CCNP Switch Flashcards
Refer to the exhibit.
Why are users from VLAN 100 unable to ping users on VLAN 200?
Trunking must be enabled on Fa0/1.
Which statement is true about RSTP topology changes?
Only non-edge ports moving to the forwarding state generate a TC BPDU
Refer to the exhibit.
The link between switch SW1 and switch SW2 is configured as a trunk, but the trunk failed to
establish connectivity between the switches. Based on the configurations and the error messages
received on the console of SW1, what is the cause of the problem?
The two ends of the trunk have different native VLAN configurations.
When you create a network implementation for a VLAN solution, what is one procedure that you
should include in your plan?
Perform an incremental implementation of components.
You have just created a new VLAN on your network. What is one step that you should include in
your VLAN-based implementation and verification plan?
Verify that the VLAN was added on all switches with the use of the show vlan command.
Which two statements describe a routed switch port on a multilayer switch? (Choose two.)
The port is not associated with any VLAN.
The routed switch port is used when a switch has only one port per VLAN or subnet.
On a multilayer Cisco Catalyst switch, which interface command is used to convert a Layer 3
interface to a Layer 2 interface?
switchport
Refer to the exhibit.
All network links are FastEthernet. Although there is complete connectivity throughout the network,
Front Line users report that they experience slower network performance when accessing the
server farm than the Reception office experiences. Which two statements are true? (Choose two.)
Changing the bridge priority of S1 to 36864 would improve network performance.
Changing the bridge priority of S3 to 4096 would improve network performance.
Refer to the exhibit.
#interface FastEthernet 0/13 #channel-group 1 mode desirable
What does the command channel-group 1 mode desirable do?
enables PAgP unconditionally
Refer to the exhibit.
Which two statements are true? (Choose two.)
Interface gigabitethernet 0/1 does not appear in the show vlan output because it is configured
as a trunk interface.
Traffic on VLAN 2 that is sent out gigabitethernet 0/1 will have an 802.1q header applied.
Refer to the exhibit and the partial configuration of switch SW_A and SW_B.
STP is configured on all switches in the network. SW_B receives this error message on the
console port:
00:06:34: %CDP-4-DUPLEX_MISMATCH: duplex mismatch discovered on FastEthernet0/5 (not
half duplex), with SW_A FastEthernet0/4 (half duplex), with TBA05071417 (Cat6K-B) 0/4 (half
duplex).
What is the possible outcome of the problem?
Interface Fa 0/6 on switch SW_B will transition to a forwarding state and create a bridging loop.
What is the result of entering the command port-channel load-balance src-dst-ip on an
EtherChannel link?
Packets are distributed across the ports in the channel based on both the source and
destination IP addresses
Which statement about the Port Aggregation Protocol is true?
Configuration changes made on the port-channel interface apply to all physical ports assigned
to the port-channel interface
Refer to the Exhibit.
For the configuration shown, which is the recommended method of providing interVLAN routing?
configure SVIs on the distribution switches
Under what circumstances should an administrator prefer local VLANs over end-to-end VLANs?
Eighty percent of traffic on the network is destined for Internet sites.
What are some virtues of implementing end-to-end VLANs? (Choose two)
Users are grouped into VLANs independent of a physical location
Each VLAN has a common set of security and resource requirements for all members.
Which of the following statements is true about the 80/20 rule (Select all that apply)?
no more than 20 percent of the network traffic should be able to move across a backbone
80 percent of the traffic on a network segment should be local
What are three results of issuing the switchport host command? (Choose three.) Select 3
response(s).
enables PortFast
disables trunking
disables EtherChannel
Given the configurations on SwitchA and SwitchB, which statement is true?
The link is not a trunk link so both interfaces must be on the same VLAN and only that single
VLAN is transmitted across the link.
Given the configurations on SwitchA and SwitchB, which two statements are true? (Choose two.)
The trunk is currently using the 802.1q trunking protocol.
By default, all VLANs will be transmitted across this trunk.
A network administrator enters the following switch commands:
Switch(config)#interface range fa0/0-5
Switch(config-if-range)#switchport access vlan 2
What is the result of these commands?
One new vlan is created with the vlan number 2
When a VLAN port configured as a trunk receives an untagged frame, what will happen?
The frame will be processed as a native VLAN frame
By default, which statement is correct when an IEEE 802.1Q trunk port receives an untagged
frame?
The frame is considered in the native VLAN and forwarded to the ports associated with that
VLAN.
Refer to the exhibit.
The ping command will be successful without any further configuration changes.
Refer to the exhibit. VLAN 1 and VLAN 2 are configured on the trunked links between Switch A
and Switch B. Port Fa 0/2 on Switch B is currently in a blocking state for both VLANs. What
should be done to load balance VLAN traffic between Switch A and Switch B?
Lower the port priority for VLAN 1 on port 0/2 for Switch A
Refer to the exhibit.
Devices connected to interfaces FastEthernet3/1 and FastEthernet3/2 are sending BPDUs with
a superior root bridge parameter and no traffic is forwarded across the ports. After the inaccurate
BPDUs have been stopped, the interfaces automatically recover and resume normal operation
What are three results of issuing the switchport host command? (Choose three.)
disables EtherChannel
enables PortFast
disables trunking
Refer to the exhibit.
All links in this network are layer 2, fast Ethernet 100 Mb/s and operating as trunks. After a failure,
the link between ASW-1 and DSW-1 has incorrectly come back up at 10Mb/s although it is
connected.
Which one of the following will occur as a result of this failure?
ASW-1 will block Fa0/23 in order to maintain the shortest path to the root bridge DSW-1
What is the result of entering the command spanning-tree loopguard default?
The command changes the status of loop guard from the default of disabled to enabled.
What is the effect of applying the switchport trunk encapsulation dot1q command to a port on a
Cisco Catalyst switch?
The interface supports the reception of tagged and untagged traffic.
Refer to the exhibit.
Switch S1 has been configured with the command spanning-tree mode rapid-pvst. Switch S3 has
been configured with the command spanning-tree mode mst. Switch S2 is running the IEEE
802.1D instance of Spanning Tree. What is the result?
Switches S1, S2, and S3 can pass traffic between themselves.
Which statement about 802.1Q trunking is true?
In 802.1Q trunking, all VLAN packets are tagged on the trunk link, except the native VLAN
Refer to the exhibit.
Which three statements are true? (Choose three.)
A trunk link will be formed.
The native VLAN for switch B is VLAN 1.
DTP packets are sent from switch B
The Company LAN is becoming saturated with broadcasts and multicast traffic. What could you
do to help a network with many multicasts and broadcasts?
Creating smaller broadcast domains by implementing VLANs
You are the network administrator tasked with designing a switching solution for the Company
network. Which of the following statements describing trunk links are INCORRECT? (Select all
that apply)
The trunk link belongs to a specific VLAN.
Multiple trunk links are used to connect multiple end user devices.
A trunk link only supports native VLAN.
Trunk links use 802.10 to identify a VLAN.
Which of the following specifications is a companion to the IEEE 802.1w Rapid Spanning Tree
Protocol (RSTP) algorithm, and warrants the use multiple spanning-trees?
IEEE 802.1s (MST)
Which of the following specification will allow you to: associate VLAN groups to STP instances so
you can provide multiple forwarding paths for data traffic and enable load balancing?
IEEE 802.1s (MST)
Which two statements correctly describe VTP? (Choose two.)
Transparent mode always has a configuration revision number of 0.
Client mode synchronizes its VLAN database from VTP advertisements.
Which two DTP modes permit trunking between directly connected switches? (Choose two.)
dynamic desirable (VTP domain A) to dynamic desirable (VTP domain A)
nonegotiate (VTP domain A) to nonegotiate (VTP domain B)
Which two RSTP port roles include the port as part of the active topology? (Choose two.)
root
designated
Which two statements correctly describe characteristics of the PortFast feature? (Choose two.)
PortFast can also be configured on trunk ports
PortFast is used for STP and RSTP host ports
Which statement correctly describes the Cisco implementation of RSTP?
RSTP is enabled globally and uses existing STP configuration.
You are the administrator of a switch and currently all host-connected ports are configured with the
portfast command. You have received a new directive from your manager that states that, in the
future, any host-connected port that receives a BPDU should automatically disable PortFast and
begin transmitting BPDUs. Which command will support this new requirement?
Switch(config)#spanning-tree portfast bpdufilter default
A port in a redundant topology is currently in the blocking state and is not receiving BPDUs. To
ensure that this port does not erroneously transition to the forwarding state, which command
should be configured?
Switch(config)#spanning-tree loopguard default
Which command can be issued without interfering with the operation of loop guard?
Switch(config-if)#switchport mode trunk
Which statement is a characteristic of multi-VLAN access ports?
The port hardware is set as an 802.1Q trunk.
Which two statements are true about recommended practices that are to be used in a local VLAN
solution design where layer 2 traffic is to be kept to a minimum? (Choose two.)
Routing may be performed at all layers but is most commonly done at the core and distribution
layers.
VLANs should be local to a switch.
Refer to the exhibit.
BPDUGuard is enabled on both ports of SwitchA. Initially, LinkA is connected and forwarding
traffic. A new LinkB is then attached between SwitchA and HubA. Which two statements about the
possible result of attaching the second link are true? (Choose two.)
One or both of the two switch ports attached to the hub goes into the err-disabled state when a
BPDU is received
A heavy traffic load could cause BPDU transmissions to be blocked and leave a switching loop.
What action should a network administrator take to enable VTP pruning on an entire management
domain?
Enable VTP pruning on a VTP server in the management domain
How does VTP pruning enhance network bandwidth?
by reducing unnecessary flooding of traffic to inactive VLANs
Refer to the exhibit.
The network operations center has received a call stating that users in VLAN 107 are unable to
access resources through router 1. What is the cause of this problem?
VTP is pruning VLAN 107.
What two things occur when an RSTP edge port receives a BPDU? (Choose two.)
The switch generates a Topology Change Notification BPDU.
The port becomes a normal STP switch port
What is the effect of configuring the following command on a switch?
Switch(config) # spanning-tree portfast bpdufilter default
If BPDUs are received by a port configured for PortFast, then PortFast is disabled and the
BPDUs are processed normally.
Which statement correctly describes enabling BPDU guard on an access port that is also enabled
for PortFast?
If the port receives a BPDU, it is placed into the error-disable state.
Which three items are configured in MST configuration submode? (Select three)
Region name
Configuration revision number
VLAN instance map
By default, all VLANs will belong to which MST instance when using Multiple STP?
MST00
Which MST configuration statement is correct?
MST configurations can be propagated to other switches using VTP.
Which trunking protocol inserts a four byte tag into the Ethernet frame and recalculates the CRC
value?
802.1Q
Which description correctly describes a MAC address flooding attack?
Frames with unique, invalid source MAC addresses flood the switch and exhaust CAM table
space. The result is that new entries cannot be inserted because of the exhausted CAM table
space, and traffic is subsequently flooded out all ports.
Refer to the exhibit.
An attacker is connected to interface Fa0/11 on switch A-SW2 and attempts to establish a DHCP
server for a man-in-middle attack. Which recommendation, if followed, would mitigate this type of
attack?
All switch ports connecting to hosts in the Building Access block should be configured as DHCP
untrusted ports.
Refer to the exhibit.
The switch ports 3/1 and 3/2 are defined as secondary VLAN isolated ports. The ports
connecting to the two firewalls are defined as primary VLAN promiscuous ports.
What does the command udld reset accomplish?
resets all UDLD enabled ports that have been shutdown
Refer to the exhibit.
Dynamic ARP Inspection is enabled only on switch SW_A. Host_A and Host_B acquire their IP
addresses from the DHCP server connected to switch SW_A. What would the outcome be if
Host_B initiated an ARP spoof attack toward Host_A?
The spoof packets are not inspected at the ingress port of switch SW_A and are permitted.
Which statement is true about Layer 2 security threats?
MAC spoofing attacks allow an attacking device to receive frames intended for a different
network host.
On a Company switch named R1 you configure the following:
ip arp inspection vlan 10-12, 15
What is the purpose of this global configuration command made on R1?
Intercepts, logs, and discards ARP packets with invalid IP-to-MAC address bindings
Refer to the exhibit.
Which two of the following statements are true? (Choose two)
DHCP snooping is enabled for a single Vlan
Option 82 is enabled for a VLAN 155