Home > New CCNA – NetFlow Questions

New CCNA – NetFlow Questions

April 27th, 2014 Go to comments

Question 1

What are the benefit of using Netflow? (Choose three)

A. Network, Application & User Monitoring
B. Network Planning
C. Security Analysis
D. Accounting/Billing

 

Answer: A C D

Explanation

NetFlow traditionally enables several key customer applications including:

+ Network Monitoring – NetFlow data enables extensive near real time network monitoring capabilities. Flow-based analysis techniques may be utilized to visualize traffic patterns associated with individual routers and switches as well as on a network-wide basis (providing aggregate traffic or application based views) to provide proactive problem detection, efficient troubleshooting, and rapid problem resolution.

+ Application Monitoring and Profiling – NetFlow data enables network managers to gain a detailed, time-based, view of application usage over the network. This information is used to plan, understand new services, and allocate network and application resources (e.g. Web server sizing and VoIP deployment) to responsively meet customer demands.

+ User Monitoring and Profiling – NetFlow data enables network engineers to gain detailed understanding of customer/user utilization of network and application resources. This information may then be utilized to efficiently plan and allocate access, backbone and application resources as well as to detect and resolve potential security and policy violations.

+ Network Planning – NetFlow can be used to capture data over a long period of time producing the opportunity to track and anticipate network growth and plan upgrades to increase the number of routing devices, ports, or higher- bandwidth interfaces. NetFlow services data optimizes network planning including peering, backbone upgrade planning, and routing policy planning. NetFlow helps to minimize the total cost of network operations while maximizing network performance, capacity, and reliability. NetFlow detects unwanted WAN traffic, validates bandwidth and Quality of Service (QOS) and allows the analysis of new network applications. NetFlow will give you valuable information to reduce the cost of operating your network.

+ Security Analysis – NetFlow identifies and classifies DDOS attacks, viruses and worms in real-time. Changes in network behavior indicate anomalies that are clearly demonstrated in NetFlow data. The data is also a valuable forensic tool to understand and replay the history of security incidents.

+ Accounting/Billing – NetFlow data provides fine-grained metering (e.g. flow data includes details such as IP addresses, packet and byte counts, timestamps, type-of-service and application ports, etc.) for highly flexible and detailed resource utilization accounting. Service providers may utilize the information for billing based on time-of-day, bandwidth usage, application usage, quality of service, etc. Enterprise customers may utilize the information for departmental charge-back or cost allocation for resource utilization.

(Reference: http://www.cisco.com/en/US/products/sw/netmgtsw/ps1964/products_implementation_design_guide09186a00800d6a11.html#wp1030045)

Question 2

What are the three things that the NetFlow uses to consider the traffic to be in a same flow?

A. IP address
B. Interface name
C. Port numbers
D. L3 protocol type
E. MAC address

 

Answer: A C D

Explanation

What is an IP Flow?
Each packet that is forwarded within a router or switch is examined for a set of IP packet attributes. These attributes are the IP packet identity or fingerprint of the packet and determine if the packet is unique or similar to other packets.
Traditionally, an IP Flow is based on a set of 5 and up to 7 IP packet attributes.
IP Packet attributes used by NetFlow:
+ IP source address
+ IP destination address
+ Source port
+ Destination port
+ Layer 3 protocol type
+ Class of Service
+ Router or switch interface

(Reference: http://www.cisco.com/c/en/us/products/collateral/ios-nx-os-software/ios-netflow/prod_white_paper0900aecd80406232.html)

Question 3

What NetFlow component can be applied to an interface to track IPv4 traffic?

A. flow monitor
B. flow record
C. flow sampler
D. flow exporter

 

Answer: A

Explanation

Flow monitors are the Flexible NetFlow component that is applied to interfaces to perform network traffic monitoring. Flow monitors consist of a record and a cache. You add the record to the flow monitor after you create the flow monitor. The flow monitor cache is automatically created at the time the flow monitor is applied to the first interface. Flow data is collected from the network traffic during the monitoring process based on the key and nonkey fields in the record, which is configured for the flow monitor and stored in the flow monitor cache.
For example, the following example creates a flow monitor named FLOW-MONITOR-1 and enters Flexible NetFlow flow monitor configuration mode:
Router(config)# flow monitor FLOW-MONITOR-1
Router(config-flow-monitor)#

(Reference: http://www.cisco.com/c/en/us/td/docs/ios/fnetflow/command/reference/fnf_book/fnf_01.html#wp1314030)

Question 4

What command visualizes the general NetFlow data on the command line?

A. show ip flow export
B. show ip flow top-talkers
C. show ip cache flow
D. show mls sampling
E. show mls netflow ip

 

Answer: C

Explanation

The “show ip cache flow” command displays a summary of the NetFlow accounting statistics.

show_ip_cache_flow.jpg

Question 5

What are three reasons to collect NetFlow data on a company network? (Choose three)

A. To identify applications causing congestion.
B. To authorize user network access.
C. To report and alert link up / down instances.
D. To diagnose slow network performance, bandwidth hogs, and bandwidth utilization.
E. To detect suboptimal routing in the network.
F. To confirm the appropriate amount of bandwidth that has been allocated to each Class of Service.

 

Answer: A D F

Explanation

NetFlow facilitates solutions to many common problems encountered by IT professionals.
+ Analyze new applications and their network impact
Identify new application network loads such as VoIP or remote site additions.
+ Reduction in peak WAN traffic
Use NetFlow statistics to measure WAN traffic improvement from application-policy changes; understand who is utilizing the network and the network top talkers.
+ Troubleshooting and understanding network pain points
Diagnose slow network performance, bandwidth hogs and bandwidth utilization quickly with command line interface or reporting tools. -> D is correct.
+ Detection of unauthorized WAN traffic
Avoid costly upgrades by identifying the applications causing congestion. -> A is correct.
+ Security and anomaly detection
NetFlow can be used for anomaly detection and worm diagnosis along with applications such as Cisco CS-Mars.
+ Validation of QoS parameters
Confirm that appropriate bandwidth has been allocated to each Class of Service (CoS) and that no CoS is over- or under-subscribed.-> F is correct.

(Reference: http://www.cisco.com/c/en/us/products/collateral/ios-nx-os-software/ios-netflow/prod_white_paper0900aecd80406232.html)

Question 6

What are three factors a network administrator must consider before implementing Netflow in the network? (Choose three)

A. CPU utilization
B. where Netflow data will be sent
C. number of devices exporting Netflow data
D. port availability
E. SNMP version
F. WAN encapsulation

 

Answer: A B C

Question 7

What Cisco IOS feature can be enabled to pinpoint an application that is causing slow network performance?

A. SNMP
B. Netflow
C. WCCP
D. IP SLA

 

Answer: B

Comments (238) Comments
Comment pages
  1. Enzo
    December 8th, 2014

    Q6 and Q7 today

  2. Sime
    December 9th, 2014

    Oh yes , I got it . Thanks . Confusion solved ! …Q1.

  3. Arcell
    December 11th, 2014

    I am preparing for taking ccna 200-120 exam, please send ccna dumps to arcell_m@yahoo.com

  4. faty
    December 11th, 2014

    q6 today

  5. raju
    December 15th, 2014

    Please send latest dumps to rajukle@gmail.com

  6. Raja Furqan
    December 16th, 2014

    Q3, Q6, Q7, in Today Exam

  7. Nazlo
    December 16th, 2014

    Q4,Q5 today my exam!

  8. erdo
    December 18th, 2014

    Please send latest dumps to erdinc.kayacik.87@gmail.com

  9. HM
    December 19th, 2014

    Q: 1,4,5,6,7… 18 Dec
    all from 9tut…EIGRP ,ACL1 AND ACL2

  10. James
    December 19th, 2014

    Q6 & 7 in my exam.

  11. tku
    December 19th, 2014

    q5 today

  12. sam
    December 20th, 2014

    could you please send me the latest dumps. profsam7@yahoo.com

  13. islam
    December 23rd, 2014

    question 5,6 in my exam
    today

  14. DD
    December 24th, 2014

    Please send me latest dump to darshildal@gmail.com

  15. Antoine
    December 24th, 2014

    Please sent me the latest dump ICND1 ,ICND2, AND CCNA to edzoaa@gmail.com

  16. groliks
    December 26th, 2014

    Q7 today

  17. uday
    December 28th, 2014

    Q3 and q4 today

  18. Lambert
    December 30th, 2014

    Please sent me the latest dump ICND1 ,ICND2, AND CCNA lamb1256@yahoo.com

  19. abijiin
    December 31st, 2014

    latest dumps please genafile@yahoo.co.uk

  20. Mohammed Tattan
    January 4th, 2015

    I have taken the test today, and great regret for not concentrating on dumps. Exact questions found here.

  21. A.Zidan
    January 5th, 2015

    Mohammed Tattan am writing my exam next sunday can u plz contact me to briefly telling me about the exam …Ahmed.zidan88@live.com…thx

  22. Tebatso
    January 6th, 2015

    Hi guys, Can someone please email me the latest dumps? tebatsomashigo@yahoo.com

  23. Awais Hafeez
    January 6th, 2015

    I am taking the exam for CCNA(ICND1&ICND2 combined). Can someone send me the latest dumps at awais.561984@gmail.com. Will appreciate it

  24. Safiya aljaradi
    January 8th, 2015

    I will take the exam for CCNA next Monday. Can someone send me the latest dumps at safiyaaljaradi11@gmail.com. Will appreciate it.

  25. Lorenzo
    January 12th, 2015

    Q5 Today 1/12/14

  26. Praveen Thakran
    January 17th, 2015

    Hey guys.. I scheduled my ccna(200-120) exam on 30 Jan.. Please tell me if the version of exam will be same or not.. And someone please Mail me latest dumps or vce files and vce player @praveenthakran92@gmail.com

  27. Sanc
    January 18th, 2015

    Hi, The users who login here after making payment are able to view more questions?? I can see only 7 questions.

  28. abdel
    January 19th, 2015

    Q3 in my exam today. Passed

  29. murad
    January 19th, 2015

    I passed today 972/1000. Q7

  30. hompolized
    January 21st, 2015

    what are 3 values that must be the same within a sequence of packets for netflow to consider them a network flow?
    Answers
    Source IP, IP next hop , Ingress Interface
    New Questions

  31. Al
    January 22nd, 2015

    regarding “what are 3 values that must be the same within a sequence of packets for netflow to consider them a network flow?”

    The IP next hop is not one of those values. Has to be something like Dest IP or protocol. Cannot be anything related to MAC / L2 and I think it cannot be egress interface (ingress interface seems correct).

  32. ali
    January 22nd, 2015

    I will take the exam for CCNA next Thursday. Can someone send me the latest dumps at . nailajj@yahoo.co.in .Will appreciate it.

  33. Anonymous
    January 24th, 2015

    please send me 120-200 803 ccna dump haider-ali110@live.com

  34. Anonymous
    January 29th, 2015

    I passed my exam on 21/1/2015…scored 1000/1000. Thank you 9tut!!

  35. Anonymous
    January 31st, 2015

    Q6 and Q7, scored 958/1000. Thanks 9Tut!

  36. viky
    February 1st, 2015

    vickey_1@hotmail.com plz plz plz send latest CCNA dumps i have paper at 16 Feb.

  37. Alberto Espadas
    February 2nd, 2015

    I took the exam with a Lab which is not here. Is it possible the pass the exam failing 1 lab?
    Thank you all.

  38. anonymous
    February 5th, 2015

    Please send me the lastest CCNA 200-120 dump or direct me to where I can get it. Looking to take the exam soon.

    gsxr0761684@yahoo.com

    thanks

  39. anonymous
    February 5th, 2015

    @Alberto

    What was the lab about? Were you configuring a network? Please advise.

    looking to take the test soon…thks

  40. luki28
    February 5th, 2015

    passed my exam just now and I got 1000/1000. Thank you my lord and 9tut.
    9tut is enough to pass the exam. one new question regarding OSPF.

    OSPFV3 QUESTION – What are 2 differences when comparing OSPFV3 and OSPFV2 ?
    1. OSPFv3 is advertised on per-interface basis rather than networks.
    2. OSPFv3 facilitates ipv6.

    ACL1, ACL2 (Mod. 3, HOST B ) and EIGRP with AS 2.

  41. Anonymous
    February 6th, 2015

    I am taking the exam for CCNA(ICND1&ICND2 combined). Can someone send me the latest dumps at taligal5@gmail.com. Will appreciate it

  42. Fry
    February 6th, 2015

    Q4 and 7 on exam today. Thanks 9Tut! I also got Luki28 question he mentioned.

  43. Anum
    February 7th, 2015

    Q3,5,7

  44. Anonymous
    February 7th, 2015

    Q6 and Q7 today passed with 986

  45. altaf
    February 10th, 2015

    Q1 today passed with 1000

  46. Imran
    February 11th, 2015

    @Altaf-Congrats
    Pls send the dumps for CCNA at – smamahmood@gmail.com
    Thanks in advance

  47. Chains
    February 11th, 2015

    What’s ACL1, ACL2 Mod. 3? pleaseeee renzoaic@gmail.com

  48. Che
    February 15th, 2015

    Q2 & Q3 on 15 Feb.

  49. guru
    February 17th, 2015

    q4, q5 today

  50. illbwolf
    February 19th, 2015

    Q3 and q4 today

Comment pages
Add a Comment