P.S. Exact 300-101 discount pack are available on Google Drive, GET MORE: https://drive.google.com/open?id=1lWZpAR5vb8lOApmzhHWMzXffOPhCR-LL
Question No: 11
Router R1, a branch router, connects to the Internet using DSL. Some traffic flows through a GRE and IPsec tunnel, over the DSL connection, and into the core of an Enterprise network. The branch also allows local hosts to communicate directly with public sites in the Internet over this same DSL connection. Which of the following answers defines how the branch NAT config avoids performing NAT for the Enterprise directed traffic but does perform NAT for the Internet-directed traffic?
A. By not enabling NAT on the IPsec tunnel interface
B. By not enabling NAT on the GRE tunnel interface
C. By configuring the NAT-referenced ACL to not permit the Enterprise traffic
D. By asking the ISP to perform NAT in the cloud
Answer: C
Explanation:
The NAT configuration acts only on packets permitted by a referenced ACL. As a result, the ACL can permit packets destined for the Internet, performing NAT on those packets. The ACL also denies packets going to the Enterprise, meaning that the router does not apply NAT to those packets.
New Questions
190.Which action can you take to mitigate unicast flooding in a network?
A. Configure VLANs to span multiple access-layer switches.
B. Implement a nonlooped network topology.
C. Set the ARP timer value to less than the CAM timer value.
D. Set the CAM timer value to less than the ARP timer value.
Question No: 12
Which routing protocol will continue to receive and process routing updates from neighbors after the passive interface router configuration command is entered?
A. EIGRP
B. RIP
C. OSPF
D. IS-IS
Answer: B
Question No: 13
If you want to migrate to IS-IS network to another routing protocol with?
A. UDP
B. EIGRP
C. OSPF
D. RIP
E. internal BGP
F. TCP/IP
Answer: B,C
Question No: 14
Which two configurations can a PPPoE client support? (Choose Two)
A. Eight clients are configured on a single CPE.
B. The client is connected to multiple hosts over DMVPN
C. The client is installed on the same network device as the server.
D. The client is connecting over an ATM PVC
E. The client is installed on a native IPv6 network.
Answer: C,D
Question No: 15
A router is configured for redistribution to advertise EIGRP routes into OSPF on a boundary router. Given the configuration:
router ospf 1
redistribute eigrp 1 metric 25 subnets
What is the function of the 25 parameter in the redistribute command?
A. It specifies the seed cost to be applied to the redistributed routes.
B. It specifies the administrative distance on the redistributed routes.
C. It specifies the metric limit of 25 subnets in each OSPF route advertisement.
D. It specifies a new process-id to inject the EIGRP routes into OSPF.
Answer: A
Question No: 16
A network engineer initiates the ip sla responder tcp-connect command in order to gather statistics for performance gauging. Which type of statistics does the engineer see?
A. connectionless-oriented
B. service-oriented
C. connection-oriented
D. application-oriented
Answer: C
Question No: 17
When a packet is denied by an IPv6 traffic filter, which additional action does the device perform?
A. It scans the rest of the ACL for a permit entry matching the destination
B. It generates a TCP Fin bit and sends it to the source.
C. A creates a null route for the destination and adds it to the route table
D. It generates an ICMP unreachable message for the frame.
Answer: A
Question No: 18
What does the following access list, which is applied on the external interface FastEthernet 1/0 of the perimeter router, accomplish?
router(config)#access-list 101 deny ip 10.0.0.0 0.255.255.255 any log
router (config)#access-list 101 deny ip 192.168.0.0 0.0.255.255 any log
router (config)#access-list 101 deny ip 172.16.0.0 0.15.255.255 any log router (config)#access-list 101 permit ip any any
router (config)#interface fastEthernet 1/0 router (config-if)#ip access-group 101 in
A. It prevents incoming traffic from IP address ranges 10.0.0.0-10.0.0.255, 172.16.0.0- 172.31.255.255, 192.168.0.0-192.168.255.255 and logs any intrusion attempts.
B. It prevents the internal network from being used in spoofed denial of service attacks and logs any exit to the Internet.
C. It filters incoming traffic from private addresses in order to prevent spoofing and logs any intrusion attempts.
D. It prevents private internal addresses to be accessed directly from outside.
Answer: C
Question No: 19
Which option is a prerequisite for stateful NAT64?
A. IPsec for IPv6
B. DNS64
C. application level gateway
D. ICMP64
Answer: B
Question No: 20
Which method allows IPv4 and IPv6 to work together without requiring both to be used for a single connection during the migration process?
A. dual-stack method
B. 6to4 tunneling
C. GRE tunneling
D. NAT-PT
Answer: A
Recommend!! Get the Exact 300-101 dumps in VCE and PDF From Allfreedumps, Welcome to download: https://www.allfreedumps.com/300-101-dumps.html (New 487 Q&As Version)