150 Question
150 Question
(English Version)
https://www.belajarjaringan.com/2020/05/150-question-certificate-mikrotik-mtcna.html?m=1
Answer: C
Discussion: Can be seen in the Mikrotik settings in the IP-Routes Tab in the
section below
2. The PPPoE server only works in one Ethernet broadcast domain that is
connected to it. If there is a router between the server and the end-user
host, it will not be able to create a PPPoE Tunnel to the PPPoE server.
A. Right
B. False
Answer: A
3. Which configuration menu should you use to change the default Winbox
router port?
A. / system resource
B. / ip firewall filter
C. / ip service
D. / ip firewall service-ports
Answer: c
Discussion:
A. Right
B. False
Answer: A
A. 1
B. 8
C. 0
D. 16
Answer: b
Discussion:
By default priority in Queue is already filled with the number 8. That is the
lowest priority in the queue (Queue). This means that there are Priority
Options 1 - 8 in the Mikrotik Queue
A. 8
B. 16
C. 1
D. 256
Answer: c
A. 2012
B. 2048
C. 1024
D. 2007
Answer: d
Discussion: please look at the wireless Tab, look for the posts Max. Station
Count as shown below
When traffic reaches the end of 'chain = custom'. What will happen next?
Answer: a
Discussion:
It can be seen from the picture above that the Bytes and Packets column has
the same number, meaning that the packet sent by passing to the 3 rule
filter. so the last action performed by the filter is to log.
A. advanced-tools
C. dhcp
D. routing
Answer: b
10. What is the correct action for NAT rules on routers that must intercept
SMTP traffic and send it to a specific mail server?
A. Passthrough
B. tarpit
C. redirect
D. ff-nat
Answer: d
11. Where should you upload the new MikroTik RouterOS package package
to upgrade the router?
Answer: b
12. Can be more than one PPPoE server in one broadcast domain
a. correct
b. is wrong
Answer: a
Discussion:
As seen in the picture above, in one interface can have several PPPoE
servers, later the difference is the Profile.
Answer: a
Which gateway will be used for packages with the destination address
10.1.5.126?
A. 25.1.1.1
B. 10.1.1.2
C. 10.1.5.126
D. 10.1.1.1
Answer: b
based on distance. The smaller the distance, the first priority will be the
gateway path
a. correct
b. is wrong
Answer: b
Discussion: The defauld log is stored in memory, so when the proxy restarts
the log will disappear. But it can be changed to be stored in DISK, only it
will make a full microtic disk.
A. UDP 1721
B. TCP 1723
C. UDP 1723
D. TCP 1721
Answer: b
17. How many DHCP servers can be configured per interface on RouterOS?
A. Two
B. One
C. Unlimited
D. Five
Answer: b
Discussion: DHCP server can only be made 1 per interfaces. If you try to
create a dhcp server again with an interface that you have used before, it
will error / fail.
a.192.168.100.70 / 255.255.255.252
b. 192.168.100.69/255.255.255.252
c. 192.168.100.71/255.255.255.252
d. 192.168.100.68/255.255.255.252
Answer: b
Net-ID 192.168.100.68
Range IP 192.168.100.69-192.168.100.70
Broadcast 192.168.100.71
19. How many IP addresses can we find in the header of an IP packet?
a. 1
b. 3
c. 2
d. 4
Answer: a
20. Net Id is
Answer: c
Discussion: Net Id is the first address in the subnet, and the net id cannot be
used by the host.
21. What is the term for the address code on the hardware found on the
interface?
a. IP address
b. MAC address
c. FQDN address
d. interface address
Answer: b
a. 512
b. 510
c. 508
d. 254
Answer: b
a. False
b. Correct
Answer: a
Answer: a
25. If ARP = reply-only is activated on one router interface, the router can
add dynamic ARP entries for a particular interface.
a. False
b. Correct
Answer: b
a. Header
b. Bytes
c. Bit
d. Decimal
Answer: c
a. 192.168.13.255
b. 10.10.14.0
c. 192.168.256.1
d. 1.27.14.254
Answer: a, b, d
a. 2046
b. 2047
c. 4094
d. 4096
e. 2048
Answer: c
Answer: b
a. Layer 3
b. Layer 7
c. Layer 1
d. Layer 2
e. Layer 6
Answer: d
Explanation: Mac addresses are at layer 2, known as the data link layer.
reference: https://en.wikipedia.org/wiki/OSI_model
e. 192.168.0.0/16
Answer: b
32. How many layers does the Open System Interconnection model have?
a. 7
b. 6
c. 5
d. 12
e. 9
Answer: 7
Answer: c
34. You have an 802.11b / g Wireless card. What frequency is available for
you?
a. 5800MHz
b. 5210MHz
c. 2422MHz
d. 2327MHz
Answer: c
Explanation: 802.11b / g standard is a WiFi Standard for free Frequency at
2.4Ghz, which is divided up to 14 Channels and each country has a different
standard2. Some only use channel 1-11, others use channel 1-14. For
Indonesia itself using channels 1-13, or more precisely 2412Mhz - 2472Mhz
(up 5Mhz not channel)
a. 15.242.55.31-15.242.55.62
b. 15.242.55.32-15.242.55.63
c. 15.242.55.33-15.242.55.62
d. 15.242.55.33-15.242.55.63
Answer: c
Answer: d
Explanation: confused explain it ... but if you ever practice in the proxy
directly, surely understand ... basically the answer D ^^
37. Can you add drivers manually to RouterOS if your PCI Ethernet card is
not recognized?
a. Yes
b. Not
Answer: b
Explanation: Not all PCI Ethernet on the market can run RouterOS Mikrotik.
Therefore, if you find a PCI Ethernet driver that cannot be read by
RouterOS it is expected to report to the Mikrotik to make the driver.
38. Which part needs to be / Simple Queues to set the bandwidth limit?
a. target-address, max-limit
c. target-address, etc-address
d. max-limit
Answer: a
Explanation: When setting Simple Queue, there are 2 things we must set at
a minimum. i.e. target address and max limit. while other settings such as
bursh, limit at, time, parrent are not required to be set.
39. What protocol is used for the Ping and Trace route?
a. DHCP
b. IP
c. TCP
d. ICMP
e. UDP
Answer: d
40. Why is it useful to set the Radio Name in the Radio Interface?
Answer: c
41. Routers A and B both run as PPPoE servers on a broadcast domain that
is different from your network. Is it possible to set Router A to use the "/
ppp secret" account from Router B to authenticate PPPoE customers?
b.No
Answer: b
Explanation: PPPoE Server Authentication must be in 1 Local network,
because it must be physically connected. must know each other's MAC
Address from the PPPoE server and from the Host
42. If you need to ensure that one computer on your HotSpot network can
access the Internet without HotSpot authentication, which menu allows you
to do this?
a. User
b. IP Binding
c. Walled-garden
d. Walled-garden IP
Answer: b
/ ip route
Answer: b
a. 24 hours
b. Unlimited time
c. 1 month
d. 1 year
Answer: b
45. PCs with IP 192.168.1.2 can access the internet, and a static ARP has
been set for the IP address at the gateway. When the PC Ethernet card fails,
the user changes it to a new card and sets the same IP for it. What else to
do?
a. Old static ARP entries at the gateway must be updated for the new MAC
Adreess
c. The MAC-address of the new card must be changed to the old card's MAC-
address
Answer: a
Explanation: Because the static ARP method is turned on, the Router will
only handle connections from a combination of IP and MAC that are
already registered on the Router. So when there is a change of Ethernet
Card in the client, you must change the Mac Address in the ARP table list
owned by IP 192.168.1.2 with the Mac Address of the newly installed
Ethernet Card.
46. The default TTL (time to live) on the router that can be fed by an IP
packet is:
a. 60
b. 30
c. 1
d. 64
Answer: d
Answer: d
48. In the advanced menu of the wireless setup there is a parameter called
"Area", it works directly with:
a. Connect List
b. Access list
d. Safety Profile
Answer: c
Explanation: Still Not Knowing the reason, maybe someone can explain in
the comments column or can directly contact me through contact.
49. When backing up a router, you use the 'Export' command, the following
happens:
b. Export files can be edited with a standard text editor after creation
Answer: c
a. Correct
b. False
Answer: wrong
Explanation: Unlike backup files or firmware upgrade files. The router does
not need to restart to run the rsc file. but must be called via the CLI with the
Import command.
51. It is not possible to disable the "admin" user on the "/ user" menu
a. Correct
b. False
Answer: b
Answer: c
a. UDP / 8921
b. TCP / 8291
c. TCP / 22
d. TCP / 8080
Answer: b
Explanation:
54. Select the following as 'Public IP Address':
a. 192.168.0.1
b. 172.168.254.2
c. 172.28.73.21
d. 10,110.50.37
e. 11.63.72.21
Answer: a
Answer: c
a. / ip service
b. / ip user hotspot
c. / ip Wallet-Garden hotspot
d. / ip dhcp-server
e. / queues tree
Answer: d
a. False
b. Correct
Answer: b
Explanation: Connect List is a facility in the wireless proxy that functions
when we set the proxy wireless as a client. Connect List will set our
Wireless to be connected with a combination of SSID & Mac which are
priority according to the order of entries.
a. client address
c. server address
Answer: a
Explanation: The target address in simple queue can be filled with IP Client
or Router Interface. While the server IP is usually included in the Etc.
Address.
b. UDP 215
c. UDP 213
d. TCP 510
Answer: a
/ ip route
Answer: c
based on distance. The smaller the distance, the first priority will be the
gateway path
Answer: b
a. 5560,5620-5700
b. 5640 ~ 5680
c. default, 5560.5600,5660-5700
d. 5540,5560,5620 + 5700
Answer: a
63. When adding static routes, you must always ensure that you add
gateways and interfaces.
A. False
b. Correct
Answer: a
64. You want to allow multiple people to log in with one user on the HotSpot
server. How should this be configured?
b. It is impossible
Answer: a
a. In descending order
b. In random order
Answer: a
66. Could the client get an IP address but no gateway after a successful
DHCP request?
a. False
b. Correct
Answer: a
1) / ip firewall filter add chain = input protocol = icmp action = jump jump-
target = ICMP
2) / ip firewall filter add chain = input protocol = icmp action = log log-prefix
= ICMP-DENY
The client sends "pings" to the router. What will the router do?
a. The router will drop packets on the ICMP (jump) chain drop rule (rule 5)
c. The router will drop packets on the drop drop rule (rule 3)
Answer: a
rule 1. when there are people who do PING through the icmp protocol, they
will immediately jump to the chain = ICMP (rule 4)
add chain = dstnat in-interface = ether1 protocol = tcp dst-port = 3389 action
= dst-nat to-address = 192.168.1.2 to-ports = 81
b. redirect all incoming TCP traffic through ether1 port 3389 to port 81 of
the internal host 192.168.1.2
c. redirect all TCP traffic from 192.168.1.2 to port 81 of the ether1 interface
d. redirect all incoming TCP traffic through ether1 port 81 to port 3389 from
the internal host 192.168.1.2
Answer: b
69. When solving network problems from within the network, you find that
you can ping the gateway normally, but you cannot surf the Internet. What
is the most likely problem?
Answer: a
Answer: c
Explanation: established is a reply data connection from the packet being
connected. reference:
https://www.linuxtopia.org/Linux_Firewall_iptables/x1347.html
a. route
b. there is no
c. dhcp
d. advanced tool
Answer: b
a. yes
b. Not
Answer: b
73. Which choice should you use when you want to prevent access from one
particular address to your router's web interface?
Answer: d
a. Check the "Don't Accept Unknow Client" box in the Wireless configuration
Answer: b
b. 5500-5700
c. 5500,5700
d. 5500 - 5700
e. 5500/5700
Answer: b
/ ip firewall
a. Yes
b. Not
Answer: a
a. 1-2049
b. 1-4096
c. 1-4095
d. 1-2048
Answer: c
a. Correct
b. False
Answer: b
80. Where can you see real-time connections processed by the router?
a. Query Tree
b. Torch Tool
c. Firewall Counter
a. SRC-NAT rules
b. DST-NAT rules
d. Route rules
Answer: b
Explanation: The Redirect action can only be applied to the DST-NAT chain,
because the redirect action serves to divert traffic to the router.
82. Could the same IP address be included in several address lists and still
be used by some of the address lists?
a. correct
b. is wrong
Answer: a
Explanation: The address list in a firewall is a table that contains the IP and
its categories. and you can enter the same IP into several categories, all of
which are active according to the rules that are applied in the filter rule,
nat, or mangle.
a. 30
b. 1
c. 10
d. 255
Answer: c
84. Which chain firewall will be used to block MSN client traffic on the
router?
a. Forward
b. Static
c. Input
d. The output
Answer: a
85. You want to limit bandwidth for your HotSpot users. HotSpot can create
a Dynamic Queue for user logins to limit bandwidth.
a. Yes, right
b. Not wrong
Answer: b
Answer: a
87. What types of users are listed on the "/ user" menu?
a. PPTP User
b. Wireless User
c. User Hotspot
d. User Router
Answer: d
Explanation: in the User menu there are only settings about the User Router
88. Which chain firewall should you use to filter ICMP packets from the
router itself?
a. Input
b. Forward
c. Postrouting
d. The output
Answer: d
Explanation: a packet coming out of the router itself, meaning that the
chain uses Output.
a. routeros-mipsbe-x.xx.npk on RB433
b. routeros-powerpc-x.xx.npk on RB333
c. routeros-mipsle-x.xx.npk on RB133
d. routeros-x86-x.xx.npk on RB1100
e. routeros-mipsbe-x.xx.npk on RB133
Answer: a and b
a. POP3 caching
b. DNS Filtering
c. SMTP caching
d. HTTP caching
e. FTP caching
Answer: d
Explanation: Proxies on proxy are only able to win and save HTTP protocol.
91. You have a Wireless interface with Security to use the nstreme protocol?
a. Yes, but Nstreme will be used for all SSIDs assigned to that physical
interface
Answer: b
Explanation: both the nstreme and nV2 protocols can only be used /
managed on WLAN1, while the Vwlan / wlan2 cannot regulate both the
nstreme and nV2 protocols.
a. 192.168.0.2
b. 192.168.0.1
c. 192.168.0.3
d. 192.168.0.4
Answer: d
Discussion: RouterOS in choosing the Route Gateway will choose several
factors, the
based on distance. The smaller the distance, the first priority will be the
gateway path
93. What does the letter "R" in an active session in the PPP Active
Connections menu mean?
a. Run
b. Radius
c. Random
d. Running
Answer: D
Answer: b
Explanation: when all interfaces are bridged, all main settings must be
made on the bridge interface. not in each of the interfaces anymore.
b. Layer-3 Tunnel
c. Layer-2 Tunnel
Answer: a, b
Answer: a,c
97. PPP Secrets is used for:
A. PPtP clients
B. Router users
C. L2TP clients
D. PPPoE clients
E. IPSec clients
F. PPP clients
Answer: a,c,d
98. Mark all correct statements about / export file = {name of an rsc file}.
Answer: b,d
A. log
B. tarp
C. bounce
D. accept
E. add-to-list
F. tarpit
Answer: a,d,f
Answer: a,c
a. / 31
b. / 29
c. / 32
d. / 30
answer: b,c,d
answer: c & d
103. Which of the following protocols / ports is used for SNMP? (Simple
Network Management Protocol)
a. TCP 162
b. UDP 162
c. UDP 161
d. TCP 25
e. TCP 123
f. TCP 161
answer: b,c
104. What letters appear next to the route, which is automatically generated
by RouterOS when the user adds a valid address to the active interface?
A. A
B. C
C. S
D. I
E. D
Answer: e,a,b
105. What wireless standards can we use to achieve 100 Mbps throughput
?
a. 802.11 b / g
b. 802.11 a / b / g
c. 802.11 a
d. 802.11 a / n
e. 802.11 a / b / g / n
f. 802.11 a / n / ac
answer: e,d,f
answer: a,d
a. WDS between the device in station-wds mode and the device in station
wds mode
b. Enkripsi
c. WDS between the device in ap-bridge mode and the device in wds station
mode
answer:a,c
108. Which of the following locations can you get from Winbox?
d. mikrotik.com
answer: a,d
109. Two hosts, A and B, are connected to the broadcast LAN. Select all
answers that indicate pairs of IP addresses / masks that allow IP
connections to be formed between the two hosts.
answer: a,d
110. What types of users are listed in the Secret PPP menu window?
a. pptp users
b. l2tp users
c. winbox users
d. wireless users
e. pppoe users
f. hotspot users
answer: a,b,e
a. Batas Byte
b. IP Gateway
c. Tariff limit
d. Uptime Limit
112. You want to use PCQ and allow a maximum of 256k downloads and
uploads for each client. Select the correct argument value for the required
queue.
answer: b,d
answer: b,c
114. Among the following statements are possible solutions for managing
two network bridges via a wireless link:
answer: b,c
115. If a packet enters the router and starts a new connection that was not
previously there, then it is called:
b. new
c. invalid
d. establish
e. releated
answer: a
answer: a,c,e,f
118. You are planning a migration from a wireless link using 802.11a at
5GHz (without nstrem) to using Nv2 at 5GHz. If you change the AP from
802.11a to Nv2, you don't want the client to release it for more than a few
seconds during the upgrade.
Assuming the client is able to operate with Nv2 (the correct hardware,
encryption key and the correct version of ROS), the settings for 'wireless
protocol' must be enabled on the client so that the client can automatically
detect the protocol used by the AP and continue to connect with 802.11a or
Nv2: (select all that apply)
a. Nv2
b. Nv2-nstreme-802.11
c. anything
d. not specified
answer: b
b. Instal Linux
d. Reinstall RouterOS
answer: a,d
b. Save the configuration, but reset the admin password that is missing
c. Reinstall the software without losing the license
answer: a,c
121. In Winbox, hide password is not checked so it can show a password for
the following
a. RouterOS User
b. User Hotspot
c. RADIUS User
d. PPP Secret
answer: b, c, d
d. Can deny access to certain domains or servers, but not specific web pages
answer: a, b
a. Cache path
b. Disk Cache
d. Cache On Disk1
answer: a
124. One of the network security can be done by the port knocking method,
for example before being able to access a server the user must first send a
packet with a certain size, for example 1000 bytes. What parameters in the
firewall can we use to detect the size of a packet?
a. Package Size
b. Counter Package
c. Conten Size
d. Counting Package
answer: a
125. If we use simple queues, what parameters determine the total amount
of automatic downloads and uploads
answer: a
126. One of the functions that exist in RouterOS is SMS, the RouterOS system
can be instructed to send an SMS to a certain number. What additional
tools are needed so that this can be done?
a. GSM mode
b. SMS server
c. SMS gateway
answer: a
127. On Mikrotik wireless there is a tool that can detect the percentage of
density usage around the frequency?
a. freq. used
b. a scan
c. snooper
d. sniff
answer: a
a. 10.10.10.191
b. 10.10.10.164
c. 10.10.10.192
d. 10.10.10.165
e. 10.10.10.190
answer: a
a. prevent looping
answer: a
130. What parameters impose limits on a Queues that can be reached if the
perent above still has residual bandwidth that can be used?
a. max limit
b. max bandwidth
c. max queue
d. max rate
answer: a
131. Among the flow packets containing input, output, and postrouting,
which packet is the last packet, if the data packet from outside the router
goes to the router?
a. the input
b. the output
c. postrouting
answer: a
132. If you want to use pcq for per-protocol perimeter, for example web,
email, ftp, etc. What classifier should we use to identify upload traffic?
a. Src. Address
b. Etc. Address
c. Upload Target
d. Upstream Tager
answer: a
133. Before installing a wireless access point radio, it helps you scan the
area, Name 2 wireless tools that can be used to scan!
a. snooper
b. a scan
c. scanning
d. sniffing
answer: a and b
134. What tools can monitor the amount of traffic on an interface and will
run a triger if there is a change in traffic passing under certain tools?
a. monitor traffic
b. monitoring interface
c. traffic interface
d. torch
answer: a
Answer: b
136. When a packet is sent, then the process of adding packet header is
known as?
a. encapsulation
b. decapsulation
c. compression
d. labeling
answer: a
137. Regarding the OSI layer, which layer is responsible for maintaining the
host to host connection and also the stability of the connection?
a. Transport Layer
b. Network Layer
c. Session Layer
d. Presentation Layer
Answer: a
138. HTTPS protocol usually uses TCP protocol and port 443. Mention the
type of tunnel that is supported by proxy which also uses the protocol and
the port!
a. OVPN
b. PPTP
c. PPOE
d. L2TP
Answer: a
139. Mikrotik has a DHCP client feature that can get IP automatically from a
DHCP server. Mention 2 types of interfaces that can be used as DHCP clients
in addition to Ethernet!
a. wireless
b. bridge
c. vlan
d. pppeo
answer: a, b, c
140. Regarding routing, the default route on the proxy can be monitored
using the check gateway feature. Mention 2 monitoring methods that are
applied to the check gateway process?
a. Arp
b. Ping
c. Trace
d. Trace route
e. Answer: a, b
141. On a web proxy we can limit the total cache amount on our OS router.
What parameters can we use to do this?
Answer: a
142. We can block certain data packages by using the firewall filter feature.
What parameters can we use to detect data packages both the source port
and the destination port on a connection?
a. Protocol
b. Port
c. In Interfaces
d. Out Interfaces
e. Target Port
f. Protocol Target
Answer: a, b
143. We want to use multilevel HTB with simple queue so there are rules
that function as parents and there are several rules that function as
children. what should we fill in the target parameter in the parent rule
a. 0.0.0.0/0
b. Interface Parent
c. All Interfaces
Answer: a
144. There are various tools provided on the proxy for monitoring
networks. What monitoring tools are able to identify the protocol as well as
the port in realtime?
a. Torch
b. Traffic Monitoring
c. Graph
d. Realtime Traffic
Answer: a
146. There are features on the proxy where the Ethernet interface that is in
the routerboard can be combined into 1 segment but it can also be
transferred without the need to overload the CPU. What features does this
feature use?
a. Switch chip
b. Master-Slave
c. Hardware-Offload
d. Bridge
Answer: a
a. Target-address
b. Max limit
c. Etc. Adreess
d. Limit-At
e. Priority
f. Parent
g. Queue Type
h. Time
Answer: a, b
b. in interface
c. in interfaces list
answer: a
149. Simple Queue number 0 defines 2M for upload and download for
target IP 10.10.0.33.
Simple Queue number 1 defines 4M for upload and download for target IP
10.10.0.33.
Answer: a
Which queue will get more bandwidth than the limit-at in the worst case
scenario?
Select one:
a.C3
b. C1
c. D1
d. C2
e. D2
Answer: D
Soal MTCNA 1-20 Klik Link Soal MTCNA 21-40 Klik Link Soal MTCNA 41-60
Klik Link Soal MTCNA 61-80 Klik Link Soal MTCNA 81-95 Klik Link Soal
MTCNA 96-120 Klik Link Soal MTCNA 121-150 Klik Link Soal MTCNA 150
English Version Klik Link
Thanks for reading 150 Question Certificate Mikrotik MTCNA 2020 (English Version). Please
share...!