Download Cisco Certified Network Associate (200-301 CCNA).200-301.VCEplus.2024-09-23.350q.vcex

Vendor: Cisco
Exam Code: 200-301
Exam Name: Cisco Certified Network Associate (200-301 CCNA)
Date: Sep 23, 2024
File Size: 21 MB
Downloads: 13

How to open VCEX files?

Files with VCEX extension can be opened by ProfExam Simulator.

Demo Questions

Question 1
Refer to the exhibit.
 
 
Only four switches are participating in the VLAN spanning-tree process.
Branch-1 priority 614440
Branch-2: priority 39082416
Branch-3: priority 0
Branch-4: root primary
Which switch becomes the permanent root bridge for VLAN 5?
  1. Branch-1
  2. Branch-2
  3. Branch-3
  4. Branch-4
Correct answer: C
Explanation:
Dynamic ARP inspection is an ingress security feature; it does not perform any egress checking.
Dynamic ARP inspection is an ingress security feature; it does not perform any egress checking.
Question 2
Which two tasks must be performed to configure NTP to a trusted server in client mode on a single network device? (Choose two)
  1. Enable NTP authentication.
  2. Verify the time zone.
  3. Disable NTP broadcasts
  4. Specify the IP address of the NTP server
  5. Set the NTP server private key
Correct answer: AD
Explanation:
https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst4000/8-2glx/configuration/guide/ntp.htmlTo configure authentication, perform this task in privileged mode:Step 1: Configure an authentication key pair for NTP and specify whether the key will be trusted or untrusted.Step 2: Set the IP address of the NTP server and the public key.Step 3: Enable NTP client mode.Step 4: Enable NTP authentication.Step 5: Verify the NTP configuration.
https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst4000/8-2glx/configuration/guide/ntp.html
To configure authentication, perform this task in privileged mode:
Step 1: Configure an authentication key pair for NTP and specify whether the key will be trusted or untrusted.
Step 2: Set the IP address of the NTP server and the public key.
Step 3: Enable NTP client mode.
Step 4: Enable NTP authentication.
Step 5: Verify the NTP configuration.
Question 3
Which plane is centralized by an SDN controller?
  1. management-plane
  2. control-plane
  3. data-plane
  4. services-plane
Correct answer: B
Question 4
Refer to the exhibit.
 
A network administrator has been tasked with securing VTY access to a router Which access-list entry accomplishes this task?
  1. access-list 101 permit tcp 10.1.10 0.0.0.255 172.16.10 0.0.0.255 eq ssh
  2. access-list 101 permit tcp 10.11.0 0.0.0.255 172.16.10 0.0.0.255 eq scp
  3. access-list 101 permit tcp 10.11.0 0.0.0.255 172.16.10 0.0.0.255 eq telnet
  4. access-list 101 permit tcp 10.1.10 0.0.0.255 172.16.10 0.0.0.255 eq https
Correct answer: A
Question 5
A Cisco IP phone receive untagged data traffic from an attached PC. Which action is taken by the phone?
  1. It allows the traffic to pass through unchanged
  2. It drops the traffic
  3. It tags the traffic with the default VLAN
  4. It tags the traffic with the native VLAN
Correct answer: A
Explanation:
traffic from the devicehttps://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst2960x/software/15-0_2_EX/vlan/configuration_guide/b_vlan_152ex_2960-x_cg/b_vlan_152ex_2960-x_cg_chapter_0110.pdfUntagged attached to the Cisco IP Phone passes through the phoneunchanged, regardless of the trust state of the access port on the phone.
traffic from the device
https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst2960x/software/15-0_2_EX/vlan/configuration_guide/b_vlan_152ex_2960-x_cg/b_vlan_152ex_2960-x_cg_chapter_0110.pdfUntagged attached to the Cisco IP Phone passes through the phoneunchanged, regardless of the trust state of the access port on the phone.
Question 6
Which statement about Link Aggregation when implemented on a Cisco Wireless LAN Controller is true?
  1. To pass client traffic two or more ports must be configured.
  2. The EtherChannel must be configured in "mode active"
  3. When enabled the WLC bandwidth drops to 500 Mbps
  4. One functional physical port is needed to pass client traffic
Correct answer: D
Explanation:
Reference: https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-2/configguide/b_cg82/b_cg82_chapter_010101011.html
Reference: https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-2/configguide/b_cg82/b_cg82_chapter_010101011.html
Question 7
Which set of action satisfy the requirement for multifactor authentication?
  1. The user swipes a key fob, then clicks through an email link
  2. The user enters a user name and password, and then clicks a notification in an authentication app on a mobile device
  3. The user enters a PIN into an RSA token, and then enters the displayed RSA key on a login screen
  4. The user enters a user name and password and then re-enters the credentials on a second screen
Correct answer: B
Explanation:
This is an example of how two-factor authentication (2FA) works:1. The user logs in to the website or service with their username and password.2. The password is validated by an authentication server and, if correct, the user becomes eligible for the second factor.3. The authentication server sends a unique code to the user's second-factor method (such as a smartphone app).4. The user confirms their identity by providing the additional authentication for their second-factor method.
This is an example of how two-factor authentication (2FA) works:
1. The user logs in to the website or service with their username and password.
2. The password is validated by an authentication server and, if correct, the user becomes eligible for the second factor.
3. The authentication server sends a unique code to the user's second-factor method (such as a smartphone app).
4. The user confirms their identity by providing the additional authentication for their second-factor method.
Question 8
Refer to Exhibit.
 
 
Which configuration must be applied to the router that configures PAT to translate all addresses in VLAN 200 while allowing devices on VLAN 100 to use their own IP addresses?
  1. Router1(config)#access-list 99 permit 192.168.100.32 0.0.0.31Router1(config)#ip nat inside source list 99 interface gi1/0/0 overload
    Router1(config)#interface gi2/0/1.200
    Router1(config)#ip nat inside
    Router1(config)#interface gi1/0/0
    Router1(config)#ip nat outside
  2. Router1(config)#access-list 99 permit 192.168.100.0 0.0.0.255Router1(config)#ip nat inside source list 99 interface gi1/0/0 overload
    Router1(config)#interface gi2/0/1.200
    Router1(config)#ip nat inside
    Router1(config)#interface gi1/0/0
    Router1(config)#ip nat outside
  3. Router1(config)#access-list 99 permit 209.165.201.2 255.255.255.255Router1(config)#ip nat inside source list 99 interface gi1/0/0overload Router1(config)#interface gi2/0/1.200
    Router1(config)#ip nat inside
    Router1(config)#interface gi1/0/0
    Router1(config)#ip nat outside
  4. Router1(config)#access- list 99 permit 209.165.201.2 0.0.0.0Router1(config)#ip nat inside source list 99 interface gi1/0/0 overload
    Router1(config)#interface gi2/0/1.200
    Router1(config)#ip nat inside
    Router1(config)#interface gi1/0/0
    Router1(config)#ip nat outside
Correct answer: A
Question 9
Which two outcomes are predictable behaviors for HSRP? (Choose two)
  1. The two routers share a virtual IP address that is used as the default gateway for devices on the LAN.
  2. The two routers negotiate one router as the active router and the other as the standby router
  3. Each router has a different IP address both routers act as the default gateway on the LAN, and traffic is load balanced between them.
  4. The two routers synchronize configurations to provide consistent packet forwarding
  5. The two routed share the same IP address, and default gateway traffic is load-balanced between them
Correct answer: AB
Question 10
How do traditional campus device management and Cisco DNA Center device management differ in regards to deployment?
  1. Cisco DNA Center device management can deploy a network more quickly than traditional campus device management
  2. Traditional campus device management allows a network to scale more quickly than with Cisco DNA Center device management 
  3. Cisco DNA Center device management can be implemented at a lower cost than most traditional campus device management options
  4. Traditional campus device management schemes can typically deploy patches and updates more quickly than Cisco DNA Center device management
Correct answer: A
HOW TO OPEN VCE FILES

Use VCE Exam Simulator to open VCE files
Avanaset

HOW TO OPEN VCEX AND EXAM FILES

Use ProfExam Simulator to open VCEX and EXAM files
ProfExam Screen

ProfExam
ProfExam at a 20% markdown

You have the opportunity to purchase ProfExam at a 20% reduced price

Get Now!