Certification793 problems· 22 reviewed

CCNA

793 incident response problems that help with CCNA prep.

All problems (793)

NETWORK-1520A browser SSH app loads and still failsBrowser SSH fails only through one connector after an origin certificate renewal.NetworkAdvanced12 minProNETWORK-1530A browser SSH app loads and still failsBrowser SSH fails only through one connector after origin certificate renewal.NetworkAdvanced12 minProNETWORK-1464A CARP failover succeeds and return traffic still diesConnections stay half-open after failover for branches that rely on policy-routed egress.NetworkAdvanced12 minProNETWORK-1510A Cloudflare Access app loads and browser SSH still failsBrowser SSH breaks only through one connector after origin certificate renewal.NetworkAdvanced12 minProNETWORK-1500A Cloudflare Access application renders and SSH over browser still failsCloudflare Access browser SSH breaks only through one connector after an origin certificate renewal.NetworkAdvanced12 minProNETWORK-1454A Cloudflare Tunnel health check stays green and real browser traffic failsA Cloudflare Tunnel health check stays green and real browser traffic fails focuses on edge-routing and asks the reader to isolate the key signal in Cloudflare. Tunnel health can stay green while only one real-user fallback transpo...NetworkAdvanced12 minProNETWORK-1472A Cloudflare Tunnel status page stays green and regional traffic still failsOne region continues failing after a connector VM is restored from snapshot while health remains green.NetworkAdvanced12 minProNETWORK-1476A DoH migration works for browsers and breaks one service meshMesh sidecars fail only during cold start after a DNS-over-HTTPS migration.NetworkAdvanced12 minProNETWORK-1479A Palo Alto decryption policy matches and still blocks the app laterA SaaS app works until it redirects to a CDN hostname after login, where decryption suddenly blocks it.NetworkAdvanced12 minProNETWORK-1555A Palo Alto URL category update is published and one rule still bypasses decryptionOnly one firewall cluster bypasses decryption after URL category updates.NetworkAdvanced12 minProNETWORK-1481A pfSense policy route looks correct and return traffic still escapesReturn traffic still uses the old WAN path after a gateway group failover policy update.NetworkAdvanced12 minProNETWORK-1473A port-channel stays up and still drops multicastMulticast loss appears on a subset of receivers after a supervisor switchover while the port-channel never drops.NetworkAdvanced12 minProNETWORK-1458A recursive resolver over TLS stays healthy and validation still failsOne encrypted resolver path stops validating after an upstream key roll while ordinary DNS still works.NetworkAdvanced12 minProNETWORK-1460A segmented campus path works for HTTP and breaks WebSocketsA segmented campus path works for HTTP and breaks WebSockets focuses on edge-routing and asks the reader to isolate the key signal in NGINX. Proxy behavior for upgrade headers can change by negotiated protocol branch, not only by route.NetworkAdvanced12 minProNETWORK-1466A split-horizon DNS design works for browsers and fails for one API clientOnly one API client type reports certificate mismatch after moving to DoH.NetworkAdvanced12 minProNETWORK-1527An Anycast DNS node advertises and one POP misses probesAnycast DNS health checks fail only from one POP after cleanup.NetworkAdvanced12 minProNETWORK-1497An Anycast DNS node advertises normally and health checks still miss one POPAnycast DNS health checks fail only from one POP after a route-reflector maintenance VRF cleanup.NetworkAdvanced12 minProNETWORK-1517An Anycast DNS node advertises normally and one POP misses probesAnycast DNS health checks fail only from one POP after route-reflector cleanup.NetworkAdvanced12 minProNETWORK-1507An Anycast DNS node advertises normally and one POP still misses health checksAnycast DNS health checks fail only from one POP after a route-reflector cleanup.NetworkAdvanced12 minProNETWORK-1469An App-ID bypass is hit on the handshake and later traffic is blockedLarge API uploads fail after a proxy change even though the initial handshake still matches the bypass.NetworkAdvanced12 minPro