Home > New CCNA – NAT PAT Questions

New CCNA – NAT PAT Questions

September 27th, 2013 Go to comments

Note: If you are not sure about NAT PAT, please read our Network Address Translation NAT Tutorial.

Question 1

Which two statements about static NAT translations are true? (choose two)

A. They are always present in the NAT table.
B. They allow connection to be initiated from the outside.
C. They can be configured with access lists, to allow two or more connections to be initiated from the outside.
D. They require no inside or outside interface markings because addresses are statically defined.

 

Answer: A B

Explanation

With static NAT, translations exist in the NAT translation table as soon as you configure static NAT command(s), and they remain in the translation table until you delete the static NAT command(s).

With dynamic NAT, translations do not exist in the NAT table until the router receives traffic that requires translation. Dynamic translations have a timeout period after which they are purged from the translation table.

-> A is correct.

Because static NAT translations are always present in the NAT table so outside hosts can initiate the connection without being dropped -> B is correct.

Static translations can not be configured with access lists. To configure static NAT, we only need to specify source IP, NAT IP, inside interface & outside interface.

-> C is not correct.

We have to specify which is the inside and outside interface -> D is not correct.

For your information, below is an example of configuring static NAT:

R0(config)#int f0/0
R0(config-if)#ip nat inside

R0(config-if)#int f0/1
R0(config-if)#ip nat outside

R0(config)#ip nat inside source static 10.0.0.1 200.0.0.2

(Reference: http://www.cisco.com/en/US/tech/tk648/tk361/technologies_tech_note09186a0080093f31.shtml)

Question 2

What are two benefits of using NAT? (choose two)

A. NAT protects network security because private networks are not advertised.
B. NAT accelerates the routing process because no modifications are made on the packets.
C. Dynamic NAT facilitates connections from the outside of the network.
D. NAT facilitates end-to-end communication when IPsec is enable.
E. NAT eliminates the need to re-address all host that require external access.
F. NAT conserves addresses through host MAC-level multiplexing.

 

Answer: A E

Explanation

By not reveal the internal IP addresses, NAT adds some security to the inside network -> A is correct.

NAT has to modify the source IP addresses in the packets -> B is not correct.

Connection from the outside to a network through “NAT” is more difficult than a normal network because IP addresses of inside hosts are hidden -> C is not correct.

In order for IPsec to work with NAT we need to allow additional protocols, including Internet Key Exchange (IKE), Encapsulating Security Payload (ESP) and Authentication Header (AH) -> more complex -> D is not correct.

By allocating specific public IP addresses to inside hosts, NAT eliminates the need to re-address the inside hosts -> E is correct.

NAT does conserve addresses but not through host MAC-level multiplexing. It conserves addresses by allowing many private IP addresses to use the same public IP address to go to the Internet -> F is not correct.

Question 3

Refer to the exhibit. What statement is true of the configuration for this network?

DMZ_nat_inside.jpg

A. The configuration that is shown provides inadequate outside address space for translation of the number of inside addresses that are supported.
B. Because of the addressing on interface FastEthernet0/1, the Serial0/0 interface address will not support the NAT configuration as shown.
C. The number 1 referred to in the ip nat inside source command references access-list number 1.
D. ExternalRouter must be configured with static routers to network 172.16.2.0/24

 

Answer: C

Explanation

The “list 1″ refers to the access-list number 1.

Comments (73) Comments
Comment pages
1 2 1781
  1. Adeel
    September 29th, 2013

    Hello Guys I hope you will be fine there.Now New CCNA (200-120) and CCNA security (640-554) Vouchers on special discount of 58% for World wide, with six months expiry date till you purchase. Each voucher cost 70USD.

    Details Required For CCNA Voucher For Discount Processing:

    1-Full Name. 1st Name & Last Name (as you want to appear on certificate & documents)
    2-Country.
    3-City.
    4-State.
    5-Pin Code (or Area Code)
    6-Residential Address (or where you can collect your Certificate or further correspondence
    can be received)
    7-Date of birth
    Add me on Skype through this information which is written below:
    Skype Name: rockon660
    you can also email me at this email address which is written below:
    madeelqaiser@gmail.com
    If you have any Questions feel free to contact me.

    Thanks,
    Best regards,
    Adeel

  2. Amri
    October 8th, 2013

    helo admin i cant open pictures on this site! exhibits they are real dificult to show up

  3. 9tut
    October 8th, 2013

    @Amri: We see all the pictures are working normally. Please tell us which pictures are hard to load?

  4. Roddy
    October 20th, 2013

    Good day!
    Admin, what about NAT PAT Questions from CCNA 640-802, they would be in New CCNA or not?

  5. asad
    October 27th, 2013

    hellow admin

    can u tell us about the new ccna labs…

  6. lmw
    November 21st, 2013

    Does anyone have the latest dump for 100-101 ICND1.

  7. biacosta
    November 28th, 2013

    Just took it yesterday, I PASSED with a 920, thanks to 9tut…woooohhhooooo!!!!

  8. Jahongir
    December 4th, 2013

    Can anyone tell me what is the best book to study for 200-120? and where to get latest dumps from?

  9. Mohammad Enayet Karim
    December 16th, 2013

    Someone please send me dump for 100-101 ICND1 to enayetkarim@gmail.com.

  10. Anonymous
    December 31st, 2013

    download free latest dumps from

    9tut.webs,com

    (replace comma with dot)

  11. Anonymous
    January 2nd, 2014

    download latest dumps from
    9
    t
    u
    t
    .
    w
    e
    b
    s
    .
    c
    o
    m

  12. Heather
    January 10th, 2014

    Here is also a helpful free study guide http://www.freeccnastudyguide.com It has been updated and covers all the 200-120 exam concepts.

  13. Abdullah
    January 17th, 2014

    Hi, can anyone ps email me info on how to get the latest VCE 3.4.2 crack version or the version that can open recent dumps.
    My email address is: mehdi01912330796@gmail.com
    Thanks.

  14. Sabry
    January 29th, 2014

    Q3 was in today’s exam.

  15. Al7
    March 12th, 2014

    I cleared 200-120

    Question 1 & 3 in today’s exam

    Almost all questions from 9tut

    Thanks everyone :)

  16. Addie
    March 17th, 2014

    Hi, can anyone please email me info on how to get the latest VCE 3.4.2 crack version or the version that can open recent dumps.
    My email address is—-wrhm99@yahoo.com

  17. Kevin A
    March 21st, 2014

    Hi All, Can someone PLEASE send me the latest CCNA dumps? My exam is in a week.
    My email address is k_amoakuh@yhoo.com
    Thanks in advance!

  18. nayyarabbaskazmi@gmail.com
    April 18th, 2014

    I noticed one thing, everyone passing using 9tut data has 920 marks….. why is it so????

  19. rxd034000
    May 22nd, 2014

    Q1,2 and 3 were in test today

  20. Luis1988
    June 26th, 2014

    Can you update this section??

  21. piv6
    June 28th, 2014

    ipv6 configur

  22. Confused !
    July 8th, 2014

    Q1 was in the today exam

  23. Strange
    July 16th, 2014

    Question 3 was recently in the exam

  24. clsmooth
    July 21st, 2014

    All 3 questions were on the exam today

  25. Des†rosiers
    August 9th, 2014

    Passed Marks: 975, 99.8% from 9tut no need to exert effort for latest dumps. Labs EIGRP, ACL Sim 1 & 2, practice all modifications coz it was given on random. 9tut is enough to pass the exam. GoodLuck. .

  26. doodledo
    August 21st, 2014

    fab site

  27. Rani
    September 6th, 2014

    Q3 in 5th Sep 2014 exam

  28. HB
    September 16th, 2014

    Passed today with 958

    Q3 was on test

    thanx 9tut

  29. Paul
    September 17th, 2014

    Hi every one, I will take my exam on Sept 25th. Could someone share me the latest version of VCE exam (with crack)?

    My email: dhnhan.et@gmail.com

    If someone have, please also share me latest dumps.

    Best regards,

  30. ramos1987
    September 18th, 2014

    PASS MY EXAM TODAY SEPT 17 1000/1000

    Q2, Q3 in exam today

  31. Luis
    October 6th, 2014

    Hi …
    Thanks for all the posting help a lot.
    please anyone can help and send the latest dumps for ccna 200-120 to my email :
    Crypterdk@gmail.com
    If someone have, please also share me latest dumps.

  32. jp0427
    October 7th, 2014

    Question #1 on my exam last Sunday, 2014/10/5.

    Thanks a lot 9tut. Almost all questions were from here except for two.
    Had the EIGRP and ACL 1 sims.

  33. muhammad sabeeh haider
    November 3rd, 2014

    hye friends i have latest dumps exam no 200-120 i download by actual test.com if any one interested its cost 1000 rupee only.my gmail i.d sabeehhaider14@gmail.com

  34. kam
    November 6th, 2014

    q1 on exam today

  35. Gina
    November 7th, 2014

    Guys, ccna seems impossible to pass. Every time I try some questions, I fail something, then I study the area and I know related questions but I forget other topics then I study those topics again and I take questions and I fail other topics I,he known before. Wtf? This is a nightmare I can’t seem to pass 80%.I always get 70to78. I don’t, know What to do! Gina_spur@yahoo.com

  36. Pat
    November 8th, 2014

    Then CCNA is not for you…

  37. ferry
    November 10th, 2014

    Gina,

    Donot be discouraged. Do not work on questions only. First learn how the technologies work.
    Explain what you have learnt to a friend. In your explanation you will figure out the points that you have to deepen. Cisco language is very tricky. You should get acquinted with the language and when you learn the technology you answer the questions by elimination of the bad options too. Many times only a word in the answers hints that this is the right answer.

    Continue, CCNA is for you.
    Good Luck

  38. aria
    November 10th, 2014

    q1, q3 today

  39. Parth Shah
    November 13th, 2014

    Q2 on 10th

  40. Erika
    November 22nd, 2014

    Q2 on exam yesterday

  41. Enzo
    December 8th, 2014

    Q3 yesterday

  42. Eu
    December 14th, 2014

    Gina, CCNA some CCNA questions are made to be “son of a bitch” question, but if you understand how the technologies work yet, so you must start study these questions here in 9tut.

    Don´t panic, it´s possible for all.

  43. HM
    December 19th, 2014

    q2,q3…Dec 18

  44. uday
    December 28th, 2014

    Q3 today

  45. ccnaaspirant
    January 1st, 2015

    guys could you send latest dumps for ccna 200 120 .
    chandrasekhar9254@gmail.com

  46. Claudio
    January 5th, 2015

    Gina and anybody (Ignoring the insane #PAT’s opinion of course)… Notice: Too much of this fckng exam is about accuracy in semantic of English (language) rather than technical knowledge. That is unfair for non native English speakers but they are the Landlords… Try to identify and memorize the logic of tricky questions. Of course this alone is not enough but will help a lot if you have already studied the CCNA material. Also practice hard the LAB scenarios. Good luck!

  47. Lorenzo
    January 12th, 2015

    Q1,3 Today, 1/12/14

  48. parveen thakur
    January 15th, 2015

    networking scop not for futer

  49. abdel
    January 19th, 2015

    Q2 & 3 in my exam today. Passed

  50. murad
    January 19th, 2015

    Q1 & Q3 in my exam today.

Comment pages
1 2 1781
Add a Comment