Pre-Summer Sale Discount Flat 70% Offer - Ends in 0d 00h 00m 00s - Coupon code: 70diswrap

Cisco 300-420 Dumps

Page: 1 / 38
Total 379 questions

Designing Cisco Enterprise Networks (ENSLD) v1.1 Questions and Answers

Question 1

Which method does Cisco SD-WAN use to avoid fragmentation issues?

Options:

A.

PMTUD is used.

B.

Traffic is marked with the DF bit set.

C.

Jumbo frames are enabled.

D.

Access circuits are configured with 1600 byte MTU settings.

Question 2

Refer to the exhibit.

as

An architect is designing a network for a customer supporting a Wake-on-LAN application. Which solution must the architect choose?

Options:

A.

IP directed-broadcasts on R1

B.

spanning-tree uplinkfast on SW1

C.

spanning-tree uplinkfast on SW2

D.

IP directed-broadcasts on R2

Question 3

An engineer must design a VPN solution for a company that has multiple branches connecting to a main office. What are two advantages of using DMVPN instead of IPsec tunnels to accomplish this task? (Choose

two.)

Options:

A.

support for AES 256-bit encryption

B.

greater scalability

C.

support for anycast gateway

D.

lower traffic overhead

E.

dynamic spoke-to-spoke tunnels

Question 4

as

Refer to the exhibit. A customer experienced an unexpected network outage when the link between R1 and R2 went down. An architect must design a solution to ensure network continuity in the event the link fails again. Which solution should the design include?

Options:

A.

Make R31 an L1 router.

B.

Make R3 an L1L2 router

C.

Make Area 0 L2-only

D.

Make R11 an L2 router.

Question 5

An engineer is designing a network for a customer running a wireless network with a common VLAN for all APs. The customer is experiencing unicast flooding in the Layer 2 network between the aggregation and access layers. The customer wants to reduce the flooding and improve convergence time. Which solution meets these requirements?

Options:

A.

Migrate all APs to a common Layer 2 access layer switch and run Layer 3 from the aggregation layer to all remaining access layer switches.

B.

Align HSRP primary and STP root bridges and reduce ARP timers to match CAM timers on the aggregation layer switches.

C.

Migrate to a Layer 3 access campus design if the APs can run on separate VLANs.

D.

Align HSRP primary and STP root bridges if the APs cannot run on separate VLANs.

Question 6

What is the purpose of a control plane node in a Cisco SD-Access network fabric?

Options:

A.

to maintain the endpoint database and mapping between endpoints and edge nodes

B.

to detect endpoints in the fabric and inform the host tracking database of EID-to-fabric-edge node bindings

C.

to identify and authenticate endpoints within the network fabric

D.

to act as the network gateway between the network fabric and outside networks

Question 7

Prior to establishing full-mesh iPsec tunnels in a typical Cisco SD-WAN deployment, which mechanism do WAN Edge routers use to exchange Key information for data plane encryption?

Options:

A.

They use vSmart controllers as key exchange servers.

B.

They use vManage as a key exchange server.

C.

They use IKEv2 when exchanging keys with each other.

D.

They use vBond as a key exchange server.

Question 8

An enterprise customer has these requirements:

    end-to-end QoS for the business-critical applications and VoIP services based on CoS marking.

    flexibility to offer services such as IPv6 and multicast without any reliance on the service provider.

    support for full-mesh connectivity at Layer 2.

Which WAN connectivity option meets these requirements?

Options:

A.

VPWS

B.

MPLS VPN

C.

DMVPN

D.

VPLS

Question 9

An engineer working for a service provider with an employee ID: 4863:43:939 must design a solution to provide remote connectivity over the public internet. The design must:

    securely connect multiple remote sites to the central site

    provide redundant paths to the central site

    allow auto path selection based on failure and connection quality

    support IP multicast

    minimal configuration at remote sites

Which solution must the engineer choose?

Options:

A.

MPLS provided service with BGP

B.

dual DMVPN with EIGRP routing

C.

full mesh OSPF with IPsec tunnels

D.

full mesh ISIS with GRE tunnels and IPsec

Question 10

as

Refer to the exhibit. A network engineer must design a BGP solution based on:

    The route reflector must have one or more direct physical connections to the core routers (R3 and R4).

    The route reflector must have full redundancy and avoid a single point of failure.

    R2 to R1 link utilization is 90%. and the remaining links are less than 50% utilized.

Which two solutions must the design Include? (Choose two.)

Options:

A.

Configure R1 to be a client of R2 and R4.

B.

Configure R2 to be a client of R1 and R4.

C.

Configure R3 to be a client of R2 and R4.

D.

Configure R4 to be a client of R1 and R3.

E.

Configure R5 to be a client of R3 and R4.

Question 11

Which feature must be incorporated into the campus LAN design to enable Wake on LAN?

Options:

A.

dynamic ARP Inspection Snooping on layer 2 devices

B.

directed broadcasts on layer 3 devices

C.

proxy ARP on layer 3 devices

D.

DHCP Snooping on layer 2 devices

Question 12

How is internet access provided to a WAN edge router that is connected to a MPLS transport link?

Options:

A.

OMP advertises a default route from a WAN Edge router that is connected to the MPLS and internet transport networks

B.

Internet access must be provided at the WAN Edge router through either a 4G/5G link or local Internet circuit

C.

An extranet must be provided in the MPLS transport network to allow private traffic to reach the public internet

D.

TLOC extensions are used to route traffic to a WAN Edge router that is connected to the Internet transport network

Question 13

as

Refer to the exhibit. A customer is planning to onboard three new VPN partner connections in the data center. The new subnets must not overlap with the existing data center network, and the subnet size must not be bigger than necessary. The customer dedicated 10.1.8.0/21 for this design. Ho 1 // must the subnets be divided to meet these requirements?

A)

as

B)

as

C)

as

D)

as

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Question 14

as

Refer to the exhibit. An engineer must ensure that the QoS design guarantees bandwidth for the applications, and an application can request a particular type of service to support its delay requirements. Which solution must the engineer select?

Options:

A.

Diffserv with RSVP

B.

IntServ with RSVP

C.

Diffserv with DSCP

D.

IntServ with DSCP

Question 15

A company wants to deploy IPv6 within its existing network infrastructure. All current infrastructure equipment supports IPv6, and the company wants a migration strategy that must not require purchasing additional equipment The plan must keep operational management costs low. support IPv6 multicast, and allow applications to migrate using DNS. Which strategy must the company choose?

Options:

A.

hybrid ISATAP tunnel model

B.

hybrid manual tunnel model

C.

service block model

D.

dual-stack model

Question 16

An architect must address sustained congestion on the access and distribution uplink of network. QoS has already been implemented and optimized, but it is no longer effective in ensuring optimal network performance. Which two solutions should the architect use to improver network performance? (Choose two)

Options:

A.

Reconfigure QoS based on the IntServ model

B.

Utilize random early detection to manage queues

C.

Implement higher-speed uplink interfaces

D.

Bundle additional uplinks into logical EtherChannels

E.

Configure selective packet discard to drop noncritical network traffic.

Question 17

An engineer must design an in-band management solution for a customer with branch sites. The solution must allow remote management of the branch sites using management protocols over an MPLS WAN. Queueing is implemented at the remote sites using these classes:

as

How must the solution prioritize the management traffic over the WAN?

Options:

A.

Mark the traffic with DSCP CS1 and map into Class2 with a minimum bandwidth assigned by reducing the bandwidth available to CIass3.

B.

Mark the traffic with DSCP CS6 and map into Class1 with a minimum bandwidth assigned by reducing the bandwidth available to Class2

C.

Mark the traffic with DSCP EF and map into Class1 with a minimum bandwidth assigned by reducing the bandwidth available to Class2.

D.

Mark the traffic with DSCP CS2 and map into Class2 with a minimum bandwidth assigned by reducing the bandwidth available to Class3

Question 18

Refer to the exhibit.

C0FD9F48 as C9ACDC725EA850EC2476EE1E

A network engineer is designing a network for AS100. The design should ensure that all traffic enters AS100

via link 1 unless there is a network failure. In the event of a failure, link 2 should function as the path for

incoming traffic. Which solution should the design include?

Options:

A.

Modify the next-hop attribute on R3.

B.

Use AS-Path prepending on R3.

C.

Modify the next-hop attribute on R4.

D.

Use AS-Path prepending on R4.

Question 19

as

Refer to the exhibit. A company specializing in VoD content creation has two offices in a separate multicast domain connected by a WAN link. BGP communication has been established between the offices. Clients are inside the LAN in each office. In AS5373. R2 has been selected as RP. What must the network architect design to deliver VoD content to clients in AS65773?

Options:

A.

MSDP

B.

PIM ASM with Auto-RP

C.

PIM SSM

D.

PIM ASM with BSR

Question 20

as

Refer to the exhibit. The full EIGRP routing table is advertised throughout the network. Currently, users experience data loss when any one link in the network fails. An architect optimizes the network to reduce the impact when a link fails. Which solution should the architect include in the design?

Options:

A.

Run BFD on the inter links between EIGRP neighbors.

B.

Summarize the access layer networks from each access layer switch toward the aggregation layer.

C.

Reduce the default EIGRP hello interval and hold time.

D.

Summarize the access layer networks from the aggregation layer toward the core layer.

Question 21

as

Refer to the exhibit. A company architect proposed this network design as a part of the IPv6 migration strategy. What are two advantages of this design? Choose two.

Options:

A.

It permits any number of devices to join the overlay network seamlessly.

B.

It establishes an independent network that does not share fate with the underlay.

C.

It allows multiple independent networks to be built on top of a shared underlay.

D.

It provides increased scalability without increasing forwarding overhead.

E.

It enables the transport of protocols that are unsupported by the underlay.

Question 22

Which OSPF area blocks LSA Type 3, 4 and 5, but allows a default summary route?

Options:

A.

normal

B.

stub

C.

NSSA

D.

totally stubby

Question 23

as

Refer to the exhibit. A network engineer with an employee ID: 4384:99:754 must design a BGP solution based on these conditions:

    Traffic sessions occur between the branches and the data center.

    Branch B has limited resources to process routing updates.

    HQ must filter out all prefixes from branch A to R4.

Which outbound route filtering (ORF) solution must the engineer choose?

Options:

A.

Use a prefix list with the 192.168.10.0/24 subnet for ORF on R4.

B.

Use a prefix list with the 10.10.10.0/24 subnet for ORF on R2

C.

Use a prefix list with the 10.10.10.0/24 subnet for ORF on R5.

D.

Use a prefix list with the 192.168.10.0/24 subnet for ORF on R2.

Question 24

A company’s branch location uses redundant routers and links for connectivity to the headquarters. Also, to use the entire available bandwidth, the branch uses a dynamic routing protocol. An architect must design a multicast streaming solution to avoid RPF check failures because of the current network design. Which deployment model must the architect choose?

Options:

A.

PIM-SM

B.

BIDIR-PIM

C.

PIM-BSR

D.

PIM-SSM

Question 25

as

Refer to the exhibit. An architect must design a solution to connect the network behind R3 with the EIGRP network. Which mechanism should be included to avoid routing loops?

Options:

A.

split-horizon

B.

summarization

C.

down bit

D.

route tags

Question 26

An engineer is working with NETCONF and Cisco NX-OS based devices. The engineer needs a YANG model that supports a specific feature relevant only to Cisco NX-OS. Which model must the engineer choose?

Options:

A.

Native

B.

IEEE

C.

OpenConfig

D.

IETF

Question 27

What is the purpose of the fabric management plane in a Cisco SD-Access architecture?

Options:

A.

create LISP-based EID for the end-to-end solution that is offered by SD-Access

B.

enable EID-to-RLOC mapping that is based on the BGP protocol

C.

create an underlay network that is based on the IS-IS routing protocol

D.

enable automation techniques for device deployments and configurations

Question 28

A company must automate a set of complex changes aligned with DR testing in the network. These changes are specific, and the DR playbook will be adjusted in the future. The playbook has diverse routing and switching assets in scope as well as multiple vendor and hardware platforms. A developer will create a thin, web front-end microservice and integrate with an Open daylight controller to push changes to the network. Which YANG model should be used?

Options:

A.

Use a single native vendor YANG model to minimize development time

B.

Use an open YANG model to allow the reuse of code and standardize the implementation across platforms

C.

Use multiple native vendor YANG models to provide code consistency.

D.

Develop an individualized YANG model to minimize development resources and time to market.

Question 29

A network engineer must connect two sites across a public network using a secure tunneling technology that

supports multicast traffic. Which technology must be chosen?

Options:

A.

IPsec

B.

GRE

C.

PPTP

D.

GRE over IPsec

Question 30

An engineer is designing a QoS solution for a customer The customer ' s internet connection has a bandwidth of 10 Mbps. The design must ensure that traffic bursts of data do not exceed the bandwidth of the connection and that received traffic does not starve out business-critical traffic Which solution must the engineer choose?

Options:

A.

Configure the queuing default queue for shaping inbound and policing outbound.

B.

Configure the queuing default queue for shaping inbound and policing inbound.

C.

Configure the queuing default queue for shaping outbound and policing inbound.

D.

Configure the queuing default queue for shaping outbound and policing outbound.

Question 31

How does a model-driven telemetry dial-out approach function?

Options:

A.

The device initiates a session to the collector based on the subscription.

B.

The collector initiates a session to the device and subscribes to data to be streamed.

C.

The collector Initiates a session to the device and gets the data of a previously defined subscription.

D.

The device initiates a session to the collector and negotiates a subscription.

Question 32

Exhibit:

as

Refer to the exhibit. An engineer is designing a Layer 2 campus network. The design must support fast convergence and leverage as much bandwidth as possible between layers. Distribution switches do support VSS; unfortunately, not all routing protocols are available for use due to license limitations. Which solution must the engineer choose?

Options:

A.

EtherChannel

B.

MEC

C.

RSTP

D.

ECMP

Question 33

Drag and drop the components in a Cisco SD-Access architecture from the left onto their descriptions on the right.

as

Options:

Question 34

Which type of rendezvous point deployment is standards-based and supports dynamic RP discovery?

Options:

A.

bootstrap router

B.

Anycast-RP

C.

Auto-RP

D.

static RP

Question 35

A company wants to switch from static routing to a dynamic routing protocol to ease the administrative and operational overhead. The network topology is hub and spoke, and the branches use DMVPN back to the hub using two 100 Mbps internet connections. Both links must be used due to spikes in traffic, and routing must take traffic utilization of the links into account. Also, the branch routers have limited memory and CPU resources. Which routing protocol and design solution must the company choose?

Options:

A.

iBGP with the hub routers set up as route reflectors and branches set up as clients

B.

OSPF deployed in area 0 with branch routers connecting from area 1

C.

ISIS with the hub and spoke routers configured in two different areas

D.

EIGRP with branch routers as stub routers using ECMP

Question 36

An engineer must connect a new remote site to an existing OSPF network. The new site consists of two low-end routers, one for WAN, and one for LAN. There is no demand for traffic to pass through this area. Which area type does the engineer choose to provide minimal router resources utilization, while still allowing for full connectivity to the rest of the network?

Options:

A.

not so stubby

B.

totally not so stubby

C.

totally stubby area

D.

stubby area

Question 37

Which feature provides the capability for intra-VN traffic filtering and control within the Cisco SO-Access architecture?

Options:

A.

scalable groups

B.

MAC ACL

C.

prefix list

D.

service policy

Question 38

as

Refer to the exhibit. A network engineer must design a highly available OSPF solution based on these requirements:

    Traffic disruptions caused by link or node failures in Area-1 must be resolved in milliseconds.

    In the event of a failure, traffic must switch to another path without waiting for the OSPF dead interval.

Which fault detection solution must the engineer choose?

Options:

A.

Utilize BFD and tune the BFD timers to 100 ms.

B.

Tune the SPF delay and the OSPF LSA interval timers to 100 ms.

C.

Enable IP SLA tracking for each OSPF peer.

D.

Decrease SPF timers to 100 ms.

Question 39

Which feature is used to optimize WAN bandwidth of IGMP network traffic among WAN Edge routers in the

same VPN?

Options:

A.

IGMPv2

B.

multicast RP

C.

multicast-replicator

D.

multicast service routes

Question 40

as

Refer to the exhibit. An engineer must connect the IPv6 island to the IPv4-only network to provide IPv6 hosts access to file servers and DNS services in the IPv4 network. Which NAT should the engineer choose?

Options:

A.

stateless NAT66

B.

stateful NAT66

C.

static NAT-PT

D.

dynamic NAT-PT

Question 41

Drag and drop the properties from the left onto the protocols they describe on the right.

as

Options:

Question 42

Drag and drop the descriptions from the left onto the corresponding VPN types on the rights.

as

Options:

Question 43

Which type of rendezvous point deployment is standards-based and support dynamic RP discovery?

Options:

A.

Auto-RP

B.

Anycast-RP

C.

bootstrap router

D.

static RP

Question 44

as

Refer to the exhibit An engineer is designing a hierarchical ISIS solution for an enterprise customer with these requirements

    Users in areas 25 and 55 send and receive traffic from both backbone areas

    Link flaps in areas 35 and 45 must not impact other areas

    Routers will double within the next 12 months in areas 35 and 45

Which design must the engineer select?

Options:

A.

A series routers Level 2, B series routers Level 2, and C series routers Level 1

B.

A series routers Level 1/2 B series routers Level 2 and C series routers Level 2

C.

A series routers Level 1. B series routers Level 1/2. and C series routers Level 2

D.

A series routers Level 1.2 B series routers Level 1/2 and C series routers Level 1/2

Question 45

An engineer must establish a direct connection between two remote offices. The new connection must be established using a logical path, share a common broadcast domain, connect over private WAN, and have as little overhead as possible. Which technology must the engineer choose?

Options:

A.

L2VPN

B.

GET VPN

C.

IPsec

D.

GRE

Question 46

A company wants to enable several third-party video conferencing networks based on multicast services. The video conferencing platform can accommodate numerous and dispersed senders and receivers in third-party networks The interior routing protocol is OSPF and the exterior routing protocol is BGP Which multicast mode must be selected to achieve this goal?

Options:

A.

Enable MP-BGP

B.

Enable BIDIR-PIM

C.

Configure MSDP

D.

Set IGMPv2.

Question 47

What is a logical topology in a Cisco SD-Access architecture considered to be when it is used to virtually connect devices that are built on an arbitrary physical network?

Options:

A.

data plane

B.

control plane

C.

underlay

D.

overlay

Question 48

Which two techniques improve the application experience in a Cisco SD-WAN design? (Choose two.)

Options:

A.

utilizing forward error correction

B.

implementing a stateful application firewall

C.

implementing AMP

D.

utilizing quality of service

E.

implementing Cisco Umbrella

Question 49

Which control plane protocol is responsible for ElD-to-RLOC mapping concerning SO-Access Architecture?

Options:

A.

GBAC

B.

LISP

C.

CEF

D.

VXLAN

Question 50

How is sub-second failure of a transport link detected in a Cisco SD-WAN network?

Options:

A.

Hellos are sent between the WAN Edge routers and the vSmart controller.

B.

BFD runs on the IPsec tunnels between WAN Edge routers.

C.

BGP is used between WAN Edge routers and the vSmart controller.

D.

Link state change messages are sent between vSmart controllers.

Question 51

What is the purpose of the fabric control plane in a Cisco SD-Access architecture?

Options:

A.

create, propagate, and enforce G6AC policies in the fabric

B.

create a transit node with BGP route reflector functionality

C.

extend multiple subnets to one RLOC

D.

create and resolve endpoint-to-location mapping

Question 52

as

Refer to the exhibit. An architect needs to ensure that network traffic from the New Office network can access the server with the least network latency. All links within the network infrastructure currently have the same link cost. Which configuration meets the requirement?

Options:

A.

metric-style wide on R8

B.

static route on R8 toward R7

C.

route leaking on R13 and R9

D.

Level 1-2 (L1/L2) mode on R8

Question 53

A company needs to increase access port capacity on one floor of a building. They want to leverage the existing catalyst access switch. There is no problem with uplink bandwidth capacity. However, no additional uplinks can be added because no ports are available on the distribution switches. Which solution must the company choose to provide additional access ports?

Options:

A.

VDC

B.

VSS

C.

Etherchannel

D.

Stackwise

Question 54

as

Refer to the exhibit. The distribution switches serve as the layer 3 boundary. HSRP preemption is enabled. When the primary switch comes back after a failure, traffic is initially dropped. Which solution must be implemented to improve the design?

Options:

A.

Increase the hello timers on both HSRP devices

B.

Use the preempt delay feature on the primary HSRP device.

C.

Use the preempt delay feature on the backup HSRP device

D.

Configure a higher mac-refresh interval on both HSRP devices

Question 55

Refer to the exhibit.

as

A network engineer must design a multicast solution based on:

* Many-to-many communications between the users and sources

* Support of up to 50 multicast sources

* Users that must register for steams

Which multicast solution must the engineer select?

Options:

A.

Any Source Multicast

B.

Bidirectional PIM

C.

Source-Specific Multicast

D.

Multicast VPN

Question 56

A company with multiple service providers wants to speed up BGP convergence time in the event a failure occurs with their primary link. Which approach achieves this goal and does not impact router CPU utilization?

Options:

A.

Utilize BFD and tune the multiplier to 50

B.

Lower the BGP hello interval

C.

Decrease the BGP keepalive timer

D.

Utilize BFD and keep the default BGP timers

Question 57

as

Refer to the exhibit. Which two points in the network must an engineer configure the ports for explicit trust when using a DiffServ model?

Options:

A.

B and E

B.

F and G

C.

A and D

D.

C and D

Question 58

Refer to the exhibit.

as

An engineer must design a WAN solution so that ISP-1 is always preferred over ISP-2. The path via ISP-2 is

considered as a backup and must be used only when the path to ISP-1 is down. Which

solution must the engineer choose?

Options:

A.

R1:

- Routes advertised to ISP-1: 0x AS-path prepend

- Routes received from ISP-1: HIGH local-preference

- Routes advertised to R2: no action

- Routes received from R2: community NO-EXPORT

R2:

- Routes advertised to ISP-2:5x AS-path prepend

- Routes received from ISP-2: LOW local-preference

- Routes advertised to R1: community NO-ADVERTISE

- Routes received from R1: no action

B.

R1:

- Routes advertised to ISP-1: 0x AS-path prepend

- Routes received from ISP-1: HIGH local-preference

- Routes advertised to R2: community NO-EXPORT

- Routes received from R2: no action

R2:

- Routes advertised to ISP-2: 5x AS-path prepend

- Routes received from ISP-2: LOW local-preference

- Routes advertised to R1: no action

- Routes received from R1: no action

C.

R1:

- Routes advertised to ISP-1: 0x AS-path prepend

- Routes received from ISP-1: LOW local-preference

- Routes advertised to R2: community NO-ADVERTISE

- Routes received from R2: no action

R2:

- Routes advertised to ISP-2: 5x AS-path prepend

- Routes received from ISP-2: HIGH local-preference

- Routes advertised to R1: no action

- Routes received from R1: community NO-ADVERTISE

D.

R1:

- Routes advertised to ISP-1: 5x AS-path prepend

- Routes received from ISP-1: LOW local-preference

- Routes advertised to R2: community NO-ADVERTISE

- Routes received from R2: no action

R2:

- Routes advertised to ISP-2: 0x AS-path prepend

- Routes received from ISP-2: HIGH local-preference

- Routes advertised to R1: community NO-EXPORT

- Routes received from R1: no action

Question 59

An architect is working on a design to connect a company ' s main site to several small to medium-sized remote branches. The solution must include redundant WAN links, but the customer has a limited budget and wants the ability to increase the link speed easily in the future. QoS will not on the branch routers so there is no need for consistent end-to-end QoS. Which solution does the architect propose?

Options:

A.

dual-homed WAN MPLS with single edge router

B.

dual-homed Internet with a single edge router running a site-to-site VPN topology

C.

dual-homed WAN MPLS and Internet links via dual edge routers

D.

dual-homed Internet with dual edge routers running a hub-and-spoke VPN topology

Question 60

as

Refer to the exhibit. These requirements must be met:

    VLANs span multiple access switches.

    All VLANs are trunked on all access switch uplinks to distribution switches.

    The STP version is Rapid PVST+.

Which design provides the fastest spanning-tree convergence?

Options:

A.

Switch D configured as VLAN 10 secondary root, Switch C configured as VLAN 10 primary root, link A configured as Layer 2 trunk

B.

Switch D configured as VLAN 10 primary root, Switch C configured as VLAN 10 secondary root, link A configured as Layer 2 trunk

C.

Switch D configured as VLAN 10 primary root, Switch C configured as VLAN 10 secondary root, link A configured as Layer 3 routed link

D.

Switch D configured as VLAN 10 secondary root, Switch C configured as VLAN 10 primary root, link A configured as Layer 3 routed link

Question 61

Which routes does the overlay management protocol advertise in an SD-WAN overlay?

Options:

A.

underlay, MPLS, and overlay

B.

primary, backup, and load-balanced

C.

prefix, TLOC, and service

D.

Internet, MPLS, and backup

Question 62

as

Refer to the exhibit. AS65533 and AS65530 are announcing a partial Internet routing table as well as their IP subnets. An architect must create a design that ensures AS64512 become a transit AS. Which filtering solution must the architect choose?

Options:

A.

Maximum-prefix

B.

No-advertise

C.

Next-hop

D.

No Export

Question 63

Refer to the exhibit.

as

EIGRP has been configured on all links. The spoke nodes have been configured as EIGRP stubs, and the WAN links to R3 have higher bandwidth and lower delay than the links to R4. When a link failure occurs at the R1-R2 link, what happens to traffic on R1 that is destined for a subnet attached to R2?

Options:

A.

R1 has no route to R2 and drops the traffic

B.

R1 load-balances across the paths through R3 and R4 to reach R2

C.

R1 forwards the traffic to R3, but R3 drops the traffic

D.

R1 forwards the traffic to R3 in order to reach R2

Question 64

as

Refer to the exhibit A customer requires a Layer 2 network designed to support:

    500 active logical ports

    trunking of 30 VLANs

    convergence of less than 1 second

Which Spanning Tree Protocol must be selected?

Options:

A.

RPVST+

B.

MSTP

C.

CST

D.

PVST+

Question 65

Which function does the Cisco SD-Access intermediate node perform?

Options:

A.

Act as LISP proxy tunnel router.

B.

Route and transport IP traffic.

C.

Act as an anycast Layer 3 gateway.

D.

Map users to a virtual network.

Question 66

A customer with an IPv4 only network topology wants to enable IPv6 connectivity while preserving the IPv4 topology services. The customer plans to migrate IPv4 services to the IPv6 topology, then decommission the IPv4 topology. Which topology supports these requirements?

Options:

A.

dual stack

B.

6VPE

C.

6to4

D.

NAT64

Question 67

as

Refer to the exhibit. Which process does the Ethernet LMI protocol follow that is defined by the MEF 16 Technical Specification?

Options:

A.

communicates ENI and EVC attributes to the CE

B.

notifies the CE of the availability state of a configured EVC

C.

broadcasts multicast network routes from the CE to the PE

D.

broadcasts to all subnets from the CE when an EVC is added

Question 68

as

as

Refer to the exhibits. An engineer is troubleshooting an issue in which the Gig0/2 interface on a Cisco switch named SW2 fails to become the root port. Which two commands must be run on SW2 to resolve this issue? (Choose two.)

A)

as

B)

as

C)

as

D)

as

E)

as

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

E.

Option E

Question 69

Which two considerations must be made regarding the overlay network for a Cisco SD-Access architecture? (Choose two.)

Options:

A.

Virtual networks should be used for microsegmentation

B.

SGTs should be used for data plane isolation and microsegmentation

C.

Virtual networks should be used for data plane isolation only

D.

Overlapping IP addresses across different overlay networks should be used to conserve IP addresses

E.

Overlapping IP addresses across different overlay networks should be avoided for operational simplicity

Question 70

as

Refer to the exhibit. An architect is designing a BGP solution to connect a remote branch to a service provider. There are several prefixes within the branch that the company does not want to be advertised to the internet. Which solution should the architect use to accomplish this?

Options:

A.

Set the BGP Internet community for all prefixes.

B.

Implement the NOPEER community.

C.

Use the BGP No-Advertise community for the prefixes to exclude.

D.

Attach the No-Export community with the prefixes to exclude

Question 71

as

Refer to the exhibit. An architect working for a service provider with an employee ID: 4763:44:876 must design a Layer 2 VPN solution that supports:

    transparency of service provider devices

    direct communication between CE routers attached to the same VLAN

Which solution must the design include?

Options:

A.

multiple VPWS

B.

single VPLS

C.

single VPWS

D.

multiple VPLS

Question 72

An infrastructure team is concerned about the shared memory utilization of a device, and for this reason, they need to monitor the device state. Which solution limits impact on the device and provides the required data?

Options:

A.

IPFIX

B.

static telemetry

C.

on-change subscription

D.

periodic subscription

Question 73

An engineer must design a management network that enables SSH, NTP, FTP, and SNMP over the production network. The design requires the management of routers and switches that exist across different networks. Which feature must the design include?

Options:

A.

Management Plane Protection

B.

dedicated management console connection per device

C.

terminal server

D.

dedicated management VRF connection per device

Question 74

Refer to the exhibit.

as

A customer is running HSRP on the core routers. Over time the company has grown and requires more

network capacity. In the current environment, some of the downstream interfaces are almost fully utilized, but

others are not. Which solution improves the situation?

Options:

A.

Make router R2 active for half of the VLANs.

B.

Add more interfaces to R1 and R2.

C.

Configure port channel toward downstream switches.

D.

Enable RSTP on the downstream switches.

Question 75

Drag and drop the steps WAN Edge performs when on-boarded into the Cisco SD-WAN overlay from the left into the order they are completed on the right.

as

Options:

Question 76

An engineer uses Postman and YANG to configure a router with:

    OSPF process ID 200

    network 172.16.10.128/26 enabled for Area 0

Which get-config reply verifies that the model set was designed correctly?

Options:

A.

B.

C.

D.

Question 77

A customer reports that each time a networking component fails, OSPF recalculates the backup path, with causes a short outage. Which solution must the customer implement to improve this situation?

Options:

A.

Aggressive OSPF timers

B.

LFA FRR

C.

Incremental SPF

D.

BFD

Question 78

A network engineer prepares a script to configure a loopback interface with IP address 172.16.15.12/32. To comply with the company security policies, ' Content-type ' :

‘application/yang-data+json‘ is added to the script. Connection to the network devices must be secured. Which code snippet must the network engineer use to meet this requirement?

as

as

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Question 79

as

Refer to the exhibit. A company has some offices that are connected via dark fiber in New York. A network architect must optimize the network design based on the EIGRP routing protocol. The network has hierarchical addressing between 10 and 12 routers in each office. Routing convergence time must be at the minimum. What must the network architect do to reduce the query range?

Options:

A.

Configure stub areas on non-edge routers.

B.

Implement network summarization on edge routers.

C.

Use different EIGRP processes on edge routers.

D.

Configure route filtering on non-edge routers.

Question 80

An engineer is designing a campus network with Cisco Catalyst 95CO switches in the aggression layer. The design requires running nonblocking Layer 2 MEC from the aggregation layer to the access layer. The Catalyst switches are located on different campus floors for availability reasons, and each access switch veil contam a single VLAN. Which technology must the engineer choose for the aggregation switches in the design?

Options:

A.

VPC

B.

VSS

C.

StackWise Virtual

D.

StackWise-180

Question 81

A network engineer is redesigning a company ' s QoS solution. The company is currently using IP Precedence, but the engineer plans to move to DiffServ. It is important that the new solution provide backward compatibility with the current solution. Which technology should the design include?

Options:

A.

expedited forwarding

B.

assured forwarding

C.

class selector code points

D.

default per hop behavior

Question 82

What is the main purpose of the Cisco SD-Access overlay design?

Options:

A.

To simplify network management and troubleshooting for support teams

B.

To ensure high availability and fault tolerance for user services

C.

To enable seamless integration with SD-Access overlay services

D.

To enhance network visibility and monitoring for infrastructure

Question 83

as

Refer to the exhibit. As part of a design review of redistribution, a client requested that R2 be preferred over R3 for traffic passing toward the EIGRP domain. Which method meets this design requirement?

Options:

A.

Redistribute EIGRP into OSPF with metric-type E1 on R2 and metric-type E2 on R3.

B.

Remove the mutual redistribution on R3.

C.

Redistribute OSPF into EIGRP with metric 10000 100 255 1 1500 on R2 and metric 10 1000 255 1 1500 on R3.

D.

Redistribute EIGRP into OSPF with metric-type E2 on R2 and metric-type E1 on R3.

Question 84

An engineer is upgrading a company’s main site to include a connection to a second ISP. The company will receive full Internet routing tables from both ISPs via BGP. The engineer must ensure that the company does not become a transit autonomous system. Which solution should be included in this design?

Options:

A.

Tag incoming routes from both ISPs with BGP community no-export.

B.

Lower the MED for updates sent to the secondary ISP.

C.

Use a route-map to prevent all prefixes from being advertised to either ISP.

D.

Modify the local-preference for routes incoming from the primary ISP.

Question 85

In the SD-WAN underlay network, which WAN Edge VPN ID is defined as the transport VPN and is used to

carry control traffic?

Options:

A.

VPN 0

B.

VPN 512

C.

VPN 128

D.

VPN 256

Question 86

as

Refer to the exhibit. An architect designs a BGP policy for a customer that requires load sharing of the links that connect with the upstream service provider. The customer has these requirements: • The inbound traffic destined to network 10.1.1.0/24 must transit the R3-R1 link, and if the link fails, all inbound traffic must transit the R4-R2 link.

• The inbound traffic destined to network 10.1.2.0/24 must transit the R4-R2 link, and if the link fails, all inbound traffic should transit the R3-R1 link.

Which solution must the architect choose?

Options:

A.

• R1 must announce prefix 10.1.2.0/24 with the route map applied to the neighbor using set as-path prepend 64512 64512

• R2 must announce prefix 10.1.1.0/24 with the route map applied to the neighbor using set as-path prepend 64512 64512.

B.

• R1 must announce prefix 10.1 2.0/24 with a community attribute 64513:300 and prefix 10.1.1.0/24 with a community attribute 64513:200.

• R2 must announce prefix 10.1.2.0/24 with a community attribute 64513:200 and prefix 10.1.1.0/24 with a community attribute 64513:300.

C.

• R1 must announce prefix 10.1.1.0/24 with the route map applied to the neighbor using set as-path prepend 64512 64512.

• R2 must announce prefix 10.1.2.0/24 with the route map applied to the neighbor using set as-path prepend 64512 64512.

D.

• R1 must announce prefix 10.1.2.0/24 with a community attribute 64513:200 and prefix 10.1.1.0/24 with a community attribute 64513:300.

• R2 must announce prefix 10.1.2.0/24 with a community attribute 64513:300 and prefix 10.1.1.0/24 with a community attribute 64513:200.

Question 87

In a Cisco SD-Access fabric, which node facilities connectivity between the fabric and networks external to the fabric?

Options:

A.

intermediate

B.

edge

C.

control plane

D.

border

Question 88

Refer to the exhibit.

as

The failover time of ISP-2 is significantly shorter than ISP-1 when an interface on the ISP router toward the campus network fails. Which solution minimizes the downtime to the sub-second?

Options:

A.

Aggressive timers

B.

Next-hop address tracking

C.

Graceful-restart

D.

BFD

Question 89

Drag and drop the elements from the left onto the protocols where they are used on the right.

as

Options:

Question 90

as

Refer to the exhibit. An architect is developing a solution to consolidate networks while retaining device redundancy. The routing protocol for the WAN routers must be open standard, ensure high availability, and provide the fastest convergence time. Which solution must the design include?

Options:

A.

both routers running EIGRP

B.

one router running OSPFv2 and other OSPF v3

C.

one router running ISIS and other OSPF v3

D.

both routers running OSPFv2

Question 91

Which two statements about VRRP advertisements are true? (Choose two.)

Options:

A.

    They are sent from the master router and standby routers.

B.

    They include VRRP timer information.

C.

    They are sent only from the master router.

D.

    They include priority information.

E.

    They are sent every three seconds by default.

Question 92

A large company is building a new branch office, and the network architect already determined that the branch office will need a /24 network. The architect assigned a network engineer to clean the rest of the addressing plan. The engineer’s solution must support:

Options:

A.

192.168.64.0/26

B.

192.168.128.0/25

C.

192.168.16.0/28

D.

192.168.32.0/27

Question 93

In a cisco SD-Access brownfield deployment scenario, which configuration deployment must be taken with Cisco DNA center?

Options:

A.

Subnet stretching

B.

LAN automation

C.

Automated UNDERLAY

D.

Manual underlay

Question 94

Which two routing protocols allow for unequal cost load balancing? (Choose two.)

Options:

A.

EIGRP

B.

IS-IS

C.

BGP

D.

OSPF

E.

RIPng

Question 95

An engineer must design a management network for a customer ' s enterprise network. The design must:

    provide the ability to grant and revoke access privileges

    allow only protocols SSH, NTP, FTP, and SNMP

    restrict access to management Interfaces

Which solution must the engineer choose to meet the requirements?

Options:

A.

in-band

B.

enterprise internal private

C.

out-of-band

D.

mGRE

Question 96

An architect must design a network solution for a regional medical center that will provide interconnectivity between regionally dispersed data centers and a new colocation. The design must:

    utilize point-to-point connectivity

    utilize existing VLAN infrastructure

    increase performance for data center synchronization and backup processes

    reduce configuration complexity

Which solution must the engineer choose?

Options:

A.

L3VPN

B.

GRE

C.

DMVPN

D.

L2VPN

Question 97

An engineer needs to design a management network for the company. The solution has these requirements:

    overlay network does not cause routing issues

    ease of troubleshooting for the operations team

    devices are accessed securely

Which solution meets these requirements?

Options:

A.

VRF for management traffic and SSH keys for device access

B.

Private VLANs for management traffic and TACACS+ for device access

C.

Separate physical interfaces for management traffic and TACACS+ for device access

D.

VLANs for management traffic and RADIUS for device access

Question 98

Which two BGP features will result in successful route exchanges between eBGP neighbors sharing the same

AS number? (Choose two.)

Options:

A.

advertise-best-external

B.

bestpath as-path ignore

C.

client-to-client reflection

D.

as-override

E.

allow-as-in

Question 99

Which component is part of the Cisco SD-Access overlay architecture?

Options:

A.

border node

B.

spine node

C.

leaf node

D.

Cisco DNA Center

Question 100

What is the function of the multicast Reverse Path Forwarding check?

Options:

A.

It allows for a loop-free distribution tree from the source to receivers.

B.

It serves as an Auto RP Mapping agent.

C.

It prevents bootstrap messages from reaching all routers.

D.

It is used to discover and announce RP-set information.

Question 101

Drag and drop the characteristics from the left onto the Yang model they describe on the right.

Select and Place:

as

Options:

Question 102

What are two valid scaling techniques when an EIGRP network is designed that consists of more than 1000 routers? (Choose two.)

Options:

A.

Use structured hierarchical topology with route summarization

B.

Used sub-second timers

C.

Use the distribute-list command to filter routes

D.

Modify delay parameters on the links

E.

Implement multiple EIGRP autonomous systems

Question 103

An architect must design a plan to manage the enterprise network devices. The design must accommodate that:

    not all network devices have a dedicated management interface

    all IP-enabled interfaces on all devices must be reachable

    encryption must be used with all devices which have support

Which solution must the architect choose?

Options:

A.

KVM server

B.

in-band

C.

out-of-band

D.

terminal server

Question 104

An engineer working for a service provider with an employee ID 4598.48.606 prepared several designs for a traditional campus network. The design must allow the deployment on the same VXLAN to any switch at the access layer and must support:

    Fast convergence

    High availability

    Resilience

Which design must be selected?

as

as

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Question 105

Which feature is required for graceful restart to recover from a processor failure?

Options:

A.

Cisco Express Forwarding

B.

Virtual Switch System

C.

Stateful Switchover

D.

Bidirectional Forwarding Detection

Question 106

An architect must develop a campus network solution that includes:

logically segmented and isolated networks

ability to communicate between network segments when required

support for overlapping IP addresses

widely available technologies to avoid purchasing specialized equipment

Which solution must the architect select?

Options:

A.

VSS with IGP

B.

802.1Q with HSRP

C.

vPC with HSRP

D.

VRF-Lite with OSPF

Question 107

An architect must design a topology for a WAN network that satisfies these requirements:

    Devices must be able to make informed decisions.

    Suboptimal paths are allowed only In case of a failure.

    Backup paths must always be available.

Which topology must the architect select?

Options:

A.

partial mesh

B.

hub and spoke

C.

full mesh

D.

Clos

Question 108

A company requested that an architect propose a new IPv4 and IPv6 deployment strategy. The company wants a solution that is straightforward, with no information hiding or forwarding overhead. Which solution meets these requirements?

Options:

A.

LISP

B.

NAT64

C.

dual-stack

D.

GRE tunnels

Question 109

An engineer is designing a QoS solution for a campus. The design must guarantee real-time traffic delivery during congestion, minimize the bandwidth consumption for possible virus or worm attacks, and reduce flooding of excessive traffic during times of congestion. Which two solutions must the engineer select? (Choose two.)

Options:

A.

Create a shaping policy to drop excessive traffic and a strict queue for real-time traffic.

B.

Apply queuing on the distribution to core links

C.

Create a policing policy to drop excessive traffic and a strict queue for real-time traffic.

D.

Create a scavenger queue for excessive traffic and a strict queue for real-time traffic

E.

Apply queuing on the access to distribution links.

Question 110

In an SD-WAN architecture, which methods are used to bootstrap a vEdge router?

Options:

A.

DHCP options or manual configuration

B.

vManage or DNS records

C.

ZTP or manual configuration

D.

DNS records or DHCP options

Question 111

as

Refer to the exhibit. An architect reviews the low-level design of a company ' s enterprise network and advises optimizing the STP convergence time. Which functionality must be to Gi1/0/1-10 to follow the architect ' s recommendation?

Options:

A.

PortFast

B.

root guard

C.

UplinkFast

D.

BPDU guard

Question 112

An engineer must design a solution to provide backup connectivity between two sites. The engineer plans to use an Internet connection but company policy requires the connection to be encrypted. Additionally, there are several applications that utilize multicast to deliver video streams between the sites. Which technology should the design include?

Options:

A.

GRE over IPsec

B.

IPsec direct encapsulation

C.

GETVPN

D.

DMVPN

Question 113

as

Refer to the exhibit. A network engineer working for a private service provider with an employee ID: 4670:71:451 must design a BGP solution based on:

    All traffic originating from AS100 must pass through AS200 to reach the NTP and DHCP server

    When a link failure occurs between R3 and R4, traffic must follow the R2-R9 link to reach the NTP and DHCP server.

Which solution must the design include?

Options:

A.

Routers R3 and R10 advertise an IGP metric into BGP during redistribution in both directions.

B.

Router R6 influences the paths of R9 and R11 to the DC with a higher AS-PATH value.

C.

Routers R3 and R10 advertise a lower local preference for outgoing traffic and a higher AS-PATH value for incoming traffic.

D.

Router R3 applies a local preference of 200 for R1. R2. R9. and R11 routers to reach the data center.

Page: 1 / 38
Total 379 questions