Topic 13 Practice Test 1 covers NAT, NTP, DHCP, and DNS for Cisco Certified Network Associate 200-301 CCNA and maps to objectives 4.1–4.3, 4.6. For broader exam preparation, review the Cisco CCNA 200-301 Exam Dumps. Every option includes focused technical reasoning explaining both the networking concept and its fit to the scenario.
Question 1
Ironwood needs a permanent one-to-one mapping from inside host 10.10.10.10 to public address 203.0.113.10. Which NAT type fits? Choose ONE.
- DNS lookup
- Dynamic NAT from a pool
- Static NAT
- PAT overload
Correct Answer: C
Correct Answer
Answer C is correct because Static NAT creates a configured one-to-one association between an inside local address and an inside global address. For CHG-9550 at Ironwood, the branch administrator checks Ironwood’s protocol state; CHG-9550 is judged from the observable result at Ironwood. For CHG-9550, this choice fits Ironwood: the branch administrator gets the required Ironwood outcome and can verify CHG-9550 directly.
Incorrect Answers
Answer B is incorrect because Dynamic NAT assigns available global addresses as sessions require them rather than guaranteeing one permanent mapping. For CHG-9550 at Ironwood, the branch administrator checks Ironwood’s protocol state; CHG-9550 is judged from the observable result at Ironwood. For CHG-9550, this choice fails Ironwood: the branch administrator leaves the required Ironwood condition unmet and, under t13-pt1-q01, should reject it for chg-9550.
Answer D is incorrect because PAT commonly multiplexes many inside hosts onto one or a small number of global addresses by differentiating transport-layer ports. For CHG-9550 at Ironwood, the branch administrator checks Ironwood’s protocol state; CHG-9550 is judged from the observable result at Ironwood. For CHG-9550, this choice fails Ironwood: the branch administrator leaves the required Ironwood condition unmet and, under t13-pt1-q01, should reject it for chg-9550.
Answer A is incorrect because DNS resolves names and addresses but does not translate packet source addresses at the NAT boundary. For CHG-9550 at Ironwood, the branch administrator checks Ironwood’s protocol state; CHG-9550 is judged from the observable result at Ironwood. For CHG-9550, this choice fails Ironwood: the branch administrator leaves the required Ironwood condition unmet and, under t13-pt1-q01, should reject it for chg-9550.
Question 2
Lakeview has 50 inside hosts and a pool of 10 public addresses; hosts may receive any available public address while active. Which NAT model matches? Choose ONE.
- Dynamic NAT using an address pool
- Static NAT
- PAT using one interface address
- DHCP relay
Correct Answer: A
Correct Answer
Answer A is correct because Dynamic NAT selects an available inside-global address from a configured pool for qualifying inside-local addresses. For CHG-9567 at Lakeview, the change reviewer checks Lakeview’s protocol state; CHG-9567 is judged from the observable result at Lakeview. For CHG-9567, this choice fits Lakeview: the change reviewer gets the required Lakeview outcome and can verify CHG-9567 directly.
Incorrect Answers
Answer B is incorrect because Static NAT fixes a particular one-to-one mapping rather than allocating any free pool member. For CHG-9567 at Lakeview, the change reviewer checks Lakeview’s protocol state; CHG-9567 is judged from the observable result at Lakeview. For CHG-9567, this choice fails Lakeview: the change reviewer leaves the required Lakeview condition unmet and, under t13-pt1-q02, should reject it for chg-9567.
Answer C is incorrect because PAT distinguishes many translations with ports and typically allows many hosts to share one global address. For CHG-9567 at Lakeview, the change reviewer checks Lakeview’s protocol state; CHG-9567 is judged from the observable result at Lakeview. For CHG-9567, this choice fails Lakeview: the change reviewer leaves the required Lakeview condition unmet and, under t13-pt1-q02, should reject it for chg-9567.
Answer D is incorrect because DHCP relay forwards address-assignment broadcasts but is not packet address translation. For CHG-9567 at Lakeview, the change reviewer checks Lakeview’s protocol state; CHG-9567 is judged from the observable result at Lakeview. For CHG-9567, this choice fails Lakeview: the change reviewer leaves the required Lakeview condition unmet and, under t13-pt1-q02, should reject it for chg-9567.
Question 3
Alder must let hundreds of inside users share one public IPv4 address for Internet sessions. Which NAT technique is designed for that? Choose ONE.
- Dynamic NAT without overload
- PAT/NAT overload
- NTP client mode
- One-to-one static NAT
Correct Answer: B
Correct Answer
Answer B is correct because Port Address Translation lets many inside-local sessions share an inside-global address by using transport-layer port identifiers to keep translations distinct. For CHG-9584 at Alder, the branch administrator checks Alder’s protocol state; CHG-9584 is judged from the observable result at Alder. For CHG-9584, this choice fits Alder: the branch administrator gets the required Alder outcome and can verify CHG-9584 directly.
Incorrect Answers
Answer D is incorrect because Static NAT consumes a dedicated global address per configured inside local mapping. For CHG-9584 at Alder, the branch administrator checks Alder’s protocol state; CHG-9584 is judged from the observable result at Alder. For CHG-9584, this choice fails Alder: the branch administrator leaves the required Alder condition unmet and, under t13-pt1-q03, should reject it for chg-9584.
Answer A is incorrect because Ordinary dynamic NAT generally binds hosts to available pool addresses and does not rely on port multiplexing to make one address serve hundreds concurrently. For CHG-9584 at Alder, the branch administrator checks Alder’s protocol state; CHG-9584 is judged from the observable result at Alder. For CHG-9584, this choice fails Alder: the branch administrator leaves the required Alder condition unmet and, under t13-pt1-q03, should reject it for chg-9584.
Answer C is incorrect because NTP synchronizes time and has no address-conservation role. For CHG-9584 at Alder, the branch administrator checks Alder’s protocol state; CHG-9584 is judged from the observable result at Alder. For CHG-9584, this choice fails Alder: the branch administrator leaves the required Alder condition unmet and, under t13-pt1-q03, should reject it for chg-9584.
Question 4
For an inside host at Delta, what does the term `inside local` address mean in NAT terminology? Choose ONE.
- The public address representing the inside host externally
- The inside host address as it is known on the inside network
- The NAT router’s default gateway only
- The outside server’s public address
Correct Answer: B
Correct Answer
Answer B is correct because Inside local refers to the address assigned to the internal host from the perspective of the inside network, commonly a private address. For CHG-9601 at Delta, the change reviewer checks Delta’s protocol state; CHG-9601 is judged from the observable result at Delta. For CHG-9601, this choice fits Delta: the change reviewer gets the required Delta outcome and can verify CHG-9601 directly.
Incorrect Answers
Answer A is incorrect because That is the inside global address, not inside local. For CHG-9601 at Delta, the change reviewer checks Delta’s protocol state; CHG-9601 is judged from the observable result at Delta. For CHG-9601, this choice fails Delta: the change reviewer leaves the required Delta condition unmet and, under t13-pt1-q04, should reject it for chg-9601.
Answer D is incorrect because That describes an outside global address, not the internal host. For CHG-9601 at Delta, the change reviewer checks Delta’s protocol state; CHG-9601 is judged from the observable result at Delta. For CHG-9601, this choice fails Delta: the change reviewer leaves the required Delta condition unmet and, under t13-pt1-q04, should reject it for chg-9601.
Answer C is incorrect because Inside local terminology identifies the translated host address, not merely the router gateway. For CHG-9601 at Delta, the change reviewer checks Delta’s protocol state; CHG-9601 is judged from the observable result at Delta. For CHG-9601, this choice fails Delta: the change reviewer leaves the required Delta condition unmet and, under t13-pt1-q04, should reject it for chg-9601.
Question 5
A Granite edge has LAN Gi0/0 and Internet Gi0/1. Which NAT interface roles should normally be applied? Choose ONE.
- Neither interface needs a NAT role
- Both interfaces as `ip nat inside`
- LAN as `ip nat inside`; Internet interface as `ip nat outside`
- Both interfaces as `ip nat outside`
Correct Answer: C
Correct Answer
Answer C is correct because Classic IOS NAT classifies interfaces by translation direction so packets can be interpreted as moving between inside and outside address realms. For CHG-9618 at Granite, the branch administrator checks Granite’s protocol state; CHG-9618 is judged from the observable result at Granite. For CHG-9618, this choice fits Granite: the branch administrator gets the required Granite outcome and can verify CHG-9618 directly.
Incorrect Answers
Answer B is incorrect because Without an outside role, classic inside-source NAT lacks the intended boundary classification. For CHG-9618 at Granite, the branch administrator checks Granite’s protocol state; CHG-9618 is judged from the observable result at Granite. For CHG-9618, this choice fails Granite: the branch administrator leaves the required Granite condition unmet and, under t13-pt1-q05, should reject it for chg-9618.
Answer D is incorrect because The inside LAN must be identified as inside for inside-source translations. For CHG-9618 at Granite, the branch administrator checks Granite’s protocol state; CHG-9618 is judged from the observable result at Granite. For CHG-9618, this choice fails Granite: the branch administrator leaves the required Granite condition unmet and, under t13-pt1-q05, should reject it for chg-9618.
Answer A is incorrect because Classic IOS NAT configuration normally requires inside/outside designation on the participating interfaces. For CHG-9618 at Granite, the branch administrator checks Granite’s protocol state; CHG-9618 is judged from the observable result at Granite. For CHG-9618, this choice fails Granite: the branch administrator leaves the required Granite condition unmet and, under t13-pt1-q05, should reject it for chg-9618.
Question 6
Juniper uses an ACL with inside-source dynamic NAT. What does the ACL normally identify? Choose ONE.
- The inside source addresses eligible for translation
- The public DNS servers
- The NTP peers
- The HSRP active router only
Correct Answer: A
Correct Answer
Answer A is correct because In common IOS inside-source NAT configuration, an ACL identifies which inside-local source addresses are candidates for the configured translation rule. For CHG-9635 at Juniper, the change reviewer checks Juniper’s protocol state; CHG-9635 is judged from the observable result at Juniper. For CHG-9635, this choice fits Juniper: the change reviewer gets the required Juniper outcome and can verify CHG-9635 directly.
Incorrect Answers
Answer B is incorrect because DNS server selection is unrelated to the NAT source-selection ACL. For CHG-9635 at Juniper, the change reviewer checks Juniper’s protocol state; CHG-9635 is judged from the observable result at Juniper. For CHG-9635, this choice fails Juniper: the change reviewer leaves the required Juniper condition unmet and, under t13-pt1-q06, should reject it for chg-9635.
Answer C is incorrect because NTP peers are configured independently of NAT ACL selection. For CHG-9635 at Juniper, the change reviewer checks Juniper’s protocol state; CHG-9635 is judged from the observable result at Juniper. For CHG-9635, this choice fails Juniper: the change reviewer leaves the required Juniper condition unmet and, under t13-pt1-q06, should reject it for chg-9635.
Answer D is incorrect because An ACL used by NAT is evaluated against traffic addresses, not merely an FHRP role. For CHG-9635 at Juniper, the change reviewer checks Juniper’s protocol state; CHG-9635 is judged from the observable result at Juniper. For CHG-9635, this choice fails Juniper: the change reviewer leaves the required Juniper condition unmet and, under t13-pt1-q06, should reject it for chg-9635.
Question 7
Mesa builds a dynamic NAT pool. Which information defines the usable public address range? Choose ONE.
- Only an HSRP group number
- Starting and ending global addresses plus the appropriate netmask or prefix information
- Only the DNS domain
- Only the inside ACL number
Correct Answer: B
Correct Answer
Answer B is correct because A dynamic NAT pool defines the inside-global address range and its network mask/prefix so IOS can allocate valid translations. For CHG-9652 at Mesa, the branch administrator checks Mesa’s protocol state; CHG-9652 is judged from the observable result at Mesa. For CHG-9652, this choice fits Mesa: the branch administrator gets the required Mesa outcome and can verify CHG-9652 directly.
Incorrect Answers
Answer D is incorrect because The ACL selects inside sources but does not itself define the public pool address range. For CHG-9652 at Mesa, the branch administrator checks Mesa’s protocol state; CHG-9652 is judged from the observable result at Mesa. For CHG-9652, this choice fails Mesa: the branch administrator leaves the required Mesa condition unmet and, under t13-pt1-q07, should reject it for chg-9652.
Answer A is incorrect because HSRP grouping does not define NAT pool addresses. For CHG-9652 at Mesa, the branch administrator checks Mesa’s protocol state; CHG-9652 is judged from the observable result at Mesa. For CHG-9652, this choice fails Mesa: the branch administrator leaves the required Mesa condition unmet and, under t13-pt1-q07, should reject it for chg-9652.
Answer C is incorrect because DNS domain configuration has no role in building a NAT address pool. For CHG-9652 at Mesa, the branch administrator checks Mesa’s protocol state; CHG-9652 is judged from the observable result at Mesa. For CHG-9652, this choice fails Mesa: the branch administrator leaves the required Mesa condition unmet and, under t13-pt1-q07, should reject it for chg-9652.
Question 8
Which IOS construct at Pioneer directly creates a fixed inside-local to inside-global mapping? Choose ONE.
- A dynamic pool without a matching rule
- An `ip nat inside source static` mapping
- An `ntp server` association
- An `ip helper-address` command
Correct Answer: B
Correct Answer
Answer B is correct because The static inside-source form binds the specified inside-local address to a fixed inside-global address. For CHG-9669 at Pioneer, the change reviewer checks Pioneer’s protocol state; CHG-9669 is judged from the observable result at Pioneer. For CHG-9669, this choice fits Pioneer: the change reviewer gets the required Pioneer outcome and can verify CHG-9669 directly.
Incorrect Answers
Answer A is incorrect because A pool alone does not create a permanent host-specific translation. For CHG-9669 at Pioneer, the change reviewer checks Pioneer’s protocol state; CHG-9669 is judged from the observable result at Pioneer. For CHG-9669, this choice fails Pioneer: the change reviewer leaves the required Pioneer condition unmet and, under t13-pt1-q08, should reject it for chg-9669.
Answer D is incorrect because Helper addresses relay certain UDP broadcasts such as DHCP and do not create NAT mappings. For CHG-9669 at Pioneer, the change reviewer checks Pioneer’s protocol state; CHG-9669 is judged from the observable result at Pioneer. For CHG-9669, this choice fails Pioneer: the change reviewer leaves the required Pioneer condition unmet and, under t13-pt1-q08, should reject it for chg-9669.
Answer C is incorrect because NTP server configuration changes time synchronization, not address translation. For CHG-9669 at Pioneer, the change reviewer checks Pioneer’s protocol state; CHG-9669 is judged from the observable result at Pioneer. For CHG-9669, this choice fails Pioneer: the change reviewer leaves the required Pioneer condition unmet and, under t13-pt1-q08, should reject it for chg-9669.
Question 9
Summit wants its router clock to synchronize to NTP server 192.0.2.20. Which command establishes the server association? Choose ONE.
- standby 20 ip 192.0.2.20
- ip name-server 192.0.2.20
- ntp server 192.0.2.20
- ip helper-address 192.0.2.20
Correct Answer: C
Correct Answer
Answer C is correct because The `ntp server` command configures the device to poll and synchronize with the specified NTP server. For CHG-9686 at Summit, the branch administrator checks Summit’s protocol state; CHG-9686 is judged from the observable result at Summit. For CHG-9686, this choice fits Summit: the branch administrator gets the required Summit outcome and can verify CHG-9686 directly.
Incorrect Answers
Answer B is incorrect because That configures a DNS resolver, not a time source. For CHG-9686 at Summit, the branch administrator checks Summit’s protocol state; CHG-9686 is judged from the observable result at Summit. For CHG-9686, this choice fails Summit: the branch administrator leaves the required Summit condition unmet and, under t13-pt1-q09, should reject it for chg-9686.
Answer D is incorrect because That relays selected UDP broadcasts and is commonly used for DHCP, not NTP client association. For CHG-9686 at Summit, the branch administrator checks Summit’s protocol state; CHG-9686 is judged from the observable result at Summit. For CHG-9686, this choice fails Summit: the branch administrator leaves the required Summit condition unmet and, under t13-pt1-q09, should reject it for chg-9686.
Answer A is incorrect because That defines an HSRP virtual gateway address and does not configure time synchronization. For CHG-9686 at Summit, the branch administrator checks Summit’s protocol state; CHG-9686 is judged from the observable result at Summit. For CHG-9686, this choice fails Summit: the branch administrator leaves the required Summit condition unmet and, under t13-pt1-q09, should reject it for chg-9686.
Question 10
A lab router at Vector must act as an authoritative NTP source even without an upstream reference. Which command is associated with that role? Choose ONE.
- ntp master
- ntp server
- ip dhcp pool
- ip domain lookup
Correct Answer: A
Correct Answer
Answer A is correct because `ntp master` can make a Cisco device act as an authoritative NTP source, a feature that should be used carefully when no better reference is available. For CHG-9703 at Vector, the change reviewer checks Vector’s protocol state; CHG-9703 is judged from the observable result at Vector. For CHG-9703, this choice fits Vector: the change reviewer gets the required Vector outcome and can verify CHG-9703 directly.
Incorrect Answers
Answer B is incorrect because `ntp server` normally makes the local device a client of another NTP source rather than declaring its own clock authoritative. For CHG-9703 at Vector, the change reviewer checks Vector’s protocol state; CHG-9703 is judged from the observable result at Vector. For CHG-9703, this choice fails Vector: the change reviewer leaves the required Vector condition unmet and, under t13-pt1-q10, should reject it for chg-9703.
Answer C is incorrect because A DHCP pool supplies address configuration and is not an NTP server role command. For CHG-9703 at Vector, the change reviewer checks Vector’s protocol state; CHG-9703 is judged from the observable result at Vector. For CHG-9703, this choice fails Vector: the change reviewer leaves the required Vector condition unmet and, under t13-pt1-q10, should reject it for chg-9703.
Answer D is incorrect because DNS lookup resolves names and does not make the device an NTP time source. For CHG-9703 at Vector, the change reviewer checks Vector’s protocol state; CHG-9703 is judged from the observable result at Vector. For CHG-9703, this choice fails Vector: the change reviewer leaves the required Vector condition unmet and, under t13-pt1-q10, should reject it for chg-9703.
Question 11
Which transport is used by standard NTP communication at Yarrow? Choose ONE.
- UDP port 53
- UDP port 123
- TCP port 80
- TCP port 22
Correct Answer: B
Correct Answer
Answer B is correct because NTP normally uses UDP port 123 for time synchronization exchanges. For CHG-9720 at Yarrow, the branch administrator checks Yarrow’s protocol state; CHG-9720 is judged from the observable result at Yarrow. For CHG-9720, this choice fits Yarrow: the branch administrator gets the required Yarrow outcome and can verify CHG-9720 directly.
Incorrect Answers
Answer D is incorrect because TCP 22 is associated with SSH, not NTP. For CHG-9720 at Yarrow, the branch administrator checks Yarrow’s protocol state; CHG-9720 is judged from the observable result at Yarrow. For CHG-9720, this choice fails Yarrow: the branch administrator leaves the required Yarrow condition unmet and, under t13-pt1-q11, should reject it for chg-9720.
Answer A is incorrect because UDP 53 is commonly DNS, not NTP. For CHG-9720 at Yarrow, the branch administrator checks Yarrow’s protocol state; CHG-9720 is judged from the observable result at Yarrow. For CHG-9720, this choice fails Yarrow: the branch administrator leaves the required Yarrow condition unmet and, under t13-pt1-q11, should reject it for chg-9720.
Answer C is incorrect because TCP 80 is HTTP and is unrelated to normal NTP exchange. For CHG-9720 at Yarrow, the branch administrator checks Yarrow’s protocol state; CHG-9720 is judged from the observable result at Yarrow. For CHG-9720, this choice fails Yarrow: the branch administrator leaves the required Yarrow condition unmet and, under t13-pt1-q11, should reject it for chg-9720.
Question 12
Which command is useful for checking NTP peers/servers and synchronization relationships at Birch? Choose ONE.
- show ip route static
- show ntp associations
- show interfaces trunk
- show standby
Correct Answer: B
Correct Answer
Answer B is correct because This command displays NTP associations and their state, helping verify configured server or peer relationships. For CHG-9737 at Birch, the change reviewer checks Birch’s protocol state; CHG-9737 is judged from the observable result at Birch. For CHG-9737, this choice fits Birch: the change reviewer gets the required Birch outcome and can verify CHG-9737 directly.
Incorrect Answers
Answer A is incorrect because That verifies static routes rather than NTP relationships. For CHG-9737 at Birch, the change reviewer checks Birch’s protocol state; CHG-9737 is judged from the observable result at Birch. For CHG-9737, this choice fails Birch: the change reviewer leaves the required Birch condition unmet and, under t13-pt1-q12, should reject it for chg-9737.
Answer D is incorrect because That reports HSRP state. For CHG-9737 at Birch, the change reviewer checks Birch’s protocol state; CHG-9737 is judged from the observable result at Birch. For CHG-9737, this choice fails Birch: the change reviewer leaves the required Birch condition unmet and, under t13-pt1-q12, should reject it for chg-9737.
Answer C is incorrect because That reports Layer 2 trunking state, not time synchronization. For CHG-9737 at Birch, the change reviewer checks Birch’s protocol state; CHG-9737 is judged from the observable result at Birch. For CHG-9737, this choice fails Birch: the change reviewer leaves the required Birch condition unmet and, under t13-pt1-q12, should reject it for chg-9737.
Question 13
A Elm WAN interface should obtain its IPv4 address from an upstream DHCP server. Which interface command requests an address dynamically? Choose ONE.
- ip name-server
- ip helper-address
- ip address dhcp
- ip nat inside
Correct Answer: C
Correct Answer
Answer C is correct because The interface command requests its IPv4 address and related parameters from DHCP, making that interface a DHCP client. For CHG-9754 at Elm, the branch administrator checks Elm’s protocol state; CHG-9754 is judged from the observable result at Elm. For CHG-9754, this choice fits Elm: the branch administrator gets the required Elm outcome and can verify CHG-9754 directly.
Incorrect Answers
Answer B is incorrect because Helper-address makes the router relay selected broadcasts from other clients; it does not make that interface request its own address. For CHG-9754 at Elm, the branch administrator checks Elm’s protocol state; CHG-9754 is judged from the observable result at Elm. For CHG-9754, this choice fails Elm: the branch administrator leaves the required Elm condition unmet and, under t13-pt1-q13, should reject it for chg-9754.
Answer D is incorrect because NAT role classification does not acquire an IPv4 address. For CHG-9754 at Elm, the branch administrator checks Elm’s protocol state; CHG-9754 is judged from the observable result at Elm. For CHG-9754, this choice fails Elm: the branch administrator leaves the required Elm condition unmet and, under t13-pt1-q13, should reject it for chg-9754.
Answer A is incorrect because That identifies DNS resolvers but does not request interface addressing. For CHG-9754 at Elm, the branch administrator checks Elm’s protocol state; CHG-9754 is judged from the observable result at Elm. For CHG-9754, this choice fails Elm: the branch administrator leaves the required Elm condition unmet and, under t13-pt1-q13, should reject it for chg-9754.
Question 14
Clients on the Highland LAN use a remote DHCP server at 192.0.2.50. Which interface command relays their broadcasts? Choose ONE.
- ip helper-address 192.0.2.50
- ip name-server 192.0.2.50
- ntp server 192.0.2.50
- standby 20 ip 192.0.2.50
Correct Answer: A
Correct Answer
Answer A is correct because The helper address makes the router act as a relay, converting supported local UDP broadcasts such as DHCP into routed traffic toward the specified server. For CHG-9771 at Highland, the change reviewer checks Highland’s protocol state; CHG-9771 is judged from the observable result at Highland. For CHG-9771, this choice fits Highland: the change reviewer gets the required Highland outcome and can verify CHG-9771 directly.
Incorrect Answers
Answer B is incorrect because That configures DNS resolution for the router itself and does not relay client DHCP broadcasts. For CHG-9771 at Highland, the change reviewer checks Highland’s protocol state; CHG-9771 is judged from the observable result at Highland. For CHG-9771, this choice fails Highland: the change reviewer leaves the required Highland condition unmet and, under t13-pt1-q14, should reject it for chg-9771.
Answer C is incorrect because That configures a time source, not DHCP relay. For CHG-9771 at Highland, the change reviewer checks Highland’s protocol state; CHG-9771 is judged from the observable result at Highland. For CHG-9771, this choice fails Highland: the change reviewer leaves the required Highland condition unmet and, under t13-pt1-q14, should reject it for chg-9771.
Answer D is incorrect because That creates an HSRP virtual IP and does not forward DHCP requests to the server. For CHG-9771 at Highland, the change reviewer checks Highland’s protocol state; CHG-9771 is judged from the observable result at Highland. For CHG-9771, this choice fails Highland: the change reviewer leaves the required Highland condition unmet and, under t13-pt1-q14, should reject it for chg-9771.
Question 15
When a Kodiak router relays DHCP, which field helps the server identify the client subnet for address selection? Choose ONE.
- NTP stratum
- giaddr (gateway IP address)
- OSPF router ID
- DNS MX record
Correct Answer: B
Correct Answer
Answer B is correct because A DHCP relay inserts its client-facing interface address into the giaddr field so the server can identify the originating subnet and choose an appropriate pool. For CHG-9788 at Kodiak, the branch administrator checks Kodiak’s protocol state; CHG-9788 is judged from, under t13-pt1-q15, the observable result at kodiak. For CHG-9788, this choice fits Kodiak: the branch administrator gets the required Kodiak outcome and can verify CHG-9788 directly.
Incorrect Answers
Answer D is incorrect because Mail-exchanger DNS records are unrelated to DHCP scope selection. For CHG-9788 at Kodiak, the branch administrator checks Kodiak’s protocol state; CHG-9788 is judged from, under t13-pt1-q15, the observable result at kodiak. For CHG-9788, this choice fails Kodiak: the branch administrator leaves the required Kodiak condition unmet and, under t13-pt1-q15, should reject it for chg-9788.
Answer A is incorrect because NTP stratum measures time-source hierarchy and is not carried for DHCP address allocation. For CHG-9788 at Kodiak, the branch administrator checks Kodiak’s protocol state; CHG-9788 is judged from the observable result at Kodiak. For CHG-9788, this choice fails Kodiak: the branch administrator leaves the required Kodiak condition unmet and, under t13-pt1-q15, should reject it for chg-9788.
Answer C is incorrect because OSPF identity is not the DHCP relay gateway field. For CHG-9788 at Kodiak, the branch administrator checks Kodiak’s protocol state; CHG-9788 is judged from the observable result at Kodiak. For CHG-9788, this choice fails Kodiak: the branch administrator leaves the required Kodiak condition unmet and, under t13-pt1-q15, should reject it for chg-9788.
Question 16
Nimbus has two redundant DHCP servers. Can the client-facing interface be configured with more than one helper address? Choose ONE.
- No; only one helper address is allowed per interface
- Yes; configure one helper address for each server
- Only DNS round-robin can select DHCP servers
- Only HSRP can provide DHCP redundancy
Correct Answer: B
Correct Answer
Answer B is correct because IOS supports multiple helper addresses on an interface, allowing relayed requests to be forwarded toward multiple configured servers. For CHG-9805 at Nimbus, the change reviewer checks Nimbus’s protocol state; CHG-9805 is judged from, under t13-pt1-q16, the observable result at nimbus. For CHG-9805, this choice fits Nimbus: the change reviewer gets the required Nimbus outcome and can verify CHG-9805 directly.
Incorrect Answers
Answer A is incorrect because Multiple helper addresses are supported and commonly used for redundant DHCP servers. For CHG-9805 at Nimbus, the change reviewer checks Nimbus’s protocol state; CHG-9805 is judged from, under t13-pt1-q16, the observable result at nimbus. For CHG-9805, this choice fails Nimbus: the change reviewer leaves the required Nimbus condition unmet and, under t13-pt1-q16, should reject it for chg-9805.
Answer D is incorrect because HSRP provides first-hop gateway redundancy but does not replace the ability to relay to multiple DHCP servers. For CHG-9805 at Nimbus, the change reviewer checks Nimbus’s protocol state; CHG-9805 is judged from the observable result at Nimbus. For CHG-9805, this choice fails Nimbus: the change reviewer leaves the required Nimbus condition unmet and, under t13-pt1-q16, should reject it for chg-9805.
Answer C is incorrect because DNS is not required for multiple numeric helper-address destinations. For CHG-9805 at Nimbus, the change reviewer checks Nimbus’s protocol state; CHG-9805 is judged from the observable result at Nimbus. For CHG-9805, this choice fails Nimbus: the change reviewer leaves the required Nimbus condition unmet and, under t13-pt1-q16, should reject it for chg-9805.
Question 17
What role does DHCP primarily provide to endpoints at Cedar? Choose ONE.
- Packet address translation
- Name-to-address resolution
- Dynamic delivery of IP configuration parameters
- Network time synchronization
Correct Answer: C
Correct Answer
Answer C is correct because DHCP automates host network configuration, commonly providing an IPv4 address, subnet mask, default gateway, DNS servers, and lease information. For CHG-9822 at Cedar, the branch administrator checks Cedar’s protocol state; CHG-9822 is judged from, under t13-pt1-q17, the observable result at cedar. For CHG-9822, this choice fits Cedar: the branch administrator gets the required Cedar outcome and can verify CHG-9822 directly.
Incorrect Answers
Answer B is incorrect because That is the principal role of DNS rather than DHCP. For CHG-9822 at Cedar, the branch administrator checks Cedar’s protocol state; CHG-9822 is judged from, under t13-pt1-q17, the observable result at cedar. For CHG-9822, this choice fails Cedar: the branch administrator leaves the required Cedar condition unmet and, under t13-pt1-q17, should reject it for chg-9822.
Answer D is incorrect because That is NTP. For CHG-9822 at Cedar, the branch administrator checks Cedar’s protocol state; CHG-9822 is judged from the observable result at Cedar. For CHG-9822, this choice fails Cedar: the branch administrator leaves the required Cedar condition unmet and, under t13-pt1-q17, should reject it for chg-9822.
Answer A is incorrect because That is NAT, which rewrites addresses rather than assigning host configuration leases. For CHG-9822 at Cedar, the branch administrator checks Cedar’s protocol state; CHG-9822 is judged from the observable result at Cedar. For CHG-9822, this choice fails Cedar: the branch administrator leaves the required Cedar condition unmet and, under t13-pt1-q17, should reject it for chg-9822.
Question 18
What is DNS primarily used for by Falcon clients? Choose ONE.
- Mapping domain/host names to IP addresses
- Assigning IPv4 leases
- Synchronizing device clocks
- Translating private source addresses at an edge
Correct Answer: A
Correct Answer
Answer A is correct because DNS provides distributed name resolution so clients can translate human-readable names into address information and other resource records. For CHG-9839 at Falcon, the change reviewer checks Falcon’s protocol state; CHG-9839 is judged from, under t13-pt1-q18, the observable result at falcon. For CHG-9839, this choice fits Falcon: the change reviewer gets the required Falcon outcome and can verify CHG-9839 directly.
Incorrect Answers
Answer B is incorrect because DHCP supplies address configuration; it does not primarily resolve application host names. For CHG-9839 at Falcon, the change reviewer checks Falcon’s protocol state; CHG-9839 is judged from, under t13-pt1-q18, the observable result at falcon. For CHG-9839, this choice fails Falcon: the change reviewer leaves the required Falcon condition unmet and, under t13-pt1-q18, should reject it for chg-9839.
Answer C is incorrect because NTP provides time synchronization. For CHG-9839 at Falcon, the change reviewer checks Falcon’s protocol state; CHG-9839 is judged from the observable result at Falcon. For CHG-9839, this choice fails Falcon: the change reviewer leaves the required Falcon condition unmet and, under t13-pt1-q18, should reject it for chg-9839.
Answer D is incorrect because NAT changes packet addresses and ports; it does not perform name resolution. For CHG-9839 at Falcon, the change reviewer checks Falcon’s protocol state; CHG-9839 is judged from the observable result at Falcon. For CHG-9839, this choice fails Falcon: the change reviewer leaves the required Falcon condition unmet and, under t13-pt1-q18, should reject it for chg-9839.
Question 19
Indigo wants its Cisco router to use DNS resolver 192.0.2.53. Which command specifies that server? Choose ONE.
- ntp server 192.0.2.53
- ip name-server 192.0.2.53
- ip nat pool DNS 192.0.2.53 192.0.2.53
- ip helper-address 192.0.2.53
Correct Answer: B
Correct Answer
Answer B is correct because The command identifies a DNS name server that the IOS resolver can query for host-name-to-address information. For CHG-9856 at Indigo, the branch administrator checks Indigo’s protocol state; CHG-9856 is judged from, under t13-pt1-q19, the observable result at indigo. For CHG-9856, this choice fits Indigo: the branch administrator gets the required Indigo outcome and can verify CHG-9856 directly.
Incorrect Answers
Answer D is incorrect because That relays selected client UDP broadcasts and is not the router resolver-server setting. For CHG-9856 at Indigo, the branch administrator checks Indigo’s protocol state; CHG-9856 is judged from, under t13-pt1-q19, the observable result at indigo. For CHG-9856, this choice fails Indigo: the branch administrator leaves the required Indigo condition unmet and, under t13-pt1-q19, should reject it for chg-9856.
Answer A is incorrect because That configures a time source. For CHG-9856 at Indigo, the branch administrator checks Indigo’s protocol state; CHG-9856 is judged from the observable result at Indigo. For CHG-9856, this choice fails Indigo: the branch administrator leaves the required Indigo condition unmet and, under t13-pt1-q19, should reject it for chg-9856.
Answer C is incorrect because A NAT pool defines translation addresses and does not identify a DNS resolver. For CHG-9856 at Indigo, the branch administrator checks Indigo’s protocol state; CHG-9856 is judged from the observable result at Indigo. For CHG-9856, this choice fails Indigo: the branch administrator leaves the required Indigo condition unmet and, under t13-pt1-q19, should reject it for chg-9856.
Question 20
DNS lookup was disabled on Lumen. Which global command re-enables IOS host-name resolution? Choose ONE.
- ip dhcp relay information option
- ip domain lookup
- standby preempt
- ip nat inside
Correct Answer: B
Correct Answer
Answer B is correct because This command enables IOS DNS-based host-name lookup when that function has previously been disabled. For CHG-9873 at Lumen, the change reviewer checks Lumen’s protocol state; CHG-9873 is judged from, under t13-pt1-q20, the observable result at lumen. For CHG-9873, this choice fits Lumen: the change reviewer gets the required Lumen outcome and can verify CHG-9873 directly.
Incorrect Answers
Answer A is incorrect because That affects DHCP relay metadata rather than DNS resolution. For CHG-9873 at Lumen, the change reviewer checks Lumen’s protocol state; CHG-9873 is judged from, under t13-pt1-q20, the observable result at lumen. For CHG-9873, this choice fails Lumen: the change reviewer leaves the required Lumen condition unmet and, under t13-pt1-q20, should reject it for chg-9873.
Answer D is incorrect because That marks a NAT interface role and does not enable name lookup. For CHG-9873 at Lumen, the change reviewer checks Lumen’s protocol state; CHG-9873 is judged from the observable result at Lumen. For CHG-9873, this choice fails Lumen: the change reviewer leaves the required Lumen condition unmet and, under t13-pt1-q20, should reject it for chg-9873.
Answer C is incorrect because That changes HSRP active-role behavior and is unrelated to DNS. For CHG-9873 at Lumen, the change reviewer checks Lumen’s protocol state; CHG-9873 is judged from the observable result at Lumen. For CHG-9873, this choice fails Lumen: the change reviewer leaves the required Lumen condition unmet and, under t13-pt1-q20, should reject it for chg-9873.