exam questions

Exam 200-301 All Questions

View all questions & answers for the 200-301 exam

Exam 200-301 topic 1 question 880 discussion

Actual exam question from Cisco's 200-301
Question #: 880
Topic #: 1
[All 200-301 Questions]



Refer to the exhibit. After a recent internal security audit, the network administrator decided to block all P2P-capable devices from the selected SSID. Which configuration setting must the administrator apply?

  • A. Set the Wi-Fi Direct Client Policy to Not-Allow.
  • B. Select a correctly configured Layer 2 ACL.
  • C. Set the MFP Client Protection to Required.
  • D. Set the P2P Block Action to Drop.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Ciscoman021
Highly Voted 2 years, 1 month ago
Selected Answer: D
To block all P2P-capable devices from the selected SSID, the network administrator should set the P2P Block Action to "Drop". P2P (Peer-to-Peer) traffic is often used by file sharing applications and other unauthorized software, which can pose a security risk to the network. By setting the P2P Block Action to "Drop", the network administrator can prevent P2P traffic from being transmitted over the selected SSID. The other configuration settings listed are not directly related to blocking P2P traffic. Wi-Fi Direct Client Policy, for example, is used to control Wi-Fi Direct clients, while MFP (Management Frame Protection) Client Protection helps prevent forged management frames. A Layer 2 ACL (Access Control List) can be used to control access to network resources based on MAC addresses, IP addresses, and other criteria, but it is not specifically designed to block P2P traffic.
upvoted 7 times
...
squagmire
Highly Voted 1 year, 2 months ago
wtf is up with all these WLC questions, jesus fkin christ
upvoted 6 times
UsmanMHFZ
8 months, 4 weeks ago
really hate em
upvoted 2 times
...
...
Joshua25
Most Recent 6 months, 1 week ago
Selected Answer: A
. Another tricky and nasty Cisco question. The correct answer is A, and not D. Let me explain why.
upvoted 1 times
Joshua25
6 months, 1 week ago
. A. Wi-Fi Direct Client Policy Wi-Fi Direct is a technology that allowed endpoint devices form WLAN association with each other directly. You can imagine one is an AP and the other one is a client. The most common use case is a mobile phone connecting to a printer, without an infrastructure network (hope you still remember this term). This technology can be a security risk. For example, if a Wi-Fi Direct capable printer is connected to the corporate network, and an attacker connects to the printer using Wi-Fi Direct (may have weaker security), then the printer can be used as a backdoor to the corporate network. That's why the administrator in the question wants to block it. D. P2P Block Action This feature decides how a WLC handles traffic between two endpoints under the same SSID. If you have two laptops connected to the same SSID, this feature lets you decide whether to isolate them from each other. In this case, the two endpoints communicate with each other through normal WiFi. They each form association with the AP, having nothing to do with Wi-Fi Direct technology. .
upvoted 1 times
Joshua25
6 months, 1 week ago
The tricky thing is, Cisco has used the term "P2P" when asking the question. It has word-to-word matching with option D, but it's actually talking about A. The reason is obvious - any Wi-Fi client device is capable of doing the so-called P2P defined in option D; it's just normal network communication between two devices on the same LAN. So, here, the term "P2P" is actually an acronym of "Wi-Fi Direct" created by the nasty Cisco. They are good at playing rephrasing games. We have seen this too much their questions, haven't we? The question is actually asking: Which option can block Wi-Fi Direct capable devices from forming association with the SSID. And the answer is A. By the way, option D can drop traffic between endpoints under the same SSID, but it does NOT block the endpoints from the SSID. Endpoints are still able to connect to the SSID and talk to the outside network.
upvoted 1 times
Joshua25
6 months, 1 week ago
Shame on you, Cisco. You make money disgracefully by playing language traps to fail your examinees who have to pay you certification fee again. A certification exam is supposed to be testing real networking knowledge and skills, but your CCNA is testing mechanical memorisation of textbook words and language game skills. .
upvoted 1 times
...
...
...
...
[Removed]
1 year, 1 month ago
Selected Answer: D
It´s D The P2P Block Action should configured to "Drop" on the WLC or AP. This setting instructs the WLC or AP to drop any traffic associated with P2P communication, effectively preventing P2P-capable devices from accessing the network through that SSID.
upvoted 1 times
...
spazzix
1 year, 8 months ago
P2P block action only stops p2p traffic, not client association onto the WLAN. Wi-Fi Direct Client Policy actually prevents the device from connecting to the WLAN. If the question read: "...block all P2P traffic on the selected SSID." then D would be correct But by definition, D is only relevant if P2P devices are actually on the WLAN.
upvoted 1 times
...
mda2h
1 year, 9 months ago
Selected Answer: D
Not sure about the full extent of Wi-Fi Direct capabilities but CISCO seems to want you to answer D https://www.cisco.com/c/en/us/td/docs/wireless/controller/7-5/configuration-guide/b_cg75/b_cg75_chapter_01001011.pdf
upvoted 1 times
...
pikos1
1 year, 11 months ago
It is really CCNA question?
upvoted 3 times
studying_1
1 year, 11 months ago
yes, these are real CCNA questions, study all the questions
upvoted 3 times
[Removed]
1 year, 10 months ago
No, this is not a CCNA 200-301 question
upvoted 1 times
...
...
[Removed]
1 year, 10 months ago
No, it is not
upvoted 1 times
...
...
LekkiDee
1 year, 11 months ago
The correct answer is A. Set the Wi-Fi Direct Client Policy to Not-Allow. If you read the question properly, they are asking how you can block all P2P-capable devices from the selected SSID. What they are saying is to prevent the devices from connecting to the SSID. In the responses below, It appears you are talking about blocking the peers from communicating via P2P. see this link or read the shorter snippet further below. https://content.cisco.com/chapter.sjs?uri=/searchable/chapter/content/en/us/td/docs/wireless/controller/7-5/configuration-guide/b_cg75/b_cg75_chapter_01000000.html.xml#:~:text=Click%20the%20Advanced%20tab.&text=From%20the%20Wi%2DFi%20Direct,to%20associate%20with%20the%20WLAN
upvoted 5 times
...
Ciscoman021
2 years, 1 month ago
Selected Answer: D
Disabled—Disables peer-to-peer blocking and bridges traffic locally within the controller whenever possible. This is the default value.
upvoted 1 times
...
AaronRow
2 years, 1 month ago
Selected Answer: D
https://www.cisco.com/c/en/us/td/docs/wireless/controller/7-5/configuration-guide/b_cg75/b_cg75_chapter_01001011.pdf
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago