Sei sulla pagina 1di 22

1. What is the purpose of the Spanning Tree Protocol (STP)?

Propagation of VLAN Information


Switch Redundancy
Bridge and Switch Loop Prevention
Port Mirroring
EXPLANATION: Spanning Tree's general purpose is to prevent Layer 2 briding loops thus
preventing broadcast storms.
2. Youre the network engineer assigned to a hub and spoke frame-relay project. You have 2
branch offices in Miami, FL and Austin, TX with your main office in New York City. You are
running EIGRP over the frame relay links and you notice that Routes from Miami are not getting
propagated to Austin However routes from each branch are being advertised to the main office.
What should you check first?
LCI Information
Frame Relay LMI Type
IP Split Horizon
IP Addressing
EXPLANATION: The question specifically states that the branch offices can advertise routes
with the main office however the branch offices are not seeing routes to the other branch office.
This would be caused by IP Split Horizon being enabled on the main office interface. IP Split
Horizon prevents routes being learned on an interface to be advertised back out the same
interface.
3. What command do you execute to view frame relay permanent virtual circuit information on a
Cisco Router?
show frame-relay vc
show frame-relay circuit
show frame-relay map
show frame-relay pvc
EXPLANATION: show frame-relay pvc is correct as answers show frame-relay vc and show
frame-relay circuit are invalid commands and answer show frame-relay map displays the
current frame-relay layer 2 to layer 3 map. Not the PVC information.
4. Which of the following applications uses TCP Port 22?
Telnet
FTP
DNS
SSH

EXPLANATION: Secure Shell (SSH) uses the well known TCP port of 22.
5. Which of the following command when issued on a switch port will shutdown the port if other
managed switches are connected to that port?
switchport guard bpdu
spanning-tree bpduguard enable
spanning-tree portfast
spanning-tree bpduguard on
EXPLANATION: bpduguard will prevent unauthorized managed switches from connecting to
specific ports when enabled using the *spanning-tree bpduguard enable* command.
6. Referencing the following router output below; what is the administrative distance for the route
statement destined to the 150.1.4.0/24 network?
Router#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
o - ODR, P - periodic downloaded static route
Gateway of last resort is 155.1.0.1 to network 0.0.0.0
155.1.0.0/24 is subnetted, 4 subnets
155.1.0.0 is directly connected, Serial0/0
155.1.5.0 is directly connected, FastEthernet0/1
155.1.58.0 is directly connected, FastEthernet0/0
155.1.45.0 is directly connected, Serial0/1
150.1.0.0/24 is subnetted, 2 subnets
C
150.1.5.0 is directly connected, Loopback0
R
150.1.4.0 [120/6] via 155.1.45.4
R*
0.0.0.0/0 [150/4] via 155.1.0.1
Router#
C
C
C
C

177.14.4.0
177.14.43.2
6
120
EXPLANATION: The administrative distance of a route in the routing table is defined as the first
value in the brackets of a route statement. The metric is the second value in the brackets. In this
question, the administrative distance is 120 and that network is 6 hops away as RIP uses a"hop
count" as the metric.
9. What following Gigabit Ethernet standards uses a single strand of SMF (Single Mode Fiber) fiber
to transmit and receive simultaneously?
1000Base-TX
1000Base-BX
1000Base-LX

1000Base-SX
EXPLANATION: 1000Base-BX uses a single SMF fiber for Gigabit Ethernet communication by
sending and receiving at different light wavelengths; (1310nm/1490nm).
10. Which of the following statements are true regarding passwords on a Cisco Router and/or
Switch?
The password Cisco is all youll ever need.
Type 7 passwords are uncrackable.
You can decrypt passwords using the no service encryption command.
Type 5 Passwords are uncrackable.
EXPLANATION: Type 5 Passwords are stored as MD5 Hashes. Type 7 passwords are weak
and can easily be decrypted. Passwords are not required to be encrypted on a Cisco device and
you cannot decrypt passwords using a Cisco device.
11. Which of the following function as a keep-alive for a Frame Relay circuit?
LMI
FECN
ANSI
BECN
EXPLANATION: Local Management Interface (LMI) which functions on DLCI 0 when using the
ANSI LMI Type or DLCI 1023 when using the CISCO LMI type; provides a keep alive function
and a management communication circuit so that the frame-relay link parameters can be
advertised.
12. What is the default CDP timer interval?
240 Seconds
60 Seconds
180 Seconds
120 Seconds
EXPLANATION: The default CDP timer on a Cisco device is 60 seconds.
13. Inter-Switch Link (ISL) and IEEE 802.1q are types of what?
Trunk Security
Routing Protocols
Uplinks
Trunking Encapsulations
EXPLANATION: ISL and DOT1Q are different types of trunk encapsulation protocols.

14. Which of the following statements are true regarding the Cisco Discovery Protocol (CDP)?
CDP is enabled by default on Ethernet interfaces.
CDP uses TCP port 520 to communicate with neighbors.
CDP is enabled by default on frame relay interfaces
CDP requires an IP address to be assigned to an interface to operate.
EXPLANATION: CDP (Cisco Discovery Protocol) is a layer 2 based protocol and does not
require an IP address to function so therefore no TCP port is required as well. CDP is enabled
by default on Ethernet interfaces however disabled by default on frame-relay interfaces.
15. Which routing protocol provided in the list below is a true distance vector based dynamic routing
protocol?
STATIC
OSPF
RIP
EIGRP
EXPLANATION: RIP is considered a pure distance vector protocol using "Hop Counts" as a
metric. EIGRP on the other hand has features found in both Distance Vector and Link-Style
routing protocols.
16. What is the default administrative distance of the OSPF (Open Shortest Path First) routing
protocol?
90
200
110
120
EXPLANATION: The default administrative distance for OSPF is 110.
17. Which of the following are not a benefit of Network Address Translation (NAT)?
Reduces the need for additional globally routable address space for internal host.
Multiple internal host addresses can be translated to a single outside global address.
Easy renumbering when switching Internet Service Providers.
NAT offers an additional security layer between outside and inside host.
EXPLANATION: Network Address Translation (NAT) does not provide any security, it is
designed by nature to translate one ip address to another either one to one or dynamic port
translation (overloading).
18. Based on the debug ip packet detailed information shown below, what type of packet is this and
where is it destined to?

IP: s=172.16.22.1 (FastEthernet0/0), d=224.0.0.5, len 72, rcvd 0, proto=89

This is an OSPF packet destined to all DR and BDR Routers on the FastEthernet0/0 network
segment.
This is an RIP Packet destined to all RIP routers on the FastEthernet0/0 network segment.
This is an OSPF packet destined to all OSPF routers on the FastEthernet0/0 network segment.
This is an OSPF Hello packet destined to 172.16.22.1.
EXPLANATION: The multicast address 224.0.0.5, is the Open Shortest Path First (OSPF) All
OSPF Routers address, used to send Hello packets to all OSPF routers on a network segment.
IP multicast
address

Description

224.0.0.1

The All Hosts multicast group addresses all hosts on the same
network segment.

224.0.0.2

The All Routers multicast group addresses all routers on the


same network segment.

224.0.0.4

This address is used in the Distance Vector Multicast Routing


Protocol (DVMRP) to address multicast routers.

224.0.0.5

The Open Shortest Path First (OSPF) All OSPF Routers


address is used to send Hello packets to all OSPF routers on a
network segment.

224.0.0.6

The OSPF All Designated Routers ""(DR)"" address is used to


send OSPF routing information to designated routers on a
network segment.

224.0.0.9

The Routing Information Protocol (RIP) version 2 group


address is used to send routing information to all RIP2-aware
routers on a network segment.

224.0.0.10

The Enhanced Interior Gateway Routing Protocol (EIGRP)


group address is used to send routing information to all EIGRP
routers on a network segment.

IP protocol
number
88
89
6
17

Protocol

Description

EIGRP
OSPF
TCP
UDP

EIGRP
Open Shortest Path First
Transmission Control Protocol
User Datagram Protocol

19. True or False; An IPv6 Address is 32bits long?


True
False
EXPLANATION: The answer is false as an IPv6 address is 128bits long. An IPv4 address is
32bits long.

20. You are tasked by your manager to configure a trunk link between a Cisco Catalyst Switch and a
Juniper Switch. What trunking encapsulation should you use on the inter-switch links?
A trunk link cannot be created between mix-matched switch vendors.
SL (Inter-Switch Link)
Dot1q (802.1q VLAN Tagging)
VTP (Virtual Trunking Protocol)
EXPLANATION: 802.1q is an IEEE Standard which is commonly supported on most vendor
platforms. ISL (Inter-Switch Link) is a Cisco Proprietary trunking protocol and VTP is a protocol
used for propagation of VLAN information.
21. The application traceroute uses which of the following protocols?
UDP
IPX
ICMP
TCP
EXPLANATION: Traceroute uses the returned ICMP Time Exceeded messages to build a list of
routers that packets traverse, until the destination is reached and returns an ICMP Echo Reply
message.
22. Which of the following protocols is NOT classified as an interior routing protocol?
RIP
BGP
OSPF
EIGRP
EXPLANATION: EIGRP, OSPF and RIP are classified as IGP's and BGP is classified as an EGP
(Exterior Routing Protocol).
23. Under what circumstances would you need to configure a clock rate on a serial interface?
When the interface is terminated using the DCE end of the cable.
When the interface is terminated using a Category 3 Cable.
When the interface is terminated with the DTE end of the cable.
When the interface is terminated using a loopback adapter.
EXPLANATION: One can only assign a clock rate to a serial interface if its terminated by a data
communications equipment (DCE) end of a serial cable.
24. At which layer of the OSI model does framing occur?
Physical

Datalink
Network
Transport
EXPLANATION: Data link layers include IEEE 802.3 framing and Ethernet II framing.
25. What command can you execute from user mode to display the current IOS version and feature
set running on a router that your consoled into?
show configuration
show environment
show version
dir flash:
EXPLANATION: When in user mode you can view what IOS version, feature set and image
name/location by using the show version command.
26. You made several configuration changes to your Cisco Router a week ago which involved
switching ISPs. One day the company experienced a power failure and when the power was
restored end users were complaining that they were unable to access the internet. What is most
likely the problem?
The Routers config is corrupt.
The Routers configuration was reset to default.
The configuration register is ignoring the contents of Non-Volatile RAM (NVRAM).
You forgot to save the config changes you made a week ago.
EXPLANATION: If you forget to execute the *copy run start* command after making changes
than a reboot of the router will revert the routers configuration back to when the config was last
saved.
27. When viewing the NAT translation table on a Cisco router via the show ip nat
translations command. What does the outside local value represent?
IP address of an outside host as it appears to the inside network
The IP address assigned to a host on the outside network by its owner.
The IP address assigned to a host on the inside network
An IP address that represents one or more inside local IP addresses to the outside world.
EXPLANATION: The "outside local" address is the ip address of an outside host as it appears to
the inside network.
28. In what location does a Cisco Router and/or Switch store its startup-configuration?
Disk0:

Memory:
Flash:
NVRAM:
EXPLANATION: When you execute the copy run start command you're copying the running
configuration from memory to non-volatile ram.
29. What type of cable is used to connect to a Cisco Console port?
TIA 568B
Rollover
Crossover
Straight Through
EXPLANATION: Rollover cable (also known as Cisco console cable) is a type of cable that is
most commonly used to connect a computer terminal to a router's console port.
30. True or False: A host mask is represented by the 255.255.255.255 subnet mask?
False
True
EXPLANATION: A network with a subnet mask of 255.255.255.255 puts each device inside its
own subnet, forcing them to communicate with the router before communicating with any other
device, as using a point to point link
31. Which decimal value listed below translates to the binary value of; 11000111?
201
214
171
199
32. What type of security implementation would prevent unauthorized users from unplugging an
office PC and plugging in their laptop into the network?
Port Security
VLAN Authentication
BPDU Guard
Access Control List
EXPLANATION: Port Security can be configured to allow specific MAC addresses authorization
to access the network on specified ports on a Cisco Switch.
33. Which of the following OSPF area types blocks Type 3, 4, 5 and 7 LSAs with the exception of a
Default Route?

Stub Area
Not-so-Stubby-Area
Totally Stubby Area
Not-so-totally-stubby-area
EXPLANATION: Only the totally stubby area blocks Type 3, 4, 5 and 7 LSA's. A Stub area
blocks Type 5 LSA's. An NSSA blocks type 5 LSA's but convert Type 7 to 5 at the ABR. NSSA
TSA blocks type 3, 4, 5 LSA's but allow type 7 inside the area which is converted to type 5 at the
ABR before advertised into area 0.
34. Which of the following set OSI model statements are correct?
Layer 1s PDU is bits, Layer 2s PDU is bytes, Layer 3s PDU is packets, Layer 4s PDU is
Frames
Layer 1s PDU is bits, Layer 2s PDU is frames, Layer 3s PDU is packets, Layer 4s PDU is
segments
Layer 1s PDU is bits, Layer 2s PDU is frames, Layer 3s PDU is bytes, Layer 4s PDU is
segments
Layer 1s PDU is bits, Layer 2s PDU is bytes, Layer 3s PDU is frames, Layer 4s PDU is
packets
EXPLANATION: Looking at how traffic traverses the network. From he upper layers of the OSI
Model it works its way down to Layer 4 which adds protocol header such as tcp/udp then hands
the traffic down to Layer 3 which adds the logical addressing header such as the source and
destination IP addresses. Afterwards; layer 2 adds the physical addressing (Source &
Destination MAC Addresses) to the traffic and converts it to a frame then layer 1 converts it to
bits (1's and 0's) and sends it out on the wire.
35. At which layer of the OSI model does compression, decompression, encryption and decryption
occur at?
Presentation
Transport
Application
Session
EXPLANATION: The presentation layer. At this layer we have compression, decompression,
encryption and decryption taking place.
36. Which of the following applications use UDP Port 123?
Secure FTP
POP3
DNS

NTP
EXPLANATION: Network Time Protocol (NTP), used for time synchronization, uses de Port 123.
37. True or False; based on the following configuration the router will become the OSPF Designated
Router for the FastEthernet0/0 network segment?
!###############################################
!# Free CCNA Workbook Practice Exam Question #
!###############################################
!
interface FastEthernet0/0
ip address 172.16.22.1 255.255.255.0
ip ospf priority 0
speed 100
full-duplex
!
router ospf 1
log-adjacency-changes
network 172.16.22.1 0.0.0.0 area 0
!
end

False
True
EXPLANATION: The ip ospf priority number value interface configuration command is used to
set the OSPF router priority. A router with a priority of 0 never participates in the DR/BDR
election process and does not become a DR/BDR.
38. What is the second host IP address in the 150.17.45.60/30 subnet?
150.17.45.61
150.17.45.62
150.17.45.63
150.17.45.60
EXPLANATION: The 150.17.45.60/30 subnet has two host assignable IP addresses. Which are
150.17.45.61 and 150.17.45.62. The first IP address of the given allocation is reserved for the
subnet id and the last IP address is reserved for the broadcast IP.
39. What is the maximum limit of hops permitted in an OSPF route before it is marked unreachable?
255
16
Unlimited
15
EXPLANATION: OSPF is a link state routing protocol and does not use a hop count as its metric
but rather a shortest path cost.

40. A Host PC is connected to interface Fa0/14 of a Cisco Switch. The switch is running the IEEE
Standard Spanning-Tree. What is the order of operations the interface will follow before
forwarding traffic?
Blocking, Forwarding, Listening, Learning.
Listening, Learning, Forwarding, Blocking.
Blocking, Listening, Learning, Forwarding.
Listening, Learning, Blocking, Forwarding.
EXPLANATION: A Cisco switch running IEEE Standard Spanning-Tree when connected to a
HOST PC will transition through the following states; "Blocking, Listening, Learning,
Forwarding".
41. If a Cisco Catalyst Series switch receives a Frame on port which has a destination unknown to
the switch, what does the switch do with the frame?
The switch will drop the frame and send an ICMP unreachable message back to the source.
Laugh at the frame and call it jumbo the frame.
Forwards the frame out all ports on the switch except the source port.
Forwards the frame out all ports except the source port in the same VLAN which the source
port configured to access.
EXPLANATION: The switch will forward the frame out all ports in the same VLAN as it was
sourced from excluding the source port.
42. Which of the following is considered RFC1918 Address Space?
192.169.0.0/23
10.0.0.0/7
172.15.0.0/24
172.16.0.0/12
The Internet Assigned Numbers Authority (IANA) has reserved the following three blocks of the
IP address space for private internets, following the standards set by RFC 1918 for Internet
Protocol Version 4 (IPv4):
10.0.0.0

10.255.255.255 (10/8 prefix)

16.777.214 IPs

172.16.0.0

172.31.255.255 (172.16/12 prefix)

1.048.574 IPs

192.168.0.0

192.168.255.255 (192.168/16 prefix)

65.534 IPs

43. What is the maximum hop count for RIP routes?


15
256
16

255
EXPLANATION: RIP has a maximum hop count of 15. When RIP route metric reaches 16 hops
is classified as unreachable as the RIP metric of 16 represents "infinite".
44. Review the following Cisco Router configuration shown below;
!###############################################
!# Free CCNA Workbook Practice Exam Question #
!###############################################
!
interface FastEthernet0/0
ip address 192.168.1.1 255.255.255.0
ip access-group INSIDE_IN
!
ip access-list extended INSIDE_IN
permit ip 192.168.1.0 0.0.0.255 any
!
end

How many host IP addresses would be permitted to pass ingress traffic on interface
FastEthernet0/0?
254
256
255
128
EXPLANATION: Upon examination of the access-list you'll notice that the ACL is permitting
192.168.1.0/24 inbound to any destination. Since a /24 network has 256 IP addresses but only
254 IP addresses can be assigned to the host (256-2 for network and broadcast IP's).
45. Youve recently upgraded a branch office from a Cisco 2610 to a Cisco 2811 and youve been
requested by management to erase all configurations off the device that are company
confidential including certificates. What command would you execute on the old Cisco 2610
series router?
format nvram:
erase flash:
format flash:
erase nvram:
EXPLANATION: The command *erase nvram:* will erase the contents of NVRAM thus removing
all configuration. The depreciated command for *erase nvram:* is *write erase*
46. How many bits make up an IPv6 Address?
64
48
128

32
EXPLANATION: An IPv6 address is 128bits long.
47. At what layer OSI layer does the TCP and UDP protocols reside at?
Physical
Network
Datalink
Transport
48. Which of the following switching modes examines the first 14 bytes of frame and determines
which port to switch it out of based on the switches MAC address table?
Frame Switching
Fragment Free
Cut Through
Store and Forward
EXPLANATION: Cut-Through examines the first 14 bytes of a frame (the SrcMAC, DstMAC, and
EtherType) to determine where to "switch" the frame to.
49. Which of the following is the well-known UDP/TCP port for DNS?
21
53
121
58
EXPLANATION: DNS communicates using TCP Port number 53.
50. What field in the IP Packet header is used to prevent packets from looping infinitely in a network
that has routing loops?
TTL
Network Mask
Dot1q Tag
CRC
EXPLANATION: TTL is used for ip loop prevention, which is part of the packet header.
51. What command shown below is used to configure an MOTD Banner on a Cisco Router and/or
Switch?
Router(config)#banner motd #

Router(config-if)#banner motd #
Router(config)#motd banner #
Router(config-if)#motd banner #
EXPLANATION: The banner command is executed in global configuration mode using the
banner motd # where # is the delimiting character.
52. What command disables CDP on a specific interface?
no cdp run
no cdp enable
no cdp
cdp off
EXPLANATION: Answer "B" is correct as the command *no cdp enable* will disable CDP on
only the configured interface.
53. Which of the following commands listed below is NOT required to enable SSH on a Cisco Router
and/or Switch?
login local
crypto key generate rsa
enable secret password
ip domain-name
EXPLANATION: An enable secret is NOT required to enable SSH.
54. True or False; VLANs break up broadcast domains?
True
False
EXPLANATION: VLAN's break up large broadcast domains into smaller but more manageable
broadcast domains.
55. Which command is used to configure a static ARP entry using the mac address of
AAAA.BBBB.DDDD towards the IP address of 10.41.82.11?
arp 10.41.82.11 AAAA.BBBB.DDDD smds
arp 10.41.82.11 AAAA.BBBB.DDDD arpa
arp 10.41.82.11 AAAA.BBBB.DDDD snap
arp 10.41.82.11 AAAA.BBBB.DDDD sap
EXPLANATION: ARPA It's the encapsulation method used. It stands for Advanced Research
Projects Agency. ARPA developed the Ethernet II frame which is currently used by the Internet
Protocol

56. Review the following Cisco Router configuration shown below;


!###############################################
!# Free CCNA Workbook Practice Exam Question #
!###############################################
!
Cisco IOS Software, C2600 Software (C2600-ADVENTERPRISEK9-M), Version
12.4(15)T14, RELEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2010 by Cisco Systems, Inc.
Compiled Tue 17-Aug-10 05:40 by prod_rel_team</p>
<p>ROM: System Bootstrap, Version 12.2(8r) [cmong 8r], RELEASE SOFTWARE (fc1)</p>
<p>R1 uptime is 10 minutes
System returned to ROM by power-on
System image file is flash:c2600-adventerprisek9-mz.124-15.T14.bin</p>
<p>This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.</p>
<p>A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html</p>
<p>If you require further assistance please contact us by sending email to
export@cisco.com.</p>
<p>Cisco 2651XM (MPC860P) processor (revision 1.0) with 253952K/8192K bytes of
memory.
Processor board ID JAE071305PZ
M860 processor: part number 5, mask 2
2 FastEthernet interfaces
2 Serial interfaces
32K bytes of NVRAM.
49152K bytes of processor board System flash (Read/Write)</p>
<p>Configuration register is 0x2102

Executing what command would display the information given above?


show platform
show tech-support
show version
show running-config
EXPLANATION: The information listed in this question would be displayed when you execute
the show version command.
57. Which command do execute on a Layer 2 switch when youre required to configure 192.168.22.1
as a default gateway?
ip default-network 192.168.22.1
default gateway 192.168.22.1
ip route 0.0.0.0 0.0.0.0 192.168.22.1
ip default-gateway 192.168.22.1

EXPLANATION: The command *ip default-gateway x.x.x.x* is the correct syntax to configure a
default gateway on a non-routed device.
58. What is the default synchronous serial interface encapsulation on a Cisco router?
X.25
HDLC
Frame-Relay
PPP
EXPLANATION: The default synchronous serial interface encapsulation on a Cisco router is the
Cisco proprietary HDLC.
59. Address Resolution Protocol; also known as ARP is used for what function?
Translates Layer 2 addresses to Layer 3 addresses.
Translates Layer 3 addresses to Layer 2 addresses.
Translates Domain Names to Layer 3 addresses.
Translates Domain Names to Layer 2 addresses.
EXPLANATION: ARP translates an IP address of a specific destination to a Layer 2 address
when Only the IP address is known.
60. What is the Administrative Distance (AD) of an External EIGRP Route?
110
170
120
90
EXPLANATION: The Administrative Distance of an EIGRP EX Route is 170. The Administrative
distance of an Internal EIGRP Route is 90.
61. What command on a Cisco device allows you to view hop by hop information regarding the flow
of traffic?
ip route
ping
tracert
traceroute
62. Based on the routing table shown below, when the router receives a packet destined to
10.10.20.18 where will the router forward the traffic to?
Router#show ip route
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP

D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area


N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
o - ODR, * - candidate default
Gateway of last resort is 10.22.18.1 to network 0.0.0.0
C
S
S
S
S
S*

10.0.0.0/8 is variably subnetted, 4 subnets, 4 masks


10.22.18.1/24 is directly connected, FastEthernet0/0
10.0.0.0/8 [1/0] via 10.22.18.21
10.10.0.0/16 [1/0] via 10.22.18.31
10.10.10.0/24 [1/0] via 10.22.18.41
10.10.10.10/32 [1/0] via 10.22.18.51
0.0.0.0/0 [1/0] via 10.22.18.1

Router#

10.22.18.51
10.22.18.21
10.22.18.41
10.22.18.31
EXPLANATION: The router would forward traffic any traffic it receives destined to 10.10.20.18
towards 10.22.18.31 as it is the next hop of the route with the longest match in the routing table.
63. True or False: When you configure a static route with the Administrative Distance of 255, that
route does not installed into the routing table.
True
False
EXPLANATION: Any route with the administrative distance of 255 is considered invalid and not
placed into the routing table.
64. What command will show you what IOS your neighboring Cisco device is running?
show version
show neighbor ios
show cdp neighbor detail
show cdp neighbor
EXPLANATION: Only the show cdp neighbor detail will display the neighboring Cisco device ios
information via cdp.
65. Which of the following are a benefit of VLAN Pruning?
Enforces VLAN security between switches.
Reduces unnecessary broadcast and multicast traffic.
Reduces traffic on the default VLAN 1.

Reduces unnecessary VLANs.


EXPLANATION: VTP Pruning prevents switches from forwarding unnecessary VLAN broadcast
and multicast traffic to a directly connected switch over a trunk link if the neighboring switch does
not have any ports in the same VLAN.
66. What is the eighth usable host IP address in the subnet 10.29.144.64/27?
10.29.144.8
10.29.144.128
10.29.144.72
10.29.144.40
EXPLANATION: The Subnet ID is 10.29.144.64/27, the first usable host IP Address is
10.29.144.65. The last usable host IP address is 10.29.144.95 and the eighth usable host IP
address is 10.29.144.72
67. Examine the following Router access control list;
R3(config)#access-list 180 deny tcp any host 10.82.91.220 eq 21
R3#

What function does this Access Control List perform?


The ACL denies any FTP traffic destined to the host 10.82.91.220.
The ACL denies any POP3 traffic destined to the host 10.82.91.220.
The ACL denies any TFTP traffic destined to the host 10.82.91.220.
The ACL denies any SMTP traffic destined to the host 10.82.91.220.
EXPLANATION: The ACL statement states that any source traffic destined towards host
10.82.91.220 equal to port 21 (FTP) is to be denied.
68. Review the Following switch configuration shown below;
!########################################
######
!# Free CCNA Workbook Practice Exam
Question #
!########################################
######
!
61STAFFORD-AS1#show run
Building configuration
Current configuration : 5815 bytes
!
! Last configuration change at 17:14:32
EST Tue Feb 9 2014 by jimmy
!
version 12.1
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname 61STAFFORD-AS1
!
!

username jimmy privilege 15 secret 5


$1$tbYL$ApZZRUApgoKUEhhu0cnLl1
clock timezone EST -5
ip subnet-zero
ip dhcp excluded-address 10.161.101.1
10.161.101.20
ip dhcp excluded-address 10.161.101.240
10.161.101.254
ip dhcp excluded-address 10.161.102.1
10.161.102.20
ip dhcp excluded-address 10.161.102.240
10.161.102.254
ip dhcp excluded-address 10.161.103.1
10.161.103.20
ip dhcp excluded-address 10.161.103.240
10.161.103.254
ip dhcp excluded-address 10.161.110.1
10.161.110.5
!
ip dhcp pool VLAN101
network 10.161.101.0 255.255.255.0
domain-name ultimatewidgit.com
default-router 10.161.101.254

dns-server 10.12.8.16 10.12.9.16


!
ip dhcp pool VLAN102
network 10.161.102.0 255.255.255.0
domain-name ultimatewidgit.com
default-router 10.161.102.254
dns-server 10.12.8.16 10.12.9.16
!
ip dhcp pool VLAN103
network 10.161.103.0 255.255.255.0
domain-name ultimatewidgit.com
default-router 10.161.103.254
dns-server 10.12.8.16 10.12.9.16
!
ip dhcp pool VLAN110
network 10.161.110.0 255.255.255.224
default-router 10.161.110.30
dns-server 10.12.8.16 10.12.9.16
!
ip domain-name ultimatewidgit.com
ip ssh time-out 120
ip ssh authentication-retries 3
!
!
spanning-tree mode rapid-pvst
no spanning-tree optimize bpdu
transmission
spanning-tree extend system-id
spanning-tree pathcost method long
!
vlan 1
tb-vlan1 1002
tb-vlan2 1003
!
vlan 72
name PUBLIC_INTERNET-LAYER-2-VLAN
!
vlan 101
name INTERNAL_NETWORK-10.161.101.0/24
!
vlan 102
name INTERNAL_NETWORK-10.161.102.0/24
!
vlan 103
name INTERNAL_WIFI_NETWORK10.161.104.0/24
!
vlan 107
name DMZ-71.84.16.0/29
!
vlan 110
name GUEST_WIFI-10.161.105.0/26
!
vlan 1002
tb-vlan1 1
tb-vlan2 1003
!
vlan 1003
tb-vlan1 1
tb-vlan2 1002
parent 1005
!
vlan 1004
bridge 1
stp type ibm
!
vlan 1005
bridge 1

!
interface Port-channel1
description ## L2 TRUNK LINK TO
61STAFFORD-AS2 ##
switchport mode trunk
switchport nonegotiate
channel-group 1 mode on
!
interface FastEthernet0/1
description ## L2 LINK TO CABLE MODEM ##
switchport access vlan 72
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/2
description ## LINK TO 61STAFFORD-FW1
ETHERNET0 ##
switchport access vlan 72
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/3
description ## LINK TO 61STAFFORD-FW1
ETHERNET1 ##
switchport mode trunk
switchport nonegotiate
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/4
description ## LINK TO 61STAFFORD-AP1
FASTETHERNET0 ##
switchport trunk native vlan 103
switchport mode trunk
switchport nonegotiate
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/5
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/6
description ## FRONT OFFICE PC ##
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/7
description ## MAIL ROOM PC ##
switchport access vlan 102
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/8
description ## LOADING DOCK PC ##

switchport access vlan 101


switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/9
description ## LOADING DOCK PRINTER ##
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/10
description ## MANAGERS OFFICE PC ##
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/11
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/12
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/13
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/14
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/15
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/16
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/17
switchport access vlan 101
switchport mode access
spanning-tree portfast

spanning-tree bpdufilter enable


spanning-tree bpduguard enable
!
interface FastEthernet0/18
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/19
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/20
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/21
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/22
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/23
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface FastEthernet0/24
switchport access vlan 101
switchport mode access
spanning-tree portfast
spanning-tree bpdufilter enable
spanning-tree bpduguard enable
!
interface GigabitEthernet0/1
description ## L2 TRUNK LINK TO
61STAFFORD-AS2 ##
switchport mode trunk
switchport nonegotiate
channel-group 1 mode on
!
interface GigabitEthernet0/2
description ## L2 TRUNK LINK TO
61STAFFORD-AS2 ##
switchport mode trunk
switchport nonegotiate
channel-group 1 mode on
!
interface Vlan1
description ## DISABLED ##

no ip address
no ip route-cache
shutdown
!
interface Vlan101
description ## MANAGEMENT INTERFACE ##
ip address 10.161.101.1 255.255.255.0
no ip route-cache
!
ip default-gateway 10.161.101.254

no ip http server
!
ip access-list extended
VTY_ACCESS_LIST
permit ip 10.51.18.0 0.0.0.255 any
permit ip 10.52.19.0 0.0.0.255 any
deny
ip any any log

!
line con 0
login local
line vty 0 15
access-class VTY_ACCESS_LIST in
login local
transport input ssh
!
ntp clock-period 17180244
ntp server 129.6.15.29
ntp server 129.6.15.28
!
end

The office recently deployed an application that communicates tracking information between the
mail room and the loading dock PCs. The office manager says that the application is not
operating and keeps popping up with an error saying message; ERR34: No Heartbeat Upon
investigation of this application error you determine that the application uses broadcast to
communicate. By examining the switch configuration, what appears to be the problem?
Instruct the manager contact the software vendor to reinstall the software.
Configure the mail room PC to static access VLAN 101.
Disable spanning-tree bpdu filter on both the mail room and loading dock PCs.
Disable spanning-tree bpdu guard on both the mail room and loading dock PCs.
EXPLANATION: Upon examination of the switch configuration the mail room PC is in vlan 102
whereas the loading dock PC is in vlan 101. In order for these two pc's to communicate via
broadcast they need to be placed into the same VLAN.
69. At which layer of the OSI Model is reliability and error recovery performed at?
Data-Link
Network
Physical
Transport
EXPLANATION: The correct answer is "D" as error recover and reliability is performed at the
transport layer of the OSI Mode
70. You work at a Network Operations Center (NOC) providing support for end users. You receive a
call from an end user who pluged a switch into the jack in his office and now he claims the port is
no longer operational. What is most likely the problem?
Port Security shutdown the port because it detected BPDUs on the link.
Port Fast caused the port to go into ERR-Disable as multiple MAC addresses were detected
on the switch port.
BPDU Guard shutdown the port because it detected BPDUs.

The switch he plugged into the wall jack malfunctioned and damaged the port on the
company switch.
EXPLANATION: The most likely answer to this scenario is that BPDU Guard shutdown the port.
71. Using the default auto-cost reference-bandwidth for OSPF, what would be the cost of a 1Gbps
link?
1000
1
100
10
EXPLANATION: The auto-cost reference bandwidth by default is set to 100Mbps therefore any
link equal to or greater than 100Mbps would get an OSPF cost of 1.

Potrebbero piacerti anche