take a pen and copy before solving that question

there is a router name Ra
there is two switch sw1 and sw2
sw1 is coneceted through fa0/1 interface of router Ra
sw2 is conected through the fa1/1
serai interface of router s0/1 conected through the isp
with it ip address 192.168.1.1

now therer are three host conexted through the sw1 and
having ip
host1=10.1.2.1
host2=10.1.2.2
host3=10.1.2.3
now there is also 3ree host conected through switch 2 i.e
sw2 having ip
host4=10.1.1.1
host 5=10.1.1.2
host 6=10.1.1.3
now i think u have made corect confrigation.now questios is
started
network admin configure the Ra router in that fassion
Ra(config)#access-list 2 permit 10.1.1.0 0.0.0.255
Ra(config)#line vty 0 4
ra(config)#access-class 2 in

now question is that why should network admnistratoe do it
in this maneer

A to give access sw1 host to acess internet

B to prevent sw1 host from acessing comand promt

c to prevent sw2 host from accessing console of router ra

D to give sw2 host access to the enternet

e prevent sw1 host from accessing internet

f to prevent sw1 host from acessing the sw2 host network

isp------(s0/1)..RA..(fa1/1)---SW2-host (4,5,6)
|
|
(sw1)------host 1,2,3
this is not exect digarm but help to derive the diagram
plz answer as soon as possible

Answers were Sorted based on User's Feedback



take a pen and copy before solving that question there is a router name Ra there is two switch ..

Answer / shahin

Configuration -

Ra(config)#access-list 2 permit 10.1.1.0 0.0.0.255
Ra(config)#line vty 0 4
Ra(config)#access-class 2 in


From the above configuration one thing is clear that only
host from 10.1.1.0 network (i.e Switch 2)can access the telnet.

Host from 10.1.2.0 network are not allowed to access the
TELNET. As the access list specified on vitual terminal ie.
line vty 0 4.


So [B] is the correct answer.

[B] To prevent sw1 host from accessing command prompt

I configure ur scenario in PACKET TRACER & configure
accordingly.
After that i tried to access TELNET from client of Switch2,
i wz successful. Ie. Router allow to access the TELNET.

After that i tried to access TELNET from client of Switch1,
i wzn't successful.Ie Router doesn't allow to access the TELNET.


On the option, it create little bit confusion on mind..
COMMAND PROMPT of which device... off course its ROUTER.
If the option were written in specific, than i think no
confusion will arise.

I hope, it will help u..!!


Let me know my feedback..!!

thanxx for such a gud question.

Is This Answer Correct ?    1 Yes 0 No

take a pen and copy before solving that question there is a router name Ra there is two switch ..

Answer / jitu

hi sahin that realy nice but i canton understand that what
does the optiob B say
plz clearfy

Is This Answer Correct ?    1 Yes 0 No

take a pen and copy before solving that question there is a router name Ra there is two switch ..

Answer / shahin

Check it out in packet tracer & let me knw...!!! If u r
unable to do the telnet of router from client command
prompt, thn ultimately u r unable to access the command
prompt of router as well.

U cn access the client command prompt as ur requirement, but
not router's command prompt.

Is This Answer Correct ?    1 Yes 0 No

take a pen and copy before solving that question there is a router name Ra there is two switch ..

Answer / jitendera sinha

no monoj corect answer is given

B
but the expalantiom is not given so i am not agree with

that answer

if you have some expalnation about answer b then plz write.

Is This Answer Correct ?    0 Yes 0 No

take a pen and copy before solving that question there is a router name Ra there is two switch ..

Answer / shahin

Configuration -

Ra(config)#access-list 2 permit 10.1.1.0 0.0.0.255
Ra(config)#line vty 0 4
Ra(config)#access-class 2 in


From the above configuration one thing is clear that only
host from 10.1.1.0 network (i.e Switch 2)can access the telnet.

Host from 10.1.2.0 network are not allowed to access the
TELNET. As the access list specified on vitual terminal ie.
line vty 0 4.


So [B] is the correct answer.

[B] To prevent sw1 host from accessing command prompt

I configure ur scenario in PACKET TRACER & configure
accordingly.
After that i tried to access TELNET from client of Switch2,
i wz successful. Ie. Router allow to access the TELNET.

After that i tried to access TELNET from client of Switch1,
i wzn't successful.Ie Router doesn't allow to access the TELNET.


On the option, it create little bit confusion on mind..
COMMAND PROMPT of which device... off course its ROUTER.
If the option were written in specific, than i think no
confusion will arise.

I hope, it will help u..!!


Let me know my feedback..!!

thanxx for such a gud question.

Is This Answer Correct ?    0 Yes 0 No

take a pen and copy before solving that question there is a router name Ra there is two switch ..

Answer / manoj

Answers:-

A & E:- Both the questions are contradictory.

B:- Host can access the command prompt anyway.

C:- Network Admin already permitted SW2 host to
access the router through telnet.

D:- Depends on the Network Admin whom he wants to
give access to internet.

F:- I think RIP routing protocol should be configured
for access.

Is This Answer Correct ?    0 Yes 1 No

Post New Answer

More CCNA Interview Questions

What is Summarization and supernetting and what its use?

4 Answers  


HIGH MY ALL FRIENDS. CURRENTLY I AM WORKING DESKTOP SUPPORT ENGINEER IN mahindra & mahindra lTD.I AM CERTIFIED IN CCNA SINCE 28 DEC 2009.BUT I HAVE NOT RECEIVED CCNA CERTIFICATE. PLEASE HELP ME ..HOW RECEIVE THE CCNA CERTIFICATE.IF ANY INFORMATION IS AVAILABLE PLS SEND INFORMATION TO MY GMAIL ID.MY ID---- ngawde.cisco@gmail.com ngawde@yahoo.com

1 Answers   MAHINDRA,


Which dynamic type draw back is, if single link down, it removes its routing table?

0 Answers  


The two sublayers of the IEEE Data Link Layer are which of the following? A.) Link and Logical Control B.) Data Link and LLC C.) Logical Link Control and Media Access Control D.) Data Link and MAC

3 Answers  


please point out the wrong steps in that l3 switch conf Building configuration…… Current configuration : 1802 byte ! Version 12.2 no service pad Service timestamps debug uptime no service-password encryptions ! hostname xxxx ! enble secret XXXXXXXXXXX(omitted) enable password jitendera kumar sinha ! No aaa new-model System mtu routing 1500 bytes ip subnet-zero ip routing ip name-server 202.x.x.x. ip name –server 203.x.x.x ip name-server 192.168.x.x ip dhcp excluded-address 172.x.x.x 172.x.x.x ! ip dhcp pool ss network 172..x.x.x 255.255.255.0 domain-name xxx.com default-router 172.x.x.x dns-server 192.x.x.x 203..x.x.x 202.x.x.x lease10 ! ! ! ! ! no file verify auto spanning-tree maode pvst spanning-tree extended system-id ! vlan internel allocation policy ascending ! interface fastethernet 0/1 no switch port ip address 172.x.x.x 255.255.255.0 ! interface fastethernet 0/2 no switch port ip address 192.x.x.x ! interface fastethernet 0/3 switcport access vlan 5 switchport mode access ! interface fastethernet 0/4 Switcport access vlan 5 Switchport mode access ! interface fastethernet 0/5 Switcport access vlan 5 Switchport mode access ! interface fastethernet 0/6 Switcport access vlan 5 Switchport mode access ! interface fastethernet 0/7 Switcport access vlan 5 Switchport mode access ! interface fastethernet 0/8 Switcport access vlan 5 Switchport mode access ! interface fastethernet 0/9 Switcport access vlan 5 Switchport mode access ! interface fastethernet 0/10 Switcport access vlan 5 Switchport mode access ! interface fastethernet 0/11 Switcport access vlan 5 Switchport mode access ! interface fastethernet 0/12 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/13 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/14 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/15 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/16 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/17 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/18 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/19 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/20 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/21 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/22 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/23 Switcport access vlan 5 Switchport mode access ! Interface fastethernet 0/24 Switcport access vlan 5 Switchport mode access ! Interface vlan 1 No ip address Shutdown ! Interface vlan 5 Ip address 172.16.x.x 255.255.255.0 ! Ip default-gateway 172.16.32.1 ! Ip classless Ip route 0.0.0.0 0.0.0.0 fastethernet 0/1 172.x.x.x Ip route 0.0.0.0 0.0.0.0 fasrethernet 0/2 192.168.x.x 254 Ip http-server ! ! Control-plane ! ! Line console 0 Line vty 0 4 Password password Login Line vty 5 15 Password password Login ! end chek out the wrong steps and post it. i ma not able to ping firewall

0 Answers  






Identify 3 characteristics of switches? A.) Increase available bandwidth B.) Decrease broadcast traffic C.) Support full duplex in a multipoint topology D.) Make forwarding decision using MAC address E.) Create collision domains

1 Answers  


The Cisco IOS is stored where? A.) ROM B.) CD C.) Flash D.) NVRAM

1 Answers  


What does the parameter -- LOG -- do on an IPX access list? A.) The log keyword is not a valid option. B.) Read the LOG to figure out what traffic to deny. C.) Logs the creation of the access list. D.) Logs IPX access control list violations whenever a packet matches a particular access list entry. E.) Ensures the IPX protocol places a log in the fireplace.

1 Answers  


Hi There, I am currently studying my CCNA and doing quite a bit of practice exams. I recently came across a questions which totally confused my and I needs someone to explain it to me please, the questions is: Which routes are contained in the following summarisation address. 192.18.176.0/21. The posiible answers are, A. 192.18.183.255, B. 192.18.159.2, C. 192.18.194.160, D. 192.18.179.4, E. 192.18.183.41, F. 192.18.184.45. According to the answer sheet the correct ones are E and F, but when I work it out I get D,E and F, please help

4 Answers  


Which command we give for live view of remote site routers?

0 Answers  


what is a malicious router?when it occurs? what is a malicious pacekt ?when it occurs?

1 Answers  


what is the diffrence betwwen telnet and ssh.this question is asked by nikhil and i am plasing the answer here insteed of his personal mail.

4 Answers  


Categories