Certification795 problems· 7 reviewed

CCNP Enterprise

795 incident response problems that help with CCNP Enterprise prep.

All problems (795)

NETWORK-1225Packet loss follows only jumbo frames on one uplinkLarge transfers fail unpredictably while ordinary traffic continues to work, and the failure follows only some hashed paths.NetworkAdvanced21 minProNETWORK-090EVPN MAC mobility is detected but the dampening timer keeps traffic pinned to the old leafThe control plane sees the move, yet data still breaks because mobility dampening delays acceptance of the new location longer than the workload can tolerate.NetworkAdvanced22 minProNETWORK-1198BFD flap symptoms make BGP look unstable when the real issue is an aggressive keepalive path on one sideThe control plane appears unstable, but the real trigger is an overly aggressive liveness path that flaps faster than the underlying network can reliably support.NetworkAdvanced24 minProNETWORK-1182OSPF adjacency never reaches FullA link migration leaves OSPF Hellos healthy, yet LSDB exchange never completes. Community threads point back to hidden interface MTU mismatch.NetworkAdvanced24 minProNETWORK-036Path MTU black hole appearsSmall requests succeed while large responses hang, because the firewall blocks the control message needed for PMTUD to adjust the path.NetworkAdvanced24 minProNETWORK-056Site-to-site VPN comes up but traffic still needs NAT exemption for the internal subnetIKE and tunnel status look healthy, but packets still do not pass because the interesting traffic is translated before it can match the VPN policy.NetworkAdvanced24 minProNETWORK-053ECMP asymmetry breaks return traffic when one hop is statefulForward traffic succeeds across equal-cost paths, but responses vanish because a stateful device on one branch never sees the original session creation.NetworkAdvanced25 minProNETWORK-040Firewall rule shadowing makes the app port reachable from one segment onlyAn allow rule was added for the correct service, but an earlier broader rule still matches first on another path and blocks the flow unexpectedly.NetworkAdvanced25 minProNETWORK-052BFD flaps continuouslyThe routing session looks unstable for no obvious reason, but the real break is that BFD control traffic is handled differently from the data path and gets dropped or delayed.NetworkAdvanced26 minProNETWORK-1183BGP session comes up but no routes installA peer migration completes and BGP shows Established, but reachability never changes because the import policy still reflects the old prefix scope.NetworkAdvanced26 minProNETWORK-059Cross-vendor redistribution loop appearsRedistribution seemed correct in each direction separately, but the combined policy creates a feedback loop because the tags used to stop reimport are not interpreted the same way everywhere.NetworkAdvanced28 minProNETWORK-1600A BGP threshold change is right and one peer still resetsOne peer still resets after a BGP threshold change.NetworkAdvanced9 minProNETWORK-1595A Palo Alto profile update lands and one rule still logs to the old serverOne firewall rule still logs to the old server after profile updates.NetworkAdvanced9 minProNETWORK-1604A pfSense VIP move is complete and one split-horizon answer still points at the old hostOne split-horizon answer still points at the old host after a VIP move.NetworkAdvanced9 minProNETWORK-1598An Envoy route retry fix is correct and one cluster still retries the old poolOne cluster still retries the old pool after an Envoy route fix.NetworkAdvanced9 minProNETWORK-1607An IPFIX collector migration is correct and one dashboard still decodes fields wrongOne dashboard still decodes fields wrong after an IPFIX collector migration.NetworkAdvanced9 minProNETWORK-1601An NGINX proxy fix is correct and one backend still sees the wrong client chainOne backend still sees the wrong client chain after an NGINX proxy fix.NetworkAdvanced9 minProNETWORK-1591An NGINX real_ip fix lands and one host still logs the old sourceOne host still logs the old source IP after a real_ip fix.NetworkAdvanced9 minProNETWORK-1577An Unbound override is fixed and one resolver still answers the old zoneOne resolver still answers the old zone after Unbound override fixes.NetworkAdvanced9 minProNETWORK-1580A BGP max-prefix limit is updated and one peer still resetsOne BGP peer still resets after max-prefix policy updates.NetworkAdvanced10 minPro