A financial services company is implementing a large-scale MPLS L3VPN network to segregate traffic for different departments. The network architect is concerned about scalability and wants to avoid a full mesh of IBGP sessions between all PE routers. The entire network is within a single Autonomous System (AS 65100). To solve this, two routers are designated as Route Reflectors (RR) in a single cluster. When a PE router (Client) learns a VPNv4 route from a CE router, what BGP attributes are added or modified by the RR before it reflects the route to other PE router clients within the same cluster?
Answer and explanation
Correct answer: B
To prevent routing loops in a BGP route reflector environment, the RR adds two key non-transitive BGP attributes. It adds the CLUSTER_ID, which identifies the reflection cluster. It also adds the ORIGINATOR_ID, which is set to the Router ID of the client that originally sent the route to the RR. If a router receives a reflected route containing its own Router ID as the ORIGINATOR_ID, it discards the route, thus preventing loops.
Question 2
Multiple answers
A network administrator is configuring an IPv6 network and wants to allow hosts to automatically configure their own global unicast addresses without the use of a DHCPv6 server. Which combination of ICMPv6 messages is essential for this Stateless Address Autoconfiguration (SLAAC) process? (Select TWO)
Answer and explanation
Correct answers: A, B
SLAAC relies on two key ICMPv6 messages from the Neighbor Discovery Protocol. First, a host sends a Router Solicitation (RS) message to the all-routers multicast address to prompt any local routers to respond immediately. In response, or periodically, a router sends a Router Advertisement (RA) message containing the network prefix and its length. The host combines this prefix with its own interface identifier (often a modified MAC address, EUI-64) to form a complete global unicast address.
Question 3
True or False: In a standard MPLS L3VPN deployment, the Route Distinguisher (RD) is used by PE routers to control the import and export of VPNv4 routes between different VPN Routing and Forwarding (VRF) instances.
Answer and explanation
Correct answer: B
This statement is false. The Route Distinguisher's (RD) sole purpose is to make customer prefixes globally unique within the provider's network, allowing for overlapping IP address spaces between different customers. It is the Route Target (RT), an extended community attribute, that controls the import and export of routes into and out of VRFs.
Question 4
A global logistics company, GlobeHaul Inc., is transitioning its core network from IPv4-only to a dual-stack IPv4/IPv6 architecture. The project is being managed in phases to minimize disruption. The current phase involves enabling IPv6 on a segment of the network that connects two major data centers across an existing IPv4-only MPLS backbone. The edge routers at each data center (PE1 and PE2) are dual-stack capable, but the core routers (P routers) are not scheduled for an IPv6 upgrade yet.
The network engineering team needs to provide end-to-end IPv6 connectivity for specific applications between the two data centers without enabling IPv6 on the core P routers. The solution must be scalable and integrate seamlessly with the existing MPLS infrastructure. The PE routers are already running MP-BGP for existing IPv4 VPN services.
Which IPv6 transition technology should the engineering team implement on the PE routers to achieve this goal?
Answer and explanation
Correct answer: D
6PE is the ideal solution for this scenario. It leverages the existing IPv4 MPLS backbone without requiring any changes to the P routers. PE routers use MP-BGP to exchange IPv6 reachability information over their IPv4 peering sessions. IPv6 packets are encapsulated with two labels: an inner label for the destination PE (assigned by BGP) and an outer label for the next-hop P router (assigned by LDP). The IPv4-only P routers simply perform label switching based on the outer label, transparently forwarding the encapsulated IPv6 traffic. This is highly scalable and integrates perfectly with the MPLS infrastructure.
A network engineer is troubleshooting an OSPFv3 network. The command display ospfv3 peer on router R1 shows that the neighbor relationship with R2 is stuck in the ExStart state. What is a common reason for this issue in an OSPFv3 point-to-point link?
Answer and explanation
Correct answer: C
In the ExStart state, OSPF neighbors decide the master/slave relationship and the initial DD sequence number for exchanging database description (DBD) packets. If the MTU of the interfaces differs, the larger DBD packets from the router with the higher MTU might be dropped by the router with the lower MTU. This prevents the DBD exchange process from completing, causing the adjacency to remain stuck in ExStart. While OSPFv3 does not have a built-in MTU check like OSPFv2 for broadcast networks, an MTU mismatch will still cause the exchange of large DBD packets to fail.
Question 6
In an IS-IS network, what is the primary purpose of the Overload bit (OL bit) in the LSP?
Answer and explanation
Correct answer: C
The Overload bit is a mechanism used by an IS-IS router to signal to its neighbors that it is under stress (e.g., low memory, high CPU, or during a graceful restart) and should not be used for forwarding transit traffic. When other routers see the OL bit set in an LSP, they will still include the router's directly connected prefixes in their SPF calculations, but they will not calculate paths through the overloaded router to reach other destinations. This gracefully removes the router from the transit path without causing a full network reconvergence.
Question 7
A service provider uses Selective QinQ to differentiate traffic from two customers, A and B, who are connected to the same switch port, GE0/0/1. Both customers send traffic tagged with VLAN 10 and VLAN 20. The service provider wants to map Customer A's traffic (VLAN 10 and 20) to S-VLAN 100 and Customer B's traffic (VLAN 10 and 20) to S-VLAN 200. Which configuration concept on the Huawei switch achieves this?
Answer and explanation
Correct answer: D
Standard QinQ maps all C-VLANs on a port to a single S-VLAN. To achieve Selective QinQ where different customers on the same port are mapped to different S-VLANs, a more granular method is needed. Since both customers use the same C-VLANs, matching on VLAN ID is insufficient. The typical method is to use a traffic policy that classifies traffic based on the source MAC address of the customer's equipment. An ACL can match the source MAC, and the associated traffic behavior can then remark the packet with the appropriate S-VLAN tag (100 for Customer A, 200 for Customer B).
Question 8
When troubleshooting a BGP peering session, a network engineer issues the display bgp peer command and observes the peer state is 'Connect'. What does this state indicate about the peering process?
Answer and explanation
Correct answer: B
The BGP state machine progresses through several states. The 'Connect' state specifically means that the local BGP process has initiated a TCP connection (sent a SYN packet) to its peer on port 179 and is now waiting for the peer to complete the TCP three-way handshake (by responding with a SYN-ACK). If the session remains in this state for an extended period, it typically indicates a lower-level connectivity issue, such as a firewall blocking TCP port 179, an incorrect peer IP address, or a routing problem preventing the SYN packet from reaching the peer.
A network engineer is planning a network cutover to replace an old core router with a new, more powerful Huawei router. The plan must include a detailed rollback procedure. Which of the following are essential components of a robust rollback plan for this hardware migration? (Select THREE)
Answer and explanation
Correct answers: A, B, D
A robust rollback plan is critical for any network change. It must include: 1) A saved, known-good configuration of the old device to restore its state. 2) A clear, step-by-step physical and logical plan to revert the change, including cabling and configuration steps. 3) Pre-defined, objective criteria (e.g., 'if critical application X is unreachable for more than 5 minutes', 'if BGP peerings do not establish within 10 minutes') that clearly define when to abandon the cutover and execute the rollback. A list of new features is part of the implementation plan, not the rollback plan.
Question 10
A consultant is designing an MPLS network and needs to configure LDP (Label Distribution Protocol) sessions between routers. Which IP address is used by default for the transport address of the LDP session on Huawei routers?
Answer and explanation
Correct answer: C
LDP establishes a TCP session between neighbors to exchange labels. The source IP address for this session is called the transport address. On Huawei devices, the transport address is determined by the MPLS LSR-ID. If the LSR-ID is explicitly configured, that IP address is used. If not, the router automatically selects an IP address to be the LSR-ID (typically the highest IP address of a loopback interface) and uses that as the transport address. Using a stable loopback address as the LSR-ID is a best practice.