Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CISCO

Cisco Certified Network Associate (CCNA)

200-301

The Cisco Certified Network Associate (CCNA) certification validates your ability to install, configure, operate, and troubleshoot medium-sized routed and switched networks. It covers network fundamentals, IP connectivity, IP services, security fundamentals, and automation. CCNA is the industry standard for entry-level networking roles, opening doors to careers as a network engineer, administrator, or help desk professional.

1573 practice questions · Updated 2025-01-01

6Domains
53Objectives
326Concepts
1573Questions

200-301 Curriculum

Every domain, objective, and concept the 200-301 exam measures.

  1. Router role and function
  2. Layer 2 switch function
  3. Layer 3 switch function
  4. Next-generation firewall (NGFW) role
  5. Intrusion prevention system (IPS) role
  6. Access point (AP) function
  7. Network controller role
  8. Endpoint role and function
  9. Server role and function
  10. Power over Ethernet (PoE)
  1. Two-tier architecture
  2. Three-tier architecture
  3. Spine-leaf architecture
  4. WAN topologies
  5. SOHO topology
  6. On-premises and cloud architectures
  1. Single-mode fiber
  2. Multimode fiber
  3. Copper cabling
  4. Ethernet shared media
  5. Ethernet point-to-point
  1. Collision detection
  2. Collision domains
  3. Interface errors
  4. Duplex mismatch
  5. Speed mismatch
  6. Troubleshooting methodology

1.5 Compare TCP to UDP

4 concepts · 33 questions
  1. TCP vs UDP overview
  2. TCP features
  3. UDP features
  4. Use cases
  1. IPv4 Address Structure
  2. IPv4 Address Classes
  3. Public and Private IPv4 Addresses
  4. Subnet Mask Notation
  5. Subnetting Fundamentals
  6. Variable Length Subnet Masking (VLSM)
  7. IPv4 Addressing Configuration
  8. IPv4 Address Verification
  9. IPv4 Addressing Troubleshooting

1.7 Describe private IPv4 addressing

5 concepts · 26 questions
  1. Definition of private IPv4 addresses
  2. RFC 1918 address ranges
  3. Characteristics of private addresses
  4. Use cases for private addressing
  5. Network Address Translation (NAT) relationship
  1. IPv6 addressing fundamentals
  2. IPv6 address compression
  3. IPv6 prefix notation
  4. IPv6 global unicast addressing
  5. IPv6 link-local addressing
  6. IPv6 unique local addressing
  7. IPv6 multicast addressing
  8. IPv6 anycast addressing
  9. IPv6 address configuration methods
  10. IPv6 neighbor discovery
  11. IPv6 prefix configuration on interfaces
  12. Verification of IPv6 addressing

1.9 Describe IPv6 address types

7 concepts · 35 questions
  1. IPv6 Address Types Overview
  2. Global Unicast Address
  3. Unique Local Address
  4. Link-Local Address
  5. Anycast Address
  6. Multicast Address
  7. Modified EUI-64
  1. IP configuration verification on Windows
  2. IP configuration verification on macOS
  3. IP configuration verification on Linux
  4. Interpreting IP parameter output

1.11 Describe wireless principles

4 concepts · 30 questions
  1. Nonoverlapping Wi-Fi channels
  2. SSID
  3. RF fundamentals
  4. Wireless encryption
  1. Server Virtualization Fundamentals
  2. Containers Fundamentals
  3. VRF (Virtual Routing and Forwarding) Fundamentals

1.13 Describe switching concepts

5 concepts · 32 questions
  1. MAC learning
  2. MAC aging
  3. Frame switching
  4. Frame flooding
  5. MAC address table

  1. VLAN Fundamentals
  2. Access Port Configuration
  3. Voice VLAN Configuration
  4. Default VLAN Identification
  5. VLAN Trunking Between Switches
  6. InterVLAN Routing via Router-on-a-Stick
  7. InterVLAN Routing via Layer 3 Switch
  8. Verification of VLAN Configuration
  1. Trunk port configuration
  2. Trunk port operation
  3. 802.1Q encapsulation
  4. 802.1Q trunking protocol
  5. Native VLAN concept
  6. Native VLAN configuration
  7. Trunk negotiation (DTP)
  8. Trunk verification commands
  1. CDP Overview
  2. LLDP Overview
  3. CDP Configuration
  4. LLDP Configuration
  5. Verifying CDP
  6. Verifying LLDP
  7. CDP vs LLDP
  1. EtherChannel fundamentals
  2. LACP configuration
  3. Layer 2 EtherChannel
  4. Layer 3 EtherChannel
  5. EtherChannel verification
  6. Load balancing
  1. Root bridge election
  2. Root port selection
  3. Designated and blocked ports
  4. Port states and roles in Rapid PVST+
  5. PortFast operation
  6. Root guard
  7. Loop guard
  8. BPDU filter
  9. BPDU guard
  1. Cisco Wireless Architectures Overview
  2. Autonomous AP Architecture
  3. Cloud-based AP Architecture
  4. Centralized (Split-MAC) Architecture
  5. AP Modes Overview
  6. Local AP Mode
  7. Monitor AP Mode
  8. Sniffer AP Mode
  9. Rogue Detector AP Mode
  10. FlexConnect AP Mode
  1. WLAN component roles
  2. AP connectivity options
  3. Access and trunk ports for WLAN
  4. Link aggregation (LAG) for WLAN
  1. Telnet
  2. SSH
  3. HTTP
  4. HTTPS
  5. Console Access
  6. TACACS+
  7. RADIUS
  8. Cloud Managed

  1. Routing protocol code
  2. Prefix
  3. Network mask
  4. Next hop
  5. Administrative distance
  6. Metric
  7. Gateway of last resort
  1. Longest Prefix Match
  2. Administrative Distance
  3. Routing Protocol Metric
  1. Default route configuration
  2. Network route configuration
  3. Host route configuration
  4. Floating static route configuration
  5. Static route verification
  6. IPv4 and IPv6 static route syntax
  1. OSPFv2 neighbor adjacency states
  2. OSPFv2 hello protocol and timers
  3. OSPFv2 neighbor requirements
  4. OSPFv2 point-to-point network type
  5. OSPFv2 broadcast network type and DR/BDR election
  6. OSPFv2 DR/BDR behavior and adjacency
  7. OSPFv2 router ID selection
  8. OSPFv2 router ID stability and impact
  1. Purpose of FHRPs
  2. Functions of FHRPs
  3. Concepts of FHRPs
  4. Common FHRP protocols

  1. Static NAT configuration
  2. Static NAT verification
  3. NAT pool configuration
  4. Dynamic NAT with access list
  5. Dynamic NAT verification
  6. PAT (overload) configuration
  7. PAT verification
  8. Inside source NAT terminology
  9. NAT translation table inspection
  1. NTP fundamentals
  2. NTP client and server roles
  3. NTP configuration on Cisco IOS
  4. NTP verification commands
  5. NTP authentication
  1. DHCP Overview
  2. DHCP Operation
  3. DHCP Configuration
  4. DHCP Relay
  5. DNS Overview
  6. DNS Resolution Process
  7. DNS Records
  8. DNS Configuration
  9. DHCP and DNS Integration
  1. SNMP architecture
  2. SNMP versions
  3. SNMP operations
  4. SNMP MIB and OIDs
  5. SNMP traps and informs
  6. SNMP community strings
  7. SNMPv3 security
  1. Syslog Overview
  2. Syslog Facilities
  3. Syslog Severity Levels
  4. Configuring Syslog
  5. Syslog Message Format
  6. Syslog vs. SNMP
  1. DHCP client configuration
  2. DHCP client verification
  3. DHCP relay configuration
  4. DHCP relay verification
  1. Classification
  2. Marking
  3. Queuing
  4. Congestion Management
  5. Policing
  6. Shaping
  7. PHB Overview
  1. SSH overview
  2. SSH server configuration
  3. SSH client configuration
  4. SSH version and authentication
  5. SSH verification and troubleshooting
  1. TFTP Overview
  2. FTP Overview
  3. TFTP vs FTP Comparison
  4. TFTP Operation
  5. FTP Operation
  6. TFTP Configuration and Usage
  7. FTP Configuration and Usage

  1. Threats
  2. Vulnerabilities
  3. Exploits
  4. Mitigation Techniques
  1. User Awareness Programs
  2. Security Training
  3. Physical Access Control
  4. Integration of Security Program Elements
  1. Local password authentication
  2. Password encryption
  3. Enable secret
  4. Line password configuration
  5. Login authentication methods
  6. Password verification
  1. Password Management
  2. Password Complexity
  3. Multifactor Authentication
  4. Certificates
  5. Biometrics
  1. IPsec VPN Overview
  2. IPsec Protocols and Components
  3. IKE Phases
  4. IPsec Modes
  5. Remote Access VPN Configuration
  6. Site-to-Site VPN Configuration
  7. VPN Comparison
  1. ACL Purpose and Types
  2. ACL Configuration Syntax
  3. ACL Placement and Direction
  4. ACL Wildcard Masking
  5. ACL Implicit Deny and Ordering
  6. ACL Verification Commands
  7. ACL Troubleshooting
  1. DHCP snooping configuration
  2. DHCP snooping verification
  3. Dynamic ARP Inspection (DAI) configuration
  4. Dynamic ARP Inspection verification
  5. Port security configuration
  6. Port security verification
  7. Layer 2 security feature interaction
  1. Authentication
  2. Authorization
  3. Accounting
  4. AAA Framework
  5. AAA Implementation Methods
  1. WPA Overview
  2. WPA2 Overview
  3. WPA3 Overview
  4. WPA vs WPA2 vs WPA3 Comparison
  5. WPA Personal vs Enterprise Modes
  6. WPA3 Enhancements
  1. WLAN GUI navigation
  2. WPA2 PSK parameters
  3. WLAN creation
  4. WLAN verification

  1. Automation Benefits
  2. Automation and Network Management
  3. Automation vs. Traditional Management
  4. Automation Tools and Technologies
  5. Impact on Network Operations
  1. Traditional network architecture
  2. Controller-based network architecture
  3. Comparison of control planes
  4. Comparison of data planes
  5. Comparison of management and configuration
  6. Comparison of scalability and agility
  7. Comparison of failure handling and resilience
  1. Control plane vs. data plane separation
  2. Overlay, underlay, and fabric
  3. Northbound APIs
  4. Southbound APIs
  1. Generative AI in Network Operations
  2. Predictive AI in Network Operations
  3. Machine Learning Fundamentals
  4. AI and ML Use Cases in Networking
  5. AI and ML Benefits and Limitations
  1. REST API Authentication Types
  2. CRUD Operations in REST
  3. HTTP Verbs in REST
  4. Data Encoding in REST
  1. Configuration Management Overview
  2. Ansible Core Concepts
  3. Ansible Playbooks and YAML
  4. Ansible Inventory and Ad-Hoc Commands
  5. Ansible for Network Automation
  6. Terraform Core Concepts
  7. Terraform Configuration Language (HCL)
  8. Terraform State and Planning
  9. Terraform for Network Automation
  10. Comparing Ansible and Terraform
  1. JSON syntax basics
  2. JSON data types
  3. JSON formatting rules
  4. JSON nesting
  5. JSON vs other data formats
Ready to practice?Test your knowledge with exam-style questions or take an intelligent quiz tailored to your level.

Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for 200-301, so none is invented.