You are on page 1of 11

CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks

2013 1


Refer to the exhibit. Given the configuration information of the CAT1 and CAT2 switches, which
statement is true?
A. LACP will form a channel between the switches.
B. Because the port-channel numbers do not match, LACP will not form a channel between the switches.
C. Because the channel-group commands on SW2 should be set to on LACP will not form a channel
between the switches.
D. LACP will form a 200-Mbps channel between the switches.
Answer: A
Channel group and port group on CAT 1 must be the same. Channel group and port group on CAT 2 must
be the same. It is not necessary channel-group NUMBER of CAT1 to be the same with channel-group
NUMBER of CAT2. Channel will be formed if ports of CAT1, that are grouped in CAT1 port-channel
and ports of CAT2, which are grouped in CAT2 port-channel are in physical connection (there is physical
link between CAT1 and CAT2).

More on: Link1

CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 2
Option Desription
1 Create, modify and delete VLANs and specify other configuration parameters, such as
VTP version and VTP pruning for the entire VTP domain
2 Advertise VTP configuration parameters, such as VTP version and VTP pruning for
the entire VTP domain but cannot create, modify and delete VLANs
3 Advertise and synchronize the VLAN configuration to other switches in the same
VTP domain based on the VTP advertisements received but cannot create, change or
delete VLANs
4 Forward VTP advertisements that they receive over the trunk ports but do not
advertise and synchronize their VLAN configuration based on received
advertisements
5 Do not forward VTP advertisements that they receive over the trunk ports and do not
advertise and synchronize their VLAN configuration based on received
advertisements

Refer to the exhibit. Which option correctly describes the function of the switch that is configured in the
VTP transparent mode?
A. Option 1
B. Option 2
C. Option 3
D. Option 4
E. Option 5

Answer: D
Switch that is in VTP mode transparent doesnt accepts configuration changes for its VLANs, that come
from VTP domain, except that it can send advertisements that receive on his trunk ports, to other switches
in VTP domain.







CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 3
A network administrator is tasked with protecting a server farm by implementing private VLANs
(PVLANs). A server is only allowed to communicate with its default gateway and other related servers.
Which type of PVLAN should be configured on the switch ports that connect to the servers?
A. Isolated
B. Promiscuous
C. Secondary VLAN
D. Community

Answer: C
PVLANs include primary VLAN and one or more secondary VLANs.
Primary VLAN (promiscuous PVLAN) can communicate with all secondary VLANs. Usually ports that
have to be accessed by secondary PVLANS, like router, firewalls or default gateways ports are
configured as promiscuous PVLAN ports.
Secondary VLANs can be configured as community and isolated. Hosts in the community PVLAN can
communicate with other hosts on community PVLAN and with Primary PVLAN (promiscuous PVLAN).
Hosts in isolated PVLANs can communicate just with Primary PVLAN (promiscuous PVLAN).












CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 4

Refer to the exhibit. How should SW2 be configured in order to participate in the same VTP domain and
populate information across the domain?
A. Switch SW2 should be configured as a VTP client.
B. Switch SW2 should be configured for VTP version 1.
C. Switch SW2 should be configured with no VTP domain password.
D. Switch SW2 should be configured as a VTP server with a higher revision number.

Answer: A
On switch that is in VTP mode server you can add, delete and create VLANs. Switch that is in VTP
mode server can send advertisements that receive on his trunk ports, to other switches in VTP domain.
In VTP client mode VLANs cant be created. To create, add or delete VLAN switch must be in VTP
mode server. Switch that is in VTP mode client accepts configuration changes (for its VLANs) from
advertisements that receive on the VTP domain that belongs to. Switch that is in VTP mode client can
send advertisements that receive on his trunk ports, to other switches in VTP domain.
Switch that is in VTP mode transparent doesnt accepts configuration changes for its VLANs, that come
from VTP domain, except that it can send advertisements that receive on his trunk ports, to other switches
in VTP domain.

CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 5


Refer to the exhibit. During the network upgrade process, a network administrator included switch SW2
in the network. Immediately afterwards, the users on VLAN 10 who were connected to SW 10 lost
connectivity to the network. Based on the show vtp status command outputs that are provided, what could
be done to remedy the problem?
A. Configure switch SW2 in the VTP client mode.
B. Configure switch SW2 with VTP version 1.
C. Configure switch SW2 with the higher revision number.
D. Configure switch SW2 with the same VTP domain that SW1 has.

Answer: D
Because newly added switch SW2 is not part of LAB1 VTP domain, it will drop advertisements that
came on SW2 trunk. To enable SW2 to be able to send advertisements on trunk link through SW10 it is
necessary to be in VTP domain LAB1.

CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 6


Refer to the exhibit. Switch SW2 was tested in a lab environment and later inserted into the production
network. Before a trunk link has been connected between the two switches SW1 and SW2, a network
administrator issued the show vtp status command as displayed in the exhibit. Immediately after the
switches were interconnected, all users lost connectivity to the network. What could be the possible
reason for the problem?
A. The switches can exchange VTP information only through an access link.
B. Switch SW2 receives more VLANs from switch SW1 that can be supported.
C. Switch SW2 has the pruning eligible parameter enabled, which causes pruning of all VLANs from the
trunk port.
D. Switch Sw2 has a higher VTP server revision number, which causes deletion of the VLAN
information in the VTP domain.
Answer: D
Configuration revision number cant be configured manually on switch. Switches that are in VTP mode
transparent have configuration revision number 0. Switches ignore advertisements that receive from other
switch in same VTP domain, that got lower configuration revision number than theirs. It is important if
you add new switch on the network to see that its configuration revision number is not highest on the

CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 7
VTP domain, because information of VLANs that are configured on that switch will be propagated to the
other switches in the VTP domain. To solve this problem it is necessary to reset configuration revision
number on newly added switch to 0. That can be done if you put switch in VTP transparent mode or if
you change VTP domain name to reset VTP VLAN information that are stored before on switch.






















CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 8

Refer to the exhibit. The web servers WS_1 and WS_2 need to be assessed by external and internal users.
For security reasons, the servers do not have to communicate with each other although they are located on
the same subnet. Both servers need to communicate with the data server that is located on the inside
network. Which configuration will isolate the servers from inside attacks?
A. Ports fa3/1, fa3/2, fa3/34 and fa3/35 on DSW1 will be defined as primary VLAN promiscuous ports.
B. Ports fa3/1, fa3/2, fa3/34 and fa3/35 on DSW1 will be defined as primary VLAN community ports.
C. Ports fa3/1 and fa3/2 on DSW1 will be defined as secondary VLAN isolated ports. Ports fa3/34 and
fa3/35 will be defined ad primary VLAN promiscuous ports.
D. Ports fa3/1 and fa3/2 on DSW1 will be defined as secondary VLAN community ports. Ports fa3/34
and fa3/35 will be defined ad primary VLAN promiscuous ports.

Answer: C
PVLANs include primary VLAN and one or more secondary VLANs.
Primary VLAN (promiscuous PVLAN) can communicate with all secondary VLANs. Usually ports that
have to be accessed by secondary PVLANS, like router, firewalls or default gateways ports are
configured as promiscuous PVLAN ports.
Secondary VLANs can be configured as community and isolated. Hosts in the community PVLAN can
communicate with other hosts on community PVLAN and with Primary PVLAN (promiscuous PVLAN).
Hosts in isolated PVLANs can communicate just with Primary PVLAN (promiscuous PVLAN).



CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 9

Refer to the exhibit. The DNS servers DNS1 and DNS2 are redundant copies so they need to
communicate with each other and to the internet. The web server and the SMTP server need to
communicate with the Internet, but for security purposes the web and SMTP servers should not be
reachable from the DNS servers. What private VLAN design should be implemented?
A. All servers should be configured in separate isolated VLANs. All isolated VLANs should be in the
same primary VLAN.
B. All servers should be configured in separate community VLANs. All community VLANs should be in
the same primary VLAN.
C. The DNS1 and DNS2 servers should be configured in a community VLAN. The web and SMTP
servers should be configured in an isolated VLAN. Both the community and isolated VLANs should be
part of the primary VLAN.
D. The DNS1 and DNS2 servers should be configured in an isolated VLAN. The web and SMTP servers
should be configured in a community VLAN. Both the community and isolated VLANs should be part of
the primary VLAN.

Answer: C
PVLANs include primary VLAN and one or more secondary VLANs.
Primary VLAN (promiscuous PVLAN) can communicate with all secondary VLANs. Usually ports that
have to be accessed by secondary PVLANS, like router, firewalls or default gateways ports are
configured as promiscuous PVLAN ports.
Secondary VLANs can be configured as community and isolated. Hosts in the community PVLAN can
communicate with other hosts on community PVLAN and with Primary PVLAN (promiscuous PVLAN).
Hosts in isolated PVLANs can communicate just with Primary PVLAN (promiscuous PVLAN).

CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 10
When configuring an EtherChannel, given that one end of the link is configured with PAgP mode
desirable, which PAgP modes can be configured on the opposite end of the link in order to form an active
channel? (Choose two)
A. off
B. on
C. desirable
D. auto

Answer: C, D
EtherChannel is form of port trunking, where up to eight separate links can be bundled into one single
logical channel and can influence in increasing throughput on the link. EtherChannel can be configured
on Layer 2 or Later 3 mode.
Command no switchport is required when configuring Layer 3 EtherChannel group, because Layer 2
functionality of the ports must be disabled. Layer 3 EtherChannel combines multiple routed ports into one
logical port.
EtherChannel can be created when multiple links are bundled together in one link with higher capacity.
Channel group of EtherChannel can be in PAgP or LACP mode. PAgP is Cisco Proprietary protocol for
forming EtherChannel between two Cisco switches. LACP is non-Cisco Proprietary protocol for forming
EtherChannel between multivendor switches. On the following table is shown more about creation modes
for EtherChannel.






CCNP Switch 642-813 Questions/Answers Implementing VLANs in Campus Networks


2013 11

Refer to the exhibit. A network administrator is unable to ping between two workstations. PC1 and PC2
are connected to switch 3548. PC1 is connected to port fa0/19 and PC2 is connected to port Gi0/2. Given
the output of the show vlan command, which statement is true?
A. Both workstations are on the same VLAN
B. Both workstations are in the default VLAN
C. Inter-VLAN routing is not properly configured
D. The VLAN interface is administratively shut down.
E. PC2 is connected to the trunk port instead of an access port.

Answer: A
As shown above, host that are configured on access ports fa0/19 and Gi0/2 are in the VLAN 260, which is
active VLAN on switch3548.

You might also like