CCNA
793 incident response problems that help with CCNA prep.
먼저 읽을 가이드
추천 문제
All problems (793)
NETWORK-036Path MTU black hole appearsSmall requests succeed while large responses hang, because the firewall blocks the control message needed for PMTUD to adjust the path.NetworkAdvanced24 minProNETWORK-1183BGP session comes up but no routes installA peer migration completes and BGP shows Established, but reachability never changes because the import policy still reflects the old prefix scope.NetworkAdvanced26 minProNETWORK-026Latency spike follows asymmetric routing after failoverLatency spike follows asymmetric routing (Timeouts and Latency) is a hands-on troubleshooting drill. Traffic technically succeeds, but the response path changes after failover and introduces an expensive detour. DNS and Routing needs to be checked by narrowing scope, recent ch...NetworkAdvanced28 minProNETWORK-1600A BGP threshold change is right and one peer still resetsOne peer still resets after a BGP threshold change.NetworkAdvanced9 minProNETWORK-1595A Palo Alto profile update lands and one rule still logs to the old serverOne firewall rule still logs to the old server after profile updates.NetworkAdvanced9 minProNETWORK-1604A pfSense VIP move is complete and one split-horizon answer still points at the old hostOne split-horizon answer still points at the old host after a VIP move.NetworkAdvanced9 minProNETWORK-1598An Envoy route retry fix is correct and one cluster still retries the old poolOne cluster still retries the old pool after an Envoy route fix.NetworkAdvanced9 minProNETWORK-1607An IPFIX collector migration is correct and one dashboard still decodes fields wrongOne dashboard still decodes fields wrong after an IPFIX collector migration.NetworkAdvanced9 minProNETWORK-1601An NGINX proxy fix is correct and one backend still sees the wrong client chainOne backend still sees the wrong client chain after an NGINX proxy fix.NetworkAdvanced9 minProNETWORK-1591An NGINX real_ip fix lands and one host still logs the old sourceOne host still logs the old source IP after a real_ip fix.NetworkAdvanced9 minProNETWORK-1577An Unbound override is fixed and one resolver still answers the old zoneOne resolver still answers the old zone after Unbound override fixes.NetworkAdvanced9 minProNETWORK-1580A BGP max-prefix limit is updated and one peer still resetsOne BGP peer still resets after max-prefix policy updates.NetworkAdvanced10 minProNETWORK-1610A BGP peer-group fix lands and one neighbor still shuts down updatesOne BGP neighbor still shuts down updates after a peer-group fix.NetworkAdvanced10 minProNETWORK-1552A BGP policy update lands and one Arista neighbor still leaks the retired communityOnly one neighbor leaks a retired community after BGP policy cleanup.NetworkIntermediate10 minProNETWORK-1585A Palo Alto decryption profile updates and one rule still trusts the old categoryOne decryption rule still trusts the old category after profile updates.NetworkAdvanced10 minProNETWORK-1605A Palo Alto forwarding profile clone is correct and one zone still exports the wrong logsOne zone still exports logs to the wrong collector after profile cleanup.NetworkAdvanced10 minProNETWORK-1575A Palo Alto log forwarding profile updates and one rule still ships the old facilityOne firewall rule still forwards logs with the old facility after profile updates.NetworkAdvanced10 minProNETWORK-1513A pfSense failback completes and outbound traffic still leaves the wrong WANTraffic keeps exiting the backup WAN even after primary recovery on a pfSense cluster.NetworkAdvanced10 minProNETWORK-1523A pfSense failback completes and outbound traffic still leaves the wrong WANTraffic keeps exiting the backup WAN after the primary is restored.NetworkAdvanced10 minProNETWORK-1493A pfSense policy route looks correct and outbound traffic still leaves the wrong WANTraffic keeps exiting the backup WAN long after the primary is restored on a pfSense cluster.NetworkAdvanced10 minPro