Special Summer Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70special

Cisco 300-420 Designing Cisco Enterprise Networks (ENSLD) Exam Practice Test

Page: 1 / 34
Total 339 questions

Designing Cisco Enterprise Networks (ENSLD) Questions and Answers

Testing Engine

  • Product Type: Testing Engine
$42  $139.99

PDF Study Guide

  • Product Type: PDF Study Guide
$36  $119.99
Question 1

Which WAN connectivity technology is optimal for edge computing compared to others and why?

Options:

A.

Due to low latency, high bandwidth, and closest proximity to the user. 4G/5G connectivity is the optimal WAN technology for edge computing compared to L3 VPN MPLS connectivity, which offers native separation and security with close proximity to the data center.

B.

Due to high bandwidth, separation and security, and proximity to the data center network. DWDM Is the optimal WAN technology lor edge computing compared to 4G/5G connectivity, which offers native separation and security with close proximity to the data center.

C.

Due to low latency, high bandwidth, and closest proximity to the user, L3 VPN MPLS connectivity is the optimal WAN technology for edge computing compared to 4G/5G connectivity, which offers native separation and security with close proximity to the data center.

D.

Due to low cost, high bandwidth, low latency, and closest proximity to the edge of the network, Mero Ethernet is the optimal WAN technology for edge computing compared to MPLS, which offers native separation and security with close proximity to the data center.

Question 2

Refer to the exhibit An engineer working for a telecommunication company with an employee ID 4449:30 959 Is calculating STP scalability for switches to ensure that the numbers are below the maximum supported value for STP logical ports How many logical interfaces are active for switch A?

Options:

A.

4

B.

307

C.

202

D.

100

Question 3

How is redundancy achieved among Cisco vBond Orchestrators in a Cisco SD-WAN deployment?

Options:

A.

The IP addresses of all Orchestrators are mapped to a single DNS name.

B.

The closest Orchestrator to each Cisco WAN Edge router is selected.

C.

Cisco WAN Edge routers are configured with all Orchestrators using their IP addresses and priority.

D.

A single Cisco Orchestrator is deployed in each network.

Question 4

An architect must design a topology for a WAN network that satisfies these requirements:

    Devices must be able to make informed decisions.

    Suboptimal paths are allowed only In case of a failure.

    Backup paths must always be available.

Which topology must the architect select?

Options:

A.

partial mesh

B.

hub and spoke

C.

full mesh

D.

Clos

Question 5

A router running ISIS is showing high CPU and bandwidth utilization. An engineer discovers that the router is configured as L1/L2 and has L1 and L2 neighbors. Which step optimizes the design to address the issue?

Options:

A.

Make this router a DIS for each of the interfaces

B.

Disable the default behavior of advertising the default route on the L1/L2 router

C.

Configure the router to be either L1 or L2

D.

Configure each interface as either L1 or L2 circuit type

Question 6

Which two statements describe source trees in a multicast environment? (Choose two.)

Options:

A.

Source trees guarantee the minimum amount of network latency for forwarding multicast traffic

B.

Source trees create an optimal path between the source and the receivers

C.

Source trees use a single common root placed at some chosen point in the network

D.

Source trees can introduce latency in packet delivery

E.

Source trees can create suboptimal paths between the source and the receivers

Question 7

An engineer must connect a new remote site to an existing OSPF network. The new site consists of two low-end routers, one for WAN, and one for LAN. There is no demand for traffic to pass through this area. Which area type does the engineer choose to provide minimal router resources utilization, while still allowing for full connectivity to the rest of the network?

Options:

A.

not so stubby

B.

totally not so stubby

C.

totally stubby area

D.

stubby area

Question 8

When designing interdomain multicast, which two protocols are deployed to achieve communication between multicast sources and receivers? (Choose two.)

Options:

A.

IGMPv2

B.

BIDIR-PIM

C.

MP-BGP

D.

MSDP

E.

MLD

Question 9

Refer to the exhibit.

C0FD9F48 C9ACDC725EA850EC2476EE1E

A network engineer is designing a network for AS100. The design should ensure that all traffic enters AS100

via link 1 unless there is a network failure. In the event of a failure, link 2 should function as the path for

incoming traffic. Which solution should the design include?

Options:

A.

Modify the next-hop attribute on R3.

B.

Use AS-Path prepending on R3.

C.

Modify the next-hop attribute on R4.

D.

Use AS-Path prepending on R4.

Question 10

An engineer is designing a Layer 3 campus network running EIGRP between the core, aggregation, and access layers. The access layer switches will be connected to the aggregation layer using Layer 3 copper connections. The engineer wants to improve convergence time for access layer switch failures. Which technique must the design include?

Options:

A.

enabling BFD for EIGRP on the access layer uplinks

B.

reducing the EIGRP Hello / Hold timer values

C.

EIGRP summarization from core to aggregation layer

D.

EIGRP summarization from access to aggregation layer

Question 11

Drag and drop the types of WAN connectivity from the left onto the connectivity use cases on the right.

Options:

Question 12

A company’s branch location uses redundant routers and links for connectivity to the headquarters. Also, to use the entire available bandwidth, the branch uses a dynamic routing protocol. An architect must design a multicast streaming solution to avoid RPF check failures because of the current network design. Which deployment model must the architect choose?

Options:

A.

PIM-SM

B.

BIDIR-PIM

C.

PIM-BSR

D.

PIM-SSM

Question 13

Drag and drop the elements from the left onto the functions they perform in the Cisco SD-WAN architecture on the right.

Options:

Question 14

How is internet access provided to a WAN edge router that is connected to a MPLS transport link?

Options:

A.

OMP advertises a default route from a WAN Edge router that is connected to the MPLS and internet transport networks

B.

Internet access must be provided at the WAN Edge router through either a 4G/5G link or local Internet circuit

C.

An extranet must be provided in the MPLS transport network to allow private traffic to reach the public internet

D.

TLOC extensions are used to route traffic to a WAN Edge router that is connected to the Internet transport network

Question 15

Currently, inter-VRF routing between the global routing table and VRF-A is accomplished on the client firewall, but the customer wants to do this on the core network layer. The customer does not want to run BGP, VRF-Lite: or static routing Which mechanism meets the requirements?

Options:

A.

policy-based routing with the global set statement in a route map

B.

route map that matches access lists and prefix lists with the import feature

C.

inter-VRF can only be used on an external device with a link in each VRF

D.

VRF receive feature under the global routing interfaces

Question 16

Refer to the exhibit. A customer is planning to onboard three new VPN partner connections in the data center. The new subnets must not overlap with the existing data center network, and the subnet size must not be bigger than necessary. The customer dedicated 10.1.8.0/21 for this design. Ho1// must the subnets be divided to meet these requirements?

A)

B)

C)

D)

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Question 17

Refer to the exhibit An engineer is designing a hierarchical ISIS solution for an enterprise customer with these requirements

    Users in areas 25 and 55 send and receive traffic from both backbone areas

    Link flaps in areas 35 and 45 must not impact other areas

    Routers will double within the next 12 months in areas 35 and 45

Which design must the engineer select?

Options:

A.

A series routers Level 2, B series routers Level 2, and C series routers Level 1

B.

A series routers Level 1/2 B series routers Level 2 and C series routers Level 2

C.

A series routers Level 1. B series routers Level 1/2. and C series routers Level 2

D.

A series routers Level 1.2 B series routers Level 1/2 and C series routers Level 1/2

Question 18

Which nonproprietary mechanism can be used to automate rendezvous point distribution in a large PIM domain?

Options:

A.

Embedded RP

B.

BSR

C.

Auto-RP

D.

Static RP

Question 19

Refer to the exhibit. A customer is planning to deploy a new branch in New York. The new office will not exceed 1024 users. Which subnet must be used to provide maximum number of host addresses while not providing more than necessary?

Options:

A.

192.168.8.0/21

B.

192.168.16.0/22

C.

192.168.16.0/21

D.

192.168.8.0/22

Question 20

What are two characteristics of a migration from an IP-VPN service to a Cisco SD-WAN architecture? (Choose two.)

Options:

A.

increased solution complexity

B.

increased security

C.

increased scalability

D.

centralized application policies

E.

distributed control plane

Question 21

Which consideration must be taken into account when using the DHCP relay feature in a Cisco SD-Access Architecture?

Options:

A.

DHCP-relay must be enabled on fabric edge nodes to provide the correct mapping of DHCP scope to the local anycast gateway.

B.

A DHCP server must be enabled on the border nodes to allow subnets to span multiple fabric edges.

C.

DHCP servers must support Cisco SD-Access extensions to correctly assign IPs to endpoints in an SD-Access fabric with anycast gateway.

D.

DHCP Option-82 must be enabled to map the circuit IP option to the access fabric node where the DHCP discover originated.

Question 22

An engineer working for a service provider with an employee ID: 4863:43:939 must design a solution to provide remote connectivity over the public internet. The design must:

    securely connect multiple remote sites to the central site

    provide redundant paths to the central site

    allow auto path selection based on failure and connection quality

    support IP multicast

    minimal configuration at remote sites

Which solution must the engineer choose?

Options:

A.

MPLS provided service with BGP

B.

dual DMVPN with EIGRP routing

C.

full mesh OSPF with IPsec tunnels

D.

full mesh ISIS with GRE tunnels and IPsec

Question 23

An architect must address sustained congestion on the access and distribution uplink of network. QoS has already been implemented and optimized, but it is no longer effective in ensuring optimal network performance. Which two solutions should the architect use to improver network performance? (Choose two)

Options:

A.

Reconfigure QoS based on the IntServ model

B.

Utilize random early detection to manage queues

C.

Implement higher-speed uplink interfaces

D.

Bundle additional uplinks into logical EtherChannels

E.

Configure selective packet discard to drop noncritical network traffic.

Question 24

An engineer must design a VPN solution for a company that has multiple branches connecting to a main office. What are two advantages of using DMVPN instead of IPsec tunnels to accomplish this task? (Choose

two.)

Options:

A.

support for AES 256-bit encryption

B.

greater scalability

C.

support for anycast gateway

D.

lower traffic overhead

E.

dynamic spoke-to-spoke tunnels

Question 25

An engineer must design a scalable QoS architecture that allows the separation of the traffic into classes on predefined business requirements. The design must also utilize the differentiated services code points as the QoS priority descriptor value and support at least 10 levels of classification. Which QoS technology should the engineer include in the design?

Options:

A.

RSVP

B.

Diffserv

C.

Best effort

D.

Interserv

Question 26

Refer to the exhibit. An engineer must ensure that the QoS design guarantees bandwidth for the applications, and an application can request a particular type of service to support its delay requirements. Which solution must the engineer select?

Options:

A.

Diffserv with RSVP

B.

IntServ with RSVP

C.

Diffserv with DSCP

D.

IntServ with DSCP

Question 27

Which feature must be incorporated into the campus LAN design to enable Wake on LAN?

Options:

A.

dynamic ARP Inspection Snooping on layer 2 devices

B.

directed broadcasts on layer 3 devices

C.

proxy ARP on layer 3 devices

D.

DHCP Snooping on layer 2 devices

Question 28

Which two techniques improve the application experience in a Cisco SD-WAN design? (Choose two.)

Options:

A.

utilizing forward error correction

B.

implementing a stateful application firewall

C.

implementing AMP

D.

utilizing quality of service

E.

implementing Cisco Umbrella

Question 29

A company requires a private WAN design that allows remote sites to connect to HQ. The design must ensure that:

    traffic is always encrypted

    forwarding overhead is reduced

    management of security Is centralized

    multicast traffic is supported

Which technology must the company select?

Options:

A.

iPiac P2P

B.

GET VPN

C.

DMVPN Phase 3

D.

mGRE

Question 30

An engineer must propose a solution for a campus network that includes the capability to create multiple Layer 3 virtual networks. Each network must have its own addressing structure and routing table for data forwarding. The solution must be scalable to support hundreds of virtual networks and allow simple configuration and management with minimal administrative overhead. Which solution does the engineer recommend?

Options:

A.

hop-by-hop EVN

B.

multihop MPLS core

C.

multihop IPsec tunneling

D.

hop-by-hop VRF-Lite

Question 31

What is the purpose of an edge node in an SD-Access network fabric?

Options:

A.

Edge nodes identify and authenticate endpoints and register endpoint information with control plane nodes.

B.

Edge nodes track endpoint IDs to location mappings, along with IPv4, IPv6, or MAC addresses.

C.

Edge nodes are the gateway between the fabric domain and network outside of the fabric.

D.

Edge nodes resolve lookup requests from edge and border nodes to locate destination endpoint IDs.

Question 32

An engineer must design an addressing plan for a small business using a single /24 network. Each department must have its own subnet. Drag and drop the subnets from the left onto the departments requirements that they fulfill on the right. Not all options are used.

Options:

Question 33

Refer to the exhibit. An architect is designing a Layer 2 network for a customer. The network will use the spanning-tree protocol. During a link failure between SW1 and SW2, the fastest possible convergence time is desired. Which solution must the architect select?

Options:

A.

Loop Guard

B.

UplinkFast

C.

PortFast

D.

BackboneFast

Question 34

An engineer must design a QoS solution for a customer. The network currently supports data only, but the

customer will roll out VoIP and IP video in conjunction with the new QoS solution. The engineer plans to use

DiffServ. To ensure priority for voice services, which model must the design include?

Options:

A.

8-class model

B.

4-class model

C.

6-class model

D.

12-class model

Question 35

A company is planning to open two new branches and allocate the 2a01:c30:16:7009::3800/118 IPv6 network for the region. Each branch should have the capacity to accommodate maximum of 200 hosts. Which two networks should the company use? (Choose two.)

Options:

A.

2a01:0c30:0016:7009::3a00/120

B.

2a01:0c30:0016:7009::3b00/121

C.

2a01:0c30:0016:7009::3a80/121

D.

2a01:0c30:0016:7009::3b00/120

E.

2a01:0c30:0016:7009::3c00/120

Question 36

Which feature minimizes TLOC connections and reduces strain on the vSmart controller in an SD-WAN architecture?

Options:

A.

control-direction

B.

affinity

C.

color

D.

control-connections

Question 37

An engineer is designing a BGP network for a large customer. To permit efficient scaling, the BGP domain is split into clusters. Which peering solution should be used between the route reflectors in different clusters for the BGP routes to be propagated appropriately?

Options:

A.

The route reflectors should be made dents of each other.

B.

The route reflectors should be nonclients with regards to each other.

C.

The route reflectors should not have any kind of BGP peering.

D.

The route reflectors should have peering through another nonclient router.

Question 38

A customer is discussing QoS requirements with a network consultant. The customer has specified that end-to-end path verification is a requirement. Which QoS solution meets this requirement?

Options:

A.

IntServ model with RSVP to support the traffic flows

B.

DiffServ model with PHB to support the traffic flows

C.

marking traffic at the access layer with DSCP to support the traffic flows

D.

marking traffic at the access layer with CoS to support the traffic flows

Question 39

In a cisco SD-Access brownfield deployment scenario, which configuration deployment must be taken with Cisco DNA center?

Options:

A.

Subnet stretching

B.

LAN automation

C.

Automated UNDERLAY

D.

Manual underlay

Question 40

A company wants to switch from static routing to a dynamic routing protocol to ease the administrative and operational overhead. The network topology is hub and spoke, and the branches use DMVPN back to the hub using two 100 Mbps internet connections. Both links must be used due to spikes in traffic, and routing must take traffic utilization of the links into account. Also, the branch routers have limited memory and CPU resources. Which routing protocol and design solution must the company choose?

Options:

A.

iBGP with the hub routers set up as route reflectors and branches set up as clients

B.

OSPF deployed in area 0 with branch routers connecting from area 1

C.

ISIS with the hub and spoke routers configured in two different areas

D.

EIGRP with branch routers as stub routers using ECMP

Question 41

What is the purpose of service routes in OMP updates?

Options:

A.

specify routes toward a centralized orchestration plane

B.

describe underlay transport Information

C.

define the remote management Information

D.

indicate services that are enabled for service insertion

Question 42

Refer to the exhibit. The connection between SW2 and SW3 is fiber and occasionally experiences unidirectional link failure. An architect must optimize the network to reduce the change of layer2 forwarding loops when the link fails. Which solution should the architect include?

Options:

A.

Utilize 8PDU filter on SW3.

B.

Utilize loop guard on SW2

C.

Utilize BPDU guard on SW1

D.

Utilize root guard on SW1.

Question 43

Refer to the exhibit. Which two points in the network must an engineer configure the ports for explicit trust when using a DiffServ model?

Options:

A.

B and E

B.

F and G

C.

A and D

D.

C and D

Question 44

What is the purpose of a TLOC extension in a Cisco SD-WAN network fabric?

Options:

A.

to facilitate WAN Edge router redundancy within a site

B.

to identify the physical interface where a WAN Edge router connects to the WAN transport network

C.

to expand the number of colors that are potentially applied to a network transport interface

D.

to aggregate multiple physical interfaces into a single logical Interface

Question 45

Which node performs the LISP Map-Server and Map-Resolver functions in the Cisco SD-Access network architecture?

Options:

A.

control plane node

B.

fabric edge node

C.

border node

D.

intermediate node

Question 46

What is the main purpose of the Cisco SD-Access underlay design?

Options:

A.

to enable automated network provisioning and configuration

B.

to support advanced firewall and IPS features

C.

to optimize network traffic routing and load-balancing

D.

to provide network segmentation and isolation for security

Question 47

What is the purpose of a Cisco SD-Access underlay network?

Options:

A.

to abstract IP-based connectivity from physical connectivity

B.

to emulate LAN segments to transport Layer 2 frames over a Layer 3 network

C.

to establish physical connectivity between switches and routers

D.

to provide virtualization by encapsulating network traffic over IP tunnels

Question 48

Prior to establishing full-mesh iPsec tunnels in a typical Cisco SD-WAN deployment, which mechanism do WAN Edge routers use to exchange Key information for data plane encryption?

Options:

A.

They use vSmart controllers as key exchange servers.

B.

They use vManage as a key exchange server.

C.

They use IKEv2 when exchanging keys with each other.

D.

They use vBond as a key exchange server.

Question 49

An engineer is tasked with designing a dual BGP peering solution with a service provider. The design must meet these conditions:

    The routers will not learn any prefix with a subnet mask greater than /24.

    The routers will determine the routes to include in the routing table based on the length of the mask alone.

    The routers will make this selection regardless of the service provider configuration.

Which solution should the engineer include in the design?

Options:

A.

Use a route map and access list to block the desired networks, and apply the route map to BGP neighbors inbound.

B.

Use a route map and prefix list to block the desired networks, and apply the route map to BGP neighbors outbound.

C.

Use an IP prefix list to block the desired networks and apply the IP prefix list to BGP neighbors outbound.

D.

Use an IP prefix list to block the desired networks and apply the IP prefix list to BGP neighbors inbound.

Question 50

Refer to the exhibit. An architect designs a BGP policy for a customer that requires load sharing of the links that connect with the upstream service provider. The customer has these requirements: • The inbound traffic destined to network 10.1.1.0/24 must transit the R3-R1 link, and if the link fails, all inbound traffic must transit the R4-R2 link.

• The inbound traffic destined to network 10.1.2.0/24 must transit the R4-R2 link, and if the link fails, all inbound traffic should transit the R3-R1 link.

Which solution must the architect choose?

Options:

A.

• R1 must announce prefix 10.1.2.0/24 with the route map applied to the neighbor using set as-path prepend 64512 64512

• R2 must announce prefix 10.1.1.0/24 with the route map applied to the neighbor using set as-path prepend 64512 64512.

B.

• R1 must announce prefix 10.1 2.0/24 with a community attribute 64513:300 and prefix 10.1.1.0/24 with a community attribute 64513:200.

• R2 must announce prefix 10.1.2.0/24 with a community attribute 64513:200 and prefix 10.1.1.0/24 with a community attribute 64513:300.

C.

• R1 must announce prefix 10.1.1.0/24 with the route map applied to the neighbor using set as-path prepend 64512 64512.

• R2 must announce prefix 10.1.2.0/24 with the route map applied to the neighbor using set as-path prepend 64512 64512.

D.

• R1 must announce prefix 10.1.2.0/24 with a community attribute 64513:200 and prefix 10.1.1.0/24 with a community attribute 64513:300.

• R2 must announce prefix 10.1.2.0/24 with a community attribute 64513:300 and prefix 10.1.1.0/24 with a community attribute 64513:200.

Question 51

Refer to the exhibit. An architect is designing a network that requires route redistribution. The design must prevent route feedback and the creation of routing loops. The OSPF domain is using default metrics, and the IS-IS domain is using narrow metrics. Which solution must the architect select?

Options:

A.

Change the IS-IS administrative distance to 105.

B.

Change the OSPF area to a nonbackbone stub area

C.

Use route filtering with an ACL or prefix list.

D.

Use route tagging with a route map.

Question 52

Refer to the exhibit. An architect must design a solution to connect the network behind R3 with the EIGRP network. Which mechanism should be included to avoid routing loops?

Options:

A.

split-horizon

B.

summarization

C.

down bit

D.

route tags

Question 53

Which type of rendezvous point deployment is standards-based and support dynamic RP discovery?

Options:

A.

Auto-RP

B.

Anycast-RP

C.

bootstrap router

D.

static RP

Question 54

Refer to the exhibit. A network engineer with an employee ID: 4384:99:754 must design a BGP solution based on these conditions:

    Traffic sessions occur between the branches and the data center.

    Branch B has limited resources to process routing updates.

    HQ must filter out all prefixes from branch A to R4.

Which outbound route filtering (ORF) solution must the engineer choose?

Options:

A.

Use a prefix list with the 192.168.10.0/24 subnet for ORF on R4.

B.

Use a prefix list with the 10.10.10.0/24 subnet for ORF on R2

C.

Use a prefix list with the 10.10.10.0/24 subnet for ORF on R5.

D.

Use a prefix list with the 192.168.10.0/24 subnet for ORF on R2.

Question 55

Drag and drop the elements from the left onto the YANG models where they and used on the right.

Options:

Question 56

An engineer must design a QoS solution for a customer that is connected to an ISP over a 1Gbps link with a 100Mbps CIR. The ISP aggressively drops all traffic received over which is causing numerous TCP retransmissions. The customer is not using any RTP applications but wants to maximize bandwidth usage up to the CIR. Which QoS solution engineer choose?

Options:

A.

Policing

B.

Traffic shaping

C.

Policer with markdown

D.

Queuing

Question 57

Which two overlay network design considerations must be made for a Cisco SD-Access network? (Choose two.)

Options:

A.

LAN automation for deployment

B.

Layer 3 to the access design

C.

Reduce subnets and simplify DHCP management

D.

Dedicated IGP process for the fabric

E.

Avoid overlapping IP subnets

Question 58

Drag and drop the properties from the left onto the Cisco SD-WAN components that perform them on the right.

Options:

Question 59

Refer to the exhibit. An engineer must connect the IPv6 island to the IPv4-only network to provide IPv6 hosts access to file servers and DNS services in the IPv4 network. Which NAT should the engineer choose?

Options:

A.

stateless NAT66

B.

stateful NAT66

C.

static NAT-PT

D.

dynamic NAT-PT

Question 60

Which two functions is the Cisco SD-Access Edge Node responsible for? (Choose two.)

Options:

A.

Act as anycast layer 3 gateway

B.

Advertise EID subnets

C.

Map users to virtual network

D.

Act as LISP proxy tunnel router

E.

Route and transport IP traffic

Question 61

What is the purpose of a border node in a Cisco SD-Access fabric?

Options:

A.

connect devices to a network

B.

perform traffic encapsulation and de-encapsulation

C.

perform network virtualization

D.

expand a network

Question 62

Which feature provides the capability for intra-VN traffic filtering and control within the Cisco SO-Access architecture?

Options:

A.

scalable groups

B.

MAC ACL

C.

prefix list

D.

service policy

Question 63

An engineer is working with NETCONF and Cisco NX-OS based devices. The engineer needs a YANG model that supports a specific feature relevant only to Cisco NX-OS. Which model must the engineer choose?

Options:

A.

Native

B.

IEEE

C.

OpenConfig

D.

IETF

Question 64

A company wants to switch from static routing to a dynamic routing protocol to ease the administrative and operational overhead. The network topology is hub and spoke, and the branches use DM VPN back to the hub with two 10-Mbps internet connections. The branch routers are multivendor and have limited memory and CPU resources. Which routing protocol and design solution meets the requirements?

Options:

A.

eBGP with the hub routers set up as route reflectors

B.

ISIS with the hub and spoke routers configured in two different areas

C.

EIGRP with branch routers as stub routers and variance enabled

D.

OSPF with the hub in area 0 and branch routers in stub areas with ECMP

Question 65

A network engineer prepares a script to configure a loopback interface with IP address 172.16.15.12/32. To comply with the company security policies, 'Content-type':

‘application/yang-data+json‘ is added to the script. Connection to the network devices must be secured. Which code snippet must the network engineer use to meet this requirement?

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Question 66

An engineer must use YANG with an XML representation to configure a Cisco IOS XE switch with these specifications:

    IP address 10.10.10.10/27 configured on the interface GigabitEthernet2/1/0

    connectivity from a directly connected host 10.10.10.1/27

Which YANG data model set must the engineer choose?

A)

B)

C)

D)

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Question 67

Drag and drop the characteristics from the left onto the telemetry mode they apply to on the right.

Options:

Question 68

An architect must design a QoS model for a business-critical application that Is delay-sensitive and requires high bandwidth. The company's head office hosts the application, and DMVPN tunnels protected with IPsec provide connectivity between the head office and branches. Which solution must the architect choose?

Options:

A.

RSVP

B.

IntServ

C.

WRED

D.

DiffServ

Question 69

At which layer does Cisco Express Forwarding use adjacency tables to populate addressing information?

Options:

A.

    Layer4

B.

    Layer 2

C.

    Layer 1

D.

    Layer 3

Question 70

Drag and drop the description from the left onto the corresponding WAN connectivity types and categories on the right.

Options:

Question 71

Refer to the exhibit. An architect is designing an IPv4 plan using the 172.16.0.0/16. The design must maximize the number of subnets while meeting these requirements:

    500 hosts within the server room

    100 hosts at the remote site

    25 hosts at the access site

Which plan must the architect choose?

A)

B)

C)

D)

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Question 72

Refer to the exhibit. Customers report low video quality and delays when having point-to-point telepresence video calls between the two locations. An architect must optimize a design so that traffic follows the same path for egress and ingress traffic flows. Which technique optimizes the design?

Options:

A.

Configure route leaking on the router in area 2.

B.

Configure route leaking on the router in area 1.

C.

Configure the high metric on the router in area 4.

D.

Configure route filter on the router in area 4.

Question 73

What is the purpose of the fabric control plane in a Cisco SD-Access architecture?

Options:

A.

create, propagate, and enforce G6AC policies in the fabric

B.

create a transit node with BGP route reflector functionality

C.

extend multiple subnets to one RLOC

D.

create and resolve endpoint-to-location mapping

Question 74

What does the fabric data plane leverage in SD-Access Architecture?

Options:

A.

LISP protocol to resolve endpoint-to-location mapping

B.

IS-IS protocol to exchange link-state routing information

C.

MAC-in-IP encapsulation method to transport of the Layer 2 frame

D.

BGP protocol to advertise endpoint prefixes outside of the fabric

Question 75

An engineer working for a service provider with an employee ID 4598.48.606 prepared several designs for a traditional campus network. The design must allow the deployment on the same VXLAN to any switch at the access layer and must support:

    Fast convergence

    High availability

    Resilience

Which design must be selected?

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Question 76

What is the purpose of a control plane node in a Cisco SD-Access network fabric?

Options:

A.

to maintain the endpoint database and mapping between endpoints and edge nodes

B.

to detect endpoints in the fabric and inform the host tracking database of EID-to-fabric-edge node bindings

C.

to identify and authenticate endpoints within the network fabric

D.

to act as the network gateway between the network fabric and outside networks

Question 77

An engineer is looking for a standards-driven YANG model to manage a multivendor network environment. Which model must the engineer choose?

Options:

A.

Native

B.

OpenConfig

C.

IETF

D.

IEEE NETCONF

Question 78

An engineer must design a multicast network for a financial application. Most of the multicast sources also receive multicast traffic (many-to-many deployment model). To better scale routing tables, the design must not use source trees. Which multicast protocol satisfies these requirements?

Options:

A.

PIM-SSM

B.

PIM-SM

C.

MSDP

D.

BIDIR-PIM

Question 79

Which two functions are provided by the Cisco SD-WAN orchestration plane? (Choose two.)

Options:

A.

centralized provisioning

B.

primary authentication point

C.

NAT traversal facilitation

D.

Zero Touch Provisioning

E.

troubleshooting and monitoring

Question 80

A customer is undergoing a WAN re-architecture and wants to design QoS policies for remote sites that have low bandwidth. What must be considered to have CBWFQ configured in the parent and child policies in an end-to-end QoS design?

Options:

A.

CBWFQ is only supported in the child policy.

B.

CBWFQ is only supported in the parent policy.

C.

Traffic shaping is required in the parent policy.

D.

Traffic policing is required in the child policy.

Question 81

A company's security policy requires that all connections between sites be encrypted in a manner that does not

require maintenance of permanent tunnels. The sites are connected through a private MPLS-based service that

uses a dynamically changing key and spoke-to-spoke communication. Which type of transport encryption must

be used in this environment?

Options:

A.

GETVPN

B.

DMVPN

C.

GRE VPN

D.

standard IPsec VPN

Question 82

An engineer must use YANG with an XML representation to configure a Cisco IOS XE switch with these specifications:

    IP address 10.10.10.10/27 configured on the interface GigabitEthernet2/1/0

    connectivity from a directly connected host 10.10.10.1/27

Which YANG data model set must the engineer choose?

Options:

A.

Text, letter Description automatically generated

B.

Text, email Description automatically generated

C.

Text, letter Description automatically generated

D.

Text, letter Description automatically generated

Question 83

An engineer is designing a network for a customer running a wireless network with a common VLAN for all APs. The customer is experiencing unicast flooding in the Layer 2 network between the aggregation and access layers. The customer wants to reduce the flooding and improve convergence time. Which solution meets these requirements?

Options:

A.

Migrate all APs to a common Layer 2 access layer switch and run Layer 3 from the aggregation layer to all remaining access layer switches.

B.

Align HSRP primary and STP root bridges and reduce ARP timers to match CAM timers on the aggregation layer switches.

C.

Migrate to a Layer 3 access campus design if the APs can run on separate VLANs.

D.

Align HSRP primary and STP root bridges if the APs cannot run on separate VLANs.

Question 84

Exhibit:

Refer to the exhibit. An engineer is designing a Layer 2 campus network. The design must support fast convergence and leverage as much bandwidth as possible between layers. Distribution switches do support VSS; unfortunately, not all routing protocols are available for use due to license limitations. Which solution must the engineer choose?

Options:

A.

EtherChannel

B.

MEC

C.

RSTP

D.

ECMP

Question 85

What is one function of the vSmart controller in an SD-WAN deployment?

Options:

A.

orchestrates vEdge and cEdge connectivity

B.

responsible for the centralized control plane of the SD-WAN network

C.

provides centralized network management and a GUI to monitor and operate the SD-WAN overlay

D.

provides a data-plane at branch offices to pass traffic through the SD-WAN network

Question 86

Drag and drop the model driven telemetry characteristics from the left onto the mode they belong to on the right.

Options:

Question 87

Which feature is used to optimize WAN bandwidth of IGMP network traffic among WAN Edge routers in the

same VPN?

Options:

A.

IGMPv2

B.

multicast RP

C.

multicast-replicator

D.

multicast service routes

Question 88

A customer’s environment includes hosts that support IPv6-only. Several of these hosts must communicate with a public web server that has only IPv4 domain name resolution. Which solution should the customer use in this environment?

Options:

A.

utilize NAT64 to translate the addresses

B.

Implement NAT44 at the edge of the customer network

C.

use 6to4 and a tunnel to translate the addresses

D.

implement 6PE to resolve hostname resolution

Question 89

Drag and drop the Cisco SD-WAN components from the left onto their definitions on the right.

Options:

Question 90

Refer to the exhibit. All routers currently reside in OSPF area 0. The network manager recently used R1 and R2 as aggregation routers for remote branch locations and R3 and R4 for aggregation routers for remote office locations. The network has since been suffering from outages, which are causing frequent SPF runs. To enhance stability and introduce areas to the OSPF network with the minimal number of ABRs possible, which two solutions should the network manager recommend? (Choose two.)

Options:

A.

a new OSPF area for R1 and R2 connections,with R1 and R2as ABRs

B.

a new OSPF area for R3 and R4 connections,with R5 and R6as ABRs

C.

a new OSPF area for R3 and R4 connections,with R3 and R4as ABRs

D.

a new OSPF area for R1, R2, R3, and R4 connections, with R1, R2, R3, and R4 as

ABRs

E.

a new OSPF area for R1 and R2 connections, with R5 and R6 as ABRs

Question 91

An enterprise customer has these requirements:

    end-to-end QoS for the business-critical applications and VoIP services based on CoS marking.

    flexibility to offer services such as IPv6 and multicast without any reliance on the service provider.

    support for full-mesh connectivity at Layer 2.

Which WAN connectivity option meets these requirements?

Options:

A.

VPWS

B.

MPLS VPN

C.

DMVPN

D.

VPLS

Question 92

Which QoS feature responds to network congestion by dropping lower priority packets?

Options:

A.

CBWFQ

B.

tail drop

C.

WRED

D.

strict priority

Question 93

Refer to the exhibit.

EIGRP has been configured on all links. The spoke nodes have been configured as EIGRP stubs, and the WAN links to R3 have higher bandwidth and lower delay than the links to R4. When a link failure occurs at the R1-R2 link, what happens to traffic on R1 that is destined for a subnet attached to R2?

Options:

A.

R1 has no route to R2 and drops the traffic

B.

R1 load-balances across the paths through R3 and R4 to reach R2

C.

R1 forwards the traffic to R3, but R3 drops the traffic

D.

R1 forwards the traffic to R3 in order to reach R2

Question 94

Refer to the exhibit. Due to budget constraints, a customer decided to purchase WAN routers with one LAN and one WAN interface per device. There is a requirement to connect the three sites to ensure high availability without buying additional WAN links. Which design deployment must the customer choose?

Options:

A.

single-homed full mesh

B.

single-homed hub-and-spoke

C.

dual-homed hub-and-spoke

D.

dual-homed full mesh

Question 95

In a Cisco SD-Access fabric, which node facilities connectivity between the fabric and networks external to the fabric?

Options:

A.

intermediate

B.

edge

C.

control plane

D.

border

Question 96

Which security functionality does gRPC provide?

Options:

A.

implementing secure server-client tunnels with RSA 20*8 cipher encryption

B.

mandatory encryption of data at rest using the AES and RSA protocols

C.

enabling RC6 data-level encryption with CRC check

D.

supporting secure communication between network devices and control systems using TLS

Question 97

An engineer uses Postman and YANG to configure a router with:

    OSPF process ID 200

    network 172.16.10.128/26 enabled for Area 0

Which get-config reply verifies that the model set was designed correctly?

Options:

A.

Text, letter Description automatically generated

B.

Graphical user interface, text, letter, email Description automatically generated

C.

Text, letter Description automatically generated

D.

Text, letter Description automatically generated

Question 98

An engineer is designing a campus network with Cisco Catalyst 95CO switches in the aggression layer. The design requires running nonblocking Layer 2 MEC from the aggregation layer to the access layer. The Catalyst switches are located on different campus floors for availability reasons, and each access switch veil contam a single VLAN. Which technology must the engineer choose for the aggregation switches in the design?

Options:

A.

VPC

B.

VSS

C.

StackWise Virtual

D.

StackWise-180

Question 99

Refer to the exhibit.

C0FD9 F48C9ACDC725EA850EC2476EE1E

An architect must design a solution that uses the direct link between R1 and R2 for traffic from 10.10.10.0/24

toward network 10.10.20.0/24. Which solution should the architect include in the design?

Options:

A.

Configure the OSPF cost of the link to a value lower than 30.

B.

Lower the Administrative Distance for OSPF area 0.

C.

Place the link into area 2 and install a new link between R1 and R2 in area 0.

D.

Configure the link to provide multiarea adjacency.

Question 100

Which queuing structure is used on SD-WAN Edge routers?

Options:

A.

FIFO

B.

LLQ+WFQ

C.

1P-4Q-2T

D.

Priority

Question 101

Company A recently acquired another company. Users of the newly acquired company must be able to access a server that exists on Company A’s network, both companies use overlapping IP address ranges. Which action conserves IP address space and provides access to the server?

Options:

A.

Use a single IP address to create overload NAT

B.

Use a single IP address to create a static NAT entry

C.

Build one-to-one NAT translation for every user that needs access

D.

Re-IP overlapping address space in the acquired company

Page: 1 / 34
Total 339 questions