Test Online Free Cisco 300-410 Exam Questions and Answers
Practice a live sample before buying full access. This page keeps the free 300-410 question set organized by page so visitors and search engines can reach the canonical -questions.html URL directly.
DRAG DROP
Drag and drop the addresses from the left onto the correct IPv6 filter purposes on the right.
Answer:
Explanation:
HTTP and HTTPs run on TCP port 80 and 443, respectively and we have to remember them.
Syslog runs on UDP port 514 while NTP runs on UDP port 123 so if we remember them we can find out the matching answers easily. But maybe there is some typos in this question as 2001:d88:800:200c::c/126 only ranges from 2001:d88:800:200c:0:0:0:c to 2001:d88:800:200c:0:0:0:f (4 hosts in total). It does not cover host
2001:0D88:0800:200c::1f. Same for 2001:D88:800:200c::e/126, which also ranges from
2001:d88:800:200c:0:0:0:c to 2001:d88:800:200c:0:0:0:f and does not cover host
2001:0D88:0800:200c::1c.
Question 32Selectable Answer
Refer to the exhibit.
An IP SLA was configured on router R1 that allows the default route to be modified in the event that Fa0/0 loses reachability with the router R3 Fa0/0 interface. The route has changed to flow through router R2.
Which debug command is used to troubleshoot this issue?
Answer: Explanation:
debug ip routing This command enables debugging messages related to the routing table.
Question 33Selectable Answer
A network administrator is troubleshooting a failed AAA login issue on a Cisco Catalyst c3560 switch. When the network administrator tries to log in with SSH using TACACS+ username and password credentials, the switch is no longer authenticating and is failing back to the local account.
Which action resolves this issue?
Answer:
Question 34Selectable Answer
What is a limitation of IPv6 RA Guard?
Answer: Explanation:
Restrictions for IPv6 RA Guard
✑ . The IPv6 RA Guard feature does not offer protection in environments where IPv6 traffic is tunneled.
✑ This feature is supported only in hardware when the ternary content addressable memory (TCAM) is programmed.
✑ This feature can be configured on a switch port interface in the ingress direction.
✑ This feature supports host mode and router mode.
✑ This feature is supported only in the ingress direction; it is not supported in the egress direction.
✑ This feature is not supported on EtherChannel and EtherChannel port members.
✑ This feature is not supported on trunk ports with merge mode.
✑ This feature is supported on auxiliary VLANs and private VLANs (PVLANs). In the case of PVLANs, primary VLAN features are inherited and merged with port features.
✑ Packets dropped by the IPv6 RA Guard feature can be spanned.
Reference: https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipv6_fhsec/configuration/xe-16-10/ip6f-xe-16-10-book/ip6-ra-guard.html#GUID-589AF00C-7499-439F-AD23-51005D61CAB7
Question 35Selectable Answer
Refer to the exhibit.
An engineer must configure DMVPN Phase 3 hub-and-spoke topology to enable a spoke-to-spoke tunnel.
Which NHRP configuration meets the requirement on R6?
Answer:
Question 36Selectable Answer
Refer to the exhibit.
R1 is configured with uRPF, and ping to R1 is failing from a source present in the R1 routing table via the GigatxtEthernet 0/0 interface.
Which action resolves the issue?
Answer:
Question 37Selectable Answer
Refer to the exhibit.
The IT router has been configured with the Science VRF and the interfaces have been assigned to the VRF.
Which set of configurations advertises Science-1 and Science-2 routes using EIGRPAS 111?
Answer:
Question 38Selectable Answer
Which two components are needed for a service provider to utilize the LVPN MPLS application? (Choose two.)
Answer: Explanation:
MPLS Network Protocols
+ IGP: OSPF, EIGRP, IS-IS on core facing and core links+ RSVP and/or LDP on core and/or core facing links ->
+ MP-iBGP on PE devices (for MPLS services), MP-BGP: Multiprotocol Border Gateway
Protocol, used for MPLS L3 VPN -> .
Reference: https://www.uio.no/studier/emner/matnat/ifi/IN3230/h19/kursmateriell/mpls-lecture.pdf
Question 39Selectable Answer
Refer to the exhibit.
A customer reports that networks in the 10.0.1.0/24 space do not appear in the RIP database.
What action resolves the issue?
Answer:
Question 40Selectable Answer
Refer to the exhibit.
An engineer configured NetFlow but cannot receive the flows from R1.
Which two configurations resolve the issue? (Choose two )
A)
B)
C)
D)
E)
Answer:
Question 41Selectable Answer
Refer to the exhibit.
Which configuration denies Telnet traffic to router 2 from 198A:0:200C::1/64?
A)
B)
C)
D)
Answer:
Question 42Selectable Answer
Refer to the exhibit.
The enterprise users fail to authenticate with the TACACS server when a direct fiber link fails between RB and RD.
The NOC team observes:
✑ Users connected on AS65201 fail to authenticate with TACACS server 192 168 1 1
✑ Users connected on AS65101 successfully authenticate with TACACS server 192 168 1 1
✑ All AS65101 and AS65201 users are configured to authenticate with the TACACS server
Which configuration resolves the issue?
A)
B)
C)
D)
Answer:
Question 43Selectable Answer
Refer to the exhibit.
The ACL is placed on the inbound Gigabit 0/1 interface of the router. Host 192.168.10.10cannot SSH to host 192.168.100.10 even though the flow is permitted.
Which action resolves the issue without opening full access to this router?
Answer:
Question 44Selectable Answer
Refer to the exhibit.
The company implemented uRPF to address an ant spoofing attack. A network engineer received a call from the IT security department that the regional data center is under an IP attack.
Which configuration must be implemented on R1 to resolve this issue?