上个月通过NP买的会员还没到期,有近期要考135的可以参考下,以下是3月10号的更新,后续有会及时更新 Question 1 Which statements about uRPF are true? (Choose two) A. CEF should be enabled" Y8 X$ v; C7 n: v
B. CEF should be disabled
5 | K* B. n3 w i, P: E! nC. Packet with source 0.0.0.0 destination 255.255.255.255 will be permited8 B) s: W5 o# i# R, R1 U1 I( e
D. Packet with source 0.0.0.0 destination 255.255.255.255 will be denied4 a a R5 ^1 K; Q3 X, }' [
E. ? * c% A3 w* v& ?1 f1 K) j$ X) R
Answer: A C Explanation uRPF uses the Cisco Express Forwarding (CEF) Forwarding Information Base (FIB) to perform reverse path look-up on the source IP address of an incoming packet. The CEF FIB is a database of network layer routing information and associated forwarding/adjacency information used in the CEF switching of packets. Unicast RPF will allow packets with 0.0.0.0 source and 255.255.255.255 destination to pass so that Bootstrap Protocol (BOOTP) and Dynamic Host Configuration Protocol (DHCP) functions work properly. Question 2
5 C, k: c# `0 R, `' c$ t& c5 w/ ] Routes are not advertised in the GRE tunnel. What is the problem? A. Implement dynamic routing in tunnel interfaces! `+ i( N* o# Q+ ]
B. ACLs are blocking packets$ B H( E8 r9 T6 n
C. ?3 v' s+ J& U% G5 G" L, \3 G3 ]5 t/ c
D. ?
- }3 U% O& Y; ^5 _! M/ E% H+ PAnswer: B Question 3
, H; s& o6 ~# ]. N% u0 ~$ D. `1 @" ~6 o How can we limit the number of simultaneous access to the VTY lines? A. session-limit! B9 O' f4 F* f4 ~# r
B. something about ACL
/ q, S# {; J% ?# U4 I4 b$ UC. ?
: A8 Z. U3 v% \5 q( m! U2 b# \D. ? * C1 {8 `2 X% U$ Z7 S/ o' V
Answer: A Explanation The “session-limit” command is used to configure the maximum number of the concurrent virtual terminal sessions on a device. The range is from 1 to 64. Question 4
% v/ q; C% D% f+ t Drag drop question which includes: TTL, df-bit, ToS, Timeout. Maybe similar to this question: D&D Question on Extended Ping Answer:( b% _7 u6 b, {7 v2 b
Tos – …quality of service
3 }1 \. p, |* X: qDf-bit – prevent packets from being segmented or broken up4 I4 _7 L" D, D+ W! `4 z) q% R
Data pattern – detect framing errors6 r+ h$ d' k: ~3 Y: f
Hop count – verify routing metrics: [7 U6 [ B9 ^, e1 J# G$ x8 I# Y
Reply – verify reachability OR data pattern — troubleshoot framing errors
Z P9 v* x' }2 u1 gdf-bit — enable do not fragment bit in IP header
1 Q& v. F- H: h6 W9 }source — specify source address or name1 N- y2 Z9 |+ {' M
tos — specify type of service value
@) _; ^+ `. Y' @" Zvalidate — validate reply data Good reference: Question 5
1 ^4 ~4 K0 }8 K6 Z8 U3 L7 ~ What command can be used to troubleshoot GRE issues? A. show dmvpn5 k5 `& {* O' x- c p, `$ C$ b: L
B. show ip interface brief/ u, A5 g8 P; }# w
C. show ip route, T: G1 ]* `' }* ~& [
D. ? 9 ]9 M% @, s2 ^7 x8 F3 F
Answer: A Question 6/ c3 O2 W5 E( S# e, j
Refer to the exhibit. PC was not configured to obtain default-gateway from the DHCP server. What can we do for PC to access the Internet? A. Configure static ARP in gateway router
: I8 U5 m4 t8 }( uB. Configure dynamic ARP in gateway router* a# a' y8 |& A( s6 }9 }" c
C. Configure proxy-ARP in gateway router
) r7 o" j% }" cD. ? ?1 d M+ N- B8 y- G$ S
Answer: C Question 7) e3 |% |+ a7 L7 f$ O; N( s. f
Exhibit of a tunnel configuration of either side was shown. Only difference was:. ?, ]6 D4 J$ c. ?$ M" r
tunnel-mtu 1440 | tunnel-mtu 1476+ |9 c0 ^! a0 k M! S9 C
What is the issue? Question 8
5 ]* x$ W' D1 d, [/ w Question about “show debug condition” command. Refer to the exhibit. Router#show debug condition
( i H% [1 `: n) [ Xcondition 1: int g0/1 …6 S7 b0 p& o5 z+ j
condition 2: int g0/2 …
5 G) Q2 a" q' q2 u( S: \Router##no debug condition 1 |
What is the output of “show debug condition “? A. Router#show debug condition
6 T% `5 m/ z1 b# s) ^7 Ccondition 1: int g0/1 …
! {; x" I4 a2 kcondition 2: int g0/2 …
2 m- m1 F* ?7 b% t0 yB. Router#show debug condition7 P7 Y: V' Q& k* H* S& o
condition 1: int g0/2 …
% A; B6 ?# Y# z* NC. Router#show debug condition
6 b( a3 S; \. p% X& f& K* Pcondition 1: int g0/1 … w% b* Z: [8 [3 a
D. Router#show debug condition& w; w2 A. O4 Q, p
condition 2: int g0/2 … 6 {: w- F+ m V* ]* @
Answer: D6 K. m3 n r3 I* M
Explanation We tested it with IOSv15.4 and this is the result: 1 ]" d# z8 x/ T; K
% L4 r: c, p7 C" i/ y8 ?
! \3 ]5 F: m1 n2 X5 W补充内容 (2019-3-14 08:12):
0 P c5 e" _$ E' j: W! ]" b# O1 JQuestion 95 f& K% B: I: Y1 j6 F8 d+ X7 W8 T3 h
x6 W1 }( `* H, i
Refer to exhibit. Client unable to enter the privilege mode
4 d7 E6 N4 @* `1 D- b/ `6 m. b% D- H2 }; h8 r
( E, w' m8 _ f$ q: {; _! y$ I3 ]5 E+ `3 b3 v% U, l
Answer: enable password should be configured0 S+ m+ R, e3 Q
* {; ^1 F G7 j" k4 o n/ ]2 e5 Q: D
Question 10
2 H! l" S( f1 f7 B4 X) b# N1 M! n9 k1 `2 ~
Refer to the exhibit.
% i9 r0 F }# l4 W* t
7 z4 R! l4 P$ h6 B$ L<exhibit missing>; X4 \( I# h& L; ?) {8 D
. |6 K9 \% @7 A4 ]7 _9 |Which statement is true for IPv6 access list commands(refer to exhibit)." Q% w" m- C+ d% A, G- u# N9 o/ j
. @, m) D, B6 i) j. i ) _' S9 o' W* {2 L
6 @- U1 i+ Z' J0 n" J
Answer: deny ipv6 any any log2 }2 O3 W+ D& @! Z% V6 I
" a! K7 w* m$ J; @, ^; [ JQuestion 11
% q( E0 n+ P/ s0 a2 s& I; ?( j
; X! ]. A" r% q) L. Q- w( j/ ^. RSimilar to this question:
: M- Q4 c3 @6 R/ |3 n
- R9 v# r- y7 ^Refer to the exhibit. (ClientA is connecting to the network via e0/0 interface while the “tunnel source e0/1” in the configuration). ClientA is unable to reach ClientB while other users from other Spokes can reach ClientB. Which command resolves this issue?
1 `' j7 I9 K9 y6 r8 q8 i
3 N% H. \/ t# L g' ^% ^+ c2 r% kA. tunnel route-via ethernet0/1! q0 n, `6 _. i0 w2 B# l$ ~8 a
B. tunnel mode gre1 U" J0 V+ i7 A9 k4 x4 h
C. tunnel destination 10.100.0.1
n* Z% f( r: X2 K* U5 }1 }. W( FD. tunnel source ethernet0/08 m8 O. }+ r9 J- j) C
9 U$ G7 g- w3 c1 T( S7 q. ~
8 ?2 H6 T3 M% `' X" a# I8 Q: Y) H$ f6 I
Answer: D
8 W. h4 P! u& E9 t0 S1 x: m5 p+ Z/ T2 _
Question 12
" X/ Q6 ~# }- Q' A- z8 Z. W+ @$ Y2 g" @+ e- ~0 k E" E" \* r
Regarding extended ping, why ping is failed (refer to exhibit)?- b- E! J0 m3 P% P
7 {8 c! H8 ~( V: Y/ g ( U ^5 e4 H- X& N+ Q; }/ M: S' L
4 W9 A9 T7 F! K' _4 ~- I
Answer: df bit is set (should be unset, mtu issue) |