Updated Feb 08, 2025 Test Engine to Practice Test for 200-301 Valid and Updated Dumps
Exam Questions for 200-301 Updated Versions With Test Engine
NEW QUESTION # 274
Refer to the exhibit.
A network administrator has been tasked with securing VTY access to a router Which access-list entry accomplishes this task?
- A. access-list 101 permit tcp 10.11.0 0.0.0.255 172.16.10 0.0.0.255 eq scp
- B. access-list 101 permit tcp 10.11.0 0.0.0.255 172.16.10 0.0.0.255 eq telnet
- C. access-list 101 permit tcp 10.1.10 0.0.0.255 172.16.10 0.0.0.255 eq ssh
- D. access-list 101 permit tcp 10.1.10 0.0.0.255 172.16.10 0.0.0.255 eq https
Answer: C
NEW QUESTION # 275
Refer to the exhibit.
Which password must an engineer use to enter the enable mode?
- A. default
- B. testing 1234
- C. cisco123
- D. adminadmin123
Answer: B
Explanation:
If neither the enable password command nor the enable secret command is configured, and if there is a line password configured for the console, the console line password serves as the enable password for all VTY sessions -> The "enable secret" will be used first if available, then "enable password" and line password.
NEW QUESTION # 276
Refer to Itie exhibit
A network engineer started to configure port security on a new switch. These requirements must be met:
* MAC addresses must be learned dynamically
* Log messages must be generated without disabling the interface when unwanted traffic is seen Which two commands must be configured to complete this task"? (Choose two)
- A. SW(config.if)sswitchport port-security mac-address 0010.7B84.45E6
- B. SW(ccnfig-if)=switchport port-security violation shutdown
- C. SW(config-if)aswitchport port-security maximum 2
- D. SW(ccnfig-if)=switchport port-security mac-address sticky
- E. SW(confKj-if)=switchport port-security violation restrict
Answer: A
NEW QUESTION # 277
Refer to the exhibit.
Based on the LACP neighbor status, in which mode is the SW1 port channel configured?
- A. active
- B. auto
- C. mode on
- D. passive
Answer: A
Explanation:
Explanation
From the neighbor status, we notice the "Flags" are SP. "P" here means the neighbor is in Passive mode.In order to create an Etherchannel interface, the (local) SW1 ports should be in Active mode.Moreover, the "Port State" in the exhibit is "0x3c" (which equals to "00111100 in binary format).Bit 3 is "1" which means the ports are synchronizing -> the ports are working so the local ports should be in Active mode.
NEW QUESTION # 278
What is a syslog facility?
- A. password that authenticates a Network Management System to receive log messages
- B. host that is configured for the system to send log messages
- C. group of log messages associated with the configured severity level
- D. set of values that represent the processes that can generate a log message
Answer: D
NEW QUESTION # 279
R1 has learned route 10.10.10.0/24 via numerous routing protocols. Which route is installed?
- A. route with the next hop that has the highest IP
- B. route with the lowest administrative distance
- C. route with the shortest prefix length
- D. route with the lowest cost
Answer: B
Explanation:
Section: IP Connectivity
NEW QUESTION # 280
A Cisco IP phone receive untagged data traffic from an attached PC. Which action is taken by the phone?
- A. It drops the traffic
- B. It tags the traffic with the default VLAN
- C. It allows the traffic to pass through unchanged
- D. It tags the traffic with the native VLAN
Answer: C
Explanation:
https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst2960x/software/15-0_2_EX/vlan/configuration_guide/b_vlan_152ex_2960-x_cg/b_vlan_152ex_2960-x_cg_chapter_0110.pdf Untagged traffic from the device attached to the Cisco IP Phone passes through the phone unchanged, regardless of the trust state of the access port on the phone.
NEW QUESTION # 281
Drag and drop the IPv6 address type characteristics from the left to the right.
Answer:
Explanation:
NEW QUESTION # 282
Drag and Drop Question
Drag and drop the statement about AAA services from the left to the corresponding AAA services on the right.
Answer:
Explanation:
NEW QUESTION # 283
Which type of IPv6 address is similar to a unicast address but is assigned to multiple devices on the same network at the same time?
- A. multicast address
- B. anycast address
- C. global unicast address
- D. link-local address
Answer: B
NEW QUESTION # 284
Which command is used to display the collection of OSPF link states?
- A. show ip ospf neighbors
- B. show ip ospf database
- C. show ip ospf link-state
- D. show ip ospf lsa database
Answer: B
Explanation:
Section: IP Connectivity
Explanation:
The "show ip ospf database" command displays the link states. Here is an example:
Here is the lsa database on R2.
R2#show ip ospf database
OSPF Router with ID (2.2.2.2) (Process ID 1)
Router Link States (Area 0)
Link ID ADV Router Age Seq# Checksum Link count2.2.2.2 2.2.2.2 793 0x80000003 0x004F85 210.4.4.4
10.4.4.4 776 0x80000004 0x005643 1111.111.111.111 111.111.111.111 755 0x80000005 0x0059CA
2133.133.133.133 133.133.133.133 775 0x80000005 0x00B5B1 2 Net Link States (Area 0) Link ID ADV Router Age Seq# Checksum10.1.1.1 111.111.111.111 794 0x80000001 0x001E8B10.2.2.3
133.133.133.133 812 0x80000001 0x004BA910.4.4.1 111.111.111.111 755 0x80000001 0x007F1610.4.4.3
133.133.133.133 775 0x80000001 0x00C31F
NEW QUESTION # 285
A frame that enters a switch fails the Frame Check Sequence. Which two interface counters are incremented?
(Choose two)
- A. frame
- B. giants
- C. CRC
- D. input errors
- E. runts
Answer: C,D
Explanation:
Explanation
Whenever the physical transmission has problems, the receiving device might receive a frame whose bits have changed values. These frames do not pass the error detection logic as implemented in the FCS field in the Ethernet trailer. The receiving device discards the frame and counts it as some kind of input error.
Cisco switches list this error as a CRC error. Cyclic redundancy check (CRC) is a term related to how the FCS math detects an error.
The "input errors" includes runts, giants, no buffer, CRC, frame, overrun, and ignored counts.
The output below show the interface counters with the "show interface s0/0/0" command:
NEW QUESTION # 286
Drag and Drop Question
Drag and drop the characteristics of network architectures from the left onto the type of architecture on the right.
Answer:
Explanation:
NEW QUESTION # 287
Lab Simulation 5
All physical cabling between the two switches is installed. Configure the network connectivity between the switches using the designated VLANs and interfaces.
1. Configure VLAN 100 named Compute and VLAN 200 named Telephony where required for each task.
2. Configure Ethernet0/1 on SW2 to use the existing VLAN named Available.
3. Configure the connection between the switches using access ports.
4. Configure Ethernet0/1 on SW1 using data and voice VLANs.
5. Configure Ethemet0/1 on SW2 so that the Cisco proprietary neighbor discovery protocol is turned off for the designated interface only.
Answer:
Explanation:
on sw1
enable
conf t
vlan 100
name Compute
vlan 200
name Telephony
int e0/1
switchport voice vlan 200
switchport access vlan 100
int e0/0
switchport mode access
do wr
on sw2
Vlan 99
Name Available
Int e0/1
Switchport access vlan 99
do wr
NEW QUESTION # 288
Which type of traffic Is sent with pure iPsec?
- A. broadcast packets from a switch that is attempting to locate a MAC address at one of several remote sites
- B. multicast traffic from a server at one site to hosts at another location
- C. unicast messages from a host at a remote site to a server at headquarters
- D. spanning-tree updates between switches that are at two different sites
Answer: C
Explanation:
"The original poster makes a correct observation that EIGRP does not work in a pure IPSEC environment. IPSEC was designed to process unicast traffic.
NEW QUESTION # 289
What is the primary function of a Layer 3 device?
- A. to transmit wireless traffic between hosts
- B. to analyze traffic and drop unauthorized traffic from the Internet
- C. forward traffic within the same broadcast domain
- D. to pass traffic between different networks
Answer: A
NEW QUESTION # 290
Refer to the exhibit.
An engineer is configuring the HO router. Which IPv6 address configuration must be applied to the router fa0'1 interface for the router to assign a unique 64-brt IPv6 address to Itself?
- A. iov6 address 2001 :DB8:0:1:FE80:C601:420F:7/64
- B. ipv6 address 2001:DB8:0:1:C601:42FE:800F:7/64
- C. ipv6 address 2001 :DB8:0:1:FFFF:C601:420F:7/64
- D. ipv6 address 2001:DB8:0:1:C601:42FF:FE0F:7/64
Answer: B
NEW QUESTION # 291
Refer to the exhibit.
Which action is expected from SW1 when the untagged frame is received on the GigabitEthernet0/1 interface?
- A. The frame is processed in VLAN 5.
- B. The frame is dropped
- C. The frame is processed in VLAN 11
- D. The frame is processed in VLAN 1
Answer: A
NEW QUESTION # 292
Refer to the exhibit.
Which switch in this configuration will be elected as the root bridge?
- A. SW2
- B. SW4
- C. SW1
- D. SW3
Answer: D
NEW QUESTION # 293
Refer to the exhibit.
An extended ACL has been configured configuration failed to work as
intended Which two
changes stop outbound traffic on TCP the 10.0.10 0/26 subnet while
still allowing all other traffic? (Choose
two )
- A. The ACL must be configured the Gi0/2 interface inbound on R1
- B. The source and destination IPs must be swapped in ACL 101
- C. Add a "permit ip any any" statement to the begining of ACL 101 for allowed traffic.
- D. The ACL must be moved to the Gi0/1 interface outbound on R2
- E. Add a "permit ip any any" statement at the end of ACL 101 for allowed traffic
Answer: B,E
NEW QUESTION # 294
......
200-301 Exam Dumps - Free Demo & 365 Day Updates: https://www.practicematerial.com/200-301-exam-materials.html
Pass 200-301 Exam with Updated 200-301 Exam Dumps PDF: https://drive.google.com/open?id=1gKvPihXz9oCWgUrJB-bALw16ni0891F2

