Modules 1 5 Routing and Switching
Modules 1 5 Routing and Switching
1.6.4 Module Quiz – Basic Device receiving power and is functioning properly. If the LED is off,
the system is not powered on. If the LED is green, the
Configuration Answers system is operating normally. If the LED is amber, the
system is receiving power but is not functioning properly.
1. Which tasks can be accomplished by using the
command history feature? (Choose two.) 3. What type of Ethernet cable would be used to connect
Set the command history buffer size. one switch to another switch when neither switch
Recall previously entered commands. supports the auto-MDIX feature?
View a list of commands entered in a previous session. rollover
Recall up to 15 command lines by default. crossover
Save command lines in a log file for future reference. straight-through
coaxial
Explanation: The history command allows you to view and
reuse previously entered commands stored in the buffer. It is Explanation: A straight-through cable can be used to
also used to manage the of the buffer. connect a computer or a router to a switch. A rollover cable
can be used to access a router or switch console line. A
2. Which statement describes the system LED operation
coaxial cable is not used any longer in Ethernet networks,
on Cisco Catalyst switches?
but can be found in video connections. A crossover cable
If the LED is amber, the system is not powered on. can be used to connect a switch to a switch, a computer to a
If the LED is blinking amber, the switch is performing computer, and a router to a router.
POST.
If the LED is blinking green, the system is operating 4. What advantage does SSH offer over Telnet?
normally. connection-oriented services
If the LED is amber, the system is receiving power more connection lines
but it is not functioning properly. username and password authentication
encryption
Explanation: Both Telnet and SSH are used to remotely Creating an SVI automatically creates an associated
connect to a network device for management tasks. VLAN.
However, Telnet uses plaintext communications, whereas An SVI is created automatically for each VLAN on a
SSH provides security for remote connections by providing multilayer switch.
encryption of all transmitted data between devices.
Explanation: To allow for remote switch administration, an
5. A network administrator has configured VLAN 99 as SVI is created by default for VLAN 1.
the management VLAN and has configured it with an IP
address and subnet mask. The administrator issues 7. Which prompt is displayed when a network
the show interface vlan 99 command and notices administrator successfully accesses the boot loader on
that the line protocol is down. Which action can change a switch to recover from a system crash?
the state of the line protocol to up? switch#
Configure a transport input method on the vty lines. system#
Connect a host to an interface associated with system:
VLAN 99. switch:
Remove all access ports from VLAN 99.
Explanation: The boot loader provides access into the
Configure a default gateway.
switch if the operating system cannot be used because of
Explanation: Once an SVI is configured with an IP address missing or damaged system files. After some steps have
and subnet mask, it can be used for remote management. been completed, the boot loader can be accessed through a
An SVI interface will be active when the SVI VLAN has an console connection, through the switch: prompt.
active port associated with it.
8. Which router bootup sequence is correct?
6. Which statement describes SVIs? 1 – perform the POST and load the bootstrap
An SVI can only be created for the management program
VLAN. 2 – locate and load the Cisco IOS software
A default SVI is created for VLAN 1 for switch 3 – locate and load the startup configuration file or
administration. enter setup mode
1 – perform the POST and load the startup Explanation: The first action to take place when a switch is
configuration file powered on is the POST or power-on self-test. POST
2 – locate and load the bootstrap program performs tests on the CPU, memory, and flash in preparation
3 – locate and load the Cisco IOS software for loading the boot loader.
1 – perform the POST and load the bootstrap program
2 – locate and load the startup configuration file or enter 10. What must an administrator have in order to reset a
setup mode lost password on a router?
3 – locate and load the Cisco IOS software access to another router
1 – perform the POST and load the Cisco IOS physical access to the router
software a TFTP server
2 – locate and load the startup configuration file or enter a crossover cable
setup mode
3 – locate and load the bootstrap program Explanation: Console access to the device through a
terminal or terminal emulator software on a PC is required
Explanation: When a router is powered on, it undergoes a for password recovery.
POST to verify that the hardware is functional, after which it
proceeds by locating and loading the Cisco IOS software 11. When configuring a switch for SSH access, what
and then loading the startup configuration file if one is other command that is associated with the login
present. local command is required to be entered on the switch?
9. What is the first action in the boot sequence when a login block-
switch is powered on? for seconds attempts number within seconds
low-level CPU initialization enable secret password
load boot loader software username username secret secret
load the default Cisco IOS software password password
load a power-on self-test program Explanation: The login local command designates that the
local username database is used to authenticate interfaces
such as console or vty.
12. Which command will provide information about the 14. A production switch is reloaded and finishes with a
status of all interfaces including the number of giants, Switch> prompt. What two facts can be determined?
runts, and collisions on the interface? (Choose two.)
show interfaces A full version of the Cisco IOS was located and
show ip interface brief loaded.
show history POST occurred normally.
show running-config The boot process was interrupted.
There is not enough RAM or flash on this router.
Explanation: The show interfaces command is the most The switch did not locate the Cisco IOS in flash, so it
comprehensive in providing information about interfaces. defaulted to ROM.
The show ip interface brief command does not
provide information on giants, runts, or collisions. The show Explanation: The Switch prompt typically occurs after a
history command provides a history of the commands that switch boots normally but does not have or has failed to load
are used. The show running-config command will show a startup configuration file.
configuration information, but not status information. 15. Which two statements are true about using full-
13. Which interface is used by default to manage a Cisco duplex Fast Ethernet? (Choose two.)
Catalyst 2960 switch? Full-duplex Fast Ethernet offers 100 percent
The FastEthernet 0/1 interface efficiency in both directions.
The GigabitEthernet 0/1 interface Latency is reduced because the NIC processes
The VLAN 1 interface frames faster.
The VLAN 99 interface Nodes operate in full-duplex with unidirectional data
flow.
Explanation: Interface VLAN 1 is the default management Performance is improved because the NIC is able to
SVI. detect collisions.
Performance is improved with bidirectional data
flow.
Explanation: In full-duplex operation, the NIC does not To speed up the boot process
process frames any faster, the data flow is bidirectional, and
there are no collisions. Explanation: The switch boot loader environment is
presented when the switch cannot locate a valid operating
16. Which statement describes the port speed LED on system. The boot loader environment provides a few basic
the Cisco Catalyst 2960 switch? commands that allow a network administrator to reload the
operating system or provide an alternate location of the
If the LED is amber, the port is operating at 1000 operating system.
Mbps.
If the LED is blinking green, the port is operating at 10 18. In which situation would a technician use the show
Mbps. interfaces command?
If the LED is green, the port is operating at 100
Mbps. To determine whether remote access is enabled
If the LED is off, the port is not operating. To determine the MAC address of a directly attached
network device on a particular interface
Explanation: The port speed LED indicates that the port When packets are being dropped from a particular
speed mode is selected. When selected, the port LEDs will directly attached host
display colors with different meanings. If the LED is off, the When an end device can reach local devices, but not
port is operating at 10 Mbps. If the LED is green, the port is remote devices
operating at 100 Mbps. If the LED is blinking green, the port
is operating at 1000 Mbps. Explanation: The show interfaces command is useful to
detect media errors, to see if packets are being sent and
17. What is a function of the switch boot loader? received, and to determine if any runts, giants, CRCs,
interface resets, or other errors have occurred. Problems
To control how much RAM is available to the switch with reachability to a remote network would likely be caused
during the boot process by a misconfigured default gateway or other routing issue,
To provide an environment to operate in when the not a switch issue. The show mac address-table command
switch operating system cannot be found shows the MAC address of a directly attached device.
To provide security for the vulnerable state when the
switch is booting
19. What is one difference between using Telnet or SSH Only one loopback interface can be enabled on a
to connect to a network device for management router.
purposes? The no shutdown command is required to place this
interface in an up state.
Telnet does not provide authentication, whereas SSH
provides authentication. Explanation: The loopback interface is a logical interface
Telnet sends a username and password in plain internal to the router and is automatically placed in an UP
text, whereas SSH encrypts the username and state, as long as the router is functioning. It is not assigned
password. to a physical port and can therefore never be connected to
Telnet supports a host GUI, whereas SSH supports any other device. Multiple loopback interfaces can be
only a host CLI. enabled on a router.
Telnet uses UDP as the transport protocol, whereas
SSH uses TCP. 21. What two pieces of information are displayed in the
output of the show ip interface brief command? (Choose
Explanation: SSH provides security for remote two.)
management connections to a network device. SSH does so
through encryption for session authentication (username and Interface descriptions
password) as well as for data transmission. Telnet sends a IPv4 addresses
username and password in plain text, which can be targeted Layer 1 statuses
to obtain the username and password through data capture. MAC addresses
Both Telnet and SSH use TCP, support authentication, and Next-hop addresses
connect to hosts in CLI. Speed and duplex settings
20. What is a characteristic of an IPv4 loopback interface Explanation: The show ip interface brief command
on a Cisco IOS router? displays the IPv4 address of each interface, as well as the
operational status of the interfaces at both Layer 1 and Layer
It is a logical interface internal to the router. 2. In order to see interface descriptions and speed and
It is assigned to a physical port and can be connected duplex settings, use the show runningconfig
to other devices. interface command. Next-hop addresses are displayed in
the routing table with the show ip route command, and the least one interface will always be available. For example, it
MAC address of an interface can be seen with the show can be used for testing purposes, such as testing internal
interfaces command. routing processes, by emulating networks behind the router.
22. What type of cable would be used to connect a router 24. You are implementing remote access to the VTY
to a switch when neither supports the auto-MDIX feature? lines of a switch using SSH and the login local line vty
command. Which other command must be entered to
Coaxial avoid being locked out of the switch?
Crossover
Rollover enable secret password
Straight-through password password
service-password encryption
Explanation: When connecting to switches without the username username secret password
autoMDIX feature, straight-through cables must be used to
connect to devices such as servers, workstations, or routers. Explanation: When authenticating SSH users with the login
Crossover cables must be used to connect to other switches local command, a username and password pair must be
or repeaters. created and added to the local database. Otherwise,
authentication would never be successful.
23. Which statement regarding a loopback interface is
true?
It is an internal virtual interface used for testing
purposes.
It is used to loop back traffic to an interface.
It must be enabled using the no shutdown command.
Only one loopback interface can be created on a
device.
Explanation: A LAN switch populates the MAC address Explanation: The store-and-forward method performs error
table based on source MAC addresses. When a switch checking on the frame using the frame-check sequence
receives an incoming frame with a destination MAC address (FCS) value before sending the frame. The FCS value is the
that is not listed in the MAC address table, the switch last field in the frame.
forwards the frame out all ports except for the ingress port of
the frame. When the destination device responds, the switch 7. What does the term “port density” represent for an
adds the source MAC address and the port on which it was Ethernet switch?
received to the MAC address table. the memory space that is allocated to each switch port
the number of available ports
5. Which switch characteristic helps alleviate network the speed of each port
congestion when a 10 Gbps port is forwarding data to a the numbers of hosts that are connected to each
1 Gbps port? switch port
Explanation: The term port density represents the number Full duplex offers 100 percent potential use of the
of ports available in a switch. A one rack unit access switch bandwidth.
can have up to 48 ports. Larger switches may support All modern NICS support both half-duplex and full-
hundreds of ports. duplex communication.
8. Which information does a switch use to keep the MAC Explanation: Full-duplex communication allows both ends to
address table information current? transmit and receive simultaneously, offering 100 percent
efficiency in both directions for a 200 percent potential use of
the source MAC address and the incoming port stated bandwidth. Half-duplex communication is
the source and destination MAC addresses and the unidirectional, or one direction at a time. Gigabit Ethernet
incoming port and 10 Gb/s NICs require full duplex to operate, and do not
the source and destination MAC addresses and the support half-duplex operation.
outgoing port
the destination MAC address and the incoming port 10. Which type of address does a switch use to build the
the source MAC address and the outgoing port MAC address table?
the destination MAC address and the outgoing port
source IP address
Explanation: To maintain the MAC address table, the switch source MAC address
uses the source MAC address of the incoming packets and destination MAC address
the port that the packets enter. The destination address is destination IP address
used to select the outgoing port.
Explanation: When a switch receives a frame with a source
9. Which two statements are true about half-duplex and MAC address that is not in the MAC address table, the
full-duplex communications? (Choose two.) switch will add that MAC address to the table and map that
address to a specific port. Switches do not use IP addressing
Half duplex has only one channel. in the MAC address table.
Full duplex increases the effective bandwidth.
Full duplex allows both ends to transmit and 11. Which option correctly describes a switching method?
receive simultaneously.
cut-through: makes a forwarding decision after 13. What is the purpose of frame buffers on a switch?
receiving the entire frame
cut-through: provides the flexibility to support any mix They execute checksum values before transmission.
of Ethernet speeds They provide temporary storage of the frame
store-and-forward: forwards the frame immediately checksum.
after examining its destination MAC address They hold traffic, thus alleviating network
store-and-forward: ensures that the frame is free congestion.
of physical and data-link errors They provide a basic security scan on received frames.
Explanation: Store-and-forward switching performs an error Explanation: Switches have large frame buffers that allow
check on an incoming frame after receiving the entire frame data waiting to be transmitted to be stored so the data will
on the ingress port. Switches which use this method have not be dropped. This feature is beneficial especially if the
the flexibility to support any mix of Ethernet speeds. The cut- incoming traffic is from a faster port than the egress port
through method begins the forwarding process after the used for transmitting.
destination MAC address of an incoming frame is looked up 14. Which network device can be used to eliminate
and the egress port has been determined. collisions on an Ethernet network?
12. Which network device can serve as a boundary to hub
divide a Layer 2 broadcast domain? firewall
router switch
Ethernet hub router
access point Explanation: A switch provides microsegmentation so that
Ethernet bridge no other device competes for the same Ethernet network
Explanation: Layer 1 and 2 devices (LAN switch and bandwidth.
Ethernet hub) and access point devices do not filter MAC 15. What criteria is used by a Cisco LAN switch to
broadcast frames. Only a Layer 3 device, such as a router, decide how to forward Ethernet frames?
can divide a Layer 2 broadcast domain.
Destination IP address 17. A switch has received a frame on an ingress port.
Destination MAC address What will the switch do if the unicast destination MAC
Egress port address is in the MAC address table?
Path cost
It will drop the frame.
Explanation: Cisco LAN switches use the MAC address It will forward the frame out all ports.
table to make traffic forwarding decisions. The decisions are It will forward the frame out all ports except the
based on the ingress port and the destination MAC address incoming port.
of the frame. The ingress port information is important It will forward the frame out of the specified port in
because it carries the VLAN to which the port belongs. the MAC address table.
16. What are two reasons a network administrator would Explanation: If the destination MAC address is in the table,
segment a network with a Layer 2 switch? (Choose two.) it will forward the frame out of the specified port.
To create fewer collision domains 18. A switch has received a frame on an ingress port.
To create more broadcast domains What will the switch do if the unicast destination MAC
To eliminate virtual circuits address is not in the MAC address table?
To enhance user bandwidth
To isolate ARP request messages from the rest of the It will drop the frame.
network It will forward the frame out all ports.
To isolate traffic between segments It will forward the frame out all ports except the
incoming port.
Explanation: A switch has the ability to create temporary It will forward the frame out of the specified port in the
point-to-point connections between the directly-attached MAC address table.
transmitting and receiving network devices.
The two devices have full-bandwidth, full-duplex connectivity Explanation: If the destination MAC address is not in the
during the transmission. Segmenting adds collision domains table, the switch will forward the frame out all ports except
to reduce collisions. the incoming port. This is called an unknown unicast.
19. A switch has received a frame on an ingress port. 21. Which statement about half-duplex and full-duplex
What will the switch do if the destination MAC address is communication is true?
a broadcast address?
Gigabit Ethernet and 10 Gb/s NICs can operate in full-
It will drop the frame. duplex or half-duplex.
It will forward the frame out all ports. Full-duplex communication is bidirectional.
It will forward the frame out all ports except the Half-duplex communication allows both ends to
incoming port. transmit and receive simultaneously.
It will forward the frame out of the specified port in the Half-duplex communication is unidirectional, or one
MAC address table. direction at a time.
Explanation: If the destination MAC address is a broadcast Explanation: Full-duplex communication allows both ends to
or a multicast, the frame is also flooded out all ports except transmit and receive simultaneously, offering 100 percent
the incoming port. efficiency in both directions for a 200 percent potential use of
stated bandwidth. Half-duplex communication is
20. Which switching method forwards the frame unidirectional, or one direction at a time. Gigabit Ethernet
immediately after examining the destination MAC and 10 Gbps NICs require full- duplex to operate and do not
address? support half-duplex operation.
Broadcast
Cut-though
Large frame buffer
Store-and-forward
The port creates the VLAN again. Both switches are in nonegotiate mode.
The port goes back to the default VLAN. Switches from other vendors do not support DTP.
The port automatically associates itself with the native Both switches are in trunk mode.
VLAN. DTP frames are flooding the entire network.
The port becomes inactive.
Explanation: DTP is a Cisco proprietary protocol. Non-Cisco
Explanation: If the VLAN that is associated with a port is switches do not support DTP.
deleted, the port becomes inactive and cannot communicate
with the network any more. To verify that a port is in an 4. What is the purpose of the [Link] file on a switch?
inactive state, use the show interfaces switchport command. It holds the VLAN database.
It holds the running configuration.
2. In which memory location are the VLAN
It holds the operating system.
configurations of normal range VLANs stored on a
It holds the saved configuration.
Catalyst switch?
flash Explanation: The VLAN database ([Link]) contains
ROM information about normal range VLANs such as the VLAN
RAM number, name, and VTP mode.
NVRAM 5. What is the purpose of setting the native VLAN
Explanation: When a normal range VLAN is created the separate from data VLANs?
configuration information of the VLAN is stored in flash in the
[Link] file.
A separate VLAN should be used to carry Explanation: A native VLAN is used to forward untagged
uncommon untagged frames to avoid bandwidth frames that are received on a Cisco switch 802.1Q trunk port.
contention on data VLANS. Untagged frames that are received on a trunk port are not
The security of management frames that are carried in forwarded to any other VLAN except the native VLAN.
the native VLAN can be enhanced.
The native VLAN is for carrying VLAN mnanagement 7. A network administrator is determining the best
traffic only. placement of VLAN trunk links. Which two types of
The native VLAN is for routers and switches to point-to-point connections utilize VLAN trunking?
exchange their management information, so it should be (Choose two.)
different from data VLANS. between two switches that utilize multiple VLANs
Explanation: When a Cisco switch trunk port receives between a switch and a server that has an 802.1Q
untagged frames (unusual in well-designed networks), it NIC
forwards these frames to the native VLAN. When the native between a switch and a network printer
VLAN is moved away from data VLANs, those untagged between two switches that share a common VLAN
frames will not compete for bandwidth in the data VLANs. between a switch and a client PC
The native VLAN is not designed for carrying management Explanation: VLAN trunk links are used to allow all VLAN
traffic, but rather it is for backward compatibility with legacy traffic to propagate between devices such as the link
LAN scenarios. between a switch and a server that has an 802.1Q-capable
6. When a Cisco switch receives untagged frames on a NIC. Switches can also utilize trunk links to routers, servers,
802.1Q trunk port, which VLAN ID is the traffic switched and to other switches.
to by default? 8. What are three primary benefits of using VLANs?
management VLAN ID (Choose three.)
data VLAN ID security
native VLAN ID a reduction in the number of trunk links
unused VLAN ID cost reduction
end user satisfaction
improved IT staff efficiency Explanation: Normal range VLANs are stored in a file called
no required configuration [Link] and located in the flash memory.
Explanation: Security, cost reduction, and improved IT staff 11. Which distinct type of VLAN is used by an
efficiency are all benefits of using VLANs, along with higher administrator to access and configure a switch?
performance, broadcast storm mitigation, and simpler project
and application management. End users are not usually data VLAN
aware of VLANs, and VLANs do require configuration. default VLAN
Because VLANs are assigned to access ports, they do not native VLAN
reduce the number of trunk links. management VLAN
9. On a Cisco switch, where is extended range VLAN Explanation: A management VLAN is used to remotely
information stored? access and configure a switch. Data VLANs are used to
separate a network into groups of users or devices. The
running configuration file default VLAN is the initial VLAN all switch ports are placed in
NVRAM when loading the default configuration on a switch. The
flash 802.1Q trunk port places untagged traffic on the native VLAN.
startup configuration file
12. For what reason would a network administrator use
Explanation: Extended range VLANs, 1006 through 4094, the show interfaces trunk command on a switch?
are not written to the [Link] file but are saved in the
running configuration file. to view the native VLAN
to examine DTP negotiation as it occurs
10. In which location are the normal range VLANs stored to display an IP address for any existing VLAN
on a Cisco switch by default? to verify port association with a particular VLAN
Explanation: Entering the switchport access vlan CDP can be used to learn and store these VLANs.
3 interface config command on Fa0/1 replaces the current They are commonly used in small networks.
port VLAN assignment from VLAN 2 to VLAN 3. They are saved in the running-config file by
default.
21. A Cisco Catalyst switch has been added to support VLAN IDs exist between 1006 to 4094.
the use of multiple VLANs as part of an enterprise VLANs are initialized from flash memory.
network. The network technician finds it necessary to
clear all VLAN information from the switch in order to Explanation: Extended range VLANs are stored in the
incorporate a new network design. What should the running-configuration file by default and must be saved after
technician do to accomplish this task? being configured. Extended VLANs use the VLAN IDs from
1006 to 4094.
Delete the IP address that is assigned to the
management VLAN and reboot the switch. 23. What happens to switch ports after the VLAN to
Delete the startup configuration and the [Link] which they are assigned is deleted?
file in the flash memory of the switch and reboot the The ports are assigned to VLAN 1, the default VLAN.
switch. The ports are disabled and must be re-enabled using
Erase the running configuration and reboot the switch. the no shutdown command.
Erase the startup configuration and reboot the switch. The ports are placed in trunk mode.
The ports stop communicating with the attached
devices.
Explanation: Any ports that are not moved to an active
VLAN cannot communicate with other hosts after the VLAN
is deleted. They must be assigned to an active VLAN or their
VLAN must be created.
Explanation: Router-on-a-stick inter-VLAN routing does not Explanation: When a Layer 2 interface on a multilayer
scale beyond 50 VLANs. The router can receive VLAN- switch is configured with the no switchport command, it
tagged packets and send VLAN-tagged packets to a becomes a routed port. A routed port is configured with an IP
destination. Router-on-a-stick inter-VLAN routing can utilize address for a specific subnet.
a single router interface as a trunk link to receive and
forward VLAN traffic and does not require multiple interfaces. 10. A network administrator enters the following
command sequence on a Cisco 3560 switch. What is the
8. What is the meaning of the number 10 in the purpose of these commands?
encapsulation dot1Q 10 native router subinterface
command? Switch(config)# interface gigabitethernet 0/1
the subinterface number
the interface number
the VLAN ID Switch(config-if)# no switchport
the subnet number
to enable the Gi0/1 port as a switch virtual interface
Explanation: The administrator can use the encapsulation to enable the Gi0/1 port as a bridge virtual interface
command to specify the encapsulation type (IEEE 802.1Q or to make the Gi0/1 port a routed port
ISL), the VLAN ID, and optionally the native VLAN. to shut down the Gi0/1 port
Explanation: By default, the physical ports on a 3560 switch 13. How is traffic routed between multiple VLANs on a
are Layer 2 interfaces. To make them routed ports, the multilayer switch?
interface command no switchport should be used. The other
options do not describe the purpose of this command. Traffic is routed via internal VLAN interfaces.
Traffic is routed via subinterfaces.
11. What operational mode should be used on a switch Traffic is routed via physical interfaces.
port to connect it to a router for router-on-a-stick inter- Traffic is broadcast out all physical interfaces.
VLAN routing?
Explanation: Multilayer switches can perform inter-VLAN
dynamic auto routing by the use of internal VLAN interfaces. External
trunk physical interfaces can receive traffic but are not necessary
access for routing functions. When routing between VLANs, any
dynamic desirable broadcast traffic that is received on a VLAN would remain on
ports that are members of that VLAN. Subinterfaces are not
Explanation: Routers do not support Dynamic Trunking usable for inter-VLAN routing on multilayer switches.
Protocol, and access mode is used to connect hosts.
14. What is required to perform router-on-a-stick inter-
12. Which sentence correctly describes the SVI inter- VLAN routing?
VLAN routing method?
a multilayer switch
Subinterfaces have to be created. a router that is configured with multiple
A physical interface is needed for every VLAN that is subinterfaces
created. a router with multiple physical interfaces
An SVI is needed for each VLAN. a Layer 2 switch that is configured with multiple trunk
The encapsulation type must be configured on the SVI. ports
Explanation: In order to create SVI inter-VLAN routing on a Explanation: With router-on-a-stick inter-VLAN routing, a
Layer 3 switch, the VLAN must exist in the database and the single physical router interface is used to route packets
SVI must be explicitly created. The only exception is VLAN1, between multiple VLANs if the interface is configured with
which is created by default. multiple subinterfaces. A separate subinterface is needed for
each VLAN that will be routed. Because the router is physical interfaces without unnecessarily decreasing
performing all routing functions, a multilayer switch is not network performance?
required.
Add a second router to handle the inter-VLAN traffic.
15. An administrator was troubleshooting a router-on-a- Implement a router-on-a-stick configuration.
stick topology and concluded that the problem was Interconnect the VLANs via the two additional
related to the configuration of VLANs on the router FastEthernet interfaces.
subinterfaces. Which two commands can the Use a hub to connect the four VLANS with a
administrator use in the router to identify the problem? FastEthernet interface on the router.
(Choose two.)
Explanation: Using legacy inter-VLAN routing to
show ip interface interconnect four VLANs would require four separate
show ip protocols physical interfaces. Therefore, the best router-based solution
show controllers is to configure a router-on-a-stick.
show running-config
show vlan 17. What distinguishes traditional legacy inter-VLAN
routing from router-on-a-stick?
Explanation: The show ip interface and show
Traditional routing is able to use only a single switch
running-config commands can be useful in
interface, whereas a router-on-a-stick can use multiple
troubleshooting routing issues like wrong VLAN IDs that are
switch interfaces.
assigned to subinterfaces. The show
Traditional routing requires a routing protocol,
controllers and show ip protocols commands do whereas a router-on-a-stick only needs to route directly
not display any information about VLANs. The show connected networks.
vlan command is not useful to show information about the Traditional routing uses one port per logical
router subinterfaces. network, whereas a router-on-a-stick uses
subinterfaces to connect multiple logical networks to
16. A router has two FastEthernet interfaces and needs a single router port.
to connect to four VLANs in the local network. How can Traditional routing uses multiple paths to the router
this be accomplished using the fewest number of and therefore requires STP, whereas router-on-a-stick
does not provide multiple connections and therefore The physical interface must have an IP address
eliminates the need for STP. configured.
The subinterface numbers must match the VLAN ID
Explanation: Router-on-a-stick requires one interface number.
configured as subinterfaces for each VLAN.
Explanation: host must have a default gateway configured.
18. Subinterface G0/1.10 on R1 must be configured as Hosts on VLANs must have their default gateway configured
the default gateway for the VLAN 10 [Link]/24 on a router subinterface to provide inter-VLAN routing
network. Which command should be configured on the services.
subinterface to enable inter-VLAN routing for VLAN 10?
20. What are the steps that must be completed in order
encapsulation dot1q 10 to enable inter-VLAN routing using router-on-a-stick?
encapsulation vlan 10
switchport mode access Configure the physical interfaces on the router and
switchport mode trunk enable a routing protocol.
Create the VLANs on the router and define the port
Explanation: The subinterface must be assigned to VLAN membership assignments on the switch.
10 using the encapsulation dot1q 10 command. Create the VLANs on the switch to include port
The encapsulation vlan 10 option is not a valid command membership assignment and enable a routing protocol
and the switchport mode options are switch configuration on the router.
commands. Create the VLANs on the switch to include port
membership assignment and configure
19. What is important to consider while configuring the subinterfaces on the router matching the VLANs.
subinterfaces of a router when implementing inter-VLAN
routing? Explanation: The switch port must be configured as a trunk,
The IP address of each subinterface must be the and the VLANs on the switch must have users connected to
default gateway address for each VLAN subnet. them.
The no shutdown command must be given on each 21. What two statements are true regarding the use of
subinterface. subinterfaces for inter-VLAN routing? (Choose two.)
Fewer router Ethernet ports required than in 23. What are two disadvantages of using the router-on-a-
traditional inter-VLAN routing stick inter-VLAN routing method in a large network?
Less complex physical connection than in (Choose two.)
traditional inter-VLAN routing
More switch ports required than in traditional inter- A dedicated router is required.
VLAN routing It does not scale well.
Simpler Layer 3 troubleshooting than with traditional It requires multiple physical interfaces on a router.
inter-VLAN routing It requires subinterfaces to be configured on the same
Subinterfaces have no contention for bandwidth subnets.
Multiple SVIs are needed.
Explanation: Legacy (traditional) inter-VLAN routing would
require more ports, and the configuration can be more Explanation: The router-on-a-stick method requires one
complex than a router-on-a-stick solution. physical Ethernet router interface to route traffic between
multiple VLANs on a network. The router interface is
22. Which router-on-a-stick command and prompt on R1 configured using software-based virtual subinterfaces to
correctly encapsulates 802.1Q traffic for VLAN 20? identify routable VLANs. Modern, enterprise networks rarely
use router-on-a-stick because it does not scale easily to
R1(config-if)# encapsulation 802.1q 20 meet requirements, and multiple subinterfaces may impact
R1(config-if)# encapsulation dot1q 20 the traffic flow speed. In these very large networks, network
R1(config-subif)# encapsulation 802.1q 20 administrators use Layer 3 switches to configure inter-VLAN
R1(config-subif)# encapsulation dot1q 20 routing.
Explanation: The encapsulation 24. What is a characteristic of a routed port on a Layer 3
dot1q vlan_id [native] command configures the subinterface switch? (Choose two.)
to respond to 802.1Q encapsulated traffic from the
specified vlan-id. The native keyword option is only It requires the switchport mode access interface
appended to set the native VLAN to something other than config command.
VLAN 1. It requires the no switchport interface config
command.
It requires the switchport access vlan vlan-id interface
config command.
It supports trunking.
8. When PVST is running over a switched network, 10. Which two statements describe a switch port that is
which port state can participate in BPDU frame configured with PortFast? (Choose two.)
forwarding based on BPDUs received, but does not
forward data frames? The switch port immediately transitions from the
listening to the forwarding state.
disabled The switch port immediately transitions from
forwarding blocking to the forwarding state.
listening The switch port sends DHCP requests before
blocking transitioning to the forwarding state.
The switch port immediately processes any BPDUs
Explanation: Ports in the blocking state are nondesignated before transitioning to the forwarding state.
ports and do not participate in frame forwarding. Ports in the The switch port should never receive BPDUs.
listening state can participate in BPDU frame forwarding
according to received BPDU frames, but do not forward data Explanation: A port that is configured with PortFast will
frames. Ports in the forwarding state forward data frames immediately transition from blocking to the forwarding state.
and send and receive BPDU frames. Ports in the disabled PortFast should only be configured on switch ports that
state are administratively disabled. support end devices, so no BPDUs should ever be received
through a port that is configured with PortFast. Configuring a
9. Which STP port role is adopted by a switch port if port with PortFast supports DHCP because PortFast will
there is no other port with a lower cost to the root bridge? speed up the transition from blocking to forwarding. Without
designated port PortFast, an end device may begin to issue DHCP requests
alternate before the port has transitioned to the forwarding state.
disabled port 11. What is one way to correct a spanning tree failure?
root port
Replace the cables on failed STP links.
Manually remove redundant links in the switched show spanning-tree
network. show running-config
Insert redundant links to replace the failed STP links. show vlan
Replace all instances of STP with RSTP. show startup-config
Explanation: An action that can be taken when there is a Explanation: Of all the commands that are listed, only the
spanning tree failure in a Layer 2 network is to remove all correct option, show spanning-tree, displays STP root
redundant links in the failed segment of the network. This will bridge information.
eliminate the loops in the topology allowing for a
normalization of the traffic and CPU loads. The next step 14. What is an accurate description of redundancy?
would be to investigate the failure of STP on the redundant
designing a network to use multiple virtual devices to
links and fix these issues prior to restoring these links.
ensure that all traffic uses the best path through the
12. What additional information is contained in the 12-bit internetwork
extended system ID of a BPDU? configuring a router with a complete MAC address
database to ensure that all frames can be forwarded to
port ID the correct destination
MAC address designing a network to use multiple paths
IP address between switches to ensure there is no single point
VLAN ID of failure
configuring a switch with proper security to ensure that
Explanation: The BPDU has three fields; the bridge priority, all traffic forwarded through an interface is filtered
the extended system ID, and the MAC address. The
extended system ID contains 12 bits that identify the VLAN Explanation: Redundancy attempts to remove any single
ID. point of failure in a network by using multiple physically
cabled paths between switches in the network.
13. An administrator is troubleshooting a switch and
wants to verify if it is a root bridge. What command can 15. Which three components are combined to form a
be used to do this? bridge ID? (Choose three.)
Bridge priority 17. In which two port states does a switch learn MAC
Cost addresses and process BPDUs in a PVST network?
Extended system ID (Choose two.)
IP address
MAC address Blocking
Port ID Disabled
Forwarding
Explanation: The three components that are combined to Learning
form a bridge ID are bridge priority, extended system ID, and Listening
MAC address.
Explanation: Switches learn MAC addresses at the learning
16. What is an advantage of PVST+? and forwarding port states. They receive and process
BPDUs at the blocking, listening, learning, and forwarding
PVST+ optimizes performance on the network through port states.
automatic selection of the root bridge.
PVST+ optimizes performance on the network 18. What two features does Spanning Tree Protocol (STP)
through load sharing using multiple root bridges. provide to ensure proper network operations? (Choose
PVST+ reduces bandwidth consumption compared to two.)
traditional implementations of STP that use CST.
PVST+ requires fewer CPU cycles for all the switches Implementing VLANs to contain broadcasts
in the network. Link-state dynamic routing that provides redundant
routes
Explanation: PVST+ results in optimum load balancing. Redundant links between Layer 2 switches
However, this is accomplished by manually configuring Removing single points of failure with multiple
switches to be elected as root bridges for different VLANs on Layer 2 switches
the network. The root bridges are not automatically selected. Static default routes
Furthermore, having spanning tree instances for each VLAN
actually consumes more bandwidth, and it increases the Explanation: Spanning Tree Protocol (STP) is required to
CPU cycles for all the switches in the network. ensure correct network operation when designing a network
with multiple interconnected Layer 2 switches or using
redundant links to eliminate single points of failure between Explanation: STP allows redundant physical connections
Layer 2 switches. Routing is a Layer 3 function and does not between Layer 2 devices without creating Layer 2 loops by
relate to STP. VLANs do reduce the number of broadcast disabling ports that could create a loop.
domains but relate to Layer 3 subnets, not STP.
21. Which two statements regarding a PortFast enabled
19. Which PVST+ feature ensures that configured switch switch port are true? (Choose two.)
edge ports do not cause Layer 2 loops if a port is
mistakenly connected to another switch? The port immediately transitions from blocking to
forwarding state.
BPDU guard The port immediately transitions from listening to
Extended system ID forwarding state.
PortFast The port immediately processes any BPDUs before
PVST+ transitioning to the forwarding state.
The port sends DHCP requests before transitioning to
Explanation: If switch access ports are configured as edge the forwarding state.
ports using PortFast, BPDUs should never be received on The port should never receive BPDUs.
those ports. Cisco switches support a feature called BPDU
guard. When it is enabled, BPDU guard will put an edge port Explanation: PortFast-enabled ports immediately transition
in an error-disabled state if a BPDU is received by the port. from blocking to forwarding state. PortFast should be
This will prevent a Layer 2 loop occurring. enabled only on access ports connecting end devices. No
BPDUs should ever be received through a port that is
20. What is an advantage of using STP in a LAN? configured with PortFast.
It combines multiple switch trunk links into a logical
port channel link to increase bandwidth.
It decreases the size of the failure domain.
It provides firewall services to protect the LAN.
It temporarily disables redundant paths to stop
Layer 2 loops.