QUESTION 3
Cisco Catalyst switches CAT1 and CAT2 have a connection between them using ports FA0/13. An 802.1Q trunk is configured between the two switches. On CAT1, VLAN 10 is chosen as native, but on CAT2 the native VLAN is not specified. What will happen in this scenario? A. 802.1Q giants frames could saturate the link. B. VLAN 10 on CAT1 and VLAN 1 on CAT2 will send untagged frames. C. A native VLAN mismatch error message will appear. D. VLAN 10 on CAT1 and VLAN 1 on CAT2 will send tagged frames. |
問題3
Cisco Catalyst交換機CAT1和CAT2之間, 有個連結使用端口FA0/13。在兩個交換機之間配置一個802.1Q 幹道。CAT1已設定為VLAN 10 ,但CAT2未設定特定VLAN。在這種情況下發生什麼事? A. 802.1Q巨頭幀可以 B. 飽和的鏈接。CAT1和VLAN 1 VLAN 10 CAT2發送未標記的幀。 C.本徵VLAN不匹配的錯誤消息將出現。 D. CAT1和VLAN 1 VLAN 10 CAT2發送標記的幀。 |
答:C
如果兩邊native不匹配的話.switch將報native不匹配的日誌信息 |
QUESTION 29
A network administrator must configure 200 switch ports to accept traffic from only the currently attached host devices. What would be the most efficient way to configure MAC-level security on all these ports? A. Visually verify the MAC addresses and then telnet to the switches to enter the switchport-port security mac-address command. B. Have end users e-mail their MAC addresses. Telnet to the switch to enter the switchport-port security mac- address command. C. Use the switchport port-security MAC address sticky command on all the switch ports that have end devices connected to them. D. Use show mac-address-table to determine the addresses that are associated with each port and then enter the commands on each switch for MAC address port-security. |
問題29
網絡管理員必須配置200個交換機端口,以從目前的連接主機設備接收流量。在這些端口上要具有MAC安全層級的配置,什麼是最有效率的方法? A. 直觀地驗證MAC地址,然後遠程登錄到交換機,進入交換機端口的端口安全mac-address命令。 B. 讓最終用戶E-mail的MAC地址。遠程登錄到交換機,進入交換機端口的端口安全mac-address命令。 C. 將交換機端口安全MAC地址粘命令對所有的交換機端口,連接到他們的終端設備。 D. 顯示MAC地址表來確定與每個端口相關聯的地址,然後輸入下面的命令在每台交換機的MAC地址的端口安全。 |
答: C
考點:有200台主機需要接入,採用什麼方式來增強網絡安全性? A:先驗證mac安全性,然後在交換機上綁定。錯誤,工作量太大 B:用戶發送郵件認證再在交換機上配置,錯誤,不科學。 C:使用port-security,正確。 D:錯誤,工作量太大。 |
QUESTION 49
Which two statements describe the Cisco implementation of VLANs? (Choose two.) A. VLAN 1 is the default Ethernet VLAN. B. CDP advertisements are only sent on VLAN 1002. C. By default, the management VLAN is VLAN 1005. D. By default, the switch IP address is in VLAN 1005. E. VLAN 1002 through 1005 are automatically created and cannot be deleted. |
問題49
哪兩項思科VLANs的敘述正確?(選擇兩項) A. VLAN 1是默認的以太網VLAN。 B. CDP的廣告只發送VLAN 1002。 C. 默認情況下,管理VLAN為VLAN 1005。 D. 默認情況下,交換機的IP地址是在VLAN 1005。 E. VLAN 1002通過1005自動創建和不能被刪除。 |
答:AE
考點:考查vlan知識點。 A:缺省都存在vlan1,端口都屬於vlan1,正確 B:CDP信息只發送到vlan1002,錯誤,vlan1002是fddi網絡的vlan號。 C:缺省情況交換機IP配置在vlan1005,錯誤,vlan1005trnet網絡的vlan號。缺省在vlan1裡面。 D:vlan1002-1005自動生成並不能被刪除,正確,他們都是被保留的特殊vlan。 |
QUESTION 60
What are three advantages of VLANs? (Choose three.) A. VLANs establish broadcast domains in switched networks. B. VLANs utilize packet filtering to enhance network security. C. VLANs provide a method of conserving IP addresses in large networks. D. VLANs provide a low-latency internetworking alternative to routed networks. E. VLANs allow access to network services based on department, not physical location. F. VLANs can greatly simplify adding, moving, or changing hosts on the network. |
問題60
VLANs的三個優點是什麼?(選擇三項) A. VLAN的建立在交換網絡中的廣播域。 B. VLAN的利用包過濾,以提高網絡的安全性。 C. VLAN提供了一個方法保護在大型網絡中的IP地址。 D. VLAN提供低延遲的互聯網絡替代路由網絡。 E. VLAN允許訪問網絡服務部門,而不是物理位置的基礎上。 F. VLAN可以大大簡化添加,移動或更改網絡上的主機。 |
答: AEF
A:VLAN在交換網絡中建立廣播域,正確 B:利用VLAN的數據包過濾,增強網絡的安全性。錯誤,沒有這個特性。 C:提供了在大型網絡中的保護IP地址的方法。錯誤。 D:提供低延遲互聯網絡替代路由網絡。錯誤 E:vlan允許基於邏輯劃分的網絡訪問,不是物理位置。正確。 F:VLAN可以大大簡化添加,移動或更改網絡上的主機。正確。 |
QUESTION 61
An administrator would like to configure a switch over a virtual terminal connection from locations outside of the local LAN. Which of the following are required in order for the switch to be configured from a remote location? (Choose two.) A. The switch must be configured with an IP address, subnet mask, and default gateway. B. The switch must be connected to a router over a VLAN trunk. C. The switch must be reachable through a port connected to its management VLAN. D. The switch console port must be connected to the Ethernet LAN. E. The switch management VLAN must be created and have a membership of at least one switch port. F. The switch must be fully configured as an SNMP agent. |
問題61
管理員想在本地區域網路以外的地方, 以虛擬終端連結配置交換機。以下的選項能從遠端位置進行交換機的配置?(選擇兩項) A. 該交換機必須配置為一個IP地址,子網掩碼和默認網關。 B.開關必須在一個VLAN中繼連接到路由器。 C. 通過一個端口連接到管理VLAN的交換機必須是可達的。 D.交換機的控制台端口必須連接到以太網局域網。 E. 交換機管理VLAN必須創建並有一個成員的至少一個交換機端口。 F.交換機必須配置為一個SNMP代理。 |
答: AC
要想遠程管理VLAN,1、交換機配置IP,2、路由可達。 |
QUESTION 64
Which of the following are benefits of VLANs? (Choose three.) A. They increase the size of collision domains. B. They allow logical grouping of users by function. C. They can enhance network security. D. They increase the size of broadcast domains while decreasing the number of collision domains. E. They increase the number of broadcast domains while decreasing the size of the broadcast domains. F. They simplify switch administration. |
問題64
下列哪項是VLAN的優點?(選擇三項) A. 他們增加衝突域的大小。 B. 它們允許用戶通過邏輯分組的功能。 C.可以增強網絡的安全性。 D. 它們增加了廣播域的大小,同時減少衝突域的數量。 E. 它們增加的數目,同時減少廣播域的廣播域的大小。 F.簡化交換機管理。 |
答:BCE
考查VLAN的特點 A:增加衝突域的大小,錯誤 B:允許邏輯劃分網段,正確 C:增強網絡安全,正確。不同vlan不能直接通信。 D:當減少衝突域時增加廣播域的大小。錯誤 E:減少廣播域的大小時增加了廣播域個數。正確。 F:簡化交換機管理。答非所問。 |
QUESTION 68
Which of the following are true regarding bridges and switches? (Choose two.) A. Bridges are faster than switches because they have fewer ports. B. A switch is a multiport bridge. C. Bridges and switches learn MAC addresses by examining the source MAC address of each frame received. D. A bridge will forward a broadcast but a switch will not. E. Bridges and switches increase the size of a collision domain. |
問題68
關於橋接器和交換機下列哪項是正確?(選擇兩項) A. 橋樑比開關速度更快,因為他們有較少的端口。 B.交換機是一個多端口的網橋 C. 通過檢查源MAC地址,接收到的每一幀,網橋和交換機學習MAC地址。 D.一橋轉 發廣播,但是交換機不會將。 E. 網橋和交換機增加一個衝突域的大小。 |
答: BC
考查網橋和交換機的區別 A:網橋比交換機更快速,因為他們有更少的端口。錯誤 B:交換機是一個多端口網橋。正確 C:通過檢查數據包的source mac學習mac地址,正確 D:網橋轉發廣播包,但交換機不轉發。錯誤 E:網橋和交換機增加衝突域的大小,錯誤。 |
QUESTION 70
Which of the following statements are true regarding bridges and switches? (Choose 3.) A. Switches are primarily software based while bridges are hardware based. B. Both bridges and switches forward Layer 2 broadcasts. C. Bridges are frequently faster than switches. D. Switches have a higher number of ports than most bridges. E. Bridges define broadcast domains while switches define collision domains. F. Both bridges and switches make forwarding decisions based on Layer 2 addresses. |
問題70
下列關於橋接器和交換機的陳述, 何者為真?(選擇3項) A. 開關主要是基於軟件的,而基於硬件的橋樑。 B.網橋和交換機都轉發2層廣播。 C. 橋樑往往快於交換機。 D. 開關有較高的端口數量比大多數的橋樑。 E. 橋定義廣播域,交換機定義衝突域。 F. 網橋和交換機都基於第2層地址做出轉發決定。 |
答:BDF
A:交換機基於軟件,網橋基於硬件,錯誤。都是基於硬件 B:都轉發二層廣播包,正確 C:網橋比交換機快速。錯誤。 D:交換機比網橋具有更多的端口,正確。 E:網橋定義廣播域,交換機定義衝突域,錯誤。 F:基於二層地址轉發數據。正確 |
QUESTION 77
Which are valid modes for a switch port used as a VLAN trunk? (Choose three.) A. transparent B. auto C. on D. desirable E. blocking F. forwarding |
問題77
作為VLAN幹道, 在交換機埠上哪些是有效的模式?(選擇三項) A. transparent B. auto C. on D. desirable E. blocking F. forwarding |
答: BCD
有三種方式建立trunk鏈路auto、on、desirable |
QUESTION 81
The switches shown in the diagram, Core and Core2, are both Catalyst 2950s. The addressing scheme for each company site is as follows: Router Ethernet port - 1st usable address Core - 2nd usable address Core2 - 3rd usable address For this network, which of the following commands must be configured on Core2 to allow it to be managed remotely from any subnet on the network? (Choose three.) A. Core2(config)# interface f0/0 Core2(config-if)# ip address 192.168.1.10 255.255.255.248 B. Core2(config)# interface vlan 1 Core2(config-if)# ip address 192.168.1.11 255.255.255.248 C. Core2(config)# line con 0 Core2(config-line)# password cisco D. Core2 (config)# line vty 0 4 Core2(config-line)# password cisco E. Core2(config)# ip default-gateway 192.168.1.9 F. Core2(config)# ip route 0.0.0.0 0.0.0.0 192.168.1.8 |
問題81
核心和Core2,在該圖中,所示的開關都是催化劑2950s。的解決方案,每個公司網站如下: 路由器的以太網端口-第一個可用地址 的核心-第2個可用的地址 酷睿2 - 3 此網絡的可用地址,下面的命令必須配置酷睿2允許進行遠程管理,從在網絡上的任何子網?(選擇三項) A. Core2(config)# interface f0/0 Core2(config-if)# ip address 192.168.1.10 255.255.255.248 B. Core2(config)# interface vlan 1 Core2(config-if)# ip address 192.168.1.11 255.255.255.248 C. Core2(config)# line con 0 Core2(config-line)# password cisco D. Core2 (config)# line vty 0 4 Core2(config-line)# password cisco E. Core2(config)# ip default-gateway 192.168.1.9 F. Core2(config)# ip route 0.0.0.0 0.0.0.0 192.168.1.8 |
答: BDE
實現遠程管理,需要給交換機配置管理IP,需要路由可達 B:配置管理IP。2層交換機只能在vlan中配置IP D:配置vty密碼 E:配置缺省網關 |