CCNA 1 v7.0 Final Exam Part 2
This flashcard set reinforces knowledge of static and floating static routes, including configuration of IPv4/IPv6 default routes, route prioritization using administrative distance, and resolving common routing issues. It's ideal for learners aiming to master static route behavior and syntax in Cisco environments.
Refer to the exhibit. Which static route would an IT technician enter to create a backup route to the 172.16.1.0 network that is only used if the primary RIP learned route fails?
ip route 172.16.1.0 255.255.255.0 s0/0/0
ip route 172.16.1.0 255.255.255.0 s0/0/0 121
ip route 172.16.1.0 255.255.255.0 s0/0/0 111
ip route 172.16.1.0 255.255.255.0 s0/0/0 91
ip route 172.16.1.0 255.255.255.0 s0/0/0 121
Key Terms
Refer to the exhibit. Which static route would an IT technician enter to create a backup route to the 172.16.1.0 network that is only used if the primary RIP learned route fails?
ip route 172.16.1.0 255.255.255.0 s0/0/0
ip route 172.16.1.0 255.255.255.0 s0/0/0 121
ip route 172.16.1.0 255.255.255.0 s0/0/0 111
ip route 172.16.1.0 255.255.255.0 s0/0/0 91
ip route 172.16.1.0 255.255.255.0 s0/0/0 121
What mitigation plan is best for thwarting a DoS attack that is creating a MAC address table overflow?
Disable DTP.
Disable STP.
Enable port security.
Place unused ports in an unused VLAN.
Enable port security.
A network engineer is troubleshooting a newly deployed wireless network that is using the latest 802.11 standards. When users access high bandwidth services such as streaming video, the wireless network performance is poor. To improve performance the network engineer decides to configure a 5 Ghz frequency band SSID and train users to use that SSID for streaming media services. Why might this solution improve the wireless network performance for that type of service?
Requiring the users to switch to the 5 GHz band for streaming media is inconvenient and will result in fewer users accessing these services.
The 5 GHz band has more channels and is less crowded than the 2.4 GHz band, which makes it more suited to streaming multimedia.
The 5 GHz band has a greater range and is therefore likely to be interference-free.
The only users that can switch to the 5 GHz band will be those with the latest wireless NICs, which will reduce usage.
The 5 GHz band has more channels and is less crowded than the 2.4 GHz band, which makes it more suited to streaming multimedia.
Which DHCPv4 message will a client send to accept an IPv4 address that is offered by a DHCP server?
broadcast DHCPACK
broadcast DHCPREQUEST
unicast DHCPACK
unicast DHCPREQUEST
broadcast DHCPREQUEST
Refer to the exhibit. Which destination MAC address is used when frames are sent from the workstation to the default gateway?
MAC address of the virtual router
MAC address of the standby router
MAC addresses of both the forwarding and standby routers
MAC address of the forwarding router
MAC address of the virtual router
After a host has generated an IPv6 address by using the DHCPv6 or SLAAC process, how does the host verify that the address is unique and therefore usable?
The host sends an ICMPv6 echo request message to the DHCPv6 or SLAAC-learned address and if no reply is returned, the address is considered unique.
The host sends an ICMPv6 neighbor solicitation message to the DHCP or SLAAC-learned address and if no neighbor advertisement is returned, the address is considered unique.
The host checks the local neighbor cache for the learned address and if the address is not cached, it it considered unique.
The host sends an ARP broadcast to the local link and if no hosts send a reply, the address is considered unique.
The host sends an ICMPv6 neighbor solicitation message to the DHCP or SLAAC-learned address and if no neighbor advertisement is returned, the addre...
Related Flashcard Decks
Study Tips
- Press F to enter focus mode for distraction-free studying
- Review cards regularly to improve retention
- Try to recall the answer before flipping the card
- Share this deck with friends to study together
Term | Definition |
---|---|
Refer to the exhibit. Which static route would an IT technician enter to create a backup route to the 172.16.1.0 network that is only used if the primary RIP learned route fails? ip route 172.16.1.0 255.255.255.0 s0/0/0 | ip route 172.16.1.0 255.255.255.0 s0/0/0 121 |
What mitigation plan is best for thwarting a DoS attack that is creating a MAC address table overflow? Disable DTP. | Enable port security. |
A network engineer is troubleshooting a newly deployed wireless network that is using the latest 802.11 standards. When users access high bandwidth services such as streaming video, the wireless network performance is poor. To improve performance the network engineer decides to configure a 5 Ghz frequency band SSID and train users to use that SSID for streaming media services. Why might this solution improve the wireless network performance for that type of service? Requiring the users to switch to the 5 GHz band for streaming media is inconvenient and will result in fewer users accessing these services. | The 5 GHz band has more channels and is less crowded than the 2.4 GHz band, which makes it more suited to streaming multimedia. |
Which DHCPv4 message will a client send to accept an IPv4 address that is offered by a DHCP server? broadcast DHCPACK | broadcast DHCPREQUEST |
Refer to the exhibit. Which destination MAC address is used when frames are sent from the workstation to the default gateway? MAC address of the virtual router | MAC address of the virtual router |
After a host has generated an IPv6 address by using the DHCPv6 or SLAAC process, how does the host verify that the address is unique and therefore usable? The host sends an ICMPv6 echo request message to the DHCPv6 or SLAAC-learned address and if no reply is returned, the address is considered unique. | The host sends an ICMPv6 neighbor solicitation message to the DHCP or SLAAC-learned address and if no neighbor advertisement is returned, the address is considered unique. |
Match the purpose with its DHCP message type. (Not all options are used.) a message that is used to locate any available DHCP server on a network a message that is used to identify the explicit server and lease offer to accept a message that is used to acknowledge that the lease is successful a message that is used to suggest a lease to client DHCPREQUEST DHCPDISCOVER DHCPNAK DHCPOFFER DHCPACK | a message that is used to identify the explicit server and lease offer to accept - DHCPREQUEST a message that is used to locate any available DHCP server on a network - DHCPDISCOVER a message that is used to suggest a lease to client - DHCPOFFER a message that is used to acknowledge that the lease is successful - DHCPACK |
Which protocol adds security to remote connections? FTP | SSH |
Refer to the exhibit. A network administrator is verifying the configuration of inter-VLAN routing. Users complain that PC2 cannot communicate with PC1. Based on the output, what is the possible cause of the problem? Gi0/0 is not configured as a trunk port. | The encapsulation dot1Q 5 command contains the wrong VLAN. |
Refer to the exhibit. A network administrator is configuring inter-VLAN routing on a network. For now, only one VLAN is being used, but more will be added soon. What is the missing parameter that is shown as the highlighted question mark in the graphic? It identifies the subinterface. | It identifies the VLAN number. |
Match each DHCP message type with its description. (Not all options are used.) DHCPACK DHCPREQUEST DHCPNACK DHCPDISCOVER DHCPOFFER a client initiating a message to find a DHCP server a DHCP server responding to the initial request by a client the client accepting the IP address provided by the DHCP server the DHCP server confirming that the address lease has been accepted | a client initiating a message to find a DHCP server - DHCPDISCOVER a DHCP server responding to the initial request by a client - DHCPOFFER the client accepting the IP address provided by the DHCP server - DHCPREQUEST the DHCP server confirming that the address lease has been accepted - DHCPACK |
What network attack seeks to create a DoS for clients by preventing them from being able to obtain a DHCP lease? IP address spoofing | DHCP starvation |
Refer to the exhibit. If the IP addresses of the default gateway router and the DNS server are correct, what is the configuration problem? The DNS server and the default gateway router should be in the same subnet. | The IP address of the default gateway router is not contained in the excluded address list. |
Refer to the exhibit. A network administrator has added a new subnet to the network and needs hosts on that subnet to receive IPv4 addresses from the DHCPv4 server. R1(config-if)# ip helper-address 10.2.0.250 | R1(config-if)# ip helper-address 10.2.0.250 |
What protocol or technology uses source IP to destination IP as a load-balancing mechanism? VTP | EtherChannel |
What protocol should be disabled to help mitigate VLAN attacks? CDP | DTP |
What protocol or technology requires switches to be in server mode or client mode? EtherChannel | VTP |
What are two reasons a network administrator would segment a network with a Layer 2 switch? (Choose two.) to create fewer collision domains | to enhance user bandwidth |
What command will enable a router to begin sending messages that allow it to configure a link-local address without using an IPv6 DHCP server? a static route | the ipv6 unicast-routing command |
A network administrator is using the router-on-a-stick model to configure a switch and a router for inter-VLAN routing. What configuration should be made on the switch port that connects to the router? Configure it as a trunk port and allow only untagged traffic. | Configure the port as an 802.1q trunk port. |
What are three techniques for mitigating VLAN attacks? (Choose three.) Use private VLANs. | Enable trunking manually |
Match the DHCP message types to the order of the DHCPv4 process. (Not all options are used.) Step 1 Step 2 Step 3 Step 4 DHCPACK DHCPREQUEST DHCPDISCOVER DHCPREPLY DHCPINFORMATION-REQUEST DHCPOFFER | DHCPACK - Step 4 DHCPREQUEST - Step 3 DHCPDISCOVER - Step 1 DHCPOFFER - Step 2 |
In which situation would a technician use the show interfaces switch command? to determine if remote access is enabled | when packets are being dropped from a particular directly attached host |
What is a drawback of the local database method of securing device access that can be solved by using AAA with centralized servers? There is no ability to provide accountability. | User accounts must be configured locally on each device, which is an unscalable authentication solution. |
What action does a DHCPv4 client take if it receives more than one DHCPOFFER from multiple DHCP servers? It sends a DHCPREQUEST that identifies which lease offer the client is accepting. | It sends a DHCPREQUEST that identifies which lease offer the client is accepting. |
Refer to the exhibit. The network administrator is configuring the port security feature on switch SWC. The administrator issued the command show port-security interface fa 0/2 to verify the configuration. What can be concluded from the output that is shown? (Choose three.) Three security violations have been detected on this interface. | This port is currently up. |
What method of wireless authentication is dependent on a RADIUS authentication server? WEP | WPA2 Enterprise |
A network administrator has found a user sending a double-tagged 802.1Q frame to a switch. What is the best solution to prevent this type of attack? The native VLAN number used on any trunk should be one of the active data VLANs. | The VLANs for user access ports should be different VLANs than any native VLANs used on trunk ports. |
Refer to the exhibit. Which two conclusions can be drawn from the output? (Choose two.) The EtherChannel is down. | The EtherChannel is down. |
Match the step number to the sequence of stages that occur during the HSRP failover process. (Not all options are used.) Step 1 Step 2 Step 3 The standby router assumes the role of the forwarding router using both the IP and MAC addresses of the virtual router. The standby router stops seeing hello messages from the forwarding router. The forwarding router fails. The host initiates an ARP request for the MAC address of the new forwarding router. | The standby router assumes the role of the forwarding router using both the IP and MAC addresses of the virtual router. - Step 3 The standby router stops seeing hello messages from the forwarding router. - Step 2 The forwarding router fails. - Step 1 |
On a Cisco 3504 WLC Summary page ( Advanced > Summary ), which tab allows a network administrator to configure a particular WLAN with a WPA2 policy? WLANs | WLANs |
Refer to the exhibit. A network engineer is configuring IPv6 routing on the network. Which command issued on router HQ will configure a default route to the Internet to forward packets to an IPv6 destination network that is not listed in the routing table? ipv6 route ::/0 serial 0/0/0 | ipv6 route ::/0 serial 0/1/1 |
Users are complaining of sporadic access to the internet every afternoon. What should be done or checked? Create static routes to all internal networks and a default route to the internet. | Check the statistics on the default route for oversaturation. |
What action takes place when the source MAC address of a frame entering a switch appears in the MAC address table associated with a different port? The switch purges the entire MAC address table. | The switch replaces the old entry and uses the more current port. |
A network administrator is configuring a WLAN. Why would the administrator use a WLAN controller? to centralize management of multiple WLANs | to facilitate group configuration and management of multiple WLANs through a WLC |
A new Layer 3 switch is connected to a router and is being configured for interVLAN routing. What are three of the five steps required for the configuration? (Choose three.) creating SVI interfaces | creating SVI interfaces |
Which three statements accurately describe duplex and speed settings on Cisco 2960 switches? (Choose three.) An autonegotiation failure can result in connectivity issues. | An autonegotiation failure can result in connectivity issues. |
Refer to the exhibit. A network administrator configures R1 for inter-VLAN routing between VLAN 10 and VLAN 20. However, the devices in VLAN 10 and VLAN 20 cannot communicate. Based on the configuration in the exhibit, what is a possible cause for the problem? A. The port Gi0/0 should be configured as trunk port. | B. The encapsulation is misconfigured on a subinterface. |
A network administrator uses the spanning-tree portfast bpduguard default global configuration command to enable BPDU guard on a switch. However, BPDU guard is not activated on all access ports. What is the cause of the issue? BPDU guard needs to be activated in the interface configuration command mode. | PortFast is not configured on all access ports. |
Which two types of spanning tree protocols can cause suboptimal traffic flows because they assume only one spanning-tree instance for the entire bridged network? (Choose two.) MSTP | RSTP |
Refer to the exhibit. A network administrator is configuring the router R1 for IPv6 address assignment. Based on the partial configuration, which IPv6 global unicast address assignment scheme does the administrator intend to implement? stateful | stateful |
A WLAN engineer deploys a WLC and five wireless APs using the CAPWAP protocol with the DTLS feature to secure the control plane of the network devices. While testing the wireless network, the WLAN engineer notices that data traffic is being exchanged between the WLC and the APs in plain-text and is not being encrypted. What is the most likely reason for this? DTLS only provides data security through authentication and does not provide encryption for data moving between a wireless LAN controller (WLC) and an access point (AP). | Although DTLS is enabled by default to secure the CAPWAP control channel, it is disabled by default for the data channel. |
A new switch is to be added to an existing network in a remote office. The network administrator does not want the technicians in the remote office to be able to add new VLANs to the switch, but the switch should receive VLAN updates from the VTP domain. Which two steps must be performed to configure VTP on the new switch to meet these conditions? (Choose two.) Configure the new switch as a VTP client. | Configure the new switch as a VTP client. |
Refer to the exhibit. Consider that the main power has just been restored. PC3 issues a broadcast IPv4 DHCP request. To which port will SW1 forward this request? to Fa0/1, Fa0/2, and Fa0/3 only | to Fa0/1, Fa0/2, and Fa0/3 only |
What action takes place when the source MAC address of a frame entering a switch is not in the MAC address table? The switch forwards the frame out of the specified port. | The switch adds the MAC address and incoming port number to the table. |
Employees are unable to connect to servers on one of the internal networks. What should be done or checked? Use the “show ip interface brief” command to see if an interface is down. | Use the “show ip interface brief” command to see if an interface is down. |
What is the effect of entering the ip dhcp snooping configuration command on a switch? It enables DHCP snooping globally on a switch. | It enables DHCP snooping globally on a switch. |
An administrator notices that large numbers of packets are being dropped on one of the branch routers. What should be done or checked? Create static routes to all internal networks and a default route to the internet. | Check the routing table for a missing static route. |
What are two switch characteristics that could help alleviate network congestion? (Choose two.) fast internal switching | fast internal switching |
What is a result of connecting two or more switches together? The number of broadcast domains is increased. | The size of the broadcast domain is increased. |
Branch users were able to access a site in the morning but have had no connectivity with the site since lunch time. What should be done or checked? Verify that the static route to the server is present in the routing table. | Use the “show ip interface brief” command to see if an interface is down. |
What is the effect of entering the switchport port-security configuration command on a switch? It dynamically learns the L2 address and copies it to the running configuration. | It enables port security on an interface. |
A network administrator is configuring a WLAN. Why would the administrator use multiple lightweight APs? to centralize management of multiple WLANs | to facilitate group configuration and management of multiple WLANs through a WLC |
Refer to the exhibit. PC-A and PC-B are both in VLAN 60. PC-A is unable to communicate with PC-B. What is the problem? The native VLAN should be VLAN 60. | The VLAN that is used by PC-A is not in the list of allowed VLANs on the trunk. |
A network administrator is configuring a WLAN. Why would the administrator use RADIUS servers on the network? to centralize management of multiple WLANs | to restrict access to the WLAN by authorized, authenticated users only |
What is the effect of entering the switchport mode access configuration command on a switch? It enables BPDU guard on a specific port. | It disables DTP on a non-trunking interface. |
A network administrator has configured a router for stateless DHCPv6 operation. However, users report that workstations are not receiving DNS server information. Which two router configuration lines should be verified to ensure that stateless DHCPv6 service is properly configured? (Choose two.) The domain-name line is included in the ipv6 dhcp pool section. | The dns-server line is included in the ipv6 dhcp pool section. |
A network administrator is configuring a WLAN. Why would the administrator disable the broadcast feature for the SSID? to eliminate outsiders scanning for available SSIDs in the area | to eliminate outsiders scanning for available SSIDs in the area |
Refer to the exhibit. An administrator is attempting to install an IPv6 static route on router R1 to reach the network attached to router R2. After the static route command is entered, connectivity to the network is still failing. What error has been made in the static route configuration? The next hop address is incorrect. | The interface is incorrect. |
What action takes place when a frame entering a switch has a unicast destination MAC address that is not in the MAC address table? The switch updates the refresh timer for the entry. | The switch will forward the frame out all ports except the incoming port. |
A junior technician was adding a route to a LAN router. A traceroute to a device on the new network revealed a wrong path and unreachable status. What should be done or checked? Create a floating static route to that network. | Check the configuration of the exit interface on the new static route. |
What is the effect of entering the ip arp inspection vlan 10 configuration command on a switch? It specifies the maximum number of L2 addresses allowed on a port. | It enables DAI on specific switch interfaces previously configured with DHCP snooping. |
What protocol or technology manages trunk negotiations between switches? VTP | DTP |
A network administrator is configuring a WLAN. Why would the administrator apply WPA2 with AES to the WLAN? to reduce the risk of unauthorized APs being added to the network | to provide privacy and integrity to wireless traffic by using encryption |
Users on a LAN are unable to get to a company web server but are able to get elsewhere. What should be done or checked? Ensure that the old default route has been removed from the company edge routers. | Verify that the static route to the server is present in the routing table. |
What IPv6 prefix is designed for link-local communication? 2001::/3 | fe80::/10 |
What is the effect of entering the ip dhcp snooping limit rate 6 configuration command on a switch? It displays the IP-to-MAC address associations for switch interfaces. | It restricts the number of discovery messages, per second, to be received on the interface. |
A network administrator is configuring a WLAN. Why would the administrator change the default DHCP IPv4 addresses on an AP? to eliminate outsiders scanning for available SSIDs in the area | to reduce outsiders intercepting data or accessing the wireless network by using a well-known address range |
What is the effect of entering the ip arp inspection validate src-mac configuration command on a switch? It checks the source L2 address in the Ethernet header against the sender L2 address in the ARP body. | It checks the source L2 address in the Ethernet header against the sender L2 address in the ARP body. |
What protocol or technology is a Cisco proprietary protocol that is automatically enabled on 2960 switches? DTP | DTP |
What address and prefix length is used when configuring an IPv6 default static route? ::/0 | ::/0 |
What are two characteristics of Cisco Express Forwarding (CEF)? (Choose two.) When a packet arrives on a router interface, it is forwarded to the control plane where the CPU matches the destination address with a matching routing table entry. | This is the fastest forwarding mechanism on Cisco routers and multilayer switches. |
Which term describes the role of a Cisco switch in the 802.1X port-based access control? agent | authenticator |
Which Cisco solution helps prevent ARP spoofing and ARP poisoning attacks? Dynamic ARP Inspection | Dynamic ARP Inspection |
What is an advantage of PVST+? PVST+ optimizes performance on the network through autoselection of the root bridge. | PVST+ optimizes performance on the network through load sharing. |
What protocol or technology uses a standby router to assume packet-forwarding responsibility if the active router fails? EtherChannel | HSRP |
What is the effect of entering the show ip dhcp snooping binding configuration command on a switch? It switches a trunk port to access mode. | It displays the IP-to-MAC address associations for switch interfaces. |
What action takes place when the source MAC address of a frame entering a switch is in the MAC address table? The switch forwards the frame out of the specified port. | The switch updates the refresh timer for the entry. |
A small publishing company has a network design such that when a broadcast is sent on the LAN, 200 devices receive the transmitted broadcast. How can the network administrator reduce the number of devices that receive broadcast traffic? Add more switches so that fewer devices are on a particular switch. | Segment the LAN into smaller LANs and route between them. |
What defines a host route on a Cisco router? The link-local address is added automatically to the routing table as an IPv6 host route. | An IPv4 static host route configuration uses a destination IP address of a specific device and a /32 subnet mask. |
What else is required when configuring an IPv6 static route using a next-hop link-local address? administrative distance | interface number and type |
A technician is configuring a wireless network for a small business using a SOHO wireless router. Which two authentication methods are used, if the router is configured with WPA2? (Choose two.) personal | personal |
Which mitigation technique would prevent rogue servers from providing false IPv6 configuration parameters to clients? enabling DHCPv6 Guard | enabling DHCPv6 Guard |
A PC has sent an RS message to an IPv6 router attached to the same network. Which two pieces of information will the router send to the client? (Choose two.) prefix length | prefix length |
While attending a conference, participants are using laptops for network connectivity. When a guest speaker attempts to connect to the network, the laptop fails to display any available wireless networks. The access point must be operating in which mode? mixed | active |
Which three components are combined to form a bridge ID? extended system ID | extended system ID |