200-301: Cisco Certified Network Associate (CCNA)

200-301: Cisco Certified Network Associate (CCNA)

This exam tests your knowledge and skills related to:

◉ Network fundamentals

◉ Network access

◉ IP connectivity

◉ IP services

◉ Security fundamentals

◉ Automation and programmability

Cisco 200-301 Exam Overview:


Exam Name Implementing and Administering Cisco Solutions
Exam Number  200-301 CCNA
Exam Number  $300 USD
Duration  120 minutes
Number of Questions  90-110
Passing Score  Variable (750-850 / 1000 Approx.)
Recommended Training  Implementing and Administering Cisco Solutions (CCNA)
Sample Questions  Cisco 200-301 Sample Questions
Practice Exam  Cisco Certified Network Associate Practice Test

Cisco 200-301 Exam Topics:

Section Weight  Objectives 
Network Fundamentals 20% 

1. Explain the role and function of network components

- Routers
- Layer 2 and Layer 3 switches
- Next-generation firewalls and IPS
- Access points
- Controllers (Cisco DNA Center and WLC)
- Endpoints
- Servers
- PoE

2. Describe characteristics of network topology architectures

- Two-tier
- Three-tier
- Spine-leaf
- WAN
- Small office/home office (SOHO)
- On-premise and cloud

3. Compare physical interface and cabling types

- Single-mode fiber, multimode fiber, copper
- Connections (Ethernet shared media and point-to-point)

4. Identify interface and cable issues (collisions, errors, mismatch duplex, and/or speed)
5. Compare TCP to UDP
6. Configure and verify IPv4 addressing and subnetting
7. Describe the need for private IPv4 addressing
8. Configure and verify IPv6 addressing and prefix
9. Describe IPv6 address types

- Unicast (global, unique local, and link local)
- Anycast
- Multicast
- Modified EUI 64

10. Verify IP parameters for Client OS (Windows, Mac OS, Linux)
11. Describe wireless principles

- Nonoverlapping Wi-Fi channels
- SSID
- RF
- Encryption

12. Explain virtualization fundamentals (server virtualization, containers, and VRFs)
13. Describe switching concepts

- MAC learning and aging
- Frame switching
- Frame flooding
- MAC address table

Network Access 20% 

1. Configure and verify VLANs (normal range) spanning multiple switches

- Access ports (data and voice)
- Default VLAN
- InterVLAN Connectivity

2. Configure and verify interswitch connectivity

- Trunk ports
- 802.1Q
- Native VLAN

3. Configure and verify Layer 2 discovery protocols (Cisco Discovery Protocol and LLDP)
4. Configure and verify (Layer 2/Layer 3) EtherChannel (LACP)
5. Describe the need for and basic operations of Rapid PVST+ Spanning Tree Protocol and identify basic operations

- Root port, root bridge (primary/secondary), and other port names
- Port states (forwarding/blocking)
- PortFast benefits

6. Compare Cisco Wireless Architectures and AP modes
7. Describe physical infrastructure connections of WLAN components (AP,WLC, access/trunk ports, and LAG)
8. Describe AP and WLC management access connections (Telnet, SSH, HTTP,HTTPS, console, and TACACS+/RADIUS)
9. Configure the components of a wireless LAN access for client connectivity using GUI only such as WLAN creation, security settings, QoS profiles, and advanced WLAN settings

IP Connectivity 25% 

1. Interpret the components of routing table

- Routing protocol code
- Prefix
- Network mask
- Next hop
- Administrative distance
- Metric
- Gateway of last resort

2. Determine how a router makes a forwarding decision by default

- Longest match
- Administrative distance
- Routing protocol metric

3. Configure and verify IPv4 and IPv6 static routing

- Default route
- Network route
- Host route
- Floating static

4. Configure and verify single area OSPFv2

- Neighbor adjacencies
- Point-to-point
- Broadcast (DR/BDR selection)
- Router ID

5. Describe the purpose, functions, and concepts of first hop redundancy protocols

IP Services 10%  1. Configure and verify inside source NAT using static and pools
2. Configure and verify NTP operating in a client and server mode
3. Explain the role of DHCP and DNS within the network
4. Explain the function of SNMP in network operations
5. Describe the use of syslog features including facilities and levels
6. Configure and verify DHCP client and relay
7. Explain the forwarding per-hop behavior (PHB) for QoS such as classification, marking, queuing, congestion, policing, shaping
8. Configure network devices for remote access using SSH
9. Describe the capabilities and function of TFTP/FTP in the network
Security Fundamentals 15% 1. Define key security concepts (threats, vulnerabilities, exploits, and mitigation techniques)
2. Describe security program elements (user awareness, training, and physical access control)
3. Configure and verify device access control using local passwords
4. Describe security password policies elements, such as management, complexity, and password alternatives (multifactor authentication, certificates, and biometrics)
5. Describe IPsec remote access and site-to-site VPNs
6. Configure and verify access control lists
7. Configure Layer 2 security features (DHCP snooping, dynamic ARP inspection, and port security)
8. Differentiate authentication, authorization, and accounting concepts
9. Describe wireless security protocols (WPA, WPA2, and WPA3)
10. Configure WLAN using WPA2 PSK using the GUI
Automation and Programmability 10% 

1. Explain how automation impacts network management
2. Compare traditional networks with controller-based networking
3. Describe controller-based and software defined architectures (overlay, underlay, and fabric)

- Separation of control plane and data plane
- North-bound and south-bound APIs

4. Compare traditional campus device management with Cisco DNA Center enabled device management
5. Describe characteristics of REST-based APIs (CRUD, HTTP verbs, and data encoding)
6. Recognize the capabilities of configuration management mechanisms Puppet, Chef, and Ansible
7. Interpret JSON encoded data

0 comments:

Post a Comment