MikroTik RouterOS Networking Quiz
MikroTik RouterOS Networking Quiz
18. MAC layer by OSI model is also known 4. Is it possible to limit how many clients
as are able to connect to an access point?
a. Layer 3 a. Yes, but only with access-lists
b. Layer 7 b. No it’s not possible at all
c. Layer 1 c. Yes
d. Layer 2
5. Which of the following Routes statuses c. DHCP service is not possible in this
are possible? setup
a. D = Drop d. Ethernet and wireless interfaces
b. C = Connected
c. S = Static 12. A routing table has following entries:
d. A = Active 0 dst-address=10.0.0.0/24
gateway=10.1.5.126
6. It is necessary to configure a local DNS 1 dst-address=10.1.5.0/24
server to be able to give out a DNS gateway=10.1.1.1
setting to clients via DHCP server. 2 dst-address=10.1.0.0/24
True gateway=25.1.1.1
3 dst-address=10.1.5.0/25
7. What kind of users are listed in the gateway=10.1.1.2
“/user” menu? Which gateway will be used for a
a. pptp users packet with destination address
b. hotspot users 10.1.5.126?
c. router users a. 10.1.1.1
d. wireless users b. 10.1.1.2
c. 10.1.5.126
8. How many DHCP servers could you d. 25.1.1.1
run on one interface?
a. 255 13. Is it possible to have PPTP Client and
b. 1024 PPTP server on one MikroTik router at
c. 4 the same time?
d. 1 True
9. What configuration is added by /ip 14. Router A and B are both running as
hotspot setup command? (select all PPPoE servers on different broadcast
that apply) domains of your network. Is it possible
a. /ip hotspot user to set Router A to use “/ppp secret”
b. /queue tree accounts from Router B to
c. /ip service authenticate PPPoE customers ?
d. /ip dhcp-server False
e. /ip hotspot walled-garden
15. You want to skip HotSpot
10. What is the default protocol/port of (authorization, accounting, etc.) for a
(secure) winbox? specific host. What should you use?
a. TCP/8080 a. /ip hotspot ip-binding
b. TCP/22 b. /ip hotspot walled-garden ip
c. UDP/5678 c. /ip hotspot walled-garden
d. TCP/8291 d. /ip address
11. Router has Wireless and Ethernet 16. What does the firewall action
client interfaces, all client interfaces “Redirect” do?
are bridged. a. Redirects a packet to a specified
To create a DHCP service for all clients port on a host in the network
you must configure DHCP server on b. Redirects a packet to a specified IP
a. only on bridge interface c. Redirects a packet to the router
b. every bridge port d. Redirects a packet to a specified
port on the router
b. 15.242.55.33-15.242.55.62
17. Which wireless mode allows you to c. 15.242.55.31-15.242.55.62
connect to any standard AP (not only d. 15.242.55.32-15.242.55.63
MikroTik) and to be able to bridge this
wireless interface to an Ethernet? 23. Which configuration menu should you
a. Station use to change router’s Winbox default
b. Bridge port?
c. station-pseudobridge a. /ip service
d. station-wds b. /ip firewall service-ports
c. /ip firewall filter
18. Possible actions of ip firewall filter are: d. /system resource
a. Bounce
b. Accept 24. A backup file from a MikroTik router is
c. Tarp stored in plain text format
d. add-to-list False
e. log
f. tarpit 25. In RouterOS queue configurations the
word “total” usually represents
19. How many layers does Open Systems a. Download
Interconnection model have? b. upload + download
a. 9 c. download – upload
b. 6 d. upload
c. 5
d. 7 Versi 4
e. 12 1. MAC layer by OSI model is also known
as
20. What does this simple queue do (check a. Layer 2
the image)? Image can not display b. Layer 7
a. Queue guarantees download data c. Layer 1
rate of one megabit per second for d. Layer 6
host 192.168.1.10 e. Layer 3
b. Queue limits host 192.168.1.10 Penjelasan : layer 7 memakai web
upload data rate to one megabit server atau ftp, layer 1
per second. menggunakan bit, layer 6 untuk
c. Queue guarantees upload data menggunakan protocol udp dan
rate of one megabit per second tcp, dan layer 3 menggunakan ip
for host 192.168.1.10 dan layer 2 menggunakan mac
d. Queue limits host 192.168.1.10 address (sesuai dengan soal)
download data rate to one megabit
per second. 2. The basic unit of a physical network
(OSI Layer 1) is the:
21. You can control bandwidth of a client a. Frame
connected to AP with the resource / b. Byte
interface wireless access-list ( assume c. Bit
the client uses MikroTik RouterOS). d. Header
True Penjelasan : frame merupakan
“amplop’ yang berisikan informasi
22. Choose all valid hosts address range data, byte adalah kumpulan dari bit,
for subnet 15.242.55.62/27 header adalah , bit adalah
a. 15.242.55.33-15.242.55.63 merupakan singkatan dari biner
digit yang digunakan sebagai basic a. /30
layer 1 (sesuai dengan soal) b. /31
c. /32
3. Which of the following protocols / port d. /29
s are used for SNMP. (Simple Network Penjelasan : utk menghubungkan
Managemnt Protocol) secara standar dibutuhkan 2 ip
a. UDP 162 dalam range network yang sama(2
b. TCP 25 host),dan /32 & 31 tidak memiliki
c. UDP 161 ip host, /30 memiliki 2 host, /29
d. TCP 161 memiliki 6 host (/30 merupakan
e. TCP 123 yang paling pas dan tidak mubazir)
f. TCP 162
8. Which of the following is NOT a valid
4. Which ones of the following are valid MAC Address?
IP addresses? a. 88:0C:00:99:5F:EF
a. 192.168.13.255 b. 95:B5:DD:EE:78:8A
b. 192.168.256.1 c. 13:16:86:53:89:43
c. 10.10.14.0 d. EA:BA:AA:EE:FF:CB
d. 1.27.14.254 e. 80:GF:AA:67:13:5D
Penjelasan : selain 192.168.256.1 Penjelasan : untuk mac address
merupakan ip yang valid, karena ditulis dgn angka 0-9 dan huruf A-F
dalam ip angka 256 tidak maka dari itu, 80:GF:AA:67:13:5D
digunakan(ada) tidak termasuk karena ada huruf
“G”
5. Choose all valid hosts address range
for subnet 15.242.55.62/27 9. A network ready device is directly
a. 15.242.55.33-15.242.55.63 connected to a MikroTik
b. 15.242.55.32-15.242.55.63 RouterBOARD 750 with a correct
c. 15.242.55.33-15.242.55.62 U.T.P. RJ45 functioning cable. The
d. 15.242.55.31-15.242.55.62 device is configured with an IPv4
Penjelasan : karena /27 memiliki address of 192.168.100.70 using a
32 ip maka range nya dicari dengan subnet mask of 255.255.255.252.
melihat kelipatannya dan yang What will be a valid IPv4 address for
sesuai adalah 32-63 akan tetapi the RouterBOARD 750 for a successful
angka 32 dan 63 tidak bisa dipakai connection to the device?
karena mereka adalah ip network a. 192.168.100.70/255.255.255.252
dan broadcast, maka ip host yang b. 192.168.100.69/255.255.255.2
valid pada soal diatas adalah,33-62 52
c. 192.168.100.68/255.255.255.252
6. How many IP addresses can one find in d. 192.168.100.71/255.255.255.252
the header of an IP packet? Penjelasan : range dlm soal diatas
a. 2 adalah 68-71 maka, ip 68 & 71 tidak
b. 3 bisa dipakai karena mereka ip
c. 1 network dan broadcast, dan jika
d. 4 kita memasang ip host 70 akan
overlap, jadi ip host yang bisa
7. In MikroTik RouterOS, Layer-3 dipakai adalah 69
communication between 2 hosts can
be achieved by using an address 10. You have a router with configuration
subnet of: Public IP :202.168.125.45/24
Default b. The last address of the subnet
gateway:202.168.125.1 c. The first address of the subnet
DNS server: 248.115.148.136,
248.115.148.137 14. What is term for the hardware coded
Local IP: 192.168.2.1/24 address found on an interface?
Mark the correct configuration on a. FQDN Address
client PC to access to the Internet b. Interface Address
a. IP:192.168.2.253/24 c. MAC Address
gateway:202.168.0.1 d. IP Address
b. IP:192.168.2.115/24 gateway: Penjelasan : karena mac address
192.168.2.1 memang sudah tertanam didlm
c. IP:192.168.2.2/24 interface sedangkan ip adlh
gateway:202.168.125.45 pengalamatan secara logical
d. IP:192.168.1.223/24
gateway:248.115.148.136 15. A PC with IP 192.168.1.2 can access
e. IP:192.168.0.1/24 internet, and static ARP has been set
gateway:192.168.2.1 for that IP address on gateway. When
Penjelasan : ip laptop harus satu the PC Ethernet card failed, the user
network dengan gateway nya, an change it with a new card and set the
gatewaynya adalah ip router same IP for it. What else should be
tersebut (sesuai dengan soal) done?
a. Old static ARP entry on gateway
11. Collisions are possible in full-duplex has to be updated for the new
Ethernet networks card
False b. Nothing - it will work as before
Penjelasan : karena mempunyai c. Another IP has to be added for
dua jalur makanya tidak terjadi Internet access
tabrakan sedangkan half duplex d. MAC-address of the new card has
mempunyai satu jalur yang bisa to be changed to MAC address of
transfer dan terjadi tabrakan old card
Penjelasan : karena kalo tidak
12. Which of the following IP addresses diganti ia akan bekerja
are publicly routable? menggunakan mac address dari
a. 127.34.155.3 Ethernet card yang lama maka dari
b. 172.16.13.23 itu kita perlu untuk meng update
c. 192.168.1.4 settingannnya
d. 11.3.10.4
Penjelasan : Dalam IPv4 ada 3 non- 16. If ARP=reply-only is enabled on one
routable rentang IP yang disebut router interface, router can add
reserved. Berikut ipnya dynamic ARP entries for the particular
kelas A 10.0.0.0/8 interface.
kelas B 172.16.0.0/12 True
kelas C 192.168.0.0/16 False
kelas E dicadangkan untuk
240.0.0.0 penelitian. berarti selain 17. How many layers does Open Systems
itu adalah routable Interconnection model have?
a. 9
13. The network address is b. 5
a. The first usable address of the c. 12
subnet d. 7
e. 6 Penjelasan : 20-bit memilliki 4096
Penjelasan : berikut yang ip lalu dikurang 2 untuk ip network
merupakan osi layer= physical, data dan broadcast makanya
link, network, transport, session, jawabannya 4094
presentation, application
22. How many usable IP addresses are
18. Select which of the following are there in a 23-bit (255.255.254.0)
'Public IP addresses': subnet?
a. 172.28.73.21 a. 254
b. 10.110.50.37 b. 508
c. 11.63.72.21 c. 512
d. 192.168.0.1 d. 510
e. 172.168.254.2 Penjelasan : 23-bit memilliki 512 ip
Penjelasan : ip public itu selain= lalu dikurang 2 untuk ip network
192.168.0.0-192.168.255.255 dan dan broadcast makanya
10.0.0.0-10.255.255.255, dan jawabannya 510
172.16.0.0-172.31.255.255
23. If ARP=reply-only is configured on an
19. Select valid MAC-address interface, what will this interface do?
a. 192.168.0.0/16 a. Accept all IP addresses listed in /ip
b. 00:00:5E:80:EE:B0 arp as static entries
c. AEC8:21F1:AA44:54FF:1111:DDA b. Accept all MAC-addresses listed in
E:0212:1201 /ip arp as static entries
d. G2:60:CF:21:99:H0 c. Add new MAC addresses in /ip arp
Penjelasan : karena pilihan list
pertama adalah ip address, Pilihan d. Add new IP addresses in /ip arp
ketiga mac address yang salah, list
Pilihan keempat ada huruf “G”, dan e. Accept all IP/MAC combinations
pilihan kedua adalah paling sesuai listed in /ip arp as static entries
Penjelasan : mode ini hanya
20. How many usable IP addresses are menerima yang ip dan mac
there in a 23-bit (255.255.254.0) addressnya sama
subnet?
a. 254 24. Which of the following protocols / port
b. 512 s are used for SNMP. (Simple Network
c. 508 Managemnt Protocol)
d. 510 a. UDP 162
Penjelasan : 23-bit memilliki 512 ip b. TCP 123
lalu dikurang 2 untuk ip network c. TCP 161
dan broadcast makanya d. CP 25
jawabannya 510 e. UDP 161
f. TCP 162
21. How many usable IP addresses are
there in a 20-bit subnet? 25. Which of the following is NOT a valid
a. 2047 MAC Address?
b. 4096 a. 95:B5:DD:EE:78:8A
c. 2048 b. 13:16:86:53:89:43
d. 2046 c. 80:GF:AA:67:13:5D
e. 4094 d. 88:0C:00:99:5F:EF
e. EA:BA:AA:EE:FF:CB
Penjelasan : untuk mac address gatewaynya adalah ip router
ditulis dgn angka 0-9 dan huruf A-F tersebut (sesuai dengan soal )
maka dari itu, 80:GF:AA:67:13:5D
tidak termasuk karena ada huruf 28. If ARP=reply-only is enabled on one
“G” router interface, router can add
dynamic ARP entries for the particular
26. A network ready device is directly interface.
connected to a MikroTik False
RouterBOARD 750 with a correct True
U.T.P. RJ45 functioning cable. The
device is configured with an IPv4 29. What is term for the hardware coded
address of 192.168.100.70 using a address found on an interface?
subnet mask of 255.255.255.252. a. FQDN Address
What will be a valid IPv4 address for b. Interface Address
the RouterBOARD 750 for a successful c. MAC Address
connection to the device? d. IP Address
a. 192.168.100.70/255.255.255.252 Penjelasan : karena mac address
b. 192.168.100.69/255.255.255.2 memang sudah tertanam didlm
52 interface sedangkan ip adlh
c. 192.168.100.71/255.255.255.252 pengalamatan secaralogis
d. 192.168.100.68/255.255.255.252
Penjelasan : range dlm soal diatas 30. Which ones of the following are valid
adalah 68-71 maka, ip 68 & 71 tidak IP addresses?
bisa dipakai karena mereka ip a. 10.10.14.0
network dan broadcast, dan jika b. 1.27.14.254
kita memasang ip host 70 akan c. 192.168.13.255
overlap, jadi ip host yang bisa d. 192.168.256.1
dipakai adalah 69
31. What protocol does ping use?
27. You have a router with configuration a. UDP
Public IP :202.168.125.45/24 b. ICMP
Default c. TCP
gateway:202.168.125.1 d. ARP
DNS server: 248.115.148.136, Penjelasan : udp digunakan untuk
248.115.148.137 snmp, Icmp untuk ping, tcp untuk ip,
Local IP: 192.168.2.1/24 arp untuk mencatat mac address
Mark the correct configuration on
client PC to access to the Internet 32. Which computers would be able to
a. IP:192.168.1.223/24 communicate directly (without any
gateway:248.115.148.136 routers involved)
b. IP:192.168.2.2/24 a. 192.168.0.5/26 and 192.168.0.100
gateway:202.168.125.45 b. 192.168.17.15/29 and
c. IP:192.168.0.1/24 192.168.17.20/28
gateway:192.168.2.1 c. 10.5.5.1/24 and 10.5.5.100/25
d. IP:192.168.2.253/24 d. 10.10.0.17/22 and
gateway:202.168.0.1 10.10.1.30/23
e. IP:192.168.2.115/24 gateway: Penjelasan : karena salah satu
192.168.2.1 range dari kedua ip itu harus
Penjelasan : ip laptop harus satu mencakup yang lainnya
network dengan gateway nya, an
33. A PC with IP 192.168.1.2 can access tabrakan sedangkan half duplex
internet, and static ARP has been set mempunyai satu jalur yang bisa
for that IP address on gateway. When transfer dan terjadi tabrakan
the PC Ethernet card failed, the user
change it with a new card and set the 37. How many layers does Open Systems
same IP for it. What else should be Interconnection model have?
done? a. 9
a. Old static ARP entry on gateway b. 6
has to be updated for the new c. 5
card d. 12
b. MAC-address of the new card has e. 7
to be changed to MAC address of Penjelasan : berikut yang
old card merupakan osi laye r= physical,
c. Another IP has to be added for data link, network, transport,
Internet access session, presentation, application
d. Nothing - it will work as before
Penjelasan : karena kalo tidak 38. Which of the following IP addresses
diganti ia akan bekerja are publicly routable?
menggunakan mac address dari a. 127.34.155.3
Ethernet card yang lama maka dari b. 192.168.1.4
itu kita perlu untuk meng update c. 11.3.10.4
settingannnya d. 172.16.13.23
34. The network address is 39. The basic unit of a physical network
a. The last address of the subnet (OSI Layer 1) is the:
b. The first address of the subnet a. Byte
c. The first usable address of the b. Header
subnet c. Frame
d. Bit
35. In MikroTik RouterOS, Layer-3 Penjelasan : frame merupakan
communication between 2 hosts can “amplop’ yang berisikan informasi
be achieved by using an address data, byte adalah kumpulan dari bit,
subnet of: header adalah , bit adalah
a. /32 merupakan singkatan dari biner
b. /29 digit yang digunakan sebagai basic
c. /30 layer 1 (sesuai dengan soal)
d. /31
Penjelasan : utk menghubungkan 40. Choose all valid hosts address range
secara standar dibutuhkan 2 ip for subnet 15.242.55.62/27
dalam range network yang sama(2 a. 15.242.55.32-15.242.55.63
host),dan /32 & 31 tidak memiliki b. 15.242.55.33-15.242.55.62
ip host, /30 memiliki 2 host, /29 c. 15.242.55.33-15.242.55.63
memiliki 6 host (/30 merupakan d. 15.242.55.31-15.242.55.62
yang paling pas dan tidak mubazir) Penjelasan : karena /27 memiliki
32 ip maka range nya dicari dengan
36. Collisions are possible in full-duplex melihat kelipatannya dan yang
Ethernet networks sesuai adalah 32-63 akan tetapi
False angka 32 dan 63 tidak bisa dipakai
Penjelasan : karena mempunyai karena mereka adalah ip network
dua jalur makanya tidak terjadi
dan broadcast, maka ip host yang Penjelasan : A salah karena reset
valid pada soal diatas adalah,33-62 tidak mungkin hanya
menghilangkan password saja, dan
41. What does the firewall action b juga. Untuk c dan d karena fungsi
"Redirect" do? Select all true netinstall adalah upgrade dan
statements. downgrade, dan juga menginstall
a. Redirects a packet to a specified ulang tanpa menghilangkan lisensi
port on the router
b. Redirects a packet to the router 46. If ARP=reply-only is configured on an
c. Redirects a packet to a specified IP interface, what will this interface do
d. Redirects a packet to a specified a. Accept all IP addresses listed in /ip
port on a host in the network arp as static entries
b. Add new MAC addresses in /ip arp
42. What is necessary for PPPoE client list
configuration? c. Accept all IP/MAC combinations
a. ip firewall nat masquerade rule listed in /ip arp as static entries
b. Interface (on which PPPoE d. Add new IP addresses in /ip arp
client is going to work) list
c. Static IP address on PPPoE client e. Accept all MAC-addresses listed in
interface /ip arp as static entries
Penjelasan : untuk pppoe dipasang Penjelasan : mode ini hanya
pada interface yang digunakan oleh menerima yang ip dan mac
si client bukan di firewall maupun addressnya sama
ip address
47. The highest queue priority is
43. MikroTik RouterOS commands can be a. 16
run once a day by: b. 1
a. /system cron c. 256
b. /system watchdog d. 8
c. /system scheduler
Penjelasan : scheduler itu tugasnya 48. Is it possible to limit how many clients
untuk menjadwal kapan settingan are able to connect to an access point?
itu terjadi a. No it's not possible at all
b. Yes
44. It is possible to use WPA and WPA2 c. Yes, but only with access-lists
authentication type at the same time Penjelasan : kita bisa
with one security profile. membatasinya client yang
TRUE mengakses sebuah router dengan
access list jadi yang device nya
45. Netinstall can be used to tercantum di rule access list ia tidak
a. Keep configuration, but reset a lost akan bisa mengakses router
admin password tersebut
b. Install package for different
hardware architecture 49. Which of the following Routes statuses
c. Install different software are possible?
version (upgrade or a. S = Static
downgrade) b. C = Connected
d. Reinstall software without c. D = Drop
losing licence d. A = Active
Penjelasan : semua merupakan
status route kecuali DROP , drop itu 54. Consider the following diagram. We
action dari firewall want to communicate from a device on
LAN1 to a device on LAN2. Assuming
50. Wireless clients (mode=station) will that all necessary configurations are
work properly if bridged to ethernet already included on R2, which of the
fALSE following configurations in R1 would
Penjelasan : untuk bekerja dengan enable this communication?
baik tidak mesti menggunakan a. /ip route add dst-
bridge, kecuali stasion-bridge address=192.168.1.0/24 src-
address=192.168.0.0/24
51. For static routing functionality, gateway=192.168.99.2
additionally to the RouterOS 'system' b. /ip route add dst-
package, you will also need the address=192.168.1.0/24
following software package: gateway=192.168.99.2
a. Dhcp c. /ip route add dst-
b. no extra package required address=0.0.0.0/0
c. routing gateway=192.168.99.2
d. advanced-tools d. /ip route add dst-
Penjelasan : jika hanya static address=0.0.0.0/0
routing tidak perlu memerlukan gateway=Ether1
paket tambahan kecuali untuk e. /ip route add dst-
dynamic seperti ospf dan bgp address=192.168.0.0/24
gateway=192.168.0.1
52. Simple Queue number 0 defines 2M for
upload and download for target IP 55. You have to connect to a RouterBOARD
10.10.0.33. Simple Queue number 1 without any previous configuration.
defines 4M for upload and download Select all possibilities to connect and
for target IP 10.10.0.33. Client do some basic configuration
10.10.0.33 is be able to obtain a. Serial Connection
a. 2M upload/download b. MAC-Winbox
b. 4M upload/download c. Attach monitor/keyboard
c. 0M upload/download d. Telnet
d. 6M upload/download Penjelasan : untuk jawaban diatas
Penjelasan : mikrotik memprosses bisa masuk menggunakan ip default
data itu sesuai dengan urutan yang
pertama kali dibuat 56. PPP Secrets are used for
a. L2TP clients
53. For user in local ppp secrets/ppp b. PPP clients
profiles database, it is possible to c. IPSec clients
a. Allow only pppoe login d. Router users
b. Deny services (like telnet) only for e. PPtP clients
this user or for one group of users f. PPPoE client
c. Set max values for total penjelasan : karena router users
transferred bytes (up- and berbeda dengan ppp secret
download)
d. Allow/deny use of more than 57. Firewall NAT rules process only the
one login by this user first packet of each connection.
e. Allow login by pppoe and pptp, but (FALSE)
deny login by l2tp
penjelasan : karena rule ini /ip route add dst-
memprosses seluruh paket address=192.168.2.0/24
gateway=192.168.0.3
58. Using wireless connect-list it’s /ip route add dst-
possible to prioritize connection to address=192.168.3.0/24
one Access Point over another Access gateway=192.168.0.4
Point by changing the order of the Router needs to send packets to
entries. 192.168.3.240. Which gateway will be
(TRUE) used?
penjelasan : Menggunakan connect- a. 192.168.0.2
list nirkabel itu mungkin untuk b. 192.168.0.1
memprioritaskan koneksi ke salah c. 192.168.0.4
satu Access Point di atas yang lain d. 192.168.0.3
Access Point dengan mengubah penjelasan : karena ip 192.168.0.4
urutan entri merupakan gateway network
192.168.3.0 sedangkan 192.168.0.
59. What is possible with Netinstall? 2 dan 3 mereka menuju network
a. MikroTik RouterOS reinstall yang lain
b. MikroTik RouterOS
configuration reset 63. PPPoE server only works within one
c. MikroTik RouterOS password Ethernet broadcast domain that it is
reset with saving router's connected to. If there is a router
configuration between server and end-user host, it
will not be able to create PPPoE tunnel
60. Mark possible TCP states in the to that PPPoE server.
connection tracking table FALSE
a. New
b. Syn 64. To use masquerade, you need to
c. Related specify
d. Invalid a. action=masquerade, out-
e. Established interface, chain=src-nat
f. Closed b. action=masquerade, out-interface,
Penjelasan : semua jawaban diatas chain=dst-nat
merupakan connection tracking c. action=masquerade, in-interface,
chain=src-nat
61. Mark correct statements. d. action=accept, out-interface,
a. Export files are not editable chain=src-nat
b. Backup files are not editable Penjelasan : jawaban diatas adlah
c. Backup files are editable langkah untuk membuat nat
Penjelasan : untuk backup dia tidak
bisa diedit sedangkan export bisa 65. You want to use PCQ and allow 256k
diedit di notepad maximum download and upload for
each client. Choose correct argument
62. /ip route configuration on router, values for the required queue.
/ip route add gateway=192.168.0.1 a. kind=pcq pcq-rate=1256000 pcq-
/ip route add dst- classifier=dst-address
address=192.168.1.0/24 b. kind=pcq pcq-rate=5000000 pcq-
gateway=192.168.0.2 classifier=dst-address
c. kind=pcq pcq-rate=5000000 pcq-
classifier=src-address
d. kind=pcq pcq-rate=256000 pcq- 68. How long is level 1 (demo) license
classifier=src-address valid?
e. kind=pcq pcq-rate=256000 pcq- a. 24 hours
classifier=dst-address b. Infinite time
c. 1 month
66. We have two radio cards in a point-to- d. 1 year
point link with settings: Penjelasan : demo hanya bisa
Card Nr 1: mode ap-bridge memberikan 1 hari saja
ssid=”office”
ftequency=244l band=24ghz-Wg 69. For static routing functionality,
default-authentication=yes default- additionally to the RouterOS system
forwarding=yes security-profile=wpa package. you will also need the
Card Nr2.: mode=station ssid’office” following software package:
frequency24l2 band=2.4ghz-b/g a. None
default-authentication=yes default- b. Dhcp
forwarding=yes security- c. routing
profile=wpa2 d. advanced-tools
Is Card Nrl able to connect to Card Nr Penjelasan : untuk static route tidak
1.? diperluka paket apapun
a. Yes, if Nstreme is enabled or
disabled on both 70. Router A and B are both running as
b. Yes, when security profile settings PPPoE servers on different broadcast
are compatible with each other domains of your network Is it possible
and Nstreme is enabled or to set Router A to use 7ppp secret
disabled on both accounts from Router B to
c. No. because of the different authenticate PPPoE customers?
frequencies True
d. No. because of the different False
security profiles
Penjelasan : karena security profile 71. When backing up your router by using
milik stasion mesti sama dengan AP the Exporf command, the following
dan jika tidak ototmatis ia tidak happens:
akan tersambung a. Win box usernames and
passwords are backed up
67. You want to use PCQ and allow 256k b. The Export file can be edited
maximum download and upload for with a standard text editor after
each client Choose correct argument its creation
values for the required queue c. You are requested to give the
a. A. kindpcq pcq-1imit=1256000 export file a name
pcq-classifierdst-address Penjelasan : ketika kita membuat
b. kind=pcqpcq-limit=256000 pcq- export file, kita akan diminta untuk
classifierdst-address memasukan nama file tersebut, bisa
c. kind=pcqpcq-limit=5000000 pcq- juga lebih spesifik lagi, dan kita bisa
classifiersrc-address mengedit nya di notepad
d. kind=pcqpcq-limit=256000
pcq-classifiersrc-address 72. What is possible with Netinstall?
e. kind=pcqpcq-limit=5000000 pcq- a. MikroTikRouterOS install
classifierdst-address = queques b. MikroTikRouterOS reinstall
type c. MikroTikRouterOS
configuration reset
d. MikroTikRouterOS password reset d. Bridging a device in station mode
with saving routers configuration with a device in ap.bridge mode
73. How long is level 1 (demo) license 78. Is ARP used in the IPv6 protocol?
valid? True
a. 24 hours False
b. Infinite time Penjelasan : karena arp digunakan
c. 1 month pada ipv4
d. 1 year
Penjelasan ; demo memiliki batas 79. What is the default TTL (time to live)
waktu 24 jam, yang selamanya itu on a router that an IP packet can
level 4,5,6 experience before it will be discarded?
a. 6O
74. Action redirect allows you to make b. 30
a. Transparent DNS Cache c. 1
b. Forward DNS to another device IP d. 64
address
c. Enable Local Service 80. How many usable P addresses are
d. Transparent HTTP Proxy there in a 20-bit subnet?
a. 2047
75. How many usable IP addresses are b. 4096
there in a 23-bit (255.255.254.0) c. 2048
subnet? d. 2046
a. 254 e. 4094
b. 510
c. 512 81. Is it possible to have PPTP Client and
d. 508 PPTP server on one MikroTik router at
the same time?
76. MikroTikRouterOS DHCP client can true
receive following options: false
a. Byte limit
b. IP Gateway 82. Router A and B are both running as
c. Rate limit PPPoE servers on different broadcast
d. Uptime limit domains of your network Is it possible
e. IP Address and Subnet to set Router A to use ‘/ppp secret”
Penjelasan : ketika seseorang accounts from Router B to
menerima dhcp maka ia akan authenticate PPPoE customers?
menerima ip dan subnetnya, batas True
waktu dan kecepatan yang ia bisa False
gunakan
83. You have a router with configuration
77. Mark all features that are compatible Public IP :20216&12545/24
with Nstreme Default gateway:2O2 168 125 1
a. WOS between a devce in station- DNS server: 248115.14&136. 248
wds mode and a dece in station- 115i48i37
wds mode Local IP: 192.168.2.1/24
b. Encryption Mark the correct configuration on
c. WDS between a device in ap- client PC to access to the Internet
bridge mode with a device in a. IP:192.168.0.1/24
station-wds mode gateway:192.168.2.1
b. IP:192.168.2.253/24 d. 192.168.256.1
gateway:202.168.0.1
c. IP:192.168.1.223/24 89. MikroTikRouterOS DHCP client can
gateway:248115148136 receive following options
d. IP:192.168.2.115/24 gateway: a. Byte limit
192.168.2.1 b. IP Gateway
e. IP: 192.168.2.2/24 c. Rate limit
gateway:202.168.126.45 d. Uptime limit
e. lP and Subnet Address
84. Mark the queue types that are
available in RouterOS 90. Router A and B are both running as
a. FIFO - First In First Out (for Bytes PPPoE servers on different broadcast
or for Packets) domains of your network. Is it possible
b. SFQ — Stochastic Fairness to set Router A to use “/ppp secret”
Queuing accounts from Router B to
c. DRR - Deficit Round Robin authenticate PPPoEcustomers ?
d. RED — Random Early Detect (or a. True
Drop) b. False
e. PCQ — Per Connection Queuing
f. LIFO - Last In First Out = quques 91. Is it possible for a client to get an IP
type address but no gateway after a
successful DHCP request?
85. What protocol is used for Ping and a. true
Trace route b. false
a. DHCP
b. IP 92. What protocol is used for Ping and
c. TCP Trace route?
d. ICMP a. UDP
e. UDP b. ICMP
c. IP
86. You have 802.llb/g wireless card What d. TCP
frequencies are available to you? e. DHCP
a. 5800MHz
b. 2412MHz 93. Which default route will be active?
c. 5210MHz /iproute
d. 2422MHz add disabled=no distance=l0dst-
e. 2327MHz address=0.0.0.0/0 gateway1.1.1.1
add disabled=no distance=5 dst-
87. How many IP addresses can one find in address=0.0.0.0/0 gateway2.2.2.2
the header of an P packet? a. Routeviagateway 1.1.1.1
a. 3 b. Route via gateway 2.2.2.2
b. 4
c. 1 94. Action=redirect is applied in:
d. 2 a. Chainsrcnat
b. Chaindstnat
88. Which ones of the following are valid c. Chaimforward
IP addresses? d. chainoutput
a. 10.10.14.0
b. 192.168.13.255
c. 127.142.6.4
95. Connection state in MikroTikRouterOS d. wlan 1
is the same thing as TCP state Penjelasan : karena ether 2 dan 3
elsewhere? sudah di bridge pada interface
a. True bridge 1
b. false
100. A PC with IP 192.168.1.2 can access
96. What is term for the hardware coded internet, and static ARP has been set
address found on an interface? for that IP address on gateway. When
a. P Address the PC Ethernet card failed, the user
b. Interface Address change it with a new card and set the
c. MAC Address same IP for it. What else should be
d. FQDN Address done
Penjelasan : karena mac address a. Old static ARP entry on
memang sudah tertanam didlm gateway has to be updated for
interface sedangkan ip adlh the new card
pengalamatan secara logical b. Nothing - it will work as before
c. Another IP has to be added for
97. You have a 80211b/g wireless cardS Internet access
Which frequencies can be set? d. MAC-address of the new card has
a. 5210MHz to be changed to MAC address of
b. 2327MHz old card
c. 2422MHz Penjelasan : =karena kalo tidak
d. 2412MHz diganti ia akan bekerja
e. 5800MHz menggunakan mac address dari
Ethernet card yang lama maka
98. Which is correct masquerade rule for dari itu kita perlu untuk meng
192.168.0.0/24 network on the router update settingannnya
with outgoing interface etherl?
a. lip firewall nat add action 101. Which of the following IP addresses
masquerade chain srcnat are publicly routable?
b. /ip firewall nat add action a. 127.341.553
masquerade chain srcnat src- b. 192.168.1.4
address l92.168.0.O/24 c. 172.16.132.3
c. /ipfirewallnat add d. 11.3.10.4
actionmasquerade out- Penjelasan : Dalam IPv4 ada 3 non-
interlaceetherlchaindstnat routable rentang IP yang disebut
d. /ip firewall nat add reserved. Berikut ipnya
action=masquerade kelas A 10.0.0.0/8
chain=srcnat out- kelas B 172.16.0.0/12
interface=ether1 kelas C 192.168.0.0/16
kelas E dicadangkan untuk
99. Hotspot is required on the interfaces 240.0.0.0 penelitian
ether2, ehter3. wiani (in ap-bridge berarti selain itu adalah routable
mode) These interfaces are bridged in
the bridge 1 interface. Which interface 102. You need to reboot a RouterBoard
should the Hotspot server be after importing a previously exported
configured on? rsc file to activate the new
a. ether2 configuration
b. ether3 a. Yes
c. bridge 1 b. No
Penjelasan : Karena jika import file b. kind=pcq pcq-limit=256000
tidak harus direboot dulu, akan pcq-classifier=dst-address
tetapi jika kita ingin mendisable c. kind=pcq pcq-limit=5000000 pcq-
paket atau men-enable nya mka kita classifier=src-address
perlu me reboot stlh nya d. kind=pcq pcq-limit=256000
pcq-classifier=src-address
VERSI 5 e. kind=pcq pcq-limit=5000000 pcq-
1. You have a router with configuration classifier=dst-address
Public IP :202.168.125.45/24
Default 5. Which of the following is true for
gateway:202.168.125.1 connection tracking
DNS server: 248.115.148.136, a. Enabling connection tracking
248.115.148.137 reduces CPU usage in RouterOS
Local IP: 192.168.2.1/24 b. Connection tracking must be
Mark the correct configuration on enabled for firewall to be
client PC to access to the Internet effective
a. IP:192.168.0.1/24 c. Connection tracking must be
gateway:192.168.2.1 enable for NAT’ed network
b. IP:192.168.2.253/24 d. Disable connection tracking for
gateway:202.168.0.1 mangle to work
c. IP:192.168.1.223/24
gateway:248.115.148.136 6. Which of these are possible solutions
d. IP:192.168.2.115/24 gateway: to bridge two networks over a wireless
192.168.2.1 link:
e. IP:192.168.2.2/24 a. Both devices in AP mode and
gateway:202.168.125.45 enable WDS mode
b. One device in AP mode, another
2. On the advanced menu of the wireless one in station-pseudobridge-clone
setup there is a parameter called c. One device in AP mode, another
“Area”, it works directly with: one in station-pseudobridge
a. Connect List d. One device in AP mode, another
b. Access List one in station
c. None of these
d. Security Profile 7. When backing up your router by using
the ‘Export’ command, the following
3. What menus should be used to allow happens:
certain websites to be accessed from a. Winbox usernames and passwords
behind a hotspot interface, without are backed up
client authentication b. The Export file can be edited
a. ip hotspot ip-binding with a standard text editor after
b. ip hotspot profile its creation
c. ip hotspot walled-garden c. You are requested to give the
d. ip hotspot walled-garden ip export file a name
4. You want to use PCQ and allow 256k 8. You need to reboot a RouterBoard
maximum download and upload for after importing a previously exported
each client. Choose correct argument rsc file to activate the new
values for the required queue. configuration.
a. kind=pcq pcq-limit=1256000 pcq- False
classifier=dst-address
9. It is impossible to disable user “admin” 13. Consider the following network
at the menu “/user” diagram. In R1, you have the following
False configuration:
/ip route
10. If a packet comes to a router and starts add dst-address=192.168.1.0/24
a new, previously unseen connection, gateway=192.168.99.2
which connection state /ip firewall nat
a. no connection state would be add chain=srcnat out-
applied to such packet interface=Ether1 action=masquerade
b. new On R2, if you wish to prevent all
c. unknown access to a server located at
d. invalid 192.168.1.10 from LAN1 devices,
e. established which of the following rules would be
needed?
11. We have two radio cards in a point-to- a. /ip firewall filter add
point link with settings: chain=forward src-
Card Nr 1.: mode=ap-bridge address=192.168.99.1 dst-
ssid=”office” address=192.168.1.10
frequency=2447 band=2.4ghz-b/g action=drop
default-authentication=yes default- b. /ip firewall filter add chain=input
forwarding=yes security-profile=wpa src-address=192.168.99.1 dst-
Card Nr 2.: mode=station ssid=”office” address=192.168.1.10
frequency=2412 band=2.4ghz-b/g action=drop
default-authentication=yes default- c. /ip firewall nat add chain=dstnat
forwarding=yes security- src-address=192.168.99.1 dst-
profile=wpa2 address=192.168.1.10
Is Card Nr2. able to connect to Card Nr action=drop
1.? d. /ip firewall filter add
a. Yes, if Nstreme is enabled or chain=forward src-
disabled on both address=192.168.0.0/24 dst-
b. Yes, when security profile settings address=192.168.1.10
are compatible with each other action=drop
and Nstreme is enabled or disabled
on both 14. What is the default protocol/port of
c. No, because of the different (secure) winbox?
frequencies a. UDP/5678
d. No, because of the different b. TCP/8291
security profiles c. TCP/22
d. TCP/8080
12. If you need to make sure that one
computer in your HotSpot network can 15. Mark the queue types that are
access the Internet without HotSpot available in RouterOS
authentication, which menu allows a. SFQ – Stochastic Fairness
you to do this? Queuing
a. Walled-garden IP b. DRR – Deficit Round Robin
b. Walled-garden c. FIFO – First In First Out (for
c. Users Bytes or for Packets)
d. IP bindings d. LIFO – Last In First Out
e. PCQ – Per Connection Queuing
f. RED – Random Early Detect (or dynamic ARP entries for the particular
Drop) interface.
False
16. A network ready device is directly
connected to a MikroTik 22. MAC layer by OSI model is also known
RouterBOARD 750 with a correct as
U.T.P. RJ45 functioning cable. The a. Layer 3
device is configured with an IPv4 b. Layer 7
address of 192.168.100.70 using a c. Layer 1
subnet mask of 255.255.255.252. d. Layer 2
What will be a valid IPv4 address for e. Layer 6
the RouterBOARD 750 for a successful
connection to the device? 23. Select valid MAC-address
a. 192.168.100.70/255.255.255.252 a. G2:60:CF:21:99:H0
b. 192.168.100.69/255.255.255.2 b. 00:00:5E:80:EE:B0
52 c. AEC8:21F1:AA44:54FF:1111:DDA
c. 192.168.100.71/255.255.255.252 E:0212:1201
d. 192.168.100.68/255.255.255.252 d. 192.168.0.0/16
17. How many usable IP addresses are 24. Which computers would be able to
there in a 23-bit (255.255.254.0) communicate directly (without any
subnet? routers involved)
a. 512 a. 192.168.17.15/29 and
b. 510 192.168.17.20/28
c. 508 b. 192.168.0.5/26 and
d. 254 192.168.0.100
c. 10.5.5.1/24 and 10.5.5.100/25
18. Is ARP used in the IPv6 protocol ? d. 10.10.0.17/22 and 10.10.1.30/2
False
VERSI 6
19. Which of the following protocols / port 1. Choose correct statements for
s are used for SNMP. (Simple Network MikroTik proxy.
Managemnt Protocol) a. Destination NAT rule is required to
a. TCP 162 utilize transparent proxy facility
b. UDP 162 b. To deny access to a specific
c. UDP 161 website, caching should be
d. TCP 25 enabled
e. TCP 123 c. Controls domains or servers which
f. TCP 161 are allowed to cache by Proxy
d. Can deny access to a specific
20. Select which of the following are domains or servers, but not
‘Public IP addresses’: specific web pages
a. 192.168.0.1
b. 172.168.254.2 2. Collisions are possible in full-duplex
c. 172.28.73.21 Ethernet networks
d. 10.110.50.37 False
e. 11.63.72.21
3. Which of the following is NOT a valid
21. If ARP=reply-only is enabled on one MAC Address?
router interface, router can add a. 13:16:86:53:89:43
b. 80:GF:AA:67:13:5D 10. What kind of users are listed in the
c. 88:0C:00:99:5F:EF "/user" menu?
d. EA:BA:AA:EE:FF:CB a. pptp users
e. 95:B5:DD:EE:78:8A b. wireless users
c. hotspot users
4. The default value of 'target-scope' for a d. router users
static route is:
a. 30 11. Which is correct masquerade rule for
b. 1 192.168.0.0/24 network on the router
c. 10 with outgoing interface=ether1?
d. 255 a. /ip firewall nat add
action=masquerade chain=srcnat
5. Which firewall chain would be used to out-interface=ether1
block a client's MSN traffic on a router? b. /ip firewall nat add
a. Output action=masquerade chain=srcnat
b. Static src-address=192.168.0.0/24
c. input c. /ip firewall nat add
d. forward action=masquerade out-
interface=ether1 chain=dstnat
6. Please select valid scan-list values in d. /ip firewall nat add
interface wireless configuration: action=masquerade chain=srcnat
a. 5540,5560,5620+5700
b. 5560,5620-5700 12. Which firewall chain should you use to
c. 5640~5680 filter ICMP packets from the router
d. default,5560,5600,5660-5700 itself?
a. Input
7. You want to limit bandwidth for your b. Forward
HotSpot users. HotSpot can create c. Postrouting
dynamic queues on user login to do the d. output
speed limitations.
a. Yes/ True 13. Which software version can be
b. No/ False installed onto the following
RouterBoard types?
8. For static routing functionality, a. routeros-mipsbe-x.xx.npk on a
additionally to the RouterOS system RB433
package, you will also need the b. routeros-powerpc-x.xx.npk on a
following software package: RB333
a. Dhcp c. routeros-mipsle-x.xx.npk on
b. None RB133
c. advanced-tools d. routeros-x86-x.xx.npk on a
d. routing RB1100
e. routeros-mipsbe-x.xx.npk on a
9. You start a scan for wireless networks RB133
on you access point. What will happen
? 14. The highest queue priority is
a. All connected clients will a. 16
disconnect b. 8
b. You'll see all connected clients c. 256
c. You'll see available frequencies d. 1
15. Firewall configuration is the following: d. Queue guarantees upload data rate
(1) /ip firewall filter add chain=input of one megabit per second for host
protocol=icmp action=jump 192.168.1.10
jump-target=ICMP
(2) /ip firewall filter add chain=input 18. You have a wireless interface with Se
protocol=icmp action=log log- to use nstreme protocol?
prefix=ICMP-DENY a. Yes, but Nstreme will be used for
(3) /ip firewall filter add chain=input all SSID assigned for that physical
protocol=icmp action=drop interface
(4) /ip firewall filter add chain=ICMP b. Yes, but Nstreme can be used only
protocol=icmp action=log log- for SSID=WLAN1.
prefix=JUMP-ICMP-DENY c. No, Nstreme can not be used on
(5) /ip firewall filter add chain=ICMP wireless interface if a VirtualAP is
protocol=icmp action=drop on it.
Client sends "ping" to router. What will d. Yes, but Nstreme can be used only
the router do? for SSID=VAP1.
a. Router will drop the packet at the
Input drop rule (3rd rule) 19. /store allows you to save to external
b. Router will log it with prefix: disk
JUMP-ICMP-DENY a. User-Manager data
c. Router will drop the packet at b. dude data
ICMP (jump) chain drop rule (5th c. web-proxy data
rule) d. system configuration
d. Router will log it with prefix:
ICMP-DENY 20. /ip route configuration on router,
/ip route add gateway=192.168.0.1
16. MikroTik proxy features are: /ip route add dst-
a. POP3 caching address=192.168.1.0/24
b. DNS name filtering gateway=192.168.0.2
c. SMTP caching /ip route add dst-
d. HTTP caching address=192.168.2.0/24
e. FTP caching gateway=192.168.0.3
/ip route add dst-
17. What does this simple queue do (check address=192.168.3.0/26
the image)? gateway=192.168.0.4
a. Queue limits host 192.168.1.10 Router needs to send packets to
download data rate to one megabit 192.168.3.240. Which gateway will be
per second. used?
b. Queue limits host 192.168.1.10 a. 192.168.0.2
upload data rate to one megabit b. 192.168.0.1
per second. c. 192.168.0.3
c. Queue guarantees download data d. 192.168.0.4
rate of one megabit per second for
host 21. What is the meaning of letter "R" on an
192.16SID="WAN1"mode="ap- active session in the menu PPP Active
bridge" and a VirtualAP with Connections?
SSID="VAP1" on the router. Is it a. Running
possibl8.1.10 b. Radius
c. Remote
22. A station can connect to AP if they both address=192.168.1.0/25
use different country regulation gateway=2.2.2.2
settings, but the frequency chosen is add disabled=no distance=1 dst-
allowed in both countries address=192.168.0.0/16
gateway=3.3.3.3
23. Hotspot ip-binding is used to allow a. Route via gateway 2.2.2.2
access to remote host specifying the IP b. Route via gateway 1.1.1.1
address of the remote host. c. Route via gateway 3.3.3.3
24. Router has Wireless and Ethernet 4. Can you manually add drivers to
client interfaces, all client interfaces RouterOS in case your PCI Ethernet
are bridged. To create a DHCP service card is not recognized, and you suspect
for all clients you must configure DHCP it is a driver issue?
server on a. No
a. every bridge port b. Yes
b. only on bridge interface
c. Ethernet and wireless interfaces 5. What is necessary for PPPoE client
d. DHCP service is not possible in this configuration?
setup a. ip firewall nat masquerade rule
b. Static IP address on PPPoE client
25. EoiP is: interface
a. MikroTik proprietary tunnel c. Interface (on which PPPoE
protocol client is going to work)
b. Layer-3 tunnel
c. Layer-2 tunnel, that can be bridged 6. Mark all correct answers
a. Wireless access-list could allow
VERSI 7 and deny access to your AP
1. You start a scan for wireless networks b. Default-Forwarding could be
on you access point. What will happen enabled for a specific clients by
? wireless access-list
a. All connected clients will c. /ip firewall filter allows to deny
disconnect authentication to AP
b. You'll see all connected clients d. The only way to prevent wireless
c. You'll see available frequencies clients connections - disable
wireless interface
2. Is action=masquerade allowed in
chain=dstnat? 7. You want to limit bandwidth for your
a. No HotSpot users. HotSpot can create
b. Yes dynamic queues on user login to do the
c. yes, but it works only for incoming speed limitations.
connections a. Yes/ True
d. yes, but only if dst-addr is specified b. No/ False
3. Which route will be used to reach host 8. A routing table has following entries:
192.168.1.55? 0 dst-address=10.0.0.0/24
/ip route gateway=10.1.5.126
add disabled=no distance=1 dst- 1 dst-address=10.1.5.0/24
address=192.168.1.0/24 gateway=10.1.1.1
gateway=1.1.1.1 2 dst-address=10.1.0.0/24
add disabled=no distance=1 dst- gateway=25.1.1.1
3 dst-address=10.1.5.0/25 c. TCP
gateway=10.1.1.2 d. UDP
Which gateway will be used for a
packet with destination address 14. Which firewall chain should you use to
10.1.5.126? filter clients HTTP traffic going
a. 25.1.1.1 through the router?
b. 10.1.1.1 a. Prerouting
c. 10.1.1.2 b. Output
d. 10.1.5.126 c. input
d. forward
9. Which is the default port of IP-
Winbox? 15. Connection marks are stored in the
a. TCP 8192 connection tracking table.
b. TCP 8291 a. Yes/ True
c. TCP 80 b. No/ False
d. UDP 8291
16. MikroTik RouterOS commands can be
10. In case when router login password is run once a day by:
lost, it is necessary to reinstall a. /system watchdog
RouterOS or use hardware reset b. /system scheduler
funcion. c. /system cron
a. Yes/ True
b. No/ False 17. What is term for the hardware coded
address found on an interface?
11. On the advanced menu of the wireless a. FQDN Address
setup there is a parameter called b. MAC Address
"Area", it works directly with: c. Interface Address
a. Security Profile d. IP Address
b. Connect List
c. Access List 18. For user in local ppp secrets/ppp
d. None of these profiles database, it is possible to
a. Allow/deny use of more than one
12. Is it possible that the same IP address login by this user
is included in multiple address lists b. Allow only pppoe login
and still be used by these multiple c. Allow login by pppoe and pptp, but
address lists? deny login by l2tp
a. Destination NAT rule is required to d. Deny services (like telnet) only for
utilize transparent proxy facility this user or for one group of users
b. To deny access to a specific e. Set max values for total
website, caching should be transferred bytes (up- and
enabled download)
c. Controls domains or servers which
are allowed to cache by Proxy 19. You have a DHCP server on your
d. Can deny access to a specific MikroTik router. The IP addresses
domains or servers, but not 10.1.2.2-10.2.2.20 are distributed in
specific web pages the DHCP network. Additionally, 3
static IP address are defined for your
13. What protocol does ping use? servers: 10.1.2.31-10.1.2.33. After a
a. ICMP while 20 more IP addresses need to be
b. ARP distributed in the network. Is it
possible to distribute the extra IP each client. Choose correct argument
address without adding another DHCP values for the required queue.
Server? a. kind=pcq pcq-limit=256000
pcq-classifier=src-address
20. You wish to secure your RouterOS b. kind=pcq pcq-limit=1256000 pcq-
system. You do not want the RouterOS classifier=dst-address
to be discoverable using MNDP or CDP c. kind=pcq pcq-limit=5000000 pcq-
locally. You also want to deny classifier=src-address
management via the MAC addresses d. kind=pcq pcq-limit=5000000 pcq-
on all interfaces. Select the correct classifier=dst-address
actions to accomplish this. e. kind=pcq pcq-limit=256000
a. Remove/Disable all interfaces pcq-classifier=dst-address
under mac-server telnet
b. Remove/Disable all discovery 24. To avoid looping on this network, you
interfaces need to
c. Place a proper forward firewall a. Enable RSTP on AP1, AP2 and AP3
rule to block mac discovery b. Enable RSTP on AP1
d. Remove/Disable the Interfaces c. Enable RSTP on AP1 and AP3
e. Place a proper input firewall rule
to block mac discovery 25. HotSpot server is installed on the
f. Remove/Disable all interfaces router. All IP-phones are required to
under mac-Server winbox have access to outside networks
g. Add a Deny All input firewall rule without any HotSpot authentication.
Select the configuration options you
21. What does this simple queue do (check can use to achieve this setup.
the image)? a. /ip hotspot walled-garden ip
a. Queue guarantees download data b. /ip hotspot service-ports
rate of one megabit per second for c. /ip hotspot ip-binding
host 192.168.1.10
b. Queue guarantees upload data rate VERSI 8
of one megabit per second for host 1. If you need to make sure that one
192.168.1.10 computer in your HotSpot network
c. Queue limits host 192.168.1.10 can access the Internet without
download data rate to one megabit HotSpot authentication, which menu
per second allows you to do this?
d. Queue limits host 192.168.1.10 a. IP bindings
upload data rate to one megabit b. Walled-garden
per second. c. Users
d. Walled-garden IP
22. For static routing functionality,
additionally to the RouterOS system 2. Manakah fakta yang benar mengenai
package, you will also need the file backup?
following software package: a. Termasuk file yang tersimpan di
a. None /files
b. advanced-tools b. Bisa diedit
c. routing c. Termasuk username dan
d. dhcp password dari /user
d. Mencakup seluruh konfigurasi
23. You want to use PCQ and allow 256k router
maximum download and upload for
3. NStreme works only on 40mhz d. Contains the security profiles
channel width settings
True
False 8. Possible actions of ip firewall filter are:
a. Tarpit
4. To make all DNS requests coming from b. Tarp
your network to resolve on your c. Bounce
router (regardless of the clients’ d. add-to-address-list
configuration), which action would e. log
you specify for the DST-NAT rule? f. accept
a. Masquerade
b. dst-nat 9. In case when router login password is
c. you can’t use DST-NAT to achieve lost, it is necessary to reinstall
this RouterOS or use hardware reset
d. redirect funcion.
a. Yes/ True
5. Two hosts, A and B, are connected to a b. No/ False
broadcast LAN. Select all the answers
showing pairs of IP address/mask 10. Which software version can be
which would allow IP connections to installed onto the following
be established between the two hosts. RouterBoard types?
a. A: 10.1.2.66/25 and B: a. routeros-x86-x.xx.npk on a
10.1.2.109/26 RB1100
b. A: 10.1.2.192/24 and B: b. routeros-mipsbe-x.xx.npk on a
10.1.2.129/26 RB133
c. A: 10.2.2.1/23 and B: 10.2.0.1/22 c. routeros-mipsle-x.xx.npk on
d. A: 10.2.1.0/23 and B: 10.2.0.1/22 RB133
d. routeros-powerpc-x.xx.npk on a
6. The first two rules in the forward chain RB333
of the filter table are: e. routeros-mipsbe-x.xx.npk on a
/ip firewall filter add chain=forward RB433
connection-state=established
action=accept 11. PPP Secrets are used for
/ip firewall filter add chain=forward a. L2TP clients
connection-state=invalid action=drop b. Router users
Connection-state=related packets are c. PPtP clients
not filtered by the rules above. d. IPSec clients
True e. PPPoE clients
False f. PPP clients
7. /interface wireless access-list is used 12. Choose all valid hosts address range
for for subnet 15.242.55.62/27
a. Shows a list of Client’s MAC a. 15.242.55.32-15.242.55.63
Address that are already b. 15.242.55.33-15.242.55.63
registered at AP c. 15.242.55.33-15.242.55.62
b. Authenticate Hotspot users d. 15.242.55.31-15.242.55.62
c. Handles a list of Client’s MAC
Address to permit/deny 13. WPA 2 Pre-Shared Key (PSK) is
connection to A enabled on AP, all your clients have to
use the same PSK. Only Virtual AP
could be used to allow clients to a. WINS Server
connect with a different PSK b. ntp server
False c. DNS Server
True d. subnet mask
e. tftp
14. Router A and B are both running as f. gateway
PPPoE servers on different broadcast
domains of your network. Is it possible 20. Anda akan menyimpan website yang
to set Router A to use “/ppp secret” telah dikunjungi ke dalam sebuah log
accounts from Router B to dari web proxy. Manakah konfigurasi
authenticate PPPoE customers? yang benar ?
False a. /system logging add topics=web-
True proxy,debug action=memory
b. /system logging add topics=web-
15. Which of the following actions are proxy,!debug action=memory
available for ‘/ip firewall mangle’ c. /system logging add topics=web-
(select all valid actions) proxy,!debug action=remote
a. change MSS d. /system logging add topics=web-
b. mark connection proxy,!debug action=disk
c. accept
d. jump 21. You need to set up an E1(T1)
e. drop connection with PPP configured.
f. mark packet Which License level is needed?
a. Level 4
16. OSFP area ID does not need to be b. It cannot be done in RouterOS
unique within the AS. c. Level 5
True
False 22. You have a router with configuration
Public IP :202.168.125.45/24
17. What configuration is added by /ip Default gateway:202.168.125.1
hotspot setup command? (select all DNS server: 248.115.148.136,
that apply) 248.115.148.137
a. /ip dhcp-server Local IP: 192.168.2.1/24
b. /ip service Mark the correct configuration on
c. /queue tree client PC to access to the Internet
d. /ip hotspot user a. IP:192.168.2.115/24 gateway:
e. /ip hotspot walled-garden 192.168.2.1
b. IP:192.168.0.1/24
18. Mode wireless apakah yang bisa gateway:192.168.2.1
digunakan untuk mengkonfigurasikan c. IP:192.168.2.2/24
WDS? gateway:202.168.125.45
a. ap-bridge d. IP:192.168.1.223/24
b. nstreme-dual-slave gateway:248.115.148.136
c. bridge e. IP:192.168.2.253/24
d. station-wds gateway:202.168.0.1
e. station
23. Mark queue type that uses fairness
19. Check all of the DHCP Server Options principle between sub-queues, allows
that are implemented for DHCP-Client users to choose classifier for sub-
and not Custom
queues, and apply a limit to each sub- b. copy running-config startup-
queue config
a. SFQ c. config mem
b. RED d. wr mem
c. PCQ
d. BFIFO 5. You have 10 users plugged into a hub
running 10Mbps half-duplex. There is
24. How many different priorities can be a server connected to the switch
selected for queues in MikroTik running 10Mbps half-duplex as well.
RouterOS? How much bandwidth does each host
a. 1 have to the server?
b. 8 a. 100 kbps
c. 0 b. 1 Mbps
d. 16 c. 2 Mbps
d. 10 Mbps
25. An IP address pool can contain
addresses from more than one subnet. 6. Which WLAN IEEE specification allows
a. True up to 54Mbps at 2.4GHz?
b. False a. A
b. B
VERSI 9 c. G
1. How long is an IPv6 address? d. N
a. 32 bits
b. 128 bytes 7. Which of the following is the valid host
c. 64 bits range for the subnet on which the IP
d. 128 bits address 192.168.168.188
255.255.255.192 resides?
2. What flavor of Network Address a. 192.168.168.129-190
Translation can be used to have one IP b. 192.168.168.129-191
address allow many users to connect c. 192.168.168.128-190
to the global Internet? d. 192.168.168.128-192
a. NAT
b. Static 8. To back up an IOS, what command will
c. Dynamic you use?
d. PAT a. backup IOS disk
b. copy ios tftp
3. What are the two main types of access c. copy tftp flash
control lists (ACLs)? d. copy flash tftp
1 Standard
2 IEEE 9. What protocol does PPP use to identify
3 Extended the Network layer protocol?
4 Specialized a. NCP
a. 1 and 3 b. ISDN
b. 2 and 4 c. HDLC
c. 3 and 4 d. LCP
d. 1 and 2 10. Which of the following commands will
allow you to set your Telnet password
4. What command is used to create a on a Cisco router?
backup configuration? a. line telnet 0 4
a. copy running backup b. line aux 0 4
c. line vty 0 4 c. Every 10 minutes
d. line con 0 d. Every 30 seconds
11. Which protocol does DHCP use at the 17. How many broadcast domains are
Transport layer? created when you segment a network
a. IP with a 12-port switch?
b. TCP a. 1
c. UDP b. 2
d. ARP c. 5
d. 12
12. Which command is used to determine
if an IP access list is enabled on a 18. What does the command
particular interface? routerA(config)#line cons 0 allow you
a. show access-lists to perform next?
b. show interface a. Set the Telnet password.
c. show ip interface b. Shut down the router.
d. show interface access-lists c. Set your console password.
d. Disable console connections.
13. Where is a hub specified in the OSI
model? 19. Which router command allows you to
a. Session layer view the entire contents of all access
b. Physical layer lists?
c. Data Link layer a. show all access-lists
d. Application layer b. show access-lists
c. show ip interface
14. What does the passive command d. show interface
provide to dynamic routing protocols?
a. Stops an interface from sending or 20. Which class of IP address has the most
receiving periodic dynamic host addresses available by default?
updates. a. A
b. Stops an interface from sending b. B
periodic dynamic updates but c. C
not from receiving updates. d. A and B
c. Stops the router from receiving
any dynamic updates. 21. In a network with dozens of switches,
d. Stops the router from sending any how many root bridges would you
dynamic updates. have?
a. 1
15. Which protocol is used to send a b. 2
destination network unknown c. 5
message back to originating hosts? d. 12
a. TCP
b. ARP 22. What PPP protocol provides dynamic
c. ICMP addressing, authentication, and
d. BootP multilink?
a. NCP
16. How often are BPDUs sent from a layer b. HDLC
2 device? c. LCP
a. Never d. X.25
b. Every 2 seconds 23. What is a stub network?
a. A network with more than one exit b. So application developers can
point change only one layer's protocols
b. A network with more than one exit at a time.
and entry point. c. So different networks could
c. A network with only one entry and communicate.
no exit point. d. So Cisco could use the model.
d. A network that has only one
entry and exit point. 28. How many collision domains are
created when you segment a network
24. If your router is facilitating a CSU/DSU, with a 12-port switch?
which of the following commands do a. 1
you need to use to provide the router b. 2
with a 64000bps serial link? c. 5
a. RouterA(config)#bandwidth 64 d. 12
b. RouterA(config-if)#bandwidth
64000 29. What command will display the line,
c. RouterA(config-if)#clock rate 64 protocol, DLCI, and LMI information of
d. RouterA(config-if)#clock rate an interface?
64000 a. sh pvc
b. show interface
25. Which one of the following is true c. show frame-relay pvc
regarding VLANs? d. show run
a. Two VLANs are configured by
default on all Cisco switches. 30. Which protocol does Ping use?
b. VLANs only work if you have a a. TCP
complete Cisco switched b. ARP
internetwork. No off-brand c. ICMP
switches are allowed. d. BootP
c. You should not have more than 10
switches in the same VTP domain. 31. Which command is used to upgrade an
d. VTP is used to send VLAN IOS on a Cisco router?
information to switches in a a. copy tftp run
configured VTP domain. b. copy tftp start
c. config net
26. What does a VLAN do? d. copy tftp flash
a. Acts as the fastest port to all
servers. 32. If you wanted to delete the
b. Provides multiple collision configuration stored in NVRAM, what
domains on one switch port. would you type?
c. Breaks up broadcast domains in a. erase startup
a layer 2 switch internetwork. b. erase nvram
d. Provides multiple broadcast c. delete nvram
domains within a single collision d. erase running
domain.
33. What protocols are used to configure
27. What is the main reason the OSI model trunking on a switch?
was created? 1 VLAN Trunking Protocol
a. To create a layered model larger 2 VLAN
than the DoD model. 3 802.1Q
4 ISL
a. 1 and 2 False
b. 3 and 4
c. 1 only 6. Can you manually add drivers to
d. 2 only TCP/IP RouterOS in case your PCI Ethernet
card is not recognized, and you suspect
VERSI 10 it is a driver issue?
1. What kind of users are listed in the a. Yes
Secrets window of the PPP menu? b. No
a. hotspot users
b. wireless users 7. What can be used as ’target-address’ in
c. l2tp users the simple queue?
d. pptp users a. client’s address
e. pppoe users b. client’s MAC address
f. winbox users c. server’s address
d. address list name
2. What configuration is added by /ip
hotspot setup command? (select all 8. Which is the default port of IP-
that apply) Winbox?
a. /ip service a. TCP 8291
b. /ip hotspot user b. TCP 80
c. /ip hotspot walled-garden c. UDP 8291
d. /ip dhcp-server d. TCP 8192
e. /queue tree
9. MikroTik RouterOS is sending logs to
3. Using wireless connect-list it’s an external syslog server. Which
possible to prioritize connection to one protocol and port is used by RouterOS
Access Point over another Access Point for sending logs (by default)?
by changing the order of the entries. a. UDP 514
False b. UDP 21
True c. UDP 113
d. TCP 110
4. If ARP=reply-only is configured on an
interface, what will this interface do 10. Which route will be used to reach host
a. Add new MAC addresses in /ip arp 192.168.1.55?
list /ip route
b. Accept all MAC-addresses listed in add disabled=no distance=1 dst-
/ip arp as static entries address=192.168.1.0/24
c. Add new IP addresses in /ip arp gateway=1.1.1.1
list add disabled=no distance=1 dst-
d. Accept all IP addresses listed in /ip address=192.168.1.0/25
arp as static entries gateway=2.2.2.2
e. Accept all IP/MAC combinations add disabled=no distance=1 dst-
listed in /ip arp as static entries address=192.168.0.0/16
gateway=3.3.3.3
5. Router A and B are both running as a. Route via gateway 1.1.1.1
PPPoE servers on different broadcast b. Route via gateway 3.3.3.3
domains of your network. It is possible c. Route via gateway 2.2.2.2
to set Router A to use "/ppp secret"
accounts from Router B to 11. In which situations can Netinstall NOT
authenticate PPPoE customers. be used to install a RouterBOARD?
a. The router does not have an 17. What protocol does ping use?
operating system a. TCP
b. The router is connected only to b. ICMP
a wireless network c. UDP
c. You do not know the password of d. ARP
the router
d. The router is connected only to 18. Is it possible for a client to get an IP
a secondary Ethernet port address but no gateway after a
successful DHCP request?
12. To use masquerade, you need to False
specify
a. action=accept, out-interface, 19. Firewall configuration is the
chain=src-nat following:
b. action=masquerade, out- 1) /ip firewall filter add chain=input
interface, chain=src-nat protocol=icmp action=jump jump-
c. action=masquerade, in-interface, target=ICMP
chain=src-nat 2) /ip firewall filter add chain=input
d. action=masquerade, out-interface, protocol=icmp action=log log-
chain=dst-nat prefix=ICMP-DENY
3) /ip firewall filter add chain=input
13. Please select valid scan-list values in protocol=icmp action=drop
interface wireless configuration: 4) /ip firewall filter add chain=ICMP
a. 5560,5620-5700 protocol=icmp action=log log-
b. 5640~5680 prefix=JUMP-ICMP-DENY
c. default,5560,5600,5660-5700 5) /ip firewall filter add chain=ICMP
d. 5540,5560,5620+5700 protocol=icmp action=drop
Client sends "ping" to router. What
14. When adding a static route, you must will the router do?
always ensure that you add both the a. Router will drop the packet at ICMP
gateway and the interface. (jump) chain drop rule (5th rule)
False b. Router will log it with prefix: ICMP-
DENY
15. You would like to allow multiple logins c. Router will drop the packet at the
with one user name on a HotSpot Input drop rule (3rd rule)
server. How should this be configured? d. Router will log it with prefix:
a. Set "Shared Users" option at /ip JUMP-ICMP-DENY
hotspot user profile
b. It's not possible 20. /ip firewall nat
c. Set "Shared Users" option at /ip add chain=dstnat in-interface=ether1
hotspot protocol=tcp dst-port=3389
d. Set "only-one=no' at /ip hotspot action=dst-nat to-
address=192.168.1.2 to-ports=81
16. In which order are the entries in The command shown above:
Access List and Connect List a. Adds IP address 192.168.1.2 to the
processed? interface ether1
a. In sequence order b. Forwards any TCP traffic
b. In a random order incoming through ether1 port
c. By Signal Strength Range 3389 to the port 81 of the
d. By interface name internal host 192.168.1.2
c. Forwards all TCP traffic from Assuming the client is capable of
192.168.1.2 to port 81 of the operating with Nv2 (correct hardware,
interface ether1 correct encryption key and ROS
d. Forwards any TCP traffic incoming version), which setting(s) for
through ether1 port 81 to the port 'wireless-protocol' should be enabled
3389 of the internal host on the client so that the client can auto-
192.168.1.2 detect the protocol used by the AP and
still make connection with 802.11a or
21. While troubleshooting a network from Nv2 : (select all that apply)
inside the network, you discover that a. Nv2
you can ping the gateway reliably, but b. nv2-nstreme-802.11
you cannot browse the Internet. Skype, c. any
however, works flawlessly. What is the d. unspecified
most likely issue?
a. DNS is not available 25. What does this simple queue do (check
b. The computer did not get an IP the image)?
address a. Queue limits host 192.168.1.10
c. Network card and/or cable is not upload data rate to one megabit
working per second.
d. Masquerading rule is not applied b. Queue guarantees download data
rate of one megabit per second for
22. What is marked by connection- host 192.168.1.10
state=established matcher? c. Queue guarantees upload data rate
a. Packet begins a new TCP of one megabit per second for host
connection 192.168.1.10
b. Packet does not correspond to any d. Queue limits host 192.168.1.10
known connection download data rate to one megabit
c. Packet belongs to an existing per second.
connection,for example a reply
packet or a packet which belongs VERSI 11
to already replied connection 1. DHCP server is configured on a
d. Packet is related to, but not part of router’s ether1 interface. IP address
an existing connection 192.168.0.100/24 is assigned to the
interface. Possible IP pools, that can be
23. For static routing functionality, used by this DHCP server, are:
additionally to the RouterOS system a. 192.168.0.1-192.168.0.255
package, you will also need the b. 192.169.0.1-192.169.0.254
following software package: c. 192.168.0.1-192.168.0.14
a. routing d. 192.168.0.1-
b. none 192.168.0.99,192.168.0.101-
c. dhcp 192.168.0.254
d. advanced-tools
2. Collisions are possible in full-duplex
24. You are planning a migration from a Ethernet networks
wireless link using 802.11a on 5GHz False
(with no nstreme) to one using Nv2 on
5GHz. When you change the AP from 3. What is possible with Netinstall?
802.11a to Nv2, you do not wish a a. MikroTikRouterOS reinstall
client to disconnect for more than a b. MikroTikRouterOS
few seconds during the upgrade. configuration reset
c. MikroTikRouterOS password 8. What wireless modes can be used in a
reset with saving router's WDS setup?
configuration a. Bridge
b. nstreme-dual-slave
4. Action=redirect allows you to make c. station-wds
a. Transparent DNS Cache d. ap-bridge
b. Enable Local Service e. station
c. Forward DNS to another device IP
address 9. You want to use PCQ and allow 256k
d. Transparent HTTP Proxy maximum download and upload for
each client. Choose correct argument
5. Which software version can be values for the required queue.
installed onto the following a. kind=pcqpcq-limit=256000
RouterBoard types? pcq-classifier=src-address
a. routeros-mipsle-x.xx.npk on b. kind=pcqpcq-limit=1256000 pcq-
RB133 classifier=dst-address
b. routeros-x86-x.xx.npk on a c. kind=pcqpcq-limit=5000000 pcq-
RB1100 classifier=dst-address
c. routeros-mipsbe-x.xx.npk on a d. kind=pcqpcq-limit=256000
RB433 pcq-classifier=dst-address
d. routeros-powerpc-x.xx.npk on a e. kind=pcqpcq-limit=5000000 pcq-
RB333 classifier=src-address
e. routeros-mipsbe-x.xx.npk on a
RB133 10. Firewall NAT rules process only the
first packet of each connection.
6. What does the firewall action
"Redirect" do? Select all true 11. Select all the RouterOS software
statements. packages required for configuring a
a. Redirects a packet to a specified IP wireless AP
b. Redirects a packet to a specified a. Wireless
port on a host in the network b. advanced-tools
c. Redirects a packet to a specified c. dhcp
port on the router d. routing
d. Redirects a packet to the router e. system
7. What does this simple queue do (check 12. Router OS can set vlan-id value from -
the image)? to :
a. Queue limits host 192.168.1.10 a. 1-2048
download data rate to one megabit b. 1-4096
per second. c. 1-2049
b. Queue guarantees download data d. 1-4095
rate of one megabit per second for
host 192.168.1.10 13. For static routing functionality,
c. Queue guarantees upload data rate additionally to the RouterOS system
of one megabit per second for host package, you will also need the
192.168.1.10 following software package:
d. Queue limits host 192.168.1.10 a. None
upload data rate to one megabit b. advanced-tools
per second. c. dhcp
d. routing
20. Using wireless connect-list it’s
14. Please select valid scan-list values in possible to prioritize connection to one
interface wireless configuration: Access Point over another Access Point
a. 5540,5560,5620+5700 by changing the order of the entries.
b. 5640~5680 False
c. 5560,5620-5700
d. default,5560,5600,5660-5700 21. MikroTik proxy features are:
a. HTTP caching
15. Can you manually add drivers to b. POP3 caching
RouterOS in case your PCI Ethernet c. SMTP caching
card is not recognized, and you suspect d. FTP caching
it is a driver issue? e. DNS name filtering
a. Yes
b. No 22. Which computers would be able to
communicate directly (without any
16. What configuration is added by /ip routers involved)
hotspot setup command? (select all a. 192.168.0.5/26 and
that apply) 192.168.0.100
a. /queue tree b. 192.168.17.15/29 and
b. /ip hotspot walled-garden 192.168.17.20/28
c. /ipdhcp-server c. 10.10.0.17/22 and
d. /ip hotspot user 10.10.1.30/23
e. /ip service d. 10.5.5.1/24 and 10.5.5.100/25
17. Mark all correct answers: destination 23. Is it possible to have PPTP Client and
NAT will take place... PPTP server on one MikroTik router at
a. after ip firewall filter, chain the same time?
forward a. Yes/ True
b. before ip firewall filter, chain b. No/ False
forward
c. before routing decision 24. Which default route will be active?
d. after routing decision /ip route add disabled=no distance=10
dst-address=0.0.0.0/0
18. It is possible to access MikroTik gateway=1.1.1.1
Graphs on a different port than HTTP add disabled=no distance=5 dst-
port 80. address=0.0.0.0/0 gateway=2.2.2.2
a. Yes a. Route via gateway 1.1.1.1
b. No b. Route via gateway 2.2.2.2
19. HotSpot is required on the interfaces 25. You can not use OSPF and RIP routing
ether2, ether3, wlan1 (in ap-bridge protocols simultaneously on the
mode). These interfaces are bridged in RouterOS.
the bridge1 interface. Which interface a. Yes/ True
should the HotSpot server be b. No/ False
configured on?
a. On wlan1 interface VERSI 12
b. On ether3 interface 1. How many usable IP addresses are
c. On bridge1 interface there in a 23-bit (255.255.254.0)
d. On ether2 interface subnet?
a. 254
b. 512 7. How many IP addresses can one find in
c. 510 the header of an IP packet?
d. 508 a. 4
b. 1
2. A network ready device is directly c. 2
connected to a MikroTik d. 3
RouterBOARD 750 with a correct
U.T.P. RJ45 functioning cable. The 8. Which of the following protocols / port
device is configured with an IPv4 s are used for SNMP. (Simple Network
address of 192.168.100.70 using a Managemnt Protocol)
subnet mask of 255.255.255.252. a. TCP 25
What will be a valid IPv4 address for b. TCP 161
the RouterBOARD 750 for a successful c. UDP 161
connection to the device? d. UDP 162
a. 192.168.100.69/255.255.255.2 e. TCP 123
52 f. TCP 162
b. 192.168.100.71/255.255.255.252
c. 192.168.100.70/255.255.255.252 9. How many usable IP addresses are
d. 192.168.100.68/255.255.255.252 there in a 20-bit subnet?
a. 2046
3. Select valid subnet masks: b. 2047
a. 192.0.0.0 c. 4094
b. 255.255.224.0 d. 2048
c. 255.255.192.255 e. 4096
d. 255.192.0.0
10. A PC with IP 192.168.1.2 can access
4. What protocol does ping use? internet, and static ARP has been set
a. UDP for that IP address on gateway. When
b. ICMP the PC Ethernet card failed, the user
c. ARP change it with a new card and set the
d. TCP same IP for it. What else should be
done?
5. Select valid MAC-address a. Nothing - it will work as before
a. 192.168.0.0/16 b. MAC-address of the new card
b. 00:00:5E:80:EE:B0 has to be changed to MAC
c. AEC8:21F1:AA44:54FF:1111:DDA address of old card
E:0212:1201 c. Old static ARP entry on gateway
d. G2:60:CF:21:99:H0 has to be updated for the new
card
6. Which computers would be able to d. Another IP has to be added for
communicate directly (without any Internet access
routers involved)
a. 10.5.5.1/24 and 10.5.5.100/25 11. You have a router with configuration
b. 192.168.0.5/26 and 192.168.0.100 Public IP :202.168.125.45/24
c. 10.10.0.17/22 and Default
10.10.1.30/23 gateway:202.168.125.1
d. 192.168.17.15/29 and DNS server: 248.115.148.136,
192.168.17.20/28 248.115.148.137
Local IP: 192.168.2.1/24
Mark the correct configuration on False
client PC to access to the Internet
a. IP:192.168.0.1/24 18. What is term for the hardware coded
gateway:192.168.2.1 address found on an interface?
b. IP:192.168.2.115/24 gateway: a. MAC Address
192.168.2.1 b. Interface Address
c. IP:192.168.2.2/24 c. IP Address
gateway:202.168.125.45 d. FQDN Address
d. IP:192.168.2.253/24
gateway:202.168.0.1 19. How many layers does Open Systems
e. IP:192.168.1.223/24 Interconnection model have?
gateway:248.115.148.136 a. 12
b. 7
12. Which ones of the following are valid c. 6
IP addresses? d. 9
a. 192.168.13.255 e. 5
b. 10.10.14.0
c. 1.27.14.254 20. In MikroTik RouterOS, Layer-3
d. 192.168.256.1 communication between 2 hosts can
be achieved by using an address
13. MAC layer by OSI model is also known subnet of:
as a. /30
a. Layer 7 b. /31
b. Layer 2 c. /29
c. Layer 3 d. /32
d. Layer 6
e. Layer 1 VERSI 13
1. Action=redirect is applied in
14. Which of the following IP addresses a. chain=srcnat
are publicly routable? b. chain=dstnat
a. 127.34.155.3 c. chain=forward
b. 11.3.10.4
c. 172.16.13.23 2. You have 802.11b/g wireless card.
d. 192.168.1.4 What frequencies are available to you?
a. 5800MHz
15. The network address is b. 2412MHz
a. The first usable address of the c. 5210MHz
subnet d. 2422MHz
b. The first address of the subnet e. 2327MHz
c. The last address of the subnet
3. Mark all correct statements about
16. Select which of the following are /export (rsc file).
'Public IP addresses': a. Exports logs from /log print
a. 10.110.50.37 b. Exports full configuration of the
b. 11.63.72.21 router
c. 172.168.254.2 c. Exports only part of the
d. 172.28.73.21 configuration (for example /ip
e. 192.168.0.1 firewall)
d. Exports scripts from /system
17. Is ARP used in the IPv6 protocol ? script
e. Exports files could not edited d. S
e. C
4. What wireless card can we use to
achieve 100 Mbps actual wireless 10. Mark all features that are compatible
throughput? with Nstreme
a. 802.11 b/g a. WDS between a device in station-
b. 802.11 a/b/g wds mode and a device in station-
c. 802.11 a wds mode
d. 802.11 a/n b. Encryption
e. 802.11 a/b/g/n c. WDS between a device in ap-
bridge mode with a device in
5. It is possible to add user-defined station-wds mode
chains in ip firewall mangle d. Bridging a device in station mode
with a device in ap-bridge mode
6. Choose all valid hosts address range
for subnet 15.242.55.62/27 11. Can you manually add drivers to
a. 15.242.55.31-15.242.55.62 RouterOS in case your PCI Ethernet
b. 15.242.55.32-15.242.55.63 card is not recognized, and it’s a driver
c. 15.242.55.33-15.242.55.62 issue?
d. 15.242.55.33-15.242.55.63 a. Yes
b. No
7. Action=redirect allows you to make
a. Transparent DNS Cache 12. For static routing functionality,
b. Forward DNS to another device IP additionally to the RouterOS system
address package, you will also need the
c. Enable Local Service following software package:
d. Transparent HTTP Proxy a. None
b. Dhcp
8. Which is correct masquerade rule for c. Routing
192.168.0.0/24 network on the router d. advanced-tools
with outgoing interface=ether1?
a. /ip firewall nat add 13. Which are necessary sections in
action=masquerade chain=srcnat /queue simple to set bandwidth
b. /ip firewall nat add limitation?
action=masquerade chain=srcnat a. target-address, max-limit
src-address=192.168.0.0/24 b. target-address, dst-address, max-
c. /ip firewall nat add limit
action=masquerade out- c. target-address, dst-address
interface=ether1 chain=dstnat d. max-limit
d. /ip firewall nat add
action=masquerade chain=srcnat 14. What protocol is used for Ping and
out-interface=ether1 Trace route?
a. DHCP
9. What letters appear next to a route, b. IP
which is automatically created by c. TCP
RouterOS when user adds a valid d. ICMP
address to an active interface? e. UDP
a. I
b. D 15. From which of the following locations
c. A can you obtain Winbox?
a. Router’s webpage 21. The HotSpot feature can be used only
b. Files menu in your router on ethernet interfaces. You have to use
c. Via the console cable a separate access point if you want to
d. mikrotik.com use this feature with wireless.
16. Two hosts, A and B, are connected to a 22. If you need to make sure that one
broadcast LAN. Select all the answers computer in your HotSpot network can
showing pairs of IP address/mask access the Internet without HotSpot
which would allow IP connections to authentication, which menu allows
be established between the two hosts. you to do this?
a. A: 10.1.2.66/25 and B: a. Users
10.1.2.109/26 b. IP bindings
b. A: 10.2.2.1/23 and B: 10.2.0.1/22 c. Walled-garden
c. A: 10.1.2.192/24 and B: d. Walled-garden IP
10.1.2.129/26
d. A: 10.2.1.0/23 and B: 10.2.0.1/22 23. How many different priorities can be
selected for queues in MikroTik
17. Why is it useful to set a Radio Name on RouterOS?
the radio interface? a. 8
a. To identify a station in a list of b. 16
connected clients c. 0
b. To identify a station in the Access d. 1
List
c. To identify a station in Neighbor 24. Which default route will be active?
discovery /ip route
add disabled=no distance=10 dst-
18. What kind of users are listed in the address=0.0.0.0/0 gateway=1.1.1.1
Secrets window of the PPP menu? add disabled=no distance=5 dst-
a. pptp users address=0.0.0.0/0 gateway=2.2.2.2
b. l2tp users a. Route via gateway 1.1.1.1
c. winbox users b. Route via gateway 2.2.2.2
d. wireless users
e. pppoe users 25. How long is level 1 (demo) license
f. hotspot users valid
a. 24 hours
19. Router A and B are both running as b. Infinite time
PPPoE servers on different broadcast c. 1 month
domains of your network. Is it possible d. 1 year
to set Router A to use “/ppp secret”
accounts from Router B to VERSI 14
authenticate PPPoE customers ? 1. Action=redirect is applied in
a. chain=srcnat
20. MikroTik RouterOS DHCP client can b. chain=dstnat
receive following options c. chain=forward
a. Byte limit
b. IP Gateway 2. You have 802.11b/g wireless card.
c. Rate limit What frequencies are available to you?
d. Uptime limit a. 5800MHz
e. IP Address and Subnet b. 2412MHz
c. 5210MHz
d. 2422MHz c. /ip firewall nat add
e. 2327MHz action=masquerade out-
interface=ether1 chain=dstnat
3. Mark all correct statements about d. /ip firewall nat add
/export (rsc file). action=masquerade
a. Exports logs from /log print chain=srcnat out-
b. Exports full configuration of the interface=ether1
router
c. Exports only part of the 9. What letters appear next to a route,
configuration (for example /ip which is automatically created by
firewall) RouterOS when user adds a valid
d. Exports scripts from /system address to an active interface?
script a. I
e. Exports files could not edited b. D
c. A
4. What wireless card can we use to d. S
achieve 100 Mbps actual wireless e. C
throughput?
a. 802.11 b/g 10. Mark all features that are compatible
b. 802.11 a/b/g with Nstreme
c. 802.11 a a. WDS between a device in station-
d. 802.11 a/n wds mode and a device in station-
e. 802.11 a/b/g/n wds mode
b. Encryption
5. It is possible to add user-defined c. WDS between a device in ap-
chains in ip firewall mangle bridge mode with a device in
True station-wds mode
d. Bridging a device in station mode
6. Choose all valid hosts address range with a device in ap-bridge mode
for subnet 15.242.55.62/27
a. 15.242.55.31-15.242.55.62 11. Can you manually add drivers to
b. 15.242.55.32-15.242.55.63 RouterOS in case your PCI Ethernet
c. 15.242.55.33-15.242.55.62 card is not recognized, and it’s a driver
d. 15.242.55.33-15.242.55.63 issue?
No
7. Action=redirect allows you to make
a. Transparent DNS Cache 12. For static routing functionality,
b. Forward DNS to another device IP additionally to the RouterOS system
address package, you will also need the
c. Enable Local Service following software package:
d. Transparent HTTP Proxy a. None
b. Dhcp
8. Which is correct masquerade rule for c. Routing
192.168.0.0/24 network on the router d. advanced-tools
with outgoing interface=ether1?
a. /ip firewall nat add 13. Which are necessary sections in
action=masquerade chain=srcnat /queue simple to set bandwidth
b. /ip firewall nat add limitation?
action=masquerade chain=srcnat a. target-address, max-limit
src-address=192.168.0.0/24
b. target-address, dst-address, max- 19. Router A and B are both running as
limit PPPoE servers on different broadcast
c. target-address, dst-address domains of your network. Is it possible
d. max-limit to set Router A to use “/ppp secret”
accounts from Router B to
14. What protocol is used for Ping and authenticate PPPoE customers ?
Trace route? No
a. DHCP
b. IP 20. MikroTik RouterOS DHCP client can
c. TCP receive following options
d. ICMP – ping a. Byte limit
e. UDP – trace route b. IP Gateway
c. Rate limit
15. From which of the following locations d. Uptime limit
can you obtain Winbox? e. IP Address and Subnet
a. Router’s webpage
b. Files menu in your router VERSI 15
c. Via the console cable 1. If you need to make sure that one
d. mikrotik.com computer in your HotSpot network
can access the Internet without
16. Two hosts, A and B, are connected to a HotSpot authentication, which menu
broadcast LAN. Select all the answers allows you to do this?
showing pairs of IP address/mask a. Users
which would allow IP connections to b. IP bindings
be established between the two hosts c. Walled-garden
a. A: 10.1.2.66/25 and B: d. Walled-garden IP
10.1.2.109/26
b. A: 10.2.2.1/23 and B: 10.2.0.1/22 2. How many different priorities can be
c. A: 10.1.2.192/24 and B: selected for queues in MikroTik
10.1.2.129/26 RouterOS?
d. A: 10.2.1.0/23 and B: 10.2.0.1/22 a. 8
b. 16
17. Why is it useful to set a Radio Name on c. 0
the radio interface? d. 1
a. To identify a station in a list of
connected clients 3. Which default route will be active? /ip
b. To identify a station in the Access route add disabled=no distance=10
List dst-address=0.0.0.0/0
c. To identify a station in Neighbor gateway=1.1.1.1 add disabled=no
discovery distance=5 dst-address=0.0.0.0/0
gateway=2.2.2.2
18. What kind of users are listed in the a. Route via gateway 1.1.1.1
Secrets window of the PPP menu? b. Route via gateway 2.2.2.2
a. pptp users
b. l2tp users 4. How long is level 1 (demo) license
c. winbox users valid?
d. wireless users a. 24 hours
e. pppoe users b. Infinite time
f. hotspot users c. 1 month
d. 1 year
c. The first address of the subnet
5. Is ARP used in the IPv6 protocol ?
False 11. Which ones of the following are valid
IP addresses? [multiple answers]
6. In MikroTik RouterOS, Layer-3 a. 192.168.13.255
communication between 2 hosts can b. 1.27.14.254
be achieved by using an address c. 10.10.14.0
subnet of: d. 192.168.256.1
a. /30
b. /29 12. Which of the following is NOT a valid
c. /32 MAC Address?
d. /31 a. 95:B5:DD:EE:78:8A
7. A PC with IP 192.168.1.2 can access b. 13:16:86:53:89:43
internet, and static ARP has been set c. 80:GF:AA:67:13:5D
for that IP address on gateway. When d. 88:0C:00:99:5F:EF
the PC Ethernet card failed, the user e. EA:BA:AA:EE:FF:CB
change it with a new card and set the
same IP for it. What else should be 13. If ARP=reply-only is configured on an
done? [multiple answers] interface, what will this interface do
a. Old static ARP entry on gateway a. Add new IP addresses in /ip arp
has to be updated for the new list
card b. Accept all IP/MAC combinations
b. Nothing – it will work as before listed in /ip arp as static entries
c. MAC-address of the new card c. Accept all MAC-addresses listed in
has to be changed to MAC /ip arp as static entries
address of old card d. Add new MAC addresses in /ip arp
d. Another IP has to be added for list
Internet access e. Accept all IP addresses listed in /ip
arp as static entries
8. How many usable IP addresses are
there in a 20-bit subnet? 14. What is term for the hardware coded
a. 2047 address found on an interface?
b. 4096 a. IP Address
c. 2048 b. Interface Address
d. 2046 c. MAC Address
e. 4094 d. FQDN Address
9. What is the default TTL (time to live) 15. Which of the following IP addresses
on a router that an IP packet can are publicly routable?
experience before it will be discarded a. 127.34.155.3
? b. 192.168.1.4
a. 60 c. 172.16.13.23
b. 30 d. 11.3.10.4
c. 1
d. 64 16. What protocol does ping use?
a. UDP
10. The network address is b. TCP
a. The first usable address of the c. ARP
subnet d. ICMP
b. The last address of the subnet
17. MAC layer by OSI model is also known e. Vlan ID
as f. Protocol
a.
b. Layer 7 4. The highest queue priority is
c. Layer 2 a. 16
d. Layer 6 b. 8
e. Layer 1 c. 1
d. 256
18. How many layers does Open Systems
Interconnection model have? 5. Wireless clients (mode=station) will
a. 12 work properly if bridged to ethernet
b. 6
c. 9 6. Which of the following Routes statuses
d. 5 are possible?
e. 7 a. S = Static
b. C = Connected
19. How many IP addresses can one find in c. D = Drop
the header of an IP packet? d. A = Active
a. 3
b. 4 7. You have to connect to a RouterBOARD
c. 1 without any previous configuration.
d. 2 Select all possibilities to connect and
do some basic configuration
20. The basic unit of a physical network a. Telnet
(OSI Layer 1) is the: b. Attach monitor/keyboard
a. Byte c. MAC-Winbox
b. Frame d. Serial Connection
c. Bit
d. Header 8. A network ready device is directly
connected to a MikroTik
VERSI 16 RouterBOARD 750 with a correct
1. Is it possible to have PPTP Client and U.T.P. RJ45 functioning cable. The
PPTP server on one MikroTik router at device is configured with an IPv4
the same time? address of 192.168.100.70 using a
Yes/ True subnet mask of 255.255.255.252.
What will be a valid IPv4 address for
2. For static routing functionality, the RouterBOARD 750 for a successful
additionally to the RouterOS system connection to the device?
package, you will also need the a. 192.168.100.70/255.255.255.252
following software package: b. 192.168.100.68/255.255.255.252
a. Dhcp c. 192.168.100.69/255.255.255.2
b. None 52
c. advanced-tools d. 192.168.100.71/255.255.255.252
d. routing
9. Netinstall can be used to
3. What could be monitored by Torch? a. Install package for different
a. Dst. Address hardware architecture
b. Dst. Port b. Reinstall software without
c. None of the above is correct losing licence
d. Src. Address
c. Keep configuration, but reset a lost 12. To make the masquerading of the
admin password network 192.168.0.0/24, configured
d. Install different software on the interface Ether1, you should
version (upgrade or add rule
downgrade) a. /ip firewall nat add
chain=srcnat out-
10. Consider the following network interface=ether1 src-
diagram. In R1, you have the following address=192.168.0.0/24
configuration: action=masquerade
/ip route add dst- b. /ip firewall nat add chain=dstnat
address=192.168.1.0/24 in-interface=ether1 src-
gateway=192.168.99.2 address=192.168.0.0/24
/ip firewall nat add chain=srcnat out- action=masquerade
interface=Ether1 action=masquerade c. /ip firewall nat add chain=dstnat
On R2, if you wish to prevent all access out-interface=ether1 src-
to a server located at 192.168.1.10 address=192.168.0.0/24
from LAN1 devices, which of the action=masquerade
following rules would be needed? d. /ip firewall nat add chain=srcnat
a. /ip firewall nat add chain=dstnat src-address=192.168.0.0/24
src-address=192.168.99.1 dst- action=masquerade
address=192.168.1.10
action=drop 13. RouterOS DHCP server is able to send
b. /ip firewall filter add chain=input any DHCP options (specified in RFCs)
src-address=192.168.99.1 dst- to DHCP clients
address=192.168.1.10 Yes
action=drop
c. /ip firewall filter add 14. You would like to allow multiple logins
chain=forward src- with one user name on a HotSpot
address=192.168.0.0/24 dst- server. How should this be configured?
address=192.168.1.10 a. Set "only-one=no' at /ip hotspot
action=drop b. Set "Shared Users" option at /ip
d. /ip firewall filter add hotspot user profile
chain=forward src- c. It's not possible
address=192.168.99.1 dst- d. Set "Shared Users" option at /ip
address=192.168.1.10 hotspot
action=drop
15. You are planning a migration from a
11. /interface wireless access-list is used wireless link using 802.11a on 5GHz
for (with no nstreme) to one using Nv2 on
a. Contains the security profiles 5GHz. When you change the AP from
settings 802.11a to Nv2, you do not wish a
b. Handles a list of Client's MAC client to disconnect for more than a
Address to permit/deny few seconds during the upgrade.
connection to AP Assuming the client is capable of
c. Shows a list of Client's MAC operating with Nv2 (correct hardware,
Address that are already correct encryption key and ROS
registered at AP version), which setting(s) for
d. Authenticate Hotspot users 'wireless-protocol' should be enabled
on the client so that the client can auto-
detect the protocol used by the AP and
still make connection with 802.11a or 21. Is it possible for a client to get an IP
Nv2 : (select all that apply) address but no gateway after a
a. Unspecified successful DHCP request?
b. Any False
c. Nv2
d. nv2-nstreme-802.11 22. Which RouterOS packages should be
16. Using wireless connect-list it’s installed on router for SSH server
possible to prioritize connection to support?
one Access Point over another Access a. advanced-tools
Point by changing the order of the b. system
entries. c. ssh
False d. security
17. The total-max-limit under Simple 23. There is an HTTP server 10.0.0.1 in
Queues will limit the combined upload your private network. You have made
and download of the target-address of a DST-NAT rule that sends all HTTP
your simple queue traffic received on your router's
No address 80.232.50.100 to this server. If
you make a firewall rule on the router
18. Two mangle rules defining different to disallow address 159.148.20.30 to
mangle marks for the same traffic type, communicate with the server, how
will make it have both mangle marks would you identify this
No communication in this rule?
a. src-address=159.148.20.30 dst-
19. Where are HotSpot authorized clients address=80.232.50.100
shown? b. src-address=159.148.20.30 dst-
a. /ip hotspot host address=10.0.0.1
b. /ip hotspot active c. src-address=80.232.50.100 dst-
c. /ip hotspot address=10.0.0.1
d. /ip hotspot user d. src-address=80.232.50.100 dst-
address=159.148.20.30
20. A PC with IP 192.168.1.2 can access
internet, and static ARP has been set 24. Router A and B are both running as
for that IP address on gateway. When PPPoE servers on different broadcast
the PC Ethernet card failed, the user domains of your network. It is possible
change it with a new card and set the to set Router A to use "/ppp secret"
same IP for it. What else should be accounts from Router B to
done? authenticate PPPoE customers.
a. Old static ARP entry on gateway False
has to be updated for the new
card 25. Define a routing loop (choose the most
b. MAC-address of the new card precise description)
has to be changed to MAC a. situation where the packet is
address of old card routed through the same
c. Another IP has to be added for sequence of routers until the
Internet access TTL expires
d. Nothing - it will work as before b. Situation where the packet does
not reach it\'s destination
c. situation where the TTL of the
packet expires
d. situation where the packet is package, you will also need the
routed through the same router following software package:
twice a. None
b. Routing
VERSI 17 c. advanced-tools
1. What can you do with Netinstall? d. dhcp
a. Reset password in RouterOS
b. Install Linux 6. Netinstall can be used to
c. Add configuration to RouterOS a. Install different software
d. Reinstall RouterOS version (upgrade or
downgrade)
2. Consider the attached diagram: In b. Keep configuration, but reset a lost
order for Router 1 to see all of the admin password
networks the following commands c. Reinstall software without
could be used (choose all answers that losing licence
could work) d. Install package for different
a. /routing add dst- hardware architecture
address=0.0.0.0/0
gateway=10.10.0.2 7. In which order are the entries in
b. /ip route add dst- Access List and Connect List
address=0.0.0.0/0 processed?
gateway=10.10.0.2 a. By interface name
c. /ip route add dst- b. In sequence order
address=172.16.0.0/24 c. By Signal Strength Range
gateway=10.10.0.2, /ip route add d. In a random order
dst-address=172.32.0.0/24
gateway=10.10.0.2 8. In Winbox, Hide Passwords unchecked
d. /ip route add dst- shows passwords for the following
address=172.16.0.0/24 a. RouterOS user
gateway=10.10.0.2, /ip route add b. Hotspot User
dst-address=172.32.0.0/24 c. RADIUS shared secret
gateway=10.50.0.2 d. PPP secrets
9. Which options should be used when
3. Configuring HotSpot is possible on you want to prevent access from one
MikroTikRouterOS only with a specific address to your router web
wireless interface. interface?
No a. Firewall Filter Chain Forward
b. Firewall Filter Chain Input
4. What menus should be used to allow c. Group settings for System users
certain websites to be accessed from d. WWW service from IP Services
behind a hotspot interface, without
client authentication 10. Which of the following would prevent
a. ip hotspot ip-binding unknown clients from connecting to
b. ip hotspot profile your AP? Choose the BEST answer.
c. ip hotspot walled-garden ip a. Check the "Do not permit unknown
d. ip hotspot walled-garden client" box in the wireless
configuration
5. For static routing functionality, b. Uncheck "Default Authenticate" in
additionally to the RouterOS system the wireless card configuration,
and add each known client's MAC
address to your access-list be able to access the Router using the
configuration ensuring that you mac-address.
enable "authenticate" in the entry Yes
c. Add each known client's MAC
address to your access-list 16. You need to reboot a RouterBoard
configuration is the only step after importing a previously exported
needed rsc file to activate the new
d. Uncheck "Default Authenticate" in configuration.
the wireless card configuration, False
and add each known client's MAC
address to your connect-list 17. What is necessary for PPPoE client
configuration configuration?
e. Configure the radius server under a. ip firewall nat masquerade rule
"/radius" b. Interface (on which PPPoE
client is going to work)
11. Can you manually add drivers to c. Static IP address on PPPoE client
RouterOS in case your PCI Ethernet interface
card is not recognized, and you suspect
it is a driver issue? 18. In order to use dynamic keys in your
No security profile for an AP, you MUST
set up the dhcp server to provide the
12. Mark the queue types that are dynamic keys.
available in RouterOS
a. SFQ – Stochastic Fairness 19. You have a router with configuration
Queuing Public IP :202.168.125.45/24
b. RED – Random Early Detect (or Default
Drop) c. FIFO - First In First Out gateway:202.168.125.1
(for Bytes or for Packets) DNS server: 248.115.148.136,
c. DRR - Deficit Round Robin 248.115.148.137
d. LIFO - Last In First Out Local IP: 192.168.2.1/24
e. PCQ – Per Connection Queuing Mark the correct configuration on
client PC to access to the Internet
13. Check the allowed input formats for a. IP:192.168.0.1/24
wireless scan-list. gateway:192.168.2.1
a. 5500 5700 b. IP:192.168.2.2/24
b. 5500-5700 gateway:202.168.125.45
c. 5500,5700 c. IP:192.168.1.223/24
d. 5500 -5700 gateway:248.115.148.136
e. 5500/5700 d. IP:192.168.2.115/24 gateway:
192.168.2.1
14. Choose all valid hosts address range e. IP:192.168.2.253/24
for subnet 15.242.55.62/27 gateway:202.168.0.1
a. 15.242.55.31-15.242.55.62
b. 15.242.55.33-15.242.55.63 20. Router OS can set vlan-id value from -
c. 15.242.55.33-15.242.55.62 to :
d. 15.242.55.32-15.242.55.63 a. 1-2049
b. 1-4096
15. After putting this rule: /ipfirewall add c. 1-4095
chain=input action=drop, you will still d. 1-2048
21. Collisions are possible in full-duplex
Ethernet networks
False