Filters
Question type

Study Flashcards

After receiving an alert regarding a rogue AP, a network engineer logs into Cisco Prime and looks at the floor map where the AP that detected the rogue is located. The map is synchronized with a mobility services engine that determines the rogue device is actually inside the campus. The engineer determines the rogue to be a security threat and decides to stop it from broadcasting inside the enterprise wireless network. What is the fastest way to disable the rogue?


A) Go to the location the rogue device is indicated to be and disable the power.
B) Create an SSID on the WLAN controller resembling the SSID of the rogue to spoof it and disable clients from connecting to it.
C) Classify the rogue as malicious in Cisco Prime.
D) Update the status of the rogue in Cisco Prime to contained.

Correct Answer

verifed

verified

When the VPN membership policy is being controlled at the vSmart controller, which policy disallows VPN 1 at sites 20 and 30?


A) When the VPN membership policy is being controlled at the vSmart controller, which policy disallows VPN 1 at sites 20 and 30? A)    B)    C)    D)
B) When the VPN membership policy is being controlled at the vSmart controller, which policy disallows VPN 1 at sites 20 and 30? A)    B)    C)    D)
C) When the VPN membership policy is being controlled at the vSmart controller, which policy disallows VPN 1 at sites 20 and 30? A)    B)    C)    D)
D) When the VPN membership policy is being controlled at the vSmart controller, which policy disallows VPN 1 at sites 20 and 30? A)    B)    C)    D)

Correct Answer

verifed

verified

Which three recommendations must be taken into consideration when an engineer is installing a new Voice WLAN? (Choose three.)


A) Use the Cisco wireless phone site survey client utility.
B) Use a separate Cisco Wireless Lan Controller.
C) Enable load balance on voice WLANs.
D) Maintain -67dBM as a minimal RSSI.
E) Set data for 2.4 GHz and voice for 5 GHz using separate SSIDs.
F) Enable lower data rates for 2.4-GHz data WLAN.

Correct Answer

verifed

verified

When redistribution is configured between OMP and BGP at two Data Center sites that have Direct Connection Interlink, which step avoids learning the same routes on WAN Edge routers of the DCs from LAN?


A) Set down-bit on Edge routers on DC1
B) Define different VRFs on both DCs
C) Set OMP admin distance lower than BGP admin distance
D) Set same overlay AS on both DC WAN Edge routers

Correct Answer

verifed

verified

Which TCP Optimization feature is used by WAN Edge to prevent unnecessary and large initial TCP window sizes to maximize throughput and achieve a better quality?


A) SACK
B) SEQ
C) RTT
D) SYN

Correct Answer

verifed

verified

A network administrator is bringing up one WAN Edge router for branch connectivity. Which types of tunnels form when the WAN edge router connects to the Cisco SD-WAN fabric?


A) DTLS or TLS tunnel with vSmart controller and IPsec tunnel with vBond controller
B) DTLS or TLS tunnel with vBond controller and IPsec tunnel with vManage controller
C) DTLS or TLS tunnel with vBond controller and IPsec tunnel with other WAN Edge routers
D) DTLS or TLS tunnel with vSmart controller and IPsec tunnel with other WAN Edge routers

Correct Answer

verifed

verified

Which component of the Cisco SD-WAN control plane architecture should be located in a public Internet address space and facilitates NAT-traversal?


A) WAN Edge
B) vSmart
C) vBond
D) vManage

Correct Answer

verifed

verified

Which pathway under Monitor > Network > Select Device is used to verify service insertion configuration?


A) System Status
B) Troubleshooting
C) Real Time
D) Events

Correct Answer

verifed

verified

An engineer is adding a tenant with location ID 123456789 in vManage. What is the maximum number of alphanumeric characters that is accepted in the tenant name field?


A) 8
B) 256
C) 128
D) 64

Correct Answer

verifed

verified

Which device in the Cisco SD-WAN solution receives and categorizes event reports, and generates alarms?


A) WAN Edge routers
B) vSmart controllers
C) vBond controllers
D) vManage NMS

Correct Answer

verifed

verified

Two sites have one WAN Edge each. Each WAN Edge has two public TLOCs with no restrict configured. There is full reachability between the TLOCs. How many data tunnels are formed on each Edge router?


A) 6
B) 2
C) 4
D) 8

Correct Answer

verifed

verified

An engineer has configured the wireless controller to authenticate clients on the employee SSID against Microsoft Active Directory using PEAP authentication. Which protocol does the controller use to communicate with the authentication server?


A) WPA2
B) RADIUS
C) 802.1X
D) EAP

Correct Answer

verifed

verified

Which VPN connects the transport-side WAN Edge interface to the underlay/WAN network?


A) VPN 1
B) VPN 0
C) VPN 512
D) VPN 511

Correct Answer

verifed

verified

What is a default protocol for control plane connection?


A) HTTPS
B) TLS
C) IPsec
D) DTLS

Correct Answer

verifed

verified

What is the purpose of "vpn 0" in the configuration template when onboarding a WAN edge node?


A) It carries control traffic over secure IPsec connections between vSmart controllers and vEdge routers, and between vEdge and vManager.
B) It carries control traffic over secure IPsec connections between vSmart controllers and vEdge routers, and between vSmart and vBond.
C) It carries control traffic over secure DTLS or TLS connections between vSmart controllers and vEdge routers, and between vSmart and vBond.
D) It carries out-of-band network management traffic among the Viptela devices in the overlay network.

Correct Answer

verifed

verified

Which configuration allows users to reach YouTube from a local Internet breakout?


A) Which configuration allows users to reach YouTube from a local Internet breakout? A)    B)    C)    D)
B) Which configuration allows users to reach YouTube from a local Internet breakout? A)    B)    C)    D)
C) Which configuration allows users to reach YouTube from a local Internet breakout? A)    B)    C)    D)
D) Which configuration allows users to reach YouTube from a local Internet breakout? A)    B)    C)    D)

Correct Answer

verifed

verified

Which platforms are managed by a single vManage dashboard?


A) ISR4351, ASR1002HX, vEdge2000, vEdge Cloud
B) ISR4321, ASR1001, Nexus, ENCS
C) ISR4321, ASR1001, ENCS, ISRv
D) ISR4351, ASR1009, vEdge2000, CSR1000v

Correct Answer

verifed

verified

An engineer configures the wireless LAN controller to perform 802.1x user authentication. Which option must be enabled to ensure that client devices can connect to the wireless, even when WLC cannot communicate with the RADIUS?


A) local EAP
B) authentication caching
C) ?r?-authentication
D) Cisco Centralized Key Management

Correct Answer

verifed

verified

For data plane resiliency, what does the Cisco SD-WAN software implement?


A) multiple vBond orchestrators
B) establishing affinity between vSmart controllers and WAN Edge routers
C) OMP
D) BFD

Correct Answer

verifed

verified

A network administrator is creating an OMP feature template from the vManage GUI to be applied to WAN edge routers. Which configuration attribute will avoid the redistribution of the routes back into the OMP from the LAN side?


A) configure "ECMP limit"
B) configure "Send Backup Paths"
C) configure "Number of Paths Advertised per Prefix"
D) configure "Overlay AS Number"

Correct Answer

verifed

verified

Showing 61 - 80 of 147

Related Exams

Show Answer