Choice Questions (MCQs) with Answers and
Explanations for Certification Exams
1. A network administrator discovers that traffic between two VLANs is not being routed
despite both VLANs being active on the switch. Which configuration is most likely
missing?
A. DHCP relay configuration
B. A Layer 3 interface or router-on-a-stick configuration
C. Port security settings
D. Link aggregation
Explanation: Inter-VLAN communication requires a Layer 3 device. Router-on-a-stick or
switched virtual interfaces provide routing capabilities between VLANs that Layer 2 switches
alone cannot perform.
2. An engineer configures HSRP on two routers supporting a critical subnet. What is the
primary purpose of implementing HSRP?
A. Load balancing Internet traffic
B. Packet filtering
C. Providing gateway redundancy
D. Segmenting collision domains
Explanation: HSRP enables multiple routers to present a virtual default gateway address,
ensuring uninterrupted connectivity if the active router fails.
3. A technician notices that users are unable to access websites by name, but pinging
external IP addresses succeeds. Which record type should be verified first when
troubleshooting the DNS server?
A. PTR
B. MX
C. TXT
, D. A record
Explanation: A records map hostnames to IPv4 addresses. If IP connectivity works but hostname
resolution fails, incorrect or missing A records are a common cause.
4. Which IPv6 feature eliminates the need for broadcast traffic?
A. Link aggregation
B. NAT
C. Multicast communication
D. Spanning Tree Protocol
Explanation: IPv6 replaces broadcast with multicast mechanisms, reducing unnecessary traffic
and improving network efficiency.
5. A company requires a WAN technology capable of prioritizing traffic and creating virtual
paths across a provider network. Which solution best satisfies this requirement?
A. DSL
B. ISDN
C. Metro Ethernet
D. MPLS
Explanation: Multiprotocol Label Switching supports traffic engineering and quality-of-service
mechanisms, making it suitable for enterprise WAN deployments.
6. A network engineer wants to protect against rogue DHCP servers. Which switch feature
provides the most effective defense?
A. BPDU Guard
B. Port mirroring
C. Dynamic ARP Inspection
D. DHCP Snooping
Explanation: DHCP Snooping identifies trusted and untrusted ports and blocks unauthorized
DHCP responses, preventing rogue DHCP attacks.