Summer Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70track

Free Cisco 200-301 Practice Exam with Questions & Answers | Set: 2

Questions 21

Which two practices are recommended for an acceptable security posture in a network? (Choose two)

Options:
A.

Backup device configurations to encrypted USB drives for secure retrieval

B.

maintain network equipment in a secure location

C.

Use a cryptographic keychain to authenticate to network devices

D.

Place internal email and file servers in a designated DMZ

E.

Disable unused or unnecessary ports, interfaces and services

Cisco 200-301 Premium Access
Questions 22

Which port type supports the spanning-tree portfast command without additional configuration?

Options:
A.

access ports

B.

Layer 3 main Interfaces

C.

Layer 3 suninterfaces

D.

trunk ports

Questions 23

Which action is taken by a switch port enabled for PoE power classification override?

Options:
A.

When a powered device begins drawing power from a PoE switch port a syslog messageage is generated

B.

As power usage on a PoE switch port is checked data flow to the connected device is temporarily paused

C.

If a switch determines that a device is using less than the minimum configured power it assumes the device has failed and disconnects

D.

Should a monitored port exceeds the maximum administrative value for power, the port is shutdown and err-disabled

Questions 24

What is the default port-security behavior on a trunk link?

Options:
A.

It causes a network loop when a violation occurs.

B.

It disables the native VLAN configuration as soon as port security is enabled.

C.

It places the port in the err-disabled state if it learns more than one MAC address.

D.

It places the port in the err-disabled state after 10 MAC addresses are statically configured.

Questions 25

Refer to the exhibit.

200-301 Question 25

Which route must be configured on R1 so that OSPF routing is used when OSPF is up. but the server is still reachable when OSPF goes down?

Options:
A.

ip route 10.1.1.10 255.255.255.255 172.16.2.2 100

B.

ip route 10.1.1.0 255.255.255.0 gi0/1 125

C.

ip route 10.1.1.0 255.255.255.0 172.16.2.2 100

D.

ip route 10.1.1.10 255.255.255.255 gi0/0 125

Questions 26

Which two components comprise part of a PKI? (Choose two.)

Options:
A.

preshared key that authenticates connections

B.

RSA token

C.

CA that grants certificates

D.

clear-text password that authenticates connections

E.

one or more CRLs

Questions 27

Drag and drop the threat-mitigation techniques from the left onto the types of threat or attack they mitigate on the right.

200-301 Question 27

Options:
Questions 28

Which plane is centralized by an SDN controller?

Options:
A.

management-plane

B.

control-plane

C.

data-plane

D.

services-plane

Questions 29

Refer to the exhibit.

200-301 Question 29

Which plan must be Implemented to ensure optimal QoS marking practices on this network?

Options:
A.

As traffic traverses MLS1 remark the traffic, but trust all markings at the access layer.

B.

Trust the IP phone markings on SW1 and mark traffic entering SW2 at SW2.

C.

Remark traffic as it traverses R1 and trust all markings at the access layer.

D.

As traffic enters from the access layer on SW1 and SW2. trust all traffic markings.

Questions 30

Refer to the exhibit.

200-301 Question 30

Which two commands when used together create port channel 10? (Choose two.)

Options:
A.

int range g0/0-1channel-group 10 mode active

B.

int range g0/0-1 channel-group 10 mode desirable

C.

int range g0/0-1channel-group 10 mode passive

D.

int range g0/0-1 channel-group 10 mode auto

E.

int range g0/0-1 channel-group 10 mode on

Questions 31

Which interface mode must be configured to connect the lightweight APs in a centralized architecture?

Options:
A.

WLAN dynamic

B.

management

C.

trunk

D.

access

Questions 32

Which PoE mode enables powered-device detection and guarantees power when the device is detected?

Options:
A.

dynamic

B.

static

C.

active

D.

auto

Questions 33

A Cisco engineer is configuring a factory-default router with these three passwords:

• The user EXEC password for console access is p4ssw0rd1

• The user EXEC password for Telnet access is s3cr3t2

• The password for privileged EXEC mode is pr1v4t3p4ss Which command sequence must the engineer configured

A)

200-301 Question 33

B)

200-301 Question 33

C)

200-301 Question 33

D)

200-301 Question 33

Options:
A.

Option A

B.

Option B

C.

Option C

D.

Option D

Questions 34

Refer to the exhibit.

200-301 Question 34

How should the configuration be updated to allow PC1 and PC2 access to the Internet?

Options:
A.

Modify the configured number of the second access list.

B.

Add either the ip nat {inside|outside} command under both interfaces.

C.

Remove the overload keyword from the ip nat inside source command.

D.

Change the ip nat inside source command to use interface GigabitEthernet0/0.

Questions 35

What is a function of Opportunistic Wireless Encryption in an environment?

Options:
A.

offer compression

B.

increase security by using a WEP connection

C.

provide authentication

D.

protect traffic on open networks

Questions 36

Refer to the exhibit.

200-301 Question 36

What is the next hop for traffic entering R1 with a destination of 10.1.2.126?

Options:
A.

10.165.20.126

B.

10.165.20.146

C.

10.165.20.166

D.

10.165.20.226

Questions 37

Which WAN topology has the highest degree of reliability?

Options:
A.

full mesh

B.

Point-to-point

C.

hub-and-spoke

D.

router-on-a-stick

Questions 38

What provides centralized control of authentication and roaming In an enterprise network?

Options:
A.

a lightweight access point

B.

a firewall

C.

a wireless LAN controller

D.

a LAN switch

Questions 39

Which QoS tool is used to optimize voice traffic on a network that is primarily intended for data traffic?

Options:
A.

FIFO

B.

WFQ

C.

PQ

D.

WRED

Questions 40

Refer to the exhibit.

200-301 Question 40

The given Windows PC is requesting the IP address of the host at www.cisco.com. To which IP address is the request sent?

Options:
A.

192.168.1.226

B.

192.168.1.100

C.

192.168.1.254

D.

192.168.1.253