Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 300-710 Exam - Topic 1 Question 124 Discussion

An engineer must perform a packet capture on a Cisco Secure Firewall Threat Defense device to confirm the MAC address of the host using IP address 192.168.100.100 while troubleshooting an ARP issue. What is the correct tcpdump command syntax to ensure that the MAC address appears in the packet capture output?
D) -ne src 192.168.100.100
A) -w capture.pcap -s 1518 host 192.168.100.100 mac
B) -nm src 192.168.100.100
C) -w capture.pcap -s 1518 host 192.168.100.100 ether

Cisco 300-710 Exam - Topic 1 Question 124 Discussion

Actual exam question for Cisco's 300-710 exam
Question #: 124
Topic #: 1
[All 300-710 Questions]

An engineer must perform a packet capture on a Cisco Secure Firewall Threat Defense device to confirm the MAC address of the host using IP address 192.168.100.100 while troubleshooting an ARP issue. What is the correct tcpdump command syntax to ensure that the MAC address appears in the packet capture output?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Glenn
3 days ago
I think option D is the best choice. It shows the MAC address clearly.
upvoted 0 times
...
Maira
8 days ago
Option D seems too simple for this task.
upvoted 0 times
...
Linsey
13 days ago
Isn't the MAC address always included in the output anyway?
upvoted 0 times
...
Sue
19 days ago
Wait, why would you use "ether" in the command?
upvoted 0 times
...
German
24 days ago
Definitely agree with that!
upvoted 0 times
...
Veronika
29 days ago
I think option C is the right one.
upvoted 0 times
...
Rozella
1 month ago
Is there a reason we need to specify the MAC address like that?
upvoted 0 times
...
Tamar
1 month ago
I thought it was A at first, but C makes more sense.
upvoted 0 times
...
Robt
1 month ago
Wait, why would you use "ether" in that command?
upvoted 0 times
...
Claudio
2 months ago
Definitely agree with C!
upvoted 0 times
...
Mollie
2 months ago
I think option C is the right one.
upvoted 0 times
...
Layla
2 months ago
I’m leaning towards option C, but I’m not completely confident about the syntax. I just remember needing to specify the right size for the capture.
upvoted 0 times
...
Patria
2 months ago
I feel like we did a similar question in class, and I want to say that "-ne" is important for showing the MAC addresses in the output.
upvoted 0 times
...
Verdell
2 months ago
I think option D looks familiar; it seems like the right way to capture MAC addresses, but I can't recall if "src" is the right filter.
upvoted 0 times
...
Marti
4 months ago
I remember we practiced using tcpdump, but I'm not sure if the command needs "ether" or "mac" at the end.
upvoted 0 times
...

Save Cancel