CCNP Enterprise
795 incident response problems that help with CCNP Enterprise prep.
먼저 읽을 가이드
추천 문제
All problems (795)
NETWORK-1194Firewall rule change looks correct but connection tracking keeps old assumptions aliveA rule update should allow new traffic, but live sessions still fail because connection tracking or stateful inspection has not re-evaluated the path the way operators expect.NetworkAdvanced23 minProNETWORK-062MLAG peer link is healthy but the orphan VLAN is not allowed and ARP blackholes one rackThe chassis pair stays up, yet half the rack cannot resolve the gateway because the affected VLAN was never permitted across the peer path.NetworkAdvanced23 minProNETWORK-1204OSPF area design looks correct but summary routing hides one more specific path after migrationInter-area reachability mostly works, yet one destination disappears because a migrated summary route now masks the more specific path operators expected to win.NetworkAdvanced23 minProNETWORK-1200Reverse proxy timeout tuning hides that one upstream path is serializing requests unexpectedlyRaising timeout values improves symptoms temporarily, but the real issue is that a supposedly parallel backend path became serialized and now stalls under modest load.NetworkAdvanced23 minProNETWORK-1187VPN client injects a route that silently steals the return path for one private subnetGeneral connectivity remains healthy, but one internal subnet breaks because the host routing table now prefers a path injected by a VPN client.NetworkAdvanced23 minProNETWORK-085VXLAN VTEP peers are reachable but the overlay MAC table never learns one tenant segmentThe underlay looks healthy, yet one tenant still cannot communicate because the overlay learning path or segment mapping is broken for that VNI only.NetworkAdvanced23 minProNETWORK-1192Anycast service flapsA route advertisement script taken from public examples checks process state only. Anycast traffic starts flowing before the node’s real dependency chain is ready.NetworkAdvanced24 minProNETWORK-1189IOS XR eBGP session is up but policy omission means zero route exchangeThe BGP session establishes successfully, yet no routes move because an inbound or outbound policy required by the platform was omitted.NetworkAdvanced24 minProNETWORK-063Route reflector strips a BGP community and upstream traffic engineering stops workingSessions remain established and routes are present, but the intended upstream policy no longer triggers because a critical community vanished in the reflection path.NetworkAdvanced24 minProNETWORK-035BGP session is established but the expected prefix never reaches the RIBThe neighbor shows Established, yet the target route is absent because a prefix list, route map, or best-path rule discards it before installation.NetworkAdvanced26 minProNETWORK-060SD-WAN policy prefers the worse pathThe controller has path metrics, but the application policy still chooses the higher-latency circuit because the SLA measurement feeding the decision is scoped incorrectly.NetworkAdvanced27 minProNETWORK-039VRF leak design misses the import policy for a shared services subnetThe route exists in the source VRF, but shared services remain unreachable because the target VRF never imports the right route target or policy match.NetworkAdvanced27 minProNETWORK-1029A QoS policy marks the right classes (Timeouts and Latency)A QoS policy marks the right classes (Timeouts and Latency) focuses on Network Services And Operations and asks the reader to isolate Timeouts and Latency in Cisco. 실무에서는 Timeouts and Latency 이슈를 볼 때 DNS, 라우팅, ACL/방화벽, 목적지 응답을 계층별로 잘라서 확인하면 장애 구간을 훨씬 빠르게 좁힐 수 있습니다.NetworkAdvanced28 minProNETWORK-1573A Cloudflare Access route is fixed and one service token still bypassesOne service token still bypasses new Access rules after route fixes.NetworkIntermediate8 minProNETWORK-1583A Cloudflare origin route is fixed and one websocket still failsOne websocket path still fails after Cloudflare route corrections.NetworkIntermediate8 minProNETWORK-1603A Cloudflare Tunnel route is correct and one app still loopsOne app still loops after a Cloudflare Tunnel route fix.NetworkIntermediate8 minProNETWORK-1593A Cloudflare tunnel route is fixed and one origin still failsOne origin still fails after a Cloudflare tunnel route fix.NetworkIntermediate8 minProNETWORK-1579A DHCP Option 82 template is updated and one relay still tags the old circuit idOne relay still tags the old circuit id after Option 82 template cleanup.NetworkIntermediate8 minProNETWORK-1589A DHCP policy is corrected and one relay still inserts the old circuit-idOne relay still inserts the old circuit-id after policy correction.NetworkIntermediate8 minProNETWORK-1609A DHCP relay change is correct and one site still hands out wrong leasesOne site still hands out wrong leases after a DHCP relay change.NetworkIntermediate8 minPro