easyMultiple Choice
300-410 Practice Question: Runs the following command on Router R1: R1# show…
A network engineer runs the following command on Router R1:
R1# show ip interface GigabitEthernet0/1
GigabitEthernet0/1 is up, line protocol is up Internet address is 10.1.1.1/24 Broadcast address is 255.255.255.255 Address determined by non-volatile memory MTU is 1500 bytes Helper address is not set Directed broadcast forwarding is disabled Outgoing access list is 101 Inbound access list is not set
Based on this output, which statement is correct?
⚠ Common exam trap
Cisco often tests the distinction between inbound and outbound ACL application by showing only one direction in the output, leading candidates to assume no ACL is applied or that it applies to both directions.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
ACL 101 filters traffic leaving the interface.
The command output shows 'Outgoing access list is 101', which indicates that ACL 101 is applied to filter traffic leaving the GigabitEthernet0/1 interface. This is confirmed by the absence of an 'Inbound access list' entry, meaning no ACL is applied to incoming traffic. Therefore, ACL 101 filters traffic leaving the interface.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
ACL 101 filters traffic entering the interface.
Why it's wrong here
The line "Outgoing access list is 101" places ACL 101 on outbound traffic; the inbound field reads "not set", so nothing filters entering packets. It tempts because ACLs are commonly applied inbound, but this interface uses the outbound direction. Direction is determined by which field names the list.
- ✓
ACL 101 filters traffic leaving the interface.
Why this is correct
The line "Outgoing access list is 101" confirms ACL 101 is applied in the outbound direction, filtering packets leaving GigabitEthernet0/1. The inbound line reads "not set", so the ACL affects egress traffic only, matching the statement.
- ✗
The interface has no ACL applied.
Why it's wrong here
The output lists "Outgoing access list is 101", so an ACL is applied, in the outbound direction; only the inbound field is unset. Claiming no ACL ignores the populated outgoing field. It tempts because "Inbound access list is not set" suggests no filtering, but that line covers one direction only.
- ✗
ACL 101 is applied in both directions.
Why it's wrong here
Only the outgoing field references ACL 101; the inbound field states "not set", so the list filters one direction, not both. Applying an ACL in both directions requires separate inbound and outbound entries. It tempts because the same number could be reused per direction, but the output shows only outbound configured.
Visual reference
Go deeper
Related to this question
About these practice questions
This 300-410 question is part of Courseiva's 1,401-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 300-410 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 300-410 exam.