nerdexam
Cisco

200-301 · Question #1718

Lab Simulation 62 Please use the "Tasks" and "Topology" tabs to complete this lablet. Topology Tasks Refer to the topology. All physical cabling is in place, and a routing protocol is preconfigured on

This lab simulation requires configuring an extended named access control list, establishing a local user account with specific telnet access, and enabling DHCP snooping on a switch for a designated VLAN.

Submitted by jordan8· Mar 5, 2026Security Fundamentals

Question

Lab Simulation 62 Please use the "Tasks" and "Topology" tabs to complete this lablet. Topology Tasks Refer to the topology. All physical cabling is in place, and a routing protocol is preconfigured on all network devices. Task 1: Using the minimum number of ACEs, configure an extended named ACL and place it within the topology to conserve as many resources as possible. ACL requirements are: - ACL name = TELNET_BLOCK - Allow HTTP traffic only from VLAN 100 - Block telnet only for PC2 - Allow all other traffic Task 2: Configure a local account on Sw2 with telnet access only on virtual ports 0-4. Use the following information: - Username: MonitorTech - Password: Anc13nt - Algorithm type: Scrypt - Privilege level: Exec mode Task 3: Configure Sw3: - Enable DHCP snooping for VLAN 100 - Enable DHCP snooping MAC address verification Answer: See the below explanation

Explanation

This lab simulation requires configuring an extended named access control list, establishing a local user account with specific telnet access, and enabling DHCP snooping on a switch for a designated VLAN.

Concept tested. Cisco IOS ACLs, local user accounts, DHCP snooping

Reference. https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_acl/configuration/xe-16/sec-data-acl-xe-16-book.html

Topics

#Extended ACLs#ACL placement#DHCP snooping#Local user authentication

Community Discussion

No community discussion yet for this question.

Full 200-301 Practice