New Cisco 200-125 Exam Dumps Collection (Question 9 - Question 18)

Q1. Refer to the exhibit.

C-router is to be used as a "router-on-a-stick" to route between the VLANs. All the interfaces have been properly configured and IP routing is operational. The hosts in the VLANs have been configured with the appropriate default gateway. What is true about this configuration?

A. These commands need to be added to the configuration: C-router(config)# router eigrp 123

C-router(config-router)# network

B. These commands need to be added to the configuration: C-router(config)# router ospf 1

C-router(config-router)# network area 0

C. These commands need to be added to the configuration: C-router(config)# router rip

C-router(config-router)# network

D. No further routing configuration is required.

Answer: D


Since all the same router (C-router) is the default gateway for all three VLANs, all traffic destined to a different VLA will be sent to the C-router. The C-router will have knowledge of all three networks since they will appear as directly connected in the routing table. Since the C-router already knows how to get to all three networks, no routing protocols need to be configured.

Q2. Which two commands can be used to verify a trunk link configuration status on a given Cisco switch interface? (Choose two.)

A. show interface trunk

B. show interface interface

C. show ip interface brief

D. show interface vlan

E. show interface switchport

Answer: A,E


Example output from these two commands: SW3#show interface trunk

Port Mode Encapsulation Status Native vlan Fa0/19 auto n-802.1q trunking 1

Fa0/20 auto n-802.1q trunking 1 Fa0/21 auto n-802.1q trunking 1 Fa0/22 auto n-802.1q trunking 1 Port Vlans allowed on trunk Fa0/19 1-4094

Fa0/20 1-4094

Fa0/21 1-4094

Fa0/22 1-4094

SW1#show interface fast 0/2 switchport Name: Fa0/2

Switchport: Enabled

Administrative Mode: dynamic desirable Operational Mode: down

Administrative Trunking Encapsulation: dot1q Negotiation of TrunkinG. On

Access Mode VLAN: 1 (default) Trunking Native Mode VLAN: 1 (default) Voice VLAN: none

Q3. CORRECT TEXTA corporation wants to add security to its network. The requirements are:

u2711 Host B should be able to use a web browser (HTTP) to access the Finance Web Server.

u2711 Other types of access from host B to the Finance Web Server should be blocked.

u2711 All access from hosts in the Core or local LAN to the Finance Web Server should be blocked.

u2711 All hosts in the Core and on local LAN should be able to access the Public Web Server.

You have been tasked to create and apply anumbered access listto a single outbound interface. This access list can contain no more thanthreestatements that meet these requirements.

Access to the router CLI can be gained by clicking on the appropriate host.

u2711 All passwords have been temporarily set to u201cciscou201d.

u2711 The Core connection uses an IP address of

u2711 The computers in the Hosts LAN have been assigned addresses of


u2711 host A

u2711 host B

u2711 host C

u2711 host D

u2711 The Finance Web Server has been assigned an address of

u2711 The Public Web Server in the Server LAN has been assigned an address of


Please check the below explanation for all details.


We should create an access-list and apply it to the interface that is connected to the Server LAN because it can filter out traffic from both S2 and Core networks. To see which interface this is, use the u201cshow ip interface briefu201d command:

From this, we know that the servers are located on the fa0/1 interface, so we will place our numbered access list here in the outbound direction.

Corp1#configure terminal

Our access-list needs to allow host B u2013 192.168125.2 to the Finance Web Server via HTTP (port 80), so our first line is this:

Corp1(config)#access-list 100 permit tcp host host eq 80

Then, our next two instructions are these:

u2711 Other types of access from host B to the Finance Web Server should be blocked.

u2711 All access from hosts in the Core or local LAN to the Finance Web Server should be blocked.

This can be accomplished with one command (which we need to do as our ACL needs to

be no more than 3 lines long), blocking all other access to the finance web server:

Corp1(config)#access-list 100 deny ip any host

Our last instruction is to allow all hosts in the Core and on the local LAN access to the Public Web Server (

Corp1(config)#access-list 100 permit ip host any Finally, apply this access-list to Fa0/1 interface (outbound direction) Corp1(config)#interface fa0/1

Corp1(config-if)#ip access-group 100 out

Notice: We have to apply the access-list to Fa0/1 interface (not Fa0/0 interface) so that the access-list can filter traffic coming from both the LAN and the Core networks.

To verify, just click on host B to open its web browser. In the address box type to check if you are allowed to access Finance Web Server or not. If your configuration is correct then you can access it.

Click on other hosts (A, C and D) and check to make sure you canu2021t access Finance Web Server from these hosts. Then, repeat to make sure they can reach the public server at Finally, save the configuration


Corp1#copy running-config startup-config

Q4. Refer to the exhibit.

The Lakeside Company has the internetwork in the exhibit. The administrator would like to reduce the size of the routing table on the Central router. Which partial routing table entry in the Central router represents a route summary that represents the LANs in Phoenix but no additional subnets?

A. is subnetted, 1 subnets

D [90/20514560] via, 6w0d, Serial0/1

B. is subnetted, 1 subnets

D [90/20514560] via, 6w0d, Serial0/1

C. is subnetted, 1 subnets

D [90/20514560] via, 6w0d, Serial0/1

D. is subnetted, 1 subnets

D [90/20514560] via, 6w0d, Serial0/1

E. is subnetted, 1 subnets

D [90/20514560] via, 6w0d, Serial0/1

F. is subnetted, 1 subnets

D [90/20514560] via, 6w0d, Serial0/1

Answer: D


The route includes,, and networks only.

Q5. What are three benefits of GLBP? (Choose three.)

A. GLBP supports up to eight virtual forwarders per GLBP group.

B. GLBP supports clear text and MD5 password authentication between GLBP group members.

C. GLBP is an open source standardized protocol that can be used with multiple vendors.

D. GLBP supports up to 1024 virtual routers.

E. GLBP can load share traffic across a maximum of four routers.

F. GLBP elects two AVGs and two standby AVGs for redundancy.

Answer: B,D,E

Q6. Which subnet mask would be appropriate for a network address range to be subnetted for up to eight LANs, with each LAN containing 5 to 26 hosts?






Answer: D


For a class C network, a mask of will allow for up to 8 networks with 32 IP addresses each (30 usable).

Q7. Which two tasks does the Dynamic Host Configuration Protocol perform? (Choose two.)

A. Set the IP gateway to be used by the network.

B. Perform host discovery used DHCPDISCOVER message.

C. Configure IP address parameters from DHCP server to a host.

D. Provide an easy management of layer 3 devices.

E. Monitor IP performance using the DHCP server.

F. Assign and renew IP address from the default pool.

Answer: C,F


The Dynamic Host Configuration Protocol (DHCP) is a network protocol used to configure devices that are connected to a network (known as hosts) so they can communicate on that network using the Internet Protocol (IP). It involves clients and a server operating in a client-server model. DHCP servers assigns IP addresses from a pool of addresses and also assigns other parameters such as DNS and default gateways to hosts.

Q8. Syslog was configured with a level 3 trap. Which 3 types of logs would be generated (choose four)

A. Emergencies

B. Alerts

C. Critical

D. Errors

E. Warnings

Answer: A,B,C,D


The Message Logging is divided into 8 levels as listed below: Level Keyword Description

0 emergencies System is unusable 1 alerts Immediate action is needed 2 critical Critical conditions exist

3 errors Error conditions exist

4 warnings Warning conditions exist

5 notification Normal, but significant, conditions exist 6 informational Informational messages

7 debugging Debugging messages

The highest level is level 0 (emergencies). The lowest level is level 7. If you specify a level with the u201clogging console levelu201d command, that level and all the higher levels will be displayed. For example, by using the u201clogging console warningsu201d command, all the logging of emergencies, alerts, critical, errors, warnings will be displayed.

Q9. What does a Layer 2 switch use to decide where to forward a received frame?

A. source MAC address

B. source IP address

C. source switch port

D. destination IP address

E. destination port address

F. destination MAC address

Answer: F


When a frame is received, the switch looks at the destination hardware address and finds the interface if it is in its MAC address table. If the address is unknown, the frame is broadcast on all interfaces except the one it was received on.

Q10. What command is used to verify the DLCI destination address in a Frame Relay static configuration?

A. show frame-relay pvc

B. show frame-relay lmi

C. show frame-relay map

D. show frame relay end-to-end

Answer: C


Sample u201cshow frame-relay mapu201d output: R1#sh frame map

Serial0/0 (up): ip 401(0x191,0x6410), dynamic, broadcast,, status defined, active

Serial0/0 (up): ip 403(0x193,0x6430), dynamic, broadcast,, status defined, active

Serial0/0 (up): ip 401(0x191,0x6410), static, CISCO, status defined, active

