Jumat, 02 Januari 2009

E-CCNA 640-801

1. ISDN is sometimes used in locations that do not offer support for DSL or Cable Modems connections. Your choices may be Analog modems or an ISDN connection in those remote locations. ISDN has benefits over regular dial up modem connections. Which of the following are examples of these benefits? (Choose three)
A. PVCs are faster and more reliable.
B. No specialized equipment is required.
C. Data transfer is faster than typical modems.
D. Call setup is faster than with standard telephone service.
E. It carries many types of data traffic such as voice, video, and data.

Ans:C,D,E

2. When troubleshooting Frame Relay peer problems between two routers which two commands should you use to show the routers that are reachable? (Choose two)
A. Show IP map.
B. Show IP route.
C. Show frame-relay map.
D. Debug frame-relay map.

Ans:B,C

3. Which of the following are modes used for frame switching on Cisco switches? (Choose two)
A. Full duplex
B. Half duplex
C. CSMA/CD
D. Cut through
E. Fragmentation
F. Store and forward

Ans:D,F

4. Which of the following can be used as methods that can be used to simplified network management by implementing (VLANs)? (Choose four)
A. VLANs allow you to implement multiple layers switching easily.
B. VLAN can group several broadcasts domains into multiple logical subnets.
C. It is no longer necessary to install cables to move a user from a new network to another.
D. Network adds, moves and changes are achieved by configuring a port into a VLAN.
E. A group of users needing high security can be put into a VLAN so that no users outside the VLANs can communicate with them.
F. As a logical grouping of users, VLANs can be considered independent from their physical or geographic locations.

Ans:C,D,E,F

5. Computer A is trying to ping Computer B on the same Ethernet LAN using the IP address. A request is sent out of Computer A as a broadcast looking for the MAC address of Computer B. What is the protocol that sent out this broadcast to find Computer B?s MAC address?
A. It uses a Proxy ARP.
B. It uses ARP requests.
C. It uses RARP requests.
D. It uses router look up table.

Ans:B

6. Which command is used to set the bandwidth metric of a Frame Relay connection?
A. Router(Config)# clock rate 56
B. Router(Config-if)# bandwidth 56
C. Router(Config)# bandwidth 56000
D. Router(Config-if)# clock rate 56000

Ans:B

7. The TCP/IP model was created to provide standards used in internetworking. Which of the following statements are true about this model? (Choose three)
A. IP provides connection less service and routing capabilities.
B. ARP enables devices to locate the IP address of local devices.
C. UDP provides simple connection less service without windowing or acknowledgements.
D. ICMP provides connection oriented management data to routers and layer three switches.
E. TCP enables devices to send large quantities of data using switching in a connection-oriented manner.

Ans:A,C,E

8. You need to install RIP as the routing protocol of your network. Which of the following shows the correct prompt and command to install RIP as the routing protocol? (Choose one)
A. Router# rip.
B. Router rip.
C. Router (Config)# rip.
D. Router (Config)# router rip.

Ans:D

9. Which two are facts about integrated services digital network (ISDN)? (Choose two)
A. ISDN provides only data only capability.
B. ISDN provides an integrated voice/data capability.
C. The ISDN standards define the hardware and call setup schemes for end-to-end digital connectivity.
D. Users receive more bandwidth on WANs with a leased line of 56kbps than with multiple b channels.

Ans:B,C

10. Which of the following correctly compares Fast Ethernet to Ethernet? (Choose four.)
A. Fast Ethernet uses the Same Maximum Transmission Unit (MTU).
B. Fast Ethernet is based on an extension to the IEEE 802.3 specification.
C. Fast Ethernet uses the same Media Access control (MAC mechanisms).
D. Fast Ethernet preserves the frame format that is used by Ethernet.
E. Fast Ethernet offers a speed increase one hundred times that of the Ethernet.

Ans:A,B,C,D

11. An IPX address consists of which of the following?
A. Network number; IP address.
B. MAC address; node number.
C. Network number; MAC address.
D. Network number; subnet number.

Ans:C

12. John was having problems connecting to the company?s game server by the FQDN. John then used the ping command and was successful in pinging the game server. If a packet analyzer were used while John was using the ping command what would the two most common request/reply pair with ICMP messages be? (Choose two)
A. Echo reply
B. Echo request
C. Source quench
D. Fragment offset
E. Information redirect
F. Destination reachable
G. Echo control message

Ans:A,B

13. If I have VLAN 3, and VLAN 4 configured on a Cisco Switch, and I would like to have pc?s on VLAN 3 communicate with pc?s on VLAN 4. Which of the following will allow this inter-VLAN communication to take place?
A. It takes place through any Cisco router.
B. It takes place through a Cisco router than can run ISL.
C. It takes place through a router, but this disables all the router's Security and filtering functionality for the VLANs.
D. For nonroutable protocols, (e.g., NetBEUI) the router provides communications between VLAN domains.
E. Inter-VLAN communications is not possible because each VLAN is a separate broadcast domain.

Ans:B

14. Which one of the following is a layer two broadcast?
A. The IP subnet used is 255.255.255.0
B. The IP address used is 255.255.255.255
C. The MAC address used is 00-00-00-00-00-00
D. The MAC address used is FF-FF-FF-FF-FF-FF.

Ans:D

15. Which of the following troubleshooting tools use the protocol ICMP? (Choose two)
A. Ping
B. Telnet
C. Configure
D. Trace route
E. Show commands
F. Standard access list

Ans:A,D

16. You are suggesting that your company uses IP RIP as its routing protocol. Your boss would like you to list some facts about IP RIP before he approves your request. Which of the following statements about IP RIP are true? (Choose two.)
A. It limits hop counts to 31.
B. It is a link-state routing protocol.
C. It uses autonomous system numbers.
D. It is capable of load sharing over multiple paths.
E. It uses bandwidth as the metric for path selection.
F. It broadcasts updates every 30 seconds by defaults

Ans:D,F

17. In comparing TCP with UDP what is an advantage of using a connectionless protocol such as UDP?
A. Packet acknowledgement may reduce overhead traffic.
B. Loss or duplication of data packets is less likely to occur.
C. Packets are not acknowledged which reduces overhead traffic.
D. The application relies on the transport layer for sequencing of the data packets.

Ans:C


18. You are troubleshooting a problem between RouterA and RouterB from RouterA. Which command will successfully ping the ip address of RouterB?

A. RouterA>ping 131.5.5.0
B. RouterA# ping 131.5.5.30
C. RouterA> ping 131.5.5.256
D. RouterA# ping 131.5.5.255

Ans:B

19. Which of the following can reset a hold-down timer? (Choose three.)
A. When the hold-down timer expires.
B. When infinity is finally defined as some maximum number.
C. When the router exchanges update summaries at area borders.
D. When the router detect faulty LSPs propagating through the internetwork.
E. When another update is received indicating a new route with a better metric.
F. When another update is received indicating the original route to the network has been restored.
G. When the router receives a processing task proportional to the number of links in the internetwork.

Ans:A,E,F

20. What are two benefits of segmenting a network with a later 2 bridge? (Choose two)
A. To reduce collisions.
B. To increase collisions.
C. To add collision domains.
D. To reduce collision domains.
E. To have more broadcast domains.

Ans:A,C

21. Company ABC was supplied the following Class C IP address 195.20.10.0. You have been hired as the network administrator of Company ABC. Your first task is two split of the address for the different buildings that Company ABC owns and operates. Which of the following are the most important factors when subnetting the addresses? (Choose two)
A. Determine the number of separate networks required.
B. Determine how many devices will require DHCP addressing.
C. Determine the maximum number of host that will be on each subnet.
D. Determine the minimum number of host that will be on each subnet.
E. Determine which router will be the IP default gateway for each subnet.

Ans:A,C

22. You as the administrator issue the shutdown command on Serial 1. You later view this interface using the show interface Serial 1 command. How will this interface be displayed?
A. Serial 1 is up, line protocol is up.
B. Serial 1 is up, line protocol is down.
C. Serial 1 is down, line protocol is down.
D. Serial 1 is administratively down, the line protocol is down.

Ans:D

23. Using a class C address 192.168.10.X what would the subnet mask be if we needed two subnets with a maximum of 35 hosts on each subnet?
A. 255.255.255.192
B. 255.255.255.224
C. 255.255.255.240
D. 255.255.255.248

Ans:A

24. You are trying to convince your boss to switch from a hub to a Cisco switch. You have explained to your boss that you will have fewer collisions with the Cisco switch because you will be using full-duplex. Your boss responds with how many collisions are caused by transmitting and receiving frames simultaneously in full-duplex mode. What should your response be?
A. One
B. Two
C. None
D. Several

Ans:C

25. Given the configuration example: interface ethernet0 ipx network 100 ipx access-group 800 out interface ethernet1 ipx network 200 interface ethernet2 ipx network 300 access-list 800 permit 200 100

Which two actions result from implementing this configuration? (Choose two.)

A. IPX network 400 will not receive any traffic.
B. Traffic from network 200 for network 100 will be forwarded out e0.
C. Traffic from network 200 for network 200 will be forwarded out e0.
D. Traffic from network 200, destined for network 100, will be forwarded out e2.
E. The access list is applied to an outgoing interface and filters outbound traffic.

Ans:B,E

26. Which statement should you use to deny telnet access only from Network 210.93.105.0 to Network 223.8.151.0?
A. Access-list one deny 210.93.105.0.0.0.0.0.0 any eq 23 access-list one permit any.
B. Access-list 100 deny tcp 210.93.105.0 0.0.0.255 223.8.151.0 0.0.0.255 eq 23
C. Access-list 100 deny ip 223.8.151.0 0.0.0.255 any eq 23 Access-list 100 permit ip any any
D. Access-list 100 deny tcp 210.93.105.0 0.0.0.255 223.8.151.0 0.0.0.255 eq telnet Access-list 100 permit ip any any

Ans:D

27. Your company is using Novell v4.1. You need to display the Novel IPX address on a router. Which one of the following commands will allow you to display this address?
A. Show IPX addresses.
B. Show IPX interface.
C. IPX network
D. Display IPX addresses
E. Show IPX routing details

Ans:B

28. Using a Packet analyzer you discover the following address 238.255.255.255. What is the protocol and what is the purpose of the address?

A. IPX; a SAP broadcast.
B. IP; a multicast address.
C. IP; a reserved address.
D. IP; a directed broadcast.
E. IPX; a flooded broadcast.

Ans:B

29. You have decided to remove RIP routing on your router and install IGRP. You have issued the command no router rip on all of your routers. You now need to install IGRP on your routers. Which commands should you use to enable IGRP routing?
A. router igrp 100 network 192.168.1.0 network 10.0.0.0
B. router igrp 100 network 192.168.1.0 network 10.2.0.0
C. router igrp 100 network 192.168.1.0 192.168.1.1 network 10.2.0.0 10.2.1.1
D. router igrp 100 network 192.168.1.0 255.255.255.0 network 10.2.0.0 255.255.0.0

Ans:A

30. Our network uses both IPX and IP addressing and we have a direct connection to the Internet using IP. We would like to allow our IPX traffic to also be able to go across this internet to a remote router on the other side. Which term below will allow us to encapsulation IPX inside of IP so that we can send it across the Internet?
A. Bridging.
B. Tunneling.
C. Data-link control.
D. Generic routing.
E. Packet switching.

Ans:B

31. Which of the following is a Layer 2 device?
A. Hub
B. Router
C. Switch
D. Repeater

Ans:C

32. You are trying to determine if the connection between your Router and the Frame-Relay switch is good. Which show command should you use to view Frame Relay local management interface (LMI) traffic statistics?

A. Show lmi.
B. Show ip route.
C. Show interface.
D. Show statistics.
E. Show frame-relay lmi.

Ans:E

33. Frame Relay uses ___________ to define the rate, in bits per second , that the Frame Relay switch agrees to transfer data?
A. Clock rate (CR).
B. Committed Information Rate (CIR)
C. Local management interface (LMI)
D. Data-link connection identifier (DLCI)
E. Committed Rate Measurement Interval (CRMI)

Ans:B

34. You issued the show spantree e0/1 command which part of the output indicates that virtual LAN1 (VLAN1) is functioning properly?
A. Root port is fast Ethernet 0/26.
B. Port Ethernet 0/1 of VLAN is forwarding.
C. Designated port is Ethernet 0/1, path cost 10.
D. Designated root has priority 0 address 00D0.588F.B600.
E. VLAN is executing the IEEE compatible spanning tree protocol.

Ans:E

35. You need to create a subinterface so that you can support different Frame-Relay encapsulations. Which command specifies a second subinterface on serial interface zero?
A. Interface s 0.2 point - to point.
B. Interface 2 s 0 point to point.
C. Sub interface 2 s 0 point to point.
D. Interface 0 sub 2 point to point.
E. Interface s 0.1 point to point sub 2.

Ans:A

36. You have just configured DDR (Dial on Demand Routing) and would like to test the link. What can you use to bring up the connection?
A. Increase the idle timeout parameter.
B. Send interesting traffic across the link.
C. Reboot one of the Integrated Services Digital Network (ISDN) routers.
D. Reset the DDR Integrated Services Digital Network (ISDN) router statistics to zero.

Ans:B

37. Your company has decided to pay for one ISDN B channel to your to house so that you can do some technical support from home. What is the bandwidth capacity of a single ISDN B channel?
A. 16 Kbps
B. 64 Kbps
C. 128 Kbps
D. 512 Kbps
E. 1.54 Mbps

Ans:B

38. For security reasons you would like a system message displayed when logging into a router. Which of the following allows you to create this message?

A. Banner MOTD
B. Message MOTD
C. Banner Message
D. Message Banner

Ans:A

39. Your company has decided to use a (BRI) connection between the Florida office and the Georgia office. You would like to configure dial on demand routing (DDR) on this connection. Which of the following commands are required to setup DDR? (Choose three)
A. Define static routes.
B. Configure the dialer information.
C. Specify interesting traffic that can enable the link.
D. Define DDR password to exchange when the link comes up.

Ans:A,B,C

40. Which of the following are facts about Reverse Address Resolution Protocol? (Choose two.)
A. It generates parameter problem messages.
B. It maps IP addresses to Ethernet addresses.
C. It maps Ethernet addresses to IP addresses.
D. It is implemented directly on top of the data link layer.

Ans:c,D

41. You are performing password recovery on a router and you have already adjusted the configuration egister and are now in the router that appears to have no configuration. You notice the old configuration is still saved in NVRAM and you now want to copy the old configuration that is in NVRAM to the current configuration that is in RAM. Which command retrieves the configuration file from NVRAM?
A. Config NVRAM.
B. Copy NVRAM running-config.
C. Copy startup-config running-config.
D. Copy running-config startup-config.

Ans:C

42. Which of the following correctly describe IP addressing? (Choose Two)
A. IP multicast addresses start with 240.
B. A host portion of all 1?s indicates a network broadcast.
C. The value of zero (0) in the host portion means ?all hosts? on the network.
D. IP addresses are four octets long and contain a network portion and a host portion.

Ans:B,D

43. You are concerned about security on your network. You have a router that is connected to the Internet and do not want your RIP updates being sent out this interface that is connected to the Internet. Which command will prevent these updates from going out the interface without using access-lists?
A. Passive route.
B. Default routes.
C. Passive interface.
D. Route update filtering.

Ans:C

44. You have just purchased a router from an online auction and this router had an existing IOS installed on it. You would like to make a backup copy of this IOS. Which one of the following commands will allow you to do this?
A. Copy Flash TFTP
B. Save Copy TFTP
C. Write Backup TFTP
D. Write Backup (server-name)
E. Copy backup 2 (server-name)

Ans:A

45. You are using setup mode to configure your router for the first time. What does the square bracket indicate in setup mode?

A. Current or default settings.
B. Hard coded values that cannot be modified.
C. Values entered by the administrator but not saved.
D. Values that must be returned to NVRAM before becoming enabled.

Ans:A

46. Gail is having trouble configuring Frame Relay subinterfaces. You decide to send Gail an email explaining some of the installation procedures. Which of the following should you include in your email? (Choose three)
A. Each subinterface is configured either multi point or point to point.
B. Any network address must be removed from the physical interface.
C. The configuration of subinterfaces is done in router Config-(if)# mode.
D. Frame relay encapsulation must be configured on each sub interface.

Ans:A,B,C

47. Which of the following are considered VLAN benefits?
A. It increases the number of broadcast domains.
B. It decreases the number of broadcast domains.
C. It increases the number of collision domains.
D. It decreases the number of collision domains.
E. Since it is a virtual interface, it never shuts down.

Ans:A

48. You have just purchase a brand new router and need to configure this router after the router boots up you exit the setup mode by pressing Ctrl-C and you are now in user mode which command do you use to enter the privileged mode so that you can configure the router?

A. Set
B. Enable
C. Configure
D. Privileges

Ans:B

49. You are using two back-to-back serial cables in your test lab between two Cisco routers. You have determined that one of these routers is the DCE by using the show controllers command. You now need to configure the clock rate to 64 Kbps on serial0 which one of the following commands will allow you to do this?
A. Clockrate 64
B. Clock rate 64
C. Clockrate 64000
D. Clock rate 64000
E. Set clockrate 64
F. Serial 10 clockrate 64
G. Clock rate 64000 serial 10

Ans:D

50. Which of the following are true about debug output?
A. The default is to send debug output to the console screen.
B. To view debug output from a telnet session, the "terminal monitor" command must be used.
C. If the "logging buffered" command is used, the debug output would be sent to RAM and can be viewed with the "show log" command.
D. If the "no logging console" command were configured, output would not be sent to the console.
E. All of the above.

Ans:E

51. What is the maximum cable distance for 100BaseT?
A. 607 ft
B. 25 meters
C. 1000 ft
D. 100 meters
E. 185 meters

Ans:D

52. Using your protocol analyzer you have determined your network is very congested. Currently all the devices are connected through a hub. Which solution would best decrease congestion on the network?
A. Add a second hub.
B. Replace the hub with a router.
C. Replace the hub with a switch.
D. Replace the hub with a repeater.

Ans:C

53. One of the security mechanisms used in securing a router is access-lists. You have decided to use Standard IP access lists in your company which of the following is an example of a Standard IP access lists?
A. Access-list standard 172.16.4.13
B. Access-list 2 deny 172.16.4.13 0.0.0.0
C. Access-list 101 deny 172.16.4.13 0.0.0.0
D. Access-list 199 deny 172.16.4.13 255.255.255.255

Ans:B

54. You would like to use Ethernet 100BaseTx in your network. What is the maximum cable length?
A. 10 m
B. 50 m
C. 100 m
D. 1000 m

Ans:C

55. You have just been hired to setup a new company network. This company will be using an accounting package that requires multiple hosts. These hosts are the accountants and they must be able to support data transfer between each other at a rate of 10 Mbps. The company will also have a file server that is used for the other employees of the company who just use word processing applications that use less than 3 Mbps to transfer files to server. What is your economical recommendation?

A. That the existing 10BaseT hub be replaced with 100BaseT hub to improve overall performance.
B. That a router can separate the testing application from the rest of the network thus allowing the testing application more bandwidth.
C. That the switch be installed so that enterprise server can be provided a 100 Mbps port and each of the testing application hosts can be given dedicated 10 Mbps ports.
D. That a bridge be placed between the enterprise server and all other users with the exception of the testing application.

Ans:C

56. AJ has just created an IP access-list and you will like to see if he has applied this access-list to an interface. Which one of following commands will allow you to see if an access-list has been applied to an interface?
A. Router# show ip interface
B. Router> show access-list
C. Router# show ip access-list
D. Router> show interface ip access-list

Ans:A

57. Assuming that our network is using an older version of UNIX what is the maximum number of subnets that can be assigned to networks when using the address 131.107.0.0 with a subnet mask of 255.255.240.0?
A. 16
B. 32
C. 30
D. 14
E. It is an invalid subnet mask for the Network

Ans:D

58. Which one of the following statements about an Ethernet LAN is true?
A. The advantage of a full duplex is the ability to transmit data over Mbase2 cable.
B. Full duplex Ethernet requires a point-to-point connection when only two nodes are present.
C. Ethernet switches can use full duplex mode to connect multiple nodes to a single port of a switch.
D. Half duplex is a cut through packet processing method that is very fast with little error correction, full duplex is store and forward method that is slower but has better error correction.

Ans:B

59. You want to make sure that access-list you just created does not conflict with an existing access-list. Which router command allows you to view all of the access-lists created and the contents of all access lists?
A. Router# show interface.
B. Router> show IP interface.
C. Router# show access-lists.
D. Router> show all access list.

Ans:C


60. Your company is concerned about Security on your network. Each department has its own file server and the company also has an enterprise server that is shared by all departments. The accounting department is concerned about the accounting information being accessible from the other departments. What can you as the network administrator use to control the information so that it?s not being passed between the departments?
A. Bridge between management and sites.
B. Routers to provide the most secure segmentation.
C. A hub to provide the ease of management and a satisfactory alternative for the network security.
D. An Ethernet switch to secure separation through programming the access list of each port of the switch.

Ans:B

F-CCNA 640-801

1. You have a leased line configured at a small office that connects to the corporate office. You company would also like to have a backup incase the lease line goes down. Which WAN service would you most likely choose to backup the leased line?
A. Frame relay with SVC
B. Dedicated serial line
C. ISDN with DDR D. ATM

Ans:C

2. What are the advantages of using the OSI layered network model? (Choose three.)

A. Allows multiple-vendor development through standardization of network components.
B. Creates a list of communication rules that all companies must implement to get onto the Internet.
C. Allows various types of network hardware and software to communicate.
D. Prevents changes in one layer from affecting other layers, so it does not hamper development.
E. Allows companies to develop proprietary interfaces.

Ans:A,c,D

3. What is the correct order of PDUs in data encapsulation?
A. Data, Frame, Packet, Segment, Bit
B. Data, Frame, Segment, Packet, Bit
C. Data, Packet, Frame, Segment, Bit
D. Data, Packet, Segment, Frame, Bit
E. Data, Segment, Frame, Packet, Bit
F. Data, Segment, Packet, Frame, Bit

Ans:F

4. Which three are examples of the functions of connection oriented services? (Choose three)
A. Connection parameters are synchronized.
B. Any loss or duplication of packets can be corrected.
C. The data packet is independently routed and the service does not guarantee the packet will be processed in order.
D. A data communication path is established between the requesting entity and the peer device on the remote end system.

Ans:A,B,D

5. Which of the following devices support Full Duplex Ethernet ? (Choose two.)
A. Switch to host.
B. Switch to switch.
C. Hub to hub.
D. Switch to hub.
E. Hub to host.

Ans:A,B

6. Full-duplex gives you the ability to send and receive data at the same time. Which of the followingEthernet standards can operate in full-duplex mode? (Choose two.)

A. 10Base2
B. 10Base5
C. 10BaseT
D. 100BaseT

Ans:A,D

7. What are good reasons for using layer two switches? (Choose two)
A. To reduce collisions.
B. To increase collisions.
C. To increase the number of collision domains.
D. To decrease the number of collision domains.
E. To decrease the number of broadcast domains.

Ans:A,C

8. What can you use to connect a user?s pc directly to a router?
A. Connect the PC's COM port to the router's console port using a straight-through cable.
B. Connect the PC's COM port to the router's console port using a crossover cable.
C. Connect the PC's COM port to the router's Ethernet port using a straight-through cable.
D. Connect the PC's Ethernet port to the router's Ethernet port using a crossover cable.
E. Connect the PC's Ethernet port to the router's Ethernet port using a rollover cable.
F. Connect the PC's Ethernet port to the router's Ethernet port using a straight-through cable.

Ans:D

9. You issue the command show ip route which of the following correctly describes the codes displayed in your route table after you issue this command? (Choose two.)
A. I-Indicates a route was learned through an internal protocol.
B. S-Indicates a route was learned through static command.
C. R-Indicates a route was learned through RIP.
D. S-Indicates a route was learned through a serial port.
E. R-Indicates a route was learned through a reliable port.

Ans:B,C

10. What one of the following is an example of a layer 2 MAC address?
A. 192.201.63.251
B. 19-22-01-63-25
C. 0000.1234.FEG
D. 00-00-12-34-FE-AA

Ans:D

11. You company uses a switch in the training department. You need to be able to make changes to this switch remotely so that you can allow different classrooms to have access to the Internet as needed. What do you have to configure on this switch so that you can remotely make these changes? (Choose two.)
A. The switch name must match the workgroup name of the local network.
B. The switch must be configured with an IP address and default gateway.
C. The remote workstations must have access to the VSM of the switch.
D. CDP must be enabled on the switch so that other devices on the network can locate it.

Ans:B,C

12. Which layer of the OSI model ensures reliable end-to-end delivery of data?
A. Application
B. Presentation
C. Session
D. Transport
E. Network

Ans:D

13. Switches have three primary modes to handle frame switching. Which two statements about the storeand forward switching method are true? (Choose two)

A. Latency remains constant regardless of frame size.
B. Latency through the switch varies with frame length.
C. The switch receives the complete frame before beginning to forward it.
D. The switch checks the destination address as soon as it receives the header and begins forwarding the frame immediately.

Ans:B,C

14. Spanning-Tree was originally developed by DEC. What is the reason Spanning-Tree is used in a switched LAN?
A. To provide a mechanism for network monitoring in switched environments.
B. To prevent routing loops in networks with redundant paths.
C. To prevent routing switching loops in networks with redundant switched paths.
D. To manage, the addition, deletion, and naming of VLANs across multiple switches.
E. To segment a network into multiple collision domains.

Ans:C

15. Your company has decided to use IP RIP version 1 as the routing protocol. Which of the following are the commands you can use to configure IP RIP version 1 on your router?
A. Router RIP network 172.16.1.0 network 10.1.0.1
B. Router RIP network 172.16.0.0 network 10.0.0.0
C. Router RIP network 172.16.1.0 172.16.1.1 network 10.1.0.0 10.1.1.1
D. Router RIP network 172.16.1.0 265.255.255.0 Network 10.1.0.0 255.255.0.0

Ans:B

16. Which of the following are Application layer protocols that use TCP/IP? (Choose three.)
A. ARP
B. HTTP
C. SMTP
D. FTP
E. ICMP

Ans:B,C,D

17. Switches have three primary modes to handle frame switching. Which one of these modes looks at the destination address and then immediately forwards the frame to the destination?
A. CSMA/CD
B. FULL DUPLEX
C. CUT THROUGH
D. HALF DUPLEX
E. FRAGMENTATION
F. STORE AND FORWARD

Ans:C

18. TCP is a connection-oriented protocol. An advantage of operating in a connection-oriented environment is that a connection is established between both ends before the transfer of information can begin. What is a disadvantage of using a connection-oriented protocol such as TCP?
A. Packet acknowledgement may add overhead.
B. Packets are not tagged with sequence numbers.
C. Loss or duplication of data packets is more likely to occur.
D. The application layer must assume responsibility for correct sequencing of the data packets.

Ans:A

19. The IP address 131.107.0.0 is a class B address. What is the range of binary values for the first octet in this address class?
A. 10000000-11111111
B. 00000000-10111111
C. 10000000-10111111
D. 10000000-11011111
E. 11000000-11101111

Ans:C

20. Your company is having trouble connecting a Cisco router to a Nortel router using Frame Relay. What is the default encapsulation type for Frame Relay on a Cisco router?
A. HDLC
B. PPP
C. IETF
D. Cisco
E. ANSI

Ans:D

21. Frame Tagging is used to interconnect multiple switches and to maintain VLAN information as traffic goes between switches. Which of the following statements about the Frame Tagging are true? (Choose two)
A. A Filtering table is developed for each switch.
B. Frame Tagging defines a unique user defined ID to each frame.
C. A unique identifier is placed in the header of each frame as it is forwarding between switches.
D. Frame Tagging is technique that examines particular information about each frame based on userdefined offsets.

Ans:B,C

22. You can configure PPP on which of the following types of physical interfaces? (Choose two)

A. Ethernet
B. Token Ring
C. Synchronous Serial
D. Asynchronous Serial

Ans:C,D

23. The advanced editing features are turn on by default on Cisco routers. To turn off these features you enter the command terminal no editing. With the advanced editing features turned on what is the effect of Ctrl-Z?
A. Exits back to privileged exec mode.
B. Disconnects from the router.
C. Aborts the ping operation.
D. Exits privileged exec mode.

Ans:A

24. The ICMP ping used for troubleshooting a network can be used on a Cisco router in which modes? (Choose two)
A. User.
B. Privileged.
C. Global Configuration.
D. Interface Configuration.

Ans:A,B

25. Encapsulation is the method of passing data down the stack of the OSI model and adding headers and trailers. Which one of the following shows the correct order of Data Encapsulation?
A. Data, Packet, Segment, Frame.
B. Segment, Data, Packet, Frame.
C. Data, Segment, Packet, Frame.
D. Packet, Data, Segment, frame.

Ans:C

26. Consider Frame Relay multipoint subinterfaces. Which is a valid statement?
A. An IP address is required on the physical interface of the central router.
B. All routers are required to be fully meshed.
C. All routers must be in the same subnet to forward routing updates and broadcasts.
D. Multipoint is the default configuration for Frame Relay subinterfaces.

Ans:D

27. Novell Netware allows multiple Layer two frame structures. Cisco supports all of the frame types. Cisco and Novell have assigned different names for the same encapsulation type. Which of the following are correct matches of the Novell term to the equivalent Cisco IOS term for the same framing types? (Choose two)
A. Ethernet_II-ARPA
B. Ethernet_802.3-SAP
C. Ethernet_802.2-LLLC
D. Ethernet_SNAP-SNAP

Ans:A,D

28. Frame relay has a feature that prevents PVCs from shutting down from lack of activity. What is the name of this feature?
A. DLCI
B. BECN
C. FECN
D. LMI
E. CIR
F. De

Ans:D

286. What is one benefit of using a hierarchical addressing framework?
A. Increase availability of addresses.
B. Decrease distance between routers.
C. Increase router memory requirements.
D. No need to maintain routing information.

Ans:A

29. Exhibit:

RouterA# show interface s0 Serial 0 is up, line protocol is down Hardware is HD64570 Internet address 10.1.1.1 Encapsulation HDLC, loopback not set, keepalive set (10sec) Router A is unable to connect to Router B, which is a Nortel router, through the network cloud. Using the command output shown what must be configured on Router A's interface s0 to change the line protocol from down to up?

A. No shutdown.
B. Encapsulation ppp.
C. Interface serial point-to-point.
D. Clock rate 56000.

Ans:B

30. The default bandwidth of a high-speed serial link is 1.544 or T1. What is the correct command to change the bandwidth of the interface to 64K?
A. Bandwidth 64
B. Band width 64
C. Bandwidth 64000
D. Band width 64000
E. Bandwidth 64K

Ans:A

31. What one of the following protocols is an example of a link state routing protocol that uses the TCP/IP protocol stack?
A. IP
B. IS-IS
C. NLSP
D. OSPF
E. RIP ver 2

Ans:D

32. Exhibit:

Central Partial Configuration isdn switch-type basic-ni username Remote password king interface bri0 ip address 10.1.1.1 255.255.255.0 encapsulation ppp ppp authentication chap isnd spid1 51055512360001 isnd spid1 51055512360002 dialer map ip 10.1.1.2 name Remote 1238001 dialer-list 1 protocol ip permit

Your company is using ISDN to connect the Remote office to the Central office. The connection is not working between the two routers. You issue the show running-config command looking at the configuration above. Which additional command must be issued on the Central router before interesting traffic will be sent to the Remote router?

A. (config-if)# dialer-group 1
B. (config-if)# dialer-list 1
C. (config-if)# dialer map 1
D. (config-if)# dialer-route 1

Ans:A

33. Exhibit You are network administrator for the network shown in the exhibit above. Adding the new router, called TK2, the network has been augmented. You would like to backup the IOS image of the new router to the TFTP server. However, the backup procedure fails. What could be the cause of the problem?

A. Incorrect default gateway of the tftp server.
B. Incorrect subnet mask of the tftp server.
C. Incorrect IP address of the tftp server.
D. Incorrect IP address on E0 of the TK1 server.
E. Incorrect subnet mask on the TK2 router.

Ans:B
34. If RIP uses hop count to determine the best path what does IGRP use?
A. The highest metric value.
B. The lowest composite metric value.
C. The lowest hop-count and delay.
D. The highest bandwidth and reliability
E. The lowest administrative distance.

Ans:B

35. You have just purchased a new Cisco router. Which mode should you use to create an initial configuration on your router?
A. Copy mode.
B. User mode.
C. Setup mode.
D. Startup mode.

Ans:C

36. Once you have defined interesting traffic with the dialer-list command, you then must associate an ISDN phone number with the next hop router address. Which IOS command should you use?
A. Isdn destination number.
B. Dialer map.
C. Isdn spid1.
D. Isdn line number.

Ans:B

37. You just purchased a Cisco router from an online auction and now you have configured the router and everything is working perfectly in your test lab. You then issue the command copy run start to save your configuration to NVRAM. You turn off the power and mount the router in the production rack. After connecting the power cord you power up the router and the router boots into setup mode. You issue the show startup-config from privileged mode and your entire configuration is there. Which of the following indicates a possible source of the problem?
A. Hardware failure NVRAM prevents the router from loading the configuration.
B. Startup-config in flash is corrupt and cannot be analyzed.
C. Router configuration register set to bypass startup configuration.
D. Startup-config in NVRAM is corrupt and cannot be analyzed.

Ans:C

38. Your ISP has provided you the following class B network range 131.107.0.0/24. Which of the following statements is true regarding this network? (Choose two.)
A. There are 254 usable hosts per subnet.
B. There is one usable network.
C. There are 255 usable hosts per subnet.
D. There are 254 usable subnets.
E. There are 30 usable subnets.
F. There are 62 usable hosts per subnet.

Ans:A,D

39. What is an advantage of segmenting your LAN with a switch?
A. Smaller collision domains.
B. Elimination of broadcast.
C. Decrease cost of implementation.
D. Larger number of users within the same domain.

Ans:A

40. When setting up Frame Relay for point-to-point subinterfaces, you enter the following configuration:Router(config)#int s0/0 Router(config-if)#ip address 10.39.0.1 255.255.0.0 Router(config-if)#encapsulation frame-relay Router(config-if)#interface s0/0.39 point-to-point Router(config-if)#frame-relay interface-dlci 139 Router(config-if)#exit Router(config)#exit Router#copy run start Which of the following must not be configured?

A. The Frame Relay encapsulation on the physical interface.
B. The local DLCI on each subinterface.
C. An IP address on the physical interface.
D. The subinterface type as point-to-point.

Ans:C

41. Which show commands can you use to identify the local DLCI number? (Choose two.)
A. Show frame-relay local-dlci
B. Show frame-relay pvc
C. Show frame-relay dlci
D. Show frame-relay map E. Show ip route

Ans:B,D

42. There are some differences between routed and routing protocols. Which of the following are examples of those differences? (Choose two.)
A. A routed protocol is assigned to an interface and determines the method of packet delivery.
B. A routing protocol determines the path of a packet through a network.
C. A routed protocol determines the path of a packet through a network.
D. A routing protocol operates at the transport layer of the OSI model.
E. A routed protocol updates the routing table of a router.

Ans:A,B

43. What are the generic parts of a layer 3 address?
A. An internetnetwork number and a URL .
B. A vendor code and a serial number.
C. A network number and host number.
D. A broadcast number and unicast number.
E. A domain identifier and a device identifier.

Ans:C

44. You purchased a router from an online auction and you are unable to login to privileged mode because the router has been configured with a password. You need to perform password recovery. One of the first steps in performing password recovery is recording the current configuration register setting from user mode. What is the command to view the configuration register?
A. Show register.
B. Show flash.
C. Show boot.
D. Show version.

Ans:D

45. Your manager is concerned about security on the subnet 10.0.1.0/24 that has the accounting servers on it. He would like to make sure users can not telnet to those accounting servers and as asked you to add a statement to your existing access-list to prevent users from accessing those devices via telnet. Which one of the following statements should you enter?
A. Access-list 15 deny tcp 10.0.1.0 255.255.255.0 eq telnet
B. Access-list 115 deny tcp any 10.0.1.0 eq telnet
C. Access-list 115 deny udp any 10.0.1.0 eq 23
D. Access-list 115 deny tcp any 10.0.1.0 0.0.0.255 eq 23
E. Access-list 15 deny telnet any 10.0.1.0 0.0.0.255 eq 23

Ans:D

46. You have been assigned a class C network address. Your manager has asked to you create 30 subnets with at least 5 hosts per subnet for the different departments in your organization. What should the subnet mask be to create 30 subnets?
A. 255.255.255.255
B. 255.255.255.248
C. 255.255.255.0

Ans:B

47. Which of the following are true about connection-oriented network servers? (Choose two.)
A. Non-reliable
B. Reliable
C. Less bandwidth-intensive
D. Handshaking

Ans:B,D

48. You would like the router to look in NVRAM upon boot up. Which one of the following would be the correct value for the configuration register?
A. 0x42
B. 0x2102
C. 0x001
D. 0x2101

Ans:B

49. You just purchased a brand new Cisco 2621 router. By default when the router boots which search sequence does it use to locate the IOS software?
A. Flash, TFTP server, ROM
B. NVRAM, TFTP server, ROM
C. ROM, Flash, TFTP server
D. ROM, NVRAM, TFTP server

Ans:A

50. To perform password recovery on a Cisco router you have to modify which of the following? (Choose two.)
A. Nvram
B. Configuration register
C. Boot flash
D. Cmos
E. Flash

Ans:A,B

51. Which hardware device enables high-speed data exchange on a LAN?
A. Hub
B. Bridge
C. Switch
D. Repeater

Ans:C

52. Cisco supports three different LMI types for Frame Relay. Which of the following are the type LMI types? (Choose three.)
A. IETF
B. Q931
C. Q933A
D. IEEE
E. CISCO
F. ANSI

Ans:C,E,F

53. You have installed a new PC to your access layer switch. You have configured the IP address, subnet mask, default gateway, and DNS settings. You have verified that the information you have entered is correct and that the proper cable was used however this PC is unable to access devices that are connected to the same switch. What is the likely cause of this problem?
A. The router lacks a routing table entry for the new host.
B. The host switch port is assigned to the incorrect VLAN.
C. The host MAC address is incorrectly configured.
D. A VTP instance for the new host has not been installed.

Ans:B



54. You just finished installing a new operating system on a computer located in the accounting department. You would like to verify the network configuration from the new computer so you establish FTP connection to a remote TFTP server. Which layer of the OSI model did you use for this operation?
A. Application
B. Presentation
C. Session
D. Transport
E. Data link
F. Internet

Ans:A

55. Your boss is concerned about routing loops with the use of distance vector routing protocols such as RIP and IGRP in your network you would like to ensure him that there are mechanisms used to prevent the possibility of a routing loop. Which of the following are examples of this mechanism? (Choose two.)
A. Link-state advertisement (LSA)
B. Spanning Tree Protocol.
C. Shortest path first tree.
D. Split horizon.
E. Hold-down timers.

Ans:D,E

56. Which of the following correctly identifies switched and routed data flow?
A. Switches create a single collision domain and a single broadcast domain. Routers provide separate broadcast domains.
B. Switches create separate collision domains but a single broadcast domain. Routers provide separate broadcast domains.
C. Switches create a single collision domain and a separate broadcast domain. Router provides a separate broadcast domain as well.
D. Switches create separate collision domains and separate broadcast domains. Routers provide separate collision domains.

Ans:B

57. Your company has purchased some Cisco routers from an online auction. You need to make a backup copy of the IOS and store it on a TFTP server. Which of the following should be done prior to copying the IOS image to a TFTP server? (Choose three.)
A. Make sure that the network server can be accessed.
B. Check that the authentication for access is set.
C. Ensure that the network server has adequate space for the code image.
D. Verify any file naming and path requirements.
E. Make sure that the server can load and run the bootstrap code.

Ans:A,C,D

58. Cisco supports three types of switching modes on switches. Which mode of switching can have a variable latency through the switch?
A. Store-and-forward.
B. Cut-through.
C. Fragment-free.

Ans:A

59. Using a class C address range 192.168.21.12 your network needs twenty-eight subnets. Which subnet mask should you use?
A. 255.255.0.28
B. 255.255.255.0
C. 255.255.255.28
D. 255.255.255.248
E. 255.255.255.252

Ans:D

60. Access-list 122 permit ip 131.107.30.0 0.0.0.255 any You apply the access-list above. Which is the effect?
A. Permit all packets matching the first three octets of the source address to all destinations.
B. Permit all packets matching the last of the destination address and accept all source address.
C. Permit all packets from the third subnet of the network address to all destinations.
D. Permit all packets matching the host bits in the source address to all destinations.
E. Permit all packets to destination matching the first three octets in the destination address.

Ans:A

61. Which channels are used by ISDN BRI?
A. 2d+b
B. 23d+b
C. 2b+d
D. 23b+d

Ans:C

G-CCNA 640-801

1. What was one of the most important reasons the International Organization for Standardization released the OSI model?

A. Users could access network server faster.
B. Different vendor?s networks could work with each other.
C. The industry could create a standard for how computers work.
D. The network administrator could increase the overall speed of their network.

Ans:B

2. You have just entered the command copy running-config startup-config command to save your configuration so that if the router is rebooted it will keep your configuration. Which type of router memory normally stores the startup configuration?
A. RAM
B. ROM
C. FLASH
D. NVRAM

Ans:D

3. Assuming a default subnet mask which two pieces of information can be derived from the IP address 131.107.2.200? (Choose Two)
A. It is a Class C address
B. It is a Class B address
C. The network address is 131.0.0.0
D. The network address is 131.107.2.0
E. The host portion of the address is 2.200

Ans:B,E

4. Comparing half-duplex Ethernet to full-duplex Ethernet which of the following are true? (Choose two.)
A. Shared collision domain.
B. Private collision domain.
C. Higher effective throughput.
D. Lower effective throughput.
E. Private broadcast domain.

Ans:A,D

5. You are configuring an old router that is running an old IOS that does not support inverse arp. If a router does not support inverse arp how can you setup this frame relay connection?
A. Configure static maps.
B. Define an IP address.
C. Disable DHCP on the Frame Relay router.
D. Configure a static route to the remote network.

Ans:A

6. Given the following criteria for granting access from a remote site to your LAN: Restrict access on interface E1 E1=207.87.81.173 Deny access to telnet, FTP, SNMP Allow all other types of operations.

Which line should come last in configuring your access list?

A. Access-List 101
B. Access-List 101 deny E0 telnet FTP
C. Access list 101 allow all except FTP telnet
D. Access list 101 permit IP 0.0.0.0 255.255.255.255 any
E. Access List 101 deny IP 207.87.81.173 TCP EQ 20 21 23

Ans:D

7. Most networks are often described as using either 10BaseT or 100BaseTX media. What does the 'Base' in these media types mean?
A. It describes the signaling method for communication on the network.
B. It refers to the type of media used in the network.
C. It relates to the speed of transmission of network signals.
D. It defines the allowable length of media that can be used.
E. It defines half-duplex or full-duplex operation.

Ans:A

8. To configure a Frame Relay Router with subinterfaces on interface Serial 3. Which subinterface number could you use for this configuration?
A. 1 and 2.
B. 3.2 and 3.3
C. 1 and 1.1
D. 3.1a and 3.1b.

Ans:B

9. Using a protocol analyzer we noticed sustained, heavy collisions in our CSMA/CD LANs. What are some possible affects could this have our LAN? (Choose three.)

A. Increased broadcast traffic.
B. Delay.
C. Low throughput.
D. High throughput.
E. Congestion.
F. Higher bandwidth.

Ans:B,C,E

10. Which of the following are layer 7 protocols? (Choose two.)
A. Ping
B. Telnet
C. FTP
D. TCP
E. IP

Ans:B,C

192. What is the total bandwidth of an ISDN BRI circuit?
A. 54 kps
B. 64 kps
C. 112 kps
D. 128 kps
E. 144 kps

Ans:E

197. Which one of the layers of the seven layer OSI model uses positive acknowledgement and retransmission to ensure reliable delivery?
A. Application
B. Presentation
C. Session
D. Transport
E. Data link
F. Physical

Ans:D

198. To distinguish between each PVC what does the Frame Relay switch use?
A. Data link connection identifier (DLCIs)
B. CNs
C. FECNs
D. Local management interface LMI

Ans:A

200. RouterA has two redundant paths serial links to RouterB. RouterA and RouterB are only using the IPX protocol. You have noticed that RouterA is not using both paths to get to RouterB. Which command can you enter to enable load balancing across those serial links?
A. ipx load-balance.
B. ip maximum-paths 2.
C. ipx maximum-paths 2.
D. ipx load-share.

Ans:C

201. Julia telnets to a pc on a remote subnet, which MAC address will be present in the ARP table when you issue the show arp command?
A. MAC address of the destination host Ethernet port.
B. MAC address of the local router Ethernet port.
C. MAC address of the destination router Serial port.
D. MAC address of the local router Serial Port.

Ans:B


203. You have just entered the command: Superhero(config-line)#logging sync Cisco IOS allows which keystroke(s) to complete the syntax of a partially entered command.

Which keystroke(s) did you use to complete the above command above to the completed following command: Superhero(config-line)#logging synchronous ?

A. Ctrl+shift+6 then x.
B. Ctrl+Z
C. TAB
D. /? E. Shift

Ans:C

204. How do you change the Console password on the Sonic router to "cisco"?
A. Sonic(config)#line con 0 Sonic(config-line)#login Sonic(config-line)#password cisco
B. Sonic(config)#line con 0 Sonic(config-line)#login Sonic(config-line)# password Cisco

Ans:A

205. Christopher issues a show cdp neighbor command from Router
A. RouterA has connections to RouterB and RouterC through the serial s0 and s1. Which three pieces of CDP information about neighboring routers are displayed on your console terminal? (Choose three)

A. The neighboring router?s host name.
B. The neighboring router?s hardware platform.
C. Up to one address for each protocol supported.
D. Up to two addresses for each protocol supported.
E. As many addresses as are configured for each protocol supported.

Ans:A,B,C

206. Aaron is troubleshooting a problem on his network he issues the command ping 10.0.0.2 to test the physical connectivity between two devices? Which type of ICMP messages was carried in the IP datagrams?
A. ICMP echo request.
B. Information request.
C. Timestamp reply.
D. Redirect.
E. Source quench.

Ans:A

207. All TCP/IP hosts implement the ICMP protocol?
A. TRUE
B. FALSE

Ans:A

208. Your company has decided to use IGRP instead of RIP as the routing protocol. They want to use autonomous system number 130. Which is the correct command for this installation?
A. Router(config)# igrp 130
B. Router(config)# network 130
C. Router(config)# router igrp 130
D. Router(config)# enable igrp 130

Ans:C

209. To govern the flow of data between two devices, TCP uses a flow control mechanism. Which one of the following is true about this mechanism?
A. TCP makes no effort to check for lost or duplicate data packets.
B. The application layer must sequence data packets when using TCP.
C. TCP controls the flow of UDP data through negative acknowledgements NAK.
D. TCP is a connection-oriented protocol that acknowledges receipt of data packets and is considered reliable.

Ans:D

210. What are the benefits of replacing a hub with a bridge and segmenting the network?
A. It increases the number of collision domains.
B. It decreases the number of collision domains.
C. It increases the number of broadcast domains.
D. It decreases the number of broadcast domains.

Ans:A

211. Your company is considering purchasing a new accounting software application from ABC accounting company. The ABC accounting company has decided to come in and let you install a demo copy of their software so that you can test it in your network with a few hosts. The server and the hosts that will connect to this server will need a 10Mbps connection. Your company is currently using a hub. Your company has decided to use this new accounting software application. However when you ran your packet analyzer you noticed the rest of the hosts on your network that are not using this application have a bandwidth problem with the new accounting system installed. Since your company has decided to use this new application they would like you to resolve the bandwidth problem. What is the most economical decision would you implement for resolving this problem?

A. Install new 100 Mbps switches, and change all hosts? NIC to 100 Mbps.
B. Segment network with router, and place all testing hosts and the new server into a separate subnet (network).
C. Add a Bridge and separate the two networks.

Ans:B

212. What must you do to test connectivity on a dial on demand routing (DDR) link?
A. Increate the idle import parameter.
B. Send interesting traffic across the link.
C. Switch
D. Repeater

Ans:B

213. Cisco supports IPX traffic using different encapsulation types can go over the same interface.
A. TRUE
B. FALSE

Ans:A


216. What is the protocol and what is the second part of the following network address: 10.0.0.254 mask 255.0.0.0 ? (Choose all that apply.)
A. IPX MAX address.
B. IP Class C director broadcast.
C. Private IP address node number.
D. Public IP address directed broadcast.
E. Private IP address directed broadcast.

Ans:c

217. Using a class C address you need five subnets with a maximum of 17 hosts on each of these subnets. Which subnet mask would you use?
A. 255.255.255.192
B. 255.255.255.224
C. 255.255.255.240
D. 255.255.255.248

Ans:B

218. Which layer of the OSI model handles data translation, code formatting, and encryption occur?

A. Physical
B. Data link
C. Network
D. Transport
E. Session
F. Presentation

Ans:F

219. RouterA is directly connected to RouterB. On RouterA you shutdown the interface that is going to RouterB (you put it administratively down). If you issue the command show interface on RouterB what output status would you see on the interface that is connected to RouterA?
A. Interface is down, line protocol is down.
B. Interface is down, line protocol is up.
C. Interface is up, line protocol is down.
D. Interface is up, line protocol is up.

Ans:A

220. Using a protocol analyzer you determine your LAN traffic is experiencing congestion. What could be some possible causes for a congested network? (Choose four.)
A. Too many hosts in a broadcast domain.
B. Full Duplex operation.
C. Broadcast storms.
D. Multicasting.
E. Segmentation.
F. Low bandwidth.

Ans:A,C,D,F

221. Looking at this address 255.255.255.255 which one of the following is true?
A. IP, a flooded broadcast.
B. IP, a directed broadcast.
C. IPX, a flooded broadcast.
D. IPX, a remote directed broadcast.

Ans:A

222. IP addresses use hierarchical numbering. What portion of the address that will identify the network number?
A. Subnet Mask.
B. Dots between octets.
C. Class of first octet.
D. Assignments of DHCP.
E. Address Resolution Protocol.

Ans:C

223. Which wide are network technology was designed to use high-performance digital lines and is packet switched?
A. FDDI
B. ISDN
C. ATM
D. Frame Relay

Ans:D

224. Which of the following are functions that occur at the transport layer of the OSI model? (Choose three)
A. Route selection-IP
B. Sliding window-UDP
C. Well known ports-IP
D. Route validation-ICMP
E. Connection oriented-TCP/IP
F. Three way handshake TCP/IP
G. No acknowledgement-UDP

Ans:E,F,G



226. Which wide area network technology was designed to work with traditional POTS lines and provide SOHO?s and users with a higher speed digital dial-up service?
A. Frame relay
B. X.25
C. ATM
D. ISDN

Ans:D

227. Using the following address and subnet mask 195.106.14.0/24 what is the total number of networks and the total number of host per network?

A. 1 network with 254 hosts.
B. 2 networks with 128 hosts.
C. 4 networks with 64 hosts.
D. 6 networks with 30 hosts.

Ans:A

228. Exhibit: You are configuring R2 so that it can communicate with R1 on serial port s0. What encapsulation should you use on s0 to setup this IPX network?

A. SAP
B. HDLC
C. ARPA
D. Novel Ether

Ans:B

230. Exhibit You want to create a sub interface on serial 0 on Router R2. Which of the following is the correct syntax to create this sub interface 2?

A. Interface s0.2 point-to-point.
B. Interface 2s0 point-to-point.
C. Subinterface 2s 0 point-to-point.
D. Interface s0 sub2 point-to-point.
E. Interface s0.1 point-to-point sub2.

Ans:A

231. Exhibit: You are configuring the IPX encapsulation between RouterA and RouterB. This connection will be using the S0/0 port on RouterA to S0/0 on RouterB. Which encapsulation type should be used for the S0/0 port of RouterB?

A. SAP
B. HDLC
C. ARP
D. NOVELLETHER

Ans:B

232. Exhibit:

You are configuring R3 so that it can communicate with R2 on Ethernet port e1. What encapsulation should you use on s0 to setup this IPX network?

A. SAP
B. HDLC
C. ARPA
D. Novell-Ether

Ans:D

233. Which one of the following characteristics about Ethernet Switches is true?

A. Symmetric switching allows connection between ports of unlike bandwidth and does not require memory buffering.
B. Memory buffering is used to prevent a bottleneck when ports of different bandwidth are connected on a symmetric switch.
C. The latency can be reduced if the switch utilizes the store and forward method of switching. Store and forward is better for error detection.
D. The cut-trough method of switching is faster because the switch forwards the packet to the destination as soon as it reads the destination address.

Ans:D

248. Exhibit:

Frame Relay switch maps the DLCIs between Router A to Router B to create a PVC. Which statement below correctly identifies the reference point between the local router and the Frame Relay switch to which it is connected?

A. Locally significant DLCI
B. Globally significant DLCI
C. Locally significant LMI
D. Globally significant LMI

Ans:A

249. You have a leased line configured at a small office that connects to the corporate office. You company would also like to have a backup incase the lease line goes down. Which WAN service would you most likely choose to backup the leased line?
A. Frame relay with SVC
B. Dedicated serial line
C. ISDN with DDR
D. ATM

Ans:C

250. What are the advantages of using the OSI layered network model? (Choose three.)
A. Allows multiple-vendor development through standardization of network components.
B. Creates a list of communication rules that all companies must implement to get onto the Internet.
C. Allows various types of network hardware and software to communicate.
D. Prevents changes in one layer from affecting other layers, so it does not hamper development.
E. Allows companies to develop proprietary interfaces.

Ans:A,c,D

122. You just purchased a brand new Cisco 2621 Router and now would like to configure password protection on this router. Which of the following are true regarding passwords on this router?
A. All passwords can be encrypted.
B. All passwords can be entered using the set-up dialogue.
C. A password can be set before a user can enter the privileged mode.
D. A password can be set for individual lines.
E. TACACS or Radius password authentication can be used.

Ans:A,C,D,E

124. There are three major groups of routing protocols: distance-vector protocols, link-state protocols, and hybrid protocols. Select two valid statements regarding routing protocols? (Choose two)
A. Distance vector protocols send the entire routing table to directly connected neighbors.
B. Link state protocols send the entire routing table to all routers in the network.
C. Distance vector protocols send updates about directory connected neighbors to all networks listed in the routing table.
D. Link state protocols send updates containing the state of their own links to all other routers on the network.

Ans:A,D

125. Which of the following ranges are used for IPX standard access lists?
A. 100 - 199
B. 600 - 699
C. 800 - 899
D. 1000 - 1099

Ans:C

126. ExhibitRouter1#show access-list

Extended IP access list 135 deny tcp any 131.107.0.0 0.0.255.255 eq 53 deny tcp any any eq telnet Router1#show ip interface e0 Ethernet0 is up, line protocol is up Internet address is 172.17.9.60/24 Broad address is 255.255.255.255 Address determined by setup command MTU is 1500 bytes Helper address is not set Directed broadcast forwarding is enabled Outgoing access list is 135 Inbound access list is not set

Proxy ARP is enabled Security level is default Split horizon is enabled Rest of configuration omitted.

You have created an Extended IP access list. Now you apply the access list to Ethernet 0.

What is the result of this action?

A. Only e-mail and telnet access will be permitted out of Ethernet 0.
B. All hosts on the 172.30.24.64 network will be permitted e-mail and telnet access.
C. All TCP protocols will be permitted out of Ethernet 0 except e-mail and telnet.
D. All IP traffic out of Ethernet 0 will be denied.
E. The access-list is numbered incorrectly and will fail.

Ans:D

50. To configure Router1 for operation in a Frame Relay environment, one of the recommended items to configure is the IGRP metric for the speed of the link. What command should you use?
A. Router1(config)# IGRP metric 36k
B. Router1(config)# bandwidth 36
C. Router1(config-if)# metric 36k
D. Router1(config-if)# bandwidth 36

Ans:D

128. You have just created an IP extended access list and now wish to apply this to an interface. Which command will allow you to apply the list to an interface?
A. Permit access-list 101 out
B. Ip access-group 101 out
C. Apply access-list 101 out
D. Access-class 101 out
E. Ip access-list e0 out

Ans:B

129. Which of the following devices operate at Data Link layer of the OSI model? (Choose two)
A. Router
B. SMTP server
C. Transceiver
D. Switch
E. Bridge
F. Hub

Ans:D,E

130. You have been called in to fix a router that is having security issues. The router has an access list configured on it but the list does not seem to be working. What command can you use to see if the access list has been applied to an interface?
A. Show access-list.
B. Show ip route.
C. Show ip interface.
D. Show interface.
E. Show interface list.

Ans:C

131. User Datagram Protocol is a Connectionless transport layer protocol in the TCP/IP protocol stack. UDP is defined in RFC 768. Which of the following are generally considered to be characteristics of UDP? (Choose two.)
A. Non-reliable.
B. Reliable.
C. Less bandwidth-intensive.
D. Handshaking.

Ans:A,C

132. How many bits are used for a MAC address and how is number expressed?
A. 24 bits expression as a decimal number.
B. 24 bits expression as a hexadecimal number.
C. 36 bits expression as a binary number.
D. 48 bits expression as a decimal number.
E. 48 bits expression as a hexadecimal number.

Ans:E

133. Which command will provide you with information regarding the Layer 3 IP address of a directly connected neighbor?

A. Show ip interface
B. Show cdb neighbors
C. Show cdp neighbors detail
D. Show ip route
E. Show ip link status
F. Telnet

Ans:C

134. What is the bit pattern for the first octet of a class B network address 129.107.0.0?
A. 0xxxxxxx
B. 10xxxxxx
C. 110xxxxx
D. 1110xxxx
E. 11110xxx

Ans:B

135. Gail was working on your Cisco router while you were at lunch. Which command will display the last commands Gail entered?
A. Control header.
B. Show buffer.
C. Show history.
D. Show history buffer.

Ans:C

136. You are the network administrator of the ABC Tire Company. You receive a call from a user who is unable to reach a server at a remote server 10.0.5.250/240. Using VNC (Virtual Network Computing) you connect to the user?s computer and discover the following information:Local PC ? 10.0.3.35/24 Default gateway ? 10.0.3.1 Remote server ? 10.0.5.250/240 You then conduct the following tests from the user?s PC: ping 127.0.0.1 ? successful ping 10.0.3.35 ? successful ping 10.0.3.1 ? successful ping 10.0.5.250 ? unsuccessful

Which of the following problems would create the test results listed above?

A. TCP/IP not correctly installed.
B. Local physical layer problem.
C. Local NIC not functioning.
D. Remote physical layer problem.

Ans:D

137. Which are the following are considered ISDN benefits? (Choose four)
A. Full time connectivity across the ISDN supported by Cisco IOS routing using dial on demand routing DDR.
B. Small office and home office sites can be economically supported with ISDN basic rate interface BRI services.
C. ISDN replaces signaling system ss7 in the public switch telephone network PSTN backbone.
D. ISDN can be used as a backup service for a lease line connection between the remote and central offices.
E. Modem racking and cabling can be eliminated by integration with digital modem cards on Cisco IOS network access servers NAS.

Ans:A,B,D,E

61. You are the network administrator of the Sonic Water Company. One of your users is unable to reach the company?s web site that is hosted at a remote site. Looking at the personal computer you discover the following information:Local PC ? 10.0.3.35/24 Default gateway ? 10.0.3.1 Remote server ? 10.0.5.250/240

You then conduct the following tests from the offending local PC: ping 127.0.0.1 ? successful ping 10.0.3.35 ? successful ping 10.0.3.1 ? unsuccessful ping 10.0.5.250 ? unsuccessful

Which of the following problems would create the test results listed above?

A. TCP/IP not correctly installed.
B. Local physical layer problem.
C. Local NIC not functioning.
D. Remote physical layer problem.

Ans:B

Virtual Private Networks

Background

Virtual private networks (VPNs) are a fairly quixotic subject; there is no single defining product, nor even much of a consensus among VPN vendors as to what comprises a VPN. Consequently, everyone knows what a VPN is, but establishing a single definition can be remarkably difficult. Some definitions are sufficiently broad as to enable one to claim that Frame Relay qualifies as a VPN when, in fact, it is an overlay network. Although an overlay network secures transmissions through a public network, it does so passively via logical separation of the data streams.

VPNs provide a more active form of security by either encrypting or encapsulating data for transmission through an unsecured network. These two types of security—encryption and encapsulation—form the foundation of virtual private networking. However, both encryption and encapsulation are generic terms that describe a function that can be performed by a myriad of specific technologies. To add to the confusion, these two sets of technologies can be combined in different implementation topologies. Thus, VPNs can vary widely from vendor to vendor.

This chapter provides an overview of building VPNs using the Layer 2 Tunneling Protocol (L2TP), and it explores the possible implementation topologies.

Layer 2 Tunneling Protocol

The Internet Engineering Task Force (IETF) was faced with competing proposals from Microsoft and Cisco Systems for a protocol specification that would secure the transmission of IP datagrams through uncontrolled and untrusted network domains. Microsoft's proposal was an attempt to standardize the Point-to-Point Tunneling Protocol (PPTP), which it had championed. Cisco, too, had a protocol designed to perform a similar function. The IETF combined the best elements of each proposal and specified the open standard L2TP.

The simplest description of L2TP's functionality is that it carries the Point-to-Point Protocol (PPP) through networks that aren't point-to-point. PPP has become the most popular communications protocol for remote access using circuit-switched transmission facilities such as POTS lines or ISDN to create a temporary point-to-point connection between the calling device and its destination.

L2TP simulates a point-to-point connection by encapsulating PPP datagrams for transportation through routed networks or internetworks. Upon arrival at their intended destination, the encapsulation is removed, and the PPP datagrams are restored to their original format. Thus, a point-to-point communications session can be supported through disparate networks. This technique is known as tunneling.

Operational Mechanics

In a traditional remote access scenario, a remote user (or client) accesses a network by directly connecting a network access server (NAS). Generally, the NAS provides several distinct functions: It terminates the point-to-point communications session of the remote user, validates the identity of that user, and then serves that user with access to the network. Although most remote access technologies bundle these functions into a single device, L2TP separates them into two physically separate devices: the L2TP Access Server (LAS) and the L2TP Network Server (LNS).

As its names imply, the L2TP Access Server supports authentication, and ingress. Upon successful authentication, the remote user's session is forwarded to the LNS, which lets that user into the network. Their separation enables greater flexibility for implementation than other remote access technologies.

Implementation Topologies

L2TP can be implemented in two distinct topologies:

Client-aware tunneling

Client-transparent tunneling

The distinction between these two topologies is whether the client machine that is using L2TP to access a remote network is aware that its connection is being tunneled.

Client-Aware Tunneling

The first implementation topology is known as client-aware tunneling. This name is derived from the remote client initiating (hence, being "aware" of) the tunnel. In this scenario, the client establishes a logical connection within a physical connection to the LAS. The client remains aware of the tunneled connection all the way through to the LNS, and it can even determine which of its traffic goes through the tunnel.

Client-Transparent Tunneling

Client-transparent tunneling features L2TP access concentrators (LACs) distributed geographically close to the remote users. Such geographic dispersion is intended to reduce the long-distance telephone charges that would otherwise be incurred by remote users dialing into a centrally located LAC.

The remote users need not support L2TP directly; they merely establish a point-to-point communication session with the LAC using PPP. Ostensibly, the user will be encapsulating IP datagrams in PPP frames. The LAC exchanges PPP messages with the remote user and establishes an L2TP tunnel with the LNS through which the remote user's PPP messages are passed.

The LNS is the remote user's gateway to its home network. It is the terminus of the tunnel; it strips off all L2TP encapsulation and serves up network access for the remote user.

Adding More Security

As useful as L2TP is, it is important to recognize that it is not a panacea. It enables flexibility in delivering remote access, but it does not afford a high degree of security for data in transit. This is due in large part to the relatively nonsecure nature of PPP. In fairness, PPP was designed explicitly for point-to-point communications, so securing the connection should not have been a high priority.

An additional cause for concern stems from the fact that L2TP's tunnels are not cryptographic. Their data payloads are transmitted in the clear, wrapped only by L2TP and PPP framing. However, additional security may be afforded by implementing the IPSec protocols in conjunction with L2TP. The IPSec protocols support strong authentication technologies as well as encryption.

Summary

VPNs offer a compelling vision of connectivity through foreign networks at greatly reduced operating costs. However, the reduced costs are accompanied by increased risk. L2TP offers an open standard approach for supporting a remote access VPN. When augmented by IPSec protocols, L2TP enables the realization of the promise of a VPN: an open standard technology for securing remote access in a virtually private network.

Review Questions

Q—What is a VPN?

A—A VPN is a generic term that describes any combination of technologies that can be used to secure a connection through an otherwise unsecured or untrusted network.

Q—Explain the difference between L2TP's LAC and LSN.

A—The LAC provides authentication and access concentration for remote users. After a remote user is authenticated, that user's communications session is then forwarded to the LSN, which provides access to that user's home network.

Q—What additional functionality does IPSec offer an L2TP implementation?

A—L2TP's native security mechanisms build on the assumption that the nature of a
point-to-point connection satisfies most of a remote user's security requirements. IPSec complements L2TP by offering a more robust set of technologies for authenticating remote users and for securing data in transit through foreign networks by encrypting data.

Q—What is a tunnel?

A—A tunnel is a logical structure that encapsulates the frame and data of one protocol inside the Payload or Data field of another protocol. Thus, the encapsulated data frame may transit through networks that it would otherwise not be capable of traversing.

For More Information

For more information about L2TP and virtual private networking, refer to the following sources of information:

Black, Ulysses. PPP and L2TP: Remote Access Communications. Prentice Hall: New York, 1999.

Shea, Richard. L2TP Implementation and Operation. Addison Wesley Longman: Boston, 1999.

RFC 2401, "Security Architecture for the Internet Protocol"

RFCs 2402 through 2410 (various IPSec specifications)

RFC 2407, "The Internet IP Security Domain of Interpretation for ISAKMP"

RFC 2408, "Internet Security Association and Key Management Protocol (ISAKMP)"

http://www.cisco.com/univercd/cc/td/doc/product/software/ios120/120newft/120t/120tl/12tpt.htm

http://www.cisco.com/warp/public/707/24.html

Convert an IP Address from Decimal to Binary Form

Convert an IP Address from Decimal to Binary Form

Decimal to binary conversion is an important task to understand in IP addressing and Subnetting. IP addressing is a core functionality of networking today. The knowledge of how to assign an IP address, or determine the network or host ID via a subnet, is vital to any good network engineer. Having a good, solid understanding of the simple things makes more complex tasks easier. Here are steps on how to convert a decimal IP address to its binary form, without memorization.
  1. The first, and probably most important step, is to put down this row of values:
    1286432168421

    In order to remember these values start with the number 1, go from right to left, and double that number seven times. For example, start with 1 on the right side. For your next number, double the 1 (1 x 2 = 2). So, 2 is your next number (remembering to go from right to left). For your third number, double the 2 (2 x 2 = 4); to continue the sequence, double the 4 (4 x 2 = 8). Repeat this process until you’ve doubled your original number, seven times.

    The key to this is that every single one of the values we put in that row are going to have either number 1 or number 0 assigned to it.

    To convert the IP address we will take that string of numbers and start from left to right this time. For each value we ask this question: “Can I subtract this value from the decimal remaining?” If the answer is “NO” then you put a “0” under the binary value, and if the answer is “YES” then you put “1” there.
  2. We take the IP address: 154.31.16.13 and start with the first part, which is 154.

    1. Question: Can I subtract 128 from 154?
      Answer: YES. So we assign 1 to 128.
      1286432168421
      1

    2. Question: Can I subtract 64 from 26?
      Answer: NO. So we assign 0 to 64.
      1286432168421
      10

    3. Question: Can I subtract 32 from 26?
      Answer: NO. So we assign 0 to 32.
      1286432168421
      100

    4. Question: Can I subtract 16 from 26?
      Answer: YES. So we assign 1 to 16.
      1286432168421
      1001

    5. That will give us a remainder of 10. (26-16=10).
      Question: Can I subtract 8 from 10?
      Answer: YES. So we assign 1 to 8.
      1286432168421
      10011

    6. That will give us a remainder of 2. (10-8=2).
      Question: Can I subtract 4 from 2?
      Answer: NO. So we assign 0 to 4.
      1286432168421
      100110

    7. Question: can I subtract 2 from 2?
      Answer: YES. So we assign 1 to 2.
      1286432168421
      1001101

    8. That will give us a remainder of 0. So for the rest of the values in our row, we can assign 0.
      1286432168421
      10011010

      So now we know that a decimal number 154 is 10011010 converted to binary form. To double check, we take the values assigned with 1 and add them together: 128+16+8+2=154
  3. Our next number in the IP address is: 31. So we start with a question from step 2 again

    1. Can I subtract 128 from 31?
      1286432168421
      0

    2. Can I subtract 64 from 31?
      1286432168421
      00

    3. Can I subtract 32 from 31?
      1286432168421
      000

    4. Can I subtract 16 from 31?
      1286432168421
      0001

    5. Can I subtract 8 from 15 (remember, it’s the remainder)?
      1286432168421
      00011

    6. Can I subtract 4 from 7?
      1286432168421
      000111

    7. Can I subtract 2 from 3?
      1286432168421
      0001111

    8. Can I subtract 1 from 1?
      1286432168421
      00011111

      So the decimal number 31 is 00011111 converted to binary form. To double check: 16+8+4+2+1=31

  4. Next number is 16. I will perform the conversion in one step now.
    1286432168421
    00010000

    So the decimal number 16 is 00010000 converted to binary form.
  5. Next number is 13.
    1286432168421
    00001101

    So the decimal number 13 is 00001101 in binary form. To double check: 8+4+1=13

So the IP address of 154.31.16.13 has its binary form equivalent of:

10011010.00011111.00010000.00001101

This is just the start of IP addressing and decimal-to-binary conversions. This is only one of the fundamentals covered in the CompTIA Network+ training video. The following course will teach you everything you need to know about the OSI model, different network protocols, network components, disaster recovery, IP addressing, and much more. It will also prepare you for the Network+ certification through detailed examples and 120 practice exam questions. Here is a direct link to this training video.

CompTIA Network+ Training

If you’re looking for more advanced training with IP Addressing and subnetting, you may be interested in Train Signal's Cisco CCNA Training course.
The CCNA exam requires a near-perfect fluency in conversion, IP addressing, and subnetting. You need to make sure you understand the idea behind decimal- to- binary conversion before you continue to learn subnetting. After that, you need to start practicing so the whole process becomes second nature before you take the exam. Chris Bryant covers this and all the other Cisco Routing and Switching topics required for the CCNA certification; all in 15+ hours of video training.