Question No.171

What is the purpose of the switchport command? Switch(config-if)# switchport port-security maximum 1

Switch(config-if)# switchport port-security mac-address 0018.DE8B.4BF8

  1. It ensures that only the device with the MAC address 0018.DE8B.4BF8 will be able to connect to the port that is being configured.

  2. It informs the switch that traffic destined for MAC address 0018.DE8B.4BF8 should only be sent to the port that is being configured.

  3. It will act like an access list and the port will filter packets that have a source or destination MAC of 0018.DE8B.4BF8.

  4. The switch will shut down the port of any traffic with source MAC address of 0018.DE8B.4BF8.

Correct Answer: A


The first command configurs the maximum number of secure MAC addresses on a port to one. The next command specifies that MAC addresses that are allowed with port security; in this case it is just the one single device MAC. If any other device connects on that port the port will be shut down by the port security feature.

Question No.172

Refer to the exhibit. A network administrator is troubleshooting a connectivity problem on the serial interfaces. The output from the show interfaces command on both routers shows that the

serial interface is up, line protocol is down. Given the partial output for the show running-config in the exhibit, what is the most likely cause of this problem?


  1. The serial cable is bad.

  2. The MTU is incorrectly configured.

  3. The Layer 2 framing is misconfigured.

  4. The IP addresses are not in the same subnet.

Correct Answer: C


Here we see that Rtr3 is configured to use PPP encapsulation, but Rtr1 has not been configured for any kind of encapsulation. The default on Cisco router serial interfaces is HDLC, not PPP, so there is an encapsulation mismatch.

Question No.173

Refer to the exhibit. Host A can communicate with Host B but not with Hosts C or D. How can the network administrator solve this problem?


  1. Configure Hosts C and D with IP addresses in the network.

  2. Install a router and configure a route to route between VLANs 2 and 3.

  3. Install a second switch and put Hosts C and D on that switch while Hosts A and B remain on the

    original switch.

  4. Enable the VLAN trunking protocol on the switch.

Correct Answer: B


Two VLANs require a router in between otherwise they cannot communicate. Different VLANs and different IP subnets need a router to route between them.

Question No.174

Refer to the exhibit. For security reasons, information about RTA, including platform and IP addresses, should not be accessible from the Internet. This information should, however, be accessible to devices on the internal networks of RTA. Which command or series of commands will accomplish these objectives?


  1. RTA(config)#no cdp run

  2. RTA(config)#no cdp enable

  3. RTA(config)#interface s0/0 RTA(config-if)#no cdp run

  4. RTA(config)#interface s0/0 RTA(config-if)#no cdp enable

Correct Answer: D

Explanation: http://www.cisco.com/en/US/tech/tk962/technologies_tech_note09186a00801aa000.shtml# topicenab

When CDP is enabled globally using the cdp run command, it is enabled by default on all supported interfaces (except for Frame Relay multipoint subinterfaces) to send and receive CDP information. You can disable CDP on an interface that supports CDP with the no cdp enable command.

Router#show cdp neighbors

Capability Codes: R – Router, T – Trans Bridge, B – Source Route Bridge S – Switch, H – Host, I – IGMP, r – Repeater



On this router, CDP is enabled on Serial 1 and Ethernet 0 interfaces. Disable CDP on the Serial 1 interface and verify if the neighbor device is discovered on the serial 1 interface, as this output shows:

Router#configure terminal

Enter configuration commands, one per line. End with CNTL/Z. Router(config)#interface s1

Router(config-if)#no cdp enable Router(config-if)# Z

Router#4w5D. %SYS-5-CONFIG_I: Configured from console by console

Question No.175

Refer to the exhibit. A person is trying to send a file from a host on Network A of the JAX Company to a server on Network Z of the XYZ Company. The file transfer fails. The host on Network A can communicate with other hosts on Network A. Which command, issued from router RTA, would be the most useful for troubleshooting this problem?


  1. show flash:

  2. show history

  3. show version

  4. show interfaces

  5. show controllers serial

Correct Answer: D


The most useful thing to check on RTA would be the show interfaces command to see if the interface toward the WAN link is up. The most likely scenario is that the local LAN interface is up, but the other interface toward the XYZ company is down.

Question No.176

Refer to the exhibit. Why did the device return this message?


  1. The command requires additional options or parameters

  2. There is no show command that starts with ru.

  3. The command is being executed from the wrong router mode.

  4. There is more than one show command that starts with the letters ru.

Correct Answer: D


Answer D is correct because when you type the incomplete command it will not autocomplete if there is more than one option for completing the command. In this case, there is another command that also starts with quot;show ruquot;

Question No.177

Refer to the exhibit. Serial 0/0 does not respond to a ping request from a host on the FastEthernet 0/0 LAN. How can this problem be corrected?


  1. Enable the Serial 0/0 interface.

  2. Correct the IP address for Serial 0/0.

  3. Correct the IP address for FastEthernet 0/0

  4. Change the encapsulation type on Serial 0/0

  5. Enable autoconfiguration on the Serial 0/0 interface

Correct Answer: A


Serial 0/0 interface is administratively down therefore, you will have to run the quot;no shutdownquot; command to enable the interface for data.

Question No.178

Refer to the exhibit. A network administrator has configured a Catalyst 2950 switch for remote management by pasting into the console the configuration commands that are shown in the exhibit. However, a Telnet session cannot be successfully established from a remote host. What

should be done to fix this problem?


  1. Change the first line to interface fastethernet 0/1.

  2. Change the first line to interface vlan 0/1.

  3. Change the fifth line to ip default-gateway

  4. Change the fifth line to ip route

  5. Change the sixth line to line con 0.

Correct Answer: C


The default gateway must reside on the same IP subnet as the device. Here, the subnet mask for the VLAN interface is /228. Only choice C will fix this issue, as then the default gateway is on the same subnet as the 2950.

Question No.179

Refer to the exhibit. A network technician is asked to design a small network with redundancy. The exhibit represents this design, with all hosts configured in the same VLAN. What conclusions can be made about this design?


  1. This design will function as intended.

  2. Spanning-tree will need to be used.

  3. The router will not accept the addressing scheme.

  4. The connection between switches should be a trunk.

  5. The router interfaces must be encapsulated with the 802.1Q protocol.

Correct Answer: C


The proposed addressing scheme is on the same network. Cisco routers will not allow you to assign two different interfaces to be on the same IP subnet.

Question No.180

Refer to the exhibit. The network administrator made the entries that are shown and then saved the configuration. From a console connection, what password or password sequence is required for the administrator to access privileged mode on Router1?


  1. cisco

  2. sanfran

  3. sanjose

  4. either cisco or sanfran

  5. either cisco or sanjose

  6. sanjose and sanfran

Correct Answer: B


The enable secret password takes precedence over the enable password, so sanfran will be used.

