Topic 2, Exam Pool B
A network administrator is tasked to permit http and https traffic only toward the internet from the User1 laptop to adhere to company’s security policy. The administrator can still ping to www.cisco.com Which interface should the access list 101 be applied to resolve this issue?
A.
Interface G0/48 in the incoming direction
B.
Interface G0/0 in the outgoing direction.
C.
Interface S1/0 in the outgoing direction.
D.
Interface G0/0 in the incoming direction.
An engineer configured Reverse Path Forwarding on an interface and noticed that the routes are dropped when a route lookup fails on that interface for a prefix that is available in the routing table Which interface configuration resolves the issue?
A.
ip verify unicast source reachable-via rx
B.
ip verify unicast source reachable-via any
C.
ip verify unicast source reachable-via allow-default
D.
ip verify unicast source reachable-via 12-src
Refer to the exhibit.
An engineer receives this error message when trying to access another router in-band from the serial interface connected to the console of R1. Which configuration is needed on R1 to resolve this issue?
A.
Option A
B.
Option B
C.
Option C
D.
Option D
An engineer configured two routers connected to two different service providers using BGP with default attributes. One of the links is presenting high delay, which causes slowness in the network. Which BGP attribute must the engineer configure to avoid using the highdelay ISP link if the second ISP link is up?
A.
LOCAL_PREF
B.
MED
C.
WEIGHT
D.
AS-PATH
Refer to the exhibit. The network administrator has configured the Customer Edge router (AS 64511) to send only summarized routes toward ISP-1 (AS 100) and ISP-2 (AS 200).
router bgp 64511
network 172.16.20.0 mask 255.255.255.0
network 172.16.21.0 mask 255.255.255.0
network 172.16.22.0 mask 255.255.255.0
network 172.16.23.0 mask 255.255.255.0
aggregate-address 172.16.20.0 255.255.252.0
After this configuration. ISP-1 and ISP-2 continue to receive the specific routes and the summary route. Which configuration resolves the issue?
A.
router bgp 64511
aggregate-address 172.16.20.0 255.255.252.0 summary-only
B.
router bgp 64511
neighbor 192.168.100.1 summary-only
neighbor 192.168.200.2 summary-only
C.
interface E 0/0
ip bgp suppress-map BLOCK_SPECIFIC
!
interface E 0/1
ip bgp suppress-map BLOCK_SPECIFIC
!
ip prefix-list PL_BLOCK_SPECIFIC permit 172.16.20.0/22 ge 24
!
route-map BLOCK_SPECIFIC permit 10
match ip address prefix-list PL_BLOCK_SPECIFIC
D.
ip prefix-list PL_BLOCK_SPECIFIC deny 172.16.20.0/22 ge 22
ip prefix-list PL BLOCK SPECIFIC permit 172.16.20.0/22
!
route-map BLOCK_SPECIFIC permit 10
match ip address prefix-list PL_BLOCK_SPECIFIC
!
router bgp 64511
aggregate-address 172.16.20.0 255 255.252.0 suppress-map BLOCKSPECIFIC
Page 30 out of 113 Pages |
Previous |