mediumMultiple Select
300-410 Practice Question: Which TWO commands can be used to verify DHCP…
Which TWO commands can be used to verify DHCP IPv4 server operation and address pool utilization on a Cisco IOS router? (Choose TWO.)
⚠ Common exam trap
Cisco often tests the distinction between verification commands (show) and troubleshooting/debugging commands (debug), leading candidates to mistakenly select 'debug ip dhcp server events' as a verification tool when it is actually a real-time diagnostic command that can impact router performance.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
show ip dhcp binding
Option A, 'show ip dhcp binding', is correct because it displays the DHCP bindings table on the Cisco IOS router, listing each leased IPv4 address along with its associated client identifier (MAC address), lease expiration time, and binding type, which directly verifies that the DHCP server is actively assigning addresses from the pool. Option B, 'show ip dhcp pool', is correct because it reports per-pool utilization statistics, including the total number of addresses in the pool, the number of leased addresses, and the number of available addresses, which is exactly what is needed to assess address pool utilization. Option C, 'show ip dhcp conflict', only lists addresses that the server has detected as conflicting (via ping or ARP) and does not show active leases or pool utilization, so it does not satisfy the requirement. Option D, 'debug ip dhcp server events', is a real-time debugging command that generates verbose event output rather than a verification/status display, and it is not typically used to check pool utilization. Option E, 'show ip interface', displays interface IP configuration and status but provides no DHCP server lease or pool information, so it is irrelevant here.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
show ip dhcp binding
Why this is correct
Lists active leases with client MAC, assigned IP, lease expiry and type, directly confirming the server has allocated addresses. This satisfies the address pool utilisation check by revealing how many bindings exist against pool capacity.
- ✓
show ip dhcp pool
Why this is correct
`show ip dhcp pool` reports per-pool lease utilisation, displaying total addresses, leased counts and remaining availability, which directly satisfies the stem's address pool utilisation requirement. It also confirms the pool is configured and active, verifying DHCP IPv4 server operation alongside the binding table.
- ✗
show ip dhcp conflict
Why it's wrong here
show ip dhcp conflict lists addresses the server has marked as conflicted after detection, not pool utilisation or lease counts. It is tempting because it does reveal server-side state, but it answers a different question; show ip dhcp pool or show ip dhcp binding is needed for utilisation figures.
- ✗
debug ip dhcp server events
Why it's wrong here
debug ip dhcp server events is a live troubleshooting trace of DHCP message processing, not a verification command for pool utilisation. It is tempting because it exposes server operation in real time, but it produces no lease-count or pool-statistics output and is disruptive on production devices.
- ✗
show ip interface
Why it's wrong here
show ip interface reports interface line and protocol status, addressing, and access lists, with no DHCP server or pool information. It is tempting because it is a common first-stop verification command, but it cannot display lease bindings, pool utilisation, or DHCP service state.
Visual reference
Quick reference
Access Control Model Comparison
| Model | Acronym | Who Controls Access? | Best For |
|---|---|---|---|
| Discretionary Access Control | DAC | Resource owner | Small teams, file shares |
| Mandatory Access Control | MAC | System / security labels | Classified govt / military |
| Role-Based Access Control | RBAC | Administrator (via roles) | Enterprise environments |
| Attribute-Based Access Control | ABAC | Policy engine (user + resource attributes) | Fine-grained, dynamic policies |
| Rule-Based Access Control | RuBAC | System rules / ACLs | Firewall rules, network ACLs |
Go deeper
Related to this question
About these practice questions
This 300-410 question is part of Courseiva's 1,401-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 300-410 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 300-410 exam.