CCIE Routing and Switching Written Exam v5.1

 

QUESTION 61

Which statement about shaped round robin queuing is true?

 

A.

Queues with higher configured weights are serviced first.

B.

The device waits a period of time, set by the configured weight, before servicing the next queue.

C.

The device services a single queue completely before moving on to the next queue.

D.

Shaped mode is available on both the ingress and egress queues.

 

Correct Answer: A

Explanation:

SRR is scheduling service for specifying the rate at which packets are dequeued. With SRR there are two modes, shaped and shared. Shaped mode is only available on the egress queues SRR differs from typical WRR. With WRR queues are serviced based on the weight. Q1 is serviced for weight 1 period of time, Q2 is served for weight 2 period of time, and so forth. The servicing mechanism works by moving from queue to queue and services them for the weighted amount of time. With SRR weigh
ts are still followed; however, SRR services Q1, moves to Q2, then Q3 and Q4 in a different way. It does not wait at and service each queue for a weighted amount of time before moving on to the next queue. Instead, SRR makes several rapid passes at the queues; in each pass, each queue might or might not be serviced. For each given pass, the more highly weighted queues are more likely to be serviced than the lower priority queues.

Reference: http://www.cisco.com/c/en/us/products/collateral/switches/catalyst-3560-e-series-switches/prod_qas0900aecd805bacc7.html

 

 

QUESTION 62

A GRE tunnel is down with the error message %TUN-5-RECURDOWN: Tunnel0 temporarily disabled due to recursive routing error. Which two options describe possible causes of the error? (Choose two.)

 

A.

Incorrect destination IP addresses are configured on the tunnel.

B.

There is link flapping on the tunnel.

C.

There is instability in the network due to route flapping.

D.

The tunnel mode and tunnel IP address are misconfigured.

E.

The tunnel destination is being routed out of the tunnel interface.

 

Correct Answer: CE

Explanation:

The %TUN-5-RECURDOWN: Tunnel0 temporarily disabled due to recursive routing error message means that the generic routing encapsulation (GRE) tunnel router has discovered a recursive routing problem. This condition is usually due to one of these causes:

A misconfiguration that causes the router to try to route to the tunnel destination address using the tunnel interface itself (recursive routing)

A temporary instability caused by route flapping elsewhere in the network

 

Reference: http://www.cisco.com/c/en/us/support/docs/ip/enhanced-interior-gateway-routing-protocol-eigrp/22327-gre-flap.html

 

 

QUESTION 63

In which type of EIGRP configuration is EIGRP IPv6 VRF-Lite available?

 

A.

stub

B.

named mode

C.

classic mode

D.

passive

 

Correct Answer: B

Explanation:

The EIGRP IPv6 VRF Lite feature provides EIGRP IPv6 support for multiple VRFs. EIGRP for IPv6 can operate in the context of a VRF. The EIGRP IPv6 VRF Lite feature provides separation between routing and forwarding, providing an additional level of security because no communication between devices belonging to different VRFs is allowed unless it is explicitly configured. The EIGRP IPv6 VRF Lite feature simplifies the management and troubleshooting of traffic belonging to a specific VRF.

The EIGRP IPv6 VRF Lite feature is available only in EIGRP named configurations.

Reference: http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipv6/configuration/15-2mt/ipv6-15-2mt-book/ip6-eigrp.html#GUID-92B4FF4F-2B68-41B0-93C8-AAA4F0EC1B1B

 

 

QUESTION 64

Refer to the exhibit. If you change the Spanning Tree Protocol from pvst to rapid-pvst, what is the effect on the interface Fa0/1 port state?

 

clip_image002

 

A.

It transitions to the listening state, and then the forwarding state.

B.

It transitions to the learning state and then the forwarding state.

C.

It transitions to the blocking state, then the learning state, and then the forwarding state.

D.

It transitions to the blocking state and then the forwarding state.

 

Correct Answer: C

Explanation:

First, the port will transition to the blocking state, immediately upon the change, then it will transition to the new RSTP states of learning and forwarding.

Port States

There are only three port states left in RSTP that correspond to the three possible operational states. The 802.1D disabled, blocking, and listening states are merged into a unique 802.1w discarding state.

STP (802.1D) Port State

RSTP (802.1w) Port State

Is Port Included in Active Topology?

Is Port Learning MAC Addresses?

Disabled

Discarding

No

No

Blocking

Discarding

No

No

Listening

Discarding

Yes

No

Learning

Learning

Yes

Yes

Forwarding

Forwarding

Yes

Yes

 

 

QUESTION 65

With which ISs will an IS-IS Level 1 IS exchange routing information?

 

A.

Level 1 ISs

B.

Level 1 ISs in the same area

C.

Level 1 and Level 2 ISs

D.

Level 2 ISs

 

Correct Answer: B

Explanation:

IS-IS differs from OSPF in the way that “areas” are defined and routed between. IS-IS routers are designated as being: Level 1 (intra-area); Level 2 (inter area); or Level 1-2 (both). Level 2 routers are inter area routers that can only form relationships with other Level 2 routers. Routing information is exchanged between Level 1 routers and other Level 1 routers, and Level 2 routers only exchange information with other Level 2 routers. Level 1-2 routers exchange information with both levels and are used to connect the inter area routers with the intra area routers.

Reference: http://en.wikipedia.org/wiki/IS-IS


 

 

QUESTION 66

Refer to the exhibit. What is a possible reason for the IPSEC tunnel not establishing?

 

clip_image004

 

A.

The peer is unreachable.

B.

The transform sets do not match.

C.

The proxy IDs are invalid.

D.

The access lists do not match.

 

Correct Answer: D

Explanation:

Proxy Identities Not Supported

This message appears in debugs if the access list for IPsec traffic does not match.

1d00h: IPSec(validate_transform_proposal): proxy identities not supported

1d00h: ISAKMP: IPSec policy invalidated proposal

1d00h: ISAKMP (0:2): SA not acceptable!

The access lists on each peer needs to mirror each other (all entries need to be reversible). This example illustrates this point.

Peer A

access-list 150 permit ip 172.21.113.0 0.0.0.255 172.21.114.0 0.0.0.255

access-list 150 permit ip host 15.15.15.1 host 172.21.114.123

Peer B

access-list 150 permit ip 172.21.114.0 0.0.0.255 172.21.113.0 0.0.0.255

access-list 150 permit ip host 172.21.114.123 host 15.15.15.1

Reference: http://www.cisco.com/c/en/us/support/docs/security-vpn/ipsec-negotiation-ike-protocols/5409-ipsec-debug-00.html#proxy

 

 

QUESTION 67

Refer to the exhibit. Which statement is true?

 

clip_image006

 

A.

BGP peer 10.1.2.3 is performing inbound filtering.

B.

BGP peer 10.1.2.3 is a route reflector.

C.

R1 is a route reflector, but BGP peer 10.1.2.3 is not a route reflector client.

D.

R1 still needs to send an update to the BGP peer 10.1.2.3.

 

Correct Answer: D

Explanation:

On R1 the routing table version (Tbl Ver) for 10.1.2.3 is 1, other routers have version 2, so it needs to send an update to the 10.1.2.3 peer.

 

 

QUESTION 68

Refer to the exhibit. What is wrong with the configuration of the tunnel interface of this DMVPN Phase II spoke router?

 

clip_image008

 

A.

The interface MTU is too high.

B.

The tunnel destination is missing.

C.

The NHRP NHS IP address is wrong.

D.

The tunnel mode is wrong.

 

Correct Answer: D

Explanation:

By default, tunnel interfaces use GRE as the tunnel mode, but a DMVPN router needs to be configured for GRE multipoint by using the “tunnel mode gre multipoint” interface command.

 

 

QUESTION 69

Refer to the exhibit. The interface FastEthernet0/1 of both routers R4 and R5 is connected to the same Ethernet segment with a multicast receiver. Which two statements are true? (Choose two)

 

clip_image010

 

A.

Multicast traffic that is destined to a receiver with IP address 192.168.2.6 will flow through router R4.

B.

Both routers R4 and R5 will send PIM join messages to the RP.

C.

Only router R5 will send a multicast join message to the RP.

D.

Multicast traffic that is destined to a receiver with IP address 192.168.2.6 will flow through router R5.

 

Correct Answer: CD

Explanation:

Even though R4 is the active HSRP router, traffic will flow through R5 and only R5 will send the join messages. The Multicast DR is elected by the higher IP address or priority. R5 has 192.168.2.2 and R4 has 192.168.2.1. R5 is the DR which send all packets to the RP.

 

 

QUESTION 70

Which two features does the show ipv6 snooping features command show information about? (Choose two.)

 

A.

RA guard

B.

DHCP guard

C.

ND inspection

D.

source guard

Correct Answer: AC

Explanation:

The show ipv6 snooping features command displays the first-hop features that are configured on the router.

Example:

The following example shows that both IPv6 NDP inspection and IPv6 RA guard are configured on the router:

Router# show ipv6 snooping features

Feature name priority state

RA guard 100 READY

NDP inspection 20 READY

 

Reference: http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipv6/command/ipv6-cr-book/ipv6- s5.html

 

Free VCE & PDF File for Cisco 400-101 Practice Test

Instant Access to Free VCE Files: CCNA | CCNP | CCIE …
Instant Access to Free PDF Files: CCNA | CCNP | CCIE …