Pre-Summer Sale - Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70dumps

300-420 Questions and Answers

Question # 6

Refer to the exhibit.

Question # 6

An architect is designing an EIGRP solution based on these requirements:

* Traffic forwarding should use the best two paths while all links are available

* Single path failure must not impact traffic between branch and HQ

Which solution must the architect select?

A.

Maximum-paths 2

B.

Add-paths 2

C.

Metric weights 010100

D.

Variance 2

Full Access
Question # 7

A network solution is being designed for a company that connects to multiple Internet service providers. Which Cisco proprietary BGP path attribute will influence outbound traffic flow?

A.

Local Preference

B.

MED

C.

Weight

D.

AS Path

E.

Community

Full Access
Question # 8

An engineer must propose a QoS architecture model that allows an application to inform the network of its traffic profile and to request a particular type of service to support its bandwidth and delay requirements. The application requires consistent and dedicated bandwidth end to end. Which QoS architecture model meets these requirements?

A.

DiffServ

B.

LLQ

C.

WRED

D.

IntServ

Full Access
Question # 9

What does the fabric data plane leverage in SD-Access Architecture?

A.

LISP protocol to resolve endpoint-to-location mapping

B.

IS-IS protocol to exchange link-state routing information

C.

MAC-in-IP encapsulation method to transport of the Layer 2 frame

D.

BGP protocol to advertise endpoint prefixes outside of the fabric

Full Access
Question # 10

Question # 10

Refer to the exhibit A customer requires a Layer 2 network designed to support:

    500 active logical ports

    trunking of 30 VLANs

    convergence of less than 1 second

Which Spanning Tree Protocol must be selected?

A.

RPVST+

B.

MSTP

C.

CST

D.

PVST+

Full Access
Question # 11

Which NETCONF operation creates filtering that is specific to the session notifications?

A.

< create-subscription >

B.

< commit >

C.

< notification >

D.

< logging >

Full Access
Question # 12

A global organization with several branches hired a network architect to design an overlay VPN solution. The branches communicate with each other frequently. The customer expects to add more branches in the future. To meet the customer ' s security requirements, the architect plans to provide traffic protection using dynamic IPsec tunnels. Which solution should the architect choose?

A.

DMVPN

B.

EasyVPN

C.

GETVPN

D.

L2TP

Full Access
Question # 13

A network engineer must optimize a campus OSPF deployment Currently each time a type 1 or type 2 LSA is generated within an area, the OSPF process must recompute the entire SPT Which solution improves the recomputation process?

A.

iSPF

B.

BFD

C.

SPF

D.

PRC

Full Access
Question # 14

Which two overlay network design considerations must be made for a Cisco SD-Access network? (Choose two.)

A.

LAN automation for deployment

B.

Layer 3 to the access design

C.

Reduce subnets and simplify DHCP management

D.

Dedicated IGP process for the fabric

E.

Avoid overlapping IP subnets

Full Access
Question # 15

A customer has several remote sites connected with their headquarters through microwave links. An engineer must propose a backup WAN solution based on these conditions:

Question # 15

Which backup WAN link type the engineer recommend?

A.

LTE

B.

802.16 WiMAX

C.

Laser link

D.

802.15.1 Bluetooth

Full Access
Question # 16

Drag and drop the Cisco SD-WAN components from the left onto their definitions on the right.

Question # 16

Full Access
Question # 17

Mobile service provider “A” is going to launch 5G support with the ISP “B” IP network backbone as the underlay transport. Conversational traffic type will be marked with expedited forwarding class, streaming services will be marked with assured forwarding 2 class, and web browsing will be marked with assured forwarding 3 class. Which QoS model meets these requirements if the solution is to be implemented end to end on the ISP_B backbone network?

A.

6-class QoS strategy with IntServ model

B.

8-class QoS strategy with DiffServ model

C.

12-class QoS strategy with IntServ model

D.

4-class QoS strategy with DiffServ model

Full Access
Question # 18

Which two best practices must be followed when designing an out-of-band management network? (Choose two.)

A.

    Enforce access control

B.

    Facilitate network integration

C.

    Back up data using the management network

D.

    Ensure that the management network is a backup to the data network

E.

    Ensure network isolation

Full Access
Question # 19

In a cisco SD-Access brownfield deployment scenario, which configuration deployment must be taken with Cisco DNA center?

A.

Subnet stretching

B.

LAN automation

C.

Automated UNDERLAY

D.

Manual underlay

Full Access
Question # 20

What is the purpose of service routes in OMP updates?

A.

specify routes toward a centralized orchestration plane

B.

describe underlay transport Information

C.

define the remote management Information

D.

indicate services that are enabled for service insertion

Full Access
Question # 21

Question # 21

Refer to the exhibit. A network architect is preparing a network design based on the EIGRR Routers are connected using a cat6a cable type and the inter-router connection speed is limited to 10 Mbps due to distance. During the pilot phase, a DUAL-3-SIA error message is visible. Which action must the engineer take to create a stable design?

A.

Enable poison reverse on R4.

B.

Configure STUB area on R4.

C.

Create a summary route on R2.

D.

Disable split horizon on R1.

Full Access
Question # 22

Question # 22

Refer to the exhibit. Where must an architect plan for route summarization for the topology?

A.

from the core toward the aggregation and the access toward the aggregation

B.

from the core toward the aggregation and the aggregation toward the core

C.

from the aggregation toward the access and the access toward the aggregation

D.

from the aggregation toward the core and the aggregation toward the access

Full Access
Question # 23

Question # 23

Refer to the exhibit. An engineer must design an address translation solution to provide Internet connectivity for the corporate network. The design Is restricted to the 172.16.168.0/22 subnet. Which solution must the engineer choose?

A.

stateful NAT64

B.

stateless NAT64

C.

stateful NAT66

D.

stateless NAT66

Full Access
Question # 24

When is it advisable to provide dedicated control plane nodes within a Cisco SD-Access design?

A.

in a small deployment where border nodes are not required

B.

in a design where fabric edge nodes are unable to provide control plane functionality

C.

in designs without Cisco DNA Center

D.

when there is a requirement for frequent roaming of endpoints across fabric edge nodes

Full Access
Question # 25

A customer with an IPv4 only network topology wants to enable IPv6 connectivity while preserving the IPv4 topology services. The customer plans to migrate IPv4 services to the IPv6 topology, then decommission the IPv4 topology. Which topology supports these requirements?

A.

dual stack

B.

6VPE

C.

6to4

D.

NAT64

Full Access
Question # 26

An engineer is designing a networking solution to allow two hosts to communicate—one host located within the company A network and the other within the company B network. The two companies have no other plans for future additional connections. Both companies want to use a single secure and encrypted internet connection, and the configuration must be as simple as possible. Which network solution must the engineer choose?

A.

single DMVPN with EIGRP routing

B.

routed IPsec tunnel with OSPF routing

C.

policy-based IPsec tunnel with static routing

D.

MPLS VPN provided service with BGP routing

Full Access
Question # 27

Question # 27

Refer to the exhibit. An architect needs to ensure that network traffic from the New Office network can access the server with the least network latency. All links within the network infrastructure currently have the same link cost. Which configuration meets the requirement?

A.

metric-style wide on R8

B.

static route on R8 toward R7

C.

route leaking on R13 and R9

D.

Level 1-2 (L1/L2) mode on R8

Full Access
Question # 28

A company uses cloud-based applications for voice and video calls, file sharing, content sharing, and messaging. During business hours, these applications randomly become slow and unresponsive. However, other applications work smoothly with the current applied QoS polices. Which solution must the company choose to resolve the issue?

A.

Identify the applications with NBAR2 and allocate the required bandwidth accordingly.

B.

Identify the port used by each application and apply a minimum bandwidth guarantee.

C.

Identify the applications and reserve the required bandwidth on the perimeter routers.

D.

Identify the application ports, create groupings, and rate-limit the required bandwidth.

Full Access
Question # 29

Question # 29

Refer to the exhibit. An architect with an employee ID: 4542:60:170 is designing a campus Layer 2 infrastructure. The design requires a PoE power budget that varies from 30-60 W. In addition, power must be provided continuously to some endpoints and must be supported even during the reloading of edge switches. Which solution must the architect select?

A.

PoE Plus

B.

Fast PoE

C.

Universal PoE

D.

Perpetual PoE

Full Access
Question # 30

Which design achieves SD-WAN control plane redundancy?

A.

Configuring BFD on the WAN Edge routers

B.

Using multiple instances of vManage in clusters

C.

Deploying using a virtual platform like UCS or CSP

D.

Managing the underlay network with OMP

Full Access
Question # 31

Question # 31

Refer to the exhibit. The distribution switches serve as the layer 3 boundary. HSRP preemption is enabled. When the primary switch comes back after a failure, traffic is initially dropped. Which solution must be implemented to improve the design?

A.

Increase the hello timers on both HSRP devices

B.

Use the preempt delay feature on the primary HSRP device.

C.

Use the preempt delay feature on the backup HSRP device

D.

Configure a higher mac-refresh interval on both HSRP devices

Full Access
Question # 32

An engineer needs to design a management network for the company. The solution has these requirements:

    overlay network does not cause routing issues

    ease of troubleshooting for the operations team

    devices are accessed securely

Which solution meets these requirements?

A.

VRF for management traffic and SSH keys for device access

B.

Private VLANs for management traffic and TACACS+ for device access

C.

Separate physical interfaces for management traffic and TACACS+ for device access

D.

VLANs for management traffic and RADIUS for device access

Full Access
Question # 33

An architect is designing a network for an enterprise site. The design must use an active/backup design for the WAN. It must guarantee the SLA for several applications regardless of which connection is used. Which deployment model should the architect choose?

A.

MPLS WAN from two separate ISPs

B.

hybrid WAN using MPLS VPN and internet VPN from a single ISP

C.

hybrid WAN using MPLS VPN and internet VPN from two separate ISPs

D.

internet WAN from two separate ISPs

Full Access
Question # 34

An engineer must design a scalable QoS architecture that allows the separation of the traffic into classes on predefined business requirements. The design must also utilize the differentiated services code points as the QoS priority descriptor value and support at least 10 levels of classification. Which QoS technology should the engineer include in the design?

A.

RSVP

B.

Diffserv

C.

Best effort

D.

Interserv

Full Access
Question # 35

Refer to the exhibit.

Question # 35

An architect must design an IPv6 migration solution for an enterprise customer to support these requirements:

* Clients will transition to the new IPv6 network, which provides NAT64 and IPv6 DNS resolution services, using the same DNS name that points to the IPv4 address.

* The service provider will create a client-facing IPv6 interface with a new IPv6 virtual address that points to the same IPv4 DNS server.

* The service provider will support clients that use global IPv6 addresses and encapsulate IPv4 packets into IPv6 tunnels.

Which two migration solutions must the architect choose? (Choose two.)

A.

Use dual-stack lite from the MPLS network to the IGR.

B.

Use IPv6 tunneling from the devices to the core MPLS network.

C.

Use dual-stack lite from the devices to the core MPLS network.

D.

Use NAT44/64 from the MPLS network to the IGR.

E.

Use NAT44/64 from the devices to the core MPLS network.

Full Access
Question # 36

When designing interdomain multicast, which two protocols are deployed to achieve communication between multicast sources and receivers? (Choose two.)

A.

IGMPv2

B.

BIDIR-PIM

C.

MP-BGP

D.

MSDP

E.

MLD

Full Access
Question # 37

An engineer is designing a PIM Anycast RP solution between two data centers. The design must ensure that RP1 in DC1 and RP2 in DC2 inform each other about specific sources that have joined locally. Which solution must the engineer choose?

A.

Provision the RPs on the same IP subnet and extend the subnet at Layer 2 between data centers

B.

Enable MSDP between RPs using separate unique loopback interfaces

C.

Enable MSDP between RPs using the configured Anycast RP address

D.

No action is required because PIM registers from the source will, by default, reach each RP

Full Access
Question # 38

Refer to the exhibit. An engineer must ensure that the QoS design guarantees bandwidth for the applications, and an application can request a particular type of service to support its delay requirements. Which solution must the engineer select?

A.

IntServ with DSCP

B.

DiffServ with DSCP

C.

IntServ with RSVP

D.

DiffServ with RSVP

Full Access
Question # 39

Question # 39

Refer to the exhibit. Currently, the network uses a single-homed solution for connecting to the internet. An engineer must design a more resilient WAN using the internet circuits at each site. The design must provide failover connectivity, support load-sharing of traffic, and QoS. Which solution must the engineer choose?

A.

Get VPN

B.

DMVPN

C.

SD-WAN

D.

IPsec tunnels

Full Access
Question # 40

A company requires a private WAN design that allows remote sites to connect to HQ. The design must ensure that:

    traffic is always encrypted

    forwarding overhead is reduced

    management of security Is centralized

    multicast traffic is supported

Which technology must the company select?

A.

iPiac P2P

B.

GET VPN

C.

DMVPN Phase 3

D.

mGRE

Full Access
Question # 41

Exhibit:

Question # 41

Refer to the exhibit. An engineer is designing a Layer 2 campus network. The design must support fast convergence and leverage as much bandwidth as possible between layers. Distribution switches do support VSS; unfortunately, not all routing protocols are available for use due to license limitations. Which solution must the engineer choose?

A.

EtherChannel

B.

MEC

C.

RSTP

D.

ECMP

Full Access
Question # 42

An ISP provides Layer 3 VPN service over MPLS to a customer with four branches and multiple CE routers at

each branch. To exchange the routes that are learned from the CE routers, which BGP address family should

the ISP activate among the PE routers?

A.

address-family multicast

B.

L2VPN EVPN

C.

VPNv4 unicast

D.

IPv4 unicast

Full Access
Question # 43

Which control plane protocol is responsible for ElD-to-RLOC mapping concerning SO-Access Architecture?

A.

GBAC

B.

LISP

C.

CEF

D.

VXLAN

Full Access
Question # 44

Question # 44

Refer to the exhibit. Which Cisco Catalyst SD-WAN security feature uses global threat intelligence and advanced sandboxing, and continuously analyzes file activity across an extended network?

A.

Intrusion prevention system

B.

Enterprise Firewall with Application Awareness

C.

Cisco Advanced Malware Protection

D.

DNS-layer security

Full Access
Question # 45

Refer to the exhibit.

Question # 45

An architect is designing a network for a customer supporting a Wake-on-LAN application. Which solution must the architect choose?

A.

IP directed-broadcasts on R1

B.

spanning-tree uplinkfast on SW1

C.

spanning-tree uplinkfast on SW2

D.

IP directed-broadcasts on R2

Full Access
Question # 46

An engineer must use YANG with an XML representation to configure a Cisco IOS XE switch with these specifications:

    IP address 10.10.10.10/27 configured on the interface GigabitEthernet2/1/0

    connectivity from a directly connected host 10.10.10.1/27

Which YANG data model set must the engineer choose?

A)

Question # 46

B)

Question # 46

C)

Question # 46

D)

Question # 46

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Full Access
Question # 47

Which design consideration must be made when dual WAN Edge routers are deployed at a branch site?

A.

Use BGP AS-path prepending to influence egress traffic and use MED to influence ingress traffic from the branch.

B.

HSRP priorities must match the OMP routing policy to prefer one WAN Edge over the other.

C.

Traffic must be symmetrical as it egresses the WAN Edges and returns from remote sites for DPI to function properly.

D.

Configure BFD between WAN Edge routers to detect sub-second link failures.

Full Access
Question # 48

Which protocol is the Cisco SD-Access data plane based on?

A.

OMP

B.

VXLAN

C.

NHRP

D.

LISP

Full Access
Question # 49

Refer to the exhibit.

Question # 49

Which solution decreases the EIGRP convergence time?

A.

Enable subsecond timers

B.

Increase the hold time value

C.

Increase the dead timer value

D.

Enable stub routing on the spokes

Full Access
Question # 50

An architect is designing a network solution for a customer The network is IPv6-only with 1000 hosts. The design must provide external access to up to 10 concurrent IPv6 hosts to allow communication with legacy IPv4 devices on an adjacent network. The customer set aside 10 IPv4 addresses to allow for one-to-one communication between hosts. Which solution must the architect select ?

A.

stateful NAT64

B.

static NAT-PT

C.

dynamic NPTv6

D.

dynamic NAT-PT

Full Access
Question # 51

How do IETF. OpenConfig and Cisco nativo YANG models differ when used to configuro the same feature on an infrastructure device?

A.

OpenConfig models are more comprehensive than IETF.

B.

Cisco native models are less comprehensive than OpenConfig.

C.

Cisco native models are less comprehensive than IETF.

D.

IETF models are more comprehensive than OpenConfig.

Full Access
Question # 52

A company must run a pilot project for an IPv6 application within the network on existing servers and is investigating migration strategies. Contained within a single VLAN, the pilot must span a dual-site data center environment that is formed of Layer 2 and Layer 3 switches. What is a primary consideration for the pilot?

A.

Layer 2 and Layer 3 switches within each data center that provisions the data center network must support dual stacking.

B.

Hosts within each data center that participates in the pilot must support dual stacking.

C.

Layer 2 switches within each data center that provisions the VLAN must support dual stacking.

D.

Layer 3 switches within each data center that provisions the network must support dual stacking.

Full Access
Question # 53

Question # 53

Refer to the exhibit An engineer is designing an OSPF solution with these requirements:

    NMS server will manage R5 and R6.

    Upon failure of R1. all NMS traffic should be routed through R4.

    Upon failure of the link between R5 and R6. all traffic destined for 10.6.6.6 should be routed through R4

Which solution must the engineer choose?

A.

Advertise 172.16.1.1 into OSPF process 1 with high cost on R1.

B.

Apply static routes on R2 and R3 with IP SLA tracking toward R5 and R6.

C.

Enable the default-Information originate command with a higher metric on R2 to R1.

D.

Redistribute OSPF process 1 into process 2 on R1 and R4.

Full Access
Question # 54

An engineer must use YANG with an XML representation to configure a Cisco IOS XE switch with these specifications:

    IP address 10.10.10.10/27 configured on the interface GigabitEthernet2/1/0

    connectivity from a directly connected host 10.10.10.1/27

Which YANG data model set must the engineer choose?

A.

B.

C.

D.

Full Access
Question # 55

A company is working with a service provider to design a BGP policy. The company is dual-homed with the provider and wants to control which link inbound traffic transits. Also, the company will advertise several networks to the provider and needs propagation to go no further. Which BGP attribute meet these requirements?

A.

AS-path

B.

MED

C.

community

D.

local preference

Full Access
Question # 56

Question # 56

Refer to the exhibit. A customer has two eBGP peerings from a single CE router toward two service providers. The customer has hired an architect to design a solution to ensure certain traffic enters the customer ' s network through interface g¡g0/0. Which solution must the architect include in the design?

A.

Advertise a lower MED value toward the less preferred service provider.

B.

Prepend additional AS on the AS path toward the preferred service provider.

C.

Break aggregated routes into longer prefixes and advertise to the preferred service provider.

D.

Set a higher local preference to the preferred service provider path.

Full Access
Question # 57

In a Cisco SD-Access fabric, switch node Is equivalent to an access layer switch In a traditional three-tier campus network design?

A.

edge node

B.

border node

C.

intermediate node

D.

control plane node

Full Access
Question # 58

Which integration capability does gRPC provide?

A.

leveraging the LDAP protocol for authentication and directory services ensuring secure access control in RPC communications

B.

leveraging the XMPP protocol for real-time messaging and collaboration between client and server applications

C.

leveraging protocol buffers to provide efficient serialization and deserialization of structured data over the network

D.

leveraging GRAPH-API for network monitoring and management providing comprehensive visibility into RPC-related metrics and performance statistics

Full Access
Question # 59

An engineer must design a QoS solution for a customer that is connected to an ISP over a 1Gbps link with a 100Mbps CIR. The ISP aggressively drops all traffic received over which is causing numerous TCP retransmissions. The customer is not using any RTP applications but wants to maximize bandwidth usage up to the CIR. Which QoS solution engineer choose?

A.

Policing

B.

Traffic shaping

C.

Policer with markdown

D.

Queuing

Full Access
Question # 60

Which feature provides the capability for intra-VN traffic filtering and control within the Cisco SO-Access architecture?

A.

scalable groups

B.

MAC ACL

C.

prefix list

D.

service policy

Full Access
Question # 61

A customer is discussing QoS requirements with a network consultant. The customer has specified that end-to-end path verification is a requirement. Which QoS solution meets this requirement?

A.

IntServ model with RSVP to support the traffic flows

B.

DiffServ model with PHB to support the traffic flows

C.

marking traffic at the access layer with DSCP to support the traffic flows

D.

marking traffic at the access layer with CoS to support the traffic flows

Full Access
Question # 62

Which routes does the overlay management protocol advertise in an SD-WAN overlay?

A.

underlay, MPLS, and overlay

B.

primary, backup, and load-balanced

C.

prefix, TLOC, and service

D.

Internet, MPLS, and backup

Full Access
Question # 63

What is the function of the multicast Reverse Path Forwarding check?

A.

It allows for a loop-free distribution tree from the source to receivers.

B.

It serves as an Auto RP Mapping agent.

C.

It prevents bootstrap messages from reaching all routers.

D.

It is used to discover and announce RP-set information.

Full Access
Question # 64

Drag and drop the descriptions from the left onto the Cisco SD-WAN component they describe on the right.

Question # 64

Full Access
Question # 65

An engineer is designing a multicast network for a financial application Most of the multicast sources also receive multicast traffic (many-to-many deployment model). To better routing tables, the design must not use source trees. Which multicast protocol satisfies these requirements?

A.

BIRDIR-PIM

B.

PIM-SM

C.

MSDP

D.

PIM-SSM

Full Access
Question # 66

A company must automate a set of complex changes aligned with DR testing in the network. These changes are specific, and the DR playbook will be adjusted in the future. The playbook has diverse routing and switching assets in scope as well as multiple vendor and hardware platforms. A developer will create a thin, web front-end microservice and integrate with an Open daylight controller to push changes to the network. Which YANG model should be used?

A.

Use a single native vendor YANG model to minimize development time

B.

Use an open YANG model to allow the reuse of code and standardize the implementation across platforms

C.

Use multiple native vendor YANG models to provide code consistency.

D.

Develop an individualized YANG model to minimize development resources and time to market.

Full Access
Question # 67

Question # 67

Refer to the exhibit. An engineer proposed this solution for a company that requires a loop-free. Layer 2 network design. The network will run 802.1W, and all links will be 1 Gbps. If all interfaces are up as point- to-point adjacencies, what are the expected port end states based on the design?

A.

Eth1/2 on SW2 and SW3 will be in a Desg FWD state

B.

Eth1/3 on SW2 and SW3 will be m an Attn BLK state

C.

Eth1/2 on SW3 and SW4 will be m an Attn BLKbtate.

D.

Eth1/1 on SW1 and SW2 will be in a Root FWD state.

Full Access
Question # 68

What is a challenge of the SaaS model?

A.

higher initial costs

B.

lack of application and infrastructure control

C.

requires upgrades to individual computers to meet performance requirements

D.

higher application and data integration complexity

Full Access
Question # 69

Exhibit:

Question # 69

A.

Make R3 an L1L2 router.

B.

Make R31 an L1 router.

C.

Make Area 0 L2-only.

D.

Make R11 an L2 router.

Full Access
Question # 70

A company needs to increase access port capacity on one floor of a building. They want to leverage the existing catalyst access switch. There is no problem with uplink bandwidth capacity. However, no additional uplinks can be added because no ports are available on the distribution switches. Which solution must the company choose to provide additional access ports?

A.

VDC

B.

VSS

C.

Etherchannel

D.

Stackwise

Full Access
Question # 71

Which consideration must be taken into account when using the DHCP relay feature in a Cisco SD-Access Architecture?

A.

DHCP-relay must be enabled on fabric edge nodes to provide the correct mapping of DHCP scope to the local anycast gateway.

B.

A DHCP server must be enabled on the border nodes to allow subnets to span multiple fabric edges.

C.

DHCP servers must support Cisco SD-Access extensions to correctly assign IPs to endpoints in an SD-Access fabric with anycast gateway.

D.

DHCP Option-82 must be enabled to map the circuit IP option to the access fabric node where the DHCP discover originated.

Full Access
Question # 72

Drag and drop the properties from the left onto the protocols they describe on the right.

Question # 72

Full Access
Question # 73

A company plans to deploy a new application across the campus network and asks an engineer to create a QoS policy. The application has these characteristics:

    UDP-based

    inelastic flows

    sensitive to delay over 100 milliseconds

    sensitive to jitter over 50 milliseconds

The appropriate bandwidth is allocated and assigned to the queues. Which mechanism must the engineer use to manage the flows that exceed the configured threshold?

A.

policing

B.

scheduling

C.

remarking

D.

shaping

Full Access
Question # 74

An engineer must design a routing solution for a company that is single-homed to an ISP. The company ' s goal is to run BGP between the CE and the PE devices. To support running BGP, the company obtained a public AS number and IP subnet from ARIN. Which solution must the engineer select?

A.

• The customer announces the public IP subnet to the ISP

• The ISP announces the default route to the customer.

B.

• The customer announces the public IP subnet to the ISP

• The ISP announces the BGP table to the customer

C.

• The ISP announces the customer public IP subnet.

• The ISP announces the partial BGP table to the customer.

D.

• The customer announces the default route to the ISP

• The ISP announces the default route to the customer

Full Access
Question # 75

Question # 75

Refer to the exhibit A customer wants to adopt a dynamic site-to-site VPN solution to secure communication for VoIP, video, and FTP traffic between the remote branches and the headquarters. The customer also wants the branches to communicate directly, thereby reducing traffic at the headquarters location. The solution must consider that the branch routers are limited in available memory. Which VPN solution meets these requirements?

A.

DMVPN Phase 2 Hub and Spoke design

B.

DMVPN Phase 3 Hub and Spoke design

C.

DMVPN Phase 1 Hub and Spoke design

D.

DMVPN Phase 3 Hierarchical design

Full Access
Question # 76

An engineer is designing a BGP solution supporting a VXLAN environment over a Layer 3 IPv4 network fabric with these requirements

    provide Layer 2 adjacency

    allow VM migration of workloads between sites

    IGP is OSPF

Which BGP address family must the engineer choose?

A.

VPNv4

B.

IPv4 unicast

C.

L2VPN VPLS-VPWS

D.

L2VPNEVPN

Full Access
Question # 77

Drag and drop the characteristics from the left onto the Yang model they describe on the right.

Select and Place:

Question # 77

Full Access
Question # 78

Refer to the exhibit.

Question # 78

An engineer must design a WAN solution so that ISP-1 is always preferred over ISP-2. The path via ISP-2 is

considered as a backup and must be used only when the path to ISP-1 is down. Which

solution must the engineer choose?

A.

R1:

- Routes advertised to ISP-1: 0x AS-path prepend

- Routes received from ISP-1: HIGH local-preference

- Routes advertised to R2: no action

- Routes received from R2: community NO-EXPORT

R2:

- Routes advertised to ISP-2:5x AS-path prepend

- Routes received from ISP-2: LOW local-preference

- Routes advertised to R1: community NO-ADVERTISE

- Routes received from R1: no action

B.

R1:

- Routes advertised to ISP-1: 0x AS-path prepend

- Routes received from ISP-1: HIGH local-preference

- Routes advertised to R2: community NO-EXPORT

- Routes received from R2: no action

R2:

- Routes advertised to ISP-2: 5x AS-path prepend

- Routes received from ISP-2: LOW local-preference

- Routes advertised to R1: no action

- Routes received from R1: no action

C.

R1:

- Routes advertised to ISP-1: 0x AS-path prepend

- Routes received from ISP-1: LOW local-preference

- Routes advertised to R2: community NO-ADVERTISE

- Routes received from R2: no action

R2:

- Routes advertised to ISP-2: 5x AS-path prepend

- Routes received from ISP-2: HIGH local-preference

- Routes advertised to R1: no action

- Routes received from R1: community NO-ADVERTISE

D.

R1:

- Routes advertised to ISP-1: 5x AS-path prepend

- Routes received from ISP-1: LOW local-preference

- Routes advertised to R2: community NO-ADVERTISE

- Routes received from R2: no action

R2:

- Routes advertised to ISP-2: 0x AS-path prepend

- Routes received from ISP-2: HIGH local-preference

- Routes advertised to R1: community NO-EXPORT

- Routes received from R1: no action

Full Access
Question # 79

How is redundancy achieved among Cisco vBond Orchestrators in a Cisco SD-WAN deployment?

A.

The IP addresses of all Orchestrators are mapped to a single DNS name.

B.

The closest Orchestrator to each Cisco WAN Edge router is selected.

C.

Cisco WAN Edge routers are configured with all Orchestrators using their IP addresses and priority.

D.

A single Cisco Orchestrator is deployed in each network.

Full Access
Question # 80

An engineer must design a VPN solution for a company that has multiple branches connecting to a main office. What are two advantages of using DMVPN instead of IPsec tunnels to accomplish this task? (Choose

two.)

A.

support for AES 256-bit encryption

B.

greater scalability

C.

support for anycast gateway

D.

lower traffic overhead

E.

dynamic spoke-to-spoke tunnels

Full Access
Question # 81

A network engineer discovers that an alternate or root port on a Cisco Layer 2 switch intermittently becomes the designated port, which causes an STP loop. What must be configured to resolve the issue?

A.

PortFast BPDU guard

B.

UDLD

C.

STP loop guard

D.

STP root guard

Full Access
Question # 82

Since installing a cisco TelePresence system, the company is experiencing other application having response issues when the system in use. As a result, the company asked an architect to recommend a QoS solution. The customer is currently using a CBWFQ policy to manage traffic on an internet connection with a speed of 100 Mbps. Which link-capacity limit must the architect choose for strict-priority for the real-time traffic?

A.

25 Mbps

B.

50 Mbps

C.

33 Mbps

D.

75 Mbps

Full Access
Question # 83

An engineer is designing an EIGRP network for a small branch site where there is only one Layer 3 router. The engineer wants the router to advertise the local LAN network to remote EIGRP neighbors without sending any unnecessary multicast messages on the local LAN. Which action should the engineer take?

A.

Use a static default route for this site instead of EIGRP

B.

Advertise the local LAN using the network command and the passive-interface feature

C.

Redistribute the local LAN network using the redistribute connected command

D.

Advertise the local LAN subnet as a stub network

Full Access
Question # 84

Question # 84

Refer to the exhibit. Customers report low video quality and delays when having point-to-point telepresence video calls between the two locations. An architect must optimize a design so that traffic follows the same path for egress and ingress traffic flows. Which technique optimizes the design?

A.

Configure route leaking on the router in area 2.

B.

Configure route leaking on the router in area 1.

C.

Configure the high metric on the router in area 4.

D.

Configure route filter on the router in area 4.

Full Access
Question # 85

Drag and drop the elements from the left onto the YANG models where they and used on the right.

Question # 85

Full Access
Question # 86

A network engineer must design a multicast solution to prevent the spoofing of multicast streams and ensure efficient bandwidth utilization. The network will be merged with another multicast domain in the future, and the merge must require minimum effort. Which two solutions meet the customer requirements? (Choose two.)

A.

PIM-SSM

B.

IGMPv3

C.

IGMPv2

D.

PIM-SM

E.

MSDP

Full Access
Question # 87

Which two functions does the control plane node provide in a Cisco SD-Access architecture? (Choose two.)

A.

LISP proxy ETR

B.

host tracking database

C.

policy mapping

D.

map server

E.

endpoint registration

Full Access
Question # 88

When differentiating between IETF. OpenConfig. and Cisco native YANG models, how does the use of containers differ?

A.

OpenConfig uses one container for operational data and another container for configuration data, and IETF and Cisco native models use a single container for operational data and configuration data.

B.

IETF and Cisco native models use a single container for operational data and configuration data, and OpenConfig uses one container for operational data and another container for configuration data.

C.

IETF and Cisco native models use one container for operational data and another container for configuration data, and OpenConfig uses a single container for operational data and configuration data.

D.

Cisco native models use one container for operational data and another container for configuration data, and OpenConfig and IETF use a single container for operational data and configuration data.

Full Access
Question # 89

A company wants to switch from static to dynamic routing. The branches use DMVPN back to the hub using two internet connections. One internet connection speed is 10 Mbps, and the other is 100 Mbps. All locations use Cisco routers; however, the branch routers have limited memory and CPU resources. Which routing protocol and design solution must the company choose for optimal traffic forwarding during peak traffic times?

A.

iBGP with the hub routers set up as route reflectors

B.

OSPF deployed in area 0 with branch routers connected back via virtual links

C.

EIGRP with branch routers as stub routers and variance enabled

D.

ISIS with the hub and spoke routers configured in two different areas

Full Access
Question # 90

A company plans to transition to IPv6. They will link their IPv4 addresses to the lowest significant bits of the new Ipv6 addresses. A network administrator with an employee id: 4264:42:116 is preparing a mapping schema for the new IPv6 addresses. Which address does the 172.16.10.0/24 network translate to?

A.

2001:db8:abcd::ac10:a00/120

B.

2001:db8:abcd:172:16:10::/96

C.

2001:db8:abcd:11d8:a00/120

D.

2001:db8:ac10:0a00::/64

Full Access
Question # 91

Question # 91

Refer to the exhibit. A company developed an application to offer its customers and now it must be deployed. The application deployment must meet these requirements:

A.

Connect the two firewalls. Deploy the application in DC1 and DC2. Use IP SLA to control advertisements from DC2.

B.

Connect the two firewalls. Deploy the application in DC1 and DC2. Advertise the same prefix from DC1 and DC2.

C.

Deploy the application in DC1 and DC2. Advertise the prefix from DC1 with /32. Advertise the prefix from DC2 with /24.

D.

Deploy the application in DC1 and DC2. Advertise the same prefix from DC1 and DC2. Distribute traffic flows.

Full Access
Question # 92

What is the purpose of a Cisco SD-Access underlay network?

A.

to abstract IP-based connectivity from physical connectivity

B.

to emulate LAN segments to transport Layer 2 frames over a Layer 3 network

C.

to establish physical connectivity between switches and routers

D.

to provide virtualization by encapsulating network traffic over IP tunnels

Full Access
Question # 93

Prior to establishing full-mesh iPsec tunnels in a typical Cisco SD-WAN deployment, which mechanism do WAN Edge routers use to exchange Key information for data plane encryption?

A.

They use vSmart controllers as key exchange servers.

B.

They use vManage as a key exchange server.

C.

They use IKEv2 when exchanging keys with each other.

D.

They use vBond as a key exchange server.

Full Access
Question # 94

Which method does Cisco SD-WAN use to avoid fragmentation issues?

A.

PMTUD is used.

B.

Traffic is marked with the DF bit set.

C.

Jumbo frames are enabled.

D.

Access circuits are configured with 1600 byte MTU settings.

Full Access
Question # 95

Which function does the Cisco SD-Access intermediate node perform?

A.

Act as LISP proxy tunnel router.

B.

Route and transport IP traffic.

C.

Act as an anycast Layer 3 gateway.

D.

Map users to a virtual network.

Full Access
Question # 96

A network engineer must connect two sites across a public network using a secure tunneling technology that

supports multicast traffic. Which technology must be chosen?

A.

IPsec

B.

GRE

C.

PPTP

D.

GRE over IPsec

Full Access
Question # 97

Currently, inter-VRF routing between the global routing table and VRF-A is accomplished on the client firewall, but the customer wants to do this on the core network layer. The customer does not want to run BGP, VRF-Lite : or static routing Which mechanism meets the requirements?

A.

policy-based routing with the global set statement in a route map

B.

route map that matches access lists and prefix lists with the import feature

C.

inter-VRF can only be used on an external device with a link in each VRF

D.

VRF receive feature under the global routing interfaces

Full Access
Question # 98

Refer to the exhibit.

Question # 98

An engineer must optimize the traffic flow of the network. Which change provides a more

efficient design between the access and the distribution layer?

A.

Add a link between access switch A and access switch B

B.

Reconfigure the distribution switch A to become the HSRP Active

C.

Change the link between distribution switch A and distribution switch B to be a routed link

D.

Create an EtherChannel link between distribution switch A and distribution switch B

Full Access
Question # 99

Drag and drop the descriptions from the left onto the corresponding VPN types on the rights.

Question # 99

Full Access
Question # 100

What is the purpose of a control plane node in a Cisco SD-Access network fabric?

A.

to maintain the endpoint database and mapping between endpoints and edge nodes

B.

to detect endpoints in the fabric and inform the host tracking database of EID-to-fabric-edge node bindings

C.

to identify and authenticate endpoints within the network fabric

D.

to act as the network gateway between the network fabric and outside networks

Full Access
Question # 101

Question # 101

Refer to the exhibit. A customer needs to apply QoS to the network management traffic passing through the GigabitEthernet0/2 interface. All eight queuing classes are in use, so the new requirement must be integrated into the existing policy. Which solution must the customer choose?

A.

Mark traffic to DSCP CS5 and assign it to the SIGNALLING class. Then, baseline existing queue sizes to determine if additional bandwidth can be provisioned to the SIGNALLING class.

B.

Mark the traffic to DSCP CS4 and assign it to the SIGNALLING class. Then, prioritize traffic within the class.

C.

Mark the traffic to DSCP CS6 and assign it to the ROUTING class Then, prioritize traffic within the class.

D.

Mark the traffic to DSCP CS2 and assign it to the ROUTING class Then, baseline existing queue sizes to determine if additional bandwidth can be provisioned to the ROUTING class

Full Access
Question # 102

An engineer must design a multicast network for a financial application. Most of the multicast sources also receive multicast traffic (many-to-many deployment model). To better scale routing tables, the design must not use source trees. Which multicast protocol satisfies these requirements?

A.

PIM-SSM

B.

PIM-SM

C.

MSDP

D.

BIDIR-PIM

Full Access
Question # 103

An engineer is looking for a standards-driven YANG model to manage a multivendor network environment. Which model must the engineer choose?

A.

Native

B.

OpenConfig

C.

IETF

D.

IEEE NETCONF

Full Access
Question # 104

Question # 104

Refer to the exhibit. An architect is designing an ISIS solution with these requirements:

    The backbone area will grow to 50 routers in the next 12 months.

    Routers A1 and A2 must avoid suboptimal routing.

    Summarization and route-leaking should be allowed in areas 49.002 and 49.003.

Which solution must the architect select?

A.

area 49.000 L1, area 49.001 L2, area 49.002 L2, and area 49.003 L2

B.

area 49.000 L1, area 49.001 L1, area 49.002 L2, and area 49.003 L2

C.

area 49.000 L2. area 49.001 L1, area 49.002 L1, and area 49.003 L1

D.

area 49.000 L2. area 49.001 L2, area 49.002 L1, and area 49.003 L1

Full Access
Question # 105

An engineer is designing a multicast network for a company specializing in VoD content. Receivers are across the Internet, and for performance reasons, the multicast framework close to the receivers within each AS. For high availability, if the sources in one AS are no longer available, the receivers of that AS must be able to receive the VoD content from sources in another AS. Which feature must the design include?

A.

Bidirectional PIM

B.

SSM

C.

Anycast RP

D.

MSDP

Full Access
Question # 106

Which protocol is the Cisco SD-Access data plane based on?

A.

OMP

B.

VXLAN

C.

NHRP

D.

LISP

Full Access
Question # 107

An architect must create a QoS solution for a customer to ensure that a 40 Mbps Internet connection is shared between four subnets based on these requirements:

* Each subnet must receive no less than 10 Mbps of download bandwidth during peak traffic times.

* A subnet can use up to 40 Mbps during nonpeak traffic times if the other subnets are idle.

* Download traffic must never experience a delay.

Which solution must the architect choose?

A.

rate-limiting and shaping

B.

bandwidth percentage and policing

C.

shaping and policing

D.

bandwidth percentage and rate-limiting

Full Access
Question # 108

An engineer must design an in-band management solution for a customer with branch sites. The solution must allow remote management of the branch sites using management protocols over an MPLS WAN. Queueing is implemented at the remote sites using these classes:

Question # 108

How must the solution prioritize the management traffic over the WAN?

A.

Mark the traffic with DSCP CS1 and map into Class2 with a minimum bandwidth assigned by reducing the bandwidth available to CIass3.

B.

Mark the traffic with DSCP CS6 and map into Class1 with a minimum bandwidth assigned by reducing the bandwidth available to Class2

C.

Mark the traffic with DSCP EF and map into Class1 with a minimum bandwidth assigned by reducing the bandwidth available to Class2.

D.

Mark the traffic with DSCP CS2 and map into Class2 with a minimum bandwidth assigned by reducing the bandwidth available to Class3

Full Access
Question # 109

An engineer must establish a direct connection between two remote offices. The new connection must be established using a logical path, share a common broadcast domain, connect over private WAN, and have as little overhead as possible. Which technology must the engineer choose?

A.

L2VPN

B.

GET VPN

C.

IPsec

D.

GRE

Full Access
Question # 110

A company has many spoke sites with two data centers. The company wants to exchange the routing information between the data centers and the spoke sites using EIGRP. All locations belong to a single AS. and auto-summarization Is disabled. Which two actions must the company choose? (Choose two.)

A.

Exchange all routes between locations

B.

Summarize the routes between the hubs.

C.

Make each spoke site router a stub router

D.

Summarize the routes from spokes to the hubs.

E.

Split the network into two separate ASs

Full Access
Question # 111

Which two statements about VRRP advertisements are true? (Choose two.)

A.

    They are sent from the master router and standby routers.

B.

    They include VRRP timer information.

C.

    They are sent only from the master router.

D.

    They include priority information.

E.

    They are sent every three seconds by default.

Full Access
Question # 112

Which two BGP features will result in successful route exchanges between eBGP neighbors sharing the same

AS number? (Choose two.)

A.

advertise-best-external

B.

bestpath as-path ignore

C.

client-to-client reflection

D.

as-override

E.

allow-as-in

Full Access
Question # 113

Refer to the exhibit.

Question # 113

An engineer is designing a routing solution for a customer. The design must ensure that a failure of network

10.1.0.0/24, 10.1.2.0/24, 10.2.1.0/24, or 10.2.3.0/24 does not impact the core. It also requires fast convergence

time during any link failover in the core or access networks. Which solution must the engineer select?

A.

Add aggregation layer between core and access networks.

B.

Enable graceful restart on routers A and C.

C.

Enable FRR for the connected networks of routers A and C.

D.

Enable summarization on routers A and C.

Full Access