not a subnet mask. it will choose the route that has the longest match. Directly connected routes have an AD of 1 so this will be the route chosen. http://www. F.168.10.168.0/24 an OSPF update for network 192. The range is from 1 to 16 routes.168. from all the /24 routes it will choose the one with the lowest administrative distance.168.1 a static route to network 192. QUESTION 128 What is the default maximum number of equal-cost paths that can be placed into the routing table of a Cisco OSPF router? A. So. show session Get Complete Collection of 200-120 Exam's Question and Answers. D.254/24 a static route to network 192. 2 4 16 unlimited Answer: B Explanation: maximum-paths (OSPF) To control the maximum number of parallel routes that Open Shortest Path First (OSPF) can support.passexamvce. D. meaning the most specific route. in this case the /24 routes will be chosen over the /16 routes. C. use the maximum-paths command.10.0.Explanation: In the router ospf command. What will the router consider the most reliable information about the path to that network? A. E.0/16 a default route with a next hop address of 192. Syntax Description maximum Maximum number of parallel routes that OSPF can install in a routing table. Next. We also need to assgin an area to this process -> .com . Command Default 8 paths QUESTION 129 Which command shows your active Telnet connections? A. a directly connected interface with an address of 192.10.168.0/24 with a local serial interface configured as the next hop Answer: A Explanation: When there is more than one way to reach a destination.168. C.10.

The configuration that is shown provides inadequate outside address space for translation of the number of inside addresses that are supported. show users D. B. meaning connections from your router so the answer should be A.16. Because of the addressing on interface FastEthernet0/1. What statement is true of the configuration for this network? A. The question asks about "your active Telnet connections". QUESTION 130 Refer to the exhibit.C. http://www. show vty logins Answer: B Explanation: The "show users" shows telnet/ssh connections to your router while "show sessions" shows telnet/ssh connections from your router (to other devices).0/24. ExternalRouter must be configured with static routes to networks 172.16. QUESTION 131 Which type of EIGRP route entry describes a feasible successor? Get Complete Collection of 200-120 Exam's Question and Answers. Answer: C Explanation: The "list 1 refers to the access-list number 1.1. D. the Serial0/0 interface address will not support the NAT configuration as shown. The number 1 referred to in the ip nat inside source command references access-list number 1.0/24 and 172.passexamvce.com .2. C.

It conserves Get Complete Collection of 200-120 Exam's Question and Answers. B. at the end of the period. Dynamic NAT facilitates connections from the outside of the network.passexamvce. NAT does conserve addresses but not through host MAC-level multiplexing. C. Addresses are leased to hosts. http://www. The Topology Table list all the learned routers to destination whilst the Routing Table contains the best route to a destination. NAT eliminates the need to re-address all hosts that require external access. NAT has to modify the source IP addresses in the packets -> E is not correct. Connection from the outside of the network through a "NAT" network is more difficult than a more network because IP addresses of inside hosts are hidden -> C is not correct. F. a new request for an address must be made. and may terminate the lease. E. Answer: BF Explanation: By not revealing the internal Ip addresses. NAT adds some security to the inside network -> F is correct. stored in the topology table Answer: C Explanation: EIGRP uses the Neighbor Table to list adjacent routers. C. In order for IPsec to work with NAT we need to allow additional protocols. NAT conserves addresses through host MAC-level multiplexing. NAT facilitates end-to-end communication when IPsec is enabled. a backup route. B. QUESTION 133 What are two benefits of using NAT? (Choose two. releasing the IP address. By allocating specific public IP addresses to inside hosts. Answer: D Explanation: The DHCP lifecycle consists of the following: Release: The client may decide at any time that it no longer wishes to use the IP address it was assigned. stored in the routing table a backup route. stored in the routing table a primary route. including Internet Key Exchange (IKE).) A. Encapsulating Security Payload (ESP) and Authentication Header (AH) -> more complex -> A is not correct. stored in the topology table a primary route.A. which is known as the Successor. B.com . Addresses are permanently assigned so that the hosts uses the same address at all times. which periodically contact the DHCP server to renew the lease. The Feasible Successor is a backup route to a destination which is kept in the Topology Table. D. Addresses are assigned for a fixed period of time. Addresses are allocated after a negotiation between the server and the host to determine the length of the agreement. NAT accelerates the routing process because no modifications are made on the packets. QUESTION 132 Which statement describes the process of dynamically assigning IP addresses by the DHCP server? A. C. D. D. NAT protects network security because private networks are not advertised. NAT eliminates the need to re-address the inside hosts -> B is correct.

Answer: C Explanation: DHCP works in a client/server mode and operates like any other client/server relationship. This lease mechanism ensures that hosts that move or power off do not hold onto addresses that they do not need.shtml QUESTION 136 How does a DHCP server dynamically assign IP addresses to hosts? A. The configuration of dynamic ACL can be read here: http://www. Which ACL can be used? A. Addresses are assigned for a fixed period of time. QUESTION 134 On which options are standard access lists based? A.com . The DHCP server returns Get Complete Collection of 200-120 Exam's Question and Answers. http://www. At the end of the period.passexamvce. as well as port information. B. When a PC connects to a DHCP server. a new request for an address must be made. D. C.com/en/US/tech/tk583/tk822/technologies_tech_note09186a0080094524.cisco. C. QUESTION 135 A network engineer wants to allow a temporary entry for a remote user with a specific username and password so that the user can access the entire network over the Internet. The host must contact the DHCP server periodically to extend the lease. Addresses are leased to hosts. destination address and wildcard mask destination address and subnet mask source address and subnet mask source address and wildcard mask Answer: D Explanation: Standard ACL's only examine the source IP address/mask to determine if a match is made. D. D. Extended ACL's examine the source and destination address. The authentication process is done by the router or a central access server such as a TACACS+ or RADIUS server. The PC connects to the network with that leased IP address until the lease expires. B. the server assigns or leases an IP address to that PC. standard extended dynamic reflexive Answer: C Explanation: We can use a dynamic access list to authenticate a remote user with a specific username and password. A host will usually keep the same address by periodically contacting the DHCP server to renew the lease. B. Addresses are allocated after a negotiation between the server and the host to determine the length of the agreement. Addresses are permanently assigned so that the host uses the same address at all times. and another address is then assigned. C.addresses by allowing many private IP addresses to use the same public IP address to go to the Internet -> C is not correct.

) A. Provide an easy management of layer 3 devices. The IP will be shown. During address assignment. E. Monitor IP performance using the DHCP server. What statement is true of the configuration for this network? Get Complete Collection of 200-120 Exam's Question and Answers. Answer: CF Explanation: The Dynamic Host Configuration Protocol (DHCP) is a network protocol used to configure devices that are connected to a network (known as hosts) so they can communicate on that network using the Internet Protocol (IP). Configure IP address parameters from DHCP server to a host. It involves clients and a server operating in a clientserver model. D.these addresses to the address pool and reallocates them as necessary. Set the IP gateway to be used by the network.passexamvce. the address is removed from the pool.html QUESTION 138 Which two tasks does the Dynamic Host Configuration Protocol perform? (Choose two. Only the IP detected by Gratuitous ARP is removed from the pool. The address is removed from the pool until the conflict is resolved. C. http://www.com . QUESTION 139 Refer to the exhibit. even after the conflict is resolved. D. Only the IP detected by Ping is removed from the pool. F. DHCP checks for conflicts using ping and gratuitous ARP. http://www.cisco. QUESTION 137 Refer to the exhibit. C. Which rule does the DHCP server use when there is an IP address conflict? A. The address will not be assigned until the administrator resolves the conflict. The address remains in the pool until the conflict is resolved. Assign and renew IP address from the default pool. If a conflict is detected. B. DHCP servers assigns IP addresses from a pool of addresses and also assigns other parameters such as DNS and default gateways to hosts. Perform host discovery used DHCPDISCOVER message. B. E. Answer: A Explanation: An address conflict occurs when two hosts use the same IP address.com/en/US/docs/ios/12_1/iproute/configuration/guide/1cddhcp.

2. QUESTION 140 When a DHCP server is configured.0/16) and broadcast address (for example 23. The number 1 referred to in the ip nat inside source command references access-list number 1. The configuration that is shown provides inadequate outside address space for translation of the number of inside addresses that are supported. B. ExternalRouter must be configured with static routes to networks 172.1.16. which two IP addresses should never be assignable to hosts? (Choose two.A.1. When try to assign these addresses to hosts.0/24 and 172. Because of the addressing on interface FastEthernet0/1.2.0. C. B. F. D. C. http://www.0.) A. network or subnetwork IP address broadcast address on the network IP address leased to the LAN IP address used by the interfaces manually assigned address to the clients designated IP address to the DHCP server Answer: AB Explanation: Network or subnetwork IP address (for example 11.16.com . D. you will receive an error message saying that they can't be assignable. E. Get Complete Collection of 200-120 Exam's Question and Answers. the Serial0/0 interface address will not support the NAT configuration as shown.0/24.passexamvce.0/8 or 13. Answer: C Explanation: The "list 1 refers to the access-list number 1.1.0.255/24) should never be assignable to hosts.

147. Answer: C Explanation: We can have only 1 access list per protocol. access-list 110 permit ip any any access-list 50 deny 192. You can apply only one access list on any interface. C.0 only.com . per direction.168.) A.passexamvce.147.1 eq 22 Answer: B Explanation: The standard access lists are ranged from 1 to 99 and from 1300 to 1999 so only access list 50 is a standard access list. Which two ACL statements. B. C. This is typically done to allow incoming connections from the outside (Internet) to the inside. 192. http://www. 192.1 access-list 2500 deny tcp any host 192. They are always present in the NAT table. C. They can be configured with access lists.0.1 0.168.255 access list 101 deny tcp any host 192.148. You can place as many access lists as you want on any interface. they are always present in the NAT table even if they are not actively in use.0 0. They require no inside or outside interface markings because addresses are statically defined.1.168. QUESTION 144 A network administrator is configuring ACLs on a Cisco router. access-list 10 permit ip 192.1. It means: + We can not have 2 inbound access lists on an interface + We can have 1 inbound and 1 outbound access list on an interface QUESTION 143 Which item represents the standard IP ACL? A. and 192.146.255.0. You can apply multiple access lists with the same protocol or in different directions. They allow connections to be initiated from the outside. Since these are static.168. to allow traffic from hosts on networks 192.1.255 Get Complete Collection of 200-120 Exam's Question and Answers.168. QUESTION 142 Which statement about access lists that are applied to an interface is true? A.146. B.0.0.) A. to allow two or more connections to be initiated from the outside.0.0.0 0. D.0. access-list 10 permit ip 192. would you use to accomplish this task? (Choose two.168. D.168.1.QUESTION 141 Which two statements about static NAT translations are true? (Choose two.149. You can configure one access list.168. per direction and per interface.168. when combined. B. Answer: AC Explanation: Static NAT is to map a single outside IP address to a single inside IP address. per Layer 3 protocol.255 B. D.

E.0.168.0 0. SW1#show port-security interface FastEthernet 0/12 E. E.com . SW1#show running-config D.1. Enter an access list and apply it to the virtual terminal interfaces using the access-class command.0 and 192.148. SW1#show switchport port-security interface FastEthernet 0/12 Answer: CD Explanation: We can verify whether port security has been configured by using the "show running-config" or "show port-security interface " for more detail.168.168. Create an access list and apply it to the virtual terminal interfaces with the access-group command.0 subnets. SW1#show port-secure interface FastEthernet 0/12 B.146.0.168.0.168.148.255.255 will include the 192.168.1. QUESTION 146 Which two commands correctly verify whether port security has been configured on port FastEthernet 0/12 on a switch? (Choose two.149.0. Configure a virtual terminal password and login process. F.255 access-list 10 permit ip 192.C.168. access-list 10 permit ip 192.147.0 0. Physically secure the interface. B.0 0.255 access-list 10 permit ip 192. http://www. Administratively shut down the interface. SW1#show switchport port-secure interface FastEthernet 0/12 C.) A.255 access-list 10 permit ip 192.168. The "access-group" command is only used to apply an access list to a physical interface -> C is not correct.0 255.146.) A.146. The most simple way to secure the virtual terminal interface is to configure a username & password to prevent unauthorized login.146.255. Answer: DE Explanation: It is a waste to administratively shut down the interface.0 0. Moreover.255 will include QUESTION 145 What can be done to secure the virtual terminal interfaces on a router? (Choose two.255. C.0. An example of the output of "show port-security interface " command is shown below: Get Complete Collection of 200-120 Exam's Question and Answers. D.0 0. someone can still access the virtual terminal interfaces via other interfaces -> We can not physically secure a virtual interface because it is "virtual" -> To apply an access list to a virtual terminal interface we must use the "access-class" command.passexamvce. D.1.0 Answer: AC Explanation: access-list 10 permit ip 192. while access-list 10 permit ip 192.0.

D. This frame will be discarded when it is received by 2950Switch. will be forwarded Get Complete Collection of 200-120 Exam's Question and Answers. E. 2950Switch(config-if)# switchport port-security 2950Switch(config-if)# switchport port-security mac-address sticky 2950Switch(config-if)# switchport port-security maximum 1 The Ethernet frame that is shown arrives on interface fa0/1.QUESTION 147 Refer to the exhibit. What two functions will occur when this frame is received by 2950Switch? (Choose two.00aa. The following commands are executed on interface fa0/1 of 2950Switch. Hosts B and C may forward frames out fa0/1 but frames arriving from other switches will not be forwarded out fa0/1. Only host A will be allowed to transmit frames on fa0/1. Only frames from source 0000.passexamvce. F. http://www.com . the first learned MAC address of 2950Switch. The MAC address table will now have an additional entry of fa0/1 FFFF. B. All frames arriving on 2950Switch with a destination of 0000.bbbb.aaaa will be forwarded out fa0/1.) A. C.00bb.FFFF.FFFF.

Switch1(config)# ip default-gateway 192.168.out fa0/1.24. the command switchport port-security mac-address sticky enables sticky learning. Port security with sticky MAC addresses retains dynamically learned MAC addresses during a link-down condition. When entering this command. the interface converts all the dynamic secure MAC addresses to sticky secure MAC addresses. If you limit the number of secure MAC addresses to one and assign a single secure MAC address.24. A dynamically learned MAC address is saved in the VLAN database. Switch1(config)# interface fa0/1 Get Complete Collection of 200-120 Exam's Question and Answers.0 C. A dynamically learned MAC address is saved in the startup-configuration file. B. but sticky MAC addresses can be learned dynamically. Answer: B Explanation: In the interface configuration mode.255. When you assign secure MAC addresses to a secure port. D.255. Answer: BD Explanation: The configuration shown here is an example of port security. Given the information in the graphic and assuming that the router and Switch2 are configured properly. Switch1(config)# interface fa0/1 Switch1(config-if)# duplex full Switch1(config-if)# speed 100 E. QUESTION 149 The network administrator cannot connect to Switch1 over a Telnet session. the port does not forward ingress traffic that has source addresses outside the group of defined addresses. Statically configured MAC addresses are saved in the running-configuration file if frames from that address are received. You can use port security with dynamically learned and static MAC addresses to restrict a port's ingress traffic by limiting the MAC addresses that are allowed to send traffic into the port. E. C. Statically configured MAC addresses are saved in the startup-configuration file if frames from that address are received. http://www.passexamvce.1 D. although the hosts attached to Switch1 can ping the interface Fa0/0 of the router.168. the device attached to that port has the full bandwidth of the port. which of the following commands should be issued on Switch1 to correct this problem? A. Switch1(config)# interface fa0/1 Switch1(config-if)# ip address 192. QUESTION 148 What will be the result if the following configuration commands are implemented on a Cisco switch? Switch(config-if)# switchport port-security Switch(config-if)# switchport port-security mac-address sticky A. A dynamically learned MAC address is saved in the running-configuration file. Switch1(config)# line con0 Switch1(config-line)# password cisco Switch1(config-line)#login B.com .3 255. Port security with sticky MAC addresses provides many of the same benefits as port security with static MAC addresses. specifically port security using sticky addresses.

the ip default-gateway command must be used. The switch will need a different IOS code in order to support VLANs and STP. etc. Remote access management of this switch will not be possible without configuration change. it will be blocked by STP. http://www. A network administrator cannot establish a Telnet session with the indicated router. However. changed state to administratively down". B. As FastEthernet0/12 will be the last to come up. What is the cause of this failure? Get Complete Collection of 200-120 Exam's Question and Answers. are good. C. Hence remote management of this switch is not possible unless VLAN1 is brought back up. Which of these statements correctly describes the state of the switch once the boot process has been completed? A. for the switch itself to reach networks outside the local one. duplex.Switch1(config-if)# switchport mode trunk Answer: C Explanation: Since we know hosts can reach the router through the switch. Speed. QUESTION 151 Refer to exhibit. More VLANs will need to be created for this switch. D. This shows that VLAN1 is shut down. you have to assume that no other VLAN interface has been configured with an IP Address. QUESTION 150 Refer to the exhibit. Answer: B Explanation: Notice the line.com . which says "Interface VLAN1.passexamvce. we know that connectivity. Since VLAN1 is the only interface shown in the output.

but none set" message to users trying to telnet to this router. QUESTION 152 Refer to the exhibit. but not password. The vty password is missing. Answer: C Explanation: The login keyword has been set.A.com . When running EIGRP. An ACL is blocking Telnet access. This will result in the "password required. http://www. A Level 5 password is not set. what is required for RouterA to exchange routing updates with RouterC? Get Complete Collection of 200-120 Exam's Question and Answers. The console password is missing.passexamvce. D. B. C.

31. one for each connected network Answer: A Explanation: This question is to examine the understanding of the interaction between EIGRP routers.passexamvce.0 network. EIGRP routers to establish. The following information must be matched so as to create neighborhood.com . must match the following information: 1. B. The network administrator connected to router Coffee via the console port. QUESTION 154 Users on the 172. C. Get Complete Collection of 200-120 Exam's Question and Answers.5. 2.22. using the fewest physical interfaces and without decreasing network performance? A.17. AS numbers must be changed to match on all the routers Loopback interfaces must be configured so a DR is elected The no auto-summary command is needed on Router A and Router C Router B needs to have two network statements. D. Add a second router to handle the VLAN traffic. Use a hub to connect the four VLANS with a Fast Ethernet interface on the router. D. QUESTION 153 A router has two Fast Ethernet interfaces and needs to connect to four VLANs in the local network. K value. B. and was able to ping the server. Answer: D Explanation: A router on a stick allows you to use sub-interfaces to create multiple logical networks on a single physical interface. How can you accomplish this task. AS Number. Implement a router-on-a-stick configuration.A. http://www. issued the show ip route command. C. Add two more Fast Ethernet interfaces.0 network cannot reach the server located on the 172.

A static route is configured incorrectly. Answer: C Explanation: The default route or the static route was configured with incorrect next-hop ip address 172." Get Complete Collection of 200-120 Exam's Question and Answers. The network wildcard mask is configured improperly.Based on the output of the show ip route command and the topology shown in the graphic. The OSPF area is configured improperly. IP routing is not enabled. D. the mask used for the network statement is a wildcard mask similar to an access list.0. The process id is configured improperly.0 area 0 A. In this specific example. Ip route 0.passexamvce.0.0 0.0.22. E.0.31. B. what configuration error is causing this problem? Router(config)# router ospf 1 Router(config-router)# network 10.2 to reach server located on 172. D. The routing table on Coffee has not updated .0.2 The correct ip address will be 172.255 area 0.0.0 0. The network has not fully converged. C. Given the information in the partial configuration shown below.0.22. The network subnet mask is configured improperly.19.0 255.0.0 network.18. Answer: C Explanation: When configuring OSPF. F. C. http://www. The neighbor relationship table is not correctly updated. The AS is configured improperly.0 172. what is the cause of the failure? A. The FastEthernet interface on Coffee is disabled.22.0.2 QUESTION 155 A network administrator is trying to add a new router into an established OSPF network.com . E. The networks attached to the new router do not appear in the routing tables of the other OSPF routers. B.18.0.0.5.0. F. the correct syntax would have been "network 10. The network number is configured improperly.

With BPDU Guard. E. when a PortFast receives a BPDU. D. http://www. which command would you use to verify which interfaces are affected by the ACL? A. Router C will use ICMP to inform Host 1 that Host 2 cannot be reached. But if someone does not know he can accidentally plug that port to another switch and a loop may occur when BPDUs are being transmitted and received on these ports. QUESTION 158 Host 1 is trying to communicate with Host 2. Get Complete Collection of 200-120 Exam's Question and Answers. C. E. show ip access-lists show access-lists show interface show ip interface list ip interface Answer: D Explanation: Incorrect answer: show ip access-lists does not show interfaces affected by an ACL. D.) A. BackboneFast UplinkFast Root Guard BPDU Guard BPDU Filter Answer: D Explanation: We only enable PortFast feature on access ports (ports connected to end stations).com . B. it will be shut down to prevent a loop.QUESTION 156 Which Cisco Catalyst feature automatically disables the port in an operational PortFast upon receipt of a BPDU? A. QUESTION 157 When you are troubleshooting an ACL issue on a router. C. B.passexamvce. The e0 interface on Router C is down. B. Router C will use ICMP to inform Router B that Host 2 cannot be reached. Which of the following are true? (Choose two.

AS Number. what is required for RouterA to exchange routing updates with RouterC? A. A native VLAN mismatch error message will appear. 802. The following information must be matched so as to create neighborhood. C. The e0 interface on Router C is down. B. VLAN 10 is chosen as native. F. D.passexamvce. C. will send a Destination Unreachable message type.C. VLAN 10 on CAT1 and VLAN 1 on CAT2 will send tagged frames. VLAN 10 on CAT1 and VLAN 1 on CAT2 will send untagged frames.1Q giants frames could saturate the link. D. QUESTION 159 Refer to the exhibit. An 802. will send a Router Selection message type. B. but on CAT2 the native VLAN is not specified. http://www. and Router B that Host 2 cannot be reached. will send a Source Quench message type. E. Router C will send ICMP packets to inform Host 1 that Host 2 cannot be reached. AS numbers must be changed to match on all the routers Loopback interfaces must be configured so a DR is elected The no auto-summary command is needed on Router A and Router C Router B needs to have two network statements. Router A. 2. QUESTION 160 Cisco Catalyst switches CAT1 and CAT2 have a connection between them using ports FA0/13. Router C Router C Router C Router C will use ICMP to inform Host 1. must match the following information: 1. D.com . Get Complete Collection of 200-120 Exam's Question and Answers. On CAT1. K value. Answer: AD Explanation: Host 1 is trying to communicate with Host 2. When running EIGRP. EIGRP routers to establish. one for each connected network Answer: A Explanation: This question is to examine the understanding of the interaction between EIGRP routers. What will happen in this scenario? A.1Q trunk is configured between the two switches.

"VLAN mismatch" can cause traffic from one vlan to leak into another vlan. What could be the problem? Get Complete Collection of 200-120 Exam's Question and Answers. http://www.1Q protocol.Answer: C Explanation: A "native VLAN mismatch" error will appear by CDP if there is a native VLAN mismatch on an 802. What conclusions can be made about this design? A. QUESTION 161 Refer to the exhibit. E.passexamvce. Hosts in the Admin VLAN are able to communicate. D. QUESTION 162 Refer to the exhibit. The hosts in VLANs 10 and 15 on Sw11 are unable to communicate with hosts in the same VLANs on Sw12. with all hosts configured in the same VLAN. This design will function as intended. The router interfaces must be encapsulated with the 802. The connection between switches should be a trunk. The port-to-VLAN assignments are identical on the two switches. A technician is troubleshooting host connectivity issues on the switches. B. C. Spanning-tree will need to be used. If two interfaces are in the same network.1Q link.com . The exhibit represents this design. The router will not accept the addressing scheme. the router will not accept it and show error when the administrator assigns it. Answer: C Explanation: Each interface on a router must be in a different network. A network technician is asked to design a small network with redundancy.

The Fa0/1 port is not operational on one of the switches.A. Answer: B Explanation: In order for hosts in the same VLAN to communicate with each other over multiple switches. C. E. http://www. The link connecting the switches has not been configured as a trunk. those switches need to be configured as trunks on their connected interfaces so that they can pass traffic from multiple VLANs. Port FastEthernet 0/1 needs to be configured as an access link on both switches. QUESTION 163 Refer to the exhibit. What is the cause of the problem? Get Complete Collection of 200-120 Exam's Question and Answers.com . The Bigtime router is unable to authenticate to the Littletime router. At least one port needs to be configured in VLAN 1 for VLANs 10 and 15 to be able to communicate.passexamvce. A router is required for hosts on SW11 in VLANs 10 and 15 to communicate with hosts in the same VLAN on Sw12. B. D.

The passwords do not match on the two routers. so the next step would be to check the Get Complete Collection of 200-120 Exam's Question and Answers. C. The routers cannot be connected from interface S0/0 to interface S0/0. http://www. B. QUESTION 164 Refer to the exhibit. Given this output for SwitchC. D. The usernames are incorrectly configured on the two routers. Check the trunk encapsulation mode for SwitchA's fa0/2 port. C. Check the duplex mode for SwitchA's fa0/2 port. Answer: C Explanation: Here we can see that this port is configured for full duplex. With CHAP authentication. D. one router must authenticate to another router.com .A. Answer: B Explanation: With CHAP authentication. The routers cannot be configured to authenticate to each other. B. it is configured as little123 on one side and big123 on the other. Check the duplex mode for SwitchC's fa0/1 port. Check the trunk encapsulation mode for SwitchC's fa0/1 port. E. CHAP authentication cannot be used on a serial interface. what should the network administrator's next action be? A.passexamvce. Here. the configured passwords must be identical on each router.

1.65/27: Get Complete Collection of 200-120 Exam's Question and Answers.62/27: Increment: 32 Network address: 192. B.168. An attempt to deny web access to a subnet blocks all traffic from the subnet. and can not be used globally for Internet use. D. because other public routers can use the same range.1. QUESTION 166 Refer to the exhibit.duplex setting of the port on the other switch.168. C. A conflict of IP addresses happens. Addresses in a private range will be not be routed on the Internet backbone. Answer: A Explanation: Private RFC 1918 IP addresses are meant to be used by organizations locally within their own network only.passexamvce.168.63 For the network 192.1.168. The NAT process will be used to translate this address to a valid IP address. C. http://www. A mismatched trunk encapsulation would not result in input errors and CRC errors. no ip access-class 102 in no ip access-class 102 out no ip access-group 102 in no ip access-group 102 out no ip access-list 102 in Answer: D Explanation: Now let's find out the range of the networks on serial link: For the network 192. D. B. E.32 Broadcast address: 192.1. QUESTION 165 What will happen if a private IP address is assigned to a public interface connected to an ISP? A. Which interface command immediately removes the effect of ACL 102? A. Only the ISP router will have the capability to access the public network.com .

Based on the information in the graphic.168.passexamvce.1. C. B. The graphic shows the output of the show ip ospf interface e0 command for routers R1 and R2. E. B.com . The OSPF process ID numbers must match.) A.168. D.95 -> These two IP addresses don't belong to the same network and they can't see each other QUESTION 167 Which router IOS commands can be used to troubleshoot LAN connectivity problems? (Choose three. Tracert. QUESTION 168 A network administrator is troubleshooting the OSPF configuration of routers R1 and R2. ipconfig. Get Complete Collection of 200-120 Exam's Question and Answers. not IOS. http://www. The priority on R1 should be set higher. and winipcfg are PC commands. and show interfaces are all valid troubleshooting IOS commands.Increment: 32 Network address: 192. ping tracert ipconfig show ip route winipcfg show interfaces Answer: ADF Explanation: Ping. E. C. F. F. what is the cause of this problem? A.1. The hello and dead timers are not configured properly. A backup designated router needs to be added to the network. The routers cannot establish an adjacency relationship on their common Ethernet link. show ip route. The OSPF area is not configured properly. The cost on R1 should be set higher.64 Broadcast address: 192. D.

C. http://www. D. B. C. The dead interval is also set to 20 on R1 but it is 40 on R2. Answer: C Explanation: The "switchport access vlan 3" will put that interface as belonging to VLAN 3 while also updated the VLAN database automatically to include VLAN 3. Router# Router# Router# Router# show show show show ip ip ip ip eigrp eigrp eigrp eigrp adjacency topology interfaces neighbors Answer: D Explanation: Below is an example of the show ip eigrp neighbors command. The retransmit interval and the queue counts for the adjacent routers also need to be checked. E. D. It is an example of an improperly implemented redundant topology. The retransmit interval (Smooth Round Trip Timer . QUESTION 171 A network administrator is troubleshooting an EIGRP problem on a router and needs to confirm the IP addresses of the devices with which the router has established adjacency.SRTT) and the queue counts (Q count.dat. What happens if you set the switchport access vlan 3 command in interface configuration mode? A.passexamvce. which shows the number of queued EIGRP packets) for the adjacent routers are listed: Get Complete Collection of 200-120 Exam's Question and Answers. What command will display the required information? A. the hello and dead intervals must match and here we can see the hello interval is set to 5 on R1 and 10 on R2. The port turns amber. B.com . B. during high traffic periods after broken links are re-established when upper-layer protocols require high reliability in an improperly implemented redundant topology when a dual ring topology is in use Answer: D Explanation: If we connect two switches via 2 or more links and do not enable STP on these switches then a loop (which creates multiple copies of the same unicast frame) will occur. QUESTION 169 In which circumstance are multiple copies of the same unicast frame likely to be transmitted in a switched LAN? A. C. The command is accepted and you must configure the VLAN manually. D. QUESTION 170 VLAN 3 is not yet configured on your switch.Answer: D Explanation: In OSPF. The command is rejected. The command is accepted and the respective VLAN is added to vlan.

EIGRP is also configured on these routers with a lower administrative distance. 2. R1 and R2 are the DR and BDR. R1 and R3 are configured in different areas. Hello and failure time interval timer.passexamvce.QUESTION 172 Refer to the graphic. F.com . R1 is unable to establish an OSPF neighbor relationship with R3.) Get Complete Collection of 200-120 Exam's Question and Answers. E. So as to make the two routers become neighbors. 3. The hello and dead interval timers are not set to the same values on R1 and R3. so OSPF will not establish neighbor adjacency with R3. All of the routers need to be configured for backbone Area 1. http://www.) A. What are possible reasons for this problem? (Choose two. QUESTION 173 Refer to the exhibit. each router must be matched with the following items: 1. C. Which of the following will correct the problems? (Choose two. The network shown in the diagram is experiencing connectivity problems. The area ID and its types. D. Answer: DF Explanation: This question is to examine the conditions for OSPF to create neighborhood. A static route has been configured from R1 to R3 and prevents the neighbor adjacency from being established. OSPF Password (Optional). B.

F.255.1.1.255.10.X Mask : 255.1. D.2 -.0 Gateway : 10. B.com .2. E.2.2. Configure the IP address of Host A as 10.1.1. Answer: BD Explanation: The switch 1 is configured with two VLANs: VLAN1 and VLAN2.224. Configure the gateway on Host A as 10.12 Mask : 255.1.254/24 VLAN1 Fa0/0. Configure the masks on both hosts to be 255.255.1. C.1.255. A problem with network connectivity has been observed.A. http://www.255.254 The IP information of member Host B in VLAN2 is as follows: Address : 10.0 Gateway : 10. What would be an effect of this cable being disconnected? Get Complete Collection of 200-120 Exam's Question and Answers. Configure the IP address of Host B as 10.2.1.0 QUESTION 174 Refer to the exhibit. Configure the gateway on Host B as 10.2. Configure the masks on both hosts to be 255. The IP information of member Host A in VLAN1 is as follows: Address : 10.255.1 -.1.1. It is suspected that the cable connected to switch port Fa0/9 on Switch1 is disconnected.2.126 Mask : 255.2.1.passexamvce.254 The configuration of sub-interface on router 2 is as follows: Fa0/0.1.255.255.254.1.1.240. The layer3 addressing information of Host B should be modified as follows: Address : 10.255.10.1.1.255.1.254/24 VLAN2 It is obvious that the configurations of the gateways of members in VLAN2 and the associated network segments are wrong.

HostA cannot ping HostB. Assuming routing is properly configured.com . connections between switches are assumed to be trunks. Host B would not be able to access the server in VLAN9. C. The actual mechanics of how bridges communicate and how the STP algorithm works will be discussed at length in the following topics. Communication between VLAN3 and the other VLANs would be disabled. In addition. STP creates a loopfree tree structure consisting of leaves and branches that span the entire Layer 2 network. Note that the terms bridge and switch are used interchangeably when discussing STP. The transfer of files from Host B to the server in VLAN9 would be significantly slower. what is the cause of this problem? Get Complete Collection of 200-120 Exam's Question and Answers. Answer: D Explanation: Spanning-Tree Protocol (STP) is a Layer 2 protocol that utilizes a special-purpose algorithm to discover physical loops in a network and effect a logical loop-free topology. B.A. D.passexamvce. Host B would not be able to access the server in VLAN9 until the cable is reconnected. http://www. Then normal network function would resume. unless otherwise indicated. QUESTION 175 Refer to the exhibit. For less than a minute.

Answer: D Explanation: Now let's find out the range of the networks on serial link: For the network 192. The Fa0/0 interface on RouterA is on a subnet that can't be used. learning and forwarding) while STP has 5 port states (blocking.1.62/27: Increment: 32 Network address: 192. E.65/27: Increment: 32 Network address: 192.168. The address of SwitchA is a subnet address.1.168.1D Spanning Tree Protocol (STP).32 Broadcast address: 192.passexamvce. C.95 -> These two IP addresses don't belong to the same network and they can't see each other QUESTION 176 Which port state is introduced by Rapid-PVST? A. Get Complete Collection of 200-120 Exam's Question and Answers.63 For the network 192. D. B.168.1. So discarding is a new port state in PVST+. forwarding and disabled). C.A. HostA is not on the same subnet as its default gateway. D.168. But PVST+ has only 3 port states (discarding. http://www.168. learning.168. The Fa0/0 interface on RouterB is using a broadcast address.1. B. The serial interfaces of the routers are not on the same subnet.com . learning listening discarding forwarding Answer: C Explanation: PVST+ is based on IEEE802.1.64 Broadcast address: 192.1. listening.

Reseat all cables.QUESTION 177 Refer to the exhibit. QUESTION 178 Refer to the exhibit. The two connected ports on the switch are not turning orange or green. C. What is the problem? Get Complete Collection of 200-120 Exam's Question and Answers. E. Reboot all of the devices. What would be the most effective steps to troubleshoot this physical layer problem? (Choose three. A network administrator attempts to ping Host2 from Host1 and receives the results that are shown. Ensure that the Ethernet encapsulations match on the interconnected router and switch ports. Ensure that cables A and B are straight-through cables.) A.passexamvce. B. Answer: BDF Explanation: The ports on the switch are not up indicating it is a layer 1 (physical) problem so we should check cable type. F. Ensure the switch has power. power and how they are plugged in. http://www. D. Ensure cable A is plugged into a trunk port.com .

D.168. E. The message destination host unreachable from Router1 indicates that the problem occurs when the data is forwarded from Host1 to Host2. F.) A.168. Interface S0/0 on RouterB is administratively down.3. http://www. Answer: C Explanation: Host1 tries to communicate with Host2. B. The cable that is connected to S0/0 on RouterA is faulty. B. The default gateway on Host1 is incorrect. QUESTION 179 Refer to the exhibit.com .0 are unable to reach hosts in network 192. C. Hosts in network 192.2. According to the topology. TCP/IP is not functioning on Host1 The link between Router1 and Router2 is down. The link between Switch1 and Router1 is down. Based on the output from RouterA.0. The link between Host1 and Switch1 is down.A. what are two possible reasons for the failure? (Choose two. Interface Fa0/0 on Router1 is shutdown.passexamvce. we can infer that The link between Router1 and Router2 is down. Get Complete Collection of 200-120 Exam's Question and Answers.

A DHCP server uses a gratuitous ARP to detect DHCP clients. E. E. C. F. If an address conflict is detected. F. The could be a result of mismatched encapsulation or the interface not receiving a clock signal from the CSU/DSU. http://www. The encapsulation that is configured on S0/0 of RouterB does not match the encapsulation that is configured on S0/0 of RouterA Answer: EF Explanation: From the output we can see that there is a problem with the Serial 0/0 interface. At which OSI layer is the problem? A.10.passexamvce. If an address conflict is detected. A DHCP client uses a ping to detect address conflicts. D. QUESTION 180 Refer to the exhibit. D. An administrator pings the default gateway at 10. The command ping is often used to verify the network connectivity. B. the address is removed from the pool for an amount of time configurable by the administrator. E.10. It is enabled. but the line protocol is down.1 and sees the output as shown. B. the address is removed from the pool and an administrator must resolve the conflict. A DHCP client uses a gratuitous ARP to detect a DHCP server. Interface S0/0 on RouterA is configured with an incorrect subnet mask.C. QUESTION 181 Which statement is correct regarding the operation of DHCP? A.com . C. D. Interface S0/0 on RouterA is not receiving a clock signal from the CSU/DSU. data link layer application layer access layer session layer network layer Answer: E Explanation: The command ping uses ICMP protocol. which is a network layer protocol used to propagate control message between host and router. Answer: D Explanation: Get Complete Collection of 200-120 Exam's Question and Answers. If an address conflict is detected. the address is removed from the pool and will not be reused until the server is rebooted. The IP address that is configured on S0/0 of RouterB is not in the correct subnet. so it works at the network layer.

DHCP checks for conflicts using ping and gratuitous ARP. but the connection to the remote router is not available Get Complete Collection of 200-120 Exam's Question and Answers. During address assignment. B.html QUESTION 182 Refer to the exhibit. the ACL does not restrict anyone from the network.An address conflict occurs when two hosts use the same IP address. and is no longer actively seeking the address of the remote router. the address is removed from the pool. The PVC is configured correctly.128/28) from accessing the network.passexamvce. QUESTION 183 The output of the show frame-relay pvc command shows "PVC STATUS = INACTIVE".cisco. The PVC is configured correctly. http://www. ACDB BADC DBAC CDBA Answer: D Explanation: Routers go line by line through an access list until a match is found and then will not look any further.21.com/en/US/docs/ios/12_1/iproute/configuration/guide/1cddhcp. So. Then. Statements A. in this cast the two hosts in line C and D. The PVC is configured correctly on the local switch.com . D. The DCE device creates and sends the report to the DTE devices. C. The address will not be assigned until the administrator resolves the conflict. and is waiting for interesting traffic to trigger a call to the remote router. but there is a problem on the remote end of the PVC. include the subnet (B) and then finally the rest of the traffic (A). But as is. D. is operating normally. even if a more specific of better match is found later on in the access list. and D of ACL 10 have been entered in the shown order and applied to interface E0 inbound. The PVC is configured correctly and is operating normally. B. Answer: D Explanation: The PVC STATUS displays the status of the PVC. it it best to begin with the most specific entries first. to prevent all hosts (except those whose addresses are the first and last IP of subnet 172. E. C. C. but no data packets have been detected for more than five minutes. B. How can the ACL statements be re-arranged so that the system works as intended? A. is operating normally. What does this mean? A.1. If a conflict is detected. http://www. The PVC is not configured on the local switch. There are 4 statuses: + ACTIVE: the PVC is operational and can transmit data + INACTIVE: the connection from the local router to the switch is working.

IPSec can be used to protect one or more data flows between IPSec peers. data integrity. B. http://www. QUESTION 184 Which command is used to enable CHAP authentication. Layer 2 Layer 3 Layer 4 Layer 5 Answer: A Explanation: The Point-to-Point Protocol (PPP) provides a standard method for transporting multi-protocol datagrams over point-to-point links.8 102 broadcast was entered on the router. This status is rarely seen so it is ignored in some books. B. D. It is a data link layer protocol (layer 2 in the OSI model ) QUESTION 187 The command frame-relay map ip 10. C. Which of the following statements is true concerning this command? Get Complete Collection of 200-120 Exam's Question and Answers. QUESTION 186 At which layer of the OSI model does PPP perform? A.16. with PAP as the fallback method. on a serial interface? A. and data authentication between participating peers at the IP layer. B. Router(config-if)# Router(config-if)# Router(config-if)# Router(config-if)# ppp authentication ppp authentication authentication ppp authentication ppp chap chap chap chap fallback ppp pap fallback ppp pap Answer: B Explanation: This command tells the router to first use CHAP and then go to PAP if CHAP isn't available. C.com . D.+ DELETED: the PVC is not present and no LMI information is being received from the Frame Relay switch + STATIC: the Local Management Interface (LMI) mechanism on the interface is disabled (by using the "no keepalive" command). QUESTION 185 Which protocol is an open standard protocol framework that is commonly used in VPNs. RSA L2TP IPsec PPTP Answer: C Explanation: IPSec is a framework of open standards that provides data confidentiality. PPP was originally emerged as an encapsulation protocol for transporting IP traffic between two peers.121. D.passexamvce. to provide secure end-to-end communications? A. C.

QUESTION 189 Which Layer 2 protocol encapsulation type supports synchronous and asynchronous circuits and has built-in security mechanisms? A. http://www.) A. 102 is the remote DLCI that will receive the information. PPP was originally emerged as an encapsulation protocol for transporting IP traffic between two peers.121.8 is the local router port used to forward data. C. B. C.25 Frame Relay Answer: B Explanation: PPP: Provides router-to-router and host-to-network connections over synchronous and asynchronous circuits. such as RIP updates. D. B. typically when used with VPN technology. E. so the PVC supports broadcast. QUESTION 190 Which encapsulation type is a Frame Relay encapsulation type that is supported by Cisco routers? Get Complete Collection of 200-120 Exam's Question and Answers. PPP WAP DSL L2TPv3 Ethernet Answer: AC Explanation: The Point-to-Point Protocol (PPP) provides a standard method for transporting multi-protocol datagrams over point-to-point links. Answer: E Explanation: Broadcast is added to the configurations of the frame relay. C. DSL is also considered a WAN connection. B. The broadcast option allows packets.16.passexamvce. QUESTION 188 Which two options are valid WAN connectivity methods? (Choose two. as it can be used to connect networks. to be forwarded across the PVC. allowing the routing protocol updates that use the broadcast update mechanism to be forwarded across itself. PPP was designed to work with several network layer protocols. This command should be executed from the global configuration mode. including IP. D.com . The IP address 10.A. such as Password Authentication Protocol (PAP) and Challenge Handshake Authentication Protocol (CHAP). E. PPP also has built-in security mechanisms. This command is required for all Frame Relay configurations. It is a data link layer protocol used for WAN connections. HDLC PPP X. D.

They represent the ANSI Annex D. respectively. and Q933a. C. Note: Three LMI options are supported by Cisco routers are ansi. IETF ANSI Annex D Q9333-A Annex A HDLC Answer: A Explanation: Cisco supports two Frame Relay encapsulation types: the Cisco encapsulation and the IETF Frame Relay encapsulation. incorrect bandwidth configuration incorrect LMI configuration incorrect map statement incorrect IP address Answer: C Explanation: With this topology and the DLCI.passexamvce. HDLC is a WAN protocol same as Frame-Relay and PPP so it is not a Frame Relay encapsulation type. Cisco. You can test with your Cisco router when typing the command Router(configif)# encapsulation frame-relay ? on a WAN link. From the topology we can deduce traffic with a DLCI of 75 will be sent to 192.1 but the text below wrongly shows "DLCI 50 for the next router 192.2. http://www.A. just press Enter to use it). Below is the output of this command (notice Cisco is the default encapsulation so it is not listed here.com .1 -> . What is the meaning of the term dynamic as displayed in the output of the show frame-relay map command shown? Get Complete Collection of 200-120 Exam's Question and Answers. D. and ITU Q933-A (Annex A) LMI types. B. C. QUESTION 192 Refer to the exhibit. we can only think of "incorrect map statement". The former is often used to connect two Cisco routers while the latter is used to connect a Cisco router to a non-Cisco router.2. B. which is in conformance with RFC 1490 and RFC 2427. what is the most likely cause of the problem? A. Cisco. QUESTION 191 RouterA is unable to reach RouterB.0. D.168. Both routers are running IOS version 12.168. After reviewing the command output and graphic.

255.255. E. HDLC. Main(config)# interface serial 0/0 Main(config-if)# ip address 172. How should the network administrator configure the serial interface of the main office router to make the connection? A. The DLCI 100 was dynamically allocated by the router.255. B.passexamvce. Inverse ARP works much the same way Address Resolution Protocol (ARP) works on a LAN. The default.1.252 Main(config-if)# encapsulation ppp Main(config-if)# no shut C. Main(config)# interface serial 0/0 Main(config-if)#ip address 172.255. D.16. QUESTION 193 A network administrator needs to configure a serial link between the main office and a remote location.com .3. it updates its DLCI-to-Layer 3 address mapping table.1. dynamic address mapping takes place automatically. the device knows the Layer 3 IP address and needs to know the remote data link MAC address.1 255.3. with ARP.252 Main(config-if)# no shut B.255. When using dynamic address mapping. The mapping between DLCI 100 and the end station IP address 172. Dynamic address mapping is enabled by default for all protocols enabled on a physical interface.1.16. Main(config)# interface serial 0/0 Main(config-if)# ip address 172.1 255.1 from a DHCP server. the router knows the Layer 2 address which is the DLCI.16. The Serial0/0 interface acquired the IP address of 172. With Inverse ARP. The other option is PPP which is Get Complete Collection of 200-120 Exam's Question and Answers. no static address mapping is required.255. However. but needs to know the remote Layer 3 IP address.252 Main(config-if)# encapsulation frame-relay Main(config-if)# authentication chap Main(config-if)# no shut D.1. The DLCI 100 will be dynamically changed as required to adapt to changes in the Frame Relay cloud. C.16.1 was learned through Inverse ARP.255.252 Main(config-if)#encapsulation ietf Main(config-if)# no shut Answer: B Explanation: With serial point to point links there are two options for the encapsulation. The router at the remote office is a non-Cisco router.1 255.16. Therefore. Answer: E Explanation: Inverse Address Resolution Protocol (Inverse ARP) was developed to provide a mechanism for dynamic DLCI to Layer 3 address maps. Inverse ARP requests a next-hop protocol address for each active PVC. If the Frame Relay environment supports LMI autosensing and Inverse ARP.A.16. Once the requesting router receives an Inverse ARP response.1 255. is Cisco proprietary and works only with other Cisco routers. http://www.255. Main(config)# interface serial 0/0 Main(config-if)# ip address 172. The Serial0/0 interface is passing traffic.

status defined. C. F.4. C.. where as a point to point link would need to be provisioned to each location.4. E. E. dynamic. dynamic. D.passexamvce. status defined.4. increased security since all traffic is encrypted. http://www.com .0x6410). D.CISCO. These include reduced cost. static.4. B.broadcast..4 dlci 401(0x191. activeSerial0/0 (up): ip 10.) A. Get Complete Collection of 200-120 Exam's Question and Answers. the number of BECN packets that are received by the router the value of the local DLCI the number of FECN packets that are received by the router the status of the PVC that is configured on the router the IP address of the local router Answer: BD Explanation: Sample "show frame-relay map" output: R1#sh frame mapSerial0/0 (up): ip 10. and increased scalability as s single WAN link can be used to connect to all locations in a VPN. The network administrator suspects that the link is overloaded.3 dlci 403(0x193. QUESTION 195 Which two statistics appear in show frame-relay map output? (Choose two.broadcast.1 dlci 401(0x191. reduced cost better throughput broadband incompatibility increased security scalability reduced latency Answer: ADE Explanation: IPsec offer a number of advantages over point to point WAN links. QUESTION 194 What are three reasons that an organization with multiple branch offices and roaming users might implement a Cisco VPN solution instead of point-to-point WAN links? (Choose three. active QUESTION 196 Users have been complaining that their Frame Relay connection to the corporate site is very slow. status defined.4.standards based and supported by all vendors. particularly when multiple locations are involved.4.) A. B.0x6410). activeSerial0/0 (up): ip 10.0x6430).

which output value indicates to the local router that traffic sent to the corporate site is experiencing congestion? A.Based on the partial output of the Router# show frame relay pvc command shown in the graphic. you must use IETF4 encapsulation on both devices. http://www. show frame-relay lmi show frame-relay map show frame-relay pvc show interfaces serial Answer: B Explanation: When connecting Cisco devices with non-Cisco devices. oversubscribed port. etc. Check the encapsulation type on the Cisco device with the show frame-relay map exec command. D. it will set the BECN bit on packets being returned to the sending device and the FECN bit on the packets being sent to the receiving device. B. B. congestion being full buffers.com . E. QUESTION 198 It has become necessary to configure an existing serial interface to accept a second Frame Relay Get Complete Collection of 200-120 Exam's Question and Answers. C. DLCI = 100 last time PVC status changed 00:25:40 in BECN packets 192 in FECN packets 147 in DE packets 0 Answer: C Explanation: If device A is sending data to device B across a Frame Relay infrastructure and one of the intermediate Frame Relay switches encounters congestion. D. overloaded resources. C. QUESTION 197 Which command allows you to verify the encapsulation type (CISCO or IETF) for a Frame Relay link? A.passexamvce.

Get Complete Collection of 200-120 Exam's Question and Answers. D.) A. D. Remove the IP address from the physical interface. Disable split horizon to prevent routing loops between the subinterface networks. you must use subinterfaces.passexamvce. Configure each subinterface with its own IP address. C.com . All TCP traffic is marked discard eligible. Note: In the Frame Relay frame format. F. CHAP periodically verifies the identity of the client by using a three-way handshake. The verification is based on a shared secret (such as the client user's password). Which of the following procedures are required to accomplish this task? (Choose three. C. Answer: D Explanation: Committed information rate (CIR): The minimum guaranteed data transfer rate agreed to by the Frame Relay switch. CHAP uses a three-way handshake. Frames that are sent in excess of the CIR are marked as discard eligible (DE) which means they can be dropped if the congestion occurs within the Frame Relay network. CHAP uses a two-way handshake. and no IP address will be assigned to the main interface. QUESTION 199 What occurs on a Frame Relay network when the CIR is exceeded? A. D. Each subinterface will then have its own IP address. All UDP traffic is marked discard eligible and a BECN is sent.) A. and may happen again at any time afterwards. F. QUESTION 200 Which two statements about using the CHAP authentication mechanism in a PPP link are true? (Choose two. E. Answer: BC Explanation: CHAP is an authentication scheme used by Point to Point Protocol (PPP) servers to validate the identity of remote clients.virtual circuit. B. All traffic exceeding the CIR is marked discard eligible. Configure static Frame Relay map entries for each subinterface network. CHAP authentication is performed only upon link establishment. E. This happens at the time of establishing the initial link (LCP). All TCP traffic is marked discard eligible and a BECN is sent. there is a bit called Discard eligible (DE) bit that is used to identify frames that are first to be dropped when the CIR is exceeded. B. http://www. Answer: ACD Explanation: For multiple PVC's on a single interface. with each subinterface configured for each PVC. CHAP authentication passwords are sent in plaintext. B. Encapsulate the physical interface with multipoint PPP. Create the virtual interfaces with the interface command. C. CHAP has no protection from playback attacks. CHAP authentication periodically occurs after link establishment.

C. It cannot be used on R3 or R1.com . B. B. B. Note that this DLCI has only local significance.1. D. QUESTION 202 What is the result of issuing the frame-relay map ip 192.2 address. D. NCP ISDN SLIP LCP DLCI Answer: D Get Complete Collection of 200-120 Exam's Question and Answers. DLCI 17 describes the dial-up circuit from R2 and R3 to the service provider. DLCI 17 describes the ISDN circuit between R2 and R3.2 IP address are received defines the DLCI that is used for all packets that are sent to the 192.passexamvce. Frame Relay is strictly a Layer 2 protocol suite.168. D. QUESTION 203 Which PPP subprotocol negotiates authentication options? A. E.1.168. In this case. Answer: C Explanation: DLCI-Data Link Connection Identifier Bits: The DLCI serves to identify the virtual connection so that the receiving end knows which information connection a frame belongs to.QUESTION 201 Refer to the exhibit.2 IP address Answer: D Explanation: This command identifies the DLCI that should be used for all packets destined to the 192. DLCI 202 should be used. defines the destination IP address that is used in all broadcast packets on DCLI 202 defines the source IP address that is used in all broadcast packets on DCLI 202 defines the DLCI on which packets from the 192. C.1.168. http://www. DLCI 17 describes a PVC on R2. DLCI 17 is the Layer 2 address used by R2 to describe a PVC to R3.2 202 broadcast command? A.1.168. C. Which statement describes DLCI 17? A.

B. Common LCP options include the PPP MRU. Each subinterface requires a unique IP address/subnet. E. status defined. B. They are ideal for full-mesh topologies. active QUESTION 206 What is the purpose of Inverse ARP? A. QUESTION 204 What are two characteristics of Frame Relay point-to-point subinterfaces? (Choose two.4. They require a unique subnet within a routing domain. Remember.4. They emulate leased lines.broadcast. D.passexamvce. status defined. and multilink options. B. LPC negotiates link and PPP parameters to dynamically configure the data link layer of a PPP connection. to map a known IP address to a MAC address to map a known DLCI to a MAC address to map a known MAC address to an IP address to map a known DLCI to an IP address to map a known IP address to a SPID to map a known SPID to a MAC address Answer: D Explanation: Get Complete Collection of 200-120 Exam's Question and Answers.com .) A. dynamic.4. the authentication protocol. D. F.4. Answer: BC Explanation: Subinterfaces are used for point to point frame relay connections.4.CISCO. D. you can not assign multiple interfaces in a router that belong to the same IP subnet. status defined. They create split-horizon issues. emulating virtual point to point leased lines. compression of PPP header fields.Explanation: The PPP Link Control Protocol (LCP) is documented in RFC 1661. static.0x6410).broadcast... http://www. callback. C. show frame-relay pvc show frame-relay lmi show frame-relay map show frame relay end-to-end Answer: C Explanation: Sample "show frame-relay map" output: R1#sh frame mapSerial0/0 (up): ip 10. They require the use of NBMA options when using OSPF.1 dlci 401(0x191. activeSerial0/0 (up): ip 10. C. dynamic.4 dlci 401(0x191. E. C.0x6410). QUESTION 205 What command is used to verify the DLCI destination address in a Frame Relay static configuration? A.4.0x6430). activeSerial0/0 (up): ip 10.3 dlci 403(0x193.

but they are unable to communicate. D.Dynamic address mapping relies on the Frame Relay Inverse Address Resolution Protocol (Inverse ARP). including both dynamic and static mapping entries. The Frame Relay router sends out Inverse ARP requests on its Frame Relay PVC to discover the protocol address of the remote device connected to the Frame Relay network.10. These need to match on both ends. What path will packets take from a host on the 192. which contains all resolved Inverse ARP requests.168. defined by RFC 1293. QUESTION 208 Refer to the exhibit. to resolve a next hop network protocol (IP) address to a local DLCI value. C.com . The responses to the Inverse ARP requests are used to populate an address-to-DLCI mapping table on the Frame Relay router or access server. http://www. QUESTION 207 Two routers named Atlanta and Brevard are connected via their serial interfaces as illustrated. identify the fault on the Brevard router that is causing the lack of connectivity. A. B. The router builds and maintains this address-to. E. The company uses EIGRP as the routing protocol. Given the partial configurations.DLCI mapping table. F.192/26 network to a host on the LAN attached to router R1? Get Complete Collection of 200-120 Exam's Question and Answers. incompatible IP address insufficient bandwidth incorrect subnet mask incompatible encapsulation link reliability too low IPCP closed Answer: D Explanation: The correct explanation should be that the Atlanta router is usng HDLC while the Brevard is using PPP. The Atlanta router is known to have the correct configuration.passexamvce.

passexamvce.64/26 subnet. D.168. all the (current and future) passwords are encrypted.168.10. The path of the packets will be R3 to R2 to R1.com .9.168.10. by encrypting all passwords passing through the router by encrypting passwords in the plain text configuration file by requiring entry of encrypted passwords for access to the device by configuring an MD5 encrypted key to be used by routing protocols to validate routing exchanges by automatically suggesting encrypted passwords for use in configuring the router Answer: B Explanation: By using this command. The path of the packets will be both R3 to R2 to R1 AND R3 to R1.64 will be routed from R3 -> R1 -> LAN on R1.A. Answer: D Explanation: Host on the LAN attached to router R1 belongs to 192. The path of the packets will be R3 to R1 to R2.8/30 network (the network between R1 & R3) -> packets destined for 192.10. C. C. E. D. B. B. This command is Get Complete Collection of 200-120 Exam's Question and Answers.10. http://www.168. QUESTION 209 How does using the service password-encryption command on a router provide additional security? A. The path of the packets will be R3 to R1. From the output of the routing table of R3 we learn this network can be reach via 192. which is an IP address in 192.

primarily useful for keeping unauthorized individuals from viewing your password in your configuration file QUESTION 210 Refer to the exhibit. http://www. The no shutdown command has not been entered for the port. An IP address must be configured for the port.1Q-compliant trunk to another switch. Switch port FastEthernet 0/24 on ALSwitch1 will be used to create an IEEE 802. by using the following command: (Config-if)#switchport mode trunk QUESTION 211 Refer to the exhibit. which IP addresses would be assigned to the Get Complete Collection of 200-120 Exam's Question and Answers. The port is currently configured for access mode. Based on the output shown. The correct encapsulation type has not been configured.passexamvce. To make a trunk link the port should configured as a trunk port. In the Frame Relay network.com . B. VLANs have not been created yet. Answer: C Explanation: According to the output shown the switchport (layer 2 Switching) is enabled and the port is in access mode. not an access port. C. D. E. what is the reason the trunk does not form. even though the proper cabling has been attached? A.

1 /24 DLCI 17: 192.11.10.10.168. A new subnet with 60 hosts has been added to the network.168.1 /24 DLCI 17: 192. The R2-R1 connection (DLCI 16 to 99) would have each router within the same subnet.10.168.3 /24 B.com .168. Similarly.11.168.interfaces with point-to.10. Which subnet address should this network use to provide enough usable addresses while wasting the fewest addresses? Get Complete Collection of 200-120 Exam's Question and Answers.1 /24 DLCI 28: 192. DLCI 16: 192.10.1 /24 DLCI 99: 192.2 /24 DLCI 99: 192.10.168.1 /24 DLCI 99: 192.1 /24 DLCI 17: 192. http://www.13.2 /24 DLCI 28: 192.168.4 /24 Answer: C Explanation: With point to point PVC.168.11. DLCI 16: 192. each connection needs to be in a separate subnet. the R3-R1 connection would also be in the same subnet.168. QUESTION 212 Refer to the exhibit.10.3 /24 DLCI 28: 192.168.168.10.10.1 /24 DLCI 99: 192.10.12.2 /24 DLCI 28: 192.168.2 /24 D.passexamvce.168.point PVCs? A.168.10.1 /24 DLCI 17: 192.168. DLCI 16: 192. DLCI 16: 192.168. but it must be in a different one than the R2-R1 connection.1 /24 C.

3. D. B.40/30 Link A .1.112/30 Answer: BD Explanation: Only a /30 is needed for the point to point link and sine the use of the ip subnet-zero was used. C.3.3. Which network addresses should be used for Link A and Network A? (Choose two.16.172.172.168. Network A . a /25 is required for 120 hosts and again 172. E.0/30 is valid. D.56/27 192.172.127 QUESTION 213 Refer to the exhibit.63 64 .16.168.1.168.16. valid option.3.3.128/25 Network A .16.64/27 Answer: C Explanation: A subnet with 60 host is 2*2*2*2*2*2 = 64 -2 == 62 6 bits needed for hosts part.168. All of the routers in the network are configured with the ip subnet-zero command.56/26 192.3.16.48/26 Network A .172. 8bits+ 8bits+ 8bits + 2bits = /26 /26 bits subnet is 24bits + 11000000 = 24bits + 192 256 -192 = 64 0 .passexamvce. Therefore subnet bits are 2 bits (8-6) in fourth octet. Also.0/30 Link A .128/25 is the best.A. http://www. 172. F.com .16. B.1.192/26 Link A .64/26 192.) A.16.3. 192.172.3.16. C.172. QUESTION 214 Get Complete Collection of 200-120 Exam's Question and Answers.1.

The last is from RIPv2 and has a metric of 4.A router has learned three possible routes that could be used to reach a destination network.0. E. One route is from EIGRP and has a composite metric of 20514560.0 0. http://www. The Administrative Distances of popular routing protocols are listed below: QUESTION 215 A network administrator needs to allow only one Telnet connection to a router. C.com .0. the OSPF route the EIGRP route the RIPv2 route all three routes the OSPF and RIPv2 routes Answer: B Explanation: When one route is advertised by more than one routing protocol. Which route or routes will the router install in the routing table? A. service password-encryption access-list 1 permit 192. the password for Telnet access should be encrypted.1.255 line vty 0 4 login password cisco access-class 1 B.passexamvce.168. service password-encryption line vty 1 login password cisco D. For anyone viewing the configuration and issuing the show run command. enable password secret line vty 0 login password cisco C. service password-encryption line vty 0 4 login password cisco Get Complete Collection of 200-120 Exam's Question and Answers. B. Which set of commands will accomplish this task? A. the router will choose to use the routing protocol which has lowest Administrative Distance. Another route is from OSPF with a metric of 782. D.

255. http://www.0.0 0.16.252 128. According to exhibit.255.107.2 Answer: E Explanation: We use default routing to send packets with a remote destination network not in the routing table to the next-hop router. line vty0 4 would enable all 5 vty connections. C.16.2 ip route 0.0.0 255.0.255 172. The network administrator must establish a route by which London Get Complete Collection of 200-120 Exam's Question and Answers. QUESTION 216 Refer to the exhibit.0.1 ip route 0.100.0.1.1 ip route 0.100. QUESTION 217 Refer to the exhibit.100.0 255.0 0. A static route will be established on the Manchester router to direct traffic toward the Internet over the most direct path available.0.16. ip route 0.0 172.255.0.0 172.Answer: C Explanation: Only one VTY connection is allowed which is exactly what's requested. What configuration on the Manchester router will establish a route toward the Internet for traffic that originates from workstations on the Manchester LAN? A.255. Incorrect answer: command.0 128. You should generally only use default routing on stub networks--those with only one exit path out of the network.0 0.com .1.0 255. D.255.0.16.0. Syntax for default route is: ip route <Remote_Network> <Netmask> <Next_Hop_Address>.0.0.0 172.0.0.passexamvce.0. B. F.107.255. The speed of all serial links is E1 and the speed of all Ethernet links is 100 Mb/s.1 ip route 0. all traffic towards Internet that originates from workstations should forward to Router R1.0.0.0.2 ip route 0. E.0.100.

Configure a static default route on London with a next hop of 10.workstations can forward traffic to the Manchester workstations. Configure a static route on London to direct all traffic destined for 172. B.com .0/22 to 10. What is the simplest way to accomplish this? A.) Get Complete Collection of 200-120 Exam's Question and Answers. Answer: E Explanation: This static route will allow for communication to the Manchester workstations and it is better to use this more specific route than a default route as traffic destined to the Internet will then not go out the London Internet connection.1. The network administrator requires easy configuration options and minimal routing protocol traffic. Configure a dynamic routing protocol on Manchester to advertise a default route to the London router.passexamvce.1. QUESTION 218 Refer to the exhibit. What two options provide adequate routing table information for traffic that passes between the two routers and satisfy the requests of the network administrator? (Choose two.16. Configure a dynamic routing protocol on London to advertise all routes to Manchester.1.2. C. Configure Manchester to advertise a static default route to London.1. Configure a dynamic routing protocol on London to advertise summarized routes to Manchester. F. http://www.0. D.1. E.

It will encrypt all current and future passwords. a dynamic routing protocol on CentralRouter to advertise all routes to InternetRouter. E. If the service password-encryption is used. all the passwords are encrypted. a dynamic routing protocol on InternetRouter to advertise summarized routes to CentralRouter.16. As a result. D. Answer: CF Explanation: The use of static routes will provide the necessary information for connectivity while producing no routing traffic overhead. Only the enable secret password will be encrypted. default route on CentralRouter that directs traffic to InternetRouter.passexamvce.0. C.com . Only passwords configured after the command has been entered will be encrypted. AUX passwords are configured on the Cisco device. the security of device access is improved. http://www. B. F. a static route on InternetRouter to direct traffic that is destined for 172. E. a static. C.A. Only the enable password will be encrypted. Use the show run command to show most passwords in clear text. a dynamic routing protocol on InternetRouter to advertise all routes to CentralRouter. a dynamic routing protocol on CentralRouter to advertise summarized routes to InternetRouter.0/16 to CentralRouter. B. Answer: E Explanation: Enable vty. console. D. It will encrypt the secret password and remove the enable secret password from the configuration. QUESTION 219 What is the effect of using the service password-encryption command? A. QUESTION 220 Get Complete Collection of 200-120 Exam's Question and Answers.

It tells the router or switch to try to establish an SSh connection first and if that fails to use Telnet. Communication between the client and server is encrypted in both SSH version 1 and SSH version 2. Straight (non-SSH) Telnets are refused. If any other Get Complete Collection of 200-120 Exam's Question and Answers. It allows seven failed login attempts before the VTY lines are temporarily shutdown.passexamvce. line protocol down"? A. www. What is the effect of the configuration that is shown? A. C. The interface needs to be configured as a DTE device. C. If you interface is down. Answer: D Explanation: Interface can be enabled or disabled with shutdown/no shutdown command.cisco.shtml QUESTION 221 Refer to the exhibit. The interface has been configured with the shutdown command. E. It configures a Cisco network device to use the SSH protocol on incoming communications via the virtual terminal ports. E. QUESTION 222 Refer to the exhibit. add the "transport input ssh" command under the lines to limit the router to SSH connections only. It configures SSH globally for all logins. The interface is not receiving any keepalives. B. D. There is a mismatch in encapsulation types. D.Refer to the exhibit. http://www. What is the reason that the interface status is "administratively down. If you want to prevent non-SSH connections. It configures the virtual terminal lines with the password 030752180500. B. F.com . There is no encapsulation type configured. A junior network administrator was given the task of configuring port security on SwitchA to allow only PC_A to access the switched network through port fa0/1. You can bring up an interface having administratively down interface using no shutdown command.com/warp/public/707/ssh. The wrong type of cable is connected to the interface. Answer: D Explanation: Secure Shell (SSH) is a protocol which provides a secure remote access connection to network devices. it will display administratively down status.

Port security interface counters need to be cleared before using the show command. B.passexamvce. D. When running OSPF. and then observes the output from these two show commands. Port security needs to be globally enabled.com . Which two of these changes are necessary for SwitchA to meet the requirements? (Choose two. what would cause router A not to form an adjacency with router B? Get Complete Collection of 200-120 Exam's Question and Answers. Port security needs to be enabled on the interface. Answer: BD Explanation: From the output we can see that port security is disabled so this needs to be enabled.device is detected. F. E. C. Also. the maximum number of devices is set to 2 so this needs to be just one if we want the single host to have access and nothing else. Port security needs to be configured to shut down the interface in the event of a violation. The administrator configured the interface and tested it with successful pings from PC_A to RouterA. The port security configuration needs to be saved to NVRAM before it can become active. the port is to drop frames from this device.) A. QUESTION 223 Refer to the exhibit. http://www. Port security needs to be configured to allow only one learned MAC address.

passexamvce. In order to satisfy the requirements Get Complete Collection of 200-120 Exam's Question and Answers. The process identifier on router A is different than the process identifier on router B. switch(config-if)#switchport switch(config-if)#switchport B. switch(config-if)#switchport switch(config-if)#switchport C.) A. Dead interval and AREA number. B. C. Leading zeros in an IPv6 16 bit hexadecimal field are mandatory. switch(config-if)#switchport switch(config-if)#switchport mode trunk port-security mode trunk port-security mode access port-security mode access port-security maximum 1 mac-address 1 maximum 1 mac-address 1 Answer: C Explanation: This question is to examine the layer 2 security configuration. The values of the dead timers on the routers are different. The loopback addresses are on different subnets. multicast. B. switch(config-if)#switchport switch(config-if)#switchport D. anycast. There are four types of IPv6 addresses: unicast. Answer: B Explanation: To form an adjacency (become neighbor). D.A.com . D. and broadcast. router A & B must have the same Hello interval. E.s QUESTION 224 Which two of these statements are true of IPv6 address representation? (Choose two. C. Answer: BC Explanation: Leading zeros in IPv6 are optional do that 05C7 equals 5C7 and 0000 equals 0 -> D is not correct. http://www. A single interface may be assigned multiple IPv6 addresses of any type. Every IPv6 interface contains at least one loopback address. QUESTION 225 Which set of commands is recommended to prevent the use of a hub in the access layer? A. Route summarization is enabled on both routers. The first 64 bits represent the dynamically created interface ID.

D. you should perform the following configurations in the interface mode: First. B.255.248. C. manufacturer.com . meaning an Anycast address is used by a device to send data to one specific recipient (interface) that is the closest out of a group of recipients (interfaces).254.0 255.255. C. B.255. 255.0 Get Complete Collection of 200-120 Exam's Question and Answers. NIC BIA OUI VAI Answer: C Explanation: An Organizationally Unique Identifier (OUI) is a 24-bit number that uniquely identifies a vendor. configure the interface mode as the access mode Second. QUESTION 226 What is known as "one-to-nearest" addressing in IPv6? A.passexamvce. QUESTION 228 Refer to the exhibit.252.255. D. D.of this question. B. http://www.255. C.0 255. QUESTION 227 What is the first 24 bits in a MAC address called? A.0 255. enable the port security and set the maximum number of connections to 1. or other organization globally or worldwide. global unicast anycast multicast unspecified address Answer: B Explanation: IPv6 Anycast addresses are used for one-to-nearest communication. Which subnet mask will place all hosts on Network B in the same subnet with the least amount of wasted addresses? A. They are used as the first 24 nits of the MAC address to uniquely identify a particular piece of equipment.

and 10.0. and only those four networks.1.passexamvce.0 /22 10.1111 1110. D. http://www.2.com . QUESTION 231 Which two are features of IPv6? (Choose two.3. B. while a modem is used to convert digital signals over a regular POTS line. 10. A CSU/DSU converts analog signals from a router to a phone line. QUESTION 230 What is the difference between a CSU/DSU and a modem? A.254.0000 0000 -> 255. a modem converts analog signals from a router to a phone line. What is the most appropriate summarization for these routes? A.0 networks.0.0.0. A CSU/DSU converts analog signals from a router to a leased line.0.Answer: B Explanation: 310 hosts < 512 = 29 -> We need a subnet mask of 9 bits 0 -> 1111 1111.0.0. B.0 /23 10.0. A CSU/DSU converts digital signals from a router to a phone line. a modem converts analog signals from a router to a leased line.0/22 subnet mask will include the 10. D.0.0. C.0 QUESTION 229 Refer to the exhibit.0. anycast broadcast multicast podcast Get Complete Collection of 200-120 Exam's Question and Answers.1111 1111. C.0.0.0. B. Answer: D Explanation: CSU/DSU is used to convert digital signals from a router to a network circuit such as a T1. a modem converts digital signals from a router to a phone line.0. C.0. 10.) A.0. 10. A CSU/DSU converts digital signals from a router to a leased line. a modem converts digital signals from a router to a leased line.0 /21 10.255.0. D.0 /24 Answer: B Explanation: The 10.

Routing tables adapt automatically to topology changes. C. The network administrator can apply port security to dynamic access ports. + A secure port cannot be a destination port for Switched Port Analyzer (SPAN).) A. or 802. G. Routing traffic load is reduced when used in stub network links. The network administrator can apply port security to EtherChannels. + A secure port cannot belong to a Fast EtherChannel or Gigabit EtherChannel port group. + If any type of port security is enabled on the access VLAN. the load is reduced as stub routers just need a single static default route. unicast addressing. it can be argued that it is more secure (and more prone to human errors) since the network administrator will need to make changes to the routing table directly. and all addresses seen on the access VLAN (to which the port belongs) are learned as sticky secure addresses.1Q tunnel ports. you must set the maximum allowed secure addresses on the port to at least two. up to the maximum defined. instead of many routes that all have the same next hop IP address. and multicast addressing. Security increases because only the network administrator may change the routing table. anycast addressing. in stub networks where there is only a single uplink connection. Also. Configuration complexity decreases as network size increases. B. F. D.passexamvce. trunk ports. C. E. An efficient algorithm is used to build routing tables. Answer: CD Explanation: Follow these guidelines when configuring port security: + Port security can only be configured on static access ports. D. all addresses seen on the voice VLAN are learned as dynamic secure addresses. allcast Answer: AC Explanation: IPv6 addresses are classified by the primary addressing and routing methodologies common in networkinG. Get Complete Collection of 200-120 Exam's Question and Answers.com . Answer: BG Explanation: Since static routing is a manual process.) A. dynamic port security is automatically enabled on the voice VLAN. The sticky learning feature allows the addition of dynamically learned addresses to the running configuration. The network administrator can configure static secure or sticky secure MAC addresses in the voice VLAN. Route summarization is computed automatically by the router.E. the switch can learn new addresses. + You cannot configure static secure or sticky secure MAC addresses on a voice VLAN. using automatic updates. Routing updates are automatically sent to neighbors. When dynamic MAC address learning is enabled on an interface. E. + When you enable port security on an interface that is also configured with a voice VLAN. QUESTION 233 A network administrator needs to configure port security on a switch. http://www. Which two statements are true? (Choose two. + A secure port cannot be a dynamic access port. + When a voice VLAN is configured on a secure port that is also configured as a sticky secure port. QUESTION 232 Which two are advantages of static routing when compared to dynamic routing? (Choose two. B.

QUESTION 235 Which command enables IPv6 forwarding on a Cisco router? A.html QUESTION 234 What are three features of the IPv6 protocol? (Choose three.) A.0.+ The switch does not support port security aging of sticky secure MAC addresses.0. In IPv6. the transmission of a packet to all hosts on the attached link using a special broadcast address. the same result can be achieved by sending a packet to the link-local all nodes multicast group at address ff02::1. D.com . and therefore does not define broadcast addresses. ipv6 local ipv6 host ipv6 unicast-routing ipv6 neighbor Answer: C Explanation: to enable IPv6 routing on the Cisco router use the following command: ipv6 unicast-routing If this command is not recognized.e. i.cisco. optional IPsec autoconfiguration no broadcasts complicated header plug-and-play checksums Answer: BCE Explanation: An important feature of IPv6 is that it allows plug and play option to the network devices by allowing them to configure themselves independently.1_19_ea1/config uration/guide/swtrafc.passexamvce. C. B. D. D. This feature was critical to allow network connectivity to an increasing number of mobile devices. C. http://www. QUESTION 236 Which command encrypts all plaintext passwords? A. your version of IOS does not support IPv6.1. which is analogous to IPv4 multicast to address 224. Router# service password-encryption Router(config)# password-encryption Router(config)# service password-encryption Router# password-encryption Answer: C Get Complete Collection of 200-120 Exam's Question and Answers. B. This is accomplished by autoconfiguration. + The protect and restrict options cannot be simultaneously enabled on an interface. IPv6 does not implement traditional IP broadcast. F.com/en/US/docs/switches/lan/catalyst3550/software/release/12. C. B. It is possible to plug a node into an IPv6 network without requiring any human intervention. E. http://www.

http://www. QUESTION 237 You have been asked to come up with a subnet mask that will allow all three web servers to be on the same network while providing the maximum number of subnets.passexamvce.0. E.16.255. Which network address and subnet mask meet this requirement? A.252 192. This is a 128bit number.0. B.8 255.Explanation: The "service password-encryption" command allows you to encrypt all passwords on your router so they can not be easily guessed from your running-config.1? A. It is meant to prevent someone from looking over your shoulder and seeing the password. 172.1 .16.0. B.28. This is configured in global configuration mode.16 255.255. the network range is 172. C.252.31. B.16.16. D.252 with a subnet mask of 255.255.255.168.255.16.240.252 Answer: B Explanation: A subnet mask of 255.255. A subnet mask of 255.31.248 will allow for up to 6 hosts to reside in this network.255.252 will allow for only 2 usable IP addresses.252. QUESTION 238 Given an IP address 172. since we can not use the network or broadcast address. what is the correct network address? A.0 and the broadcast IP address is 172.254.255.168.28.168.255.168. D.255.252. QUESTION 239 Which IPv6 address is the equivalent of the IPv4 interface loopback address 127. with the first 127 bits being '0' and the 128th bit being '1'.172.16.24. It's just a single address.255.252. so could also be written as ::1/128. C.252 192. Get Complete Collection of 200-120 Exam's Question and Answers.16. that is all. This command uses a very weak encryption because the router has to be very quickly decode the passwords for its operation. the network address is 172.0.255.16.0 255.0 Answer: A Explanation: For this example.255.0 172.0 172.168.255.252.16.255.8 255.16.0 172.16.16.16 255.240 192. ::1 :: 2000::/3 0::/10 Answer: A Explanation: In IPv6 the loopback address is written as.com .255. D. 192.248 192. C.

C.passexamvce.188.188. D. Which IP address range meets these requirements? A. MTU. E.0/26 10. 10.QUESTION 240 You are working in a data center environment and are assigned the address range 10.31. Reliability. B. Bandwidth Bandwidth and Delay Bandwidth.188.31.31.188.0/25 10. C. and Load Answer: A Explanation: The well-known formula to calculate OSPF cost is Cost = 108 / Bandwidth QUESTION 242 Why do large OSPF networks use a hierarchical design? (Choose three.per-subnet) so /27 is the best choice -> . Attached to that backbone via area border routers (ABRs) are a number of secondary tier areas.) A. Delay. D. F.0/29 Answer: D Explanation: Each subnet has 30 hosts < 32 = 25 so we need a subnet mask which has at least 5 bit 0s -> /27.31.0/27 10. and MTU Bandwidth. to decrease latency by increasing bandwidth to reduce routing overhead to speed up convergence to confine network instability to single areas of the network to reduce the complexity of router configuration to lower costs by replacing routers with distribution layer switches Answer: BCD Explanation: OSPF implements a two-tier hierarchical routing model that uses a core or backbone tier known as area zero (0). C.188. D.31.188. Delay. B. reduced routing overhead. You are asked to develop an IP addressing plan to allow the maximum number of subnets with as many as 30 hosts each. The hierarchical approach is used to achieve the following: Rapid convergence because of link and/or switch failures Deterministic traffic recovery Scalable and manageable routing hierarchy. QUESTION 241 Which parameter or parameters are used to calculate OSPF cost in Cisco routers? A. Also the question requires the maximum number of subnets (which minimum the number of hosts. Get Complete Collection of 200-120 Exam's Question and Answers.com .0/28 10. E.0/23. http://www. B.31.

QUESTION 243 Drag and Drop Question Answer: QUESTION 244 Drag and Drop Question Answer: Get Complete Collection of 200-120 Exam's Question and Answers.com . http://www.passexamvce.

com .passexamvce.QUESTION 245 Drag and Drop Question Answer: QUESTION 246 Drag and Drop Question Get Complete Collection of 200-120 Exam's Question and Answers. http://www.

http://www.Answer: QUESTION 247 Drag and Drop Question Answer: Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce.com .

http://www.QUESTION 248 Drag and Drop Question Answer: QUESTION 249 Drag and Drop Question Get Complete Collection of 200-120 Exam's Question and Answers.com .passexamvce.

com . http://www.Answer: QUESTION 250 Drag and Drop Question Answer: Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce.

com .passexamvce.QUESTION 251 Drag and Drop Question Answer: Get Complete Collection of 200-120 Exam's Question and Answers. http://www.

242. The Core connection uses an IP address of 198.33. http://www.QUESTION 252 Lab Simulation Question . Since there are multiple resources for the corporation at this location including other resources on the Finance Web Server.33.168.168.254 Host A 192. No other hosts from the LAN nor the Core should be able to use a web browser to access this server.168.65 The computers in the Hosts LAN have been assigned addresses of 192.196.168.com .2 Host C 192.33.30 The Finance Web Server is assigned an IP address of 172.242. No other hosts will have web access to the Finance Web Server.4 The servers in the Server LAN have been assigned addresses of 172.18. all other traffic should be allowed. The user on host C should be able to use a web browser to access financial information from the Finance Web Server.1 Host B 192.passexamvce.168.33.33. All other traffic is permitted. Access to the router CLI can be gained by clicking on the appropriate host.22.172.ACL-1 A network associate is adding security to the configuration of the Corp1 router.22.168.22. The task is to create and apply an access-list with no more than three statements that will allow ONLY host C web access to the Finance Web Server. All passwords have been temporarily set to "cisco".33.242.1 192. Get Complete Collection of 200-120 Exam's Question and Answers.23.3 Host D 192.17 .

passexamvce.242.18.30 YES manual up up Serial0/0 198.242.168.22. Use the “show ip interface brief” command to check which interface has the IP address of 172.254 YES manual up up FastEthernet0/1 172.22.22.23 via web (port 80) Corp1(config)#access-list 100 permit tcp host 192.22.242.3 host 172. It is the interface we will apply our access-list (for outbound direction).168.17 – 172.242.23 eq 80 Deny other hosts access to the Finance Web Server via web Corp1(config)#access-list 100 deny tcp any host 172. because it can filter out traffic from both Sw-Hosts and Core networks.22.242. Corp1#configure terminal Our access-list needs to allow host C – 192.22.3 to the Finance Web Server 172. http://www.33.33.65 YES manual up up We learn that interface FastEthernet0/1 is the interface connected to Server LAN network.242.242.Answer: Corp1>enable Password: cisco We should create an access-list and apply it to the interface which is connected to the Servers LAN interface.242. Corp1#show ip interface brief Interface IP-Address OK? Method Status Protocol FastEthernet0/0 192.22.30 so we can guess the interface connected to them has an IP address of 172.30 (.com .33.196.22.30.30 is the number shown in the figure).23 eq 80 All other traffic is permitted Corp1(config)#access-list 100 permit ip any any Apply this access-list to Fa0/1 interface (outbound direction) Get Complete Collection of 200-120 Exam's Question and Answers.168. The Server LAN network has been assigned addresses of 172.

22. Get Complete Collection of 200-120 Exam's Question and Answers.33. No other hosts will access to the Finance Web Server. All other traffic is permitted.22. If we apply access list to the inbound interface we can only filter traffic from the LAN network. The user on host C should be able to use a web browser to access financial information from the Finance Web Server.242.168. All other traffic should be allowed. save the configuration Corp1(config-if)#end Corp1#copy running-config startup-config This configuration only prevents hosts from accessing Finance Web Server via web but if this server supports other traffic – like FTP. No other hosts from the LAN nor the Core should be able to access the Finance Web Server. http://www.33.Corp1(config)#interface fa0/1 Corp1(config-if)#ip access-group 100 out Notice: We have to apply the access-list to Fa0/1 interface (not Fa0/0 interface) so that the access-list can filter traffic coming from both the LAN and the Core networks.242. The user on host C should be able to access the Finance Web Server. all other traffic should be allowed.0. The task is to create and apply a numbered access-list with no more than three statements that will allow ONLY host C web access to the Finance Web Server.22. All other traffic should be allowed. In the real exam. you might be asked to allow other host (A. Since there are multiple resources for the corporation at this location including other resources on the Finance Web Server. All other traffic is permitted.2 host 172.3 host 172.23 access-list 100 permit ip any any Modification #3 A network associate is adding security to the configuration of the Corp1 router.15 access-list 100 permit ip any any Modification #2 A network associate is adding security to the configuration of the Corp1 router. access-list 100 permit ip host 192. Click on other hosts (A. If your configuration is correct then you can access it.242. No other hosts from the LAN nor the Core should be able access this server. All other traffic is permitted.33. Finally.0. In the address box type http://172.22.2 172.16 0. No other hosts will have access to the Finance Web Server.22. access-list 100 permit ip host 192.168. Host B should be denied to access other server on S1-SRVS network. SMTP… then other hosts can access it. The user on host B should be able to access the Finance Web Server. Also host C should be denied to access any other services of Finance Web Server. B or D) to access the Finance Web Server so please read the requirement carefully. The task is to create and apply a numbered access-list with no more than three statements that will allow ONLY host B access to the Finance Web Server. B and D) and check to make sure you can’t access Finance Web Server from these hosts. The task is to create and apply a numbered access-list with no more than three statements that will allow ONLY host C access the Finance Web Server.passexamvce.168.com .242.23 access-list 100 deny ip host 192. Notice: In the real exam. too.23 to check if you are allowed to access Finance Web Server or not.242. just click on host C and open its web browser. Deny host B from accessing the other servers.23 access-list 100 deny ip any host 172. Other access from host C to Finance Web Server should be denied. Modification #1 A network associate is adding security to the configuration of the Corp router.

com . http://www. All hosts in the Core and local LAN should be able to access the Public Web Server. Other types of access from host D to the Finance Web Server should be blocked.242. All hosts from the LAN nor the Core should able to access public web server. Other access from host C to Finance Web Server should be denied.23 access-list 100 permit ip any any QUESTION 253 Drag and Drop Question Answer: Get Complete Collection of 200-120 Exam's Question and Answers. access-list 100 permit tcp host 192.168. No other hosts from the LAN nor the Core should be able to access the Finance Web Server.242.168.23 eq 80 access-list 100 deny ip any host 172. The task is to create and apply a numbered access-list with no more than three statements that will allow ONLY host D should be able to use a web browser(HTTP)to access the Finance Web Server.33.23 eq 80 access-list 100 deny ip any host 172.3 host 172.22.22.33. The user on host D should be able to use a web browser to access financial information from the Finance Web Server.23 access-list 100 permit ip any any Modification #4 A network associate is adding security to the configuration of the Corp1 router.242.passexamvce.3 host 172.22.access-list 100 permit tcp host 192.242. All access from hosts in the Core or local LAN to the Finance Web Server should be blocked.22.

com .passexamvce. http://www.QUESTION 254 Drag and Drop Question Answer: Get Complete Collection of 200-120 Exam's Question and Answers.

passexamvce.QUESTION 255 Drag and Drop Question Answer: Get Complete Collection of 200-120 Exam's Question and Answers.com . http://www.

passexamvce.com .QUESTION 256 Hotspot Question Get Complete Collection of 200-120 Exam's Question and Answers. http://www.

Get Complete Collection of 200-120 Exam's Question and Answers. http://www.passexamvce.com .

Get Complete Collection of 200-120 Exam's Question and Answers.com . http://www.passexamvce.

com .Get Complete Collection of 200-120 Exam's Question and Answers. http://www.passexamvce.

Correctly assign an IP address to interface fa0/1. Remove access-group 102 out from interface s0/0/0 and add access-group 114 in Remove access-group 106 in from interface fa0/0 and add access-group 104 in. D. Remove access-group 106 in from interface fa0/0 and add access-group 115 in. C. E. B.passexamvce.Which will fix the issue and allow ONLY ping to work while keeping telnet disabled? A. Answer: E Explanation: Let's have a look at the access list 104: Get Complete Collection of 200-120 Exam's Question and Answers. http://www. Change the ip access-group command on fa0/0 from "in* to "our.com .

http://www. The 3rd line denies all telnet traffic and the 4th line allows icmp traffic to be sent (ping).com . QUESTION 257 Hotspot Question Get Complete Collection of 200-120 Exam's Question and Answers. Remember that the access list 104 is applied on the inbound direction so the 5th line "access-list 104 deny icmp any any echo-reply" will not affect our icmp traffic because the "echo-reply" message will be sent over the outbound direction.passexamvce.The question does not ask about ftp traffic so we don't care about the two first lines.

Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce. http://www.com .

com .passexamvce.Get Complete Collection of 200-120 Exam's Question and Answers. http://www.

passexamvce.Get Complete Collection of 200-120 Exam's Question and Answers.com . http://www.

4.0 network.0 0. Attempts to telnet to the router would fail. Routing protocol updates for the 10.passexamvce.0 network would not be accepted from the fa0/0 interface.255 any we can easily understand that this access list allows all traffic (ip) from 10.4.4.4. IP traffic would be passed through the interface but TCP and UDP traffic would not. Answer: B Explanation: From the output of access-list 114: access-list 114 permit ip 10. It would allow all traffic from the 10.4.0.4.4.0. D.4. C.0/24 network Get Complete Collection of 200-120 Exam's Question and Answers. http://www.What would be the effect of issuing the command ip access-group 114 in to the fa0/0 interface? A. B.com .

http://www.QUESTION 258 Hotspot Question Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce.com .

passexamvce.Get Complete Collection of 200-120 Exam's Question and Answers. http://www.com .

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

What would be the effect of Issuing the command ip access-group 115 in on the s0/0/1 interface?
A.
B.
C.
D.

No host could connect to RouterC through s0/0/1.
Telnet and ping would work but routing updates would fail.
FTP, FTP-DATA, echo, and www would work but telnet would fail.
Only traffic from the 10.4.4.0 network would pass through the interface.

Answer: A
Explanation:
First let's see what was configured on interface S0/0/1:

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

QUESTION 259
Refer to the exhibit. Based on the information given, which switch will be elected root bridge and
why?

A.
B.
C.
D.
E.
F.

Switch A, because it has the lowest MAC address
Switch A, because it is the most centrally located switch
Switch B, because it has the highest MAC address
Switch C, because it is the most centrally located switch
Switch C, because it has the lowest priority
Switch D, because it has the highest priority

Answer: E

QUESTION 260
Lab Simulation Question - EIGRP

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

http://www.Answer: First we should check the configuration of the ENG Router. ENG> enable Password: cisco ENG# show running-config Get Complete Collection of 200-120 Exam's Question and Answers. Click the console PC “F” and enter the following commands.com .passexamvce.

60.81 255.60.255.240 duplex auto speed auto ! interface FastEthernet1/0 ip address 192.77. we know that this router was wrongly configured with an autonomous number (AS) of 22.255.60.255.65 255. no adjacency is formed.240 duplex auto speed auto ! router eigrp 22 network 192. When the AS numbers among routers are mismatched.60. (You should check the AS numbers on other routers for sure) To solve this problem.255.34 255.77.168..168.0 network 192.com .255. Get Complete Collection of 200-120 Exam's Question and Answers.0 ENG(config-router)# no auto-summary ENG(config-router)# end ENG# copy running-config startup-config Second we should check the configuration of the MGT Router.168.252 duplex auto speed auto ! interface FastEthernet0/1 ip address 192.168.168.2 no service timestamps log datetime msec no service timestamps debug datetime msec no service password-encryption ! hostname ENG ! enable secret 5 $1$mERr$hx5rVt7rPNoS4wqbXKX7m0 ! interface FastEthernet0/0 ip address 192.Building configuration. http://www.168.0 no auto-summary ! ip classless ! line con 0 line vty 0 4 login ! end ENG# From the output above. Current configuration : 770 bytes ! version 12.0 ENG(config-router)# network 192..255.168.77. we simply re-configure router ENG router with the following commands: ENG# conf t ENG(config)# no router eigrp 22 ENG(config)# router eigrp 222 ENG(config-router)# network 192.passexamvce.

0.0.77.18..168.255.0 no auto-summary ! ip classless ip route 0.255.0 network 192.13 255.168.com . http://www.Click the console PC “G” and enter the following commands.252 clock rate 64000 ! interface Serial1/0 ip address 198.6 255. Current configuration : 1029 bytes ! version 12.0.255.60. MGT> enable Password: cisco MGT# show running-config Building configuration.18.25 255.0.255.0 network 198.33 255.60.2 no service timestamps log datetime msec no service timestamps debug datetime msec no service password-encryption ! hostname MGT ! enable secret 5 $1$mERr$hx5rVt7rPNoS4wqbXKX7m0 ! interface FastEthernet0/0 ip address 192..255.168.0 network 192.255.5 ! line con 0 Get Complete Collection of 200-120 Exam's Question and Answers.252 clock rate 64000 ! interface Serial0/1 ip address 192.252 duplex auto speed auto ! interface Serial0/0 ip address 192.255.0.0 0.168.85.0.0.18.252 ! interface Serial1/1 no ip address shutdown ! interface Serial1/2 no ip address shutdown ! interface Serial1/3 no ip address shutdown ! router eigrp 222 network 192.168.0 198.36.36.passexamvce.255.168.

0 MGT(config-router)# end MGT# copy running-config startup-config Now the whole network will work well.168. Get Complete Collection of 200-120 Exam's Question and Answers. Perimiter Router: Add default route and default-network.line vty 0 4 login ! end MGT# Notice that it is missing a definition to the network ENG. Perimiter Router: Add the network address of interface of Permiter that link between MGT and ENG. 2.60.0 ENG(config-router)# network 192.77. Therefore we have to add it so that it can recognize ENG router MGT# conf t MGT(config)# router eigrp 222 MGT(config-router)# network 192. ENG Router: Change the Autonomous System Number of ENG 2.168. You should check again with ping command from router ENG to other routers! In Short: ENG Router ENG>enable Password: cisco ENG# conf t ENG(config)# no router eigrp 22 ENG(config)# router eigrp 222 ENG(config-router)# network 192.168. 3. We need to correct the above two configuration mistakes to have full connectivity Steps: 1. Incorrect Autonomous System Number configured in ENG router.passexamvce. But Internet connection for existing location including Remote1 and Remote2 networks are not working. http://www. 3.77. All other inter connectivity for the existing locations of the company are working properly.0 MGT(config-router)# end MGT# copy running-config startup-config Some Modification in Question After adding ENG router.com . no routing updates are being exchanged between MGT and the new location. Internet Connection is not working all stations. Faults Identified: 1.168.0 ENG(config-router)# no auto-summary ENG(config-router)# end ENG# copy running-config startup-config MGT Router MGT>enable Password: cisco MGT# conf t MGT(config)# router eigrp 222 MGT(config-router)# network 192.77. MGT router does not advertise route to the new router ENG.

0.5 MGT(config)# ip default-network 198.6 255.168.60.18.18. (The interfaced used to connect to the ISP) ! interface Serial1/0 ip address 198. Refer to the command show running-config.passexamvce.0 passive-interface FastEthernet 0/0 passive-interface Serial 1/0 no auto-summary ! Then the command would be MGT(config)#router eigrp 222 MGT(config-router)#no passive-interface Fa0/0 MGT(config-router)#end Get Complete Collection of 200-120 Exam's Question and Answers.0.com .168.Check the IP Address of S1/0 interface of MGT Router using show running-config command. and S0/1 used to connect Remote2.0 MGT(config)# exit MGT# copy running-config startup-config Important: If you refer the topology and IP chart. ! router eigrp 22 network 192.255.0.0 ENG(config-router)# no auto-summary ENG(config-router)# end ENG# copy running-config startup-config MGT Router MGT>enable Password: cisco MGT# conf t MGT(config)# router eigrp 222 MGT(config-router)# network 192.0. http://www.18.0. the command #PASSIVE-INTERFACE <Interface Name> will deny EIGRP updates to specified interface. The IP address is 198.18. S0/0 used to connect Remote1.77.18.0 network 192.0 198. For example when used the #show run command and we see the output like below.6/30. ENG Router ENG>enable Password: cisco ENG# conf t ENG(config)# no router eigrp 22 ENG(config)# router eigrp 222 ENG(config-router)# network 192.0.168.168. In that case we need to use #no passiveinterface <Interface Name> to allow the routing updates to be passed to that interface.0. the MGT router uses Fa0/0 to connect ENG router.168.252 ! For Internet sharing we have create a default route.0.60. and add default-network configuration.0.255.0 ENG(config-router)# network 192.5.77. Then the next hop IP will be 198.0 0.0 MGT(config-router)# exit MGT(config)# ip route 0.77.

3. QUESTION 261 Lab Simulation Question .Serial network is 192.201.2.165. Complete the network installation by performing the initial router configurations and configuring R1PV2 routing using the router command line interface (CLI) on the RC.com . http://www. 5. secret password is xxx Password In access user EXEC mode using the console is xxx The password to allow telnet access to the router is xxx IP information Answer: Router>enable Router#config terminal Router(config)#hostname R2 R2(config)#enable secret Cisco 1 R2(config)#line console 0 R2(config-line)#password Cisco 2 R2(config-line)#exit R2(config)#line vty 0 4 R2(config-line)#password Cisco 3 R2(config-line)#login Get Complete Collection of 200-120 Exam's Question and Answers.Interfaces should be enabled. Configure the router per the following requirements: - Name of the router is R2 Enable.CLI Central Florida Widgets recently installed a new router in their office.0. please note the following.0/27 .Also MGT router connect to the ISP router using Serial 1/0. . Name or the router is xxx EnablE. 1. 4.Ethernet network 209. then do not remove it using #no passive-interface s1/0 command.router has last assignable host address in the subnet. 2. .secret password is cisco The password to access user EXEC mode using the console is cisco2 The password to allow telnet access to the router is cisco3 IPV4 addresses mast be configured as follows: . the actual information will prevail.176/28 .Router protocol is RIPV2 Attention: In practical examinations.passexamvce.router has fourth assignable host address in subnet . If you seen passive-interface s1/0.

0 R2(config-router)#network 192.1 255.com .165.201.255. http://www.0.224 R2(config)#interface s0/0/0 R2(config-if)#ip address 192.0.passexamvce.201.176 255.255.R2(config-line)#exit R2(config)#interface faO/0 R2(config-if)#ip address 209.240 R2(config-if)#no shutdown R2(config-if)#exit R2(config)#router rip R2(config-router)#version 2 R2(config-router)#network 209.165.255.255.ACL-4 Get Complete Collection of 200-120 Exam's Question and Answers.2.2.176 R2(config-router)#end R2#copy run start QUESTION 262 Lab Simulation Question .

255.242.22.x 255. this should be corrected in order ACL to work type this commands at interface mode : no ip address 192.23 eq 80 Comment: To deny any source to access finance server address (172.30 ) Comment: Place the ACL to check for packets going outside the interface towards the finance web server.242.x.23 eq 80 Corp1(config)#access-list 100 permit ip any any Corp1(config)#interface fa 0/1 sh ip int brief Corp1(config-if)#ip access-group 100 out Corp1(config-if)#end Corp1#copy running-config startup-config Explanation: Select the console on Corp1 router Configuring ACL Corp1>enable Corp1#configure terminal Comment: To permit only Host C (192.x.242.168.242.x (removes incorrect configured ipaddress and subnet mask) Configure Correct IP Address and subnet mask: ip address 172.242. Corp1(config)#interface fa 0/1 If the ip address configured already is incorrect as well as the subnet mask.22.x.Answer: Corp1>enable Corp1#configure terminal Corp1(config)#access-list 100 permit tcp host 192.17 .23 eq 80 Comment: To permit ip protocol from any source to access any destination because of the implicit deny any any statement at the end of ACL.22.23 eq 80 Corp1(config)#access-list 100 deny tcp any host 172.3 host 172.22.242. Corp1(config)#access-list 100 permit ip any any Applying the ACL on the Interface Comment: Check show ip interface brief command to identify the interface type and number by checking the IP address configured.22.3){source addr} to access finance server address (172.23) {destination addr} on port number 80 (web) Corp1(config)#access-list 100 permit tcp host 192.240 ( range of address specified going to server is given as 172.33.172.passexamvce.255.242.242.3 host 172.33.168.33.30 255.168.22. Corp1(config-if)#ip access-group 100 out Corp1(config-if)#end Get Complete Collection of 200-120 Exam's Question and Answers.22.22. http://www.x.com .242.22.23) {destination addr} on port number 80 (web) Corp1(config)#access-list 100 deny tcp any host 172.

com .242.ACL-2 Get Complete Collection of 200-120 Exam's Question and Answers. check whether you configured correctly and in order. Corp1#copy running-config startup-config Verifying the Configuration: Step1: show ip interface brief command identifies the interface on which to apply access list.168.23) to test whether it permits /deny access to the finance web Server . http://www.3) can access the Finance Web Server you can click on NEXT button to successfully submit the ACL SIM. Step2: Click on each host A. QUESTION 263 Lab Simulation Question . If the other host can also access then maybe something went wrong in your configuration .33.168. Select address box of the web browser and type the ip address of finance web server(172.C & D .B. Host opens a web browser page .Important: To save your running config to startup before exit.passexamvce. Step 3: Only Host C (192. Step 4: If only Host C (192.33.22.3) has access to the server .

22.com .26 eq www Corp1(config)# access-list 128 deny tcp any host 172.Answer: Corp1#conf t Corp1(config)# access-list 128 permit tcp host 192.141.1 host 172.passexamvce.22.240.168. http://www.26 eq www Corp1(config)# access-list 128 permit ip any any Corp1(config)#int fa0/1 Corp1(config-if)#ip access-group 128 out Corp1(config-if)#end Corp1#copy run startup-config QUESTION 264 Lab Simulation Question .ACL-3 Get Complete Collection of 200-120 Exam's Question and Answers.141.

Answer: Corp1>enable Corp1#configure terminal Corp1(config)#access-list 100 permit tcp host 192.23 eq 80 Corp1(config)#access-list 100 deny tcp 192.com .23 eq 80 Get Complete Collection of 200-120 Exam's Question and Answers.22.33.242.22.passexamvce. 33.242.23 eq 80 Corp1(config)#access-list 100 permit ip any any Corp1(config)#interface fa 0/1 sh ip int brief Corp1(config-if)#ip access-group 100 out Corp1(config-if)#end Corp1#copy running-config startup-config Explanation: Select the console on Corp1 router Configuring ACL Corp1 >enable Corp1#configure terminal comment: To permit only Host C (192.168.168.168.3 host 172.242.0 0.0. 23){destination addr} on port number 80 (web) Corp1(config)#access-list 100 permit tcp host 192.22. 3){source addr} to access finance server address (172.255 host 172. 242.22.33.168.3 host 172. http://www.33.0.

B. x. x (removes incorrect configured ip address and subnet mask) Configure Correct IP Address and subnet mask: ip address 172. 242. 33. 3) has access to the server.168. 242.Comment: To deny any source to access finance server address (172. Host opens a web browser page. 242. Corp1(config)#access-list 100 permit ip any any Applying the ACL on the Interface comment: Check show ip interface brief command to identify the interface type and number by checking the IP address configured. QUESTION 265 Lab Simulation Question . 255. 242. 17-172.passexamvce. 3) can access the Finance Web Server you can click on NEXT button to successfully submit the ACL SIM. 242. x. Step 4: If only Host C (192. 255.config Verifying the Configuration: Step1: show ip interface brief command identifies the interface on which to apply access list. Step2: Click on each host A.NAT-1 Get Complete Collection of 200-120 Exam's Question and Answers. 22. If the other host can also access then maybe something went wrong in your configuration check whether you configured correctly and in order. 33. Corp1(config-if)#ip access-group 100 out Corp1(config-if)#end Important: To save your running config to startup before exit. this should be corrected in order ACL to work type this commands at interface mode : no ip address 192. 23) to test whether it permits /deny access to the finance web Server. x 255. 22.22.23 eq 80 Comment: To permit ip protocol from any source to access any destination because of the implicit deny any any statement at the end of ACL. Step 3: Only Host C (192. 22. http://www. 22. 30 ) Comment: Place the ACL to check for packets going outside the interface towards the finance web server. Select address box of the web browser and type the ip address of finance web server(172. 23) {destination addr} on port number 80 (web) Corp1(config)#access-list 100 deny tcp any host 172. Corp1(config)#interface fa 0/1 If the ip address configured already is incorrect as well as the subnet mask.168. 22.com . x.C & D. 240 (range of address specified going to server is given as 172. x. Corp1#copy running-config startup.242. 30 255.

168.com .184.105 198.30.184. http://www. The hosts in the company LAN have been assigned private space addresses in the range of 192.18.110/29. The ISP has provided the company six public IP addresses of 198.18. Answer: The company has 14 hosts that need to access the internet simultaneously but we just have 6 public IP addresses from 198.17 ?192.168. The company has 14 hosts that need to access the internet simultaneously.184.passexamvce. Get Complete Collection of 200-120 Exam's Question and Answers.184.18.18.110. Therefore we have to use NAT overload (or PAT) Double click on the Weaver router to open it Router>enable Router#configure terminal First you should change the router's name to Weaver Router(config)#hostname Weaver Create a NAT pool of global addresses to be allocated with their netmask.100.A network associate is configuring a router for the weaver company to provide internet access.100.105 to 198.

184.255.2.105 198.Weaver(config)#ip nat pool mypool 198.NAT-2 A network associate is configuring a router for the Weaver company to provide internet access.110) Overload keyword allows to map multiple IP addresses to a single registered IP address (manyto-one) by using different ports The question said that appropriate interfaces have been configured for NAT inside and NAT outside statements.168. The ISP has provided the company six public IP addresses of 198.105 .255. The hosts in the company LAN have been assigned private space addresses in the range of 192.2.passexamvce.100.105 to 198.com .0.0.30. This is how to configure the NAT inside and NAT outside.184.114 QUESTION 266 Lab Simulation Question .15 Establish dynamic source translation. just for your understanding: Weaver(config)#interface Weaver(config-if)#ip nat Weaver(config-if)#exit Weaver(config)#interface Weaver(config-if)#ip nat Weaver(config-if)#end fa0/0 inside s0/0 outside Finally.168. http://www.110. we should save all your work with the following command: Weaver#copy running-config startup-config Check your configuration by going to "Host for testing" and type: C :\>ping 192. into an address from the pool named mypool (the pool contains addresses from 198.18.168.198.18.18.184.18.248 Create a standard access control list that permits the addresses that are to be translated Weaver(config)#access-list 1 permit 192.16 0.184.0. specifying the access list that was defined in the prior step Weaver(config)#ip nat inside source list 1 pool mypool overload This command translates all source addresses that pass access list 1.17 to 192.100.100. Get Complete Collection of 200-120 Exam's Question and Answers.110 netmask 255.18.0.168.184.100. The company has 14 hosts that need to access the internet simultaneously.18.168.30.100.114 The ping should work well and you will be replied from 192. which means a source address from 192.17 – 192.184.

105 198.184.30 /28 14 Answer: Step 1: Router Name Router>enable Router#configure terminal Router(config)#hostname Weaver Weaver(config)# Step 2: NAT Configuration Weaver(config)#access-list 10 permit 192. Functionality can be tested by clicking on the host provided for testing.248 Weaver(config)#ip nat inside source list 10 pool mynatpool overload Weaver(config)#end Step 3: Save Configuration Weaver#copy run start Verification: Get Complete Collection of 200-120 Exam's Question and Answers.18.100.100.100.0.184.168.168.17 – 192.168.The following have already been configured on the router: The basic router configuration The appropriate interfaces have been configured for NAT inside and NAT outside The appropriate static routes have also been configured (since the company will be a stub network. no routing protocol will be required.16 0.18.) All passwords have been temporarily set to “cisco” The task is to complete the NAT configuration using all IP addresses assigned by the ISP to provide internet access for the hosts in the weaver LAN.255.com .18.110 /29 192.0.15 Weaver(config)#ip nat pool mynatpool 198. Configuration information: Router Inside Inside Number name Weaver global addresses local addresses of inside hosts - 198.105 – 198.184.184. http://www.18.255.110 netmask 255.passexamvce.

type “ping 192.2. http://www. If ping succeeded then the NAT is working properly.We can verify the answer by pinging the ISP IP Address (192.0.114) from Host for testing. Screen Shots: Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce.114”.0. Click “Host for testing” In command prompt.2.com .

Get Complete Collection of 200-120 Exam's Question and Answers.com . http://www.passexamvce.

QUESTION 267 In a switched environment. and servers.1Q. An 802. C. To accomplish this.1Q trunk link provides VLAN identification by adding a 4-byte tag to an Ethernet Frame as it leaves a trunk port. a trunk link is created to accomplish this VLAN identification.1Q standard describe? A. http://www. a network administrator can define a VLAN topology to span multiple physical devices. one switch must send frames to another switch and indicate which VLAN a particular frame belongs to.1Q protocol interconnects VLANs between multiple switches.com . D. ISL and IEEE 802. The IEEE 802. E.1Q for FastEthernet and Gigabit Ethernet interfaces. Get Complete Collection of 200-120 Exam's Question and Answers.1Q are different methods of putting a VLAN identifier in a Layer 2 frame. Cisco switches support IEEE 802. With 802. B. what does the IEEE 802. the operation of VTP a method of VLAN trunking an approach to wireless LAN communication the process for root bridge selection VLAN pruning Answer: B Explanation: A broadcast domain must sometimes exist on more than one switch in the network.passexamvce. routers. On Cisco switches.

) A. HSRP supports only clear-text authentication. GLBP elects two AVGs and two standby AVGs for redundancy. GLBP supports clear text and MD5 password authentication between GLBP group members. E. where xx is the HSRP group number in hexadecimal based on the respective interface. D. C. For example. F. E. What are three message types that will be sent to the Syslog server? (Choose three. GLBP is an open source standardized protocol that can be used with multiple vendors. D. The HSRP virtual IP address must be the same as one of the router's interface addresses on the LAN.FXXX (XXX: HSRP group in hexadecimal) QUESTION 270 Which three statements about Syslog utilization are true? (Choose three.0C07.) A.ACxx.com . HSRP supports up to 255 groups per interface. HSRP version 2 uses a virtual MAC address of 0000. Answer: CDF QUESTION 271 A network administrator enters the following command on a router: logging trap 3. C. Enabling Syslog on a router automatically enables NTP for accurate time stamping. There are more Syslog messages available within Cisco IOS than there are comparable SNMP trap messages. Answer: ABF Explanation: The virtual MAC address of HSRP version 1 is 0000.0C9F. D. C.passexamvce. F. B. Answer: BDE QUESTION 269 Which three statements about HSRP operation are true? (Choose three. B. Utilizing Syslog improves network performance. F.AC0A. The HSRP default timers are a 3 second hello interval and a 10 second dead interval. The virtual IP address and virtual MA+K44C address are active on the HSRP Master router. E.0C07. HSRP group 10 uses the HSRP virtual MAC address of 0000. C.) A. The Syslog server automatically notifies the network administrator of network problems. informational emergency warning critical Get Complete Collection of 200-120 Exam's Question and Answers. The HSRP virtual IP address must be on a different subnet than the routers' interfaces on the same LAN. B. GLBP supports up to 1024 virtual routers.) A. http://www. D. B. A Syslog server provides the storage space necessary to store log files without using router disk space. GLBP can load share traffic across a maximum of four routers.QUESTION 268 What are three benefits of GLBP? (Choose three. GLBP supports up to eight virtual forwarders per GLBP group. enabling an administrative form of load balancing. A Syslog server helps in aggregation of logs and alerts.

causing the EIGRP adjacency to go down. Answer: C QUESTION 275 Get Complete Collection of 200-120 Exam's Question and Answers.E. http://www. HH is the hour (in 24-hour notation). causing the adjacency to go down. the system includes milliseconds in the time stamp. A shut command was executed on interface Fa0/1. B. B.passexamvce. The time-stamp format for datetime is MMM DD HH:MM:SS. where . and SS is the second. error Answer: BDF QUESTION 272 What is the default Syslog facility level? A.mmm. DD is the date. D.mmm is milliseconds QUESTION 274 Refer to the exhibit. D. C. The EIGRP neighbor connected to Fa0/1 is participating in a different EIGRP process. C. Interface Fa0/1 has become error disabled. local4 local5 local6 local7 Answer: D QUESTION 273 What command instructs the device to timestamp Syslog debug messages in milliseconds? A. where MMM is the month. service timestamps log datetime localtime service timestamps debug datetime msec service timestamps debug datetime localtime service timestamps log datetime msec Answer: B Explanation: The "service timestamps debug" command configures the system to apply a time stamp to debugging messages. D. B. C. The EIGRP neighbor on Fa0/1 went down due to a failed link.com . With the additional keyword msec. in the format HH:DD:MM:SS. causing the EIGRP adjacency to go down. debug F. What is the cause of the Syslog output messages? A. MM is the minute.

C. E. response get trap capture Answer: C QUESTION 278 What authentication type is used by SNMPv2? A.What are three components that comprise the SNMP framework? (Choose three. MIB agent set AES supervisor manager Answer: ABF QUESTION 277 What SNMP message alerts the manager to a condition on the network? A. SNMPv3 added the Inform protocol message to SNMP. D. B.com . F. C. E. B. C.) A. HMAC-MD5 HMAC-SHA CBC-DES community strings Answer: D QUESTION 279 Which three statements about the features of SNMPv2 and SNMPv3 are true? (Choose three. SNMPv3 enhanced SNMPv2 security features. B. D. D. C. http://www. B.) A.passexamvce. F. B. Get Complete Collection of 200-120 Exam's Question and Answers. MIB agent set AES supervisor manager Answer: ABF QUESTION 276 What are three components that comprise the SNMP framework? (Choose three. D.) A.

C. B. F. D. B. Answer: ACE QUESTION 280 What are three reasons to collect Netflow data on a company network? (Choose three. C.com . SNMPv3 added the GetBulk protocol messages to SNMP. Flow monitors consist of a record and a cache. To confirm the appropriate amount of bandwidth that has been allocated to each Class of Service. flow monitor flow record flow sampler flow exporter Answer: A Explanation: Flow monitors are the Flexible NetFlow component that is applied to interfaces to perform network traffic monitoring. Answer: ADF QUESTION 281 What Netflow component can be applied to an interface to track IPv4 traffic? A.) A. The flow monitor cache is automatically created at the time the flow monitor is applied to the first interface. For example. E. To authorize user network access. and bandwidth utilization. SNMPv2 added the GetNext protocol message to SNMP. D. F. SNMP Netflow WCCP IP SLA Answer: B Get Complete Collection of 200-120 Exam's Question and Answers. bandwidth hogs. Flow data is collected from the network traffic during the monitoring process based on the key and nonkey fields in the record. the following example creates a flow monitor named FLOW-MONITOR-1 and enters Flexible NetFlow flow monitor configuration mode: Router(config)# flow monitor FLOW-MONITOR-1 Router(config-flow-monitor)# QUESTION 282 What Cisco IOS feature can be enabled to pinpoint an application that is causing slow network performance? A. To report and alert link up / down instances. D. You add the record to the flow monitor after you create the flow monitor. To detect suboptimal routing in the network. C. http://www. E. which is configured for the flow monitor and stored in the flow monitor cache.C. SNMPv2 added the GetBulk protocol message to SNMP. D. To identify applications causing congestion. SNMPv2 added the Inform protocol message to SNMP.passexamvce. To diagnose slow network performance. B.

D.QUESTION 283 What command visualizes the general NetFlow data on the command line? A. http://www. B.com . show ip flow export show ip flow top-talkers show ip cache flow show mls sampling show mls netflow ip Answer: C Explanation: The "show ip cache flow" command displays a summary of the NetFlow QUESTION 284 What are three values that must be the same within a sequence of packets for Netflow to consider them a network flow? (Choose three.passexamvce. source IP address B. source MAC address C. egress interface Get Complete Collection of 200-120 Exam's Question and Answers.) A. C. E.

interface FastEthernet 0/1 channel-group 2 mode auto switchport trunk encapsulation switchport mode trunk interface FastEthernet 0/2 channel-group 2 mode auto switchport trunk encapsulation switchport mode trunk C.passexamvce. The SW1 configuration is shown.D. interface FastEthernet 0/1 channel-group 1 mode active switchport trunk encapsulation switchport mode trunk interface FastEthernet 0/2 channel-group 1 mode active switchport trunk encapsulation switchport mode trunk B. IP next-hop Answer: ADE QUESTION 285 Refer to the exhibit.com . interface FastEthernet 0/1 dot1q dot1q dot1q dot1q dot1q dot1q Get Complete Collection of 200-120 Exam's Question and Answers. A network administrator is configuring an EtherChannel between SW1 and SW2. ingress interface E. interface FastEthernet 0/1 channel-group 1 mode desirable switchport trunk encapsulation switchport mode trunk interface FastEthernet 0/2 channel-group 1 mode desirable switchport trunk encapsulation switchport mode trunk D. http://www. What is the correct configuration for SW2? A. destination IP address F.

the lowest IP address on the router becomes the OSPF Router ID. It identifies the source of a Type 1 LSA.channel-group 1 mode passive switchport trunk encapsulation dot1q switchport mode trunk interface FastEthernet 0/2 channel-group 1 mode passive switchport trunk encapsulation dot1q switchport mode trunk Answer: C QUESTION 286 What are three factors a network administrator must consider before implementing Netflow in the network? (Choose three.) A. C.passexamvce.com . B. B. speed DTP negotiation settings trunk encapsulation duplex Answer: B QUESTION 289 What are two benefits of using a single OSPF area network design? (Choose two. By default.) A. CPU utilization where Netflow data will be sent number of devices exporting Netflow data port availability SNMP version WAN encapsulation Answer: ABC QUESTION 287 Which two statements about the OSPF Router ID are true? (Choose two. B. It should be the same on all routers in an OSPF routing instance. D. It is less CPU intensive for routers in the single area. E. Answer: AD QUESTION 288 What parameter can be different on ports within an EtherChannel? A. F. http://www. D.) A. It reduces the types of LSAs that are generated. C. E. B. D. Get Complete Collection of 200-120 Exam's Question and Answers. The router automatically chooses the IP address of a loopback as the OSPF Router ID. C. It is created using the MAC Address of the loopback interface.

interface FastEthernet 0/3 channel-group 2 mode on switchport trunk encapsulation switchport mode trunk dot1q dot1q dot1q dot1q Answer: B QUESTION 291 Refer to the exhibit. interface FastEthernet 0/3 channel-group 1 mode desirable switchport trunk encapsulation switchport mode trunk B. http://www. It removes the need for virtual links. what is the cause of the EtherChannel problem? Get Complete Collection of 200-120 Exam's Question and Answers. If the devices produced the given output.passexamvce. What set of commands was configured on interface Fa0/3 to produce the given output? A. interface FastEthernet 0/3 channel-group 2 mode active switchport trunk encapsulation switchport mode trunk D.C. D.com . It reduces the number of required OSPF neighbor adjacencies. E. It increases LSA response times. Answer: BC QUESTION 290 Refer to the exhibit. interface FastEthernet 0/3 channel-group 2 mode passive switchport trunk encapsulation switchport mode trunk C.

Answer: BD QUESTION 293 When a router undergoes the exchange protocol within OSPF.passexamvce. http://www. It requires the use of ARP. B. exstart state > loading state > exchange state > full state exstart state > exchange state > loading state > full state exstart state > full state > loading state > exchange state loading state > exchange state > full state > exstart state Answer: B Get Complete Collection of 200-120 Exam's Question and Answers. B.com . Answer: D QUESTION 292 What are two enhancements that OSPFv3 supports over OSPFv2? (Choose two. It supports up to 2 instances of OSPFv3 over a common link. There is a speed mismatch between SW1's Fa0/1 and SW2's Fa0/1 interfaces. D. B. C. C. D. It can support multiple IPv6 subnets on a single link. There is an encapsulation mismatch between SW1's Fa0/1 and SW2's Fa0/1 interfaces. C.) A. SW1's Fa0/1 interface is administratively shut down.A. It routes over links rather than over networks. in what order does it pass through each state? A. D. There is an MTU mismatch between SW1's Fa0/1 and SW2's Fa0/1 interfaces.

255. router ospf network 10.0.1.0 D.0 B.16. http://www.2.0 /24 to area 0? A.1.255 area 0 0 0.2 Answer: D QUESTION 296 What command sequence will configure a router to run OSPF and add network 10.0.QUESTION 294 A network administrator creates a layer 3 EtherChannel.255 0.0 C.0. router ospf area network 10.1 172. B.1.255.1. the port-channel 1 interface the highest number member interface all member interfaces the lowest number member interface Answer: A QUESTION 295 Refer to the exhibit. C.1.0 E.1.1 1.0 area 0 0.com . router ospf 0 255.0. B.1.passexamvce.0. bundling four interfaces into channel group 1. D.1.2.1. On what interface is the IP address configured? A. If the router Cisco returns the given output and has not had its router ID set manually. router ospf 1 network 10.1 2.168. D.1.0.1. C.255 area 0 Get Complete Collection of 200-120 Exam's Question and Answers.1. router ospf area network 10. 192. what value will OSPF use as its router ID? A.1.1.

0.0 area 0 F.0.1. D.255. B. It is globally significant and is used to represent the AS number.0. It is locally significant and is used to identify an instance of the OSPF database.0. E. router ospf 1 network 10.255.network 10.0.0 area 0 network all-interfaces area 0 Answer: A QUESTION 298 Which statement describes the process ID that is used to run OSPF on a router? A.255. C. A variety of network management Get Complete Collection of 200-120 Exam's Question and Answers. The term NMS can be applied to either a dedicated device used for network management.255. The SNMP framework has three parts: + An SNMP manager + An SNMP agent + A Management Information Base (MIB) The SNMP manager is the system used to control and monitor the activities of network hosts using SNMP. C.255. or the applications used on such a device. D. SNMP provides a standardized framework and a common language used for the monitoring and management of devices in a network.0. B.com .0 255.1.0. http://www.0 0. It is locally significant and must be the same throughout an area. It is globally significant and is used to identify OSPF stub areas. B. The most common managing system is called a Network Management System (NMS).255 Answer: C QUESTION 297 What OSPF command.0. network 0.0 255. D.255. when configured.1. MIB SNMP Manager SysLog Server SNMP Agent Set Answer: ABD Explanation: SNMP is an application-layer protocol that provides a message format for communication between SNMP managers and agents.255 0.0.passexamvce.0 0.0. will include all interfaces into area 0? A.255 area 0 network 0.0 area 0 network 255. C. Answer: B QUESTION 299 Which three are the components of SNMP? (Choose three) A.1.

We can configure this feature with the command logging file flash:filename. E. Flash The logging buffer . The agent and MIB reside on the routing device (router.com . or a UNIX syslog server. terminal lines (console terminal). To enable the SNMP agent on a Cisco routing device. depending on your configuration. B. C. If you specify a level with the "logging console level" command. switches send the output from system messages and debug privileged EXEC commands to a logging process. The SNMP agent is the software component within the managed device that maintains the data for the device and reports these data. For Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce. These features range from simple command-line applications to feature-rich graphical user interfaces (such as the CiscoWorks2000 line of products). you must define the relationship between the manager and the agent. The Management Information Base (MIB) is a virtual information storage area for network management information. C. D. E. Emergencies Alerts Critical Errors Warnings Answer: ABCD Explanation: The Message Logging is divided into 8 levels as listed below: Level Keyword Description 0 emergencies System is unusable 1 alerts Immediate action is needed 2 critical Critical conditions exist 3 errors Error conditions exist 4 warnings Warning conditions exist 5 notification Normal. D. which consists of collections of managed objects. but significant. that level and all the higher levels will be displayed. such as the logging buffer (on RAM). The lowest level is level 7.RAM The console terminal Other terminals Syslog server Answer: BCE Explanation: By default. QUESTION 301 Syslog was configured with a level 3 trap. Which 4 types of logs would be generated (choose four) A. The process also sends messages to the console. as needed. The logging process controls the distribution of logging messages to various destinations. QUESTION 300 What are the Popular destinations for syslog messages to be saved? A. to managing systems. conditions exist 6 informational Informational messages 7 debugging Debugging messages The highest level is level 0 (emergencies). Note: Syslog messages can be written to a file in Flash memory although it is not a popular place to use. http://www. B.applications are available for use with SNMP. or switch). access server.

C. http://www. critical. Netflow WCCP IP SLA SNMP Answer: D Explanation: Sometimes.passexamvce. These attributes are the IP packet identity or fingerprint of the packet and determine if the packet is unique or similar to other packets. workstations. an IP Flow is based on a set of 5 and up to 7 IP packet attributes. messages like this might appear in the router console: %SNMP-3-CPUHOG: Processing [chars] of [chars] They mean that the SNMP agent on the device has taken too much time to process a request. B. by using the "logging console warnings" command. Traditionally.example. errors.. all the logging of emergencies. QUESTION 302 What are the benefit of using Netflow? (Choose three. D. C. D. QUESTION 304 What are the three things that the Netflow uses to consider the traffic to be in a same flow? A. warnings will be displayed. Application & User Monitoring Network Planning Security Analysis Accounting/Billing Answer: ACD QUESTION 303 Which protocol can cause overload on a CPU of a managed device? A. B.com . servers. C. Network.. printers. IP Packet attributes used by NetFlow: + IP source address + IP destination address + Source port Get Complete Collection of 200-120 Exam's Question and Answers. IP address Interface name Port numbers L3 protocol type MAC address Answer: ACD Explanation: What is an IP Flow? Each packet that is forwarded within a router or switch is examined for a set of IP packet attributes. You can determine the cause of high CPU use in a router by using the output of the show process cpu command. E. alerts. Note: A managed device is a part of the network that requires some form of monitoring and management (routers. B.) A. switches.). D.

C. http://www. TRAP INFORM GET SET Answer: AB Explanation: A TRAP is a SNMP message sent from one application to another (which is typically on a remote host). D. C. which is nothing more than an acknowledged TRAP. QUESTION 306 Which three features are added in SNMPv3 over SNMPv2? A. Emergency B. B.+ Destination port + Layer 3 protocol type + Class of Service + Router or switch interface QUESTION 305 What is the alert message generated by SNMP agents called ? A. E. B.com .passexamvce. Notice Get Complete Collection of 200-120 Exam's Question and Answers. who is responsible for the arp request? A. D. D. AVF AVG Active Router Standby Router Answer: B QUESTION 308 What levels will be trapped if the administrator executes the command router(config)# logging trap 4 (Choose four) ? A. B. The big problem with TRAPs is that they're unacknowledged so you don't actually know if the remote application received your oh-so-important message to it. C. Their purpose is merely to notify the other application that something has happened. etc. SNMPv2 PDUs fixed this by introducing the notion of an INFORM. Message Integrity Compression Authentication Encryption Error Detection Answer: ACD QUESTION 307 In a GLBP network. has been noticed.

but significant. C. http://www. Get Complete Collection of 200-120 Exam's Question and Answers. Error E. errors. alerts. For example. There is a Layer 2 issue.C.passexamvce. Your company has decided to connect the main office with three other remote branch offices using point-to-point serial links. critical. all the logging of emergencies. There is an area ID mismatch. An OSPF neighbor adjacency is not formed between R3 in the main office and R4 in the Branchl office. Alert D. warnings will be logged. You are required to troubleshoot and resolve OSPF neighbor adjacency issues between the main office and the routers located in the remote branch offices. QUESTION 309 Hotspot Question Refer to the topology. What is causing the problem? A. by using the "logging trap 4 command. conditions exist 6 informational Informational messages 7 debugging Debugging messages If you specify a level with the "logging trap level" command. Warning Answer: ACDE Explanation: The Message Logging is divided into 8 levels as listed below: Level Keyword Description 0 emergencies System is unusable 1 alerts Immediate action is needed 2 critical Critical conditions exist 3 errors Error conditions exist 4 warnings Warning conditions exist 5 notification Normal.com . an encapsulation mismatch on serial links. B. that level and all the higher levels will be logged. There is an OSPF hello and dead interval mismatch.

http://www.D. Your company has decided to connect the main office with three other remote branch offices using point-to-point serial links. You are required to troubleshoot and resolve OSPF neighbor adjacency issues between the main office and the routers located in the remote branch offices. The R3 router ID is configured on R4.passexamvce. An OSPF neighbor adjacency is not formed between R3 in the main office and R5 in the Branch2 Get Complete Collection of 200-120 Exam's Question and Answers. Answer: A Explanation: A show running-config command on R3 and R4 shows that R4 is incorrectly configured for area 2: QUESTION 310 Hotspot Question Refer to the topology.com .

com . There is an OSPF hello and dead interval mismatch.office. There is a missing network command in the OSPF process on R5. What is causing the problem? A. Answer: C Explanation: The "show ip ospf interface command on R3 and R5 shows that the hello and dead intervals do not match. You are required to troubleshoot and resolve OSPF neighbor adjacency issues between the main office and the routers located in the remote branch offices. There is an area ID mismatch. B. They are 50 and 200 on R3 and 10 and 40 on R5. There is a PPP authentication issue. Get Complete Collection of 200-120 Exam's Question and Answers. QUESTION 311 Hotspot Question Refer to the topology.passexamvce. Your company has decided to connect the main office with three other remote branch offices using point-to-point serial links. D. http://www. C. a password mismatch.

configure ip ospf 1 area 0 command under ethernetO/1 Answer: B Explanation: Looking at the configuration of R1. R2 ethernetO/1 and R3 ethernetO/O are configured with a non-default OSPF hello interval of 25. Enable OSPF for R1 ethernetO/1. http://www. R1 ethernetO/1 is shutdown. Get Complete Collection of 200-120 Exam's Question and Answers. B.R1 does not form an OSPF neighbor adjacency with R2. we see that R1 is configured with a hello interval of 25 on interface Ethernet 0/1 while R2 is left with the default of 10 (not configured).passexamvce. Which option would fix the issue? A. configure no ip ospf hello-interval 25 D. Configure no shutdown command. R1 ethernetO/1 configured with a non-default OSPF hello interval of 25: configure no ip ospf hello-interval 25 C.com .

passexamvce. You are required to troubleshoot and resolve OSPF neighbor adjacency issues between the main office and the routers located in the remote branch offices. Your company has decided to connect the main office with three other remote branch offices using point-to-point serial links.com . http://www. An OSPF neighbor adjacency is not formed between R3 in the main office and R6 in the Branch3 office. What is causing the problem? Get Complete Collection of 200-120 Exam's Question and Answers.QUESTION 312 Hotspot Question Refer to the topology.

the username is not configured on R3 and R6. D. Get Complete Collection of 200-120 Exam's Question and Answers. The R3 router ID is configured on R6. There is an area ID mismatch. http://www. There is a PPP authentication issue. R2 and R3 are connected to the switches SW1 and SW2. Use the appropriate show commands to troubleshoot the issues. There is an OSPF hello and dead interval mismatch. QUESTION 313 Hotspot Question Refer to the topology. R2. C.passexamvce. Your company has connected the routers R1.A. Answer: D Explanation: Using the show running-config command we see that R6 has been incorrectly configured with the same router ID as R3 under the router OSPF process. B. The EIGRP routing protocol is configured. respectively.com . and R3 with serial links. SW1 and SW2 are also connected to the routers R4 and R5. You are required to troubleshoot and resolve the EIGRP issues between the various routers.

Authentication method and key strings Here. Get Complete Collection of 200-120 Exam's Question and Answers. R4 has been incorrectly configured to be in another AS.4 /32.6/32 are not appearing in the routing table of R5 Why are the interfaces missing? A. we see that R4 is configured for EIGRP AS 2. and 10. D. Automatic summarization is enabled. and the network command is missing on R4. when it should be AS 1.passexamvce. B. the following must match: .Neighbors must be in the same subnet.4.4. C. http://www. 10. so it does not peer with R5.5/32.The loopback interfaces on R4 with the IP addresses of 10.com .4. The loopback addresses haven't been advertised.4.AS numbers.4. The interfaces are shutdown. so only the 10.4. so they are not being advertised.0 network is displayed. Answer: B Explanation: For an EIGRP neighbor to form.0.0.K values.

Your company has connected the routers R1. You are required to troubleshoot and resolve the EIGRP issues between the various routers.QUESTION 314 Hotspot Question Refer to the topology. R2. respectively. Get Complete Collection of 200-120 Exam's Question and Answers. The EIGRP routing protocol is configured. R2 and R3 are connected to the switches SW1 and SW2. SW1 and SW2 are also connected to the routers R4 and R5.passexamvce. Use the appropriate show commands to troubleshoot the issues.com . http://www. and R3 with serial links.

5. using the "show ip route" command on R1 we can see that to reach 10. QUESTION 315 Hotspot Question Refer to the topology. B.5. which we see from the diagram is the link to R2.5 and 10.Which path does traffic take from R1 to R5? A. R2. The traffic goes through R2. Then. The traffic goes through R3. http://www. The traffic is equally load-balanced over R2 and R3. Get Complete Collection of 200-120 Exam's Question and Answers.5.5.com . D.55 the preferred path is via Serial 1/3. C. Answer: A Explanation: Using the "show ip int brief command" on R5 we can see the IP addresses assigned to this router.passexamvce. and R3 with serial links. Your company has connected the routers R1. The traffic is unequally load-balanced over R2 and R3.

B. http://www. Answer: C Explanation: The link from R1 to R6 is shown below: Get Complete Collection of 200-120 Exam's Question and Answers. respectively. The network command is missing. The passive-interface command is enabled. C. Use the appropriate show commands to troubleshoot the issues. The AS does not match.R2 and R3 are connected to the switches SW1 and SW2. What is the cause for this misconfiguration? A. The EIGRP routing protocol is configured.passexamvce. You are required to troubleshoot and resolve the EIGRP issues between the various routers. The K values mismatch. SW1 and SW2 are also connected to the routers R4 and R5. Router R6 does not form an EIGRP neighbor relationship correctly with router R1. D.com .

As you can see. The IP addresses are in the 192.com . http://www.0 network: Get Complete Collection of 200-120 Exam's Question and Answers. they are both using e0/0.16.passexamvce.168.

Your company has connected the routers R1.1 Type escape sequence to abort. and R3 with serial links..1. 100-byte ICMP Echos to 10.55 source 10...passexamvce.com .168. timeout is 2 seconds: Packet sent with a source address of 10. Study the following output taken on R1: R1# Ping 10. the "network 192. R2..1. Success rate is 0 percent (0/5) QUESTION 316 Hotspot Question Refer to the topology. http://www.55.1.. Sending 5.But when we look at the EIGRP configuration.5.5.5.16. Get Complete Collection of 200-120 Exam's Question and Answers.5.1..0" command is missing on R6.1 .

Why are the pings failing? A.1 network. When looking at the EIGRP configuration on R1.1.1 network statement is missing on R1.com .1.R2 and R3 are connected to the switches SW1 and SW2. The network statement is missing on R5. which is the loopback0 IP address of R1. B. http://www. Use the appropriate show commands to troubleshoot the issues. we see that the 10. The loopback interface is shut down on R5. C.passexamvce. respectively. D. The EIGRP routing protocol is configured.1. The network statement is missing on R1. SW1 and SW2 are also connected to the routers R4 and R5. You are required to troubleshoot and resolve the EIGRP issues between the various routers. The IP address that is configured on the Lo1 interface on R5 is incorrect. Get Complete Collection of 200-120 Exam's Question and Answers. Answer: C Explanation: R5 does not have a route to the 10.1.

D.0C07.B400.01A3 0007.5E00. There are two version of HSRP.QUESTION 317 What is a valid HSRP virtual MAC address? A. in which xx is the Get Complete Collection of 200-120 Exam's Question and Answers.0c07. B.ACxx .AE01 0000.AC15 0007.passexamvce.com . + With HSRP version 1.B301 Answer: C Explanation: With HSRP. C. two or more devices support a virtual router with a fictitious MAC address and unique IP address. http://www. 0000.5E00. the virtual router's MAC address is 0000.

there is still only one virtual IP address but each router has a different virtual MAC address. Answer: A Explanation: One disadvantage of HSRP and VRRP is that only one router is in use. However. B. C.AVFs) so that clients can send traffic to different routers in that GLBP group (load sharing). QUESTION 319 Which statement describes VRRP object tracking? A. other routers must wait for the primary to fail because they can be used.com . in which the MAC address range from 0005. First a GLBP group must elect an Active Virtual Gateway (AVG). regardless of the version or deployment status a command that can be entered in any configuration mode Answer: A Explanation: When you enter global configuration mode and enter a command. B. All GLBP member routers will reply in round-robin fashion.passexamvce. It ensures the best VRRP router is the virtual router master for the group. It causes traffic to dynamically move to higher bandwidth links. a command that is set once and affects the entire router a command that is implemented in all foreign and domestic IOS versions a command that is universal in application and supports all protocols a command that is available in every release of IOS. B. E. The active virtual gateway will reply with one of four possible virtual MAC addresses.0000 through 0005. D. It thwarts man-in-the-middle attacks. in which xxx is the HSRP group. Note: Another case is HSRP for IPv6. the virtual MAC address if 0000. QUESTION 318 In GLBP. Answer: B Explanation: Object tracking is the process of tracking the state of a configured object and uses that state to determine the priority of the VRRP router in a VRRP group QUESTION 320 What is a global command? A.73A0.0C9F. D. http://www. + With HSRP version 2. it is applied to the running Get Complete Collection of 200-120 Exam's Question and Answers.Fxxx. The active virtual gateway will reply with its own hardware MAC address.0FFF. C. It monitors traffic flow and link utilization. The GLBP member routers will reply with one of four possible burned in hardware addresses. Gateway Load Balancing Protocol (GLBP) can use of up to four routers simultaneously. C.HSRP group. The AVG is responsible for replying ARP requests from hosts/clients. It replies with different virtual MAC addresses that correspond to different routers (known as Active Virtual Forwarders . D. In GLBP.73A0. which router will respond to client ARP requests? A.

passexamvce. cut-through Get Complete Collection of 200-120 Exam's Question and Answers. C.6.) A. B.64.128 115.5. E.64.255 115.0/22? (Choose three. An example of a global command is one used for the hostname of the router.64.) A. E. F. Switch(config-if)# switchport access vlan 50 Switch(vlan)# vtp server Switch(config)# config-revision 20 Switch(config)# vlan 50 name Tech Switch(vlan)# vlan 50 Switch(vlan)# switchport trunk vlan 50 Answer: BE QUESTION 322 Which of the following IP addresses fall into the CIDR block of 115. buffering B. C.) A.255 115.64 115.7. which is displayed in the graphic.128 Answer: BCE QUESTION 323 Which of the following are types of flow control? (Choose three. D.64. QUESTION 321 An administrator is unsuccessful in adding VLAN 50 to a switch. The configuration of a global command affects the entire router. F.configuration file that is currently running in ram.12. the administrator views the output of the show vtp status command. http://www.32 115. D.64.com . What commands must be issued on this switch to add VLAN 50 to the database? (Choose two.64.4. 115.3. While troubleshooting the problem.64. B.8.

0 192. congestion avoidance E.0 192.255. HQ(config)# ip route 192. 30 seconds 60 seconds 90 seconds 180 seconds 240 seconds Answer: E QUESTION 325 Refer to the exhibit. A network associate has configured the internetwork that is shown in the exhibit.16.5 Branch(config)# ip route 172.168.0 255. how much time will elapse before that route is removed from the routing table? A.com . D. but has failed to configure routing properly.255. Which configuration will allow the hosts on the Branch LAN to access resources on the HQ LAN with the least impact on router processing and WAN bandwidth? A.6 Get Complete Collection of 200-120 Exam's Question and Answers. windowing D.passexamvce.2. C.0 255.168. E.2. After a RIP route is marked invalid on Router_1.1.168.25. load balancing Answer: ACD QUESTION 324 Refer to the exhibit.255.C. B. http://www.255.

HQ(config)# router rip HQ(config-router)# network 192. HQ(config)# router eigrp 56 HQ(config-router)# network 192. HQ(config)# router ospf 1 HQ(config-router)# network 192.2. B. C.0.0 C.0. D.16.25. Configure open authentication on the AP and the client.0 0. B.168.16.2.0 Branch(config)# router eigrp 56 Branch(config-router)# network 192.1.168.2. C.1.0.0.passexamvce.0 Branch(config-router)# network 192.B.0 0. A WPA key is longer and requires more special characters than the WEP key.0.4 D.0 HQ(config-router)# network 172.168.168.168.0.4 0. Answer: D QUESTION 328 All WAN links inside the ABC University network use PPP with CHAP for authentication security. The values of WPA keys can change dynamically while the system is used.25. Configured MAC address filtering to permit the client to connect to the AP.1.168.2. http://www.0 Branch(config)# router rip Branch(config-router)# network 192.255 area 0 Answer: A QUESTION 326 Which additional configuration step is necessary in order to connect to an access point that has SSID broadcasting disabled? A.4 HQ(config-router)# network 172.0 Branch(config-router)# network 192.0. Answer: C QUESTION 327 What is one reason that WPA encryption is preferred over WEP? A. D. D.255 area 0 Branch(config)# router ospf 1 Branch(config-router)# network 192. C. Set the SSID value on the client to the SSID configured on the AP. show chap authentication show interface serial0 debug ppp authentication debug chap authentication Get Complete Collection of 200-120 Exam's Question and Answers. The access point and the client are manually configured with different WPA key values. Which command will display the CHAP authentication process as it occur between two routers in the network? A. Set the SSID value in the client software to public.168. B. WPA key values remain the same until the client configuration is changed.3 area 0 HQ(config-router)# network 172.168.com .2.16.

149.23.149. 00:00:00:16.96[110/13] via 190.passexamvce.com . 00:00:00:07.173.23. most common remote-access method unsecured encrypted uses port 22 operates at the transport layer Answer: DE Get Complete Collection of 200-120 Exam's Question and Answers.E.10.149. 208.96[110/3] via 190.149.23. 208.23. what information will Router_E contain in its routing table for the subnets 208.10.96[110/13] via 190. 00:00:00:07.) A.10. show ppp authentication chap Answer: C QUESTION 329 Refer to the exhibit.23.23.23.96? A. FastEthernet0/0 C. 208.64[110/13] via 190.149.149.64[110/1] via 190.23.23. Serial1/0 208. Serial1/0 208. FastEthernet0/0 B. 00:00:00:16. 00:00:00:16.23. 00:00:00:07.149.23.173.23.23. Serial1/0 Answer: A QUESTION 330 What are two characteristics of SSH? (Choose two. D. The network is converged.64[110/13] via 190.96[110/13] via 190. Serial1/0 208. 00:00:00:16.173.149.149.23.64 and 208.96[110/13] via 190. B. Serial1/0 208.10.23.173.23.23.10.64[110/13] via 190.10.23.173. E. 00:00:00:16. FastEthernet0/0 D.10.23. C. After link-state advertisements are received from Router_A. http://www.149. 208.173. FastEthernet0/0 208.10. 00:00:00:07.173.149.23.10.173.173.

D.15. RouterA(config)# access-list 101 deny ip host 172.0. C.15. Which of the following commands are required to prevent only Workstation 1 from accessing Server1 while allowing all other traffic to flow normally? (Choose two.163 RouterA(config)# access-list 101 permit ip any any Get Complete Collection of 200-120 Exam's Question and Answers.162.168.) A.0.150 host 172. destination port: 23 address:.168.36 destination port: 23 address: 192.32 0.161.37 destination port: 21 address:.168.15.41 destination port: 21 address:. It has been decided that Workstation 1 should be denied access to Server1. The access list has been configured on the S0/0 interface of router RTB in the outbound direction.15. Which two packets. RouterA(config)# interface fa0/0 RouterA(config-if)# ip access-group 101 out B.) access-list 101 deny tcp 192. RouterA(config)# interface fa0/0 RouterA(config-if)# ip access-group 101 in C.15 any eq telnet access-list 101 permit ip any any A. 192.16.15. http://www.5. E.168. B.passexamvce.168.15. 192. F. if routed to the interface.46. will be denied? (Choose two.168.168.49 destination port: 23 Answer: DE QUESTION 332 Refer to the graphic.16.15. 192. destination port: 21 address:.com . 192. source source source source source source ip ip ip ip ip ip address: 192.QUESTION 331 Refer to the exhibit.

0.5 eq 23 1 permit ip any any Answer: A QUESTION 335 As a network administrator.0 RouterA(config)# access-list 101 permit ip any any Answer: BC QUESTION 333 An access list was written with the four statements shown in the graphic.29. access-list access-list C.5 0.0.0.128/28 to the server at 192.3.0.0 0.255 172.255 172.1.0.255 172.0 0. access-list access-list access-list access-list access-list 10 10 10 10 10 permit permit permit permit permit 172.0.29.16.1.5 0.1.255.0.0.0.5.0.0 0. What command should be issued to accomplish this task? A.0 0.16. access-list access-list 101 deny tcp 192.1.128 0.15 192.168.0.168. access-list access-list D. access-list access-list B. you have been instructed to prevent all traffic originating on the LAN from entering the R2 router.168.128 0.168.0.1.1.29. RouterA(config)# access-list 101 deny ip 172.1.15 host 192.0.255 172.0.168. B. C.0.161.168.255 Answer: C QUESTION 334 A network administrator wants to add a line to an access list that will block only Telnet access by the hosts on subnet 192. http://www.passexamvce.16.0.0 eq 23 101 permit ip any any 101 deny tcp 192.0.16.5 0.163 0.168.0.255 172. Which single access list statement will combine all four of these statements into a single statement that will have exactly the same effect? A.0.29.0.0.0 0.D.168.1. Which the following command would implement the access list on the interface of the R2 router? Get Complete Collection of 200-120 Exam's Question and Answers.16.150 0. E.0 eq 21 1 permit ip any any 1 deny tcp 192.255 192.168.0 eq 23 101 permit ip any any 1 deny tcp 192.0.15.168.0.240 192. D.1.128 0.com .1.16.29.0.0.1.128 0.162.

A.com .3.passexamvce.8 from host C to host 5.2. F.10 Answer: BD Get Complete Collection of 200-120 Exam's Question and Answers. Which of the following Telnet sessions will be blocked by this ACL? (Choose two. E.3.10 from host B to host 5. C.10 from host B to host 5. access-list 101 in access-list 101 out ip access-group 101 in ip access-group 101 out Answer: C QUESTION 336 The access control list shown in the graphic has been applied to the Ethernet interface of router R1 using the ip access-group 101 in command. D.1.1. C. http://www.10 from host A to host 5.3.1.1.1.1.10 from host F to host 5.1. B. D.1.) A. from host A to host 5. B.

169.0. except for FTP traffic will be allowed to exit E0 FTP traffic from 192. C. C.169.8/29 LAN: access-list 135 deny tcp 192.169. can be used over analog circuits maps Layer 2 to Layer 3 address encapsulates several routed protocols supports IP only provides error correction Answer: ACE QUESTION 341 How should a router that is being used in a Frame Relay network be configured to avoid split Get Complete Collection of 200-120 Exam's Question and Answers. B.1.QUESTION 337 The following access list below was applied outbound on the E0 interface connected to the 192. E.169. ermit all packets matching the first three octets of the source address to all destinations permit all packet matching the last octet of the destination address and accept all source addresses permit all packet matching the host bits in the source address to all destinations permit all packet from the third subnet of the network address to all destinations Answer: A QUESTION 339 A default Frame Relay WAN is classified as what type of physical network? A.1.0 0.com . E.1.0.1.7 eq 20 any access-list 135 deny tcp 192.0.) A.25. C. E.0.1.0. B.9 to any host will be denied All traffic exiting E0 will be denied All FTP traffic to network 192. What is the effect of this access list configuration? A.9/29 will be denied Answer: D QUESTION 338 The following configuration line was added to router R1 Access-list 101 permit ip 10.169.255 any.8 0. D.7 eq 21 any How will the above access lists affect traffic? A.22 will be denied No traffic.0. B. FTP traffic from 192. D. C. D.8 0.169.1.passexamvce. http://www. D. point-to-point broadcast multi-access nonbroadcast multi-access nonbroadcast multipoint broadcast point-to-multipoint Answer: C QUESTION 340 Which of the following are key characteristics of PPP? (Choose three.30. B.

passexamvce. Inverse ARP is providing the wrong PVC information to the Gallant router C. http://www. Configure each Frame Relay circuit as a point-to-point line to support multicast and broadcast traffic C.horizon issues from preventing routing updates? A. 24 B. The Gallant router has the wrong LMI type configured B. The S3 interface of the Steele router has been configured with the frame-relay encapsulation ietf command D. Configure a separate sub-interface for each PVC with a unique DLCI and subnet assigned to the sub-interface B. 4 Get Complete Collection of 200-120 Exam's Question and Answers.com . The frame-relay map statement in the Attalla router for the PVC to Steele is not correct E. What is the cause of the problem? A. Configure a single sub-interface to establish multiple PVC connections to multiple remote router interfaces Answer: A QUESTION 342 The Frame Relay network in the diagram is not functioning properly. you must have a firm understanding of the IPv6 address structure. The IP address on the serial interface of the Attalla router is configured incorrectly Answer: D QUESTION 343 As a CCNA candidate. could you tell me how many bits are included in each filed? A. Refer to IPv6 address. Configure many sub-interfaces on the same subnet D.

C. Which commands are required to resolve this problem? Get Complete Collection of 200-120 Exam's Question and Answers. 16 Answer: D QUESTION 344 Refer to the exhibit. 3 D. The network administrator has created a new VLAN on Switch1 and added host C and host D. but host A could not communicate with host C or host D. D. C. E. http://www. host A could communicate with host B. after the network administrator completed the configuration.com . one two three four five six Answer: C QUESTION 345 Refer to the exhibit. The administrator has properly configured switch interfaces FastEthernet0/13 through FastEthernet0/14 to be members of the new VLAN. However.passexamvce. B. F. How many broadcast domains exist in the exhibited topology? A.

What the first thing should the switch do? Get Complete Collection of 200-120 Exam's Question and Answers. Router(config)# router rip Router(config-router)# network 192. Router(config)# interface fastethernet 0/1.0 B.2.168.1 255.A.0 C.168.0 Router(config-router)# network 192.com .1. Host A ( the host on the left ) sends the first frame to Host C (the host on the right). as shown in the following figure: After the Switch1 restarts.3. Switch1(config)# interface fastethernet 0/1 Switch1(config-if)# switchport mode trunk Switch1(config-if)# switchport trunk encapsulation isl Answer: A QUESTION 346 On a network of one department. http://www.168.3. there are four PCs connected to a switch.passexamvce.255.255.3 Router(config-if)# encapsulation dot1q 3 Router(config-if)# ip address 192.168. Switch1# vlan database Switch1(vlan)# vtp v2-mode Switch1(vlan)# vtp domain cisco Switch1(vlan)# vtp server D.0 Router(config-router)# network192.

Successful Ping 10.1 Remote Sever: 10. None of the above Answer: C QUESTION 347 Refer to the exhibit.0.1 . B.0. The new link is not functioning and the administrator needs to determine if the correct cable has been attached to the S0/0 interface. Switch1 will add 192.0. How can the administrator accurately verify the correct cable type on S0/0 in the most efficient manner? A.com .0.passexamvce.0.0.0.23.4 to the switching table.35/24 Default Gateway: 10. Switch1 will add 000A.0. C. Telnet to WANRouter and execute the command show interfaces S0/0 Telnet to WANRouter and execute the command show processes S0/0 Telnet to WANRouter and execute the command show running-configuration Telnet to WANRouter and execute the command show controller S0/0 Physically examine the cable between WANRouter S0/0 and the DCE. http://www. Switch1 will add 192. F. WANRouter is hosting a newly installed WAN link on interface S0/0.8A47. D. D.0. The network administrator is in a campus building distant from Building B.Unsuccessful Get Complete Collection of 200-120 Exam's Question and Answers. E.12 to the switching table.1 . B.5.75.35 .Successful Ping 10.E612 to the switching table.A.168.0.168. Establish a console session on WANRouter and execute the command show interfaces S0/0 Answer: D QUESTION 348 While troubleshooting a connectivity issue from a PC you obtain the following information: Local PC IP address: 10.250/24 You then conduct the following tests from the local PC: Ping 127.23. C.

A local physical layer problem exists. The routers cannot establish an adjacency relationship on their common Ethernet link.passexamvce.75. B. Answer: D QUESTION 349 A network administrator is troubleshooting the OSPF configuration of routers R1 and R2. The graphic shows the output of the show ip ospf interface e0 command for routers R1 and R2. http://www. The host NIC is not functioning.250 . The cost on R1 should be set higher. The hello and dead timers are not configured properly.Ping 10. D.Unsuccessful What is the underlying cause of this problem? A. D. C.com . The OSPF area is not configured properly. A remote physical layer problem exists. TCP/IP has not been correctly installed on the host. what is the cause of this problem? A. A backup designated router needs to be added to the network. Get Complete Collection of 200-120 Exam's Question and Answers. C. The priority on R1 should be set higher. B.5. E. Based on the information in the graphic.

ACCESS1(config)# line console 0 ACCESS1(config-line)# password cisco B. http://www.F. The OSPF process ID numbers must match. Get Complete Collection of 200-120 Exam's Question and Answers. Remote27(config)# line vty 0 4 Remote27(config-line)# login Remote27(config-line)# password cisco E.com . ACCESS1(config)# line vty 0 4 ACCESS1(config-line)# login ACCESS1(config-line)# password cisco D. Remote27(config)# line console 0 Remote27(config-line)# login Remote27(config-line)# password cisco C. Answer: D QUESTION 350 This graphic shows the results of an attempt to open a Telnet connection to router ACCESS1 from router Remote27. the network administrator receives the exhibited error message. Remote27(config)# enable password cisco Answer: C QUESTION 351 When upgrading the IOS image. ACCESS1(config)# enable password cisco F.passexamvce. Which of the following command sequences will correct this problem? A.

What could be the cause of this error? A.passexamvce. 253 252 255 254 Answer: A QUESTION 353 Which statement is true. what is the TTL value for that ping? A. The IOS image on the TFTP server is corrupt. as relates to classful or classless routing? Get Complete Collection of 200-120 Exam's Question and Answers. D. B. The new IOS image is not correct for this router platform. D. Host A pings interface S0/0 on router 3. C.com . B. E. There is not enough disk space on the TFTP server for the IOS image. Answer: B QUESTION 352 Refer to the exhibit. http://www. The TFTP server is unreachable from the router. C. The new IOS image is too large for the router flash memory.

D. OSPF and mumber of hops and reliability EIGRP and link cost IS-IS and delay and reliability RIPv2 and number of hops Answer: D Get Complete Collection of 200-120 Exam's Question and Answers. D.A. C. B. C.does not require dedicated gateway tunnels. C. Why does the telnet connecting fail when a host attempts to connect a remote router? A.and can pass through existing IPV4 NAT gateways? A. dual stack dynamic Teredo Manual 6to4 Answer: C QUESTION 356 Which pairing reflects a correct protocol-and-metric relationship? A. D. C. Automatic summarization at classful boundries can cause problems on discontinuous subnets EIGRP and OSPF are classful routing protocols and summarize routes by default RIPv1 and OSPF are classless routing protocols Classful routing protocols send the subnet mask in routing updates Answer: A QUESTION 354 Refer to the exhibit. D.com . B. http://www. B.passexamvce. No password No password No password No password was set for tty lines was set for aux lines was set for vty lines was set for cty lines Answer: C QUESTION 355 Which name describes an IPV6 host-enable tunneling technique that uses IPV4 UDP. B.

The VTP and uplink port configurations for each switch are displayed. Which two command sets. S1(config)#interface f0/24 S1(config-if)#switchport mode trunk S1(config-if)#end Answer: BE QUESTION 358 How are VTP advertisements delivered to switches across the network? Get Complete Collection of 200-120 Exam's Question and Answers.com .passexamvce. S2(config)#interface f0/24 S2(config-if)#switchport mode access S2(config-if)#end D. if issued. http://www.QUESTION 357 Refer to the exhibit. S2(config)#vtp mode client E. S2(config)#vtp mode transparent B. resolve this failure and allow VTP to operate as expected?(choose two) A. The VLAN configuration of S1 is not being in this VTP enabled environment. S1(config)#vtp mode client C.

A.
B.
C.
D.

anycast frames
multicast frames
broadcast frames
unicast frames

Answer: B

QUESTION 359
Refer to the exhibit. What could be possible causes for the "Serial0/0 is down" interface status?
(Choose two.)

A.
B.
C.
D.
E.

A Layer 1 problem exists.
The bandwidth is set too low.
A protocol mismatch exists.
An incorrect cable is being used.
There is an incorrect IP address on the Serial 0/0 interface.

Answer: AD

QUESTION 360
Refer to the exhibit. Which two statements are true about the loopback address that is configured
on RouterB? (Choose two.)

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

A.
B.
C.
D.
E.

It ensures that data will be forwarded by RouterB.
It provides stability for the OSPF process on RouterB.
It specifies that the router ID for RouterB should be 10.0.0.1.
It decreases the metric for routes that are advertised from RouterB.
It indicates that RouterB should be elected the DR for the LAN.

Answer: BC

QUESTION 361
A network administrator is explaining VTP configuration to a new technician. What should the
network administrator tell the new technician about VTP configuration? (Choose three.)
A.
B.
C.
D.
E.

A switch in the VTP client mode cannot update its local VLAN database.
A trunk link must be configured between the switches to forward VTP updates.
A switch in the VTP server mode can update a switch in the VTP transparent mode.
A switch in the VTP transparent mode will forward updates that it receives to other switches.
A switch in the VTP server mode only updates switches in the VTP client mode that have a higher
VTP revision number.
F. A switch in the VTP server mode will update switches in the VTP client mode regardless of the
configured VTP domain membership.
Answer: ABD

QUESTION 362
Refer to the exhibit. Both switches are using a default configuration. Which two destination
addresses will host 4 use to send data to host 1? (Choose two.)

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

A.
B.
C.
D.
E.
F.

the IP address of host 1
the IP address of host 4
the MAC address of host 1
the MAC address of host 4
the MAC address of the Fa0/0 interface of the R1 router
the MAC address of the Fa0/1 interface of the R1 router

Answer: AF

QUESTION 363
What are two reasons a network administrator would use CDP? (Choose two.)
A.
B.
C.
D.
E.
F.

to verify the type of cable interconnecting two devices
to determine the status of network services on a remote device
to obtain VLAN information from directly connected switches
to verify Layer 2 connectivity between two devices when Layer 3 fails
to obtain the IP address of a connected device in order to telnet to the device
to determine the status of the routing protocols between directly connected routers

Answer: DE

QUESTION 364
Refer to the exhibit. The router has been configured with these commands:

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

What are the two results of this configuration? (Choose two.)

A.
B.
C.
D.
E.

The default route should have a next hop address of 64.100.0.3.
Hosts on the LAN that is connected to FastEthernet 0/1 are using public IP addressing.
The address of the subnet segment with the WWW server will support seven more servers.
The addressing scheme allows users on the Internet to access the WWW server.
Hosts on the LAN that is connected to FastEthernet 0/1 will not be able to access the Internet
without address translation.

Answer: DE

QUESTION 365
A company is installing IP phones. The phones and office computers connect to the same device.
To ensure maximum throughput for the phone data, the company needs to make sure that the
phone traffic is on a different network from that of the office computer data traffic. What is the best
network device to which to directly connect the phones and computers, and what technology
should be implemented on this device? (Choose two.)

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

A.
B.
C.
D.
E.
F.

hub
router
switch
STP
subinterfaces
VLAN

Answer: CF

QUESTION 366
What are two benefits of using VTP in a switching environment? (Choose two.)
A.
B.
C.
D.
E.

It allows switches to read frame tags.
It allows ports to be assigned to VLANs automatically.
It maintains VLAN consistency across a switched network.
It allows frames from multiple VLANs to use a single interface.
It allows VLAN information to be automatically propagated throughout the switching environment.

Answer: CE

QUESTION 367
Which two statements are true about the command ip route 172.16.3.0 255.255.255.0
192.168.2.4? (Choose two.)
A.
B.
C.
D.

It establishes a static route to the 172.16.3.0 network.
It establishes a static route to the 192.168.2.0 network.
It configures the router to send any traffic for an unknown destination to the 172.16.3.0 network.
It configures the router to send any traffic for an unknown destination out the interface with the
address 192.168.2.4.
E. It uses the default administrative distance.
F. It is a route that would be used last if other routes to the same destination exist.
Answer: AE

QUESTION 368
What are two advantages of Layer 2 Ethernet switches over hubs? (Choose two.)
A.
B.
C.
D.
E.

decreasing the number of collision domains
filtering frames based on MAC addresses
allowing simultaneous frame transmissions
increasing the size of broadcast domains
increasing the maximum length of UTP cabling between devices

Answer: BC

QUESTION 369
Refer to the exhibit. A network associate needs to configure the switches and router in the

Get Complete Collection of 200-120 Exam's Question and Answers.
http://www.passexamvce.com

C. B.) Get Complete Collection of 200-120 Exam's Question and Answers. The networks connected to router R2 have been summarized as a 192.168.com .176. Which two packet destination addresses will R1 forward to R2? (Choose two. E.) A. E. F. A B C D E F Answer: CF QUESTION 370 Which two values are used by Spanning Tree Protocol to elect a root bridge? (Choose two.passexamvce.0/21 route and sent to R1. amount of RAM bridge priority IOS version IP address MAC address speed of the links Answer: BE QUESTION 371 Refer to the exhibit. F. http://www. B.) A. Which two Ethernet segments would need to be configured as trunk links? (Choose two. D.graphic so that the hosts in VLAN3 and VLAN4 can communicate with the enterprise server in VLAN2. D. C.

Connectivity between VLANs requires a Layer 3 device. Which three statements are true about how router JAX will choose a path to the 10. C. D.160 192.168. F.) Get Complete Collection of 200-120 Exam's Question and Answers. Each VLAN uses a separate address space.194.184. 192.4 192.183. F. C. Answer: BDE QUESTION 373 Refer to the exhibit.2 192.1.41 192.168.) A. D.0/24 network when different routing protocols are configured? (Choose three.A.168.168.159.183.3. E.255 192. A switch maintains a separate bridging table for each VLAN. VLANs cannot span multiple switches. E. http://www. B.168.passexamvce. B.179.45 Answer: BE QUESTION 372 Which three statements are typical characteristics of VLAN arrangements? (Choose three.168. A new switch has no VLANs configured.com . VLANs typically decrease the number of collision domains.

only the path JAX-ORL will be installed into the routing table.com . With EIGRP and OSPF both running on the network with their default configurations. if EIGRP and OSPF are both running on the network with their default configurations. The OSPF paths will be installed in the routing table. When EIGRP is the routing protocol. the EIGRP paths will be installed in the routing table. Answer: ADE QUESTION 374 Refer to the exhibit. The equal cost paths JAX-CHI-ORL and JAX. http://www.passexamvce.A. E. B. and JAX-NY-ORL will be installed in the routing table by default.NY-ORL will be installed in the routing table if RIPv2 is the routing protocol. F. When EIGRP is the routing protocol. C. By default. D.) Get Complete Collection of 200-120 Exam's Question and Answers. only the path JAX-ORL will be installed in the routing table by default. if RIPv2 is the routing protocol. Which three statements correctly describe Network Device A? (Choose three. the equal cost paths JAX-CHI-ORL.

With a network wide mask of 255. each interface does not require an IP address. With a network wide mask of 255.00aa. E. With a network wide mask of 255.128. This switch has a lower bridge ID for VLAN 2 than the elected designated switch. what is the most likely reason that interface FastEthernet 0/10 is not the root port for VLAN 2? A. must be a Layer 2 device for the PCs to communicate with each other. alternate backup designated disabled root Answer: CE QUESTION 376 Refer to the exhibit.255. With a network wide mask of 255. C. http://www.255.255. This command is executed on 2960Switch: 2960Switch(config)# mac-address-table static 0000. each interface does not require an IP address.A. D. B. This switch has more than one interface connected to the root network segment in VLAN 2.255.passexamvce.255.com . must be a Layer 3 device for the PCs to communicate with each other. E. D. B. This switch interface has a higher path cost to the root bridge than another in the topology. Answer: BDE QUESTION 375 Switch ports operating in which two roles will forward traffic according to the IEEE 802.255. This switch is running RSTP while the elected designated switch is running 802. Given the output shown from this Cisco Catalyst 2950.aaaa vlan 10 interface fa0/1 Which two of these statements correctly identify results of executing the command? (Choose two.1w standard? (Choose two.128. With a network wide mask of 255. D. each interface does require an IP address on a unique IP subnet. B.0.0. C.1d Spanning Tree. C. Answer: C QUESTION 377 Refer to the exhibit.255.0.) Get Complete Collection of 200-120 Exam's Question and Answers.) A.255.254.255.

A modem terminates a digital local loop. C. E. MAC address 0000. It requires an enterprise license in order to be implemented. D.) A. A CSU/DSU terminates an analog local loop.aaaa can source frames on the fa0/1 segment. A router is commonly considered a DCE device.aaaa does not need to be learned by this switch. It requires that the destination device be configured to support Telnet connections. A router is commonly considered a DTE device.00aa. It is more secure than SSH. Answer: BE QUESTION 378 Which of the following describes the roles of devices in a WAN? (Choose three. Only MAC address 0000. IDS Get Complete Collection of 200-120 Exam's Question and Answers. http://www. D.) A. E. MAC address 0000.00aa. A CSU/DSU terminates a digital local loop. D.aaaa will be listed in the MAC address table for interface fa0/1 only.A. B. B. Answer: AE QUESTION 380 What are two security appliances that can be installed in a network? (Choose two. It is no longer supported on Cisco network devices. It sends data in clear text format. Port security is implemented on the fa0/1 interface. C.com . ATM B. A modem terminates an analog local loop.aaaa will be forwarded out fa0/1.passexamvce. C. B. E.) A. Frames with a Layer 2 source address of 0000.00aa. F.00aa. Answer: ADE QUESTION 379 What are two characteristics of Telnet? (Choose two.

4.240. Answer: A QUESTION 383 Refer to the exhibit.0. D.0 Answer: ACD QUESTION 382 Refer to the exhibit. B.C. F.) Get Complete Collection of 200-120 Exam's Question and Answers.com . What will help correct the problem? A. http://www. C.0 172.8.0 172.20.31. Change the address of the serial0/1 interface of R1 to 192. Ensure that the serial cable is correctly plugged in to the interfaces. D. Which are these addresses? (Choose three. Change the subnet masks of both interfaces to 255.1.248. D. E. Apply the clock rate 56000 configuration command to the serial0/1 interface of R1. A network technician is unable to ping from R1 to R2. three of the following addresses are valid host addresses.) A. 172. B.255.16.1. Configure the serial0/1 interfaces on R1 and R2 with the no shutdown command.255.9.255.16. IOS IOX IPS SDM Answer: BE QUESTION 381 Assuming a subnet mask of 255.16.passexamvce. Which two statements are true of the interface configuration? (Choose two.0 172. C.16. E.

B. What does the address 192. B.168. C.2. Answer: AC QUESTION 384 Refer to the exhibit.255.0. D. The encapsulation in use on this interface is PPP.A. E. The default serial line encapsulation is in use on this interface.167 represent? A. C. This interface is connected to a LAN. E. F.passexamvce. The interface is not ready to forward packets. The address mask of this interface is 255. http://www.255. the TFTP server from which the file startup-config is being transferred the router from which the file startup-config is being transferred the TFTP server from which the file router-confg is being transferred the TFTP server to which the file router-confg is being transferred the router to which the file router-confg is being transferred the router to which the file startup-config is being transferred Get Complete Collection of 200-120 Exam's Question and Answers. D.com .

To reach a network is more than 15 hops away. C. Answer: D QUESTION 386 In which situation would the use of a static route be appropriate? A. D.Answer: D QUESTION 385 Refer to the exhibit. To configure a route from an ISP router into a corporate network. Answer: C Get Complete Collection of 200-120 Exam's Question and Answers. A technician is troubleshooting a host connectivity problem.passexamvce. Answer: B QUESTION 387 An administrator issues the show ip interface s0/0 command and the output displays that interface Serial0/0 is up. B. A carrier detect signal has been received from the connected device. The cable is attached properly. D. To provide access to the Internet for enterprise hosts. To configure a route when the administrative distance of the current routing protocol is too low. A remote physical layer problem exists. The host NIC is not functioning.com . C. B. C. B. http://www. what could be the problem? A. TCP/IP has not been correctly installed on the host. IP is correctly configured on the interface. Keepalives are being received on the interface. The host is unable to ping a server connected to Switch_A. To configure a route to the first Layer 3 device on the network segment. D. E. A local physical layer problem exists. CDP has discovered the connected device. Based on the results of the testing. line protocol is up What does "line protocol is up" specifically indicate about the interface? A. E.

B. A configured router prompts for a password. B. D.passexamvce.com . C.QUESTION 388 Which three statements are correct about RIP version 2? (Choose three) A. F. It uses broadcast for its routing updates It supports authentication It is a classless routing protocol It has a lower default administrative distance than RIP version 1 It has the same maximum hop count as version 1 It does not send the subnet mask un updates Answer: BCE QUESTION 389 How can an administrator determine if a router has been configured when it is first powered up? A. C. A configured router goes to the privileged mode prompt. Answer: C QUESTION 390 Drag and Drop Question Answer: QUESTION 391 Drag and Drop Question Get Complete Collection of 200-120 Exam's Question and Answers. An unconfigured router goes into the setup dialog. An unconfigured router goes to the enable mode prompt. D. E. http://www.

24. VLSM-capable routing protocols must be enabled first on the router. http://www. B. Answer: D QUESTION 393 Which address is the IPv6 all-RIP-routers multicast group address that is used by RIPng as the destination address for RIP updates? A. C. Which statement explains the reason for this issue? A.Answer: QUESTION 392 A network administrator receives an error message while trying to configure the Ethernet interface of a router with IP address 10.24. This address is a network address.24/29. FF02::9 Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce. This address is a broadcast address.com . D. The Ethernet interface is faulty.

E. C.1.16.16.12.0 network.B.255. What subnet mask will provide the 100 subnetworks required.12. The command establishes a static route.168.com . Traffic for all networks is forwarded to 172. B.0 is forwarded to the 192. It negotiates correctness parameters between neighboring interfaces. D.168.0. This route is automatically propagated throughout the entire network.0 is forwarded to 172. what value does a router use for the OSPF router ID in the absence of a loopback interface? A.0 255.) A.12. Answer: AC QUESTION 397 A network administrator is planning a network installation for a large organization. It uses timers to elect the router with the fastest links as the designated router. FF05::101 D. the IP address of the first Fast Ethernet interface the IP address of the console management interface the highest IP address among its active interfaces the lowest IP address among its active interfaces the priority value until a loopback interface is configured Answer: C QUESTION 395 The OSPF Hello protocol performs which of the following tasks? (Choose two. F.12.0 172.168.12. so the company has acquired a Class B network address.16.12.12. B. The command invokes a dynamic routing protocol for 192.1. B. F.255. Traffic for network 172. What are the results of adding this command? (Choose two.12.) A. It provides dynamic neighbor discovery. E. C. if 500 usable host addresses are required per subnet? Get Complete Collection of 200-120 Exam's Question and Answers.passexamvce. FF02::A Answer: A QUESTION 394 If all OSPF routers in a single area are configured with the same priority value.16. FF02::6 C. Traffic for network 192. C. D. Answer: AC QUESTION 396 The network administrator of the Oregon router adds the following command to the router configuration: ip route 192. The design requires 100 separate subnetworks. It detects unreachable neighbors in 90 second intervals. It broadcasts hello packets throughout the internetwork to discover all routers that are running OSPF. D. http://www. E. It maintains neighbor relationships.168.1.

255. D.A. 255. B. routing loops. split horizon switching loops. F.255.0 255.192 Answer: D QUESTION 398 Refer to Exhibit. C. VTP routing loops. F. split horizon routing loops.255.255. C. http://www.254.255. hold down timers switching loops.com . E.255.0 255.248. F.252. C.255. E.passexamvce.0 255. E.240. D. Based on the network shown in the graphic which option contains both the potential networking problem and the protocol or setting that should be used to prevent the problem? A. B.0 255.255. STP switching loops.) A. B. D. STP Answer: F QUESTION 399 Which of the following services use UDP? (Choose three.0 255. Telnet TFTP SNMP DNS SMTP HTTP Answer: BCD Get Complete Collection of 200-120 Exam's Question and Answers.

F. The router is providing a clock signal on Serial0/0 on the circuit to the Frame Relay switch. E.passexamvce.) A. Interface Serial0/0 is not configured to encapsulate Frame Relay. The Frame Relay switch is not responding to LMI requests from the router. B. The LMI exchange between the router and Frame Relay switch is functioning properly. D. LMI messages are being sent on DLCI 1023. C.QUESTION 400 Refer to the exhibit.com . Answer: CD QUESTION 401 Hotspot Question Get Complete Collection of 200-120 Exam's Question and Answers. LMI messages are being sent on DLCI 0. http://www. Which two statements are true based the output of the show frame-relay lmi command issued on the Branch router? (Choose two.

http://www.Get Complete Collection of 200-120 Exam's Question and Answers.com .passexamvce.

com .0.3) Answer: The serial connection to the MidEast branch office. Explanation: On the basis of the configuration on Dubai provided in the exhibit.passexamvce.Answer: 702 Explanation: The output of the above show command displays that the local DLCI number corresponding to the sub-interface of s1/0 whose IP address is 172. the complete Layer 3 IP address is 172. (.0.30.3 196 broadcast Explanation: Based on the output of the command "show frame-relay map". so Get Complete Collection of 200-120 Exam's Question and Answers.0.30.3 In the above network topology. we know that DLCI mapped to the router S-AMER is 196.30. http://www.4 is 702. Answer: frame-relay map ip 172. we know that the encapsulation types of different interfaces are as follows: Serial 1/0 : encapsulation frame-relay Serial 1/2 and Serial 1/3 : both interfaces are encapsulated PPP Serial 1/1: There is no related encapsulation information displayed.

passexamvce.255. the ppp chap hostname alias-r1 command is configured on Router 1.shtml#configuringausernamedifferentfromtheroutersname Here is a snipit of an example: If Router 1 initiates a call to Router 2. Router 1 uses "alias-r1" as its hostname for CHAP authentication instead of "r1." The Router 2 dialer map name should match Router 1's ppp chap hostname. but Router 1 would not challenge Router 2. so the encapsulation type of the router MidEast is by default. The original HDLC encapsulation was defined by the International Organization for Standards (ISO). Cisco is no exception because it has its own proprietary form of HDLC to support various Layer 3 protocols such as IPX.5 255. and AppleTalk. however. You can change using: * encapsulation <type> command on interface Answer: Enable Explanation: In the diagram.168. two B channels are established. http://www. As a result.com . In this setup.its default encapsulation type is HDLC . IP. The default encapsulation on a serial interface is HDLC. one for each direction. the interface Serial 1/1 is connected to the router MidEast of the branch office. most vendors have created their own form of HDLC. The ISO version of HDLC had one shortcoming. it had no options to support multiple Layer 3 routed protocols.255. those same folks who developed the OSI model. Based on the network topology provided in the exhibit. This is an example of a unidirectional authentication. DeepSouth is connected to Dubai's S1/2 interface and is configured as follows: Interface Serial1/2 IP address 192. Encapsulation for this interface is PPP Check out the following Cisco Link: http://www. Router 2 would challenge Router 1. The Serial connection to the Dub<i branch office using the default encapsulation type.252 Encapsulalation PPP . This occurs because the ppp authentication chap callin command is configured on Router 1. otherwise. Get Complete Collection of 200-120 Exam's Question and Answers.0.cisco.com/en/US/tech/tk713/tk507/technologies_configuration_example09186a00800 9 4333.

Use SSH or another encrypted and authenticated transport to access device configurations. Allow unrestricted access to the console or VTY ports. Always use Telnet to access the device command line because its data is automatically encrypted. D. http://www. C.QUESTION 402 What are two recommended ways of protecting network device configuration files from outside network security threats? (Choose two.) A.com . Answer: BD QUESTION 403 Hotspot Question Get Complete Collection of 200-120 Exam's Question and Answers. B.passexamvce. E. Prevent the loss of passwords by disabling password encryption. Use a firewall to restrict access from the outside to the network devices.

passexamvce.com . Get Complete Collection of 200-120 Exam's Question and Answers. http://www.Answer: R1 will drop this packet because this is not a valid IP address.

we need to establish a default route.0 0. http://www.0.0.0 s0/0/0 Explanation: In order to allow the network of 192.0.0.1. The format of this default route is as follows: ip route prefix mask {ip-address interface-type interface-number [ipaddress]} [distance] [name] [permanent track number] [tag tag] Based on the request of this subject. Source MAC is interface S0/0/0 on router R1 and destination is the serialinterface on router R2.0.passexamvce.0.0/24 to access Server 1.0 0.com .0.168.Answer: ip route 0. we need to configure the correct route as follows: ip route 0. Get Complete Collection of 200-120 Exam's Question and Answers.0 s0/0/0 Answer: 3 Explanation: We believe the correct answer is 3 because the packet will be encapsulated in one more frame sent between routers R1 and R2.0.

10/24 The correct mask is 255. configure NAT to translate an address on the 209. Which change will ensure that Switch1 will be selected as the root bridge instead of Switch9? Get Complete Collection of 200-120 Exam's Question and Answers. we need to configure NAT address translation on router R1. http://www.1.1.1.255.255.1.168. that is to say the subnet mask is 255.0?? 2.255.168. we know that the IP address of the interface Fa0/0 is 192.106/24 Web server 2: 192.1. the network of 192.168. Based on the information provided in the exhibit.250 Host 1: 192.168.168.100.255. Answer: 255.passexamvce.255.0 Explanation: 1.0 needs to contain the following three IP addresses of interfaces: R1(fa 0/0) : 192. The switches on a campus network have been interconnected as shown.0.0/24 network to 192. Unusual traffic patterns are observed and it is discovered that Switch9 is the root bridge.com . QUESTION 404 Refer to the exhibit.1.255. When configuring the correct IP address and not wasting IP address.10 Explanation: In order to allow internet users to access Web Server 2.Answer: On router R1.168. All of the switches are running Spanning Tree Protocol with its default settings.250/24.165.

It has the same maximum hop count as version 1. Lower the bridge priority on Switch9. It is a classless routing protocol.com . F.passexamvce. http://www. B. D. Raise the bridge priority on Switch9. D. B. Lower the bridge priority on Switch1. It does not send the subnet mask in updates.A. Disable spanning tree on Switch9. Answer: F QUESTION 405 The Company WAN is migrating from RIPv1 to RIPv2. It supports authentication. F. It has a lower default administrative distance than RIP version 1. E. Physically replace Switch9 with Switch1 in the topology. Answer: ACE Get Complete Collection of 200-120 Exam's Question and Answers. E. It uses broadcasts for its routing updates. Which three statements are correct about RIP version 2? (Choose three) A. C. Raise the bridge priority on Switch1. C.

Sign up to vote on this title
UsefulNot useful
ciscoexam-online-sale-200-125-exam    | udemy-newccnax-sale-200-125-exam    | whats-new-with-ccna-sale-200-125-exam    | ccna-practice-quiz-sale-200-125-exam    | What-is-the-difference-sale-200-125-exam-cert    | boson-practice-sale-200-125-exam-practice    | measureup-Cisco-Certified-Network-Associate-sale-200-125-exam    | globed-cisco-new-ccna-sale-200-125-exam-standard    | exam-labs-sale-200-125-exam-cert    | streaming-ccna-sale-200-125-exam-technologies    | caring-charts-blood-pressure-sale-200-125-exam    | pluralsight-courses-networking-cisco-sale-200-125-exam    | pearsonitcertification-articles-sale-200-125-exam    | safaribooksonline-library-sale-200-125-exam-routing    | learncisco-ccna.php-sale-200-125-exam-tast    | protechgurus-fees-syllabus-sale-200-125-exam    | certificationkits-cisco-ccna-sale-200-125-exam-standard-kit    | zeqr-lazaro-diaz-course-sale-200-125-exam    | 9tut-faqs-tips-sale-200-125-exam    | scribd-document-CCNA-sale-200-125-exam    | itunes-ccnax-sale-200-125-exam    | linkedin-cisco-sale-200-125-exam-questions-details    | teachertube-ccna-sale-200-125-exam-practice    | killexams-detail-sale-200-125-exam    | examsboost-test-sale-200-125-exam    | ccnav6-online-full-collections-sale-200-125-exam    | spiceworks-topic-sale-200-125-exam    | behance-gallery-sale-200-125-exam    | vceguide-share-experience-sale-200-125-exam    | techexams-forums-ccna-sale-200-125-exam    | free4arab-sale-200-125-exam    | openlearning-courses-sale-200-125-exam    | mindhub-Cisco-Certified-Network-sale-200-125-exam    | vceplus-ccna-exam-sale-200-125-exam    | examsforall-cisco-sale-200-125-exam    | how2pass-ccna-practice-tests-sale-200-125-exam    | simulationexams-details-ccna-sale-200-125-exam    | teksystems-sale-200-125-exam-routing-switching    | cram-flashcards-sale-200-125-exam    | pass4cert-cisco-new-ccna-sale-200-125-exam    | snatpedia-ccnaa-sale-200-125-exam    | cert4sure-free-download-sale-200-125-exam    | logicindia-ccnarouting-switching-sale-200-125-exam    | justcerts-practice-questions-sale-200-125-exam    | isc2-cissp-sale-CISSP-exam    | infosecinstitute-cissp-boot-camp-sale-CISSP-exam    | tomsitpro-security-certifications-sale-CISSP-125-exam    | infoworld-cissp-certification-sale-CISSP-exam    | welivesecurity.com-cissp-certified-sale-CISSP-exam    | searchsecurity-definition-sale-CISSP-exam    | simplilearn-cyber-security-training-sale-CISSP-exam    | arstechnica-security-sale-CISSP-exam    | cybrary-course-cissp-sale-CISSP-exam    | skillset-cissp-sale-CISSP-exam    | transcender-certprep-sale-CISSP-exam    | pearsonvue-sale-CISSP-exam-cert    | gocertify-isc2-issp-sale-CISSP-exam    | trainingcamp-training-bootcamp-sale-CISSP-exam    | cbtnuggets-security-sale-CISSP-exam    | cglobalknowledge.com-us-en-sale-CISSP-exam    | itgovernance-cissp-sale-CISSP-exam    | boson-certification-sale-CISSP-exam    | firebrandnordic-training-sale-CISSP-exam    | firebrandnordic-sale-CISSP-exam-123    | cybervista-sale-CISSP-exam-cert    | becker-sale-CISSP-exam-pdf    | youracclaim-certified-information-sale-CISSP-exam    | techexams-forums-sale-CISSP-exam    | munitechacademy-courses-sale-CISSP-exam    | hot-topics-cyber-security-courses-sale-CISSP-exam    | pearsonitcertification-sale-CISSP-exam    | sybextestbanks-wiley-sale-CISSP-exam    | lifewire-preparing-sale-CISSP-exam    | villanovau.com-resources-iss-sale-CISSP-exam    | intenseschool-boot-sale-CISSP-exam    | phoenixts-training-sale-CISSP-exam    | infosecisland-blogview-sale-CISSP-exam    | centralohioissa-member-sale-CISSP-exam    | learningtree-courses-certified-information-sale-CISSP-exam    | udallas.edu-executive-education-sale-CISSP-exam    | umbctraining-Courses-catalog-sale-CISSP-exam    | skyhighnetworks-cloud-security-sale-CISSP-exam    | helpnetsecurity-cert-sale-CISSP-exam    | secureninja-certification-bootcamp-sale-CISSP-exam    | mercurysolutions-information-sale-CISSP-exam    | exam-labs-info-sale-100-105-exam-pdf    | cbtnuggets-training-ccna-icnd1-sale-100-105-exam    | gocertify-ccent-practice-quiz-sale-100-105-exam    | ciscopress.com-ccna-icnd1-sale-100-105-exam    | boson-practice-sale-100-105-exam    | examcollectionuk-vce-download-sale-100-105-exam    | pearsonitcertification-articles-sale-100-105-exam    | transcender-practice-sale-100-105-exam-test    | techexams-forums-ccna-ccent-sale-100-105-exam    | shop-oreilly-sale-100-105-exam    | safaribooksonline-library-view-sale-100-105-exam    | subnetting-download-ccent-sale-100-105-exam    | 2cram-icnd1-online-quiz-sale-100-105-exam    | networklessons-routing-sale-100-105-exam    | centriq-123-ccna-certification-sale-100-105-exam    | ituonline-interconnecting-sale-100-105-exam    | transcender-introducing-the-new-sale-100-105-exam    | measureup-Networking-Devices-Part-sale-100-105-exam    | vceguide-icnd1-experience-sale-100-105-exam    | dumpscollection-dumps-sale-100-105-exam    | computerminds-business-sale-100-105-exam    | globed-ccent-or-icnd1-sale-100-105-exam    | ucertify-load-course-sale-100-105-exam    | academy-gns3-sale-100-105-exam    | visiontrainingsystems-product-sale-100-105-exam    | pearsonhighered-program-Wilkins-CCENT-sale-100-105-exam    | vceplus-ccent-sale-100-105-exam    | mindhub-Interconnecting-sale-100-105-exam    | sale-70-410-exam    | we-sale-70-410-exam    |
http://mleb.net/    | http://mleb.net/    |