Question 1 of 30
In a service provider network, an engineer is tasked with implementing BGP security measures to mitigate risks associated with route hijacking. The engineer decides to utilize RPKI (Resource Public Key Infrastructure) to validate BGP route announcements. Given a scenario where a malicious entity attempts to advertise a prefix that it does not own, what would be the expected outcome if RPKI is correctly implemented and the network is configured to reject invalid routes? Additionally, consider the implications of BGP TTL Security in this context. How would the combination of these two security measures enhance the overall integrity of the BGP routing table?
The network will reject the invalid route advertisement, preventing the malicious entity from hijacking the prefix, while BGP TTL Security will help mitigate the risk of spoofed packets reaching the BGP peers.
The network will accept the invalid route advertisement, allowing the malicious entity to hijack the prefix, while BGP TTL Security will have no effect on the situation.
The network will accept the invalid route advertisement but will log the event for future analysis, while BGP TTL Security will only protect against local attacks.
The network will reject the invalid route advertisement, but BGP TTL Security will not provide any additional protection against route hijacking.

Preparing for CISCO 300-510 Implementing Cisco Service Provider Advanced Routing Solutions (SPRI)? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free