A.A BPDU Guard port should only be configured on ports with PortFast enabled
B.BPDU Guard and PortFast should not be enabled on the same port.
C.BPDU Guard is used to ensure that superior BPDUs are not received on a switch port
D.A BPDU Guard port receiving a BPDU will go into err-disable state
E.A BPDU Guard port receiving a BPDU will be disabled
F.BPDU Guard can be enabled on any switch port
您可能感興趣的試卷
你可能感興趣的試題
A.All traffic is tagged with a specific VLAN ID from the VLAN of the attacker and is now viewable
B.Clients will forward packets to the attacking device, which will in turn send them to the desireddestination but not before recording the traffic patterns
C.All traffic is redirected to the VLAN that the attacker used to flood the CAM table
D.All traffic is flooded out all ports and an attacker is able to capture all data
E.None of the other alternatives apply
A.MAC spoofing
B.VLAN hopping
C.MAC address flooding
D.DHCP flooding
E.Session hijacking
A.Enable BPD guard
B.Disable CDP on ports where it is not necessary
C.Place unused ports in a common unrouted VLAN
D.Prevent automatic trunk configuration
E.Implement port security
Refer to the exhibit. Based upon the configuration, you need to understand why the policy routingmatch counts are not increasing. Which would be the first logical step to take?Select the bestresponse.()
A.Confirm if there are other problematic route-map statements thatprecede divert
B.Check the access list for log hits
C.Check the routing table for 212.50.185.126
D.Remove any two of the set clauses(Multiple set clause entries will cause PBR to use therouting table.)
Study the following graphic carefully Host1 and Host2, which belong to different VLANs, are in thesame subnet. According to the information displayed, which description is correct when trying toping from host to host?()
A.A trunk port should be configured on the link between CK-SW1 and CK-SW2 to pingsuccessfully
B.The two hosts should be in the same VLAN in order to ping successfully
C.A Layer 3 device is a must in order for the ping command to be successful
D.The ping command will be successful without any further configuration changes
Refer to the exhibit. VLAN2, VLAN3, and VLAN10 are configured on the switch D-SW1.Host computers are on VLAN 2 (10.1.2.0), servers are on VLAN 3 (10.1.3.0), and the
management VLAN is on VLAN10 (10.1.10.0). Hosts are able to ping each other but are unable toreach the servers. On the basis of the exhibited output, which configuration solution could rectifythe problem?()
A.Enable IP routing on the switch D-SW1
B.Configure a default route that points toward network 200.1.1.0/24
C.Assign an IP address of 10.1.3.1/24 to VLAN3
D.Configure default gateways to IP address 10.1.2.1 on each host
E.Configure default gateways to IP address 10.1.10.1 on each host
F.Configure default gateways to IP address 200.1.1.2 on each host
Refer to the exhibit. Host A and Host B are connected to the Catalyst 3550 switch and have beenassigned to their respective VLANs. The rest of the 3550 configuration is the default configuration.Host A is able to ping its default gateway, 10.10.10.1, but is unable to ping Host B. Given theoutput displayed in the exhibit, which statement is true?()
A.HSRP must be configured on SW1
B.A separate router is required to support interVLAN routing
C.Interface VLAN 10 must be configured on the SW1 switch
D.The global config command ip routing must be configured on the SW1 switch
E.VLANs 10 and 15 must be created in the VLAN database mode
F.VTP must be configured to support interVLAN routing
A.The access layer is the initial point at which traffic enters the network. Traffic is marked (orremarked) at Layers 2 and 3 by the access switch as it enters the network, or is "trusted" that it isentering the network with the appropriate tag
B.No traffic marking occurs at the core layer. Layer 2/3 QoS tags are trusted from distributionlayer switches and used to prioritize and queue the traffic as it traverses the core
C.Traffic inbound from the access layer to the distribution layer can be trusted or reset dependingupon the ability of the access layer switches. Priority access into the core is provided based onLayer 3 QoS tags
D.IP precedence, DSCP, QoS group, IP address, and ingress interface are Layer 2 characteristics that are set by the access layer as it passes traffic to the distribution layer. Thedistribution layer, once it has made a switching decision to the core layer, strips these off
E.MAC address, Multiprotocol Label Switching (MPLS); the ATM cell loss priority (CLP) bit, theFrame Relay discard eligible (DE) bit, and ingress interface are established by the voicesubmodule (distribution layer) as traffic passes to the core layer
F.The distribution layer inspects a frame to see if it has exceeded a predefined rate of trafficwithin a certain time frame, which is typically a fixed number internal to the switch. If a frame isdetermined to be in excess of the predefined rate limit, the CoS value can be marked up in a waythat results in the packet being dropped
A.QoS classified at layer 3 using IP precedence or DSCP
B.Guaranteed rate service
C.Implemented using FIFO queues
D.All traffic has an equal chance of being dropped
A.Quality of Service (QoS)
B.Intelligent platforms
C.Mobility and scalability
D.Security
E.High availability
最新試題
Drag the DSL local loop topic on the left to the correct descriptions on the right.
Study the exhibit carefully.Routers A and B are customer routers. Routers 1, 2, 3 and 4 are provider routers. The routers areoperating with various IOS versions. Which frame mode MPLS configuration statement is true?()
Which statement correctly describes IPsec VPN backup technology?()
In computer security, AAA stands for authentication, authorization and accounting. Which optionabout the AAA authentication enable default group radius enable command is correct?()
You need to configure a GRE tunnel on a IPSec router. When you are using the SDM to configurea GRE tunnel over IPsec, which two parameters are required when defining the tunnel interfaceinformation?()
Refer to the exhibit. Which two statements about the AAA configuration are true?()
Drag the protocols that are used to distribute MPLS labels from the above to the target area on thebelow.(Not all options will be used)
Drag the correct statements about MPLS-based VPN on the left to the boxes on the right.(Not allstatements will be used)
Drag and drop each management protocol on the above to the correct category on the below.
Study the exhibit carefully. The Cisco IOS IPsec High Availability (IPsec HA) Enhancementsfeature provides an infrastructure for reliable and secure networks to provide transparent availability of the VPN gateways - that is, Cisco IOS Software-based routers. What are the twooptions that are used to provide High Availability IPsec?()