New CCNA VTP and VLAN Lab Related Questions.

This is an Updated real CCNA exam question (Sept, 2013). You might see a different IP addressing, VLAN configuration and Port allocation and VTP Configurations.

As usual, take time to read through the question so as to clearly understand what Cisco want you to do.

Note: This VTP LAB are used for demonstration only, you will see slightly different IP addressing, VLAN configuration and Port allocation in the real CCNA exam. But it all works the same way if you could just understand the technique.

I suggest you use packet tracer for practice.

Download Cisco Packet tracer here

This task requires you to use the CLI of Sw-AC3 to answer five multiple-choice questions. This does not require any configuration.
To answer the multiple-choice questions, click on the numbered boxes in the right panel.

There are five multiple-choice questions with this task. Be sure to answer all five questions before leaving this item.
CCNA VTP and VLAN Lab Related Question 

Question 1:

What interface did Sw-AC3 associate with source MAC address 0010.5a0c.ffba ?

a)  Fa0/1
b)  Fa0/3
c)  Fa0/6
d)  Fa0/8
e)  Fa0/9
f)  Fa0/12

Answer: Fa 0/8

Explanation:  when answering this sort of question use the show mac-address-table command to verify which interface associated with a given MAC address, this command displays the learned MAC addresses and their assigned interfaces, below is an example of the output  you will see:
Looking at the detailed table above, we can conclude that the MAC address 0010.5a0c.ffba is associated with interface Fa0/8
Question 2:

What ports on Sw-AC3 are operating has trunks (choose three)?

a)  Fa0/1
b)  Fa0/3
c)  Fa0/4
d)  Fa0/6
e)  Fa0/9
f)  Fa0/12

Answer: Fa0/3, Fa0/9 and Fa0/12

Explanation: Use the show interface trunk command to verify  the trunking and VLAN status of a link. This command displays detailed lists of assigned ports,  mode, encapsulation type and trunking status. The display below shows the output:


Question 3:

What kind of router is VLAN-R1?

a) 1720
b) 1841
c)  2611
d) 2620

Answer: 2620

Explanation: To answer this type of question, use the show cdp neighbors command to verify; the output of the command is displayed below with brief explanation:

Capabilities: The device type of the neighbor. This device can be a router, a bridge, a transparent bridge, asource-routing bridge, a switch, a host, an IGMP device, or a repeater.

Device ID: The name of the neighbor device ; either the MAC address or the serial number of this device.

Local Interface: The protocol and port number of the port on the current device - device you are running cdp from.

Holdtime : The remaining amount of time, in seconds, the current device will hold the CDP advertisement from a transmitting router before discarding it.

Platform: The product name and number of the neighbor device.

Port ID: Neighbor's remote port type and number where you receive the cdp information.

Question 4: Which switch is the root bridge forVLAN 1?

Answer: Sw-DS1


To get the answer,  use the show spanning-tree vlan 1 to verify  the Spanning Tree information of VLAN 1

From the display above, you can see two of the interface roles are in Desg(designated) role and one root . This shows that Sw-Ac3 switch is not the root bridge for this VLAN (VLAN 1). The root bridges normally have the entire interface in  forwarding roles. And the default cost of the"Cost 19", we learn that the root switch is directly connected to the Sw-Ac3 switch over a 100Mbps Ethernet link.
BY judging from above, there is one Root port in the interface role status, the root port FastEthernet0/12 is connected to the root bridge..  Using the show cdp neighbors command again to verify: 
As displayed above , there is one Root port in the interface role status, the root port FastEthernet0/12 is connected to the root bridge..

The "Local Interface" column shows the interface on the switch running "show cdp neighbors" command. You can see that, Sw-DS1 is associated with interface FastEthernet0/12 -> this confirms that Sw-DS1is the root bridge. You might find it a bit difficult because, you might not be allowed to access all the switches CLI, if you were allowed; you would have seen that all the ports on the root bridge is in forwarding (fwd) state. To understand it more , read here.


Question 5: What address should be configured as the default-gateway for the host connected to interface fa0/4 of SW-Ac3?



Use the show vlan command to verify which VLAN interface Fa0/4 belongs to


From the exhibit above we can confirm that VLAN 44 is configured on the router VLAN-R1 using sub-interface Fa0/0.44 with IP address

Question 6: From which switch did Sw-Ac3 receive VLAN information ?

Answer: Sw-AC2

Explanation: To view the VTP configuration information, use the show vtp status command:


From the display above, we can confirm that Sw-Ac3 received VLAN information from the IP address - the IP address may vary during your exam - .

Finally,  you use the show cdp neighbors detail to very what device is configured with


Question 7: Refer to the exibit,  switch SwX was taken out of the production network for maintenance. It will be reconnected to the Fa 0/16 port of Sw-Ac3. What happens to the network when it is reconnected and a trunk exists between the two switches?


A - All VLANs except the default VLAN win be removed from allswitches
B - All existing switches will have the students, admin, faculty, Servers, Management, Production, and no-where VLANs
C - The VLANs Servers, Management, Production and no-where will replace the VLANs on SwX
D - The VLANs Servers, Management, Production and no-where will be removed from existing switches

Answer : D


Firstly,verify the VTP configuration of switch Sw-Ac3 using the show vtp status command on Sw-Ac3


From the display above, you can see that the configuration revision number is 5 and VTP Domain Name is Home-office

Looking back at the exhibit, we can see that switch SwX has a revision number of 6, which is greater than that of switch Sw-Ac3, both switches have the same VTP Domain Name called "Home-office".
Because switch SwX  revision number is higher, it will replace the vlan information on other switches with its own information. Basically, the switch with a higher revision number automatically becomes the updater and overwrites other switches databases (on the same domain except the switch in a transparent mode) with it’s own information.

 Try and verify the vlan information of switch Sw-Ac3 with show vlan command:


Question 8:

Out of which ports will a frame be forwarded that has source mac-address 0010.5a0c.fd86 and destination mac-address 000a.8a47.e612? (Choose three)

A-  Fa0/8
B - Fa0/3
C - Fa0/1
D - Fa0/12

Answer: B C D


Firstly, use the show mac-address-table command to verify the list, source and destination mac-address and the various ports that they   belong to.  


If you look carefully, you will notice that the source mac-address 0010.5a0c.fd86 belongs to Vlan 33.

The destination mac-address 000a.8a47.e612 is not in the table. Which means that, the switch will flood frame to ports Fa0/1,Fa0/3and Fa0/12 of Vlan 33 and all the trunk links, except port Fa0/6 where it received this frame from. Remember that the "show mac-address-table" command displays information learned by the switch, there are other ports beside the mentioned ports assigned to vlan 33. Using the show vlan command to verify all assigned ports to vlan 33.

Using the show interface trunk command, You can verify trunk ports received this frame.


Question 9:

If one of the host connected to Sw-AC3 wants to send message to ip (or any ip on a different subnet) what will be the destination MAC address ?

Answer and Explanation:

Because the destination address is on a different subnet from the switch, the packet will be forwarded to its default gateway. To verify the default gateway of this switch, use the show running-config command
From the output above, we can see that its default-gateway is Which can be said to be a layer 3 device (router); in this case, the VLAN-R1 router. You can use the show cdp neighbor detail command verify further.
From the output above, you can confirm that the switch's default gateway is VLAN-R1 router (with the IP address of interface FastEthernet0/3 shows that the switch is directly connected to VLAN-R1 router through the switchport Fa0/3. To verify the MAC address associated this interface is interface, you use the show mac-address-table command:
  Looking closely at the table above, you will discorver that the corresponding MAC address is 000a.b7e9.8360. Although there are some entries on port Fa0/3 with different Vlans ,but they have the same MAC address.

