CCNA 1 v7.0 Final Exam Part 1
This flashcard set reinforces knowledge of static and floating static routes, including configuration of IPv4/IPv6 default routes, route prioritization using administrative distance, and resolving common routing issues. It's ideal for learners aiming to master static route behavior and syntax in Cisco environments.
Refer to the exhibit. What will router R1 do with a packet that has a destination IPv6 address of 2001:db8:cafe:5::1?
forward the packet out GigabitEthernet0/0
drop the packet
forward the packet out GigabitEthernet0/1
forward the packet out Serial0/0/0
forward the packet out Serial0/0/0
Key Terms
Refer to the exhibit. What will router R1 do with a packet that has a destination IPv6 address of 2001:db8:cafe:5::1?
forward the packet out GigabitEthernet0/0
drop the packet
forward the packet out GigabitEthernet0/1
forward the packet out Serial0/0/0
forward the packet out Serial0/0/0
Refer to the exhibit. Currently router R1 uses an EIGRP route learned from Branch2 to reach the 10.10.0.0/16 network. Which floating static route would create a backup route to the 10.10.0.0/16 network in the event that the link between R1 and Branch2 goes down?
ip route 10.10.0.0 255.255.0.0 Serial 0/0/0 100
ip route 10.10.0.0 255.255.0.0 209.165.200.226 100
ip route 10.10.0.0 255.255.0.0 209.165.200.225 100
ip route 10.10.0.0 255.255.0.0 209.165.200.225 50
ip route 10.10.0.0 255.255.0.0 209.165.200.225 100
Refer to the exhibit. R1 was configured with the static route command ip route 209.165.200.224 255.255.255.224 S0/0/0 and consequently users on network 172.16.0.0/16 are unable to reach resources on the Internet. How should this static route be changed to allow user traffic from the LAN to reach the Internet?
Add an administrative distance of 254.
Change the destination network and mask to 0.0.0.0 0.0.0.0
Change the exit interface to S0/0/1.
Add the next-hop neighbor address of 209.165.200.226.
Change the destination network and mask to 0.0.0.0 0.0.0.0
Which option shows a correctly configured IPv4 default static route?
ip route 0.0.0.0 255.255.255.0 S0/0/0
ip route 0.0.0.0 0.0.0.0 S0/0/0
ip route 0.0.0.0 255.255.255.255 S0/0/0
ip route 0.0.0.0 255.0.0.0 S0/0/0
ip route 0.0.0.0 0.0.0.0 S0/0/0
Refer to the exhibit. Which static route command can be entered on R1 to forward traffic to the LAN connected to R2?
ipv6 route 2001:db8:12:10::/64 S0/0/0
ipv6 route 2001:db8:12:10::/64 S0/0/1 fe80::2
ipv6 route 2001:db8:12:10::/64 S0/0/0 fe80::2
ipv6 route 2001:db8:12:10::/64 S0/0/1 2001:db8:12:10::1
ipv6 route 2001:db8:12:10::/64 S0/0/1 fe80::2
What is a method to launch a VLAN hopping attack?
introducing a rogue switch and enabling trunking
sending spoofed native VLAN information
sending spoofed IP addresses from the attacking host
flooding the switch with MAC addresses
introducing a rogue switch and enabling trunking
Related Flashcard Decks
Study Tips
- Press F to enter focus mode for distraction-free studying
- Review cards regularly to improve retention
- Try to recall the answer before flipping the card
- Share this deck with friends to study together
Term | Definition |
---|---|
Refer to the exhibit. What will router R1 do with a packet that has a destination IPv6 address of 2001:db8:cafe:5::1? forward the packet out GigabitEthernet0/0 | forward the packet out Serial0/0/0 |
Refer to the exhibit. Currently router R1 uses an EIGRP route learned from Branch2 to reach the 10.10.0.0/16 network. Which floating static route would create a backup route to the 10.10.0.0/16 network in the event that the link between R1 and Branch2 goes down? ip route 10.10.0.0 255.255.0.0 Serial 0/0/0 100 | ip route 10.10.0.0 255.255.0.0 209.165.200.225 100 |
Refer to the exhibit. R1 was configured with the static route command ip route 209.165.200.224 255.255.255.224 S0/0/0 and consequently users on network 172.16.0.0/16 are unable to reach resources on the Internet. How should this static route be changed to allow user traffic from the LAN to reach the Internet? Add an administrative distance of 254. | Change the destination network and mask to 0.0.0.0 0.0.0.0 |
Which option shows a correctly configured IPv4 default static route? ip route 0.0.0.0 255.255.255.0 S0/0/0 | ip route 0.0.0.0 0.0.0.0 S0/0/0 |
Refer to the exhibit. Which static route command can be entered on R1 to forward traffic to the LAN connected to R2? ipv6 route 2001:db8:12:10::/64 S0/0/0 | ipv6 route 2001:db8:12:10::/64 S0/0/1 fe80::2 |
What is a method to launch a VLAN hopping attack? introducing a rogue switch and enabling trunking | introducing a rogue switch and enabling trunking |
A cybersecurity analyst is using the macof tool to evaluate configurations of switches deployed in the backbone network of an organization. Which type of LAN attack is the analyst targeting during this evaluation? VLAN hopping | MAC address table overflow |
Refer to the exhibit. A network administrator is configuring a router as a DHCPv6 server. The administrator issues a show ipv6 dhcp pool command to verify the configuration. Which statement explains the reason that the number of active clients is 0? The default gateway address is not provided in the pool. | The state is not maintained by the DHCPv6 server under stateless DHCPv6 operation. |
Refer to the exhibit. A network administrator configured routers R1 and R2 as part of HSRP group 1. After the routers have been reloaded, a user on Host1 complained of lack of connectivity to the Internet The network administrator issued the show standby brief command on both routers to verify the HSRP operations. In addition, the administrator observed the ARP table on Host1. Which entry should be seen in the ARP table on Host1 in order to gain connectivity to the Internet? the virtual IP address and the virtual MAC address for the HSRP group 1 | the virtual IP address and the virtual MAC address for the HSRP group 1 |
Match the forwarding characteristic to its type. (Not all options are used.) appropriate for high performance computing error checking before forwarding forwarding process can begin after receiving the forwarding process only begins after receiving the may forward invalid frames only forwards valid frames cut-through: store-and-forward: | cut-through: store-and-forward: |
Which statement is correct about how a Layer 2 switch determines how to forward frames? Frame forwarding decisions are based on MAC address and port mappings in the CAM table. | Frame forwarding decisions are based on MAC address and port mappings in the CAM table. |
Which statement describes a result after multiple Cisco LAN switches are interconnected? The broadcast domain expands to all switches. | The broadcast domain expands to all switches. |
Match the link state to the interface and protocol status. (Not all options are used.) disabled Layer 1 problem Layer 2 problem operational administratively down down/down up/disabled up/down up/up | disabled - administratively down Layer 1 problem - down/down Layer 2 problem - up/down operational - up/up |
Refer to the exhibit. How is a frame sent from PCA forwarded to PCC if the MAC address table on switch SW1 is empty? SW1 forwards the frame directly to SW2. SW2 floods the frame to all ports connected to SW2, excluding the port through which the frame entered the switch. | SW1 floods the frame on all ports on SW1, excluding the port through which the frame entered the switch. |
An administrator is trying to remove configurations from a switch. After using the command erase startup-config and reloading the switch, the administrator finds that VLANs 10 and 100 still exist on the switch. Why were these VLANs not removed? Because these VLANs are stored in a file that is called vlan.dat that is located in flash memory, this file must be manually deleted. | Because these VLANs are stored in a file that is called vlan.dat that is located in flash memory, this file must be manually deleted. |
Match the description to the correct VLAN type. (Not all options are used.) default VLAN management VLAN data VLANs native VLAN | configured to carry user generated traffic all switch ports are assigned to this VLAN after initial bootup of the switch carries untagged traffic an IP address and subnet mask are assigned to this VLAN, allowing the switch to be accessed by HTTP, Telnet, SSH, or SNMP only accessible by the network administrator |
Refer to the exhibit. A network administrator has connected two switches together using EtherChannel technology. If STP is running, what will be the end result? STP will block one of the redundant links. | STP will block one of the redundant links. |
What is a secure configuration option for remote access to a network device? Configure an ACL and apply it to the VTY lines. | Configure SSH. |
Which wireless encryption method is the most secure? WPA2 with AES | WPA2 with AES |
After attaching four PCs to the switch ports, configuring the SSID and setting authentication properties for a small office network, a technician successfully tests the connectivity of all PCs that are connected to the switch and WLAN. A firewall is then configured on the device prior to connecting it to the Internet. What type of network device includes all of the described features? firewall appliance | wireless router |
Refer to the exhibit. Host A has sent a packet to host B. What will be the source MAC and IP addresses on the packet when it arrives at host B? Source MAC: 00E0.FE91.7799 | Source MAC: 00E0.FE91.7799 |
Refer to the exhibit. In addition to static routes directing traffic to networks 10.10.0.0/16 and 10.20.0.0/16, Router HQ is also configured with the following command: ip route 0.0.0.0 0.0.0.0 serial 0/1/1 What is the purpose of this command? Packets that are received from the Internet will be forwarded to one of the LANs connected to R1 or R2. | Packets with a destination network that is not 10.10.0.0/16 or is not 10.20.0.0/16 or is not a directly connected network will be forwarded to the Internet. |
What protocol or technology disables redundant paths to eliminate Layer 2 loops? VTP | STP |
Refer to the exhibit. Based on the exhibited configuration and output, why is VLAN 99 missing? because VLAN 99 is not a valid management VLAN | because VLAN 99 has not yet been created |
Which two VTP modes allow for the creation, modification, and deletion of VLANs on the local switch? (Choose two.) client | server |
Which three steps should be taken before moving a Cisco switch to a new VTP management domain? (Choose three.) Configure the switch with the name of the new management domain. | Configure the switch with the name of the new management domain. |
A network administrator is preparing the implementation of Rapid PVST+ on a production network. How are the Rapid PVST+ link types determined on the switch interfaces? Link types can only be configured on access ports configured with a single VLAN. | Link types are determined automatically. |
Refer to the exhibit. All the displayed switches are Cisco 2960 switches with the same default priority and operating at the same bandwidth. Which three ports will be STP designated ports? (Choose three.) fa0/9 | fa0/13 |
How will a router handle static routing differently if Cisco Express Forwarding is disabled? It will not perform recursive lookups. | Ethernet multiaccess interfaces will require fully specified static routes to avoid routing inconsistencies. |
Compared with dynamic routes, what are two advantages of using static routes on a router? (Choose two.) They improve network security. | They improve network security. |
Refer to the exhibit. Which route was configured as a static route to a specific network using the next-hop address? S 10.17.2.0/24 [1/0] via 10.16.2.2 | S 10.17.2.0/24 [1/0] via 10.16.2.2 |
What is the effect of entering the spanning-tree portfast configuration command on a switch? It disables an unused port. | It enables portfast on a specific switch interface. |
What is the IPv6 prefix that is used for link-local addresses? FF01::/8 | FE80::/10 |
Which two statements are characteristics of routed ports on a multilayer switch? (Choose two.) In a switched network, they are mostly configured between switches at the core and distribution layers. | In a switched network, they are mostly configured between switches at the core and distribution layers. |
Successful inter-VLAN routing has been operating on a network with multiple VLANs across multiple switches for some time. When an inter-switch trunk link fails and Spanning Tree Protocol brings up a backup trunk link, it is reported that hosts on two VLANs can access some, but not all the network resources that could be accessed previously. Hosts on all other VLANS do not have this problem. What is the most likely cause of this problem? The protected edge port function on the backup trunk interfaces has been disabled. | The protected edge port function on the backup trunk interfaces has been disabled. |
Which command will start the process to bundle two physical interfaces to create an EtherChannel group via LACP? interface port-channel 2 | interface range GigabitEthernet 0/4 – 5 |
What action takes place when a frame entering a switch has a multicast destination MAC address? The switch will forward the frame out all ports except the incoming port. | The switch will forward the frame out all ports except the incoming port. |
A junior technician was adding a route to a LAN router. A traceroute to a device on the new network revealed a wrong path and unreachable status. What should be done or checked? Verify that there is not a default route in any of the edge router routing tables. | Check the configuration of the exit interface on the new static route. |
Select the three PAgP channel establishment modes. (Choose three.) auto | auto |
A static route has been configured on a router. However, the destination network no longer exists. What should an administrator do to remove the static route from the routing table? Remove the route using the no ip route command. | Remove the route using the no ip route command. |
Refer to the exhibit. What can be concluded about the configuration shown on R1? R1 is configured as a DHCPv4 relay agent. | R1 is configured as a DHCPv4 relay agent. |
Match the step to each switch boot sequence description. (Not all options are used.) step 1 step 2 step 3 step 4 step 5 step 6 perform low-level CPU initialization enter global configuration mode execute POST flash file system initialization load the boot loader from ROM load the IOS transfer switch control to the IOS | perform low-level CPU initialization - step 3 execute POST - step 1 flash file system initialization - step 4 load the boot loader from ROM - step 2 load the IOS - step 5 transfer switch control to the IOS - step 6 |
Refer to the exhibit. R1 has been configured as shown. However, PC1 is not able to receive an IPv4 address. What is the problem? The ip helper-address command was applied on the wrong interface. | The ip helper-address command was applied on the wrong interface. |
What two default wireless router settings can affect network security? (Choose two.) The SSID is broadcast. | The SSID is broadcast. |
What is the common term given to SNMP log messages that are generated by network devices and sent to the SNMP server? traps | traps |
A network administrator is adding a new WLAN on a Cisco 3500 series WLC. Which tab should the administrator use to create a new VLAN interface to be used for the new WLAN? WIRELESS | CONTROLLER |
A network administrator is configuring a WLAN. Why would the administrator change the default DHCP IPv4 addresses on an AP? to restrict access to the WLAN by authorized, authenticated users only | to reduce outsiders intercepting data or accessing the wireless network by using a well-known address range |
Which two functions are performed by a WLC when using split media access control (MAC)? (Choose two.) packet acknowledgments and retransmissions | frame translation to other protocols |
On what switch ports should BPDU guard be enabled to enhance STP stability? all PortFast-enabled ports | all PortFast-enabled ports |
Which network attack is mitigated by enabling BPDU guard? rogue switches on a network | rogue switches on a network |
Why is DHCP snooping required when using the Dynamic ARP Inspection feature? It relies on the settings of trusted and untrusted ports set by DHCP snooping. | It uses the MAC-address-to-IP-address binding database to validate an ARP packet. |
Refer to the exhibit. Router R1 has an OSPF neighbor relationship with the ISP router over the 192.168.0.32 network. The 192.168.0.36 network link should serve as a backup when the OSPF link goes down. The floating static route command ip route 0.0.0.0 0.0.0.0 S0/0/1 100 was issued on R1 and now traffic is using the backup link even when the OSPF link is up and functioning. Which change should be made to the static route command so that traffic will only use the OSPF link when it is up? Change the administrative distance to 120. | Change the administrative distance to 120. |
Refer to the exhibit. What is the metric to forward a data packet with the IPv6 destination address 2001:DB8:ACAD:E:240:BFF:FED4:9DD2? 90 | 2682112 |
A network administrator is configuring a new Cisco switch for remote management access. Which three items must be configured on the switch for the task? (Choose three.) IP address | IP address |
Refer to the exhibit. Which statement shown in the output allows router R1 to respond to stateless DHCPv6 requests? ipv6 nd other-config-flag | ipv6 nd other-config-flag |
Refer to the exhibit. A Layer 3 switch routes for three VLANs and connects to a router for Internet connectivity. Which two configurations would be applied to the switch? (Choose two.) (config)# interface gigabitethernet1/1 (config)# interface gigabitethernet 1/1 (config)# interface vlan 1 (config)# ip routing (config)# interface fastethernet0/4 | (config)# interface gigabitethernet 1/1 (config)# ip routing |
A technician is troubleshooting a slow WLAN and decides to use the split-the-traffic approach. Which two parameters would have to be configured to do this? (Choose two.) Configure the 5 GHz band for streaming multimedia and time sensitive traffic. | Configure the 5 GHz band for streaming multimedia and time sensitive traffic. Configure the 2.4 GHz band for basic internet traffic that is not time sensitive. |
A company has just switched to a new ISP. The ISP has completed and checked the connection from its site to the company. However, employees at the company are not able to access the internet. What should be done or checked? Verify that the static route to the server is present in the routing table. | Ensure that the old default route has been removed from the company edge routers. |
Which information does a switch use to populate the MAC address table? the destination MAC address and the incoming port | the source MAC address and the incoming port |
Refer to the exhibit. A network administrator is reviewing the configuration of switch S1. Which protocol has been implemented to group multiple physical ports into one logical link? PAgP | PAgP |
Which type of static route is configured with a greater administrative distance to provide a backup route to a route learned from a dynamic routing protocol? floating static route | floating static route |
What action takes place when a frame entering a switch has a unicast destination MAC address appearing in the MAC address table? The switch updates the refresh timer for the entry. | The switch forwards the frame out of the specified port. |
The exhibit shows two PCs called PC A and PC B, two routes called R1 and R2, and two switches. PC A has the address 172.16.1.1/24 and is connected to a switch and into an interface on R1 that has the IP address 172.16.1.254. PC B has the address 172.16.2.1/24 and is connected to a switch that is connected to another interface on R1 with the IP address 172.16.2.254. The serial interface on R1 has the address 172.16.3.1 and is connected to the serial interface on R2 that has the address 172.16.3.2/24. R2 is connected to the internet cloud. Which command will create a static route on R2 in order to reach PC B? R2(config)# ip route 172.16.2.1 255.255.255.0 172.16.3.1 | R2(config)# ip route 172.16.2.0 255.255.255.0 172.16.3.1 |
What protocol or technology allows data to transmit over redundant switch links? EtherChannel | EtherChannel |
Refer to the exhibit. Which three hosts will receive ARP requests from host A, assuming that port Fa0/4 on both switches is configured to carry traffic for multiple VLANs? (Choose three.) host B | host C |
Refer to the exhibit. The network administrator configures both switches as displayed. However, host C is unable to ping host D and host E is unable to ping host F. What action should the administrator take to enable this communication? Associate hosts A and B with VLAN 10 instead of VLAN 1. | Configure either trunk port in the dynamic desirable mode. |
What is the effect of entering the shutdown configuration command on a switch? It enables BPDU guard on a specific port. | It disables an unused port. |
What would be the primary reason an attacker would launch a MAC address overflow attack? so that the switch stops forwarding traffic | so that the attacker can see frames that are destined for other hosts |
During the AAA process, when will authorization be implemented? Immediately after successful authentication against an AAA data source | Immediately after successful authentication against an AAA data source |
A company security policy requires that all MAC addressing be dynamically learned and added to both the MAC address table and the running configuration on each switch. Which port security configuration will accomplish this? auto secure MAC addresses | sticky secure MAC addresses |
Which three Wi-Fi standards operate in the 2.4GHz range of frequencies? (Choose three.) 802.11a | 802.11b |
To obtain an overview of the spanning tree status of a switched network, a network engineer issues the show spanning-tree command on a switch. Which two items of information will this command display? (Choose two.) The root bridge BID. | The root bridge BID. |
Refer to the exhibit. Which trunk link will not forward any traffic after the root bridge election process is complete? Trunk1 | Trunk2 |
Which method of IPv6 prefix assignment relies on the prefix contained in RA messages? EUI-64 | SLAAC |
Which two protocols are used to provide server-based AAA authentication? (Choose two.) 802.1x | TACACS+ |
A network administrator is configuring a WLAN. Why would the administrator disable the broadcast feature for the SSID? to eliminate outsiders scanning for available SSIDs in the area | to eliminate outsiders scanning for available SSIDs in the area |
Which mitigation technique would prevent rogue servers from providing false IP configuration parameters to clients? implementing port security | turning on DHCP snooping |
A network administrator configures the port security feature on a switch. The security policy specifies that each access port should allow up to two MAC addresses. When the maximum number of MAC addresses is reached, a frame with the unknown source MAC address is dropped and a notification is sent to the syslog server. Which security violation mode should be configured for each access port? shutdown | restrict |
What protocol or technology defines a group of routers, one of them defined as active and another one as standby? EtherChannel | HSRP |
Refer to the exhibit. After attempting to enter the configuration that is shown in router RTA, an administrator receives an error and users on VLAN 20 report that they are unable to reach users on VLAN 30. What is causing the problem? There is no address on Fa0/0 to use as a default gateway. | RTA is using the same subnet for VLAN 20 and VLAN 30. |
Which three pairs of trunking modes will establish a functional trunk link between two Cisco switches? (Choose three.) dynamic auto - dynamic auto | dynamic desirable - trunk |
A technician is configuring a router for a small company with multiple WLANs and doesn’t need the complexity of a dynamic routing protocol. What should be done or checked? Verify that there is not a default route in any of the edge router routing tables. | Create static routes to all internal networks and a default route to the internet. |
A company is deploying a wireless network in the distribution facility in a Boston suburb. The warehouse is quite large and it requires multiple access points to be used. Because some of the company devices still operate at 2.4GHz, the network administrator decides to deploy the 802.11g standard. Which channel assignments on the multiple access points will make sure that the wireless channels are not overlapping? channels 1, 5, and 9 | channels 1, 6, and 11 |
A network administrator of a small advertising company is configuring WLAN security by using the WPA2 PSK method. Which credential do office users need in order to connect their laptops to the WLAN? the company username and password through Active Directory service | a key that matches the key on the AP |
Refer to the exhibit. What are the possible port roles for ports A, B, C, and D in this RSTP-enabled network? alternate, designated, root, root | alternate, designated, root, root |