Q1. The implementation group has been using the test bed to do an IPv6 'proof-of-concept1. After several changes to the network addressing and routing schemes, a trouble ticket has been opened indicating that the loopback address on R1 (2026::111:1) is not able to ping the loopback address on DSW2 (2026::102:1).

Use the supported commands to isolate the cause of this fault and answer the following question.

The fault condition is related to which technology?


B. IPv4 OSPF Routing

C. IPv6 OSPF Routing

D. IPv4 layer 3 security

Answer: C


Since we are unable to ping the IPv6 address, the problem is with IPv6 OSPF Routing.

Q2. Which of the following statements concerning IGMP are correct? (Choose all that apply.)

A. With IGMPvl, queries are sent to a specific group.

B. Hosts issuing IGMPvl requests will be correctly interpreted by IGMPv2 hosts due to backward compatibility.

C. An IGMPv2 router will ignore IGMPv2 leave messages when IGMFVl hosts are present.

D. With IGMFV2, a leave message is supported.

E. An IGMPv2 host will send an IGMFVl report on an IGMFVl router.

F. An IGMPv2 router can only allow IGMPv2 hosts to execute a join request.

Answer: C,D,E

Q3. A new router is added to an existing HSRP standby group. One of the existing routers is in an active state, the other is in a standby state. Under what circumstance will the new router become the active router?

A. The new router will become active immediately because it's the newest router introduced into the group.

B. The new router can become active only when the existing active router and the existing standby router become unavailable.

C. The new router has a lower priority value.

D. The new router will never become active unless the existing active router becomes unavailable.

E. The new router has preempt configured and a higher priority

F. The new router has a higher priority value.

Answer: E

Q4. The following commands are issued on a Cisco Router:

Router(configuration)#access-list 199 permit tcp host host

Router(configuration)#access-list 199 permit tcp host host Router(configuration)#exit

Router#debug ip packet 199

What will the debug output on the console show?

A. All IP packets passing through the router

B. Only IP packets with the source address of

C. All IP packets from to

D. All IP Packets between and

Answer: D


In this example, the u201cdebug ip packetu201d command is tied to access list 199, specifying which IP packets should be debugged. Access list 199 contains two lines, one going from the host with IP address to and the other specifying all TCP packets from host to

Q5. Which of the following best describes the following command: ip flow-export destination 1500?

A. it is not a valid NetFlow command.

B. it is an SNMP command that exports 1500-byte packets to IP address

C. it is a NetFlov/ command that v/ill export 1500-byte packets to IP address

D. it is a NetFlov/ command that allows IP address to send traffic to port 1500.

E. It is a NetFlov/ command that v/ill specify that the NetFlov/ collector's IP address is over UDP port 1500.

F. It is an SNMP command that exports flows to destination address 1Q2.168.1.50 for packets up to an MTU of 1500.

Answer: E

Q6. Which of the following are common issues that should be considered when establishing or troubleshooting site-to-site VPNs? (Choose all that apply.)

A. User authentication

B. Overlapping IP address space

C. GRE or IPsec configuration

D. MTU size

E. VPN client software

F. Authentication server configured ly

Answer: B,C,D

Q7. The implementations group has been using the test bed to do a u2018proof-of-conceptu2019 that requires both Client 1 and Client 2 to access the WEB Server at After several changes to the network addressing, routing scheme, DHCP services, NTP services, and FHRP services, a trouble ticket has been operated indicating that Client 1 cannot ping the address.

Use the supported commands to Isolated the cause of this fault and answer the following questions.

On which device is the fault condition located?

A. R1

B. R2

C. R3

D. R4





Answer: G


Since the Clients are getting an APIPA we know that DHCP is not working. However, upon closer examination of the ASW1 configuration we can see that the problem is not with DHCP, but the fact that the trunks on the port channels are only allowing VLANs 1-9, when the clients belong to VLAN 10. VLAN 10 is not traversing the trunk on ASW1, so the problem is with the trunk configuration on ASW1.

Q8. Which of the following management types can be used to deploy appropriate quality- of-service solutions to make the most efficient use of bandwidth?

A. Fault management

B. Accounting management

C. Operations management

D. Performance management

E. Security management

F. Configuration management

Answer: D

Q9. A customer network engineer has made configuration changes that have resulted in some loss of connectivity. You have been called in to evaluate a switch network and suggest resolutions to the problems.

Refer to the topology.

SW1 Switch Management IP address is not pingable from SW4. What could be the issue?

A. Management VLAN not allowed in the trunk links between SW1 and SW4

B. Management VLAN not allowed in the trunk links between SW1 and SW2

C. Management VLAN not allowed in the trunk link between SW2 and SW4

D. Management VLAN ip address on SW4 is configured in wrong subnet

E. Management VLAN interface is shutdown on SW4

Answer: D


In the network, VLAN 300 is called the Management VLAN. Based on the configurations shown below, SW1 has VLAN 300 configured with the IP address of, while on SW4 VLAN 300 has an IP address of, which is not in the same subnet.

Q10. You have 2 NTP servers in your network – and You want to configure a Cisco router to use as its NTP server before falling back to Which commands will you use to configure the router?

A. ntp server ntp server

B. ntp server

ntp server primary

C. ntp server ntp server prefer

D. ntp server fallback ntp server

Answer: C

Explanation: Preferred server

A router can be configured to prefer an NTP source over another. A preferred server's responses are discarded only if they vary dramatically from the other time sources. Otherwise, the preferred server is used for synchronization without consideration of the other time sources. Preferred servers are usually specified when they are known to be extremely accurate. To specify a preferred server, use the prefer keyword appended to the ntp server command. The following example tells the router to prefer TimeServerOne over TimeServerTwo:

Router#config terminal

Enter configuration commands, one per line. End with CNTL/Z. Router(config)#ntp server TimeServerOne prefer Router(config)#ntp server TimeServerTwo


Reference: Hardening Cisco Routers By Thomas Akin February 2002 0-596-00166-5, Chapter 10, NTP.

