Q51.  - (Topic 4)

Which encapsulation type is a Frame Relay encapsulation type that is supported by Cisco routers?


B. ANSI Annex D

C. Q9333-A Annex A


Answer: A


Cisco supports two Frame Relay encapsulation types: the Cisco encapsulation and the IETF Frame Relay encapsulation, which is in conformance with RFC 1490 and RFC 2427. The former is often used to connect two Cisco routers while the latter is used to connect a Cisco router to a non-Cisco router. You can test with your Cisco router when typing the command Router(config-if)#encapsulation frame-relay ? on a WAN link. Below is the output of this command (notice Cisco is the default encapsulation so it is not listed here, just press Enter to use it).

Note: Three LMI options are supported by Cisco routers are ansi, Cisco, and Q933a. They

represent the ANSI Annex D, Cisco, and ITU Q933-A (Annex A) LMI types, respectively. HDLC is a WAN protocol same as Frame-Relay and PPP so it is not a Frame Relay encapsulation type.

Q52.  - (Topic 8)

What is the danger of the permit any entry in a NAT access list?

A. It can lead to overloaded resources on the router.

B. It can cause too many addresses to be assigned to the same interface.

C. It can disable the overload command.

D. It prevents the correct translation of IP addresses on the inside network.

Answer: A

Q53.  - (Topic 5)

In GLBP, which router will respond to client ARP requests?

A. The active virtual gateway will reply with one of four possible virtual MAC addresses.

B. All GLBP member routers will reply in round-robin fashion.

C. The active virtual gateway will reply with its own hardware MAC address.

D. The GLBP member routers will reply with one of four possible burned in hardware addresses.

Answer: A


One disadvantage of HSRP and VRRP is that only one router is in use, other routers must wait for the primary to fail because they can be used. However, Gateway Load Balancing Protocol (GLBP) can use of up to four routers simultaneously. In GLBP, there is still only one virtual IP address but each router has a different virtual MAC address. First a GLBP group must elect an Active Virtual Gateway (AVG). The AVG is responsible for replying ARP requests from hosts/clients. It replies with different virtual MAC addresses that correspond to different routers (known as Active Virtual Forwarders – AVFs) so that clients can send traffic to different routers in that GLBP group (load sharing).

Q54.  - (Topic 5)

Which two of these statements are true of IPv6 address representation? (Choose two.)

A. There are four types of IPv6 addresses: unicast, multicast, anycast, and broadcast.

B. A single interface may be assigned multiple IPv6 addresses of any type.

C. Every IPv6 interface contains at least one loopback address.

D. The first 64 bits represent the dynamically created interface ID.

E. Leading zeros in an IPv6 16 bit hexadecimal field are mandatory.

Answer: B,C


✑ A single interface may be assigned multiple addresses of any type (unicast, anycast, multicast).

✑ Every IPv6-enabled interface must contain at least one loopback and one link-local


✑ Optionally, every interface can have multiple unique local and global addresses.

Reference: IPv6 Addressing at a Glance – Cisco PDF

Q55.  - (Topic 8)

While troubleshooting a connection problem on a computer, you determined that the computer can ping a specific web server but it cannot connect to TCP port 80 on that server. Which reason for the problem is most likely true?

A. A VLAN number is incorrect.

B. A Route is missing

C. An ARP table entry is missing.

D. An ACL is blocking the TCP port.

Answer: D

Q56.  - (Topic 3)

Which command encrypts all plaintext passwords?

A. Router# service password-encryption

B. Router(config)# password-encryption

C. Router(config)# service password-encryption

D. Router# password-encryption

Answer: C



The “service password-encryption” command allows you to encrypt all passwords on your router so they cannot be easily guessed from your running-config. This command uses a very weak encryption because the router has to be very quickly decode the passwords for its operation.

It is meant to prevent someone from looking over your shoulder and seeing the password, that is all. This is configured in global configuration mode.

Q57.  - (Topic 8)

Which command can you enter to route all traffic that is destined for to a specific interface?

A. router(config)#ip route GigabitEthernet0/1

B. router(config)#ip route GigabitEthernet0/1

C. router(config)#ip route GigabitEthernet0/1

D. router(config)#ip route GigabitEthernet0/1

Answer: A

Q58.  - (Topic 5)

A network engineer wants to allow a temporary entry for a remote user with a specific username and password so that the user can access the entire network over the Internet.

Which ACL can be used?

A. standard

B. extended

C. dynamic

D. reflexive

Answer: C


We can use a dynamic access list to authenticate a remote user with a specific username and password. The authentication process is done by the router or a central access server such as a TACACS+ or RADIUS server. The configuration of dynamic ACL can be read here: http://www.cisco.com/en/US/tech/tk583/tk822/technologies_tech_note09186a0080094524. shtml

Q59.  - (Topic 8)

If three devices are plugged into one port on a switch and two devices are plugged into a different port, how many collision domains are on the switch?

A. 2

B. 4

C. 5

D. 6

Answer: C

Q60.  - (Topic 8)

Why is the Branch2 network 10.1 0.20.0/24 unable to communicate with the Server farm1 network 10.1 0.10.0/24 over the GRE tunnel?

A. The GRE tunnel destination is not configured on the R2 router.

B. The GRE tunnel destination is not configured on the Branch2 router.

C. The static route points to the tunnel0 interface that is misconfigured on the Branch2 router.

D. The static route points to the tunnel0 interface that is misconfigured on the R2 router.

Answer: C