CCNP SWITCH Practice Exam:
Securing Your Switches - Question Set #1
To prepare you for success on the CCNP SWITCH exam, here's a practice exam on multilayer switching and HSRP!
Answers can be found at the bottom of the page.
For plenty of additional CCNP SWITCH exam tutorials, videos, and practice exams, visit my CCNP SWITCH Tutorials page and my YouTube Cisco Certification Video Training page!
Chris Bryant
CCIE #12999
"The Computer Certification Bulldog"
chris@thebryantadvantage.com
The Only CCNP SWITCH Exam DVD From "The Computer Certification Bulldog" -- Chris Bryant, CCIE #12933.
 
Question 1:
Identify the true statements regarding DHCP Snooping.
A. It's disabled by default.
B. It's enabled by default.
C. When enabled, all ports are considered untrusted by default.
D. When enabled, all ports are considered "trusted" by default.
Question 2:
Which of the following is FALSE regarding SPAN?
A. A destination port can fill that role for multiple SPAN sessions.
B. A source port can fill that role for multiple SPAN sessions.
C. A destination port can be part of an Etherchannel.
D. A source port can be part of an Etherchannel.
Question 3:
Short answer: What command enables and defines a SPAN session?
Question 4:
Short answer: What command verifies a SPAN session?
Question 5:
If inter-VLAN traffic is matched against a VLAN ACL, and no match is found, what happens to that traffic?
A. It's denied.
B. It's permitted, since VLAN ACLs have no implicit deny.
C. It's filtered.
D. It's sent to the CPU for further processing.
Question 6:
You want to apply port security to a Cisco 2950 switch port. No other configuration has been applied to the port in question. What do you first have to do with that port?
A. Make it a trunk port.
B. Enable 802.1x.
C. Make it an access port.
D. Nothing, use the port-security command to get started!
Question 7:
You are configuring SPAN on two switches. One switch contains the source port; the other switch has the destination port. What variation of SPAN should you use?
A. Local SPAN
B. VTP SPAN
C. RSPAN
D. VSPAN
Answers right after this brief, important message!
____________________________________________________
I'm Paying It Forward Bigger Than Before...
The CCNP SWITCH Exam Study Package Is Now $25!

" Your books are the best! The best money I have spent on CCNP training material!" -- Rob Pethick, CCNP
____________________________________________________
Answers:
1. A, C. DHCP snooping is off by default, and when you turn it on, all ports on the switch are considered "untrusted".
2. A, C. A destination SPAN port can only fill that role for one session. Additionally, it cannot be part of an Etherchannel.
3. You define a SPAN session with the monitor session command.
4. Very SPAN sessions with show monitor.
5. A. Just like other VLANs, a VLAN ACL has an implicit deny at the end.
6. C. You'll have to change the mode of the port from dynamic desirable to access.
7. C. You'll need RSPAN - Remote SPAN.
For plenty of additional CCNP SWITCH practice exams, tutorials, and videos, just click that link for our CCNP SWITCH Exam Resource Center!
The Only CCNP SWITCH Exam DVD From "The Computer Certification Bulldog" -- Chris Bryant, CCIE #12933.
 
The Ultimate CCNA Study Package | The Ultimate CCNA Study Guide
Binary Math And Subnetting Mastery
Cisco Rack Rentals
CCNP BSCI Exam Study Package
CCNP BCMSN Exam Study Package
CCNP BCRAN Exam Study Package
CCNP CIT Exam Study Package | CCNP BSCI Exam Study Guide
CCNA CBT Video Boot Camp | CCNP BSCI Video Boot Camp
Cisco Training Tutorials And Cisco Certification Articles
CCNP CBT BCMSN Video Boot Camp | CCNP CBT BCRAN Video Boot Camp
CompTIA Network+ Exam Study Package
CompTIA Security+ Exam Study Package
CompTIA A + Certification Exam Study Package
CCNA Training Store | CCNP Certification Training Store
CompTIA Certification Training Store
Cisco Lab Router And Switch Home Lab Help
Site Map | Home Page | Testimonials
Microsoft Windows Vista Certification Updates And News
The Bryant Advantage Blog | About Chris Bryant, CCIE #12933
|