成长值: 64985
|
1. Picture of 3 routers and the question was related to IPv4 -> IPv6 tunnelling stating that all interfaces were configured with MTU 1500 other than the tunnel interface which didn’t set the MTU. The engineer noticed that packets were being fragmented how do you fix this?
2 T7 O( n6 e/ J4 P$ g& A5 W$ C! i: S4 |" K6 F
a. set the MTU on the tunnel interface to 1496 (or 1476). **
$ T, P9 t2 T1 Q. yb. increase the IPv6 packet MTU.
4 L% c% L7 C' I: E- T; L$ T/ xc. increase the IPv4 packet MTU.+ G. m5 }3 ?2 L k5 A( U
d. set the MTU on the tunnel interface to 1500.
4 W6 k$ G) r* D! w0 J" f: @! J
/ W) J7 [0 Q+ u8 z. E0 CAns: A
: v& j0 [7 g2 s5 U5 q—————————————————————————————————————————
: i. H2 P( j) S& f3 S( W# d2. Refer to the statement.
2 ~3 @% e! g0 T `- g
; f. r& H5 t1 i" p0 NThe %TUN-5-RECURDOWN: Tunnel0 temporarily disabled due to recursive routing error message
+ c% G* q6 B$ \! s: r8 A; E( U/ r3 j$ T r3 n: ^) O% u# w
What could be causing the syslog?& J6 k$ ]! |) F: j) X0 q6 U9 v
: f2 k0 H% Z# o' p# {+ M0 W" `
a. Source virtual interface shutdown.
& W' B; b1 S8 q4 e5 X6 |8 rb. Tunnel interface is not participating in routing.' Q6 P& G y0 Q& I
c. Physical interface is down/down.
9 t3 o6 Q i, y1 Ad. ???7 T9 ?: f- Z/ _% w+ r8 a' M7 x( W# J) D
! ^; X. ^/ ^2 Z. m8 ]) ~Ans:
' q2 m( H9 l8 U4 ]5 Q, z! G7 [% T+ D—————————————————————————————————————————
4 u: N6 j. I; r: ^3. How do you view an access-list that’s set on a int G0/0?
' @- U' d2 B. t9 U
$ G- Y+ b; Q5 t8 Aa. show ip access-lists int g0/08 i/ w0 V- a H: g9 m1 Q
b. show ip int g0/0 **
( i C: U5 x2 w3 s3 w% v+ m: \c. ???9 N5 X+ m; g; u, Q7 K- ~
d. ???
# O" @$ w8 }8 \4 h3 \# q; t% A: H \2 f" ?4 P3 z
Ans: B; H* s! b: C8 |3 ^1 P! p; v
—————————————————————————————————————————
" ?' ]. b% r, W6 l$ L4. What can you use to collect stats on Cisco IOS?+ B( F% U/ D' a5 ?3 j5 W% {! F
. v" o1 L0 [9 X* c2 Fa. SNMP) I! Z5 F) M: Y# \2 z. v- M' U
b. LLDP: _2 a) O7 \* z, N" E6 |" [. C* |
c. HSRP
" W8 X' @6 v; r3 a1 D, D! [% md. ???9 Z' Z% X8 y. G! f
, u! s( B& L; Y6 v5 U7 [& A& u2 l" v
Ans:
* A8 t) c( e& N: s& G—————————————————————————————————————————
* y, D0 f: o5 E) n; R7 A5. Output showing line VTY 0 4 config with an access list applied ‘ip access-class 1 in’0 x2 T( H7 j' l3 o
4 j; w( @5 |- X tip access list permit tcp any any eq 22
9 Q) z! [5 E; ?8 S) Pip access list permit tcp any any telnet
' y# X0 Y5 h0 L5 d" | Q; Z1 ]) [' n1 S z6 d* N* X, r
Cisco engineer is trying to setup secure access to the router but why is SSH failing?
/ D( a( `/ o4 t" ~* N" s/ F l8 G) \4 e+ {
a. access-list needs to be applied with access-group command.
6 N2 a+ e! j% d# ]7 C Wb. access-list only allows telnet access.
3 x6 J# g- r1 N1 Q# k: K; {; kc. They’re needed to be transport input ssh on line vty 0 4. *** `6 b" W% I: \; H' B5 R5 l
d. ??? _, Y8 c3 J: t% k; w8 e4 v" d
/ C6 a3 T' N: D% U5 B' k5 P
Ans: C# P4 Z5 \; X( v& l; L: _
—————————————————————————————————————————
% O4 h* Q4 Z, Y5 y6. Diagram showing 2 hosts each connected to different access switches, Host A in VLAN 300 Host B in VLAN 200.
+ Y o4 D9 e% J
* H+ B. [* E1 R H# b5 ]0 z ^Why can host A not access a DHCP server in VLAN 200?
, x1 F4 p% Z6 V3 ] r" z
L2 r( [5 R7 i' Va. VLAN 200 needs to be added to access switch B.
9 h9 o( p$ n% |b. Create a port channel.
% ?9 ]0 D4 E0 c9 ^c. Host A has the wrong subnet mask. **, J+ x; N4 W, y4 q% ]
d. ???; R3 v& W( k$ ^6 V, m' V, P
5 }3 ?- g; _. w! |0 m
Ans: C( P) N' O4 m; Q4 g4 r. C
—————————————————————————————————————————
6 _; F7 \) W% A+ K9 P3 r( U$ _/ k7. There was a question on how to limit debug output for a particular interface and one of the options was debug condition interface g0/0 which I think was the correct answer.1 r& x* c* Y- a) m+ t. i. ]" Y* p
% m$ U( e5 c% }+ q; ~& T
a. debug condition interface g0/0 **
% z4 m6 v: i2 D8 E, ^8 i; A) {' d3 Gb. ???; o2 h9 b) J& N5 _/ G
c. ???
& Q: h7 G& y6 t* t% n5 Zd. ???
# F/ z% ^0 B- r5 |6 I
( u. t7 b5 r+ qAns: A7 k6 T8 u' @9 T# \
—————————————————————————————————————————% b/ C( f# k& V
8. Refer to the exhibit. How would you confirm on R1 that load balancing is actually occurring on the default-network (0.0.0.0)?
0 L( A) D/ ?4 n- T. X, @5 j3 }( u' ]; B! g1 h! r
a. Use ping and the show ip route command to confirm the timers for each default network resets to 0.# c1 f' ~4 T- r) P0 e" r5 J
b. Load balancing does not occur over default networks; the second route will only be used for failover.
0 z8 k9 y( s( l" Q+ H. uc. Use an extended ping along with repeated show ip route commands to confirm the gateway of last resort address toggles back and forth.
& W3 }5 d+ z \6 Zd. Use the traceroute command to an address that is not explicitly in the routing table. **% u0 Y$ Z2 M" ^. x1 S0 f: J2 V
! [/ h) ~3 A; d- o/ w
Ans: D
/ H8 ^; f1 P h# @3 S: i—————————————————————————————————————————
/ X: O1 \ h, X3 t9. Which statement indicates a cause for Tunnel0‘s connection failure?
) ?% r; h9 k4 `. T1 {
% H' r7 l3 h6 N$ da. The tunnel source interface is in an up/down state and the tunnel destination is recursively routing as a result.
2 U' S3 T W6 x# u9 w5 b, Ub. The tunnel destination interface is flapping, which causes the tunnel to go up and down.
4 p2 O' |) T: tc. The tunnel is configured with the wrong encapsulation., P. f$ V: n$ J. A. H8 j# v" }
d. The tunnel destination is intermittently reachable via multiple routing protocols. **
& l; t! h! [& r; w$ a3 l2 _4 F, r6 g/ u3 g% b S
Ans: D
4 D/ f: r. z5 m1 ^& i+ w, q0 F—————————————————————————————————————————
# A) T% F* h& N6 L3 M" h/ j10. A traceroute question was something simply like what command can you use to check the path a packet takes to its destination?- G7 `6 [% g9 n( w
1 [% E: T6 ]. O! ia. traceroute
6 C) d/ C `* e7 x, c: Hb. nslookup
. z0 @; I( |7 o r4 uc. ???
2 F# m5 M2 A2 v5 f" ld. ???
* w6 h4 L+ I4 G( b, }
( e! a, |* K6 D1 I; |Ans:
: \+ V% ^8 r- h$ a* r0 m—————————————————————————————————————————
& b/ k0 C/ Z" y1 Q7 `1 V; K11. An exhibit showing output of a debug command that would display debugs on interfaces g0/0 and g/2, and then only debugs from interface g0/2 only.
, |+ g2 a8 |. T$ \$ P4 `0 F$ h# P$ A3 J/ g1 T* E
The question was what is the command that would limit the debug output as shown in the exhibit?
" _ ^) }& x1 o! v& w- W, ?) d. B: Y' \4 M+ d
a. debug condition interface g0/2 **
9 p) C+ w: b" l: ub. ???
: c* P0 u! R' Q5 yc. ???% Z3 c: M/ K9 b4 S! ~, P2 C3 a
d. ???, l9 A. @2 l2 X! f- c
; C: f: w( E# v% s3 `3 v ~Ans:
0 N4 E! L3 }% E3 W4 }—————————————————————————————————————————# G2 ^- n3 d0 J0 x
12. Which AAA command configures login using the local database?8 T# j" a: m- d/ f1 F; O; n
% ^3 w7 L7 q5 ?/ S. p3 Ra. aaa authentication login default local **+ t% }1 K& r7 Q, f/ \0 ?
b. ???
& X" M/ S/ n8 Q/ p' ?c. ???
8 l+ _% h5 U8 G; |/ c+ V% A Sd. ???
; Z4 o8 p, z" w3 `1 r2 s1 C; o) ~. z# G4 a
Ans: A& `# ]1 k @1 u. I# |
—————————————————————————————————————————) c7 [3 ?$ D4 U1 y
13. Which Cisco IOS feature allows you to create your own event definition for a network device and specify the action that should be performed in response to that event?
$ z& \# s7 r2 T' N' c# ]0 s E- P( S$ }; H: M1 d5 C" Z2 ^5 G
a. ???
+ l/ O3 P/ M, q$ s. A* n) J. Y( ob. ???
8 `3 V1 B6 P8 j" t7 }1 L0 G: x Oc. ???
, A% I, |! U0 E/ ]: `d. ??? ` m( E, q% I6 C. F- n
0 d' L. q/ a8 Z3 G
Ans:
5 l: j8 d: R5 X. n u' A* w
3 _. P( S" K& W+ h4 |6 k$ y6 b6 t8 m
; H# y. X: R+ c. Z# Z" |( r |
|