Enterprise Routing and Switching, Professional (JNCIP-ENT)
JN0-649 Exam

You are troubleshooting a BGP connection.
Referring to the exhibit, which two statements are correct? (Choose two.)

  1. Packet fragmentation is preventing the session from establishing.
  2. The 192.168.1.5 peer has a misconfigured MD5 key.
  3. The ge-0/0/1 interface is disabled.
  4. The 192.168.1.4 peer has a misconfigured autonomous system number.

Answer(s): B,D



Referring to the exhibit, anycast RP is implemented to ensure multicast service availability. The source is currently sending multicast traffic using group 239.1.1.1 and R3 is receiving PIM register messages, but R2 does not have active source information. In this scenario, what are two methods to receive the active source information on R2? (Choose two.)

  1. Configure an RP set in PIM on R1, allowing R1 to forward PIM register messages to R2 and R3 in the set.
  2. Configure an MSDP protocol between R2 and R3.
  3. Configure an RP set in PIM on R2 and R3, allowing the RPs to forward PIM register messages to the other RPs in the set.
  4. Configure an MSDP protocol between R1 and R2.

Answer(s): A,C

Explanation:

https://www.juniper.net/documentation/us/en/software/junos/multicast/topics/ref/statement/rp- set-edit-protocols-pim.html



You are asked to establish interface level authentication for users connecting to your network. You must ensure that only corporate devices, identified by MAC addresses, are allowed to connect and authenticate. Authentication must be handled by a centralized server to increase scalability.
Which authentication method would satisfy this requirement?

  1. MAC RADIUS
  2. captive portal
  3. 802.1X with single-secure supplicant mode
  4. 802.1X with multiple supplicant mode

Answer(s): A

Explanation:

https://www.juniper.net/documentation/us/en/software/junos/user-access/topics/topic-map/mac- radius-authentication-switching-devices.html

You can configure MAC RADIUS authentication on an interface that also allows 802.1X authentication, or you can configure either authentication method alone.

If both MAC RADIUS and 802.1X authentication are enabled on the interface, the switch first sends the host three EAPoL requests to the host. If there is no response from the host, the switch sends the host's MAC address to the RADIUS server to check whether it is a permitted MAC address. If the MAC address is configured as permitted on the RADIUS server, the RADIUS server sends a message to the switch that the MAC address is a permitted address, and the switch opens LAN access to the nonresponsive host on the interface to which it is connected.



Referring to the exhibit, which LSA type is used to advertise 192.168.1.0/24 to R5?

  1. Type 5
  2. Type 4
  3. Type 3
  4. Type 7

Answer(s): A

Explanation:

Area-1 has no external connections. However, Area-1 has static route (172.16.31.0/24) that are not internal OSPF route. You can limit the external route advertisements to the area and advertise the static routes by designating the area an NSSA. In an NSSA, the ASBR (vMX1) generates NSSA external (Type 7) LSAs and floods them into the NSSA, where they are contained.

Type-7 LSAs allow an NSSA to support the presence of ASBR and their corresponding external routing information. The ABR (vMX2) converts Type-7 LSAs into Type-5 External LSAs and leaks them to the other areas, but external routes from other areas are not advertised within the NSSA.

An admin should check this and change it https://www.packetswitch.co.uk/configuring-junos-ospf-stub-and-nssa-areas/

https://www.juniper.net/documentation/us/en/software/junos/ospf/topics/ref/statement/nssa- edit-protocols-ospf.html




Mick H.
I passed the CCIE Written exam 350-001 last Friday, Thanks very much for your study guide and your help.
- UNITED STATES
Upvote


Hagit
i ust wanted to thank you folks at braindumgalaxy.com for your assistance. I used your CCNP exams for practice and to identify my weak areas. Passed the CCNP recert on Tuesday without any big problems.
- Israel
Upvote


Cisco Engineer
I have found that your resources are probably the best on the market...and I work at Cisco.
- UNITED STATES
Upvote


Koshani
A well Good morning Dear braindumpgalaxy.com Team I wanna say that I passed the 000-888 yesterday and i am happy
- UNITED STATES
Upvote


Aized
I took the A+ hardware exam yesterday and thanks to your excellent and helping preparation material. I got a nice score.
- Pakistan
Upvote


Nazanin
I passed the exam with great distinction!
- CANADA
Upvote


Xiwan W
Great Price....Great Product. Keep up the good work!
- China
Upvote


Ashwin
So far your practice exams are extremely helpful. My test scores keep on going up every time I do them and I feel very confident now.
- India
Upvote


Mike M
The exams was excellent and helped me pass without any doubt.Very helpful! Thank you! I passed!
- UNITED ARAB EMIRATES
Upvote


Smart one
You guys rock. I just passed my 920-139 exam with 929 marks. Thanks for accurate & descriptive question bank.
- UK
Upvote

Read more ...