Weekend Sale 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: exams65

ExamsBrite Dumps

Implementing Cisco Enterprise Advanced Routing and Services (300-410 ENARSI) Question and Answers

Implementing Cisco Enterprise Advanced Routing and Services (300-410 ENARSI)

Last Update Oct 19, 2025
Total Questions : 615

We are offering FREE 300-410 Cisco exam questions. All you do is to just go and sign up. Give your details, prepare 300-410 free exam questions and then go for complete pool of Implementing Cisco Enterprise Advanced Routing and Services (300-410 ENARSI) test questions that will help you more.

300-410 pdf

300-410 PDF

$40.25  $114.99
300-410 Engine

300-410 Testing Engine

$47.25  $134.99
300-410 PDF + Engine

300-410 PDF + Testing Engine

$61.25  $174.99
Questions 1

Refer to Exhibit.

A network administrator added one router in the Cisco DNA Center and checked its discovery and health from the Network Health Dashboard. The network administrator observed that the router is still showing up as unmonitored. What must be configured on the router to mount it in the Cisco DNA Center?

Options:

A.  

Configure router with NetFlow data

B.  

Configure router with the telemetry data

C.  

Configure router with routing to reach Cisco DNA Center

D.  

Configure router with SNMPv2c or SNMPv3 traps

Discussion 0
Questions 2

Refer to the exhibit.

An administrator is configuring a GRE tunnel to establish an EIGRP neighbor to a remote router. The other tunnel endpoint is already configured. After applying the configuration as shown, the tunnel started flapping. Which action resolves the issue?

Options:

A.  

Stop sending a route matching the tunnel destination across the tunnel.

B.  

Modify the network command to use the Tunne10 Interface netmask.

C.  

Advertise the Loopback0 interface from R2 across the tunnel.

D.  

Readdress the IP network on the Tunne10 on both routers using the /31 netmask.

Discussion 0
Questions 3

Refer to the exhibit.

R1 is configured with IP SLA to check the availability of the server behind R6 but it kept failing. Which configuration resolves the issue?

Options:

A.  

R6(config)# ip sla responder

B.  

R6(config)# ip sla responder udp-echo ip address 10.10.10.1 port 5000

C.  

R6(config)# ip access-list extended DDOSR6(config ext-nac)# 5 permit icmp host 10.66 66.66 host 10.10.10.1

D.  

R6(config)# ip access-list extended DDOSR6(confg ext-nac)# 5 permit icmp host 10.10.10.1 host 10.66.66.66

Discussion 0
Questions 4

A customer requested a GRE tunnel through the provider network between two customer sites using loopback to hide internal networks. Which configuration on R2 establishes the tunnel with R1?

Options:

A.  

R2(config)# interface Tunnel 1R2(config-if)# ip address 172.20.1.2 255.255.255.0R2(config-if)# ip mtu 1400R2(config-if)# ip tcp adjust-mss 1360R2(config-if)# tunnel source 192.168.20.1R2(config-if)# tunnel destination 192.168.10.1

B.  

R2(config)# interface Tunnel 1R2(config-if)# ip address 172.20.1.2 255.255.255.0R2(config-if)# ip mtu 1400R2(config-if)# ip tcp adjust-mss 1360R2(config-if)# tunnel source 10.10.2.2R2(config-if)# tunnel destination 10.10.1.1

C.  

R2(config)# interface Tunnel 1R2(config-if)# ip address 172.20.1.2 255.255.255.0R2(config-if)# ip mtu 1500R2(config-if)# ip tcp adjust-mss 1360R2(config-if)# tunnel source 192.168.20.1R2(config-if)# tunnel destination 10.10.1.1

D.  

R2(config)# interface Tunnel 1R2(config-if)# ip address 172.20.1.2 255.255.255.0R2(config-if)# ip mtu 1500R2(config-if)# ip tcp adjust-mss 1360R2(config-if)# tunnel source 10.10.2.2R2(config-if)# tunnel destination 10.10.1.1

Discussion 0
Questions 5

Refer to the exhibit.

An engineer must redistribute networks 192.168.10.0/24 and 192.168.20.0/24 into OSPF from EIGRP. where the metric must be added when traversing through multiple hops to start an external route of 20 The engineer notices that the external metric is fixed and does not add at each hop. Which configuration resolves the issue?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 6

Refer to the exhibit.

The network engineer configured the summarization of the RIP routes into the OSPF domain on R5 but

still sees four different 172.16.0.0/24 networks on R4. Which action resolves the issue?

Options:

A.  

R5(config)#router ospf 1R5(config-router)#no areaR5(config-router)#summary-address 172.16.0.0 255.255.252.0

B.  

R4(config)#router ospf 99R4(config-router)#network 172.16.0.0 0.255.255.255 area 56R4(config-router)#area 56 range 172.16.0.0 255,255.255.0

C.  

R4(config)#router ospf 1R4(config-router)#no areaR4(config-router)#summary-address 172.16.0.0 255.255.252.0

D.  

R5(config)#router ospf 99R5(config-router)#network 172.16.0.0 0.255.255.255 area 56R5(config-router)#area 56 range 172.16.0.0 255.255.255.0

Discussion 0
Questions 7

Refer to the exhibit.

An engineer configured SNMP communities on the Core_SW1, but the SNMP server cannot obtain information from Core_SW1. Which configuration resolves this issue?

Options:

A.  

snmp-server group NETVIEW v2c priv read NETVIEW access 20

B.  

access-list 20 permit 10.221.10.11

C.  

access-list 20 permit 10.221.10.12

D.  

snmp-server group NETADMIN v3 priv read NETVIEW write NETADMIN access 22

Discussion 0
Questions 8

Refer to the exhibit.

An engineer must block access to the console ports for all corporate remote Cisco devices based on the recent corporate security policy but the security team stilt can connect through the console port. Which configuration on the console port resolves the issue?

Options:

A.  

transport input telnet

B.  

login and password

C.  

no exec

D.  

exec 0.0

Discussion 0
Questions 9

Refer to the exhibit. The client server but the show command does not show the IPv6 DHCP bindings on the server. Which action resolves the issue?

Options:

A.  

Extend the DHCP lease time because R1 removed the IPv6 address earlier after the lease expired.

B.  

Configure H1 as the DHCP client that manually assigns the IPv6 address on interlace e0/0..

C.  

Use the 2001:DBB:BAD:C0DE::/64 prefix for the DHCP pool on R1.

D.  

Configure authorized DHCP servers to avoid IPv6 addresses from a rogue DHCP server.

Discussion 0
Questions 10

Refer to the exhibit. An engineer configured summarization for the R1 loopback addresses and failed. Which action permits the successful advertisement of the R1 loopback addresses?

Options:

A.  

Configure EIGRP 100 with a network statement for loopback 0 and configure and redistribute the static route for loopback 50.

B.  

Configure EIGRP 100 with a network statement for loopback 0 and redistribute the connected route for loopback 50.

C.  

Configure EIGRP 100 with a network statement for loopback 0 and remove the leak map for loopback 50.

D.  

Configure 100.1.1.1 permit statement in the prefix list LOPPBACK50 and redistribute the connected route for loopback 50.

Discussion 0
Questions 11

Refer to the exhibit A customer reported a failure and intermittent disconnection between two office buildings site X and site Y The network team finds that site X and site Y are exchanging email application traffic with the data center network Which configuration resolves the issue between site X and site Y?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 12

Refer to the exhibit. An administrator must harden a router, but the administrator failed to test the SSH access successfully to the router. Which action resolves the issue?

Options:

A.  

Configure SSH on the remote device to log m using SSH

B.  

SSH syntax must be ssh -I user ip to log in to the remote device

C.  

Configure enable secret to log in to the device

D.  

SSH must be allowed with the transport output ssh command

Discussion 0
Questions 13

Which IPv6 first hop security feature controls the traffic necessary for proper discovery of neighbor device operation and performance?

Options:

A.  

RA Throttling

B.  

Source or Destination Guard

C.  

ND Multicast Suppression

D.  

IPv6 Snooping

Discussion 0
Questions 14

Refer to the exhibit. R10 attempts to copy an image file from R11 using TFTP, and the operation is timing out. Which action resolves the issue?

Options:

A.  

Change R10 duplex to auto to resolve the duplex mismatch between routers R10 and R11.

B.  

R10 must be configured to belong to the same VRF TFTP.

C.  

R11 requires the TFTP server source-interface to be set to GigabitEthernetO/0.

D.  

R11 requires the TFTP server command for the image to be set to the VRF TFTP.

Discussion 0
Questions 15

Refer to the exhibit.

An engineer implemented CoPP to limit Telnet traffic to protect the router CPU. It was noticed that the Telnet traffic did not pass through CoPP Which configuration resolves the issue?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 16

An engineer is implementing a coordinated change with a server team. As part of the change, the engineer must configure interlace GigabitEthernet2 in an existing VRF "RED" then move theinterface to an existing VRF "BLUE" when the server team is ready. The engineer configured interface GigabitEthemet2 in VRF "RED"

Which configuration completes the change?

Options:

A.  

interface GigabitEthernet2no ip addressvrf forwarding BLUE

B.  

interface GigabitEthernet2no vrf forwarding REDvrf forwarding BLUEip address 10.0.0.0 255.255.255.254

C.  

interface GigabitEthernet2no vrf forwarding REDvrf forwarding BLUE

D.  

interface GigabitEthernet2no ip addressip address 10.0.0.0 255.255.255.254vrf forwarding BLUE

Discussion 0
Questions 17

The summary route is not shown in the RouterB routing table after this below configuration on Router_A

.

Which Router_A configuration resolves the issue by advertising the summary route to Router B?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 18

Refer to the exhibit. When an FTP client attempts to use passive FTP to connect to the FTP server, the file transfers fail Which action resolves the issue?

Options:

A.  

Configure active FTP traffic.

B.  

Modify FTP-SERVER access list to remove established at the end.

C.  

Modify traffic filter FTP-SERVER in to the outbound direction.

D.  

Configure to permit TCP ports higher than 1023.

Discussion 0
Questions 19

Refer to the exhibit.

An engineer must configure a LAN-to-LAN IPsec VPN between R1 and the remote router. Which IPsec

Phase 1 configuration must the engineer use for the local router?

Options:

A.  

crypto isakmp policy 5authentication pre-shareencryption 3deshash shagroup 2!crypto isakmp key cisco123 address 200.1.1.3

B.  

crypto isakmp policy 5authentication pre-shareencryption 3deshash md5group 2!crypto isakmp key cisco123 address 200.1.1.3

C.  

crypto isakmp policy 5authentication pre-shareencryption 3deshash md5group 2!crypto isakmp key cisco123 address 199.1.1.1

D.  

crypto isakmp policy 5authentication pre-shareencryption 3deshash md5group 2!crypto isakmp key cisco123! address 199.1.1.1

Discussion 0
Questions 20

Refer to the exhibit. Users on a call center report that they cannot browse the internet on Saturdays during the afternoon. Which configuration resolves the issue?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 21

Refer to the exhibit R2 has been receiving routes from R4 that originated outside AS300 A network engineer configured an AS-Path ACL to avoid adding these routes to the R2 BGP table but the routes are still present in the R2 routing table Which action resolves the issue?

Options:

A.  

Replace as-path access-list 1 with the ip as-path access-list 1 permit A300$ command

B.  

Replace as-path access-list 1 with the ip as-path access-list 1 permit ..300." command

C.  

Replace as-path access-list 1 with the ip as-path access-list 1 permit A300_ command.

D.  

Replace as-path access-list 1 with the ip as-path access-list 1 permit A300." command

Discussion 0
Questions 22

Refer to the exhibit. R1 uses SP1 as the primary path. A network engineer must force all SSH traffic generated from R1 toward SP2. Which configuration accomplishes the task?

A)

B)

C)

D)

Options:

A.  

Option

B.  

Option

C.  

Option

D.  

Option

Discussion 0
Questions 23

Refer to the Exhibit.

R1 and R2 use IGP protocol to route traffic between AS 100 and AS 200 despite being configured to use BGP. Which action resolves the issue and ensures the use of BGP?

Options:

A.  

Configure distance to 100 under the EIGRP process of R1 and R2.

B.  

Remove distance commands under BGP AS 100 and AS 200.

C.  

Remove distance commands under BGP AS 100.

D.  

Configure distance to 100 under the OSPF process of R1 and R2

Discussion 0
Questions 24

Refer to the exhibit.

The none area 0 routers in OSPF still receive more specific routes of 10.1.1.0.10.1.2.0.10.1.3.0 from area 0. Which action resolves the issue?

Options:

A.  

Configure route summarization on OSPF-enabled interfaces.

B.  

Summarize by using the summary-address 10.1.0.0 255.255.252.0 command.

C.  

Summarize by using the area range command on ABRs

D.  

Configure the summary-address 10.1.0.0 255.255.252.0 command under OSPF process.

Discussion 0
Questions 25

Refer to the exhibit. An engineer cannot determine the time of the problem on R1 due to a mismatch between the router local clock and legs. Which command synchronizes the time between new log entries and the local clock on R1?

Options:

A.  

service timestamps debug datetime msec show.timezone

B.  

service timestamps log datetime locatetime msec

C.  

service timestamps datebug datetime localtime msec

D.  

service timestamps log datetime msec show-timezone

Discussion 0
Questions 26

Refer to the exhibit. A network administrator configured NetFlow data, but the data is not visible at the NetFlow collector. Which configuration allows the router to send the records?

Options:

A.  

Configure the management interface in the global routing table to send the records.

B.  

Configure a different interface to send the records.

C.  

Configure the NetFlow collector to listen at export-protocol netflow-v5.

D.  

Rectify NetFlow collector reachability from the management interface.

Discussion 0
Questions 27

Refer to the exhibit After a misconfiguration by a junior engineer, the console access to router A is not working Which configuration allows access to router A?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 28

Refer to lhe exhibit. APC is configured to obtain an IP address automatically, but it receives an IP address only from the 169.254.0.0 subnet The DHCP server logs contained no DHCPDISCOVER message from the MAC address of the PC. Which action resolves the issue?

Options:

A.  

Configure an ip helper-address on the router to forward DHCP messages to the server.

B.  

Configure DHCP Snooping on the switch to forward DHCP messages to the server.

C.  

Configure a DHCP reservation on the server for the P

C.  

D.  

Configure a static IP address on the PC and exclude it from the DHCP pool.

Discussion 0
Questions 29

Refer to the exhibit.

The network administrator configured the Chicago router to mutually redistribute the LA and NewYork routes with OSPF routes to be summarized as a single route in EIGRP using the longest summary mask:

After the configuration, the New York router receives all the specific LA routes but the summary route. Which set of configurations resolves the issue on the Chicago router?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 30

A network is configured with IP connectivity, and the routing protocol between devices started having problems right after the maintenance window to implement network changes. Troubleshoot and resolve to a fully functional network to ensure that:

R4

R5

Options:

Discussion 0
Questions 31

:592

Refer to the exhibit An engineer investigates an IPv6 EIGRP neighbor adjacency issue that sees the neighbors flapping and issued a ping from R1 to its directly connected neighbor. The link between the switches is stable at Layer 2. and other connected devices are also functioning. Which action resolves the issue?

Options:

A.  

The switch between the two neighbors is not IPv6 compatible and must be replaced with an IPv6 compatible device.

B.  

Data is not reliably transmitted between the dynamically assigned link-local addresses of the routers and must be manually assigned.

C.  

Multicast packets are not reliably transmitted over the link, and the switch must be replaced.

D.  

The switch between the two neighbors is not configured for IPv6 multicast and must be configured for IPv6 multicast.

Discussion 0
Questions 32

:580

An engneer must configure encrypted packets for a single router OSPF neighoorsMp Which configuration meets this requirement?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 33

Refer to the exhibit.

The administrator noticed that the connection was flapping between the two ISPs instead of switching to ISP2 when the ISP1 failed. Which action resolves the issue?

Options:

A.  

Include a valid source-interface keyword in the icmp-echo statement.

B.  

Reference the track object 1 on the default route through ISP2 instead of ISP1.

C.  

Modify the static routes to refer both to the next hop and the outgoing intertace.

D.  

Modify the threshold to match the administrative distance of the ISP2 route.

Discussion 0
Questions 34

Refer to the exhibit.

With the partial configuration of a router-on-a-stick. Clients in VLAN 10 on Gi2 cannot obtain IP configuration from the central DHP server is reachable by a successful ping from the route. Which action resolves the issue?

Options:

A.  

Configure the ip/ip/dhcp pool f and network 192.168..210.0.255.255/0 commands.

B.  

Configure the ip header-address 192-168.265.3 command on the Gi2 10 subinterface.

C.  

Configure a valid IP address on the Gi2 interface so that DHCP requests can be forwarded.

D.  

Configure the Ip dhcp excluded-address 192.168.255.3 command on the Gi1.10 subinterface.

Discussion 0
Questions 35

Refer to the exhibit.

When the FastEthemet0/1 goes down, the route to 172.29.0 0/16 via 192.168.253 2 is not installed in the RIB. Which action resolves the issue?

Options:

A.  

Configure reported distance greater than the feasible distance

B.  

Configure feasible distance greater than the successor's feasible distance.

C.  

Configure reported distance greater than the successor's feasible distance.

D.  

Configure feasible distance greater than the reported distance

Discussion 0
Questions 36

What are two characteristics of a VRF instance? (Choose two)

Options:

A.  

It is defined by the VPN membership of a customer site attached to a P device.

B.  

Each VRF has a different set of routing and CEF tables.

C.  

AII VRFS share customers routing and CEF tables.

D.  

An interface must be associated to one VRF

E.  

A customer site can be associated to different VRFs.

Discussion 0
Questions 37

What statement about route distinguishes in an MPLS network is true?

Options:

A.  

Route distinguishes make a unique VPNv4 address across the MPLS network.

B.  

Route distinguishers allow multiple instances of a routing table to coexist within the edge router.

C.  

Route distinguishes are used for label bindings

D.  

Route distinguishes define which prefixes are imported and exported on the edge router

Discussion 0
Questions 38

Refer to the exhibit.

Which routes from OSPF process 5 are redistributed into EIGRP?

Options:

A.  

E1 and E2 subnets matching access list TO-OSPF

B.  

E1 and E2 subnets matching prefix list TO-OSPF

C.  

only E2 subnets matching access list TO-OSPF

D.  

only E1 subnets matching prefix listTO-OS1

Discussion 0
Questions 39

Refer to the exhibit. A network administrator configured NTP on a Cisco router to get synchronized time for system and logs from a unified time source The configuration did not work as desired Which service must be enabled to resolve the issue?

Options:

A.  

Enter the service timestamps log datetime localtime global command.

B.  

Enter the service timestamps log datetime synchronize global command.

C.  

Enter the service timestamps log datetime console global command.

D.  

Enter the service timestamps log datetime clock-period global command

Discussion 0
Questions 40

What is the output of the following command:

show ip vrf

Options:

A.  

Show's default RD values

B.  

Displays IP routing table information associated with a VRF

C.  

Show's routing protocol information associated with a VRF.

D.  

Displays the ARP table (static and dynamic entries) in the specified VRF

Discussion 0
Questions 41

Refer to the exhibit.

A network engineer for AS64512 must remove the inbound and outbound traffic from link A during maintenance without closing the BGP session so that there ............ a backup link over link A toward the ASN. Which BGP configuration on R1 accomplishes this goal?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 42

Refer to exhibit.

Routing protocols are mutually redistributed on R3 and R1. Users report intermittent connectivity to services hosted on the 10.1.1.0/24 prefix. Significant routing update changes are noticed on R3 when the show ip route profile

command is run. How must the services be stabilized?

Options:

A.  

The issue with using BGP must be resolved by using another protocol and redistributing it into EIGRP on R3

B.  

The routing loop must be fixed by reducing the admin distance of iBGP from 200 to 100 on R3

C.  

The routing loop must be fixed by reducing the admin distance of OSPF from 110 to 80 on R3

D.  

The issue with using iBGP must be fixed by running eBGP between R3 and R4

Discussion 0
Questions 43

Which protocol does MPLS use to support traffic engineering?

Options:

A.  

Tag Distribution Protocol (TDP)

B.  

Resource Reservation Protocol (RSVP)

C.  

Border Gateway Protocol (BGP)

D.  

Label Distribution Protocol (LDP)

Discussion 0
Questions 44

Which two protocols can cause TCP starvation? (Choose two)

Options:

A.  

TFTP

B.  

SNMP

C.  

SMTP

D.  

HTTPS

E.  

FTP

Discussion 0
Questions 45

Refer to the exhibit.

A company is evaluating multiple network management system tools. Trending graphs generated by SNMP data are returned by the NMS and appear to have multiple gaps. While troubleshooting the issue, an engineer noticed the relevant output. What solves the gaps in the graphs?

Options:

A.  

Remove the exceed-rate command in the class map.

B.  

Remove the class map NMS from being part of control plane policing.

C.  

Configure the CIR rate to a lower value that accommodates all the NMS tools

D.  

Separate the NMS class map in multiple class maps based on the specific protocols with appropriate CoPP actions

Discussion 0
Questions 46

Refer to the exhibit.

A junior engineer updated a branch router configuration. Immediately after the change, the engineer receives calls from the help desk that branch personnel cannot reach any network destinations. Which configuration restores service and continues to block 10.1.1.100/32?

Options:

A.  

route-map FILTER-IN deny 5

B.  

ip prefix-list 102 seq 15 permit 0.0.0.0/32 le 32

C.  

ip prefix-list 102 seq 5 permit 0.0.0.0/32 le 32

D.  

route-map FILTER-IN permit 20

Discussion 0
Questions 47

Which option is the best for protecting CPU utilization on a device?

Options:

A.  

fragmentation

B.  

COPP

C.  

ICMP redirects

D.  

ICMP unreachable messages

Discussion 0
Questions 48

Refer to the exhibit. an engineer is trying to get 192.168.32.100 forwarded through 10.1.1.1, but it was forwarded through 10.1.1.2. What action forwards the packets through 10.1.1.1?

Options:

A.  

Configure EIGRP to receive 192.168.32.0 route with lower admin distance.

B.  

A. Configure EIGRP to receive 192.168.32.0 route with longer prefix than /19.

C.  

A. Configure EIGRP to receive 192.168.32.0 route with lower metric.

D.  

A. Configure EIGRP to receive 192.168.32.0 route with equal or longer prefix than /24.

Discussion 0
Questions 49

Refer to the exhibit.

Which control plane policy limits BGP traffic that is destined to the CPU to 1 Mbps and

ignores BGP traffic that is sent at higher rate?

Options:

A.  

policy-map SHAPE_BGP

B.  

policy-map LIMIT_BGP

C.  

policy-map POLICE_BGP

D.  

policy-map COPP

Discussion 0
Questions 50

During the maintenance window an administrator accidentally deleted the Telnet-related

configuration that permits a Telnet connection from the inside network (Eth0/0) to the outside of the networking between Friday – Sunday night hours only. Which configuration resolves the issue?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 51

Which Cisco VPN technology can use multipoint tunnel, resulting in a single GRE tunnel interface on the hub, to support multiple connections from multiple spoke devices?

Options:

A.  

DMVPN

B.  

GETVPN

C.  

Cisco Easy VPN

D.  

FlexVPN

Discussion 0
Questions 52

Drag and drop the MPLS VPN device types from me left onto the definitions on the right.

Options:

Discussion 0
Questions 53

Which list defines the contents of an MPLS label?

Options:

A.  

20-bit label; 3-bit traffic class; 1-bit bottom stack; 8-bit TTL

B.  

32-bit label; 3-bit traffic class; 1-bit bottom stack; 8-bit TTL

C.  

20-bit label; 3-bit flow label; 1-bit bottom stack; 8-bit hop limit

D.  

32-bit label; 3-bit flow label; 1-bit bottom stack; 8-bit hop limit

Discussion 0
Questions 54

Refer to the exhibit.

Redistribution is enabled between the routing protocols, and nowPC2 PC3, and PC4 cannot reach PC1. What are the two solutions to fix the problem? (Choose two.)

Options:

A.  

Filter RIP routes back into RIP when redistributing into RIP in R2

B.  

Filter OSPF routes into RIP FROM EIGRP when redistributing into RIP in R2.

C.  

Filter all routes except RIP routes when redistributing into EIGRP in R2.

D.  

Filter RIP AND OSPF routes back into OSPF from EIGRP when redistributing into OSPF in R2

E.  

Filter all routes except EIGRP routes when redistributing into OSPF in R3.

Discussion 0
Questions 55

What is a limitation of IPv6 RA Guard?

Options:

A.  

It is not supported in hardware when TCAM is programmed

B.  

It does not offer protection in environments where IPv6 traffic is tunneled.

C.  

It cannot be configured on a switch port interface in the ingress direction

D.  

Packets that are dropped by IPv6 RA Guard cannot be spanned

Discussion 0
Questions 56

Refer to Exhibit.

Which statement about redistribution from BGP into OSPF process 10 is true?

Options:

A.  

Network 172.16.1.0/24 is not redistributed into OSPF.

B.  

Network 10.10 10.0/24 is not redistributed into OSPF

C.  

Network 172.16.1.0/24 is redistributed with administrative distance of 1.

D.  

Network 10.10.10.0/24 is redistributed with administrative distance of 20.

Discussion 0
Questions 57

Refer to the following output:

Router#show ip nhrp detail

10.1.1.2/8 via 10.2.1.2, Tunnel1 created 00:00:12, expire 01:59:47

TypE. dynamic, Flags: authoritative unique nat registered used

NBMA address: 10.12.1.2

What does the authoritative flag mean in regards to the NHRP information?

Options:

A.  

It was obtained directly from the next-hop server.

B.  

Data packets are process switches for this mapping entry.

C.  

NHRP mapping is for networks that are local to this router.

D.  

The mapping entry was created in response to an NHRP registration request.

E.  

The NHRP mapping entry cannot be overwritten.

Discussion 0
Questions 58

When provisioning a device in Cisco DNA Center, the engineer sees the error message “Cannot select the device. Not compatible with template”.

What is the reason for the error?

Options:

A.  

The template has an incorrect configuration.

B.  

The software version of the template is different from the software version of the device.

C.  

The changes to the template were not committed.

D.  

The tag that was used to filter the templates does not match the device tag.

Discussion 0
Questions 59

Refer to the exhibit.

An IP SLA was configured on router R1 that allows the default route to be modified in the event that Fa0/0 loses reachability with the router R3 Fa0/0 interface. The route has changed to flow through

router R2. Which debug command is used to troubleshoot this issue?

Options:

A.  

debug ip flow

B.  

debug ip sla error

C.  

debug ip routing

D.  

debug ip packet

Discussion 0
Questions 60

Which two statements about VRF-Lite configurations are true? (Choose two.)

Options:

A.  

They support the exchange of MPLS labels

B.  

Different customers can have overlapping IP addresses on different VPNs

C.  

They support a maximum of 512.000 routes

D.  

Each customer has its own dedicated TCAM resources

E.  

Each customer has its own private routing table.

F.  

They support IS-IS

Discussion 0
Questions 61

Refer to the exhibit.

Which interface configuration must be configured on the spoke A router to enable a dynamic DMVPN tunnel with the spoke B router?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 62

An engineer configured the wrong default gateway for the Cisco DNA Center enterprise interface during the install. Which command must the engineer run to correct the configuration?

Options:

A.  

sudo maglev-config update

B.  

sudo maglev install config update

C.  

sudo maglev reinstall

D.  

sudo update config install

Discussion 0
Questions 63

Refer to the exhibit.

Why is the remote NetFlow server failing to receive the NetFlow data?

Options:

A.  

The flow exporter is configured but is not used.

B.  

The flow monitor is applied in the wrong direction.

C.  

The flow monitor is applied to the wrong interface.

D.  

The destination of the flow exporter is not reachable.

Discussion 0
Questions 64

Which method changes the forwarding decision that a router makes without first changing the routing table or influencing the IP data plane?

Options:

A.  

nonbroadcast multiaccess

B.  

packet switching

C.  

policy-based routing

D.  

forwarding information base

Discussion 0
Questions 65

Which statement about IPv6 RA Guard is true?

Options:

A.  

It does not offer protection in environments where IPv6 traffic is tunneled.

B.  

It cannot be configured on a switch port interface in the ingress direction.

C.  

Packets that are dropped by IPv6 RA Guard cannot be spanned.

D.  

It is not supported in hardware when TCAM is programmed.

Discussion 0
Questions 66

Refer to the exhibit.

The administrator is trying to overwrite an existing file on the TFTP server that was previously uploaded by another router. However, the attempt to update the file fails. Which action resolves this issue?

Options:

A.  

Make the packages.conf file executable by all on the TFTP server

B.  

Make the packages.conf file writable by all on the TFTP server

C.  

Make sure to run the TFTP service on the TFTP server

D.  

Make the TFTP folder writable by all on the TFTP server

Discussion 0
Questions 67

Refer to the exhibit.

A prefix list is created to filter routes inbound to an EIGRP process except for network 10 prefixes After the prefix list is applied no network 10 prefixes are visible in the routing table from EIGRP. Which configuration resolves the issue?

Options:

A.  

ip prefix-list EIGRP seq 20 permit 10.0.0.0/8 ge 9.

B.  

ip prefix-list EIGRP seq 10 permit 0.0.0.0/0 le 32

C.  

ip prefix-list EIGRP seq 5 permit 10.0.0.0/8 ge 9 no ip prefix-list EIGRP seq 20 permit 10.0.0.0/8

D.  

ip prefix-list EIGRP seq 20 permit 10.0.0.0/8 ge 9 ip prefix-list EIGRP seq 10 permit 0.0.0.0/0 le 32

Discussion 0
Questions 68

Refer to the exhibit.

An engineer must establish a point-to-point GRE VPN between R1 and the remote site. Which configuration accomplishes the task for the remote site?

Options:

A.  

Interface Tunnel1tunnel source 199.1.1.1tunnel destination 200.1.1.3ip address 192.168.1.3 255.255.255.0

B.  

Interface Tunnel1tunnel source 200.1.1.3tunnel destination 199.1.1.1ip address 192.168.1.1.255.255.255.0

C.  

Interface Tunnel1tunnel source 200.1.1.3tunnel destination 199.1.1.1ip address 192.168.1.3.255.255.255.0

D.  

Interface Tunnellunnel source 199.1.1.1tunnel destination 200.1.1.3ip address 192.168.1.1.255.255.255.0

Discussion 0
Questions 69

Refer to Exhibit.

PC2 is directly connected to R1. A user at PC2 cannot Telnet to 2001:db8:a:b::10. The user can ping

2001:db8:a:b::10 and receive DHCP-related information from the DHCP server. Which action resolves

the issue?

Options:

A.  

Remove sequence 10 and put it back as sequence 25.

B.  

Remove sequence 20 and put it back as sequence 45.

C.  

Remove sequence 30 and put it back as sequence 5.

D.  

Remove sequence 40 and put it back as sequence 15.

Discussion 0
Questions 70

Refer to the exhibit.

Users in VLAN46 cannot get the IP from the DHCP server. Assume that all the parameters are configured properly in VLAN 10 and on the DHCP server Which command on interlace VLAN46 allows users to receive IP from the DHCP server?

Options:

A.  

ip dhcp-addreos 10.221.10.10

B.  

ip dhcp server 10.221.10.10

C.  

ip helper-addrets 10.221.10.10

D.  

ip dhcp relay information trust-all

Discussion 0
Questions 71

Refer to the exhibit.

A network administrator is troubleshooting OSPF adjacency issue by going through the console logs in the router, but due to an overwhelming log message stream it is impossible to capture the problem Which two commands reduce console log messages to relevant OSPF neighbor problem details so that the issue can be resolved? (Choose two)

Options:

A.  

debug condition interface

B.  

debug condition ip

C.  

debug condition ospf neighbor

D.  

debug condition session-id ADJCHG

E.  

debug condition all

Discussion 0
Questions 72

Refer to the exhibit An enterprise operations team must monitor all application server traffic in the data center The team finds that traffic coming from the hub site from R3 and R6 rs monitored successfully but traffic destined to the application server is not monitored Which action resolves the issue?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 73

Refer to the exhibit. Which configuration advertises more specific routes to R1 without sending a BGP summary route?

Options:

A.  

R1#configure terminal

R1 (config)#rouler BGP 100

R1 (conflg-router)#no auto-summary

B.  

R1#configure terminal

R1 (config)#router BGP 100

R1 (config-router)#auto-summary

C.  

R2#configure terminal

R2 (conflg)#router BGP 100

R2 (config-rouler)»no auto-summary

D.  

R2#configure terminal

R2 (config)#router BGP 100

R2 (config-router)#auto-summary

Discussion 0
Questions 74

Refer to the exhibit Which action resolves the issue?

Options:

A.  

Configure host IP address in access-list 16

B.  

Configure SNMPv3 on the router

C.  

Configure SNMP authentication on the router

D.  

Configure a valid SNMP community string

Discussion 0
Questions 75

Refer to the exhibit.

A network administrator notices these console messages from host 10.11.110.12 originating from interface E1/0. The administrator considers this an unauthorized attempt to access SNMP on R1. Which action prevents the attempts to reach R1 E1/0?

Options:

A.  

Configure IOS control plane protection using ACL 90 on interface E1/0

B.  

Configure IOS management plane protection using ACL 90 on interface E1/0

C.  

Create an inbound ACL on interface E1/0 to deny SNMP from host 10.11.110.12

D.  

Add a permit statement including the host 10.11.110.12 into ACL 90

Discussion 0
Questions 76

Refer to the exhibit.

An engineer must configure PBR on R1 to reach to 10.2.2.0/24 via R3 AS64513 as the primary path and a backup route through default route via R2 AS64513. All BGP routes are in the routing table of R1. but a static default route overrides BGP routes. Which PBR configuration achieves the objective?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 77

Refer to the exhibit.

A network engineer must establish communication between three different customer sites with these requirements:

Site-A: must be restricted to access to any users at Site-B or Site-C.

Site-B and Site-C must be able to communicate between sites and share routes using OSPF.

Which configuration meets the requirements?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 78

A network administrator is trying to access a branch router using TACACS+ username and password credentials, but the administrator cannot log in to the router because the WAN connectivity is down. The branch router has following AAA configuration:

Which command will resolve this problem when WAN connectivity is down?

Options:

A.  

aaa authentication login default group tacacs+ local

B.  

aaa authentication login default group tacacs+ enable

C.  

aaa authentication login default group tacacs+ console

D.  

aaa authentication login console group tacacs+ enable

Discussion 0
Questions 79

Refer to the exhibit.

A bank ATM site has difficulty connecting with the bank server. A network engineer troubleshoots the issue and finds that R4 has no active route to the bank ATM site. Which action resolves the issue?

Options:

A.  

Advertise 10.10.30.0/24 subnet in R1 EIGRP AS.

B.  

EIGRP peering between R3 and R4 to be fixed.

C.  

EIGRP peering between R1 and R2 to be fixed.

D.  

Advertise 10.10.30.0/24 subnet in R3 EIGRP AS.

Discussion 0
Questions 80

Refer to the exhibit Which command must be configured to make VRF CCNP work?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 81

What is a function of an end device configured with DHCPv6 guard?

Options:

A.  

If it is configured as a server, only prefix assignments are permitted.

B.  

If it is configured as a relay agent, only prefix assignments are permitted.

C.  

If it is configured as a client, messages are switched regardless of the assigned role.

D.  

If it is configured as a client, only DHCP requests are permitted.

Discussion 0
Questions 82

:586

While BGP internet routes are redistributed to a lower class of router via RIP. packets are being dropped and routes are failing to be distributed in RIP. Which action resolves the issue?

Options:

A.  

Use OSPF instead of RIP to accept all BGP routes.

B.  

Use the input-queue command to prevent the loss of packets.

C.  

Use WFQ in the output queue of the high-performance router.

D.  

Use RIP V2 to be able to use classless networks from BGP

Discussion 0
Questions 83

Refer to the exhibit. After recovering from a power failure. Ethernet0/1 stayed down while Ethernet0/0 returned to the up/up state The default route through ISP1 was not reinstated m the routing table until Ethernet0/1 also came up Which action resolves the issue?

Options:

A.  

Reference the track object 1 in both static default routes

B.  

Remove the references to the interface names from both static default routes

C.  

Configure the default route through ISP1 with a higher administrative distance than 2.

D.  

Add a static route to the 8 8.8 8/32 destination through the next hop 203.0.113.1

Discussion 0
Questions 84

Refer to the exhibit.

An engineer configures the router 10.1.100.10 for EIGRP autosummarization so that R1 should receive the summary route of 10.0.0.0/8. However, R1 receives more specific /24 routes.

Which action resolves this issue?

Options:

A.  

Router R1 should configure ip summary address eigrp (AS number) 10.0.0.0 255.0.0.0 for the R1 Fast Ethernet 0/0 connected interface.

B.  

Router R1 should configure ip route 10.0.0.0 255.0.0.0 null 0 for the routes that are received on R1.

C.  

Router 10.1.100.10 should configure ip route 10.0.0.0 255.0.0.0 null 0 for the routes that are summarized toward R1.

D.  

Router 10.1.100.10 should configure ip summary address eigrp (AS number) 10.0.0.0 255.0.0.0 for the R1 Fast Ethernet 0/0 connected interface.

Discussion 0
Questions 85

A network is configured with IP connectivity, and the routing protocol between devices started having problems right after the maintenance window to implement network changes. Troubleshoot and resolve to a fully functional network to ensure that:

R4

R5

Options:

Discussion 0
Questions 86

Refer to the exhibit. Which action limits the access to R2 from 192.168.12.1?

Options:

A.  

Swap sequence 10 with sequence 20 in access-list 100.

B.  

Modify sequence 20 to permit tcp host 192.168.12.1 eq 22 any to access-list 100

C.  

Swap sequence 20 with sequence 10 in access-list 100

D.  

Modify sequence 10 to deny tcp any eq 22 any to access-list 100.

Discussion 0
Questions 87

How do devices operate in MPLS L3VPN topology?

Options:

A.  

P and associated PE routers with IGP populate the VRF table in different VPNs.

B.  

CE routers connect to the provider network and perform LSP functionality

C.  

P routers provide connectivity between PE devices with MPLS switching.

D.  

P routers support PE to PE VPN tunnel without LSP functionality

Discussion 0
Questions 88

Refer to the exhibit. An engineer Is troubleshooting a routing loop on the network to reach the 172.16.3.0/16 from the OSPF domain. Which configuration on router R1 resolves the Issue?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 89

What is a MPLS PHP label operation?

Options:

A.  

Downstream node signals to remove the label.

B.  

It improves P router performance by not performing multiple label lookup.

C.  

It uses implicit-NULL for traffic congestion from source to destination forwarding

D.  

PE removes the outer label before sending to the P router.

Discussion 0
Questions 90

Refer to the exhibit. An engineer has successfully set up a floating static route from the BRANCH router to the HQ network using HQ_R1 as the primary default gateway When the g0/0 goes down on HQ_R1, the branch network cannot reach the HQ network 192.168.20.0/24. Which set of configurations resolves the issue?

Options:

A.  

HQ_R3(config)# ip sla responderHQ_R3(config)# ip sla responder icmp-echo 172.16.35.1

B.  

BRANCH(config)# ip sla 1BRANCH(config-ip-sla)# icmp-echo 192.168.100.2

C.  

HQ R3(config)# Ip sla responderHQ R3(config)# Ip sla responder Icmp-echo 172.16.35.5

D.  

BRANCH(config)# Ip sla 1BRANCH(config-ip-sta)# Icmp-echo 192.168.100.1

Discussion 0
Questions 91

Exhibit:

Which action resolves the authentication problem?

Options:

A.  

Configure the user name on the TACACS+ server

B.  

Configure the UDP port 1812 to be allowed on the TACACS+ server

C.  

Configure the TCP port 49 to be reachable by the router

D.  

Configure the same password between the TACACS+ server and router.

Discussion 0
Questions 92

Refer to the exhibit.

SanFrancisco and Boston routers are choosing slower links to reach each other despite the direct links being up Which configuration fixes the issue?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 93

An engineer configured a Cisco router to send reliable and encrypted notifications for any events to the management server. It was noticed that the notification messages are reliable but not encrypted. Which action resolves the issue?

Options:

A.  

Configure all devices for SNMPv3 informs with priv.

B.  

Configure all devices for SNMPv3 informs with auth.

C.  

Configure all devices for SNMPv3 traps with auth.

D.  

Configure all devices for SNMPv3 traps with priv.

Discussion 0
Questions 94

Refer to the exhibit.

A client is concerned that passwords are visible when running this show archive log config all.

Which router configuration is needed to resolve this issue?

Options:

A.  

MASS-RTR(config-archive-log-cfg)#password encryption aes

B.  

MASS-RTR(config)#aaa authentication arap

C.  

MASS-RTR(config)#service password-encryption

D.  

MASS-RTR(config-archive-log-cfg)#hidekeys

Discussion 0
Questions 95

Drag and drop the MPLS concepts from the left onto the descriptions on the right.

Options:

Discussion 0
Questions 96

Refer to the exhibit.

Which interface configuration must be configured on the HUB router to enable MVPN with mGRE mode?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 97

An engineer configured access list NON-CISCO in a policy to influence routes

What are the two effects of this route map configuration? (Choose two.)

Options:

A.  

Packets are not evaluated by sequence 10.

B.  

Packets are evaluated by sequence 10.

C.  

Packets are forwarded to the default gateway.

D.  

Packets are forwarded using normal route lookup.

E.  

Packets are dropped by the access list.

Discussion 0
Questions 98

Refer to the exhibit.

Why is user authentication being rejected?

Options:

A.  

The TACACS+ server expects “user”, but the NT client sends “domain/user”.

B.  

The TACACS+ server refuses the user because the user is set up for CHAP.

C.  

The TACACS+ server is down, and the user is in the local database.

D.  

The TACACS+ server is down, and the user is not in the local database.

Discussion 0
Questions 99

After some changes in the routing policy, it is noticed that the router in AS 45123 is being used as a transit AS router for several service provides. Which configuration ensures that the branch router in AS 45123 advertises only the local networks to all SP neighbors?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 100

An engineer is trying to copy an IOS file from one router to another router by using TFTP. Which two actions are needed to allow the file to copy? (Choose two.)

Options:

A.  

Copy the file to the destination router with the copy tftp: flash: command

B.  

Enable the TFTP server on the source router with the tftp-server flash: command

C.  

TFTP is not supported in recent IOS versions, so an alternative method must be used

D.  

Configure a user on the source router with the username tftp password tftp command

E.  

Configure the TFTP authentication on the source router with the tftp-server authentication local command

Discussion 0
Questions 101

What is the role of a route distinguisher via a VRF-Lite setup implementation?

Options:

A.  

It extends the IP address to identify which VFP instance it belongs to.

B.  

It manages the import and export of routes between two or more VRF instances

C.  

It enables multicast distribution for VRF-Lite setups to enhance EGP routing protocol capabilities

D.  

It enables multicast distribution for VRF-Lite setups to enhance IGP routing protocol capabilities

Discussion 0
Questions 102

Refer to the exhibit.

AAA server 10.1.1.1 is configured with the default authentication and accounting settings, but the switch cannot communicate with the server Which action resolves this issue?

Options:

A.  

Match the authentication port

B.  

Match the accounting port

C.  

Correct the timeout value.

D.  

Correct the shared secret.

Discussion 0
Questions 103

Refer to the exhibit.

An engineer is trying to connect to a device with SSH but cannot connect. The engineer connects by using the console and finds the displayed output when troubleshooting. Which command must be used in configuration mode to enable SSH on the device?

Options:

A.  

no ip ssh disable

B.  

ip ssh enable

C.  

ip ssh version 2

D.  

crypto key generate rsa

Discussion 0
Questions 104

Which statement about IPv6 ND inspection is true?

Options:

A.  

It learns and secures bindings for stateless autoconfiguration addresses in Layer 3 neighbor tables.

B.  

It learns and secures bindings for stateless autoconfiguration addresses in Layer 2 neighbor tables.

C.  

It learns and secures bindings for stateful autoconfiguration addresses in Layer 3 neighbor tables.

D.  

It learns and secures bindings for stateful autoconfiguration addresses in Layer 2 neighbor tables.

Discussion 0
Questions 105

Which two methods use IPsec to provide secure connectivity from the branch office to the headquarters office? (Choose two.)

Options:

A.  

DMVPN

B.  

MPLS VPN

C.  

Virtual Tunnel Interface (VTI)

D.  

SSL VPN

E.  

PPPoE

Discussion 0
Questions 106

Refer the exhibit.

Which action resolves intermittent connectivity observed with the SNMP trap

packets?

Options:

A.  

Decrease the committed burst Size of the mgmt class map

B.  

Increase the CIR of the mgmt class map

C.  

Add a new class map to match TCP traffic

D.  

Add one new entry in the ACL 120 to permit the UDP port 161

Discussion 0
Questions 107

Refer to the exhibit.

Which configuration configures a policy on R1 to forward any traffic that is sourced from

the 192.168.130.0/24 network to R2?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 108

Which command allows traffic to load-balance in an MPLS Layer 3 VPN configuration?

Options:

A.  

multi-paths eibgp 2

B.  

maximum-paths 2

C.  

Maximum-paths ibgp 2

D.  

multi-paths 2

Discussion 0
Questions 109

Refer to the exhibit.

Which statement about R1 is true?

Options:

A.  

OSPF redistributes RIP routes only if they have a tag of one.

B.  

RIP learned routes are distributed to OSPF with a tag value of one.

C.  

R1 adds one to the metric for RIP learned routes before redistributing to OSPF.

D.  

RIP routes are redistributed to OSPF without any changes.

Discussion 0
Questions 110

Which attribute eliminates LFAs that belong to protected paths in situations where links in a network are connected through a common fiber?

Options:

A.  

shared risk link group-disjoint

B.  

linecard-disjoint

C.  

lowest-repair-path-metric

D.  

interface-disjoint

Discussion 0
Questions 111

Users were moved from the local DHCP server to the remote corporate DHCP server. After the move,

none of the users were able to use the network.

Which two issues will prevent this setup from working properly? (Choose two)

Options:

A.  

Auto-QoS is blocking DHCP traffic.

B.  

The DHCP server IP address configuration is missing locally

C.  

802.1X is blocking DHCP traffic

D.  

The broadcast domain is too large for proper DHCP propagation

E.  

The route to the new DHCP server is missing

Discussion 0
Questions 112

Which command is used to check IP SLA when an interface is suspected to receive lots of traffic with options?

Options:

A.  

show track

B.  

show threshold

C.  

show timer

D.  

show delay

Discussion 0
Questions 113

An engineer configured a company’s multiple area OSPF head office router and Site A cisco

routers with VRF lite. Each site router is connected to a PE router of an MPLS backbone.

After finishing both site router configurations, none of the LSA 3,4 5, and 7 are installed at Site A router. Which configuration resolves this issue?

Options:

A.  

configure capability vrf-lite on Site A and its connected PE router under router ospf 1 vrf abc

B.  

configure capability vrf-lite on Head Office and its connected PE router under router ospf 1 vrf abc

C.  

configure capability vrf-lite on both PE routers connected to Head Office and Site A routers under routtr ospf 1 vrf abc

D.  

configure capability vrf-lite on Head Office and Site A routers under router ospf 1 vrf abc

Discussion 0
Questions 114

Which transport layer protocol is used to form LDP sessions?

Options:

A.  

UDP

B.  

SCTP

C.  

TCP

D.  

RDP

Discussion 0
Questions 115

Refer to the exhibit.

An administrator that is connected to the console does not see debug messages when

remote users log in. Which action ensures that debug messages are displayed for remote logins?

Options:

A.  

Enter the transport input ssh configuration command.

B.  

Enter the terminal monitor exec command.

C.  

Enter the logging console debugging configuration command.

D.  

Enter the aaa new-model configuration command.

Discussion 0
Questions 116

Refer to the exhibit.

Network operations cannot read or write any configuration on the device with this configuration from the operations subnet. Which two configurations fix the issue? (Choose two.)

Options:

A.  

Configure SNMP rw permission in addition to community ciscotest.

B.  

Modify access list 1 and allow operations subnet in the access list.

C.  

Modify access list 1 and allow SNMP in the access list.

D.  

Configure SNMP rw permission in addition to version 1.

E.  

Configure SNMP rw permission in addition to community ciscotest 1.

Discussion 0
Questions 117

Refer to the exhibit.

In which circumstance does the BGP neighbor remain in the idle condition?

Options:

A.  

if prefixes are not received from the BGP peer

B.  

if prefixes reach the maximum limit

C.  

if a prefix list is applied on the inbound direction

D.  

if prefixes exceed the maximum limit

Discussion 0
Questions 118

Refer to the exhibit.

An engineer is trying to generate a summary route in OSPF for network 10.0.0.0/8, but the

summary route does not show up in the routing table. Why is the summary route missing?

Options:

A.  

The summary-address command is used only for summarizing prefixes between areas.

B.  

The summary route is visible only in the OSPF database, not in the routing table.

C.  

There is no route for a subnet inside 10.0.0.0/8, so the summary route is not generated.

D.  

The summary route is not visible on this router, but it is visible on other OSPF routers in the same area.

Discussion 0
Questions 119

Drag and drop the SNMP attributes in Cisco IOS devices from the left onto the correct SNMPv2c or SNMPV3 categories on the right.

Options:

Discussion 0
Questions 120

Drag and Drop the IPv6 First-Hop Security features from the left onto the definitions on the right.

Options:

Discussion 0
Questions 121

R2 has a locally originated prefix 192.168.130.0/24 and has these configurations:

What is the result when the route-map OUT command is applied toward an eBGP neighbor R1 (1.1.1.1) by using the neighbor 1.1.1.1 route-map OUT out command?

Options:

A.  

R1 sees 192.168.130.0/24 as two AS hops away instead of one AS hop away.

B.  

R1 does not accept any routes other than 192.168.130.0/24

C.  

R1 does not forward traffic that is destined for 192.168.30.0/24

D.  

Network 192.168.130.0/24 is not allowed in the R1 table

Discussion 0
Questions 122

Refer to the exhibit.

After redistribution is enabled between the routing protocols; PC2, PC3, and PC4 cannot reach PC1. Which action can the engineer take to solve the issue so that all the PCs are reachable?

Options:

A.  

Set the administrative distance 100 under the RIP process on R2.

B.  

Filter the prefix 10.1.1.0/24 when redistributed from OSPF to EIGRP.

C.  

Filter the prefix 10.1.1.0/24 when redistributed from RIP to EIGRP.

D.  

Redistribute the directly connected interfaces on R2.

Discussion 0
Questions 123

What is an advantage of using BFD?

Options:

A.  

It detects local link failure at layer 1 and updates routing table.

B.  

It detects local link failure at layer 2 and updates routing protocols.

C.  

It has sub-second failure detection for layer 1 and layer 3 problems.

D.  

It has sub-second failure detection for layer 1 and layer 2 problems.

Discussion 0
Questions 124

A network engineer is investigating a flapping (up/down) interface issue on a core switch that is synchronized to an NTP server. Log output currently does not show the time of the flap. Which command allows the logging on the switch to show the time of the flap according to the clock on the device?

Options:

A.  

service timestamps log uptime

B.  

clock summer-time mst recurring 2 Sunday mar 2:00 1 Sunday nov 2:00

C.  

service timestamps log datetime localtime show-timezone

D.  

clock calendar-valid

Discussion 0
Questions 125

Drag and drop the MPLS VPN device types from the left onto the definitions on the right.

Options:

Discussion 0
Questions 126

Refer to the exhibit.

The R1 and R2 configurations are:

The neighbor is not coming up. Which two sets of configurations bring the neighbors up? (Choose two.)

Options:

A.  

R2ip route 10.1.1.1 255.255.255.255 192.168.1.1!router bgp 200neighbor 10.1.1.1 tti-security hops 1neighbor 10.1.1.1 update-source loopback 0

B.  

R2ip route 10.1.1.1 255.255.255.255 192.168.1.1!router bgp 200neighbor 10.1.1.1 disable-connected-checkneighbor 10.1.1.1 update-source loopback 0

C.  

R2ip route 10.1.1.2 255.255.255.255 192.168.1.2!router bgp 100neighbor 10.1.1.2 ttl-security hops 1neighbor 10.1.1.2 update-source loopback 0

D.  

R1ip route 10.1.1.2 255.255.255.255 192.168.1.2!router bgp 100neighbor 10.1.1.1 ttl-security hops 1neighbor 10.1.1.2 update-source loopback 0

E.  

R1ip route 10.1.1.2 255.255.255.255 192.168.1.2!router bgp 100neighbor 10.1.1.2 disable-connected-checkneighbor 10.1.1.2 update-source Loopback0

Discussion 0
Questions 127

Which configuration feature should be used to block rogue router advertisements instead of using the IPv6 Router Advertisement Guard feature?

Options:

A.  

VACL blocking broadcast frames from nonauthorized hosts

B.  

PVLANs with promiscuous ports associated to route advertisements and isolated ports for nodes

C.  

PVLANs with community ports associated to route advertisements and isolated ports for nodes

D.  

IPv4 ACL blocking route advertisements from nonauthorized hosts

Discussion 0
Questions 128

A customer reports to the support desk that they cannot print from their PC to the local printer id:401987778. Which tool must be used to diagnose the issue using Cisco DNA Center Assurance?

Options:

A.  

application trace

B.  

path trace

C.  

ACL trace

D.  

device trace

Discussion 0
Questions 129

Refer to the exhibit.

The administrator successfully logs into R1 but cannot access privileged mode commands. What should be configured to resolve the issue?

Options:

A.  

aaa authorization reverse-access

B.  

secret cisco123! at the end of the username command instead of password cisco123!

C.  

matching password on vty lines as cisco123!

D.  

enable secret or enable password commands to enter into privileged mode

Discussion 0
Questions 130

Refer to the exhibit. A network administrator configured mutual redistribution on R1 and R2 routers, which caused instability in the network. Which action resolves the issue?

Options:

A.  

Set a tag in the route map when redistributing EIGRP into OSPF on R1. and match the same tag on R2 to deny when redistributing OSPF into EIGRP.

B.  

Set a tag in the route map when redistributing EIGRP into OSPF on R1. and match the same tag on R2 to allow when redistributing OSPF into EIGRP.

C.  

Advertise summary routes of EIGRP to OSPF and deny specific EIGRP routes when redistributing into OSPF.

D.  

Apply a prefix list of EIGRP network routes in OSPF domain on R1 to propagate back into the EIGRP routing domain.

Discussion 0
Questions 131

Refer to the exhibit.

A network administrator logs into the router using TACACS+ username and password credentials, but the administrator cannot run any privileged commands Which action resolves the issue?

Options:

A.  

Configure TACACS+ synchronization with the Active Directory admin group

B.  

Configure the username from a local database

C.  

Configure full access for the username from TACACS+ server

D.  

Configure an authorized IP address for this user to access this router

Discussion 0
Questions 132

Refer to the exhibit.

An IPv6 network was newly deployed in the environment and the help desk reports that R3 cannot SSH to the R2s Loopback interface. Which action resolves the issue?

Options:

A.  

Modify line 10 of the access list to permit instead of deny.

B.  

Remove line 60 from the access list.

C.  

Modify line 30 of the access list to permit instead of deny.

D.  

Remove line 70 from the access list.

Discussion 0
Questions 133

Which IGPs are supported by the MPLS LDP autoconfiguration feature?

Options:

A.  

RIPv2 and OSPF

B.  

OSPF and EIGRP

C.  

OSPF and ISIS

D.  

ISIS and RIPv2

Discussion 0
Questions 134

Refer to Exhibit.

The network administrator configured the branch router for IPv6 on the E0/0 interface. The neighboring router is fully configured to meet requirements, but the neighbor relationship is not coming up. Which action fixes the problem on the branch router to bring the IPv6 neighbors up?

Options:

A.  

Enable the IPv4 address family under the router ospfv3 4 process by using the address-family ipv4 unicast command

B.  

Disable IPv6 on the E0/0 interface using the no ipv6 enable command

C.  

Enable the IPv4 address family under the E0/0 interface by using the address-family ipv4 unicast command

D.  

Disable OSPF for IPv4 using the no ospfv3 4 area 0 ipv4 command under the E0/0 interface

Discussion 0
Questions 135

Refer to Exhibit.

A network administrator enables DHCP snooping on the Cisco Catalyst 3750-X switch and configures the uplink port (Port-channel2) as a trusted port. Clients are not receiving an IP address, but when DHCP snooping is disabled, clients start receiving IP addresses. Which global command resolves the issue?

Options:

A.  

No ip dhcp snooping information option

B.  

ip dhcp snooping

C.  

ip dhcp relay information trust portchannel2

D.  

ip dhcp snooping trust

Discussion 0
Questions 136

Which Ipv6 first-hop security feature helps to minimize denial of service attacks?

Options:

A.  

IPv6 Router Advertisement Guard

B.  

IPv6 Destination Guard

C.  

DHCPv6 Guard

D.  

IPv6 MAC address filtering

Discussion 0
Questions 137

Refer to the exhibit.

A network administrator is using the DNA Assurance Dashboard panel to troubleshoot an OSPF adjacency that failed between Edge_NYC interface GigabitEthernet1/3 with Neighbor Edge_SNJ. The administrator observes that the neighborship is stuck in exstart state. How does the administrator fix this issue?

Options:

A.  

Configure to match the OSPF interface speed and duplex settings on both routers.

B.  

Configure to match the OSPF interface MTU settings on both routers.

C.  

Configure to match the OSPF interface unique IP address and subnet mask on both routers.

D.  

Configure to match the OSPF interface network types on both routers.

Discussion 0
Questions 138

Refer to the exhibit.

The network administrator can see the DHCP discovery packet in R1. but R2 is not replying to the DHCP request. The R1 related interface is configured with the DHCP helper address. If the PC is directly connected to the FaO/1 interface on R2, the DHCP server assigns as IP address from the DHCP pool to the PC. Which two commands resolve this issue? (Choose two.)

Options:

A.  

service dhcp-relay command on R1

B.  

ip dhcp option 82 command on R2

C.  

service dhcp command on R1

D.  

ip dhcp relay information enable command on R1

E.  

ip dhcp relay information trust-all command on R2

Discussion 0
Questions 139

Refer to the exhibit.

The OSPF routing protocol is redistributed into the BGP routing protocol, but not all the OSPF routes are distributed into BGP Which action resolves the issue?

Options:

A.  

Include the word external in the redistribute command

B.  

Use a route-map command to redistribute OSPF external routes defined in an access list

C.  

Include the word internal external in the redistribute command

D.  

Use a route-map command to redistribute OSPF external routes defined in a prefix list.

Discussion 0
Questions 140

Refer to the exhibit. R1 and R2 cannot establish an EIGRP adjacency. Which action establishes EIGRP adjacency?

Options:

A.  

Remove the current autonomous system number on one of the routers and change to a different value.

B.  

Remove the passive-interface command from the R2 configuration so that it matches the R1 configuration.

C.  

Add the no auto-summary command to the R2 configuration so that it matches the R1 configuration.

D.  

Add the passive-interface command to the R1 configuration so that it matches the R2 configuration.

Discussion 0
Questions 141

An engineer must configure a Cisco router to initiate secure connections from the router to other devices in the network but kept failing. Which two actions resolve the issue? (Choose two.)

Options:

A.  

Configure a source port for the SSH connection to initiate

B.  

Configure a TACACS+ server and enable it

C.  

Configure transport input ssh command on the console

D.  

Configure a domain name

E.  

Configure a crypto key to be generated

Discussion 0
Questions 142

Refer to the exhibit.

Which two actions should be taken to access the server? (Choose two.)

Options:

A.  

Modify the access list to add a second line of permit ip any

B.  

Modify the access list to deny the route to 192.168.2.2.

C.  

Modify distribute list seq 10 to permit the route to 192.168.2.2.

D.  

Add a sequence 20 in the route map to permit access list 1.

E.  

Add a floating static route to reach to 192.168.2.2 with administrative distance higher than OSPF

Discussion 0
Questions 143

Refer to the exhibit.

R1 is being monitored using SNMP and monitoring devices are getting only partial information. What action should be taken to resolve this issue?

Options:

A.  

Modify the CoPP policy to increase the configured exceeded limit for SNMP.

B.  

Modify the access list to include snmptrap.

C.  

Modify the CoPP policy to increase the configured CIR limit for SNMP.

D.  

Modify the access list to add a second line to allow udp any any eq snmp

Discussion 0
Questions 144

Refer to the exhibit.

While troubleshooting an EIGRP neighbor adjacency problem, the network engineer notices that the interface connected to the neighboring router is not participating in the EIGRP process. Which action resolves the issues?

Options:

A.  

Configure the network command to network 172.16.0.1 0.0.0.0

B.  

Configure the network command under EIGRP address family vrf CLIENT1

C.  

Configure EIGRP metrics on interface FastEthernet0/3

D.  

Configure the network command under EIGRP address family ipv4

Discussion 0
Questions 145

Which two components are needed for a service provider to utilize the LVPN MPLS application? (Choose two.)

Options:

A.  

The P routers must be configured for MP-iBGP toward the PE routers

B.  

The P routers must be configured with RSVP.

C.  

The PE routers must be configured for MP-iBGP with other PE routers

D.  

The PE routers must be configured for MP-eBGP to connect to CEs

E.  

The P and PE routers must be configured with LDP or RSVP

Discussion 0
Questions 146

Refer to the exhibit. The Los Angeles and New York routers are receiving routes from Chicago but not from each other. Which configuration fixes the issue?

Options:

A.  

Interface Tunnel1no ip split-horizon eigrp 111

B.  

Interface Tunnel1Ip next-hop-self elgrp 111

C.  

Interface Tunnel1tunnel mode Ipsec Ipv4

D.  

Interface Tunnel1tunnel protection ipsec profile IPSec-PROFILE

Discussion 0
Questions 147

Refer to the exhibit.

A company with autonomous system number AS65401 has obtained IP address block 209.165.200.224/27 fro, ARIN. The company needed more IP addresses and was assigned block209.165.202.128/27 from ISP2. An engineer is ISP1 reports they are receiving ISP2 routes from AS65401. Which configuration onR1 resolves the issue?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 148

Refer to the exhibit.

R1 is connected with R2 via GigabitEthernet0/0, and R2 cannot ping R1. What action will fix the issue?

Options:

A.  

Fix route dampening configured on the router.

B.  

Replace the SFP module because it is not supported.

C.  

Fix IP Event Dampening configured on the interface.

D.  

Correct the IP SLA probe that failed.

Discussion 0
Questions 149

In which two ways does the IPv6 First-Hop Security Binding Table operate? (Choose two.)

Options:

A.  

by IPv6 routing protocols to securely build neighborships without the need of authentication

B.  

by the recovery mechanism to recover the binding table in the event of a device reboot

C.  

by IPv6 HSRP to make sure neighbors are authenticated before being used as gateways

D.  

by various IPv6 guard features to validate the data link layer address

E.  

by storing hashed keys for IPsec tunnels for the built-in IPsec features

Discussion 0
Questions 150

While troubleshooting connectivity issues to a router, these details are noticed:

Standard pings to all router interfaces, including loopbacks, are successful.

Data traffic is unaffected.

SNMP connectivity is intermittent.

SSH is either slow or disconnects frequently.

Which command must be configured first to troubleshoot this issue?

Options:

A.  

show policy-map control-plane

B.  

show policy-map

C.  

show interface | inc drop

D.  

show ip route

Discussion 0
Questions 151

Which label operations are performed by a label edge router?

Options:

A.  

SWAP and POP

B.  

SWAP and PUSH

C.  

PUSH and PHP

D.  

PUSH and POP

Discussion 0
Questions 152

Refer to the exhibit.

Users in the branch network of 2001:db8:0:4::/64 report that they cannot access the Internet. Which command is issued in IPv6 router EIGRP 100 configuration mode to solve this issue?

Options:

A.  

Issue the eigrp stub command on R1

B.  

Issue the no neighbor stub command on R2.

C.  

Issue the eigrp command on R2.

D.  

Issue the no eigrp stub command on R1.

Discussion 0
Questions 153

Refer to the exhibit.

The network administrator configured VRF lite for customer A. The technician at the remote site misconfigured VRF on the router. Which configuration will resolve connectivity for both sites of customer_a?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 154

Refer to the exhibit.

R2 is a route reflector, and R1 and R3 are route reflector clients. The route reflector learns the route to 172.16.25.0/24 from R1, but it does not advertise to R3. What is the reason the route is not advertised?

Options:

A.  

R2 does not have a route to the next hop, so R2 does not advertise the prefix to other clients.

B.  

Route reflector setup requires full IBGP mesh between the routers.

C.  

In route reflector setup, only classful prefixes are advertised to other clients.

D.  

In route reflector setups, prefixes are not advertised from one client to another.

Discussion 0
Questions 155

Which component of MPLS VPNs is used to extend the IP address so that an engineer is able to

identify to which VPN it belongs?

Options:

A.  

VPNv4 address family

B.  

RD

C.  

RT

D.  

LDP

Discussion 0
Questions 156

Which protocol does VRF-Lite support?

Options:

A.  

IS-IS

B.  

ODR

C.  

EIGRP

D.  

IGRP

Discussion 0
Questions 157

Refer to the exhibit.

What is the result of applying this configuration?

Options:

A.  

The router can form BGP neighborships with any other device.

B.  

The router cannot form BGP neighborships with any other device.

C.  

The router cannot form BGP neighborships with any device that is matched by the access list named “BGP”.

D.  

The router can form BGP neighborships with any device that is matched by the access list named “BGP”.

Discussion 0
Questions 158

Drag and drop the DHCP messages from the left onto the correct uses on the right.

Options:

Discussion 0
Questions 159

Refer to the exhibit Which action ensures that 10 10 10 0/24 reaches 10 10 20 0/24 through the direct link between R1 and R2?

Options:

A.  

Configure R1 and R2 LAN links as nonpassive.

B.  

Configure R1 and R2 links under area 1

C.  

Configure OSPF link cost to 1 between R1 and R2

D.  

Configure OSPF path cost to 3 between R1 and R2

Discussion 0
Questions 160

Exhibit:

Bangkok is using ECMP to reach to the 192.168.5.0/24 network. The administrator must configure Bangkok in such a way that Telnet traffic from 192.168.3.0/24 and192.168.4.0/24 networks uses the HongKong router as the preferred router. Which set of configurations accomplishes this task?

Options:

A.  

access-list 101 permit tcp 192.168.3.0 0.0.0.255 192.168.5.0 0.0.0.255access-list 101 permit tcp 192.168.4.0 0.0.0.255 192.168.5.0 0.0.0.255!route-map PBR1 permit 10match ip address 101set ip next-hop 172.18.1.2interface Ethernet0/3ip policy route-map PBR1

B.  

access-list 101 permit tcp 192.168.3.0 0.0.0.255 192.168.5.0 0.0.0.255 eq 23access-list 101 permit tcp 192.168.4.0 0.0.0.255 192.168.5.0 0.0.0.255 eq 23!route-map PBR1 permit 10match ip address 101set ip next-hop 172.18.1.2interface Ethernet0/1ip policy route-map PBR1

C.  

access-list 101 permit tcp 192.168.3.0 0.0.0.255 192.168.5.0 0.0.0.255 eq 23access-list 101 permit tcp 192.168.4.0 0.0.0.255 192.168.5.0 0.0.0.255 eq 23!route-map PBR1 permit 10match ip address 101set ip next-hop 172.18.1.2!interface Ethernet0/3ip policy route-map PBR1

D.  

access-list 101 permit tcp 192.168.3.0 0.0.0.255 192.168.5.0 0.0.0.255access-list 101 permit tcp 192.168.4.0 0.0.0.255 192.168.5.0 0.0.0.255!route-map PBR1 permit 10match ip address 101set ip next-hop 172.18.1.2!interface Ethernet0/1ip policy route-map PBR1

Discussion 0
Questions 161

When determining if a system is capable of support, what is the minimum time spacing required for a BFD control packet to receive once a control packet is arrived?

Options:

A.  

Desired Min TX Interval

B.  

Detect Mult

C.  

Required Min RX Interval

D.  

Required Min Echo RX Interval

Discussion 0
Questions 162

Refer to the exhibit.

Troubleshoot and ensure that branch B only ever uses the MPLS B network to reach HQ. Which action achieves this requirement?

Options:

A.  

Introduce an AS path filter on branch A routers so that only local prefixes are advertised into BGP

B.  

increase the local preference for all HQ prefixes received at branch B from the MPLS B network to be higher than the local preferences used on the MPLS A network

C.  

Introduce AS path prepending on the branch A MPLS B network connection so that any HQ advertisements from branch A toward the MPLS B network are prepended three times

D.  

Modify the weight of all HQ prefixes received at branch B from the MPLS B network to be higher than the weights used on the MPLS A network

Discussion 0
Questions 163

A DMVPN single hub topology is using IPsec + mGRE with OSPF. What should be configured on the hub to ensure it will be the designated router?

Options:

A.  

tunnel interface of the hub with ip nhrp ospf dr

B.  

OSPF priority to 0

C.  

route map to set the metrics of learned routes to 110

D.  

OSPF priority greater than 1

Discussion 0
Questions 164

Refer to Exhibit.

Which two configurations allow clients to get dynamic ip addresses assigned?

Options:

A.  

Configure access-list 100 permit udp any any eq 61 as the first line

B.  

Configure access-list 100 permit udp any any eq 86 as the first line

C.  

Configure access-list 100 permit udp any any eq 68 as the first line

D.  

Configure access-list 100 permit udp any any eq 69 as the first line

E.  

Configure access-list 100 permit udp any any eq 67 as the first line

Discussion 0
Questions 165

Refer to the exhibit. A network administrator redistributed the default static route into OSPF toward all internal routers to reach to Internet. Which set of commands restores reachability to the Internet by internal routers?

Options:

A.  

router ospf 1default-information originate

B.  

router ospf 1network 0.0.0.0 0.0.0.0 area 0

C.  

router ospf 1redistribute connected 0.0.0.0

D.  

router ospf 1redistribute static subnets

Discussion 0
Questions 166

Refer to Exhibit.

Traffic from the branch network should route through HQ R1 unless the path is unavailable. An engineer tests this functionality by shutting down interface on the BRANCH router toward HQ_R1 router but 192.168.20.0/24 is no longer reachable from the branch router. Which set of configurations resolves the issue?

Options:

A.  

HQ_R1(config)# ip sla responderHQ_R1(config)# ip sla responder icmp-echo 172.16.35.2

B.  

BRANCH(config)# ip sla 1BRANCH(config-ip-sla)# icmp-echo 172.16.35.1

C.  

HQ_R2(config)# ip sla responderHQ_R2(config)# ip sla responder icmp-echo 172.16.35.5

D.  

BRANCH(config)# ip sla 1BRANCH(config-ip-sla)# icmp-echo 172.16.35.2

Discussion 0
Questions 167

Refer to the exhibit.

The Math and Science departments connect through the corporate. IT router but users in the Math department must not be able to reach the Science department and vice versa Which configuration accomplishes this task?

Options:

A.  

vrf definition Science!interface E 0/2ip address 192.168.1.1 255.255.255.0no shut!interface E 0/3ip address 192.168.2.1 255.255.255.0no shut

B.  

vrf definition Scienceaddress-family ipv4!interface E 0/2ip address 192.168.1.1 255.255.255.0vrf forwarding Scienceno shut!interface E 0/3ip address 192.168.2.1 255.255.255.0vrf forwarding Scienceno shut

C.  

vrf definition Scienceaddress-family ipv4!interface E 0/2ip address 192.168.1.1 255.255.255.0no shut!interface E 0/3ip address 192.168.2.1 255.255.255.0no shut

D.  

vrf definition Scienceaddress-family ipv4!interface E 0/2vrf forwarding Scienceip address 192.168.1.1 255.255.255.0no shut!interface E 0/3vrf forwarding Scienceip address 192.168.2.1

Discussion 0
Questions 168

Clients on ALS2 receive IPv4 and IPv6 addresses but clients on ALS1 receive only IPv4 addresses and not IPv6 addresses. Which action on DSW1 allows clients on ALS1 to receive IPv6 addresses?

Options:

A.  

Configure DSW1(config-if)#ipv6 helper address 2002:404:404::404:404

B.  

Configure DSW1(dhcp-config)#default-router 2002:A04:A01::A04:A01

C.  

Configure DSW1(config)#ipv6 route 2002:404:404:404:404/128 FastEthernet1/0

D.  

Configure DSW1(config-if)#ipv6 dhcp relay destination 2002:404:404::404:404 GigabitEthernet1/2

E.  

Option A

F.  

Option B

G.  

Option C

Discussion 0
Questions 169

Refer to the exhibit. The network administrator has configured the Customer Edge router (AS 64511) to send only summarized routes toward ISP-1 (AS 100) and ISP-2 (AS 200).

router bgp 64511

network 172.16.20.0 mask 255.255.255.0

network 172.16.21.0 mask 255.255.255.0

network 172.16.22.0 mask 255.255.255.0

network 172.16.23.0 mask 255.255.255.0

aggregate-address 172.16.20.0 255.255.252.0

After this configuration. ISP-1 and ISP-2 continue to receive the specific routes and the summary route. Which configuration resolves the issue?

Options:

A.  

router bgp 64511aggregate-address 172.16.20.0 255.255.252.0 summary-only

B.  

router bgp 64511neighbor 192.168.100.1 summary-onlyneighbor 192.168.200.2 summary-only

C.  

interface E 0/0ip bgp suppress-map BLOCK_SPECIFIC!interface E 0/1ip bgp suppress-map BLOCK_SPECIFIC!ip prefix-list PL_BLOCK_SPECIFIC permit 172.16.20.0/22 ge 24!route-map BLOCK_SPECIFIC permit 10match ip address prefix-list PL_BLOCK_SPECIFIC

D.  

ip prefix-list PL_BLOCK_SPECIFIC deny 172.16.20.0/22 ge 22ip prefix-list PL BLOCK SPECIFIC permit 172.16.20.0/22!route-map BLOCK_SPECIFIC permit 10match ip address prefix-list PL_BLOCK_SPECIFIC!router bgp 64511aggregate-address 172.16.20.0 255 255.252.0 suppress-map BLOCKSPECIFIC

Discussion 0
Questions 170

Refer to the exhibit.

A network is under a cyberattack. A network engineer connected to R1 by SSH and enabled the terminal monitor via SSH session to find the source and destination of the attack. The session was flooded with messages, which made it impossible for the engineer to troubleshoot the issue. Which command resolves this issue on R1?

Options:

A.  

no terminal monitor

B.  

(config)#terminal no monitor

C.  

#terminal no monitor

D.  

(config)#no terminal monitor

Discussion 0
Questions 171

Refer to the exhibit. The administrator configured route advertisement to a remote low resources router to use only the default route to reach any network but failed. Which action resolves this issue?

Options:

A.  

Change the direction of the distribute-list command from out to in.

B.  

Remove the line with the sequence number 5 from the prefix list.

C.  

Remove the prefix keyword from the distribute-list command.

D.  

Remove the line with the sequence number 10 from the prefix list.

Discussion 0
Questions 172

Refer to the exhibit.

PC-2 failed to establish a Telnet connection to the terminal server. Which configuration resolves the issue?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 173

Refer to the exhibit.

The network administrator must mutually redistribute routes at the Chicago router to the LA and NewYork routers. The configuration of the Chicago router is this:

After the configuration, the LA router receives all the NewYork routes, but NewYork router does not receive any LA routes. Which set of configurations fixes the problem on the Chicago router?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 174

Refer to the exhibit.

A network administrator is discovering a Cisco Catalyst 9300 and a Cisco WLC 3504 in Cisco DNA Center. The Catalyst 9300 is added successfully However the WLC is showing [ error "uncontactable" when the administrator tries to add it in Cisco DNA Center. Which action discovers WLC in Cisco DNA Center successfully?

Options:

A.  

Copy the .cert file from the Cisco DNA Center on the USB and upload it to the WLC 3504.

B.  

Delete the WLC 3504 from Cisco DNA Center and add it to Cisco DNA Center again.

C.  

Add the WLC 3504 under the hierarchy of the Catalyst 9300 connected devices.

D.  

Copy the .pern file from the Cisco DNA Center on the USB and upload it to the WLC 3504.

Discussion 0
Questions 175

Refer to the exhibit.

An engineer identifier a Layer 2 loop using DNAC. Which command fixes the problem in the SF-D9300-1 switch?

Options:

A.  

no spanning-tree uplinkfast

B.  

spanning-tree loopguard default

C.  

spanning-tree backbonesfast

D.  

spanning-tree portfast bpduguard

Discussion 0
Questions 176

Refer to the exhibit.

An engineer wanted to set a tag of 30 to route 10 1.80.65/32 but it failed How is the issue fixed?

Options:

A.  

Modify route-map ospf-to-eigrp permit 30 and match prefix-list ccnp2.

B.  

Modify route-map ospf-to-eigrp permit 10 and match prefix-list ccnp2.

C.  

Modify prefix-list ccnp3 to add 10.1.64.0/20 le 24

D.  

Modify prefix-list ccnp3 to add 10.1.64.0/20 ge 32

Discussion 0
Questions 177

Refer to the exhibit. R2 has two paths to reach 192.168.13.0/24. but traffic is sent only through R3. Which action allows traffic to use both paths?

Options:

A.  

Configure the bandwidth 2000 command under interface FastEthernet0/0 on R2.

B.  

Configure the variance 4 command under the EIGRP process on R2.

C.  

Configure the delay 1 command under interface FastEthernet0/0 on R2.

D.  

Configure the variance 2 command under the EIGRP process on R2

Discussion 0
Questions 178

When configuring Control Plane Policing on a router to protect it from malicious traffic, an engineer observes that the configured routing protocols start flapping on

that device. Which action in the Control Plane Policy prevents this problem in a production environment while achieving the security objective?

Options:

A.  

Set the conform-action and exceed-action to transmit initially to test the ACLs and transmit rates and apply the Control Plane Policy in the output direction

B.  

Set the conform-action and exceed-action to transmit initially to test the ACLs and transmit rates and apply the Control Plane Policy in the input direction

C.  

Set the conform-action to transmit and exceed-action to drop to test the ACLs and transmit rates and apply the Control Plane Policy m the input direction

D.  

Set the conform-action to transmit and exceed-action to drop to test the ACLs and transmit rates and apply the Control Plane Policy m the output direction

Discussion 0
Questions 179

Which feature drops packets if the source address is not found in the snooping table?

Options:

A.  

IPv6 Source Guard

B.  

IPv6 Destination Guard

C.  

IPv6 Prefix Guard

D.  

Binding Table Recovery

Discussion 0
Questions 180

Exhibit:

An engineer configured R2 and R5 as route reflectors and noticed that not all routes are sent to R1 to advertise to the eBGP peers. Which iBGP routers must be configured as route reflectors to advertise all routes to restore reachability across all networks?

Options:

A.  

R1 and R4

B.  

R1 and R5

C.  

R4 and R5

D.  

R2 and R5

Discussion 0
Questions 181

Refer to the exhibit.

A network administrator configured mutual redistribution on R1 and R2 routers, which caused instability in the network. Which action resolves the issue?

Options:

A.  

Set a tag in the route map when redistributing EIGRP into OSPF on R1. and match the same tag on R2 to allow when redistributing OSPF into EIGRP.

B.  

Apply a prefix list of EIGRP network routes in OSPF domain on R1 to propagate back into the EIGRP routing domain.

C.  

Set a tag in the route map when redistributing EIGRP into OSPF on R1, and match the same tag on R2 to deny when redistributing OSPF into EIGRP.

D.  

Advertise summary routes of EIGRP to OSPF and deny specific EIGRP routes when redistributing into OSPF.

Discussion 0
Questions 182

What does IPv6 Source Guard utilize to determine if IPv6 source addresses should be forwarded?

Options:

A.  

ACE

B.  

ACLS

C.  

DHCP

D.  

Binding Table

Discussion 0
Questions 183

Refer to the exhibit. The DHCP client is unable to receive an IP address from the DHCP server RouterB is configured as follows:

Interface fastethernet 0/0

description Client DHCP ID 394482431

Ip address 172 31 11 255 255.255 0

!

ip route 172.16.1.0 255 255 255.0 10.1.1.2

Which command is required on the fastethernet 0/0 interface of RouterB to resolve this issue?

Options:

A.  

RouterB(config-if)#lp helper-address 172.31.1.1

B.  

RouterBiconfig-ififclp helper-address 255.255 255 255

C.  

RouterB(config-if)#lp helper-address 172.16.1.1

D.  

RouterB(config-if)#lp helper-address 172.16.1.2

Discussion 0
Questions 184

What are two characteristics of VRF instance? (Choose two.)

Options:

A.  

All VRFs share customers routing and CEF tables .

B.  

An interface must be associated to one VRF.

C.  

Each VRF has a different set of routing and CEF tables

D.  

It is defined by the VPN membership of a customer site attached to a P device.

E.  

A customer site can be associated to different VRFs

Discussion 0