Thursday, April 23, 2009

Here are your Cisco training questions for Wednesday, April 23 -- the answers were added on April 24.

And now to the questions!

Chris Bryant
CCIE #12933
"The Computer Certification Bulldog"

CCNA / CCENT Certification:

The Cisco switch feature Port Security has just shut port fast 0/10 down. Which of the following should you expect to see when you run show interface fast 0/10?

A. line protocol is up

B. line protocol is down (notconnect)

C. line protocol is down (err-disabled)

D. line protocol is down (disabled)

Answer: C. When Port Security shuts a port down, the line protocol will show as down and as "err-disabled", short for error disabled. By default, an err-disabled port must be manually reopened.

CCNA Security:

Short answer: Briefly describe and name the default operational mode of TCP Intercept.

Answer: That's intercept mode, where the router actually answers TCP SYN packets on behalf of the intended recipient. The router opens a three-way handshake with the intended recipient as well; the router can then merge those handshakes seamlessly if the original sender of the TCP SYN is a valid source.

CCNA Voice:

Short answer: One option for the park slot command is limit. What exactly are we limiting?

Answer: The overall number of timeout intervals allowed for any given parked call.

CCNA Wireless:

Which protocols allow you to change the default native VLAN?


B. dot1q

C. neither

D. both

Answer: B. Dot1q allows you to change the native VLAN from the default of VLAN 1, while ISL doesn't even allow the use of a native VLAN.

And now for the CCNP answers for Wednesday's questions....

BSCI Exam:

Short answer: Give three potential reasons an EIGRP router can go into SIA mode.

Answer: Here are four possible reasons this can happen....

Unidirectional link is preventing query from being answered.

Queried router’s CPU is overloaded, preventing a reply.

Queried router’s memory is corrupt.

Low-quality link between the two neighbors is allowing Hellos to go through, but replies aren’t getting through.


Which of the following is sometimes described as "portfast for wiring closets"?

A. Portfast

B. Uplinkfast

C. Backbonefast


E. Root Guard

F. BPDU Guard

Answer: B. Uplinkfast is pretty much PortFast for wiring closets. (Cisco recommends that Uplinkfast not be used on switches in the distribution and core layers.)

ISCW Exam:

Short answer: Name three of the six modules used by the Cisco Enterprise Architecture.

Answer: Here are all six...

Campus (Core layer of the campus network)
Edge (Internet connectivity, DMZ, VPNs)
Branch (remote offices)
Teleworker (SOHO or other mobile user)
Data Center (offsite data center, possibly for disaster recovery)

ONT Certification:

Briefly describe what each "A" in AAA refers to.

Answer: Authentication, Authorization, and Accounting, which can be summed up as "Who can access our network, what can they do when they come in, and how will we track what they do when they do it?"

