首页 > 题库 > 350-401
« 返回题库列表

CCNP 350-401模拟考试题及答案解析|ENCOR练习题强化训练

问题 #1
What does the Cisco DNA REST response indicate?
A. Cisco DNA Center has the incorrect credentials for cat9000-1
B. Cisco DNA Center is unable to communicate with cat9000-1
C. Cisco DNA Center has the incorrect credentials for RouterASR-1
D. Cisco DNA Center has the incorrect credentials for cat3850-1
正确答案:A
问题 #2
Refer to the exhibit. After running the code in the exhibit. Which step reduces the amount of data that NETCONF server returns to the NETCONF client, to only the interface's configuration?
A. Create an XML filter as a string and pass it to get_config() method as an argument
B. Use the txml library to parse the data returned by the NETCONF server for the interface's configuration
C. Create a JSON filter as a string and pass it to the get_config() method as an argument
D. Use the JSON library to parse the data returned by the NETCONF server for the interface's configuration
正确答案:A
问题 #3
A network engineer configures BGP between R1 and R2. Both routers use BGP peer group CORP and are set up to use MD5 authentication. This message is logged to the console of router R1: *Jun 5 33:34:33.033: %TCP-6-BADAUTH: Invalid MD5 digest from 10.10.10.1
A. R2(config-router)#neighbor 10.10.10.1 peer-group CORP
B. R2(config-router)#neighbor 10.10.10.1 peer-group CORP
C. R1(config-router)#neighbor 10.10.10.1 peer-group CORP
D. R1(config-router)#neighbor 10.120.10.1 peer-group CORP
E. R2(config-router)#neighbor 10.120.10.1 peer-group CORP
正确答案:CE
问题 #4
Which three elements determine Air Time efficiency? (Choose three)
A. evert-driven RRM
B. data rate (modulation density) or QAM
C. channel bandwidth
D. number of spatial streams and spatial reuse
E. RF group leader
F. dynamic channel assignment
正确答案:BCD
问题 #5
Which features does Cisco EDR use to provide threat detection and response protection?
A. containment, threat intelligence, and machine learning
B. firewalling and intrusion prevention
C. container-based agents
D. cloud analysis and endpoint firewall controls
正确答案:A
问题 #6
Which two threats does AMP4E have the ability to block? (Choose two)
A. DDoS
B. ransomware
C. SQL injection
D. Microsoft Word macro attack
E. email phishing
正确答案:BD
问题 #7
Refer to the exhibit. %OSPF-5-ADJCHG: Process 1, Nbr 10.0.0.2 on FastEthernet0/0 from FULL to DOWN, Neighbor Down: Interface down or detached %OSPF-6-AREACHG: 10.0.0.1/32 changed from area 0 to area 1 %OSPF-4-ERRRCV: Received invalid packet: mismatch area
A. OSPF area change
B. hello packet mismatch
C. MTU mismatch
D. IP address mismatch
正确答案:A
问题 #8
What are two characteristics of VXLAN? (Choose two)
A. It uses VTEPs to encapsulate and decapsulate frames.
B. It has a 12-bit network identifier
C. It extends Layer 2 and Layer 3 overlay networks over a Layer 2 underlay.
D. It lacks support for host mobility
E. It allows for up to 16 million VXLAN segments
正确答案:AE
问题 #9
Refer to the exhibit. A network engineer configures a new GRE tunnel and enters the show run command. What does the output verify?
A. The tunnel keepalive is configured incorrectly because they must match on both sites
B. The tunnel destination will be known via the tunnel interface
C. The tunnel will be established and work as expected
D. The default MTU of the tunnel interface is 1500 byte.
正确答案:B
问题 #10
Which design principle slates that a user has no access by default to any resource, and unless a resource is explicitly granted, it should be denied?
A. least privilege
B. fail-safe defaults
C. economy of mechanism
D. complete mediation
正确答案:A
问题 #11
How does an on-premises infrastructure compare to a cloud infrastructure?
A. On-premises can increase compute power faster than cloud
B. On-premises requires less power and cooling resources than cloud
C. On-premises offers faster deployment than cloud
D. On-premises offers lower latency for physically adjacent systems than cloud.
正确答案:D
问题 #12
What is the function of a VTEP in VXLAN?
A. provide the routing underlay and overlay for VXLAN headers
B. dynamically discover the location of end hosts in a VXLAN fabric
C. encapsulate and de-encapsulate traffic into and out of the VXLAN fabric
D. statically point to end host locations of the VXLAN fabric
正确答案:C
问题 #13
Refer to the exhibit. An engineer implemented several configuration changes and receives the logging message on switch1. Which action should the engineer take to resolve this issue?
A. Change the VTP domain to match on both switches
B. Change Switch2 to switch port mode dynamic auto
C. Change Switch1 to switch port mode dynamic auto
D. Change Switch1 to switch port mode dynamic desirable
正确答案:A
问题 #14
Refer to the exhibit. What is the effect of the configuration?
A. The device will allow users at 192.168.0.202 to connect to vty lines 0 through 4 using the password ciscotestkey
B. The device will allow only users at 192 168.0.202 to connect to vty lines 0 through 4
C. When users attempt to connect to vty lines 0 through 4. the device will authenticate them against TACACS* if local authentication fails
D. The device will authenticate all users connecting to vty lines 0 through 4 against TACACS+
正确答案:D
问题 #15
Refer to the exhibit.After configuring the BGP network,an engineer verifies that the path between server1 and server2 is functional,why did RouterSF choose the route from RouterDAL instead of the route from RouterCHI?
A. BGP is not running on RouterCHI
B. The Router-ID for Router DAL is lower than Router-ID for RouterCHI
C. There is a static route in RouterSF for 10.0.0.0/24
D. The route from RouterDAL has a lower MED
正确答案:B
问题 #16
An engineer is configuring RADIUS-Based Authentication with EAP MS-CHAPv2 is configured on a client device.which outer method protocol must be configured on the ISE to support this anthentication type ?
A. EAP-TLS
B. LDAP
C. EAP-FAST
D. PEAP
正确答案:D
问题 #17
Under which network conditions is an outbound QoS policy that is applied on a router WAN interface most beneficial?
A. under all network conditions
B. under network convergence conditions
C. under traffic classification and marking conditions
D. under interface saturation conditions
正确答案:D
问题 #18
Refer to the exhibit. Which command is required to verify NETCONF capability reply messages?
A. show netconf | section rpc-reply
B. show netconf rpc-reply
C. show netconf xml rpc-reply
D. show netconf schema | section rpc-reply
正确答案:D
问题 #19
A network engineer must configure a router to send logging messages to a syslog server based on these requirements: uses syslog IP address: 10.10.10.1 uses a reliable protocol must not use any well-known TCP/UDP ports Which configuration must be used?
A. logging host 10.10.10.1 transport tcp port 1024
B. logging origin-id 10.10.10.1
C. logging host 10.10.10.1 transport udp port 1023
D. logging host 10.10.10.1 transport udp port 1024
正确答案:A
问题 #20
Refer to the exhibit.What is the value of the variable list after the code is run ?
A. [1,2,10]
B. [1,2,3,10]
C. [1,2,10,4]
D. [1,10,10,10]
正确答案:B
问题 #21
A network engineer is designing a Qos policy for voice and video applications. which software queuing feature provides strict-priority servicing ?
A. Class-Based Weighted Fair Queuing
B. Link Fragmentation
C. Low Larency Queuing
D. Automatic Qos
正确答案:C
问题 #22
What is the difference in dBm when an AP power increases from 25 mW to 100mW?
A. 75dBm
B. 150dBm
C. 6dBm
D. 125dBm
正确答案:C
问题 #23
Which free application make REST call against DNA center?
A. Postman
B. Ansible
C. Chef
D. Puppet
正确答案:A
问题 #24
Which marking field is used only as an internal marking within a router?
A. QoS Group
B. Discard Eligibility
C. IP Precedence
D. MPLS Experimental
正确答案:A
问题 #25
Refer to the exhibit. Which command set enables router R2 to be configured via NETCONF?
A. R2(config)#username Netconf privilege 15 password example_password
B. R2(config)#snmp-server manager
C. R2(config)#snmp-server manager
D. R2(config)#netconf
正确答案:A
问题 #26
Which two actions are recommended as security best practice to protect REST API (Choose two)
A. Use TACACACS+ authentication
B. Enable dual authentication of the session
C. Enable out-of band authentication
D. Use SSL for encryption
E. Use a password hash
正确答案:DE
问题 #27
What are the two protocols redistributed into OMP?
A. OSPF
B. RIP
C. LDP
D. RSVP
E. EIGRP
正确答案:AE
问题 #28
An organization wants to use the cisco SD-WAN regionalized service-chaining feature to optimize cost and user experience with application in the network, which allows branch routers to analyze and steer traffic toward the required network function. Which
A. Cloud Services Platform
B. VNF Service Chaning
C. Cloud onRamp for Colocation
D. Cloud onRamp for laaS
正确答案:C
问题 #29
A customer has two Cisco WLCs that manage separate APs throughout a building. Each WLC advertises the same SSID but terminates on different interfaces. Users report that they drop their connections and change IP addresses when roaming. Which action resolv
A. Configure high availability
B. Enable test roaming
C. Enable client load balancing
D. Configure mobility groups
正确答案:D
问题 #30
Refer to the exhibit. What is displayed when the code is run?
A. The answer is 25
B. The answer is 70
C. The answer is 5
D. The answer is 100
正确答案:A
问题 #31
A script contains the statement "while loop != 999:". Which value terminates the loop?
A. A value less then or equal to 999
B. A value greater then or equal to 999
C. A value not equal to 999
D. A value equal to 999
正确答案:D
问题 #32
Which CISCO SD-WAN component authenticates the routers and the vSmart controllers?
A. vAnalytics
B. vBond orchestrator
C. vEdge
D. vManage NMS
正确答案:D
问题 #33
When voice services are deployed over a wireless environment, which service must be disabled to ensure the quality of calls?
A. Aggressive load balancing
B. Dynamic transmit power control
C. Priority queuing
D. Fastlane
正确答案:A
问题 #34
What is a characteristic of an AP operating in FlexConnect Mode?
A. All traffic traverses the WLC to ensure policy enforcement on client traffic
B. Forwarding continues when the AP loses connectivity to the WLC
C. APs connect in a mesh topology and elect a root AP
D. FlexConnect enables an AP to connect to multiple WLCs
正确答案:B
问题 #35
Refer to the exhibit. An engineer must configure an ERSPAN tunnel that mirrors traffic from Linux1 on Switch1 to Linux2 on Switch2. Which command must be added to the source configuration to enable the ERSPAN tunnel?
A. (config-mon-erspan-src-dst)#no shut
B. (config-mon-erspan-src-dst)#monitor session 1 activate
C. (config-mon-erspan-src-dst)#traffic bidirectional
D. (config-mon-erspan-src-dst)#ip address 10.10.10.10
正确答案:D
问题 #36
Refer to the exhibit. An engineer configured the Bonjour Gateway on a Cisco WLC to support Apple Airplay. Users cannot see Apple TV while on the WLAN. Which action resolves this issue?
A. Disable Neighbor List Dual Band
B. Enable mDNS Snooping
C. Disable Directed Multicast
D. Enable FlexConnect Local Switching
正确答案:B
问题 #37
Refer to the exhibit. What is the value of the variable list after the code is run? list = [1, 2, 3, 4] list[3] = 10 print(list)
A. [1, 10, 10, 10]
B. [1, 2, 10]
C. [1, 2, 10, 4]
D. [1, 2, 3, 10]
正确答案:D
问题 #38
Refer to the exhibit.A network engineer must log in to the router via the console, but the RADIUS servers are not reachable. Which credentials allow console access?
A. the username "cisco" and the password "cisco123"
B. no username and only the password "test123"
C. no username and only the password "cisco123"
D. the username "cisco" and the password "cisco"
正确答案:C
问题 #39
A customer transitions a wired environment to a Cisco SD-Access solution. The customer does not want to integrate the wireless network with the fabric. Which wireless deployment approach enables the two systems to coexist and meets the customer requiremen
A. Deploy a separate network for the wireless environment.
B. Implement a Cisco DNA Center to manage the two networks.
C. Deploy the wireless network over the top of the fabric.
D. Deploy the APs in autonomous mode.
正确答案:C
问题 #40
Which two solutions are used for backing up a Cisco DNA Center Assurance database? (Choose two)
A. NFS share
B. local server
C. non-linux server
D. remote server
E. bare metal server
正确答案:AD
问题 #41
Refer to the exhibit. Which command set must be applied on R1 to establish a BGP neighborship with R2 and to allow communication from R1 to reach the networks?
A. router bgp 1200
network 209. 165.200.224 mask 255.255.255.224
neighbor 209. 165.202.130 remote-as 1201
B. router bgp 1200
network 209. 165.201.0 mask 255.255.255.224
neighbor 209. 165.202.130 remote-as 1201
C. router bgp 1200
network 209. 165.200.224 mask 255.255.255.224
neighbor 209. 165.202.130 remote-as 1200
D. router bgp 1200
network 209. 165.200.224 mask 255.255.255.224
neighbor 209. 165.201.2 remote-as 1200
正确答案:A
问题 #42
A customer wants to provide wireless access to contractors using a guest portal on Cisco ISE. The portal is also used by employees. A solution is implemented, but contractors receive a certificate error when they attempt to access the portal. Employees ca
A. Install a trusted third-party certificate on the Cisco ISE
B. Install an internal CA signed certificate on the Cisco ISE.
C. Install a trusted third-party certificate on the contractor devices.
D. Install an internal CA signed certificate on the contractor devices.
正确答案:A
问题 #43
Refer the exhibit. Which configuration elects SW4 as the root bridge for VLAN 1 and puts G0/2 on SW2 into a blocking state?
A. SW4(config)#spanning-tree vlan 1 priority 32768
B. SW4(config)#spanning-tree vlan 1 priority 32768
C. SW4(config)#spanning-tree vlan 1 priority 0
D. SW4(config)#spanning-tree vlan 1 priority 0
正确答案:C
问题 #44
Which Python code snippet must be added to the script to save the returned configuration as a JSON-formatted file?
A. with open("ifaces.json", "w") as OutFile:
OutFile. write(Response.text)
B. with open("ifaces.json", "w") as OutFile:
OutFile. write(Response.json())
C. with open("ifaces.json", "w") as OutFile:
JSONResponse = json. loads(Response.text)
OutFile. write(JSONResponse)
D. with open("ifaces.json", "w") as OutFile:
OutFile. write(Response)
正确答案:B
问题 #45
Refer to the exhibit. An engineer must configure an ERSPAN session with the remote end of the session 10.10.0.1. Which commands must be added to complete the configuration?
A. Device(config)# monitor session 1 type erspan-source
Device(config-mon-erspan-src-dst)#no origin ip address 10. 10.0.1
Device(config-mon-erspan-src-dst)#ip address 10. 10.0.1
B. Device(config)# monitor session 1 type erspan-destination
Device(config-mon-erspan-src-dst)#origin ip address 10. 1.0.1
C. Device(config)# monitor session 1 type erspan-source
Device(config-mon-erspan-src-dst)#no origin ip address 10. 10.0.1
Device(config-mon-erspan-src-dst)#ip destination address 10. 10.0.1
D. Device(config)# monitor session 1 type erspan-source
正确答案:A
问题 #46
What is the result when an active route processor fails in a design that combines NSF with SSO?
A. An NSF-aware device immediately updates the standby route processor RIB without churning the network.
B. The standby route processor temporarily forwards packets until route convergence is complete.
C. An NSF-capable device immediately updates the standby route processor RIB without churning the network.
D. The standby route processor immediately takes control and forwards packets along known routes
正确答案:D
问题 #47
An engineer uses the Design workflow to create a new network infrastructure in Cisco DNA Center. How is the physical network device hierarchy structured?
A. by location
B. by role
C. by organization
D. by hostname naming convention
正确答案:A
问题 #48
Refer to the exhibit. A network engineer must configure NETCONF. After creating the configuration, the engineer gets output from the command show line, but not from show runningconfig. Which command completes the configuration?
A. Device(config)#netconf lock-time 500
B. Device(config)#netconf max-message 1000
C. Device(config)#no netconf ssh acl 1
D. Device(config)#netconf max-sessions 100
正确答案:B
问题 #49
Refer to the exhibit. Router BRDR-1 is configured to receive the 0.0.0.0/0 and 172.17.1.0/24 network via BGP and advertise them into OSPF are 0. An engineer has noticed that the OSPF domain is receiving only the 172.17.1.0/24 route and default route 0.0.0
A. router ospf 1
B. router ospf 1
C. router ospf 1
D. router ospf 1
正确答案:D
问题 #50
An engineer must create an EEM script to enable OSPF debugging in the event the OSPF neighborship goes down. Which script must the engineer apply?
A. event manager applet ENABLE_OSPF_DEBUG
event syslog pattern''%OSPF-5-ADJCHG Process 5,Nbr 1. 1.1.1 on serial0/0 from LOADING to FULL''
action 1. 0 cli command''enable''
action 2. 0 cli command'' debug ip ospf event''
action 3. 0 cli command'' debug ip ospf adj''
action 4. 0 syslog priority informational msg'' ENABLE_OSPF_DEBUG''
B. event manager applet ENABLE_OSPF_DEBUG
event syslog pattern''%OSPF-5-ADJCHG Process 5,Nbr 1. 1.1.1 on serial0/0 from LOADING to FULL''
action 2. 0 cli command'' debug ip ospf event''
action 3. 0 cli command'' debug ip ospf adj''
action 4. 0 syslog priority informational msg'' ENABLE_OSPF_DEBUG''
C. event manager applet ENABLE_OSPF_DEBUG
event syslog pattern''%OSPF-5-ADJCHG Process 6,Nbr 1. 1.1.1 on serial0/0 from FULL to DOWN''
action 1. 0 cli command''enable''
action 2. 0 cli command'' debug ip ospf event''
action 3. 0 cli command'' debug ip ospf adj''
action 4. 0 syslog priority informational msg'' ENABLE_OSPF_DEBUG''
D. event manager applet ENABLE_OSPF_DEBUG
event syslog pattern''%OSPF-1-ADJCHG Process 5,Nbr 1. 1.1.1 on serial0/0 from FULL to DOWN''
action 2. 0 cli command'' debug ip ospf event''
action 3. 0 cli command'' debug ip ospf adj''
action 4. 0 syslog priority informational msg'' ENABLE_OSPF_DEBUG''
正确答案:C
问题 #51
An engineer is implementing a Cisco MPLS TE tunnel to improve the streaming experience for the clients of a video-on-demand server. Which action must the engineer perform to configure extended discovery to support the MPLS LDP session between the headend
A. Configure the interface bandwidth to handle TCP and UDP traffic between the LDP peers
B. Configure a Cisco MPLS TE tunnel on both ends of the session
C. Configure an access list on the interface to permit TCP and UDP traffic
D. Configure a targeted neighbor session.
正确答案:B
问题 #52
AN engineer is implementing a route map to support redistribution within BGP. The route map must configured to permit all unmatched routes. Which action must the engineer perform to complete this task?
A. Include a permit statement as the first entry
B. Include at least one explicit deny statement
C. Remove the implicit deny entry
D. Include a permit statement as the last entry
正确答案:D
问题 #53
Refer to the exhibit. A network operator is attempting to configure an IS-IS adjacency between two routers, but the adjacency cannot be established. To troubleshoot the problem, the operator collects this debugging output. Which interfaces are misconfigur
A. The peer router interface is configured as Level 1 only, and the R2 interface is configured as Level 2 only
B. The R2 interface is configured as Level 1 only, and the Peer router interface is configured as Level 2 only
C. The R2 interface is configured as point-to-point, and the peer router interface is configured as multipoint.
D. The peer router interface is configured as point-as-point, and the R2 interface is configured as multipoint.
正确答案:B
问题 #54
What occurs when a high bandwidth multicast stream is sent over an MVPN using Cisco hardware?
A. The traffic uses the default MDT to transmit the data only if it isa (S,G) multicast route entry
B. A data MDT is created to if it is a (*, G) multicast route entries
C. A data and default MDT are created to flood the multicast stream out of all PIM-SM neighbors.
D. A data MDT is created to allow for the best transmission through the core for (S, G) multicast route entries.
正确答案:D
问题 #55
AN engineer is implementing MPLS OAM to monitor traffic within the MPLS domain. Which action must the engineer perform to prevent from being forwarded beyond the service provider domain when the LSP is down?
A. Disable IP redirects only on outbound interfaces
B. Implement the destination address for the LSP echo request packet in the 127.x.y.z/8 network
C. Disable IP redirects on all ingress interfaces
D. Configure a private IP address as the destination address of the headend router of Cisco MPLS TE.
正确答案:C
问题 #56
An engineer must configure AAA on a cisco 9800 WLC for central web authentication.which two commands are needed to accomplish this task?(choose two)
A. (Cisco Controller)>config wlan aaa-override disable
B. (Cisco Controller)>config radius acct add 10.10.10.12 1812 SECRET
C. (Cisco Controller)>config wlan aaa-override enable
D. Device(config-locsvr-da-radius)#client 10.10.10.12 server-key 0 SECRET
E. Device(config)#aaa server radius dynamic-author
正确答案:DE
问题 #57
An engineer configures GigabitEthernet 0/1 for VRRP group 115.The router must assume the primary role when it has the highest priority in the group.which command set is required to complete this task? interface GigabitEthernet0/1 ip address 10.10.10.2 255
A. Router(config-if)#vrrp 115 priority 100
B. Router(config-if)#standby 115 priority 100
C. Router(config-if)#vrrp 115 track 1 decrement 100
D. Router(config-if)#vrrp 115 track 1 decrement 10
正确答案:D
问题 #58
what is required for a virtual machine to run?
A. a Type 1 hypervisor and a host operating system
B. a hypervisor and physical server hardware
C. only a Type 1 hypervisor
D. only a Type 2 hypervisor
正确答案:B
问题 #59
Under which network conditions is an outbound QoS policy that is applied on a router WAN interface most beneficial?
A. under network convergence conditions
B. under traffic classification and marking conditions
C. under interface saturation conditions
D. under all network conditions
正确答案:C
问题 #60
Which network devices secure API platform?
A. next-generation intrusion detection systems
B. Layer 3 transit network devices
C. content switches
D. web application firewalls
正确答案:D
问题 #61
Which protocol is used to encrypt control plane traffic between SD-WAN controllers and SDWAN endpoints?
A. DTLS
B. IPsec
C. PGP
D. HTTPS
正确答案:A
问题 #62
An engineer must configure the strongest password authentication to locally authenticate on a router. Which configuration must be used?
A. username netadmin secret 5 $1$b1JUSkZbBS1Pyh4OzwXyZ1kSZ2
B. username netadmin secret $15b1JuSk404850110QzwXyZ1k SZ2
C. line Console 0
D. username netadmin secret 9 $9$vFpMfBelbRVV8SseX/bDAxtuV
正确答案:D
问题 #63
Which two items are found in YANG data models? (Choose two.)
A. HTTP return codes
B. rpc statements
C. JSON schema
D. container statements
E. XML schema
正确答案:BD
问题 #64
Which threat defence mechanism, when deployed at the network perimeter, protects against zero-day attacks?
A. intrusion prevention
B. stateful inspection
C. sandbox
D. SSL decryption
正确答案:A
问题 #65
What is a characteristic of MACsec?
A. 802.1AE provides encryption and authentication services
B. 802.1AE is bult between the host and switch using the MKA protocol, which negotiates encryption keys based on the master session key from a successful 802 1X session
C. 802.1AE is bult between the host and switch using the MKA protocol using keys generated via the Diffie-Hellman algorithm (anonymous encryption mode)
D. 802.1AE is negotiated using Cisco AnyConnect NAM and the SAP protocol
正确答案:B
问题 #66
What are two benefits of implementing a Cisco SD-WAN architecture? (Choose two)
A. It allows configuration of application-aware policies with real time enforcement
B. It enforces a single, scalable, hub-and-spoke topology
C. It improves endpoint protection by integrating embedded and cloud security features
D. It provides resilient and effective traffic flow using MPLS
E. It simplifies endpoint provisioning through standalone router management
正确答案:AC
问题 #67
What is the role of vSmart in a Cisco SD-WAN environment ?
A. to establish secure control plane connections
B. to monitor,configure,and maintain SD-WAN devices
C. to perform initial authentication of devices
D. to provide secure data plane connectivity over WAN links
正确答案:A
问题 #68
Refer to the exhibit.Which result does the Python code achieve ?
A. The code converts time to the Epoch LINUX time format
B. The code converts time to the yyyymmdd representation
C. The code converts time to the ''year/month/day'' time format
D. The code encrypts a base64 decrypted password
正确答案:B
问题 #69
Refer to the exhibit. An engineer is troubleshooting an application running on Apple phones. The application Is receiving incorrect QoS markings. The systems administrator confirmed that ail configuration profiles are correct on the Apple devices. Which c
A. Enable Fastlane
B. Set WMM to required
C. Change the QoS level to Platinum
D. Configure AVC Profiles
正确答案:C
问题 #70
What is a characteristic of Cisco DNA Northbound APIs?
A. They simplify the management of network infrastructure devices.
B. They enable automation of network infrastructure based on intent.
C. They utilize RESTCONF.
D. They utilize multivendor support APIs.
正确答案:B
问题 #71
What is a benefit of Type 1 hypervisors?
A. Administrators are able to load portable virtual machine packages in OVA or QCOW2 formats.
B. Network engineers are able to create virtual networks o interconnect virtual machines in Layer 2 topologies
C. Operators are able to leverage orchestrators to manage workloads that run on multiple Type 1 hypervisors
D. Storage engineers are able to leverage VMDK files to provide storage to virtual machine.
正确答案:B
问题 #72
Which technology uses network traffic telemetry, contextual information, and file reputation to provide insight into cyber threats?
A. threat defense
B. security services
C. security intelligence
D. segmentation
正确答案:A
问题 #73
What is required for intercontroller Layer 3 roaming?
A. Mobility groups are established between wireless controllers.
B. The management VLAN is present as a dynamic VLAN on the second WLC.
C. WLCs use separate DHCP servers.
D. WLCs have the same IP addresses configured on their interfaces.
正确答案:A
问题 #74
Refer to the exhibit. A company requires that all wireless users authenticate using dynamic key generation. Which configuration must be applied?
A. AP(config-if-ssid)# authentication open wep wep_methods
B. AP(config-if-ssid)# authentication dynamic wep wep_methods
C. AP(config-if-ssid)# authentication dynamic open wep_dynamic
D. AP(config-if-ssid)# authentication open eap eap_methods
正确答案:D
问题 #75
What is the difference between the MAC address table and TCAM?
A. The MAC address table supports partial matches
B. TCAM requires an exact match. TCAM is used to make L2 forwarding decisions.CAM is used to build routing tables.
C. Router prefix lookups happen in TCAM . MAC address table lookups happen in CAM
D. The MAC address table is contained in TCAM.ACL and QoS information is stored in CAM
正确答案:C
问题 #76
Which architectural component enables a zero-trust security model?
A. control plane
B. data plane
C. management plane
D. plug-and-play
正确答案:C
问题 #77
Which component does Cisco Threat Defense use to measure bandwith,application performance,and utlization?
A. Advanced Malware Protection for Endpoints
B. NetFlow
C. Cisco Umbrella
D. TrustSec
正确答案:B
问题 #78
Which two new security capabilities are introduced by using a next-generation frewall at the Internet edge?(Choose two)
A. integrated intrusion prevention
B. NAT
C. stateful packet inspection
D. application-level inspeion
E. VPN
正确答案:AD
问题 #79
A network engineer is enabling HTTPS access to the core switch, which requires a cetficale to be installed on the switch signed by the corporate certficate autihority ,Which configuration commands are required to issue a certificate signing request from t
A. Core-Switch(config)#crypto pki trustpoint Core-Switch
B. Core-Switch(config)#crypto pki trustpoint Core-Switch
C. Core-Switch(config)#crypto pki enroll Core-Switch
D. Core-Switch(config)#ip http secure-trustpoint Core-Switch
正确答案:A
问题 #80
What is one primary REST security design principle?
A. fail-safe defaults
B. password hash
C. adding a timestamp in requests
D. OAuth
正确答案:A
问题 #81
Refer to the exhibit ,An engineer is reaching network 172.16.10.0/24 via the R1-R2-R4 path.Which configuration forces the trafic to take a path of R1-R3-R4?
A. R1(config)#router bgp 100
R1(config-router)#neighbor 13. 13.13.3 weight 1
B. R1(config)#route-map RM_LOCAL_ PREF permit 10
R1(config-router)#neighbor 13. 13.13.3 route-map RM_LOCAL_PREF in
R1#clear ip bgp 13. 13.13.3 soft in
C. R1(config)#route-map RM_AS_PATH_PREPEND
R1(config-router)#neighbor 12. 12.12.2 route-map RM_AS_PATH_PREPEND in
R1#clear ip bgp 12. 12.12.2 soft in
D. R2(config)#route-map RM_MED permit 10
R2(config-router)#neighbor 12. 12.12.1 route-map RM_MED out
R2#clear ip bgp 12. 12.12.1 soft out
正确答案:B
问题 #82
Why would an engineer use YANG?
A. to model data for NETCONF
B. to transport data between a controller and a network device
C. to translate JSON into an equivalent XML syntax
D. to access data using SNMP
正确答案:A
问题 #83
Refer to the exhibit. An engineer must establish eBGP peering between router R3 and router R4.Both routers should use their loopback interfaces as the BGP router ID . Which configuration set accomplishes this task?
A. R3(config)#router bgp 200
R3(config-router)#neighbor 10. 4.4.4 remote-as 100
R3(config-router)#bgp router-id 10. 3.3.3
R4(config-router)#neighbor 10. 3.3.3 remote-as 200
R4(config-router)#bgp router-id 10. 4.4.4
B. R3(config)#router bgp 200
R3(config-router)#neighbor 10. 4.4.4 remote-as 100
R3(config-router)#neighbor 10. 4.4.4 update-source Loopback0
R4(config-router)#neighbor 10. 3.3.3 remote-as 200
R4(config-router)#neighbor 10. 3.3.3 update-source Loopback0
C. R3(config)#frouter bgp 200
R3(config-router)#neighbor 10. 24.24.4 remote-as 100
R3(config-router)#neighbor 10. 24.24.4 update-source Loopback0
R4(config-router)#neighbor 10. 24.24.3 remote-as 200
R4(config-router)#neighbor 10. 24.24.3 update-source Loopback0
D. R3(config)#router bgp 200
R3(config-router)#neighbor 10. 24.24.4 remote-as 100
R3(config-router)#bgp router-id 10. 3.3.3
R4(config-router)#neighbor 10. 24.24.3 remote-as 200
R4(config-router)#bgp router-id 10. 4.4.4
正确答案:D
问题 #84
By default,which virtual MAC address does HSRP group 16 use?
A. c0:41:49:45:76:10
B. 05:00:0c:07:ac:16
C. 00:00:0c:07:ac:10
D. 00:05:5c:07:0c:16
正确答案:C
问题 #85
When is the Design workflow used in Cisco DNA Center?
A. in a greenfield deployment, with no existing infrastructure
B. in a greenfield or brownfield deployment, to wipe out existing data
C. in a brownfield deployment, to modify configuration of existing devices in the network
D. in a brownfield deployment, to provision and onboard new network devices
正确答案:A
问题 #86
A vulnerability assessment highlighted that remote access to the switches is permitted using unsecure and unencrypted protocols.Which configuration must be applied to allow only secure and reliable remote access for device administration?
A. line vty 0 15
B. line vty 0 15
C. line vty 0 15
D. line vty 0 15
正确答案:D
问题 #87
sw2(config)#track 1000 interface gigabitEthernet 0/0 line-protocol sw2(config-track)# exit sw2(config)# interface vlan 1000 sW2(confia-if)# ip address 10.23.87.3 255.255.255.0 Refer to the exhibit An engineer must confgure HSRP for VLAN 1000 on SW2. The s
A. sw2(config-if)# standby version 2
sw2(config-if)# standby 1000 ip 10. 23.87.1
B. sw2(config-if)# standby 1000 ip 10.23.87.1
C. sw2(config-if)# standby version 2
sw2(config-if)# standby 1000 ip 10. 23.87.1
D. sw2(config-if)# standby version 2
sw2(config-if)# standby 1000 ip 10. 23.87.1
正确答案:C
问题 #88
Refer to the exhibit. A network administrator must configure router B to allow trafic only from network 10.100.2.0 to networks outside of routerB . Which configuration must be applied?
A. RouterB(config)# access-list 101 permit ip 10.100.2.0 0.0.0.255 any
B. RouterB(config)# access-list 101 permit ip 10.100.3.0 0.0.0.255 any
C. RouterB(config)# access-list 101 permit ip 10.100.2.0 0.0.0.255 any
D. RouterB(config)# access-list 101 permit ip 10.100.2.0 0.0.0.255 any
正确答案:D
问题 #89
In a Cisco SD-WAN solution, which two functions are performed by OMP?(Choose two.)
A. advertisement of network prefixes and their attributes
B. configuration of control and data policies
C. gathering of underlay infrastructure data
D. delivery of crypto keys
E. segmentation and differentiation of traffic
正确答案:AD
问题 #90
In a Cisco StackWise Virtual environment, which planes are virtually combined in the common logical switch?
A. control and management
B. control, and forwarding
C. control and data
D. management and data
正确答案:A
问题 #91
Refer to the exhibit. An engineer must create a configuration that prevents R3 from receiving the LSA about 172.16.1.4/32. Which configuration set achieves this goal?
A. On R3
deny host 172. 16.1.4
B. On R1
ip prefix-list INTO-AREA1 seq 5 deny 172. 16.1.4/32
ip prefix-list INTO-AREA1 seq 10 permit 0. 0.0.0/0 le 32
C. On R1
ip prefix-list INTO-AREA1 seq 5 deny 172. 16.1.4/32
ip prefix-list INTO-AREA1 seq 10 permit 0. 0.0.0/0 le 32
D. On R3
ip prefix-list INTO-AREA1 seq 5 deny 172. 16.1.4/32
ip prefix-list INTO-AREA1 seq 10 permit 0. 0.0.0/0 le 32
正确答案:C
问题 #92
Based on the router's APl output in JSON format below,which Python code will display the value of the "hostname" key?
A. json_data= json.loads(response.text)
B. json_data = response.json()
C. json_data = json.loads(response.text)
D. json_data = response.json()
正确答案:B
问题 #93
An engineer is configuring a new SSID to present users with a splash page for authentication. Which WLAN Layer 3 setting must be configured to provide this functionality?
A. WPA2 Policy
B. Web Policy
C. CCKM
D. Local Policy
正确答案:B
问题 #94
enable secret cisco username cisco privilege 15 secret cisco aaa new-model aaa authentication login default group radius local aaa authorization network default group radius Refer to the exhibit ,The network administrator must be able to perform configura
A. aaa authorization exec default group radius none
B. aaa authentication login default group radius local none
C. aaa authorization exec default group radius if-authenticated
D. aaa authorization exec default group radius
正确答案:C
问题 #95
Which two parameters are examples of a QoS traffic descriptor?(Choose two.)
A. packet size
B. ToS
C. bandwidth
D. MPLS EXP bits
E. DSCP
正确答案:BE
问题 #96
Refer to the exhibit.An engineer configures OSPF and wants to verify the configuration. Which configuration is applied to this device?
A. R1(config)#router ospf 1
R1(config-router)#network 192. 168.50.0 0.0.0.255 area 0
B. R1(config)#interface Gi0/1
C. R1(config)#interface Gi0/1
D. R1(config)#router ospf 1
R1(config-router)#network 0. 0.0.0 0.0.0.0 area 0
正确答案:B
问题 #97
Refer to the exhibit. How does the router handle traffic after the CoPP policy is configured on the router?
A. Traffic coming to R1 that matches access list SNMP is policed.
B. Traffic coming to R1 that does not match access list SNMP is dropped.
C. Traffic generated by R1 that matches access list SNMP is policed.
D. Traffic passing through R1 that matches access list SNMP is policed.
正确答案:C
问题 #98
What is a characteristic of Cisco DNA southbound APIs?
A. simplifies management of network devices
B. implements monitoring by using the SOAP protocol
C. utilizes REST API
D. enables orchestration and automation of network devices based on intent
正确答案:A
问题 #99
What is a characteristic of Cisco StackWise technology?
A. It supports devices that are geographically separated.
B. It is supported on the Cisco 4500 series.
C. It combines exactly two devices.
D. It uses proprietary cabling.
正确答案:D
问题 #100
Refer to the exhibit.After coniguring HSRP an engineer enters the show standby command. Which two facts are derived from the output?(Choose two.)
A. The router with IP 10.10 1.3 is active because it has a higher IP address
B. If Fa0/0 is shut down, the HSRP pnonty on R2 becomes 80
C. R2 Fa1/0 regains the primary role when the link comes back up
D. R2 becomes the active router after the hold time expires
E. R2 is using the default HSRP hello and hold timers
正确答案:BE
问题 #101
Refer to the exhibit. After the code is run on a Cico IOS-XE router, the response code is 204 ,What is the result of the script?
A. The configuration is successfully sent to the device in cleartext.
B. The configuration fails because interface GigabitEthernet2 is missing on the target device.
C. The configuration fails because another interface is already configured with IP address 10.10.10.1/24
D. Interface GigabitEthernet2 is configured with IP address 10.10.10.1/24.
正确答案:D
问题 #102
Refer to the exhibit. An engineer must configure static NAT on R1 to allow users HTTP access to the web server on TCP pot 80.The web server must be reachable through ISP 1 and ISP 2.Which command set should be applied to R1 to fulfill these requirements?
A. ip nat inside source static tcp 10.1.1.100 80 209.165.200.225 80
ip nat inside source static tcp 10. 1.1.100 8080 209.165.201.1 8080
B. ip nat inside source static tcp 10.1.1.100 80 209.165.200.225 80
ip nat inside source static tcp 10. 1.1.100 80 209.165.201.180
C. ip nat inside source static tcp 10.1.1.100 80 209.165.200.225 80 extendable
ip nat inside source static tcp 10. 1.1.100 80 209.165.201.1 80 extendable
D. ip nat inside source static tcp 10.1.1.100 80 209.165.200.225 80 no-alias
ip nat inside source static tcp 10. 1.1.100 80 209.165.201.1 80 no-alias
正确答案:C
问题 #103
A network engineer configures a WLAN controller with increased security for web access .There is IP connectvity with the WLAN contoller but the engineer cannot start a management session from a web browser. Which action resolves the issue?
A. Disable JavaScript on the web browser
B. Use a private or incognito session
C. Use a browser that supports 128-bit or larger ciphers.
D. Disable Adobe Flash Player.
正确答案:C
问题 #104
In a Cisco SD-Access solution, which protocol is used by an extended node to connect to a single edge node ?
A. VXLAN
B. IS-IS
C. 802.1Q
D. CTS
正确答案:C
问题 #105
An engineer must configure and validate a CoPP policy that allws the network management server to monitor router R1 via SNMP while protecting the control plane. Which two commands or command sets must be used? (Choose two.)
A. show policy-map control-plane
B. access-list 150 permit udp 10.0.1.4 0.0.0.0 host 10.0.1.2 eq snmp
C. access-list 150 permit udp 10.0.1.4 0.0.0.0 host 10.0.1.2 eq snmp
access-list 150 permit udp 10. 0.1.4 0.0.0.0 eq snmp host 10.0.1.2
D. show ip interface brief
E. show quality-of-service-profile
正确答案:AC
问题 #106
What does a northbound API accomplish?
A. programmatic control of abstracted network resources through a centralized controller
B. access to controlled network resources from a centralized node
C. communication between SDN controllers and physical switches
D. controlled access to switches from automated security applications
正确答案:A
问题 #107
Refer to the exhibit ,The trunk does not work over the back-to-back link between Swich1 interface Gig1/0/20 and Switch2 inerace Gig1/0/20. which configuration fixes the problem?
A. Switch 1(config)#interface gig1/0/20
B. Switch2(config)#interface gig1/0/20
C. Switch2(config)#interface gig1/0/20
D. Switch1(config)#interface gig1/0/20
正确答案:B
问题 #108
An engineer must enable a login authentication method that allows a user to log in by using local authentication if all other defined authentication methods fail Which configuration should be applied?
A. aaa authentication login CONSOLE group radius local-case enable aaa
B. authentication login CONSOLE group radius local enable none
C. aaa authentication login CONSOLE group radius local enable
D. aaa authentication login CONSOLE group tacacs+ local enable
正确答案:D
问题 #109
Refer to the exhibit. Which command set changes the neighbor state from Idle (Admin) to Active?
A. R1(config)#router bgp 65002
R1(config-router)#neighbor 192. 168.50.2 activate
B. R1(config)#router bgp 65001
R1(config-router)#neighbor 192. 168.50.2 activate
C. R1(config)#router bgp 65001
R1(config-router)#no neighbor 192. 168.50.2 shutdown
D. R1(config)#router bgp 65001
R1(config-router)#neighbor 192. 168.50.2 remote-as 65001
正确答案:C
问题 #110
Refer to the exhibit. A network engineer is enabling logging to a local buffer, to the terminal and to a syslog server for all debugging level logs filtered by facility code 7. Which command is needed to complete this configuration snippet? logging buffer
A. logging buffered debugging
B. logging discriminator Disc1 severity includes 7
C. logging buffered discriminator Disc1 debugging
D. logging discriminator Disc1 severity includes 7 facility includes fac7
正确答案:D
问题 #111
An engineer must create a new SSID on a Cisco 9800 wireless LAN controller. The client has asked to use a pre-shared key for authentication Which profile must the engineer edit to achieve this requirement?
A. RF
B. Policy
C. WLAN
D. Flex
正确答案:C
问题 #112
Refer to the exhibit. VPN-A sends point-to-point traffic to VPN-B and receives traffic only from VPN-C VPN-B sends point-to-point traffic to VPN-C and receives traffic only from VPN-A. Which configuration is applied?
A. PE-2
B. PE-3
C.
D.
正确答案:B
问题 #113
Refer to the exhibit. An engineer configures the BGP adjacency between R1 and R2, however, it fails to establish Which action resolves the issue?
A. Change the network statement on R1 to 172.16 10.0
B. Change the remote-as number for 192 168.100.11.
C. Enable synchronization on R1 and R2
D. Change the remote-as number on R1 to 6500.
正确答案:D
问题 #114
Which method is used by an AP to join HA controllers and is configured in NVRAM?
A. stored WLC information
B. DNS
C. IP Helper Addresses
D. Primary/Secondary/Tertiary/Backup
正确答案:A
问题 #115
If a client's radio device receives a signal strength of -67 dBm and the noise floor is -85 dBm, what is the SNR value?
A. 15 dB
B. 16 dB
C. 18 dB
D. 20 dB
正确答案:C
问题 #116
A customer wants to use a single SSID to authenticate loT devices using different passwords. Which Layer 2 security type must be configured in conjunction with Cisco ISE to achieve this requirement?
A. Fast Transition
B. Central Web Authentication
C. Cisco Centralized Key Management
D. Identity PSK
正确答案:D
问题 #117
Refer to the exhibit. R2 is the neighboring router of R1. R2 receives an advertisement for network 192 168.10.50/32. Which configuration should be applied for the subnet to be advertised with the original /24 netmask? R1#show run | b router ospf router os
A. R1(config)# router ospf 1
R1(config-router)# network 192. 168.10.0 255.255.255.0 area 0
B. R1(config)#interface loopback0
C. R1(config)# interface loopback0
D. R1(config)# interface loopback0
正确答案:C
问题 #118
How are map-register messages sent in a LISP deployment?
A. egress tunnel routers to map resolvers to determine the appropriate egress tunnel router
B. ingress tunnel routers to map servers to determine the appropriate egress tunnel router
C. egress tunnel routers to map servers to determine the appropriate egress tunnel router
D. ingress tunnel routers to map resolvers to determine the appropnate egress tunnel router
正确答案:C
问题 #119
A network monitoring system uses SNMP polling to record the statistics of router interfaces The SNMP queries work as expected until an engineer installs a new interface and reloads the router After this action, all SNMP queries for the router fail What is
A. The SNMP community is configured incorrectly
B. The SNMP interface index changed after reboot.
C. The SNMP server traps are disabled for the interface index
D. The SNMP server traps are disabled for the link state.
正确答案:B
问题 #120
Refer to the exhibit. An engineer must permit traffic from these networks and block all other traffic An informational log message should be triggered when traffic enters from these prefixes Which access list must be used? 10.0.32.0/24 10.0.33.0/24 10.0.3
A. access-list acl_subnets permit ip 10.0.32.0 0 0.0.255 log
B. access-list acl_subn*ls permit ip 10.0.32.0 0.0.7.255 log
C. access-list acl_subnets permit ip 10.0.32.0 0.0.7.255
D. access-list acl_subnets permit ip 10.0.32.0 255.255.248.0 log
正确答案:B
问题 #121
A customer requests a design that includes GLBP as the FHRP The network architect discovers that the members of the GLBP group have different throughput capabilities. Which GLBP load balancing method supports this environment?
A. host dependent
B. least connection
C. round robin
D. weighted
正确答案:D
问题 #122
Refer to the exhibit. An engineer attempts to bundle interface Gi0/0 into the port channel, but it does not function as expected. Which action resolves the issue?
A. Configure channel-group 1 mode active on interface Gi0/0.
B. Configure no shutdown on interface Gi0/0
C. Enable fast LACP PDUs on interface Gi0/0.
D. Set LACP max-bundle to 2 on interface Port-channel
正确答案:D
问题 #123
Refer to the exhibit. An engineer must prevent the R6 loopback from getting into Area 2 and Area 3 from Area 0. Which action must the engineer take?
A. Apply a fitter list inbound on R2 and R9
B. Apply a filter list outbound on R3 and R7
C. Apply a filter list outbound on R7 only.
D. Apply a filter list inbound on R3 and R7
正确答案:B
问题 #124
How can an engineer prevent basic replay attacks from people who try to brute force a system via REST API?
A. Add a timestamp to the request In the API header.
B. Use a password hash
C. Add OAuth to the request in the API header.
D. UseHTTPS
正确答案:A
问题 #125
An administrator must enable Telnet access to Router X using the router username and password database for authentication. Which configuration should be applied?
A. RouterX(config)# line aux 0
B. RouterX(config)# aaa new-model
C. RouterX(config)# line vty 0 4
D. RouterX(config)# line vty 0 4
正确答案:C
问题 #126
When firewall capabilities are considered, which feature is found only in Cisco nextgeneration firewalls?
A. malware protection
B. stateful inspection
C. traffic filtering
D. active/standby high availability
正确答案:A
问题 #127
Refer to the exhibit. CR2 and CR3 ate configured with OSPF. Which configuration, when applied to CR1. allows CR1 to exchange OSPF Information with CR2 and CR3 but not with other network devices or on new Interfaces that are added to CR1?
A. router ospf 1
network 0. 0.0.0 255.255.255.255 area 0
B. router ospf 1
network 10. 165.231.0 0.0.0.255 area 0
network 172. 27.206.0 0.0.0.255 area 0
network 172. 24.206.0 0.0.0.255 area 0
C. interface Gi0/2
D. router ospf 1
network 10. 0.0.0 0.255.255.255 area 0
network 172. 16.0.0 0.15.255.255 area 0
正确答案:B
问题 #128
In which two ways does TCAM differ from CAM? (Choose two.)
A. CAM is used to make Layer 2 forwarding decisions, and TCAM is used for Layer 3 address lookups.
B. The MAC address table is contained in CAM, and ACL and QoS Information is stored in TCAM.
C. CAM Is used by routers for IP address lookups, and TCAM is used to make Layer 2 forwarding decisions.
D. CAM is used for software switching mechanisms, and TCAM Is used for hardware switching mechanisms.
E. The MAC address table Is contained in TCAM, and ACL and QoS information is stored in CAM.
正确答案:AB
问题 #129
Refer to the exhibit. An engineer must configure HSRP for VLAN 1000 on SW2. The secondary switch must immediately take over the role of active router If the interlink with the primary switch fails. Which command set completes this task? SW2(config)#track
A. SW2(config-if)# standby version 2
SW2(config-if)# standby 1000 ip 10. 23.87.1
B. SW2(config-if)# standby 1000 ip 10.23.87.1
C. SW2(config-if)# standby version 2
SW2(config-if)# standby 1000 ip 10. 23.87.1
D. SW2(config if)# standby version 2
SW2(config-if)# standby 1000 ip 10. 23.87.1
正确答案:C
问题 #130
Refer to the exhibit. An engineer attempts to establish BGP peering between router CORP and two ISP routers. What is the root cause for the failure between CORP and ISP#2?
A. Router ISP#2 is configured to use SHA-1 authentication.
B. There is a password mismatch between router CORP and router ISP#2.
C. Router CORP is configured with an extended access control list.
D. MD5 authorization is configured incorrectly on router ISP#2.
正确答案:B
问题 #131
Refer to the exhibit Users cannot reach the web server at 192.168.100.1.What is the root cause for the failure?
A. There is a loop in the path to the server.
B. The server is attempting to load balance between links 10.100.100.1 and 10.100.200.1
C. The server is out of service.
D. The gateway cannot translate the server domain name.
正确答案:A
问题 #132
An engineer must configure a multicast UDP jitter operation. Which configuration should be applied?
A. Router(confg)#ip sla 1
Router(config )#udp-jitter 192. 0.2.115 65051 num-packets 20
B. Router(config)#ip sla 1
Router(confg )#udp-jitter 192. 0.2.115 65051
C. Router(config)#ip sla 1
Router(config)#udp jitter 239. 1.1.1 65051 end-point list List source-ip 192.168.1.1
D. Router(config)#ip sla 1
Router(config)#udp jitter 10. 0.0.1 source-ip 192.168.1.1
正确答案:C
问题 #133
What is the API keys option for REST API authentication?
A. a username that is stored in the local router database
B. a predetermined string that is passed from client to server
C. a credential that is transmitted unencrypted
D. a one-time encrypted token
正确答案:B
问题 #134
Refer to the exhibit. An administrator configures two switches with LACP EtherChannels, but packets are not being exchanged between the switches. What is the reason, and what fixes the issue?
A. S1 is configured as PAgP. Change the channel group mode to desirable.
B. S2 is configured as LACP. Change the channel group mode to passive.
C. S2 is configured with PAgP. Change the channel group mode to active.
D. S1 is configured with LACP. Change the channel group mode to on.
正确答案:C
问题 #135
How must network management traffic be treated when defining QoS policies?
A. using the same marking as IP routing
B. as best effort
C. as delay-sensitive traffic in a low latency queue
D. using minimal bandwidth guarantee
正确答案:C
问题 #136
Refer to the exhibit. Which configuration enables password checking on the console line, using only a password? router#sh run I b line con line con 0 password cisco stopbits 1 line aux 0 stopbits 1 line vty 0 4 ! end router#sh run | i username|aaa no aaa
A. router(config)# line con 0
B. router(config)# line vty 0 4
C. router(config)# line con 0
D. router(config)# line con 0
正确答案:C
问题 #137
Refer to the exhibit. An engineer must allow R1 to advertise the 192.168.1.0/24 network to R2. R1 must perform this action without sending OSPF packets to SW1. Which command set should be applied?
A. R1(confg)# router ospf 1
B. R1(config)# interface gig0/0
C. R1(config)# router ospf 1
D. R1(config)# interface gig0/0
正确答案:C
问题 #138
Which IPv4 packet field carries the QoS IP classification marking?
A. ID
B. TTL
C. FCS
D. ToS
正确答案:D
问题 #139
Refer to the exhibit. What does the response "204 No Content" mean for the REST API request?
A. The DELETE method is not supported.
B. Interface loopback 100 is not removed from the configuration.
C. Interface loopback 100 is not found in the configuration.
D. Interface loopback 100 is removed from the configuration.
正确答案:D
问题 #140
Which beneft is realized by implementing SSO?
A. IP first hop redundancy
B. communication between different nodes for cluster setup
C. physical link redundancy
D. minimal network downtime following an RP switchover
正确答案:D
问题 #141
How does Cisco Express Forwarding (CEF) switching differ from process switching on Cisco devices?
A. Cisco Express Forwarding (CEF) switching saves memory by sorting adjacency tables in dedicate memory on the line cards, and process switching stores all tables in the main memory
B. Cisco Express Forwarding (CEF) switching uses adjacency tables built by the CDP protocol, and process switching uses the routing table
C. Cisco Express Forwarding (CEF) switching uses dedicated hardware processors, and process switching uses the main processor
D. Cisco Express Forwarding (CEF) switching uses proprietary protocol based on IS-IS for MAC address lookup, and process switching uses in MAC address table
正确答案:A
问题 #142
What is one difference between EIGRP and OSPF?
A. OSPF is a Cisco proprietary protocol, and EIGRP is an IETF open standard protocol.
B. OSPF uses the DUAL distance vector algorithm, and EIGRP uses the Dijkstra link-state algorithm
C. EIGRP uses the variance command lot unequal cost load balancing, and OSPF supports unequal cost balancing by default.
D. EIGRP uses the DUAL distance vector algorithm, and OSPF uses the Dijkstra link-state algorithm
正确答案:D
问题 #143
Which function does a fabric wireless LAN controller perform In a Cisco SD-Access deployment?
A. manages fabric-enabled APs and forwards client registration and roaming information to the Control Plane Node
B. coordinates configuration of autonomous nonfabric access points within the fabric
C. performs the assurance engine role for both wired and wireless clients
D. is dedicated to onboard clients in fabric-enabled and nonfabric-enabled APs within the fabric
正确答案:A
问题 #144
Refer to the exhibit. An engineer must set up connectivity between a campus aggregation layer and a branch office access layer. The engineer uses dynamic trunking protocol to establish this connection, however, management traffic on VLAN1 is not passing.
A. Allow all VLANs on the trunk links
B. Disable Spanning Tree for the native VLAN.
C. Configure the correct native VLAN on the remote interface
D. Change both interfaces to access ports.
正确答案:C
问题 #145
How must network management traffic be treated when defining QoS policies?
A. as delay-sensitive traffic in a low latency queue
B. using minimal bandwidth guarantee
C. using the same marking as IP routing
D. as best effort
正确答案:A

即刻预约

免费试听-咨询课程-获取免费资料