Professional Documents
Culture Documents
Bank Soal Mtcna
Bank Soal Mtcna
2. A network ready device is directly connected to a MikroTik RouterBOARD with a correct U.T.P.
RJ45 functioning cable. The device is configured with an IPv4 address of 192.168.100.70 using
a subnet mask of 255.255.255.252. What will be a valid IPv4 address for the RouterBOARD
750 for a successful connection to the device?
A) 192.168.100.69/255.255.255.252
B) 192.168.100.70/255.255.255.252
C) 192.168.100.68/255.255.255.252
D) 192.168.100.71/255.255.255.252
3. Which computers would be able to communicate directly (without any routers involved):
(Multiple Answer)
A) 192.168.0.5/26 and 192.168.0.100
B) 10.10.0.17/22 and 10.10.1.30/23
C) 192.168.17.15/29 and 192.168.17.20/28
D) 10.5.5.1/24 and 10.5.5.100/25
13. Select which of the following are 'Public IP addresses': (Multiple Answer)
A) 192.168.0.1
B) 172.28.73.21
C) 172.168.254.2
D) 10.110.50.37
E) 11.63.72.21
19. How many layers does Open Systems Interconnection model have?
A) 9
B) 6
C) 7
D) 5
E) 12
22. For static routing functionality, additionally to the RouterOS system package, you will also
need the following software package:
A) None
B) DHCP
C) Routing
D) Advance-Tools
23. From which of the following locations can you obtain Winbox?
A) Router’s webpage
B) Files menu in your router
C) Via the console cable
D) mikrotik.com
27. It is impossible to disable user "admin" at the menu "/user (True / False)
29. You need to reboot a RouterBoard after importing a previously exported rsc file to activate
the new configuration. (True / False)
30. What is the maximum number of ARP entries on a Mikrotik RouterOS device ?
A) Unlimited
B) 2048
C) 8192
D) 10240
31. How many usable IP addresses are there in a 23-bit (255.255.254.0) subnet?
A) 510
B) 254
C) 208
D) 512
33. How many bits are in a subnet mask for an IPV4 network ?
A) 16
B) None
C) 8
D) 32
34. Which of the following actions are available for '/ip firewall mangle' (select all valid actions)
A) change MSS
B) mark connection
C) accept
D) jump
E) drop
F) mark packet
35. Mode wireless apakah yang bisa digunakan untuk mengkonfigurasikan WDS?
A) ap-bridge
B) nstreme-dual-slave
C) bridge
D) station-wds
E) station
36. You need to set up an E1(T1) connection with PPP configured. Which License level is needed?
A) Level 4
B) It cannot be done in RouterOS.
C) Level 5
37. When sending out an ARP request, an IP host is expecting what kind of address for an answer?
A) VLAN ID
B) IP address
C) MAC Address
D) 802.11g
40. A backup file from a MikroTik router is stored in plain text format (True / False)
42. What kind of users are listed in the Secrets window of the PPP menu? (Multiple Answer)
A) L2TP users
B) PPPOE users
C) Hotspot users
D) PPTP users
E) Winbox users
F) Wireless users
46. Mark the queue types that are available in RouterOS (Multiple Answer)
A) SFQ – Stochastic Fairness Queuing
B) DRR - Deficit Round Robin
C) FIFO - First In First Out (for Bytes or for Packets)
D) LIFO - Last In First Out
E) PCQ – Per Connection Queuing
F) RED – Random Early Detect (or Drop)
47. Is it possible for a client to get an IP address but no gateway after a successful DHCP request?
(True / False)
48. It is necessary to configure a local DNS server to be able to give out a DNS setting to clients
via DHCP server. (True / False)
49. Which of the following Routes statuses are possible? (Multiple Answer)
A) S = Static
B) D = Drop
C) C = Connected
D) A = Active
50. Can you limit how many clients than are able to connect to access point (routeros)?
A) Yes, but only with access-lists
B) No it's not possible at all
C) Yes
53. Wireless clients (mode=station) will work properly if bridged to Ethernet (True / False)
55. Mark possible TCP states in the connection tracking table (Multiple Answer)
A) New
B) Syn
C) Related
D) Invalid
E) Established
F) Closed
57. What is the default TTL (time to live) on a router that an IP packet can experience before it will be
discarded? (Multiple Answer)
A) 60
B) 30
C) 1
D) 64
58. You have 802.11b/g wireless card. What frequencies are available to you? (Multiple Answer)
A) 2327MHz
B) 5210MHz
C) 2412MHz
D) 2422MHz
E) 5800MHz
61. Which of the following IP addresses are publicly routable? (Multiple Answer)
A) 127.34.155.3
B) 192.168.1.4
C) 11.3.10.4
D) 172.16.13.23
62. What does the firewall action "Redirect" do? Select all true statements. (Multiple Answer)
A) Redirects a packet to a specified port on the router
B) Redirects a packet to the router
C) Redirects a packet to a specified IP
D) Redirects a packet to a specified port on a host in the network
67. PPPoE server only works within one Ethernet broadcast domain that it is connected to. If there
is a router between server and end-user host, it will not be able to create PPPoE tunnel to
that PPPoE server. (True / False)
68. How many usable IP addresses are there in a 23-bit (255.255.254.0) subnet?
A) 254
B) 510
C) 512
D) 508
69. It is possible to use WPA and WPA2 authentication type at the same time with one security
profile. (True / False)
70. Router A and B are both running as PPPoE servers on different broadcast domains of your
network. Is it possible to set Router A to use "/ppp secret" accounts from Router B to
authenticate PPPoE customers? (True / False)
71. Which is correct masquerade rule for 192.168.0.0/24 network on the router with outgoing
interface=ether1?
A) /ip firewall nat add action=masquerade chain=srcnat
B) /ip firewall nat add action=masquerade chain=srcnat src-address=192.168.0.0/24
C) /ip firewall nat add action=masquerade out-interface=ether1 chain=dstnat
D) /ip firewall nat add action=masquerade chain=srcnat out-interface=ether1
72. It is necessary to configure a local DNS server to be able to give out a DNS setting to clients
via DHCP server. (True / False)
74. Is it posible to have PPTP Client an PPTP Server on one MikroTik router at same time? (True /
False)
75. You want to use PCQ and allow 256k maximum download and upload for each client. Choose
correct argument values for the required queue. (Multiple Answer)
A) kind=pcq pcq-limit=1256000 pcq-classifier=dst-address
B) kind=pcq pcq-limit=1256000 pcq-classifier=dst-address
C) kind=pcq pcq-limit=5000000 pcq-classifier=src-address
D) kind=pcq pcq-limit=256000 pcq-classifier=src-address
E) kind=pcq pcq-limit=256000 pcq-classifier=dst-address
76. You have to connect to a RouterBOARD without any previous configuration. Select all
possibilities to connect and do some basic configuration (Multiple Answer)
A) Serial Connection
B) MAC-Winbox
C) Attach monitor/keyboard
D) Telnet
77. Which of these are possible solutions to bridge two networks over a wireless link: (Multiple
Answer)
A) Both devices in AP mode and enable WDS mode
B) One device in AP mode, another one in station-pseudobridge-clone
C) One device in AP mode, another one in station-pseudobridge
D) One device in AP mode, another one in station
78. Which of the following is true for connection tracking (Multiple Answer)
A) Enabling connection tracking reduces CPU usage in RouterOS
B) Connection tracking must be enabled for firewall to be effective
C) Connection tracking must be enable for NAT'ed network
D) Disable connection tracking for mangle to work
80. What wireless card can we use to achieve 100 Mbps actual wireless throughput?
A) 802.11 b/g
B) 802.11 a/b/g
C) 802.11 a
D) 802.11 a/n
E) 802.11 a/b/g/n
81. If you need to make sure that one computer in your Hotspot network can access the internet
without Hotspot authentication, which menu allows you to do this?
A) Walled-garden
B) Users
C) IP bindings
D) Walled-garden IP
84. Which are necessary section in /queue simple to set bandwith limitation ?
A) Max-limit
B) Target-address, max limit
C) Target-address, max-limit, dst-address
D) Target-address, dst-address
85. The hotspot feature can be used only on ethernet interfaces. You have to use a separate
access point if you want to use this feature with wireless (True / False)
87. Can you manually add drivers to RouterOS in case your PCI Ethernet card is not recognized,
and it's a driver issue ? (True / False)
90. What Letter appear next to route, which is automatically created by ROS (RouterOS) when
user adds a valid address to an active interface?
A) C
B) A
C) I
D) D
E) S
91. A PC with IP 192.168.1.2 can access internet, and static ARP has been set for that IP address
on gateway. When the PC Ethernet card failed, the user change it with a new card and set the
same IP for it. What else should be done?
A) Old static ARP entry on gateway has to be updated for the new card
B) Nothing - it will work as before
C) MAC-address of the new card has to be changed to MAC address of old card
D) Another IP has to be added for Internet access
94. A MikroTik PPPoE Server can be used only within a broadcast domain, thatis, users can not
run PPPoE protocol if there is a router that splits broadcast domain between the customer
and tha PPPoE server. (True / False)
95. The connect-list is used by ROS to determine which access point a card configured in station
mode is allowed to connect list. (True / False)
96. A client uses a RouterBOARD 1000. The clock is configured in ‘/system clock’. The clock resets
to default after each reboot. Select the best solution for the problem.
A) Open the router and ensure the CMOS battery is fine
B) Write a script in ‘/system script’ to set the clock
C) Configure ‘/system ntp client’ and set a valid and reachable NTP server address.
D) Configure ‘/system ntp server and set a valid and reachable NTP client address.
97. It is possible to have PPTP Client and PPTP server on one MikroTik router at the same time?
(True / False)
98. When viewing the routers in Winbox, some routes will show “DAC” in the first column. The
flags mean :
A) Dynamic, Available, Created
B) Direct, Available, Connected
C) Dynamic, Active, Console
D) Dynamic, Active, Connected
99. Which of the following Routes statuses are possible? (Multiple Answer)
A) A = Active
B) D = Drop
C) C = Connected
D) S = Static
1. which firewall chain should you use to filter clients HTTP traffic going through the router?
a. forward
b. output
c. input
d. prerouting
2. domain name system (DNS) can use protocol/port:
a. UDP 80
b. TCP 80
c. UDP 53
d. TCP 53
3. which of the following would prevent unknown clients from connecting to your AP?
choose the best answer
a. uncheck ‘default authenticate’ in the wireless card configuration, and
add each know client’s MAC address to you access-list configuration
ensuring that you enable ‘authenticate’ in the entry
b. uncheck ‘default authenticate’ in the wireless card configuration, and add
each know client’s MAC address to you access-list configuration
c. configuration the radius server under ‘/radius’
d. each know client’s MAC address to you access-list configuration is the only
step needed
e. check the ‘do not permit unknown client’ box in the wireless configuration
4. which port does PPTP use by default?
a. UDP 1721
b. TCP 1721
c. TCP 1723
d. UDP 1723
5. it is required to set up a web server residing on a private subnet in a lan to be accessible
from the public internet. the web server is directly connection to a route which is facing
the public internet. only the web server port should be accessible from the public. which
of the following configuration steps must be met(select all that apply):
a. in IP firewall NAT there should be a dst-nat rule between the public IP
Address of the route and private IP of the web server
b. the public IP address of the web server must be installed on the router
c. connection tracking must be enable on the router
d. a router between the router and the web server must exist
e. the private IP address of the address of the web server should be routable on
the internet
6. how many wireless clients can connect, when wireless card is configured to
mode=bridge?
a. 2
b. 100
c. 2007
d. 1
7. A PC with IP 192.168.1.2 can access internet, and static ARP has been set for that IP
address on gateway. When the Ethernet card failed, the user change it with a new card
and set the same IP for it. What else should be done in order to restore access to the
internet ?
a. Old static ARP entry on gateway has to be updated for the new card
b. Nothing - it will work as before
c. MAC-address of the new card has to be changed to MAC address of old
card
d. Another IP has to be added for Internet access
8. to block communications between wireless clients connected to the same access point
interface, you should set
a. ‘default-authentication=no’ and ‘default-forwarding=no’
b. ‘default-forwarding=no’
c. ‘default-authentication=no’
d. ‘max-station-count=1’
9. the highest queue priority is
a. 16
b. 256
c. 1
d. 8
10. which configuration menu should you use to change route’s winbox default port?
a. /ip firewall filter
b. /system resource
c. /ip service
d. ip firewall service-ports
11. what kind of users are listed in the “/user” menu?
a. wireless users
b. router users
c. hotspot users
d. pptp users
12. NAT rule is going to catch SMTP traffic and send it to a specific main server
a. dst-nat
b. passthrough
c. tarpit
d. redirect
13. select statement that are true regarding the following command:
/ip route add dst-address=172.16.4.0/24 gateway 192.168.4.2
a. the command is used to establish a static: true
b. the subnet mask for the destination network is 255.255.255.0
c. the default administrative distance of 100 is used
d. the command is used to configure the default route
14. If ARP=reply-only is configured on an interface, what will this interface do?
a. Accept all IP addresses listed in /ip arp as static entries
b. Accept all MAC-addresses listed in /ip arp as static entries (jawaban dari
foto)
c. Add new MAC addresses in /ip arp list
d. Add new IP addresses in /ip arp list
e. Accept all IP/MAC combinations listed in /ip arp as static entries
(jawaban dari bank soal pdf)
file foto - 82_v2
1. DHCP server is configured on an ether1 interface of a RouterOS device. IP address
192.168.0.0/24 network that do not overlap with statically assigned one the valid IP
pool ranges are
a. 192.168.0.1-192.168.0.99
b. 192.168.0.1-192.168.0.255
c. 192.168.0.1-192.168.0.14
d. 192.168.0.101-192.168.0.254
e. 192.168.0.1-192.168.0.254
2. Netinstall can be used to
a. Reinstall software without losing licence
b. install different software version (upgrade or downgrade)
c. keep configuration, but reset a lost admin password
d. install package for different hardware architecture
3. what is the meaning of the status letter “R” on a PPPoE client interface in RouterOS
Interfaces menu?
a. Reconnecting
b. Remote
c. Running
d. Radius
4. when frequency mode is set to ‘regulatory domain’ in wireless interface configuration:
a. allows any transmit power to be set with any frequency
b. it ignores transmit power restrictions, but obeys frequency limitations for the
value of country selected
c. it ignores all restrictions
d. it restricts operation to only the permitted channels and transmit powers
according to the value of country
5. mark all the features that can be used for limiting clinet registrations to your access
point:
a. WDS
b. access-list
c. wpa
d. registration-table
6. /ip route configuration on router:
/ip route add gateway = 192.168.0.1
/ip route add dst-gateaway = 192.168.0.1/24 gateway = 192.168.0.2
/ip route add dst-gateaway = 192.168.0.2/24gateway = 192.168.0.3
/ip route add dst-gateaway = 192.168.0.3/26 gateway = 192.168.0.4
router needs to send packets to 192.168.0.3.240. which gateway will be used?
a. 192.168.0.1
b. 192.168.0.3
c. 192.168.0.2
d. 192.168.0.4
7. consider the following network diagram. In R1, you have the following configuration :
/ip route
add dst-address=192.168.1.0/24 gateway =192.168.99.2
/ip firewall nat
add chain = srcnat out-interdace=Ether1 action=masquerade
on R2, if you wish to prevent all access to a server located at 192.168.1.10 from
LAN1 devices, which of the following rules would be needed ?
63. PPPoE server only works within one Ethernet broadcast domain that it is connected to. If
there is a router
between server and end-user host, it will not be able to create PPPoE tunnel to that PPPoE
server.
FALSE
71. When backing up your router by using the Exporf command, the following happens:
A. Win box usernames and passwords are backed up
B. The Export file can be edited with a standard text editor after its creation
C. You are requested to give the export file a name
97. Hotspot is required on the interfaces ether2, ehter3. wiani (in ap-bridge mode)
These interfaces are bridged in the bridge 1 interface
Which interface should the Hotspot server be configured on?
A. ether2
B ether3
C bridge 1
D. wlan 1