Summer Sale - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65percent

Welcome To DumpsPedia

300-420 Sample Questions Answers

Questions 4

Refer to the exhibit.

An engineer is designing a routing solution for a customer. The design must ensure that a failure of network

10.1.0.0/24, 10.1.2.0/24, 10.2.1.0/24, or 10.2.3.0/24 does not impact the core. It also requires fast convergence

time during any link failover in the core or access networks. Which solution must the engineer select?

Options:

A.

Add aggregation layer between core and access networks.

B.

Enable graceful restart on routers A and C.

C.

Enable FRR for the connected networks of routers A and C.

D.

Enable summarization on routers A and C.

Buy Now
Questions 5

Refer to the exhibit.

An architect must design an IGP solution for an enterprise customer. The design must support:

Physical link flaps should have minimal impact.

Access routers should converge quickly after a link failure.

Which two ISIS solutions should the architect include in the design? (Choose two.)

Options:

A.

Use BGP to IS-IS redistribution to advertise all Internet routes in the Level 1 area.

B.

Advertise the IS-IS interface and loopback IP address toward the Internet and data center.

C.

Reduce SPF and PRC intervals to improve convergence time.

D.

Configure all access and aggregate routers to establish Level 1 / Level 2 adjacencies across the network.

E.

Configure access routers to establish a Level 1 adjacency and aggregate routers to establish a Level 1 /

Level 2 adjacency.

Buy Now
Questions 6

Which component of Cisco SD-Access integrates with Cisco DNA Center to perform policy segmentation and enforcement through the use of security group access control lists and security group tags?

Options:

A.

Cisco Application Policy Infrastructure Controller Enterprise Module

B.

Cisco Network Data Platform

C.

Cisco Identity Services Engine

D.

Cisco TrustSec

Buy Now
Questions 7

A customer reports that each time a networking component fails, OSPF recalculates the backup path, with causes a short outage. Which solution must the customer implement to improve this situation?

Options:

A.

Aggressive OSPF timers

B.

LFA FRR

C.

Incremental SPF

D.

BFD

Buy Now
Questions 8

How does OMP behave in a Cisco Catalyst SD-WAN architecture if no policy is defined?

Options:

A.

To allow a hub-and-spoke topology for WAN Edge routers to communicate via the central location

B.

To allow a point-to-point topology for WAN Edge routers to communicate from the central location to remote locations

C.

To allow all WAN Edge routers to communicate using a full mesh topology

D.

To block all communication between WAN Edge routers

Buy Now
Questions 9

Which design consideration must be made when dual WAN Edge routers are deployed at a branch site?

Options:

A.

Use BGP AS-path prepending to influence egress traffic and use MED to influence ingress traffic from the branch.

B.

HSRP priorities must match the OMP routing policy to prefer one WAN Edge over the other.

C.

Traffic must be symmetrical as it egresses the WAN Edges and returns from remote sites for DPI to function properly.

D.

Configure BFD between WAN Edge routers to detect sub-second link failures.

Buy Now
Questions 10

A company wants to switch from static to dynamic routing. The branches use DMVPN back to the hub using two internet connections. One internet connection speed is 10 Mbps, and the other is 100 Mbps. All locations use Cisco routers; however, the branch routers have limited memory and CPU resources. Which routing protocol and design solution must the company choose for optimal traffic forwarding during peak traffic times?

Options:

A.

iBGP with the hub routers set up as route reflectors

B.

OSPF deployed in area 0 with branch routers connected back via virtual links

C.

EIGRP with branch routers as stub routers and variance enabled

D.

ISIS with the hub and spoke routers configured in two different areas

Buy Now
Questions 11

A company is planning to open two new branches and allocate the 2a01:c30:16:7009::3800/118 IPv6 network for the region. Each branch should have the capacity to accommodate maximum of 200 hosts. Which two networks should the company use? (Choose two.)

Options:

A.

2a01:0c30:0016:7009::3a00/120

B.

2a01:0c30:0016:7009::3b00/121

C.

2a01:0c30:0016:7009::3a80/121

D.

2a01:0c30:0016:7009::3b00/120

E.

2a01:0c30:0016:7009::3c00/120

Buy Now
Questions 12

What is the purpose of a TLOC extension in a Cisco SD-WAN network fabric?

Options:

A.

to facilitate WAN Edge router redundancy within a site

B.

to identify the physical interface where a WAN Edge router connects to the WAN transport network

C.

to expand the number of colors that are potentially applied to a network transport interface

D.

to aggregate multiple physical interfaces into a single logical Interface

Buy Now
Questions 13

An engineer working for a service provider with an employee ID: 4863:43:939 must design a solution to provide remote connectivity over the public internet. The design must:

    securely connect multiple remote sites to the central site

    provide redundant paths to the central site

    allow auto path selection based on failure and connection quality

    support IP multicast

    minimal configuration at remote sites

Which solution must the engineer choose?

Options:

A.

MPLS provided service with BGP

B.

dual DMVPN with EIGRP routing

C.

full mesh OSPF with IPsec tunnels

D.

full mesh ISIS with GRE tunnels and IPsec

Buy Now
Questions 14

When IPsec VPNs are designed, what is a unique requirement if support for IP Multicast is required?

Options:

A.

encapsulation of traffic with GRE or VTI

B.

IPsec forwarding using transport mode

C.

additional bandwidth for headend

D.

IPsec forwarding using tunnel mode

Buy Now
Questions 15

Which design element should an engineer consider when multicast is included in a Cisco SD-Access architecture?

Options:

A.

PIM SSM must run in the underlay.

B.

Multicast clients reside in the underlay, and the multicast source is outside the fabric or

in the overlay.

C.

Rendezvous points must be used in a PIM SSM deployment.

D.

Multicast traffic is transported in the overlay and the EID space for wired and wireless clients.

Buy Now
Questions 16

In the SD-WAN underlay network, which WAN Edge VPN ID is defined as the transport VPN and is used to

carry control traffic?

Options:

A.

VPN 0

B.

VPN 512

C.

VPN 128

D.

VPN 256

Buy Now
Questions 17

An engineer is designing an enterprise campus network. The LAN infrastructure consists of switches from multiple vendors, and Spanning Tree must be used as a Layer 2 loop prevention mechanism. All configured

VLANs must be grouped in two SIP instances. Which standards-based Spanning Tree technology supports this design solution?

Options:

A.

MSTP

B.

RSTP

C.

Rapid PVST

D.

STP

Buy Now
Questions 18

Refer to the exhibit.

C0FD9 F48C9ACDC725EA850EC2476EE1E

An architect must design a solution that uses the direct link between R1 and R2 for traffic from 10.10.10.0/24

toward network 10.10.20.0/24. Which solution should the architect include in the design?

Options:

A.

Configure the OSPF cost of the link to a value lower than 30.

B.

Lower the Administrative Distance for OSPF area 0.

C.

Place the link into area 2 and install a new link between R1 and R2 in area 0.

D.

Configure the link to provide multiarea adjacency.

Buy Now
Questions 19

Which feature minimizes TLOC connections and reduces strain on the vSmart controller in an SD-WAN architecture?

Options:

A.

control-direction

B.

affinity

C.

color

D.

control-connections

Buy Now
Questions 20

Refer to the exhibit. An architect is designing a hierarchical ISIS solution for a customer with these requirements:

    Routers will double In all areas within the next 24 months.

    Link flaps within areas 20 and 30 must not impact the backbone area.

    Traffic originating from A201 and A302 routers must connect to application servers in the backbone.

Which design must the architect select?

Options:

A.

C201 Level 1/2, A301 Level 1/2 and A102 Level 1/2

B.

C101 Level 1/2. A201 Level 1, and A101 Level 2

C.

C102 Level 2. A202 Level 2, and A102 Level 1

D.

C302 Level 2. A302 Level 1/2. and A101 Level 2

Buy Now
Questions 21

Which two routing protocols allow for unequal cost load balancing? (Choose two.)

Options:

A.

EIGRP

B.

IS-IS

C.

BGP

D.

OSPF

E.

RIPng

Buy Now
Questions 22

Which component is part of the Cisco SD-Access overlay architecture?

Options:

A.

border node

B.

spine node

C.

leaf node

D.

Cisco DNA Center

Buy Now
Questions 23

Refer to the exhibit. A Cisco Catalyst switch is configured to.. only one MAC address to be learned manually on interface gkjO/2. Which command must be run to dynamically learn the devices that are connected to the switch port?

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Buy Now
Questions 24

Refer to the exhibit An engineer is designing a hierarchical ISIS solution for an enterprise customer with these requirements

    Users in areas 25 and 55 send and receive traffic from both backbone areas

    Link flaps in areas 35 and 45 must not impact other areas

    Routers will double within the next 12 months in areas 35 and 45

Which design must the engineer select?

Options:

A.

A series routers Level 2, B series routers Level 2, and C series routers Level 1

B.

A series routers Level 1/2 B series routers Level 2 and C series routers Level 2

C.

A series routers Level 1. B series routers Level 1/2. and C series routers Level 2

D.

A series routers Level 1.2 B series routers Level 1/2 and C series routers Level 1/2

Buy Now
Questions 25

An existing network solution is using BFD in echo mode. Several of the network devices are experiencing high CPU utilization which an engineer has determined is related to the BFD feature. Which solution should the engineer leverage to reduce the CPU load?

Options:

A.

Implement slow timers between peers with low CPU resources.

B.

Implement BED asynchronous mode between peers with low CPU resources.

C.

Enable BFD multi-hop on the devices with low CPU resources.

D.

Utilize carrier delay on all routers in the network.

Buy Now
Questions 26

A customer plans to deploy WoL in the enterprise with these high-level design requirements:

DHCP services must be available.

Clients BIOS settings must be set for WoL.

Clients get IP addresses once online.

Spanning-tree PortFast is enabled on the Layer 2 switches.

Which two solutions must the customer select to have a successful deployment? (Choose two.)

Options:

A.

IP directed broadcast and forward-protocol must be enabled on all the SVI or routed interlaces where the client subnets reside.

B.

IP helper-addresses for the client ranges must be enabled on the SVI or routed interface where the WoL server subnet resides.

C.

IP helper-addresses for the client ranges must be disabled on the SVI or routed interface where the WoL server subnet resides

D.

IP helper-addresses for the WoL server must be enabled on the SVI or routed interface where the client subnets reside

E.

IP directed broadcast and forward-protocol must be disabled on all the SVI or routed interfaces where the client subnets reside.

Buy Now
Questions 27

An architect is designing a network for an enterprise site. The design must use an active/backup design for the WAN. It must guarantee the SLA for several applications regardless of which connection is used. Which deployment model should the architect choose?

Options:

A.

MPLS WAN from two separate ISPs

B.

hybrid WAN using MPLS VPN and internet VPN from a single ISP

C.

hybrid WAN using MPLS VPN and internet VPN from two separate ISPs

D.

internet WAN from two separate ISPs

Buy Now
Questions 28

A network engineer discovers that an alternate or root port on a Cisco Layer 2 switch intermittently becomes the designated port, which causes an STP loop. What must be configured to resolve the issue?

Options:

A.

PortFast BPDU guard

B.

UDLD

C.

STP loop guard

D.

STP root guard

Buy Now
Questions 29

A company must run a pilot project for an IPv6 application within the network on existing servers and is investigating migration strategies. Contained within a single VLAN, the pilot must span a dual-site data center environment that is formed of Layer 2 and Layer 3 switches. What is a primary consideration for the pilot?

Options:

A.

Layer 2 and Layer 3 switches within each data center that provisions the data center network must support dual stacking.

B.

Hosts within each data center that participates in the pilot must support dual stacking.

C.

Layer 2 switches within each data center that provisions the VLAN must support dual stacking.

D.

Layer 3 switches within each data center that provisions the network must support dual stacking.

Buy Now
Questions 30

Refer to the exhibit. An engineer is designing a BGP solution for a client that peers with ISP1 for full Internet connectivity and with ISP2 for direct exchange of routes for several third parties. Which action, when implemented on the edge routers, enables the client network to reach the Internet through ISP1?

Options:

A.

Run an eBGP session within different VRFs for each ISP.

B.

Advertise a default route for downstream routers within the client network.

C.

Apply the AS-path prepend feature for ISP2.

D.

Apply route filtering such that the client advertises only routes originated from its own AS.

Buy Now
Questions 31

A large company is building a new branch office, and the network architect already determined that the branch office will need a /24 network. The architect assigned a network engineer to clean the rest of the addressing plan. The engineer’s solution must support:

Options:

A.

192.168.64.0/26

B.

192.168.128.0/25

C.

192.168.16.0/28

D.

192.168.32.0/27

Buy Now
Questions 32

Which integration capability does gRPC provide?

Options:

A.

leveraging the LDAP protocol for authentication and directory services ensuring secure access control in RPC communications

B.

leveraging the XMPP protocol for real-time messaging and collaboration between client and server applications

C.

leveraging protocol buffers to provide efficient serialization and deserialization of structured data over the network

D.

leveraging GRAPH-API for network monitoring and management providing comprehensive visibility into RPC-related metrics and performance statistics

Buy Now
Questions 33

Refer to the exhibit. An architect must ensure a convergence time of 200 ms or less during a link failure within area 0. In addition, the solution must not impact the overall performance of the network. Which solution must the architect select?

Options:

A.

UDLD

B.

BFD

C.

fast hellos

D.

carrier delay

Buy Now
Questions 34

What is a logical topology in a Cisco SD-Access architecture considered to be when it is used to virtually connect devices that are built on an arbitrary physical network?

Options:

A.

data plane

B.

control plane

C.

underlay

D.

overlay

Buy Now
Questions 35

Which type of rendezvous point deployment is standards-based and supports dynamic RP discovery?

Options:

A.

bootstrap router

B.

Anycast-RP

C.

Auto-RP

D.

static RP

Buy Now
Questions 36

Refer to the exhibit. An architect must design an OSPF solution for an enterprise customer. The design must meet these requirements:

· Limit the link flap impact to Area-1 and Area-2.

· Any link failure must have minimal impact on voice and video traffic.

· Which two OSPF solutions must the architect include in the design? (Choose two.)

Options:

A.

Reduce the frequency of OR and BOR elections.

B.

increase hello and how timer.

C.

Tune LSA and SPF throttling timers

D.

Enable manual route summarization and configure all nonbackbone areas as stub networks.

E.

Advertise default routes from the backbone to nonbackone areas.

Buy Now
Questions 37

What is the role of a control-plane node in a Cisco SD-Access architecture?

Options:

A.

fabric device that connects wired endpoints to the SD-Access fabric

B.

map system that manages endpoint to device relationships

C.

fabric device that connects APs and wireless endpoints to the SD-Access fabric

D.

map system that manages External Layer 3 networks

Buy Now
Questions 38

Drag and drop the description from the left onto the corresponding WAN connectivity types and categories on the right.

Options:

Buy Now
Questions 39

Which method does Cisco SD-WAN use to avoid fragmentation issues?

Options:

A.

PMTUD is used.

B.

Traffic is marked with the DF bit set.

C.

Jumbo frames are enabled.

D.

Access circuits are configured with 1600 byte MTU settings.

Buy Now
Questions 40

Which function are fabric intermediate nodes responsible for in an SD-Access Architecture?

Options:

A.

mapping EIDs to RLOCs

B.

encapsulating user traffic in a VXLAN header including the SGT

C.

registering new endpoints in the HTDB

D.

transporting IP packets between edge nodes and border nodes

Buy Now
Questions 41

An engineer must design a solution to provide backup connectivity between two sites. The engineer plans to use an Internet connection but company policy requires the connection to be encrypted. Additionally, there are several applications that utilize multicast to deliver video streams between the sites. Which technology should the design include?

Options:

A.

GRE over IPsec

B.

IPsec direct encapsulation

C.

GETVPN

D.

DMVPN

Buy Now
Questions 42

Which design achieves SD-WAN control plane redundancy?

Options:

A.

Configuring BFD on the WAN Edge routers

B.

Using multiple instances of vManage in clusters

C.

Deploying using a virtual platform like UCS or CSP

D.

Managing the underlay network with OMP

Buy Now
Questions 43

Refer to the exhibit. An engineer must ensure that the QoS design guarantees bandwidth for the applications, and an application can request a particular type of service to support its delay requirements. Which solution must the engineer select?

Options:

A.

IntServ with DSCP

B.

DiffServ with DSCP

C.

IntServ with RSVP

D.

DiffServ with RSVP

Buy Now
Questions 44

Refer to the exhibit. An architect must design a solution to connect the network behind R3 with the EIGRP network. Which mechanism should be included to avoid routing loops?

Options:

A.

split-horizon

B.

summarization

C.

down bit

D.

route tags

Buy Now
Questions 45

When is it advisable to provide dedicated control plane nodes within a Cisco SD-Access design?

Options:

A.

in a small deployment where border nodes are not required

B.

in a design where fabric edge nodes are unable to provide control plane functionality

C.

in designs without Cisco DNA Center

D.

when there is a requirement for frequent roaming of endpoints across fabric edge nodes

Buy Now
Questions 46

Which two steps can be taken to improve convergence in an OSPF network? (Choose two.)

Options:

A.

Use Bidirectional Forwarding Detection

B.

Merge all the areas into one backbone area

C.

Tune OSPF parameters

D.

Make all non-backbone areas stub areas

E.

Span the same IP network across multiple areas.

Buy Now
Questions 47

Exhibit:

Refer to the exhibit. An engineer is designing a Layer 2 campus network. The design must support fast convergence and leverage as much bandwidth as possible between layers. Distribution switches do support VSS; unfortunately, not all routing protocols are available for use due to license limitations. Which solution must the engineer choose?

Options:

A.

EtherChannel

B.

MEC

C.

RSTP

D.

ECMP

Buy Now
Questions 48

An architect is designing a connectivity solution for a customer ' s two small branch offices. The customer wants a cost-effective design, no routing overload, and some down time during the year is acceptable. Which connectivity solution must the architect choose?

Options:

A.

dual multihomed

B.

single-homed

C.

single multihomed

D.

dual-homed

Buy Now
Questions 49

An engineer must design a QoS solution for a customer that is connected to an ISP over a 1Gbps link with a 100Mbps CIR. The ISP aggressively drops all traffic received over which is causing numerous TCP retransmissions. The customer is not using any RTP applications but wants to maximize bandwidth usage up to the CIR. Which QoS solution engineer choose?

Options:

A.

Policing

B.

Traffic shaping

C.

Policer with markdown

D.

Queuing

Buy Now
Questions 50

Prior to establishing full-mesh iPsec tunnels in a typical Cisco SD-WAN deployment, which mechanism do WAN Edge routers use to exchange Key information for data plane encryption?

Options:

A.

They use vSmart controllers as key exchange servers.

B.

They use vManage as a key exchange server.

C.

They use IKEv2 when exchanging keys with each other.

D.

They use vBond as a key exchange server.

Buy Now
Questions 51

Drag and drop the elements from the left onto the YANG models where they and used on the right.

Options:

Buy Now
Questions 52

A company is using OSPF between its HQ location and a branch office. HQ is assigned area 0 and the branch office is assigned area 1. The company purchases a second branch office, but due to circuit delays to HQ, it

decides to connect the new branch office to the creating branch office as a temporary measure. The new branch office is assigned area 2. Which OSPF configuration enables all three locations to exchange routes?

Options:

A.

The existing branch office must be configured as a stub area

B.

A virtual link must be configured between the new branch office and HQ

C.

A sham link must be configured between the new branch office and HQ

D.

The new branch office must be configured as a stub area

Buy Now
Questions 53

An engineer uses Postman and YANG to configure a router with:

    OSPF process ID 400

    network 192.168.128.128/25 enabled for Area 0

Which get-config reply verifies that the model set was designed correctly?

Options:

A.

B.

C.

D.

Buy Now
Questions 54

When vEdge router redundancy is designed, which FHRP is supported?

Options:

A.

HSRP

B.

OMP

C.

GLBP

D.

VRRP

Buy Now
Questions 55

Refer to the exhibit A network administrator plans to announce the site subnets to the WAN using route summarization instead of announcing every subnet. What is the smallest summary route that should be used to encompass all subnets at the site?

Options:

A.

2001:DB8:ABCD:0003::/60

B.

2001:DB8::732

C.

2001:DB8:ABCD::760

D.

2001 DB8 ABCD /64

Buy Now
Questions 56

Refer to the exhibit. An architect is designing a Layer 3 routed network using point-to-point fiber links between the topology layers. BFD is supported on the software that runs within the infrastructure. Is BFD required within the design to provide sub-second convergence in the event of a fiber breakage?

Options:

A.

No, the OSPF hello and dead intervals must be tuned instead.

B.

Yes, but BFD requires tuning to provide fault detection and sub-second convergence.

C.

No, the topology converges sub-second without the use of BFD.

D.

Yes, it automatically provides the required fault detection and sub-second convergence.

Buy Now
Questions 57

Which feature is used to optimize WAN bandwidth of IGMP network traffic among WAN Edge routers in the

same VPN?

Options:

A.

IGMPv2

B.

multicast RP

C.

multicast-replicator

D.

multicast service routes

Buy Now
Questions 58

An engineer uses Postman and YANG to configure a router with:

Which get-config replay verifies that the model set was designed correctly?

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Buy Now
Questions 59

Refer to the exhibit. A mid-size company that produces media content has four offices across the country connected via MPLS Layer 3 service, which is provided by a local ISP. The network uses static routing. In anticipation of future growth, the engineering team must review and recommend design improvements in accordance with RFC 5340 requirements. The solution must optimize the routing table and reduce the number of routing updates exchanged between routers. The updated routing design must also be reliable and avoid routing loops. Which implementation meets the requirements?

Options:

A.

EIGRP with multiple AS numbers

B.

OSPF with stub areas

C.

BGP with a unique address family for each location

D.

OMP with stub-area routers

Buy Now
Questions 60

An engineer is designing an EIGRP network for a small branch site where there is only one Layer 3 router. The engineer wants the router to advertise the local LAN network to remote EIGRP neighbors without sending any unnecessary multicast messages on the local LAN. Which action should the engineer take?

Options:

A.

Use a static default route for this site instead of EIGRP

B.

Advertise the local LAN using the network command and the passive-interface feature

C.

Redistribute the local LAN network using the redistribute connected command

D.

Advertise the local LAN subnet as a stub network

Buy Now
Questions 61

Refer to the exhibit. An engineer Is designing a redistribution solution for a customer. The customer recently acquired another company and decided to integrate the new network running RlPv1 with the company ' s existing network. Which redistribution technique must the engineer select to ensure the multipoint two-way redistribution does not cause routing loops?

Options:

A.

distribute-lists inbound under the EIGRP process denying RIPv1 learned prefixes

B.

distribute-lists outbound under the EIGRP process denying RIPv1 learned prefixes

C.

distribute-lists outbound under the RIPv1 process denying EIGRP learned prefixes

D.

distribute-lists inbound under the RIPv1 process denying EIGRP learned prefixes

Buy Now
Questions 62

Refer to the exhibit.

Which solution decreases the EIGRP convergence time?

Options:

A.

Enable subsecond timers

B.

Increase the hold time value

C.

Increase the dead timer value

D.

Enable stub routing on the spokes

Buy Now
Questions 63

Refer to the exhibit.

A customer is running HSRP on the core routers. Over time the company has grown and requires more

network capacity. In the current environment, some of the downstream interfaces are almost fully utilized, but

others are not. Which solution improves the situation?

Options:

A.

Make router R2 active for half of the VLANs.

B.

Add more interfaces to R1 and R2.

C.

Configure port channel toward downstream switches.

D.

Enable RSTP on the downstream switches.

Buy Now
Questions 64

Which two statements about VRRP advertisements are true? (Choose two.)

Options:

A.

    They are sent from the master router and standby routers.

B.

    They include VRRP timer information.

C.

    They are sent only from the master router.

D.

    They include priority information.

E.

    They are sent every three seconds by default.

Buy Now
Questions 65

An architect must design a plan to manage the enterprise network devices. The design must accommodate that:

    not all network devices have a dedicated management interface

    all IP-enabled interfaces on all devices must be reachable

    encryption must be used with all devices which have support

Which solution must the architect choose?

Options:

A.

KVM server

B.

in-band

C.

out-of-band

D.

terminal server

Buy Now
Questions 66

Refer to the exhibit A customer requires a Layer 2 network designed to support:

    500 active logical ports

    trunking of 30 VLANs

    convergence of less than 1 second

Which Spanning Tree Protocol must be selected?

Options:

A.

RPVST+

B.

MSTP

C.

CST

D.

PVST+

Buy Now
Questions 67

A network engineer must segregate three interconnected campus networks using IS-IS routing. A two-layer hierarchy must be used to support large routing domains and to avoid more specific routes from each campus network being advertised to other campus network routers automatically. Which two actions does the engineer take to accomplish this segregation? (Choose two.)

Options:

A.

Designate two IS-IS routers as BDR routers at the edge of each campus, and configure one BDR for all Level 1 routers and one BDR for all Level 2 routers.

B.

Designate two IS-IS routers from each campus to act as Level 1/Level 2 backbone routers at the edge of each campus network.

C.

Assign the same IS-IS NET value for each campus, and configure internal campus routers with Level 1/ Level 2 routing.

D.

Utilize different MTU values for each campus network segment. Level 2 backbone routers must utilize a larger MTU size of 9216.

E.

Assign a unique IS-IS NET value for each campus, and configure internal campus routers with Level 1 routing.

Buy Now
Questions 68

A company wants to switch from static routing to a dynamic routing protocol to ease the administrative and operational overhead. The network topology is hub and spoke, and the branches use DM VPN back to the hub with two 10-Mbps internet connections. The branch routers are multivendor and have limited memory and CPU resources. Which routing protocol and design solution meets the requirements?

Options:

A.

eBGP with the hub routers set up as route reflectors

B.

ISIS with the hub and spoke routers configured in two different areas

C.

EIGRP with branch routers as stub routers and variance enabled

D.

OSPF with the hub in area 0 and branch routers in stub areas with ECMP

Buy Now
Questions 69

Which two BGP features will result in successful route exchanges between eBGP neighbors sharing the same

AS number? (Choose two.)

Options:

A.

advertise-best-external

B.

bestpath as-path ignore

C.

client-to-client reflection

D.

as-override

E.

allow-as-in

Buy Now
Questions 70

Refer to the exhibit. A customer needs to apply QoS to the network management traffic passing through the GigabitEthernet0/2 interface. All eight queuing classes are in use, so the new requirement must be integrated into the existing policy. Which solution must the customer choose?

Options:

A.

Mark traffic to DSCP CS5 and assign it to the SIGNALLING class. Then, baseline existing queue sizes to determine if additional bandwidth can be provisioned to the SIGNALLING class.

B.

Mark the traffic to DSCP CS4 and assign it to the SIGNALLING class. Then, prioritize traffic within the class.

C.

Mark the traffic to DSCP CS6 and assign it to the ROUTING class Then, prioritize traffic within the class.

D.

Mark the traffic to DSCP CS2 and assign it to the ROUTING class Then, baseline existing queue sizes to determine if additional bandwidth can be provisioned to the ROUTING class

Buy Now
Questions 71

An architect must design a network solution for a regional medical center that will provide interconnectivity between regionally dispersed data centers and a new colocation. The design must:

    utilize point-to-point connectivity

    utilize existing VLAN infrastructure

    increase performance for data center synchronization and backup processes

    reduce configuration complexity

Which solution must the engineer choose?

Options:

A.

L3VPN

B.

GRE

C.

DMVPN

D.

L2VPN

Buy Now
Questions 72

Refer to the exhibit. Currently, the network uses a single-homed solution for connecting to the internet. An engineer must design a more resilient WAN using the internet circuits at each site. The design must provide failover connectivity, support load-sharing of traffic, and QoS. Which solution must the engineer choose?

Options:

A.

Get VPN

B.

DMVPN

C.

SD-WAN

D.

IPsec tunnels

Buy Now
Questions 73

Refer to the exhibit. An engineer is planning an IPv4 to IPv6 migration solution for a customer. The routers in the network can support IPv4 and IPv6, except for the DWDM routers. The DWDM routers provide a Layer 2 link in which the routers peer directly with each other across a DWDM circuit. The circuit also provides connectivity between the mail servers. Which IPv6 migration technique must the engineer deploy?

Options:

A.

dual-stack

B.

6to4

C.

ISATAP

D.

6rd

Buy Now
Questions 74

Refer to the exhibit. A customer has two eBGP peerings from a single CE router toward two service providers. The customer has hired an architect to design a solution to ensure certain traffic enters the customer ' s network through interface g¡g0/0. Which solution must the architect include in the design?

Options:

A.

Advertise a lower MED value toward the less preferred service provider.

B.

Prepend additional AS on the AS path toward the preferred service provider.

C.

Break aggregated routes into longer prefixes and advertise to the preferred service provider.

D.

Set a higher local preference to the preferred service provider path.

Buy Now
Questions 75

Refer to the exhibit.

An architect must design an IPv6 migration solution for an enterprise customer to support these requirements:

* Clients will transition to the new IPv6 network, which provides NAT64 and IPv6 DNS resolution services, using the same DNS name that points to the IPv4 address.

* The service provider will create a client-facing IPv6 interface with a new IPv6 virtual address that points to the same IPv4 DNS server.

* The service provider will support clients that use global IPv6 addresses and encapsulate IPv4 packets into IPv6 tunnels.

Which two migration solutions must the architect choose? (Choose two.)

Options:

A.

Use dual-stack lite from the MPLS network to the IGR.

B.

Use IPv6 tunneling from the devices to the core MPLS network.

C.

Use dual-stack lite from the devices to the core MPLS network.

D.

Use NAT44/64 from the MPLS network to the IGR.

E.

Use NAT44/64 from the devices to the core MPLS network.

Buy Now
Questions 76

Refer to the exhibit. An architect reviews the low-level design of a company ' s enterprise network and advises optimizing the STP convergence time. Which functionality must be to Gi1/0/1-10 to follow the architect ' s recommendation?

Options:

A.

PortFast

B.

root guard

C.

UplinkFast

D.

BPDU guard

Buy Now
Questions 77

An engineer must propose a QoS architecture model that allows an application to inform the network of its traffic profile and to request a particular type of service to support its bandwidth and delay requirements. The application requires consistent and dedicated bandwidth end to end. Which QoS architecture model meets these requirements?

Options:

A.

DiffServ

B.

LLQ

C.

WRED

D.

IntServ

Buy Now
Questions 78

Which consideration must be made when designing a Cisco SD-Access fabric underlay?

Options:

A.

Subnets must be reduced to decrease latency.

B.

Up to six control planes are supported.

C.

The default MTU should be increased.

D.

A unified policy must be used.

Buy Now
Questions 79

When a first hop redundancy solution is designed, which protocol ensures that load balancing occurs over multiple routers using a single virtual IP address and multiple virtual MAC addresses?

Options:

A.

GLBP

B.

IRDP

C.

VRRP

D.

HSRP

Buy Now
Questions 80

Refer to the exhibit. A network engineer must design a highly available OSPF solution based on these requirements:

    Traffic disruptions caused by link or node failures in Area-1 must be resolved in milliseconds.

    In the event of a failure, traffic must switch to another path without waiting for the OSPF dead interval.

Which fault detection solution must the engineer choose?

Options:

A.

Utilize BFD and tune the BFD timers to 100 ms.

B.

Tune the SPF delay and the OSPF LSA interval timers to 100 ms.

C.

Enable IP SLA tracking for each OSPF peer.

D.

Decrease SPF timers to 100 ms.

Buy Now
Questions 81

A customer has several remote sites connected with their headquarters through microwave links. An engineer must propose a backup WAN solution based on these conditions:

Which backup WAN link type the engineer recommend?

Options:

A.

LTE

B.

802.16 WiMAX

C.

Laser link

D.

802.15.1 Bluetooth

Buy Now
Questions 82

What are two benefits of designing an SD-WAN network fabric with direct Internet access implemented at

every site? (Choose two.)

Options:

A.

It decreases latency to applications hosted by public cloud service provider.

B.

It decreases latency on Internet circuits.

C.

It increases the speed of delivery of site deployments through zero-touch provisioning.

D.

It increases the total available bandwidth on Internet circuits.

E.

It alleviates network traffic on MPLS circuits.

Buy Now
Questions 83

A company ' s security policy requires that all connections between sites be encrypted in a manner that does not

require maintenance of permanent tunnels. The sites are connected through a private MPLS-based service that

uses a dynamically changing key and spoke-to-spoke communication. Which type of transport encryption must

be used in this environment?

Options:

A.

GETVPN

B.

DMVPN

C.

GRE VPN

D.

standard IPsec VPN

Buy Now
Questions 84

An engineer is upgrading a company’s main site to include a connection to a second ISP. The company will receive full Internet routing tables from both ISPs via BGP. The engineer must ensure that the company does not become a transit autonomous system. Which solution should be included in this design?

Options:

A.

Tag incoming routes from both ISPs with BGP community no-export.

B.

Lower the MED for updates sent to the secondary ISP.

C.

Use a route-map to prevent all prefixes from being advertised to either ISP.

D.

Modify the local-preference for routes incoming from the primary ISP.

Buy Now
Questions 85

Which PIM mode uses a shared tree only?

Options:

A.

bidirectional

B.

sparse

C.

dense

D.

source-specific

Buy Now
Questions 86

Refer to the exhibit. An architect is designing a Layer 2 network for a customer. The network will use the spanning-tree protocol. During a link failure between SW1 and SW2, the fastest possible convergence time is desired. Which solution must the architect select?

Options:

A.

Loop Guard

B.

UplinkFast

C.

PortFast

D.

BackboneFast

Buy Now
Questions 87

An engineer must design a solution to connect a customer to the Internet. The solution will include a Layer 3 circuit with a CIR of 50 Mbps from the service provider. The hand-off from the provider ' s switch to the customer ' s router is 1Gbps. Which solution should the engineer include to prevent potential issues with choppy voice traffic?

Options:

A.

Reduce the bandwidth of the connection to the router.

B.

Implement hierarchical QoS with a parent policing policy.

C.

Implement hierarchical QoS with a parent shaping policy.

D.

Add a bandwidth statement to the router interface.

Buy Now
Questions 88

A company requires a private WAN design that allows remote sites to connect to HQ. The design must ensure that:

    traffic is always encrypted

    forwarding overhead is reduced

    management of security Is centralized

    multicast traffic is supported

Which technology must the company select?

Options:

A.

iPiac P2P

B.

GET VPN

C.

DMVPN Phase 3

D.

mGRE

Buy Now
Questions 89

An engineer must connect a new remote site to an existing OSPF network. The new site consists of two low-end routers, one for WAN, and one for LAN. There is no demand for traffic to pass through this area. Which area type does the engineer choose to provide minimal router resources utilization, while still allowing for full connectivity to the rest of the network?

Options:

A.

not so stubby

B.

totally not so stubby

C.

totally stubby area

D.

stubby area

Buy Now
Questions 90

An engineer must design a VPN solution for a company that has multiple branches connecting to a main office. What are two advantages of using DMVPN instead of IPsec tunnels to accomplish this task? (Choose

two.)

Options:

A.

support for AES 256-bit encryption

B.

greater scalability

C.

support for anycast gateway

D.

lower traffic overhead

E.

dynamic spoke-to-spoke tunnels

Buy Now
Questions 91

Which consideration must be taken into account when using the DHCP relay feature in a Cisco SD-Access Architecture?

Options:

A.

DHCP-relay must be enabled on fabric edge nodes to provide the correct mapping of DHCP scope to the local anycast gateway.

B.

A DHCP server must be enabled on the border nodes to allow subnets to span multiple fabric edges.

C.

DHCP servers must support Cisco SD-Access extensions to correctly assign IPs to endpoints in an SD-Access fabric with anycast gateway.

D.

DHCP Option-82 must be enabled to map the circuit IP option to the access fabric node where the DHCP discover originated.

Buy Now
Questions 92

A company wants to switch from static routing to a dynamic routing protocol to ease the administrative and operational overhead. The network topology is hub and spoke, and the branches use DMVPN back to the hub using two 100 Mbps internet connections. Both links must be used due to spikes in traffic, and routing must take traffic utilization of the links into account. Also, the branch routers have limited memory and CPU resources. Which routing protocol and design solution must the company choose?

Options:

A.

iBGP with the hub routers set up as route reflectors and branches set up as clients

B.

OSPF deployed in area 0 with branch routers connecting from area 1

C.

ISIS with the hub and spoke routers configured in two different areas

D.

EIGRP with branch routers as stub routers using ECMP

Buy Now
Questions 93

Which two statements about VRRP object tracking are true? (Choose two)

Options:

A.

The priority of a VRRP device can change in accordance with the up or down status of a VRRP object

B.

The VRRP interface priority must be manually configured by the administrator

C.

A VRRP group can track only one object at a time

D.

VRRP can track the status of interfaces and routes

E.

VRRP supports only interface tracking

Buy Now
Questions 94

An engineer must propose a solution for a campus network that includes the capability to create multiple Layer 3 virtual networks. Each network must have its own addressing structure and routing table for data forwarding. The solution must be scalable to support hundreds of virtual networks and allow simple configuration and management with minimal administrative overhead. Which solution does the engineer recommend?

Options:

A.

hop-by-hop EVN

B.

multihop MPLS core

C.

multihop IPsec tunneling

D.

hop-by-hop VRF-Lite

Buy Now
Questions 95

Drag and drop the Cisco SD-WAN components from the left onto their definitions on the right.

Options:

Buy Now
Questions 96

A network engineer prepares a script to configure a loopback interface with IP address 172.16.15.12/32. To comply with the company security policies, ' Content-type ' :

‘application/yang-data+json‘ is added to the script. Connection to the network devices must be secured. Which code snippet must the network engineer use to meet this requirement?

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Buy Now
Questions 97

Drag and drop the properties from the left onto the protocols they describe on the right.

Options:

Buy Now
Questions 98

Refer to the exhibit. The connection between SW2 and SW3 is fiber and occasionally experiences unidirectional link failure. An architect must optimize the network to reduce the change of layer2 forwarding loops when the link fails. Which solution should the architect include?

Options:

A.

Utilize 8PDU filter on SW3.

B.

Utilize loop guard on SW2

C.

Utilize BPDU guard on SW1

D.

Utilize root guard on SW1.

Buy Now
Questions 99

What is the purpose of the fabric management plane in a Cisco SD-Access architecture?

Options:

A.

create LISP-based EID for the end-to-end solution that is offered by SD-Access

B.

enable EID-to-RLOC mapping that is based on the BGP protocol

C.

create an underlay network that is based on the IS-IS routing protocol

D.

enable automation techniques for device deployments and configurations

Buy Now
Questions 100

Which common issue causes intermittent DMVPN tunnel flaps?

Options:

A.

    a routing neighbor reachability issue

B.

    a suboptimal routing table

C.

    interface bandwidth congestion

D.

    that the GRE tunnel to hub router is not encrypted

Buy Now
Questions 101

Which QoS feature responds to network congestion by dropping lower priority packets?

Options:

A.

CBWFQ

B.

tail drop

C.

WRED

D.

strict priority

Buy Now
Questions 102

Refer to the exhibit. As part of a design review of redistribution, a client requested that R2 be preferred over R3 for traffic passing toward the EIGRP domain. Which method meets this design requirement?

Options:

A.

Redistribute EIGRP into OSPF with metric-type E1 on R2 and metric-type E2 on R3.

B.

Remove the mutual redistribution on R3.

C.

Redistribute OSPF into EIGRP with metric 10000 100 255 1 1500 on R2 and metric 10 1000 255 1 1500 on R3.

D.

Redistribute EIGRP into OSPF with metric-type E2 on R2 and metric-type E1 on R3.

Buy Now
Questions 103

Refer to the exhibit.

An engineer must optimize the traffic flow of the network. Which change provides a more

efficient design between the access and the distribution layer?

Options:

A.

Add a link between access switch A and access switch B

B.

Reconfigure the distribution switch A to become the HSRP Active

C.

Change the link between distribution switch A and distribution switch B to be a routed link

D.

Create an EtherChannel link between distribution switch A and distribution switch B

Buy Now
Questions 104

Drag and drop the characteristics from the left onto the YANG modules they describe on the right. Not all options are used.

Options:

Buy Now
Questions 105

A company uses cloud-based applications for voice and video calls, file sharing, content sharing, and messaging. During business hours, these applications randomly become slow and unresponsive. However, other applications work smoothly with the current applied QoS polices. Which solution must the company choose to resolve the issue?

Options:

A.

Identify the applications with NBAR2 and allocate the required bandwidth accordingly.

B.

Identify the port used by each application and apply a minimum bandwidth guarantee.

C.

Identify the applications and reserve the required bandwidth on the perimeter routers.

D.

Identify the application ports, create groupings, and rate-limit the required bandwidth.

Buy Now
Questions 106

Drag and drop the descriptions from the left onto the corresponding VPN types on the rights.

Options:

Buy Now
Questions 107

A customer requests a VPN solution to connect multiple sites with the company headquarters. All the sites use the same IP subnet. The engineer plans to use VPLS. Which solutions must the engineer include in the design?

Options:

A.

802.1Q connectivity on the LAN side of the CE

B.

route exchange with the service provider

C.

address translation to hide overlapping subnets

D.

different VLANs on each site

Buy Now
Questions 108

An architect is designing a multicast solution for a network that contains over 100 routers. The architect plans to create several multicast domains and balance the PIM-SM traffic within the network. Which technology should the architect include in the design?

Options:

A.

DVMRP

B.

IGMP

C.

MOSPF

D.

MSDP

Buy Now
Questions 109

Which two best practices must be followed when designing an out-of-band management network? (Choose two.)

Options:

A.

    Enforce access control

B.

    Facilitate network integration

C.

    Back up data using the management network

D.

    Ensure that the management network is a backup to the data network

E.

    Ensure network isolation

Buy Now
Questions 110

When differentiating between IETF. OpenConfig. and Cisco native YANG models, how does the use of containers differ?

Options:

A.

OpenConfig uses one container for operational data and another container for configuration data, and IETF and Cisco native models use a single container for operational data and configuration data.

B.

IETF and Cisco native models use a single container for operational data and configuration data, and OpenConfig uses one container for operational data and another container for configuration data.

C.

IETF and Cisco native models use one container for operational data and another container for configuration data, and OpenConfig uses a single container for operational data and configuration data.

D.

Cisco native models use one container for operational data and another container for configuration data, and OpenConfig and IETF use a single container for operational data and configuration data.

Buy Now
Questions 111

A client is moving to Model-Driven Telemetry and requires periodic updates. What must the network architect consider with this design?

Options:

A.

Updates that contain changes within the data are sent only when changes occur.

B.

Empty data subscriptions do not generate empty update notifications.

C.

Periodic updates include a full copy of the data that is subscribed to.

D.

The primary push update is sent immediately and cannot be delayed.

Buy Now
Questions 112

What is the purpose of Cisco vBond as a Session Traversal Utilities for NAT server?

Options:

A.

allow Cisco Catalyst SD-WAN routers to locate their own mapped IP addresses

B.

integrate Cisco SD-Access Wireless into the fabric

C.

secure data traffic between Cisco Catalyst SD-WAN edge routers that use IPsec

D.

provide Zero-Touch Provisioning to Cisco Catalyst SD-WAN vEdge devices

Buy Now
Questions 113

An engineer working for a service provider with an employee ID 4598.48.606 prepared several designs for a traditional campus network. The design must allow the deployment on the same VXLAN to any switch at the access layer and must support:

    Fast convergence

    High availability

    Resilience

Which design must be selected?

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Buy Now
Exam Code: 300-420
Exam Name: Designing Cisco Enterprise Networks (ENSLD) v1.1
Last Update: Jun 12, 2026
Questions: 379
$64.4  $183.99
$49.35  $140.99
$44.8  $127.99
buy now 300-420