Download New Latest (May) Cisco 600-199 Actual Tests 31-40

Ensurepass

 

QUESTION 31

Refer to the exhibit.

 

clip_image001

 

Based on the tcpdump output, which two statements are true? (Choose two.)

 

A.

The reply is sent via unicast.

B.

All devices in the same subnet on a switched network will see the reply because it was broadcast.

C.

The device is coming up for the first time and is requesting an IP address.

D.

The ARP request is being sent as a broadcast.

E.

The device is requesting an ARP.

F.

Host 192.168.10.7 is requesting the operational status of host 192.168.10.8.

 

Answer: AD

Explanation:

 

QUESTION 32

Refer to the exhibit.

 

clip_image002

 

Which two options does the following tcpdump command do? (Choose two.)

 

A.

Read from nvram (non-volatile) and parse the stream.

B.

Capture traffic based on host 10.10.10.10 and HTTP traffic.

C.

Capture traffic based on host 10.10.10.10 and everything but HTTP traffic.

D.

Capture ARP traffic only.

E.

Write the capture as a file.

F.

Read the capture from a file.

 

Answer: CE

Explanation:

 

QUESTION 33

What is the maximum size of an IP datagram?

 

A.

There is no maximum size.

B.

It is limited only by the memory on the host computers at either end of the connection and the intermediate routers.

C.

1024 bytes

D.

65535 bytes

E.

32768 bytes

 

Answer: D

Explanation:

 

QUESTION 34

The IHL is a 4-bit field containing what measurement?

 

A.

the number of 32-bit words in the IP header

B.

the size of the IP header, in bytes

C.

the size of the entire IP datagram, in bytes

D.

the number of bytes in the IP header

E.

the number of 32-bit words in the entire IP datagram

 

Answer: A

Explanation:

 

QUESTION 35

What is the purpose of the TCP SYN flag?

 

A.

to sequence each byte of data in a TCP connection

B.

to synchronize the initial sequence number contained in the Sequence Number header field with the other end of the connection

C.

to acknowledge outstanding data relative to the byte count contained in the Sequence Number header field

D.

to sequence each byte of data in a TCP connection relative to the byte count contained in the Sequence Number header field

 

Answer: B

Explanation:

 

QUESTION 36

Refer to the exhibit.

 

clip_image003

 

What does the tcpdump command do?

 

A.

Capture all packets sourced from TCP port 1514, resolve DNS names, print all TCP packets with the SYN flag not equaling 0, and print the Ethernet header and all version information.

B.

Capture all packets sourced from TCP port 1514, resolve DNS names, print all TCP packets except those containing the SYN flag, and print the Ethernet header and all version information.

C.

Capture up to 1514 bytes, do not resolve DNS names, print all TCP packets except for those containing the SYN flag, and print the Ethernet header and be very verbose.

D.

Capture up to 1514 bytes, do not resolve DNS names, print only TCP packets containing the SYN flag, and print the Ethernet header and be very verbose.

 

Answer: D

Explanation:

 

QUESTION 37

Refer to the exhibit.

 

 

clip_image004

 

In the packet captured from tcpdump, which fields match up with the lettered parameters?

 

A.

A. Source and destination IP addresses,

B.

Source and destination Ethernet addresses,

C.

Source and destination TCP port numbers,

D.

TCP acknowledgement number,

E.

IP options

 

 

B.

 

A. Source and destination Ethernet addresses,

 

B. Source and destination IP addresses,

 

C.

Source and destination TCP port numbers,

 

D. TCP sequence number,

 

E. TCP options

 

 

C.

 

A. Source and destination Ethernet addresses,

 

B. Source and destination IP addresses,

 

C.

Source and destination TCP port numbers,

 

D. TCP acknowledgement number,

 

E. IP options

 

 

D.

 

A. Source and destination Ethernet addresses,

 

B. Source and destination IP addresses,

 

C.

Source and destination TCP port numbers,

 

D. TCP sequence number,

 

E. IP options

 

Answer: B

Explanation:

 

QUESTION 38

For TCP and UDP, what is the correct range of well-known port numbers?

 

A.

0 – 1023

B.

1 – 1024

C.

1 – 65535

D.

0 – 65535

E.

024 – 65535

 

Answer: A

Explanation:

 

QUESTION 39

Which three symptoms are best used to detect a TCP SYN flood attack? (Choose three.)

 

A.

high memory utilization on target server

B.

large number of sockets in SYN_RECV state on target server

C.

network monitoring devices report large number of unACKed SYNs sent to target server

D.

target server crashes repeatedly

E.

user experience with target server is slow or unresponsive

 

Answer: BCE

Explanation:

 

QUESTION 40

Which two statements about the IPv4 TTL field are true? (Choose two.)

 

A.

If the TTL is 0, the datagram is automatically retransmitted.

B.

Each router that forwards an IP datagram reduces the TTL value by one.

C.

It is used to limit the lifetime of an IP datagram on the Internet.

D.

It is used to track IP datagrams on the Internet.

 

Answer: BC

Explanation:

Free VCE & PDF File for Cisco 600-199 Real Exam

Instant Access to Free VCE Files: CCNA | CCNP | CCIE …
Instant Access to Free PDF Files: CCNA | CCNP | CCIE …