Real Exam Questions 200-301 Dumps Exam Questions in here [Aug-2021]
Get Latest Aug-2021 Conduct effective penetration tests using 200-301
NEW QUESTION 87
In a CDP environment, what happens when the CDP interface on an adjacent device is configured without an IP address?
- A. CDP operates normally, but it cannot provide any information for that neighbor
- B. CDP operates normally, but it cannot provide IP address information for that neighbor
- C. CDP uses the IP address of another interface for that neighbor
- D. CDP becomes inoperable on that neighbor
Answer: B
Explanation:
Section: Network Access
Explanation:
Although CDP is a Layer 2 protocol but we can check the neighbor IP address with the "show cdp neighbor detail" command. If the neighbor does not has an IP address then CDP still operates without any problem. But the IP address of that neighbor is not provided.
NEW QUESTION 88
Drag and drop the threat-mitigation techniques from the left onto the types of threat or attack they mitigate on the right.
Answer:
Explanation:
Explanation
Double-Tagging attack:In this attack, the attacking computer generates frames with two 802.1Q tags. The first tag matches the native VLAN of the trunk port (VLAN 10 in this case), and the second matches the VLAN of a host it wants to attack (VLAN 20).When the packet from the attacker reaches Switch A, Switch A only sees the first VLAN 10 and it matches with its native VLAN 10 so this VLAN tag is removed. Switch A forwards the frame out all links with the same native VLAN 10. Switch B receives the frame with an tag of VLAN 20 so it removes this tag and forwards out to the Victim computer.Note: This attack only works if the trunk (between two switches) has the same native VLAN as the attacker.To mitigate this type of attack, you can use VLAN access control lists (VACLs, which applies to all traffic within a VLAN. We can use VACL to drop attacker traffic to specific victims/servers) or implement Private VLANs.ARP attack (like ARP poisoning/spoofing) is a type of attack in which a malicious actor sends falsified ARP messages over a local area network as ARP allows a gratuitous reply from a host even if an ARP request was not received. This results in the linking of an attacker's MAC address with the IP address of a legitimate computer or server on the network. This is an attack based on ARP which is at Layer 2.Dynamic ARP inspection (DAI) is a security feature that validates ARP packets in a network which can be used to mitigate this type of attack.
NEW QUESTION 89
Refer to the exhibit.
If R1 receives a packet destined to 172.16.1.1, to which IP address does it send the packet?
- A. 192.168.15.5
- B. 192.168.14.4
- C. 192.168.12.2
- D. 192.168.13.3
Answer: B
NEW QUESTION 90
Which two statements about Ethernet standards are true? (choose two)
- A. Ethernet is defined by IEEE standard 802.2
- B. Ethernet is defined by IEEE standard 802.3
- C. Ethernet 10BASE-T dose not support full-duplex.
- D. When an Ethernet network uses CSMA/CA, it terminates transmission as soon ascollision occurs
- E. When an Ethernet network uses CSMA/CD, it terminates transmission as soon ascollision occurs
Answer: B,E
NEW QUESTION 91
Refer to the exhibit.
An engineer booted a new switch and applied this configuration via the console port. Which additional configuration must be applied to allow administrators to authenticate directly to enable privilege mode via Telnet using a local username and password?
- A. Option D
- B. Option C
- C. Option A
- D. Option B
Answer: B
NEW QUESTION 92
Refer to the exhibit.
The network administrator wants VLAN 67 traffic to be untagged between Switch 1 and Switch 2 while all other VLANs are to remain tagged.
Which command accomplishes this task?
- A. switchport access vlan 67
- B. switchport private-vlan association host 67
- C. switchport trunk allowed vlan 67
- D. switchport trunk native vlan 67
Answer: D
NEW QUESTION 93
Which two pieces of information about a Cisco device can Cisco Discovery Protocol communicate? (choose two)
- A. the VTP domain
- B. the spanning-tree priority
- C. the spanning tree protocol
- D. the native VLAN
- E. the trunking protocol
Answer: A,D
NEW QUESTION 94
What is the purpose of a southbound API in a control based networking architecture?
- A. Facilities communication between the controller and the applications
- B. allows application developers to interact with the network
- C. integrates a controller with other automation and orchestration tools.
- D. Facilities communication between the controller and the networking hardware
Answer: D
Explanation:
Explanation
https://www.ciscopress.com/articles/article.asp?p=2995354&seqNum=2#:~:text=The%20Southbound%20Inter The Southbound Interface In a controller-based network architecture, the controller needs to communicate to the networking devices.
NEW QUESTION 95
Which two outcomes are predictable behaviors for HSRP? (Choose two)
- A. The two routers synchronize configurations to provide consistent packet forwarding
- B. The two routers negotiate one router as the active router and the other as the standby router
- C. The two routers share a virtual IP address that is used as the default gateway for devices on the LAN.
- D. The two routed share the same IP address, and default gateway traffic is load-balanced between them
- E. Each router has a different IP address both routers act as the default gateway on the LAN, and traffic is load balanced between them.
Answer: B,C
NEW QUESTION 96
Refer to the exhibit. Router R4 is dynamically learning the path to the server. If R4 is connected to R1 via OSPF Area 20, to R2 via BGP, and to R3 via EIGRP 777, which path is installed in the routing table of R4?
- A. the path through R2. because the IBGP administrative distance is 200
- B. the path through R3. because the EIGRP administrative distance is lower than OSPF and BGP
- C. the path through R1, because the OSPF administrative distance is 110
- D. the path through R2 because the EBGP administrative distance is 20
Answer: D
NEW QUESTION 97
Which two approaches are common when troubleshooting network issues? (Choose two.)
- A. divide and conquer
- B. policing
- C. layer-by-layer
- D. round-robin
- E. top down
Answer: A,E
NEW QUESTION 98
which effect does the switchport trunk native vlan 10 command have?
- A. It prevents traffic on VLAN 1 from passing on the trunk
- B. It configures the interface as a trunk port
- C. It allows traffic from native VLAN 10 on the trunk
- D. It sets VLAN 10 as the native VLAN on the trunk
Answer: D
NEW QUESTION 99
Refer to the exhibit.
An engineer configured NAT translations and has verified that the configuration is correct.
Which IP address is the source IP?
- A. 172.23.104.4
- B. 10.4.4.5
- C. 10.4.4.4
- D. 172.23.103.10
Answer: A
NEW QUESTION 100
Which statement about vlan operation on cisco catalyst switches is true?
- A. broadcast and multicast frames are retransmitted to ports that are configured on different vlan
- B. unkown unicast frames are retransmitted only to the ports that belong to the same vlan
- C. when a packet is received from an 802.1Q trunk, the vlan id can be determined from the source MAC address table.
- D. ports between switches should be configured in access mode so that vlans can span across the ports
Answer: B
NEW QUESTION 101
Refer to the exhibit.
Router R2 is configured with multiple routes to reach network 10 1.1 0/24 from router R1. What protocol is chosen by router R2 to reach the destination network 10.1 1 0/24?
- A. static
- B. eBGP
- C. EIGRP
- D. OSPF
Answer: A
NEW QUESTION 102
Refer to me exhibit.
Which action is taken by the router when a packet is sourced from 10.10.10.2 and destined for 10.10.10.16?
- A. It Queues the packets waiting for the route to be learned.
- B. It floods packets to all learned next hops.
- C. It discards the packets.
- D. It uses a route that is similar to the destination address
Answer: D
NEW QUESTION 103
Refer to the exhibit.
Which switch becomes the root bridge?
- A. S1
- B. S2
- C. S4
- D. S3
Answer: B
NEW QUESTION 104
Drag and drop the TCP/IP protocols from the left onto the transmission protocols on the right
Answer:
Explanation:
NEW QUESTION 105
Which value can you modify to configure a specific interface as the preferred forwarding interface?
- A. The interface number
- B. The hello time
- C. The VLAN priority
- D. The port priority
Answer: D
Explanation:
Section: Network Access
NEW QUESTION 106
Refer to the exhibit.
Which outcome is expected when PC_A sends data to PC_B?
- A. The source MAC address is changed.
- B. The source and destination MAC addresses remain the same.
- C. The destination MAC address is replaced with ffff.ffff.ffff.
- D. The switch rewrites the source and destination MAC addresses with its own.
Answer: B
NEW QUESTION 107
Refer to the exhibit.
What does router R1 use as its OSPF router-ID?
- A. 192.168.0.1
- B. 10.10.10.20
- C. 172.16.15.10
- D. 10.10.1.10
Answer: C
NEW QUESTION 108
When enabled, which feature prevents routing protocols from sending hello messages on an interface?
- A. directed neighbors
- B. OSPF areas
- C. passive-interface
- D. virtual links
Answer: C
NEW QUESTION 109
Which two statements about IPv6 multicast address are true? (choose two)
- A. If the scope parameter is set to 5, the route is local to the node
- B. If the liftime parameter is set to 1, the route is permanent.
- C. They use the prefix FF00::/8
- D. They use the prefix FC80::/8
- E. They identify a group of interfaces on different devices
Answer: C,E
NEW QUESTION 110
How does HSRP provide first hop redundancy?
- A. It load-balances traffic by assigning the same metric value to more than one route to the same destination m the IP routing table.
- B. It forwards multiple packets to the same destination over different routed links n the data path
- C. It load-balances Layer 2 traffic along the path by flooding traffic out all interfaces configured with the same VLAN.
- D. It uses a shared virtual MAC and a virtual IP address to a group of routers that serve as the default gateway for hosts on a LAN
Answer: D
Explanation:
Explanation
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipapp_fhrp/configuration/xe-16/fhp-xe-16-book/fhp-hsrp-mgo
NEW QUESTION 111
Drag the IPv6 DNS record types from the left onto the description on the right.
Answer:
Explanation:
Explanation
https://ns1.com/resources/dns-types-records-servers-and-queries#:~:text=Address%20Mapping%20record%20(A
NEW QUESTION 112
......
Authentic Best resources for 200-301 Online Practice Exam: https://www.surepassexams.com/200-301-exam-bootcamp.html
Get the superior quality 200-301 Dumps with explanations waiting just for you, get it now: https://drive.google.com/open?id=1vs26Ak3uDqd8W1eB2VwrCI2LVH7V8k-H