Big Halloween Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Cisco CCNP Enterprise 300-410 Questions and answers with CertsForce

Viewing page 7 out of 13 pages
Viewing questions 91-105 out of questions
Questions # 91:

Which configuration feature should be used to block rogue router advertisements instead of using the IPv6 Router Advertisement Guard feature?

Options:

A.

VACL blocking broadcast frames from nonauthorized hosts


B.

PVLANs with promiscuous ports associated to route advertisements and isolated ports for nodes


C.

PVLANs with community ports associated to route advertisements and isolated ports for nodes


D.

IPv4 ACL blocking route advertisements from nonauthorized hosts


Expert Solution
Questions # 92:

Exhibit:

Question # 92

Which action resolves the authentication problem?

Options:

A.

Configure the user name on the TACACS+ server


B.

Configure the UDP port 1812 to be allowed on the TACACS+ server


C.

Configure the TCP port 49 to be reachable by the router


D.

Configure the same password between the TACACS+ server and router.


Expert Solution
Questions # 93:

What are two functions of LDP? (Choose two.)

Options:

A.

It is defined in RFC 3038 and 3039.


B.

It requires MPLS Traffic Engineering.


C.

It advertises labels per Forwarding Equivalence Class.


D.

It must use Resource Reservation Protocol.


E.

It uses Forwarding Equivalence Class


Expert Solution
Questions # 94:

Which two components are required for MPLS Layer 3 VPN configuration? (Choose two)

Options:

A.

Use pseudowire for Layer 2 routes


B.

Use MP-BGP for customer routes


C.

Use OSPF between PE and CE


D.

Use a unique RD per customer VRF


E.

Use LDP for customer routes


Expert Solution
Questions # 95:

Question # 95

Refer to the exhibit. ISP 1 and ISP 2 directly connect to the internet. A customer is tracking both ISP links to achieve redundancy but cannot see the Cisco IOS IP SLA tracking output on the router console. Which command is missing from the IP SLA configuration?

Options:

A.

start-time 00:00


B.

start-time now


C.

start-time 0


D.

start-time immediately


Expert Solution
Questions # 96:

Refer to the exhibit.

Question # 96

After the network administrator rebuilds the IPv6 DHCP server, clients are not getting the IPv6 address lease. Which action resolves the issue?

Options:

A.

Remove FE80 A8BB CCFF FEOO 5000 assigned by the IPV6 DHCP server.


B.

Add Ipv6 dhcp sarver MY_POOL under the interface ethernet 0/0 on H1.


C.

Add Ipv6 dhcp server MY_POOL under the interface ethernet 0/0 on R1.


D.

Configure FF02::1:2 to discover al IPv6 OHCP cfcents


Expert Solution
Questions # 97:

Question # 97

Refer to the exhibit. An engineer is troubleshooting suboptimal communication from the 192.168.5.32/28 subnet to the 172.16.3.16/28 segment using the slowest links. Which configuration resolves the suboptimal routing issue?

Options:

A.

R1(config-router)#router elgrp 100

R1(config-router)#redistribute ospf 1 metric 1000000 1111


B.

R2{config-router)#router ospf 1

R2{config-roiiter)#default-metric 1

R1(config-router)#router ospf 1

R1(config-router)#default-metric 10


C.

R2(config-router)#ro liter eigrp 100

R2(config-router)#redistribute ospf 1 metric 1000000 1111


D.

R2(config-router)#ro uter ospf 1

R2(config-router)#default-metric 10

R1(config-router)#router ospf 1

R1(config-router)#default-metric 1


Expert Solution
Questions # 98:

Which router attaches the VPN label to incoming packets from CE routing?

Options:

A.

CE router


B.

core router


C.

P router


D.

PE router


Expert Solution
Questions # 99:

Refer to the exhibit.

Question # 99

The static route is not present in the routing table of an adjacent OSPF neighbor router. Which action resolves the issue?

Options:

A.

Configure the next hop of 10.20.20.1 in the prefix list DMZ-STATIC


B.

Configure the next-hop interface at the end of the static router for it to get redistributed


C.

Configure a permit 20 statement to the route map to redistribute the static route


D.

Configure the subnets keyword in the redistribution command


Expert Solution
Questions # 100:

Question # 100

Refer to the exhibit. The administrator successfully logs into R1 but cannot access privileged mode commands. What should be configured to resolve the issue?

Options:

A.

aaa authorization reverse-access


B.

enable secret or enable password commands to enter into privileged mode


C.

Matching password on vty lines as cisco123!


D.

secret cisco123! at the end of the username command instead of password cisco123!


Expert Solution
Questions # 101:

Question # 101

Question # 101

Refer to the exhibit. An engineer applied filter on R1 The interface flapped between R1 and R2 and cleaning the BGP session did not restore the BGP session and failed Which action must the engineer take to restore the BGP session from R2 to R1?

Options:

A.

Apply the IPv6 traffic filter in the outbound direction on the interface


B.

ICMPv6 must be permitted by the IPv6 traffic filter


C.

Enable the BGP session, which went down when the session was cleared.


D.

Swap the source and destination IP addresses in the IPv6 traffic filter


Expert Solution
Questions # 102:

Question # 102

Refer to the exhibit. R1 lost its directly connected EIGRP peer 172.16.33.2 (SW1). Which configuration resolves the issue?

Options:

A.

key chain EIGRP

keyl

key-string Cisco

!

interface GigabitEthernet 2.10

Ip authentication mode elgrp 88 md5

Ip authentication key-chain elgrp 88 EIGRP


B.

key chain EIGRP

keyl

key-string Cisco

!

interface GigabitEthernet 2

ip authentication mode elgrp 88 md5

ip authentication key-chain elgrp 88 Cisco


C.

key chain EIGRP

keyl

key-string Cisco

!

interface GigabitEthernet 2

ip authentication mode elgrp 88 md5

ip authentication key-chain elgrp 88 EIGRP


D.

key chain EIGRP

keyl

key-string Cisco

!

interface GigabitEthernet 2.10

ip authentication mode eigrp 88 md5

ip authentication key-chain eigrp 88 Cisco


Expert Solution
Questions # 103:

A network administrator must optimize the segment size of the TCP packet on the DMVPN IPsec protected tunnel interface, which carries application traffic from the head office to a designated branch. The TCP segment size must not overwhelm the MTU of the outbound link. Which configuration must be applied to the router to improve the application performance?

Question # 103

Options:

A.

Option A


B.

Option B


C.

Option C


D.

Option D


Expert Solution
Questions # 104:

:590

Question # 104

Refer to the exhibit The R2 OSPF route 10 2 2 0/24 shows in the R1 EIGRP routing table without route redistribution performed between OSPF and EIGRP routing protocols Which configuration is required on router R2 to resolve the issue?

Options:

A.

passive-interface FastEthernet 0/0 command in OSPF1.


B.

Add the no auto-summary command in EIGRP 100.


C.

Replace the network 10.0.0.0 command with FastEthernet0/0network in EIGRP 100.


D.

Addthe passive-interface FastEthernet 1/0 command in EIGRP 100


Expert Solution
Questions # 105:

Refer to the exhibit.

Question # 105

A network administrator notices these console messages from host 10.11.110.12 originating from interface E1/0. The administrator considers this an unauthorized attempt to access SNMP on R1. Which action prevents the attempts to reach R1 E1/0?

Options:

A.

Configure IOS control plane protection using ACL 90 on interface E1/0


B.

Configure IOS management plane protection using ACL 90 on interface E1/0


C.

Create an inbound ACL on interface E1/0 to deny SNMP from host 10.11.110.12


D.

Add a permit statement including the host 10.11.110.12 into ACL 90


Expert Solution
Viewing page 7 out of 13 pages
Viewing questions 91-105 out of questions