2021 200-301 Premium Files Test pdf - Free Dumps Collection
Get ready to pass the 200-301 Exam right now using our CCNA Exam Package
IP Services
This area measures a student's ability to perform the following:
- Explaining the role of DNS and DHCP within the network;
- Explaining the role of SNMP as part of network operations;
- Describing the function and capabilities of TFTP/FTP within the network.
- Configuring as well as verifying DHCP client & relay;
- Deploying NTP operating in both a client and server mode;
- Configuring and verifying inside source NAT using static and pools 2019 Cisco Systems Inc.;
- Configuring network devices for remote access using SSH;
NEW QUESTION 124
Refer to the exhibit.
What two conclusions should be made about this configuration? (Choose two )
- A. The root port is FastEthernet 2/1
- B. The designated port is FastEthernet 2/1
- C. The spanning-tree mode is Rapid PVST+
- D. The spanning-tree mode is PVST+
- E. This is a root bridge
Answer: A,C
NEW QUESTION 125
A corporate office uses four floors in a building
* Floor 1 has 24 users
* Floor 2 has 29 users
* Floor 3 has 28 users
* Floor 4 has 22 users
Which subnet summarizes and gives the most efficient distribution of IP addresses for the router configuration?
- A. 192.168.0.0.24 as summary and 192.168.0.0/28 for each floor
- B. 192.168.0.0/26 as summary and 192.168.0.0/29 for each floor
- C. l92.168.0.0/25 as summary and 192.168.0.0/27 for each floor
- D. 192.168.0.0/23 as summary and 192.168.0.0/25 for each floor
Answer: C
NEW QUESTION 126
What protocol allows an engineer to back up 20 network router configurations globally while using the copy function?
- A. TCP
- B. SNMP
- C. SMTP
- D. FTP
Answer: B
NEW QUESTION 127
Refer to the exhibit.
An engineer is required to verify that the network parameters are valid for the users wireless LAN connectivity on a /24 subnet. Drag and drop the values from the left onto the network parameters on the right. Not all values are used.
Answer:
Explanation:

NEW QUESTION 128
Refer to the exhibit.
The New York router is configured with static routes pointing to the Atlanta and Washington sites. Which two tasks must be performed so that the Serial0/0/0 interfaces on the Atlanta and Washington routers can reach one another?
(Choose two.)
- A. Configure the ipv6 route 2012::/126 2023::2 command on the Washington router
- B. Configure the ipv6 route 2012::/126 2023::1 command on the Washington router
- C. Configure the ipv6 route 2023::/126 2012::1 command on the Atlanta router
- D. Configure the ipv6 route 2023::/126 2012::2 command on the Atlanta router
- E. Configure the ipv6 route 2012::/126 s0/0/0 command on the Atlanta router
Answer: A,D
Explanation:
Explanation
The short syntax of static IPv6 route is:ipv6 route <destination-IPv6-address> {next-hop-IPv6-address | exit-interface}
NEW QUESTION 129
Which three features are represented by the letter A in AAA authentication? (choose three)
- A. accessibility
- B. accountability
- C. authentication
- D. authority
- E. authorization
- F. accounting
Answer: C,E,F
NEW QUESTION 130
Refer to the exhibit. After you apply the given configuration to arouter, the DHCP clients behind the device connot communicate with hosts outside of their subnet.
Which action is most likely to correct the problem?
- A. Configure the dns server on the same subnet as the clients
- B. Correct the subnet mask
- C. Activate the dhcp pool
- D. configure the default gateway
Answer: D
NEW QUESTION 131
Which two statements about the successor and feasible successor are true? (Choose two)
- A. The successor is the primary route
- B. The feasible successor has a lower metric than the successor
- C. The successor is stored in the routing table
- D. The feasible successor is stored in both the topology table and the routing table
- E. The successor is the secondary route
Answer: A,C
NEW QUESTION 132
Refer to the exhibit. Router R1 is running three different routing protocols. Which route characteristic is used by the router to forward the packet that it receives for destination IP 172.16.32.1?
- A. metric
- B. cost
- C. administrative distance
- D. longest prefix
Answer: D
Explanation:
Section: IP Connectivity
NEW QUESTION 133
Refer to the exhibit.
An engineer is tasked with verifying network configuration parameters on a client workstation to report back to the team lead. Drag and drop the node identifiers from the left onto the network parameters on the right.
Answer:
Explanation:

NEW QUESTION 134
Drag and drop the network protocols from the left onto the correct transport services on the right.
Answer:
Explanation:

NEW QUESTION 135
Refer to the topology shown in the exhibit.
Which ports will be STP designated ports if all the links are operating at the same bandwidth? (Choose three.)
- A. Switch C - Fa0/1
- B. Switch B - Fa0/0
- C. Switch B - Fa0/1
- D. Switch C - Fa0/0
- E. Switch A - Fa0/1
- F. Switch A - Fa0/0
Answer: B,C,E
NEW QUESTION 136
Which action is taken by switch port enabled for PoE power classification override?
- A. If a switch determines that a device is using less than the minimum configured power, it assumes the device has failed and disconnects it.
- B. If a monitored port exceeds the maximum administrative value for power, the port is shutdown and err- disabled.
- C. As power usage on a PoE switch port is checked, data flow to the connected device is temporarily paused.
- D. When a powered device begins drawing power from a PoE switch port, a syslog message is generated.
Answer: B
Explanation:
Section: Network Fundamentals
Explanation:
PoE monitoring and policing compares the power consumption on ports with the administrative maximum value (either a configured maximum value or the port's default value). If the power consumption on a monitored port exceeds the administrative maximum value, the following actions occur:
- A syslog message is issued.
- The monitored port is shut down and error-disabled.
- The allocated power is freed.
Reference: https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst6500/ios/12-2SX/configuration/guide/ book/power_over_ethernet.pdf
NEW QUESTION 137
Refer to the exhibit.
A packet is being sent across router R1 to host 172.16.0.14. What is the destination route for the packet?
- A. 209.165.200.246 via Serial0/1/0
- B. 209.165.200.254 via Serial0/0/1
- C. 209.165.200.250 via Serial0/0/0
- D. 209.165.200.254 via Serial0/0/0
Answer: A
NEW QUESTION 138
Which feature or protocol determines whether the QOS on the network is sufficient to support IP services?
- A. EEM
- B. IP SLA
- C. CDP
- D. LLDP
Answer: B
Explanation:
IP SLA allows an IT professional to collect information about network performance in real time.
Therefore it helps determine whether the QoS on the network is sufficient for IP services or not.
Cisco IOS Embedded Event Manager (EEM) is a powerful and flexible subsystem that provides real-time network event detection and onboard automation. It gives you the ability to adapt the behavior of your network devices to align with your business needs.
NEW QUESTION 139
In a CDP environment, what happens when the CDP interface on an adjacent device is configured without an IP address?
- A. CDP becomes inoperable on that neighbor
- B. CDP operates normally,but it cannot provide IP address information for that neighbor
- C. CDP uses the IP address of another interface for that neighbor
- D. CDP operates normally,but it cannot provide any information for that neighbor
Answer: B
Explanation:
Although CDP is a Layer 2 protocol but we can check the neighbor IP address with the "show cdp neighbor detail" command. If the neighbor does not has an IP address then CDP still operates without any problem. But the IP address of that neighbor is not provided.
NEW QUESTION 140
What is the purpose of traffic shaping?
- A. to provide fair queuing for buffered flows
- B. to limit the bandwidth that a flow can use
- C. to be a marking mechanism that identifies different flows
- D. to mitigate delays over slow links
Answer: B
Explanation:
Section: IP Services
Explanation:
The primary reasons you would use traffic shaping are to control access to available bandwidth, to ensure that traffic conforms to the policies established for it, and to regulate the flow of traffic in order to avoid congestion that can occur when the sent traffic exceeds the access speed of its remote, target interface.
Reference: Cisco IOS 12.0 Quality of Service, page 94
NEW QUESTION 141
Which result occurs when PortFast is enabled on an interface that is connected to another switch?
- A. Spanning tree may fail to detect a switching loop in the network that causes broadcast storms.
- B. After spanning tree converges, PortFast shuts down any port that receives BPDUs.
- C. VTP is allowed to propagate VLAN configuration information from switch to switch automatically.
- D. Root port choice and spanning tree recalculation are accelerated when a switch link goes down.
Answer: A
Explanation:
Section: Network Access
NEW QUESTION 142
Drag and drop the threat-mitigation techniques from the left onto the types of threat or attack they mitigate on the right.
Answer:
Explanation:
Explanation:
When the packet from the attacker reaches Switch A, Switch A only sees the first VLAN 10 and it matches with its native VLAN 10 so this VLAN tag is removed. Switch A forwards the frame out all links with the same native VLAN 10. Switch B receives the frame with an tag of VLAN 20 so it removes this tag and forwards out to the Victim computer.
Note: This attack only works if the trunk (between two switches) has the same native VLAN as the attacker.
To mitigate this type of attack, you can use VLAN access control lists (VACLs, which applies to all traffic within a VLAN. We can use VACL to drop attacker traffic to specific victims/servers) or implement Private VLANs.
ARP attack (like ARP poisoning/spoofing) is a type of attack in which a malicious actor sends falsified ARP messages over a local area network as ARP allows a gratuitous reply from a host even if an ARP request was not received. This results in the linking of an attacker's MAC address with the IP address of a legitimate computer or server on the network. This is an attack based on ARP which is at Layer 2.
Dynamic ARP inspection (DAI) is a security feature that validates ARP packets in a network which can be used to mitigate this type of attack.
NEW QUESTION 143
Refer to the exhibit.
Which configuration on RTR-1 denies SSH access from PC-1 to any RTR-1 interface and allows all other traffic?
- A. access-list 100 deny tcp host 172.16.1.33 any eq 23 access-list 100 permit ip any any line vty 0 15 ip access-group 100 in
- B. access-list 100 deny tcp host 172.16.1.33 any eq 22 access-list 100 permit ip any any interface GigabitEthernet0/0 ip access-group 100 in
- C. access-list 100 deny tcp host 172.16.1.33 any eq 22 access-list 100 permit ip any any line vty 0 15 ip access-group 100 in
- D. access-list 100 deny tcp host 172.16.1.33 any eq 23 access-list 100 permit ip any any interface GigabitEthernet0/0 ip access-group 100 in
Answer: C
NEW QUESTION 144
A frame that enters a switch fails the Frame Check Sequence. Which two interface counters are incremented?
(Choose two)
- A. CRC
- B. runts
- C. giants
- D. frame
- E. input errors
Answer: A,E
Explanation:
Explanation
Whenever the physical transmission has problems, the receiving device might receive a frame whose bits have changed values. These frames do not pass the error detection logic as implemented in the FCS field in the Ethernet trailer. The receiving device discards the frame and counts it as some kind of input error.
Cisco switches list this error as a CRC error. Cyclic redundancy check (CRC) is a term related to how the FCS math detects an error.
The "input errors" includes runts, giants, no buffer, CRC, frame, overrun, and ignored counts.
The output below show the interface counters with the "show interface s0/0/0" command:
NEW QUESTION 145
What benefit does controller-based networking provide versus traditional networking?
- A. combines control and data plane functionality on a single device to minimize latency
- B. allows configuration and monitoring of the network from one centralized point
- C. provides an added layer of security to protect from DDoS attacks
- D. moves from a two-tier to a three-tier network architecture to provide maximum redundancy
Answer: B
Explanation:
Section: Automation and Programmability
NEW QUESTION 146
Drag drop the descriptions from the left onto the correct configuration-management technologies on the right.
Answer:
Explanation:
Explanation
The focus of Ansible is to be streamlined and fast, and to require no node agent installation.
Thus, Ansible performs all functions over SSH. Ansible is built on Python, in contrast to the Ruby foundation of Puppet and Chef.
TCP port 10002 is the command port. It may be configured in the Chef Push Jobs configuration file .
This port allows Chef Push Jobs clients to communicate with the Chef Push Jobs server.
Puppet is an open-source configuration management solution, which is built with Ruby and offers custom Domain Specific Language (DSL) and Embedded Ruby (ERB) templates to create custom Puppet language files, offering a declarative-paradigm programming approach.
A Puppet piece of code is called a manifest, and is a file with .pp extension.
NEW QUESTION 147
......
Certification Path
200-301 CCNA Exam: Cisco Certified Network Associate is a fundamental exam. Successful completion by candidates will allow them to achieve Cisco certified Network Associate status.
What's Next Step?
The CCNA certification is of the associate level, so there's enough ground to advance your knowledge and skills. After passing 200-301 exam and obtaining the certificate, you can select advanced-level learning paths that align with your career goals. The most suitable option is always the professional-level certifications, specifically the new CCNP Enterprise. Check out the Cisco webpage to find out more information about the whole career path.
Master 2021 Latest The Questions CCNA and Pass 200-301 Real Exam!: https://www.vce4dumps.com/200-301-valid-torrent.html
A fully updated 2021 200-301 Exam Dumps exam guide from training expert VCE4Dumps: https://drive.google.com/open?id=1i9_YDph2GkjcLQnEa4XB4Do-UtXr-8us