BlackFriday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Juniper Exam JN0-664 Topic 2 Question 35 Discussion

Actual exam question for Juniper's JN0-664 exam
Question #: 35
Topic #: 2
[All JN0-664 Questions]

Refer to the exhibit.

Click the Exhibit button.

Referring to the exhibit, you must provide VRF Internet access over a single connection for VPN-A Site 1, which connects to PE-1.

Which two statements are correct in this scenario? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: A, B

In the provided exhibit, the configuration involves using a RIB (Routing Information Base) group to facilitate internet access for VPN-A Site 1 through PE-1. The goal is to provide VRF Internet access over a single connection.

1. **Understanding RIB Groups**:

- RIB groups allow for the import and export of routes between different routing tables.

- In this scenario, we have two RIBs: `inet.0` (the main routing table) and `VPN-A.inet.0` (the VRF-specific routing table).

2. **Statement Analysis**:

- **A. You must use the RIB group to move a default route, which is learned through BGP, from the inet.0 table to the VPN-A.inet.0 table.**

- Correct. To provide Internet access to VPN-A, the default route (0.0.0.0/0) learned via BGP in the `inet.0` table must be made available in the `VPN-A.inet.0` table. This is done using the RIB group to import the default route.

- **B. You do not need to use the RIB group to move interface routes from the inet.0 table to the VPN-A.inet.0 table.**

- Correct. Interface routes (connected routes) are typically directly added to both the global and the VRF routing tables without needing a RIB group. These routes are known to the VRF because the interfaces are part of the VRF configuration.

- **C. You do not need to use the RIB group default route, which is learned through BGP, from the inet.0 table to the VPN-A.inet.0 table.**

- Incorrect. As discussed, the default route needs to be imported into the VRF's routing table using a RIB group to enable Internet access for the VRF.

- **D. You must use the RIB group to move interface routes from the inet.0 table to the VPN-A.inet.0 table.**

- Incorrect. Interface routes are directly associated with the VRF interfaces and are automatically known to the VRF routing table. There is no need to use a RIB group for these routes.

**Conclusion**:

The correct answers are:

**A. You must use the RIB group to move a default route, which is learned through BGP, from the inet.0 table to the VPN-A.inet.0 table.**

**B. You do not need to use the RIB group to move interface routes from the inet.0 table to the VPN-A.inet.0 table.**

**Reference**:

- Juniper Networks Documentation on RIB Groups: [RIB Groups Overview](https://www.juniper.net/documentation/en_US/junos/topics/concept/rib-groups-overview.html)

- Junos OS VPNs Configuration Guide: [Junos VPNs Configuration](https://www.juniper.net/documentation/en_US/junos/topics/concept/vpns-overview.html)


Contribute your Thoughts:

Afton
23 days ago
This is a piece of cake! B and D are the answers. I could do this in my sleep. Oh wait, maybe I already did - that would explain a lot about my study habits.
upvoted 0 times
...
Ona
25 days ago
C and D, for sure. Why would you need to use the RIB group for the default route? That's just silly. But the interface routes, yeah, you gotta move those over.
upvoted 0 times
Ellsworth
7 days ago
Yeah, using the RIB group for the default route seems unnecessary. Interface routes are the ones that need to be moved.
upvoted 0 times
...
Yuette
13 days ago
I agree, C and D are the correct statements. Moving interface routes is necessary.
upvoted 0 times
...
...
Sina
28 days ago
Hmm, this seems tricky. I'm going to go with A and D. Moving that default route to the VPN-A table is key, and you definitely need to use the RIB group for the interface routes.
upvoted 0 times
Selma
12 days ago
Definitely, A and D are the way to go. It's important to ensure proper routing for VPN-A Site 1 over a single connection.
upvoted 0 times
...
Cassie
13 days ago
Yes, using the RIB group for both tasks is crucial in this scenario. Good call on selecting A and D.
upvoted 0 times
...
Layla
15 days ago
I agree, A and D are the correct choices. Moving the default route and interface routes is essential for VRF Internet access.
upvoted 0 times
...
...
Lamar
2 months ago
I'm not sure about option B and C, but I think we definitely need to use the RIB group for this scenario.
upvoted 0 times
...
Lou
2 months ago
I think B and D are the correct answers here. You don't need to use the RIB group to move the default route, but you do need to use it for the interface routes.
upvoted 0 times
Maryrose
19 days ago
It's important to ensure VRF Internet access over a single connection for VPN-A Site 1.
upvoted 0 times
...
Jacqueline
21 days ago
Using the RIB group for interface routes makes sense.
upvoted 0 times
...
Carri
24 days ago
I agree, B and D are the correct answers.
upvoted 0 times
...
...
Linette
2 months ago
I agree with you, Sharen. Option D also seems correct as we need to move interface routes from inet.0 table to VPN-A. inet.0 table.
upvoted 0 times
...
Sharen
2 months ago
I think option A is correct because we need to move the default route from inet.0 table to VPN-A. inet.0 table.
upvoted 0 times
...

Save Cancel