Tüm alıştırma soruları
1987 soru
A network administrator needs to configure an extended IPv4 access control list (ACL) to implement a specific traffic policy on a Cisco router interface. Arrange the following ACL statements and actions in the correct top-down evaluation order to ensure that host 10.1.1.15 is allowed SSH access to server 172.16.0.5, all other SSH traffic from subnet 10.1.1.0/24 to server 172.16.0.5 is blocked, all other IP traffic from subnet 10.1.1.0/24 is permitted, and unmatched traffic is dropped by default.
Öğeleri doğru sıraya koymak için sürükleyin
A network engineer is designing a 10 Gigabit Ethernet trunk link between two distribution switches located 250 meters apart in a campus environment. Which of the following transceiver and cabling combinations will successfully establish and support this 10 Gbps connection over the specified distance? (Select two.)
Geçerli olan tümünü seçin
Refer to the following IPv4 routing table snippet from a Cisco router:
text
Gateway of last resort is 192.168.100.1 to network 0.0.0.0
S 10.20.0.0/16 [1/0] via 192.168.1.1
D 10.20.30.0/24 [90/307200] via 192.168.23.3, GigabitEthernet0/0/2
O 10.20.30.64/27 [110/20] via 192.168.12.2, GigabitEthernet0/0/1
S* 0.0.0.0/0 [1/0] via 192.168.100.1, GigabitEthernet0/0/0
The router receives a packet with a destination IP address of 10.20.30.77. Which next-hop IP address will the router select to forward this packet?
A network operations engineer is provisioning IPv6 static routing on router Edge-Rtr. The design requirements specify:
1. All default traffic must be forwarded to the primary service provider gateway at global unicast address .
2. A backup static route for internal network must direct traffic to link-local next-hop address across exit interface GigabitEthernet0/0/1, functioning as a floating route to back up a primary OSPFv3 route (administrative distance 110).
Which TWO Cisco IOS configuration commands correctly fulfill these requirements?
Geçerli olan tümünü seçin
A network administrator is configuring Rapid PVST+ on a Cisco Catalyst switch. The administrator intends for the switch to advertise a total Bridge Priority of for VLAN in its outgoing BPDUs to influence the Root Bridge election. Which priority value must be specified in the `spanning-tree vlan 50 priority <value>` command?
A network administrator is configuring a interface on a switch assigned to the IPv4 network segment. Which IPv4 address represents a valid usable host address for this interface?
A network administrator executes the global configuration command `logging trap 4` on a Cisco IOS router that is configured to forward log messages to an external syslog server. Shortly after, an interface status change occurs, generating a syslog event message with severity level 5 (Notifications). How does the router handle this message regarding transmission to the remote syslog server?
An administrator is reviewing the following Cisco IOS command output from router HQ-R3, which is connected to a shared Ethernet LAN segment alongside other OSPFv2 routers:
HQ-R3# show ip ospf interface GigabitEthernet0/0
GigabitEthernet0/0 is up, line protocol is up
Internet Address 192.168.1.3/24, Area 0
Process ID 1, Router ID 10.3.3.3, Network Type BROADCAST, Cost: 1
Transmit Delay is 1 sec, State DROTHER, Priority 0
Designated Router (ID) 10.4.4.4, Interface address 192.168.1.4
Backup Designated Router (ID) 10.2.2.2, Interface address 192.168.1.2
Timer intervals configured, Hello 10, Dead 40, Wait 40, Retransmit 5
If both the current Designated Router (10.4.4.4) and Backup Designated Router (10.2.2.2) fail simultaneously, which statement correctly describes the operational outcome for HQ-R3 during the resulting election?
A network administrator configures a Cisco router WAN egress interface with a Modular QoS CLI (MQC) policy map. The policy assigns real-time Voice over IP (VoIP) traffic to a class using the `priority 512` command, while transactional data is assigned to a class using the `bandwidth 2048` command. During a period of interface congestion, incoming voice traffic spikes to . Which statement accurately describes how the router handles the voice traffic that exceeds the allocated threshold?
A network technician is configuring high availability on interface GigabitEthernet0/1 of a Cisco IOS router. The interface is currently assigned the physical IPv4 address . The technician enters the command `standby 1 ip 192.168.10.1` under interface configuration mode. Which outcome will occur as a result of executing this command?
A network administrator applies a standard IPv4 access control list containing a single line, `access-list 10 permit 192.168.1.0 0.0.0.255`, to a router interface. What happens to incoming packets originating from host 10.0.0.5?
A network engineer is configuring a named extended IPv4 Access Control List (ACL) on a Cisco IOS router to implement a multi-tier security policy. The ACL must process rules top-down to meet the following requirements:
1. Permit SSH access ( port 22) from the specific management host to the core server interface .
2. Deny all other IP traffic originating from the Management subnet () destined for the Server Farm subnet ().
3. Permit ICMP echo traffic from the Operations subnet () to any destination.
4. Permit all remaining IPv4 traffic across all subnets.
In what order should the access-list statements be configured from top (first statement executed) to bottom (last statement executed) to ensure proper sequential traffic processing without unintended dropping of packets?
Öğeleri doğru sıraya koymak için sürükleyin
A network administrator intends to configure a backup floating static route on router R1 to reach destination network in the event that the primary route learned via OSPF fails. The administrator enters the following configuration command on R1:
`ip route 10.50.0.0 255.255.0.0 192.168.12.2 105`
What is the immediate impact of this configuration on router R1's routing table?
A network engineer is configuring an IPv4 extended Access Control List (ACL 105) on a Cisco IOS router. Place the following ACL entries in the correct top-down execution sequence (from top/first line to bottom/last line) to ensure that SSH traffic from management host 192.168.1.10 to server 10.1.1.50 is allowed, HTTP traffic from subnet 192.168.1.0/24 to server 10.1.1.50 is allowed, and all remaining IPv4 traffic to server 10.1.1.50 is denied.
Öğeleri doğru sıraya koymak için sürükleyin
A network engineer must construct an IPv4 extended Access Control List (ACL) on a Cisco IOS router to enforce the following security policy requirements for traffic originating from subnet destined for the server subnet :
1. Host must be permitted to access SSH (TCP port 22) on the server subnet.
2. Host must be denied all other TCP traffic to the server subnet.
3. All other hosts on subnet must be permitted HTTP (TCP port 80) access to the server subnet.
4. All remaining IPv4 traffic from subnet to the server subnet must be dropped.
Arrange the ACL statements in the correct top-down sequence (from top/sequence 10 to bottom/sequence 40) to properly enforce this security policy.
Öğeleri doğru sıraya koymak için sürükleyin
Router R1 learns routes to the remote destination subnet via OSPF, which operates with a administrative distance of 110. A network administrator wants to manually configure a backup floating static route toward using next-hop IP address . This backup route must remain inactive in the routing table unless the primary OSPF route fails. Which command must be configured on router R1?
Match each Layer 2 security feature on the left with its primary mitigation purpose or operation on the right.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
A network administrator configures an IPv4 extended numbered Access Control List (ACL 110) on a Cisco IOS router interface to prevent web traffic on TCP port 80 from reaching an internal web server at 192.168.10.50/32. The administrator enters the following single configuration command:
`R1(config)# access-list 110 deny tcp 10.1.1.0 0.0.0.255 host 192.168.10.50 eq 80`
ACL 110 is then applied inbound on the GigabitEthernet0/0 interface serving subnet 10.1.1.0/24. Immediately after applying the ACL, users on the 10.1.1.0/24 network report that all network communication is blocked, including ICMP pings, SSH access, and traffic destined for other subnets. Which configuration oversight is causing all traffic from subnet 10.1.1.0/24 to be dropped?
A network administrator is creating an IPv4 extended named Access Control List (ACL) called `MGMT_FILTER` to enforce security policies on a router interface. The policy mandates the following conditions:
- Permit HTTP () and SSH () traffic originating from subnet destined to a specific management server at .
- Deny all other IP traffic from subnet destined to subnet .
- Allow all remaining IPv4 traffic traversing the interface to reach other destinations.
Which TWO statements or configuration requirements are necessary to correctly fulfill this policy? (Select TWO.)
Geçerli olan tümünü seçin
A network administrator is configuring IPv4 static routing on router R1. Router R1 currently learns the primary route to destination network via iBGP, which has an Administrative Distance of 200. The administrator must configure two static routes:
1. A standard static route to reach network via next-hop IPv4 address .
2. A backup floating static route to reach network via next-hop IPv4 address that remains inactive until the primary iBGP route fails.
Which two `ip route` commands must the administrator configure on router R1?
Geçerli olan tümünü seçin