Cisco 200-301 Exam (page: 48)
Cisco Certified Network Associate (CCNA)
Updated on: 12-Feb-2026

Viewing Page 48 of 281

Which two conditions must be met before SSH operates normally on a Cisco IOS switch? (Choose two.)

  1. IP routing must be enabled on the switch.
  2. A console password must be configured on the switch.
  3. Telnet must be disabled on the switch.
  4. The switch must be running a k9 (crypto) IOS image.
  5. The ip domain-name command must be configured on the switch.

Answer(s): D,E


Reference:

https://www.cisco.com/c/en/us/support/docs/security-vpn/secure-shell-ssh/4145-ssh.html



Refer to the exhibit. Which password must an engineer use to enter the enable mode?

  1. adminadmin123
  2. cisco123
  3. default
  4. testing1234

Answer(s): D

Explanation:

If neither the enable password command nor the enable secret command is configured, and if there is a line password configured for the console, the console line password serves as the enable password for all VTY sessions -> The “enable secret” will be used first if available, then “enable password” and line password.



Which state does the switch port move to when PortFast is enabled?

  1. blocking
  2. listening
  3. learning
  4. forwarding

Answer(s): D



Which protocol prompts the Wireless LAN Controller to generate its own local web administration SSL certificate for GUI access?

  1. RADIUS
  2. HTTPS
  3. TACACS+
  4. HTTP

Answer(s): B

Explanation:

You can protect communication with the GUI by enabling HTTPS. HTTPS protects HTTP browser sessions by using the Secure Sockets Layer (SSL) protocol.
When you enable HTTPS, the controller generates its own local web administration SSL certificate and automatically applies it to the GUI. You also have the option of downloading an externally generated certificate.


Reference:

https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-0/configuration-guide/b_cg80/b_cg80_chapter_011.html



An engineer must configure interswitch VLAN communication between a Cisco switch and a third-party switch. Which action should be taken?

  1. configure DSCP
  2. configure IEEE 802.1q
  3. configure ISL
  4. configure IEEE 802.1p

Answer(s): B

Explanation:

VLAN trunking offers two options, ISL and 802.1Q. ISL is Cisco proprietary while 802.1Q is standards based and supported by multiple vendors.



Viewing Page 48 of 281



Share your comments for Cisco 200-301 exam with other users:

yenvti2@gmail.com 8/12/2023 7:56:00 PM

very helpful for exam preparation
Anonymous


Xunil 6/12/2023 3:04:00 PM

great job whoever put this together, for the greater good! thanks!
Anonymous


x-men 5/23/2023 1:02:00 AM

q23, its an array, isnt it? starts with [ and end with ]. its an array of objects, not object.
UNITED STATES


Dan 8/10/2023 4:19:00 PM

question 129 is completely wrong.
UNITED STATES


Da_costa 8/1/2023 5:28:00 PM

these are free brain dumps i understand, how can one get free pdf
Anonymous


Da Costa 8/27/2023 11:43:00 AM

question 128 the answer should be static not auto
Anonymous


CiscoStudent 11/15/2023 5:29:00 AM

in question 272 the right answer states that an autonomous acces point is "configured and managed by the wlc" but this is not what i have learned in my ccna course. is this a mistake? i understand that lightweight aps are managed by wlc while autonomous work as standalones on the wlan.
Anonymous


Berihun Desalegn Wonde 7/13/2023 11:00:00 AM

all questions are more important
Anonymous


RAWI 7/9/2023 4:54:00 AM

is this dump still valid? today is 9-july-2023
SWEDEN


Berihun 7/13/2023 7:29:00 AM

all questions are so important and covers all ccna modules
Anonymous


Nico 4/23/2023 11:41:00 PM

my 3rd purcahse from this site. these exam dumps are helpful. very helpful.
ITALY


Da Costa 8/25/2023 7:30:00 AM

question 423 eigrp uses metric
Anonymous


Gurdeep 1/18/2024 4:00:15 PM

This is one of the most useful study guides I have ever used.
CANADA