CISCO Chapter 5 Exam
[+] Create a local user.
1
[+] Generate RSA keys.
2
[+] Configure a domain name.
3
[+] Use the login local command.
4
[+] Use the transport input ssh command.
5
[+] Order does not matter within this group.
6
Refer to the exhibit. A network technician is troubleshooting connectivity issues in an Ethernet network with the command show interfaces fastEthernet 0/0. What conclusion can be drawn based on the partial output in the exhibit?
A malfunctioning NIC can cause frames to be transmitted that are longer than the allowed maximum length.*
Match the step to each switch boot sequence description. (Not all options are used.) 3
CPU register initializations
Which statements are true regarding switch port security?
Dynamically learned secure MAC addresses are lost when the switch reboots.* If fewer than the maximum number of MAC addresses for a port are configured statically, dynamically learned addresses are added to CAM until the maximum number is reached.*
Which statement describes the port speed LED on the Cisco Catalyst 2960 switch?
If the LED is green, the port is operating at 100 Mb/s.*
Which action will bring an error-disabled switch port back to an operational state?
Issue the shutdown and then no shutdown interface commands.*
Refer to the exhibit. The network administrator wants to configure Switch1 to allow SSH connections and prohibit Telnet connections. How should the network administrator change the displayed configuration to satisfy the requirement?
Modify the transport input command.*
A production switch is reloaded and finishes with a Switch> prompt. What two facts can be determined?
POST occurred normally.* A full version of the Cisco IOS was located and loaded.*
Open the PT Activity. Perform the tasks in the activity instructions and then answer the question. Which event will take place if there is a port security violation on switch S1 interface Fa0/1?
Packets with unknown source addresses will be dropped.
Refer to the exhibit. Which event will take place if there is a port security violation on switch S1 interface Fa0/1?
Packets with unknown source addresses will be dropped.*
Which two statements are true about using full-duplex Fast Ethernet?
Performance is improved with bidirectional data flow.* Full-duplex Fast Ethernet offers 100 percent efficiency in both directions.*
Where are dynamically learned MAC addresses stored when sticky learning is enabled with the switchport port-security mac-address sticky command?
RAM*
Refer to the exhibit. Port Fa0/2 has already been configured appropriately. The IP phone and PC work properly. Which switch configuration would be most appropriate for port Fa0/2 if the network administrator has the following goals? No one is allowed to disconnect the IP phone or the PC and connect some other wired device. If a different device is connected, port Fa0/2 is shut down. The switch should automatically detect the MAC address of the IP phone and the PC and add those addresses to the running configuration.
SWA(config-if)# switchport port-security SWA(config-if)# switchport port-security maximum 2 SWA(config-if)# switchport port-security mac-address sticky*
What is one difference between using Telnet or SSH to connect to a network device for management purposes?
Telnet sends a username and password in plain text, whereas SSH encrypts the username and password.*
The following words are displayed: ATC_S2# show port-security interface fastethernet 0/3Port Security : EnabledPort Status : Secure-upViolation Mode : ShutdownAging Time : 0 minsAging Type : AbsoluteSecureStatic Address Aging : DisabledMaximum MAC Addresses : 2Total MAC Addresses : 1Configured MAC Addresses : 0Sticky MAC Addresses : 1Last Source Address:Vlan : 00D0.D3B6.C26B:10Security Violation Count : 0 Refer to the exhibit. What can be determined about port security from the information that is shown?
The port violation mode is the default for any port that has port security enabled.*
Refer to the exhibit. What media issue might exist on the link connected to Fa0/1 based on the show interface command?
There could be too much electrical interference and noise on the link.*
Which interface is the default location that would contain the IP address used to manage a 24-port Ethernet switch?
VLAN 1*
Which command is used to set the BOOT environment variable that defines where to find the IOS image file on a switch?
boot system*
What is the effect of using the switchport port-security command?
enables port security on an interface*
Match the step to each switch boot sequence description. (Not all options are used.) 1
execute POST
Match the step to each switch boot sequence description. (Not all options are used.) 4
flash file system initialization
Fill in the blank. Do not use abbreviations. What is the missing command on S1? "
ip address 192.168.99.2 255.255.255.0 "
Match the step to each switch boot sequence description. (Not all options are used.) 5
load the IOS
Match the step to each switch boot sequence description. (Not all options are used.) 2
load the boot loader from ROM
If one end of an Ethernet connection is configured for full duplex and the other end of the connection is configured for half duplex, where would late collisions be observed?
on the half-duplex end of the connection*
A network administrator configures the port security feature on a switch. The security policy specifies that each access port should allow up to two MAC addresses. When the maximum number of MAC addresses is reached, a frame with the unknown source MAC address is dropped and a notification is sent to the syslog server. Which security violation mode should be configured for each access port?
restrict*
What is a function of the switch boot loader?
to provide an environment to operate in when the switch operating system cannot be found*
Match the step to each switch boot sequence description. (Not all options are used.) 6
transfer switch control to the IOS
In which situation would a technician use the show interfaces switch command?
when packets are being dropped from a particular directly attached host*