CCNA 4 R&S: Connecting Networks Chapter 8 v5.02 + v5.03 Exam Answers 2016

1.

Refer to the exhibit. Which two conclusions can be drawn from the syslog message that was generated by the router? (Choose two.)

This message resulted from an unusual error requiring reconfiguration of the interface.
This message indicates that the interface should be replaced.
This message is a level 5 notification message.
This message indicates that service timestamps have been configured.
This message indicates that the interface changed state five times.

2. A network technician has issued the service timestamps log datetime command in the configuration of the branch router. Which additional command is required to include the date and time in logged events?

Branch1(config)# service timestamps log uptime
Branch1# clock set 08:00:00 05 AUG 2013
Branch1(config)# service timestamps debug datetime
Branch1# copy running-config startup-config

3.

Refer to the exhibit. From what location have the syslog messages been retrieved?

syslog server
syslog client
router RAM
router NVRAM

4.

Refer to the exhibit. What does the number 17:46:26.143 represent?

the time passed since the syslog server has been started
the time when the syslog message was issued
the time passed since the interfaces have been up
the time on the router when the show logging command was issued

5. What are SNMP trap messages?

messages that are used by the NMS to query the device for data
unsolicited messages that are sent by the SNMP agent and alert the NMS to a condition on the network
messages that are used by the NMS to change configuration variables in the agent device
messages that are sent periodically by the NMS to the SNMP agents that reside on managed devices to query the device for
data

6. How can SNMP access be restricted to a specific SNMP manager?

Use the snmp-server community command to configure the community string with no access level.
Specify the IP address of the SNMP manager by using the snmp-server host command.
Use the snmp-server traps command to enable traps on an SNMP manager.
Define an ACL and reference it by using the snmp-server community command.

7. A network administrator issues two commands on a router:
R1(config)# snmp-server host 10.10.50.25 version 2c campus
R1(config)# snmp-server enable traps
What can be concluded after the commands are entered?

No traps are sent, because the notification-types argument was not specified yet.
Traps are sent with the source IP address as 10.10.50.25.
If an interface comes up, a trap is sent to the server.
The snmp-server enable traps command needs to be used repeatedly if a particular subset of trap types is desired.

8. What is a difference between SNMP and NetFlow?

Unlike NetFlow, SNMP uses a “push”-based model.
NetFlow collects more detailed traffic statistics on IP networks than SNMP does.
SNMP only gathers traffic statistics, whereas NetFlow can also collect many other performance indicators, such as interface
errors and CPU usage.
Unlike NetFlow, SNMP may be used to provide IP accounting for billing purposes.

9. How does NetFlow function on a Cisco router or multilayer switch?

Netflow captures and analyzes traffic.
One user connection to an application exists as two NetFlow flows.
On 2960 switches, Netlow allows for data export.
NetFlow does not consume any additional memory.

10. Which type of information can an administrator obtain with the show ip cache flow command?

the NetFlow version that is enabled
whether NetFlow is configured on the correct interface and in the correct direction
the configuration of the export parameters
the protocol that uses the largest volume of traffic

11. What is the most common purpose of implementing NetFlow in a networked environment?

to support accounting and monitoring with consumer applications
to actively capture traffic from networked devices
to monitor live data usage and to control traffic flow with set messages
to passively capture changing events that occur in the network and to perform after-the-fact-analysis

12. Which destination do Cisco routers and switches use by default when sending syslog messages for all severity levels?

RAM
NVRAM
nearest syslog server
console

13. Which SNMP feature provides a solution to the main disadvantage of SNMP polling?

SNMP community strings
SNMP set messages
SNMP get messages
SNMP trap messages

14. Which statement describes SNMP operation?

A get request is used by the SNMP agent to query the device for data.
A set request is used by the NMS to change configuration variables in the agent device.
An NMS periodically polls the SNMP agents that are residing on managed devices by using traps to query the devices for data.
An SNMP agent that resides on a managed device collects information about the device and stores that information remotely in the MIB that is located on the NMS.

15. A network administrator has issued the logging trap 4 global configuration mode command. What is the result of this command?

After four events, the syslog client will send an event message to the syslog server.
The syslog client will send to the syslog server any event message that has a severity level of 4 and higher.
The syslog client will send to the syslog server event messages with an identification trap level of only 4.
The syslog client will send to the syslog server any event message that has a severity level of 4 and lower.

16. When logging is used, which severity level indicates that a device is unusable?

Critical – Level 2
Alert – Level 1
Emergency-Level 0
Error-Level 3

17.

Refer to the exhibit. While planning an upgrade, a network administrator uses the Cisco NetFlow utility to analyze data flow in the current network. Which protocol used the greatest amount of network time?

TCP-FTP
TCP-Telnet
UDP-DNS
TCP-other
UDP-other

18. Which two statements describe items to be considered in configuring NetFlow? (Choose two.)

Netflow requires both management and agent software.
NetFlow can only be used if all devices on the network support it.
Netflow can only be used in a unidirectional flow.
Netflow requires UDP port 514 for notification messages.
Netflow consumes additional memory.

19. When SNMPvl or SNMPv2 is being used, which feature provides secure access to MIB objects?

message integrity
source validation
community strings
packet encryption

20.

Refer to the exhibit. What can be concluded from the produced output?

An ACL was configured to restrict SNMP access to an SNMP manager.
This is the output of the show snmp command without any parameters.
The system contact was not configured with the snmp server contact command

21. What are the most common syslog messages?

output messages that are generated from debug output
linkup and link down messages
those that occur when a packet matches a parameter condition in an access control list
error messages about hardware or software malfunctions

22. A network administrator has issued the snmp-server user adminl admin v3 encrypted auth md5 abc789 priv des 256 key99 command. What are two features of this command? (Choose two.)

It forces the network manager to log into the agent to retrieve the SNMP messages.
It restricts SNMP access to defined SNMP managers.
It uses the MD5 authentication of the SNMP messages.
It allows a network administrator to configure a secret encrypted password on the SNMP server.
It adds a new user to the SNMP group.

23. Fill in the blank.

The   “syslog”   protocol uses UDP port 514 and is the most common method to access system messages provided by networking devices.

24 When SNMPv1 or SNMPv2 is being used, which feature provides secure access to MIB objects?

packet encryption
source validation
community strings
message integrity

25  A network administrator has issued the snmp-server user admin1 admin v3 encrypted auth md5 abc789 priv des 256 key99 command. What are two features of this command? (Choose two.)

It uses the MD5 authentication of the SNMP messages.
It allows a network administrator to configure a secret encrypted password on the SNMP server.
It adds a new user to the SNMP group.
It restricts SNMP access to defined SNMP managers.
It forces the network manager to log into the agent to retrieve the SNMP messages.

NEW QUESTIONS

26. Which SNMP version uses weak community string-based access control and supports bulk retrieval?

SNMPv3​
SNMPv1
SNMPv2c*
SNMPv2Classic​
———

27. Which protocol or service can be configured to send unsolicited messages to alert the network administrator about a network event such as an extremely high CPU utilization on a router?

SNMP*
NetFlow
syslog
NTP
———

28. Which protocol or service allows network administrators to receive system messages that are provided by network devices?

SNMP
syslog*
NetFlow
NTP
———-

29. The command ntp server 10.1.1.1 is issued on a router. What impact does this command have?

determines which server to send system log files to

synchronizes the clock of the device to the timeserver that is located at IP address 10.1.1.1*

identifies the server on which to store backup configurations

ensures that all logging will have a time stamp associated with it
—–

30. Which syslog message type is accessible only to an administrator and only via the Cisco CLI?

alerts
debugging*
emergency
errors
———–
31. Which protocol is used by network administrators to track and gather statistics on TCP/IP packets that are entering or exiting network devices?

syslog
NetFlow*
NTP
SNMP

5PMID
F1QAQ
M3DV4
AGRVT
WUYMH
V6AYR
GO7FT
V997T
J780K
7LYQ9
E5R44
XBQZC
JXT2J
QEDVF
VAIZ9
G2NUM
2P8NC
NU1GU
UK2MR
ZDNVT
41VNX
Y2XUO
Q98M8
1BEAP
RH1AF
8DBFE
14DG1
71SOE
RVN58
BFPAK
59FQ3
HXQQF
QYNRS
448SV
JN2CZ
6PLQY
WZMUX
RZ1OL
RDJOR
NNLIR
U3GEU
T7ODO
H6741
VRQKW
ZFOMR
6KQC1
681H5
XRMS1
FOK58
OXZ4D
E8BJ
VWAR
20ZG
ZKKM
3XF6
TOU5
YG0P
KW6N
HHFD
ELPA
ROVM
U07F
QIDA
838G
SJD1
88ZT
IDAM
QSE4
5Q6N
KYXZ
BW7Y
Y60P
L3AS
0Q7M
XUEM
JUX5
7WRZ
UVOC
AVN4
L1RJ
2LJJ
IJ0L
B7ZL
DFZ8
HE9A
XH4X
AXZA
ZA4J
BRC1
ARVI
RYYB
ACXR
WXVW
LDUI
XCM3
CQKR
7SUK
P19W
Y2ZD
FZPJ
OZNZ
W2RG
WDK8
UBNN
R43B
5OV9
ZKM7
C57V
ITIP
L1QM
QJG3
BR0I
UQ31
3PCZ
FSI1
ALH9
JRJ6
RPE8
6ZLN
21G7
CNZ0
ZM3Q
XOM9
8FDZ
45TW
SMJU
MD11
NQPP
7TNH
3XMW
YHKM
FDO4
JPH8
30BD
O9DQ
WFS6
WCS7
O91V
CIXK
SOMW
UNTV
G1WF
4H4V
0GOH
HIPX
821O
WP36
RRB3
QWJZ