Summer Sale 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: exams65

ExamsBrite Dumps

Designing Cisco Enterprise Networks (ENSLD) v1.1 Question and Answers

Designing Cisco Enterprise Networks (ENSLD) v1.1

Last Update Jun 23, 2026
Total Questions : 379

We are offering FREE 300-420 Cisco exam questions. All you do is to just go and sign up. Give your details, prepare 300-420 free exam questions and then go for complete pool of Designing Cisco Enterprise Networks (ENSLD) v1.1 test questions that will help you more.

300-420 pdf

300-420 PDF

$40.25  $114.99
300-420 Engine

300-420 Testing Engine

$47.25  $134.99
300-420 PDF + Engine

300-420 PDF + Testing Engine

$61.25  $174.99
Questions 1

Refer to the exhibit. Which process does the Ethernet LMI protocol follow that is defined by the MEF 16 Technical Specification?

Options:

A.  

communicates ENI and EVC attributes to the CE

B.  

notifies the CE of the availability state of a configured EVC

C.  

broadcasts multicast network routes from the CE to the PE

D.  

broadcasts to all subnets from the CE when an EVC is added

Discussion 0
Questions 2

Which design achieves SD-WAN control plane redundancy?

Options:

A.  

Configuring BFD on the WAN Edge routers

B.  

Using multiple instances of vManage in clusters

C.  

Deploying using a virtual platform like UCS or CSP

D.  

Managing the underlay network with OMP

Discussion 0
Questions 3

Refer to the exhibit. A company specializing in VoD content creation has two offices in a separate multicast domain connected by a WAN link. BGP communication has been established between the offices. Clients are inside the LAN in each office. In AS5373. R2 has been selected as RP. What must the network architect design to deliver VoD content to clients in AS65773?

Options:

A.  

MSDP

B.  

PIM ASM with Auto-RP

C.  

PIM SSM

D.  

PIM ASM with BSR

Discussion 0
Questions 4

A network engineer must optimize a campus OSPF deployment Currently each time a type 1 or type 2 LSA is generated within an area, the OSPF process must recompute the entire SPT Which solution improves the recomputation process?

Options:

A.  

iSPF

B.  

BFD

C.  

SPF

D.  

PRC

Discussion 0
Questions 5

How is end-to-end microsegmentation enforced in a Cisco SD-Access architecture?

Options:

A.  

VLANs are used to segment traffic at Layer 2.

B.  

5-tuples and ACLs are used to permit or deny traffic.

C.  

SGTs and SGTACLs are used to control access to various resources.

D.  

VRFs are used to segment traffic at Layer 3.

Discussion 0
Questions 6

Refer to the exhibit.

The failover time of ISP-2 is significantly shorter than ISP-1 when an interface on the ISP router toward the campus network fails. Which solution minimizes the downtime to the sub-second?

Options:

A.  

Aggressive timers

B.  

Next-hop address tracking

C.  

Graceful-restart

D.  

BFD

Discussion 0
Questions 7

An architect must design a topology for a WAN network that satisfies these requirements:

    Devices must be able to make informed decisions.

    Suboptimal paths are allowed only In case of a failure.

    Backup paths must always be available.

Which topology must the architect select?

Options:

A.  

partial mesh

B.  

hub and spoke

C.  

full mesh

D.  

Clos

Discussion 0
Questions 8

An engineer is designing a BGP network for a large customer. To permit efficient scaling, the BGP domain is split into clusters. Which peering solution should be used between the route reflectors in different clusters for the BGP routes to be propagated appropriately?

Options:

A.  

The route reflectors should be made dents of each other.

B.  

The route reflectors should be nonclients with regards to each other.

C.  

The route reflectors should not have any kind of BGP peering.

D.  

The route reflectors should have peering through another nonclient router.

Discussion 0
Questions 9

Exhibit:

Refer to the exhibit. An engineer is designing a Layer 2 campus network. The design must support fast convergence and leverage as much bandwidth as possible between layers. Distribution switches do support VSS; unfortunately, not all routing protocols are available for use due to license limitations. Which solution must the engineer choose?

Options:

A.  

EtherChannel

B.  

MEC

C.  

RSTP

D.  

ECMP

Discussion 0
Questions 10

Which function are fabric intermediate nodes responsible for in an SD-Access Architecture?

Options:

A.  

mapping EIDs to RLOCs

B.  

encapsulating user traffic in a VXLAN header including the SGT

C.  

registering new endpoints in the HTDB

D.  

transporting IP packets between edge nodes and border nodes

Discussion 0
Questions 11

When a first hop redundancy solution is designed, which protocol ensures that load balancing occurs over multiple routers using a single virtual IP address and multiple virtual MAC addresses?

Options:

A.  

GLBP

B.  

IRDP

C.  

VRRP

D.  

HSRP

Discussion 0
Questions 12

A company wants to switch from static to dynamic routing. The branches use DMVPN back to the hub using two internet connections. One internet connection speed is 10 Mbps, and the other is 100 Mbps. All locations use Cisco routers; however, the branch routers have limited memory and CPU resources. Which routing protocol and design solution must the company choose for optimal traffic forwarding during peak traffic times?

Options:

A.  

iBGP with the hub routers set up as route reflectors

B.  

OSPF deployed in area 0 with branch routers connected back via virtual links

C.  

EIGRP with branch routers as stub routers and variance enabled

D.  

ISIS with the hub and spoke routers configured in two different areas

Discussion 0
Questions 13

Refer to the exhibit.

Which solution decreases the EIGRP convergence time?

Options:

A.  

Enable subsecond timers

B.  

Increase the hold time value

C.  

Increase the dead timer value

D.  

Enable stub routing on the spokes

Discussion 0
Questions 14

What is the purpose of Cisco Catalyst SD-WAN Cloud OnRamp?

Options:

A.  

It brings secure and private connectivity agnostics to all types of links and providers.

B.  

It creates Cisco Catalyst SD-WAN application-aware policies and route-critical applications.

C.  

It delivers secure access to business-critical applications across a multicloud environment.

D.  

It simplifies and automates the process of connecting on-premises environments to the cloud.

Discussion 0
Questions 15

A network architect Is enabling TV services In the LAN. The source will be streaming to the 239.1.1.1 group IP address. Dense mode Is not allowed In the network. Multicast has already been enabled on all network devices In the LAN segment. Which action must the architect take to finalize the design?

Options:

A.  

Enable PIM SSM.

B.  

Enable PIM Auto-RP.

C.  

Enable PIM Anycast RP

D.  

Enable PIM BSR.

Discussion 0
Questions 16

Refer to the exhibit. A network engineer must design a BGP solution based on:

    The route reflector must have one or more direct physical connections to the core routers (R3 and R4).

    The route reflector must have full redundancy and avoid a single point of failure.

    R2 to R1 link utilization is 90%. and the remaining links are less than 50% utilized.

Which two solutions must the design Include? (Choose two.)

Options:

A.  

Configure R1 to be a client of R2 and R4.

B.  

Configure R2 to be a client of R1 and R4.

C.  

Configure R3 to be a client of R2 and R4.

D.  

Configure R4 to be a client of R1 and R3.

E.  

Configure R5 to be a client of R3 and R4.

Discussion 0
Questions 17

Which information update is carried by OMP and enables the Cisco SD-WAN to build a secure overlay fabric on top of any public or private transport without regard for the actual link IP?

Options:

A.  

TLOC

B.  

RLOC

C.  

LISP PITR

D.  

DTLS

Discussion 0
Questions 18

Refer to the exhibit.

An engineer is designing a routing solution for a customer. The design must ensure that a failure of network

10.1.0.0/24, 10.1.2.0/24, 10.2.1.0/24, or 10.2.3.0/24 does not impact the core. It also requires fast convergence

time during any link failover in the core or access networks. Which solution must the engineer select?

Options:

A.  

Add aggregation layer between core and access networks.

B.  

Enable graceful restart on routers A and C.

C.  

Enable FRR for the connected networks of routers A and

C.  

D.  

Enable summarization on routers A and C.

Discussion 0
Questions 19

Which function do reverse path forwarding mechanisms perform in a multicast deployment?

Options:

A.  

They notify the upstream router of multicast traffic.

B.  

They send PIM prune message toward multicast sources.

C.  

They eliminate overlapping multicast addresses

D.  

They prevent loops and duplicate packets.

Discussion 0
Questions 20

Which consideration must be made when designing a Cisco SD-Access fabric underlay?

Options:

A.  

Subnets must be reduced to decrease latency.

B.  

Up to six control planes are supported.

C.  

The default MTU should be increased.

D.  

A unified policy must be used.

Discussion 0
Questions 21

Refer to the exhibit. A customer experienced an unexpected network outage when the link between R1 and R2 went down. An architect must design a solution to ensure network continuity in the event the link fails again. Which solution should the design include?

Options:

A.  

Make R31 an L1 router.

B.  

Make R3 an L1L2 router

C.  

Make Area 0 L2-only

D.  

Make R11 an L2 router.

Discussion 0
Questions 22

At which layer does Cisco Express Forwarding use adjacency tables to populate addressing information?

Options:

A.  

    Layer4

B.  

    Layer 2

C.  

    Layer 1

D.  

    Layer 3

Discussion 0
Questions 23

Drag and drop the descriptions from the left onto the categories they apply to on the right.

Options:

Discussion 0
Questions 24

Refer to the exhibit. A customer needs to apply QoS to the network management traffic passing through the GigabitEthernet0/2 interface. All eight queuing classes are in use, so the new requirement must be integrated into the existing policy. Which solution must the customer choose?

Options:

A.  

Mark traffic to DSCP CS5 and assign it to the SIGNALLING class. Then, baseline existing queue sizes to determine if additional bandwidth can be provisioned to the SIGNALLING class.

B.  

Mark the traffic to DSCP CS4 and assign it to the SIGNALLING class. Then, prioritize traffic within the class.

C.  

Mark the traffic to DSCP CS6 and assign it to the ROUTING class Then, prioritize traffic within the class.

D.  

Mark the traffic to DSCP CS2 and assign it to the ROUTING class Then, baseline existing queue sizes to determine if additional bandwidth can be provisioned to the ROUTING class

Discussion 0
Questions 25

Which two statements about VRRP object tracking are true? (Choose two)

Options:

A.  

The priority of a VRRP device can change in accordance with the up or down status of a VRRP object

B.  

The VRRP interface priority must be manually configured by the administrator

C.  

A VRRP group can track only one object at a time

D.  

VRRP can track the status of interfaces and routes

E.  

VRRP supports only interface tracking

Discussion 0
Questions 26

A company plans to transition to IPv6. They will link their IPv4 addresses to the lowest significant bits of the new Ipv6 addresses. A network administrator with an employee id: 4264:42:116 is preparing a mapping schema for the new IPv6 addresses. Which address does the 172.16.10.0/24 network translate to?

Options:

A.  

2001:db8:abcd::ac10:a00/120

B.  

2001:db8:abcd:172:16:10::/96

C.  

2001:db8:abcd:11d8:a00/120

D.  

2001:db8:ac10:0a00::/64

Discussion 0
Questions 27

Refer to the exhibit. As part of a design review of redistribution, a client requested that R2 be preferred over R3 for traffic passing toward the EIGRP domain. Which method meets this design requirement?

Options:

A.  

Redistribute EIGRP into OSPF with metric-type E1 on R2 and metric-type E2 on R3.

B.  

Remove the mutual redistribution on R3.

C.  

Redistribute OSPF into EIGRP with metric 10000 100 255 1 1500 on R2 and metric 10 1000 255 1 1500 on R3.

D.  

Redistribute EIGRP into OSPF with metric-type E2 on R2 and metric-type E1 on R3.

Discussion 0
Questions 28

Drag and drop the elements from the left onto the YANG models where they and used on the right.

Options:

Discussion 0
Questions 29

Refer to the exhibit. An engineer must ensure that the QoS design guarantees bandwidth for the applications, and an application can request a particular type of service to support its delay requirements. Which solution must the engineer select?

Options:

A.  

Diffserv with RSVP

B.  

IntServ with RSVP

C.  

Diffserv with DSCP

D.  

IntServ with DSCP

Discussion 0
Questions 30

What is a challenge of the SaaS model?

Options:

A.  

higher initial costs

B.  

lack of application and infrastructure control

C.  

requires upgrades to individual computers to meet performance requirements

D.  

higher application and data integration complexity

Discussion 0
Questions 31

A customer requires QoS to support multimedia conferencing over MPLS. The network architect chooses to use per-hop behavior. Which solution must the architect use to classify and mark traffic traveling between branch sites?

Options:

A.  

BW Queue and DSCP WRED with DSCP AF3

B.  

BW Queue with DSCP AF3

C.  

BW Queue and DSCP WRED with DSCP AF4

D.  

BW Queue with DSCP AF4

Discussion 0
Questions 32

What is the role of a control-plane node in a Cisco SD-Access architecture?

Options:

A.  

fabric device that connects wired endpoints to the SD-Access fabric

B.  

map system that manages endpoint to device relationships

C.  

fabric device that connects APs and wireless endpoints to the SD-Access fabric

D.  

map system that manages External Layer 3 networks

Discussion 0
Questions 33

Refer to the exhibit. An architect needs to ensure that network traffic from the New Office network can access the server with the least network latency. All links within the network infrastructure currently have the same link cost. Which configuration meets the requirement?

Options:

A.  

metric-style wide on R8

B.  

static route on R8 toward R7

C.  

route leaking on R13 and R9

D.  

Level 1-2 (L1/L2) mode on R8

Discussion 0
Questions 34

An ISP provides Layer 3 VPN service over MPLS to a customer with four branches and multiple CE routers at

each branch. To exchange the routes that are learned from the CE routers, which BGP address family should

the ISP activate among the PE routers?

Options:

A.  

address-family multicast

B.  

L2VPN EVPN

C.  

VPNv4 unicast

D.  

IPv4 unicast

Discussion 0
Questions 35

What is an advantage of designing an out-of-band network management solution?

Options:

A.  

In the event of a production network outage, network devices can still be managed.

B.  

There is no separation between the production network and the management network.

C.  

In the event of a production network outage, it can be used as a backup network path.

D.  

It is less expensive than an in-band management solution

Discussion 0
Questions 36

An engineer is designing an enterprise campus network. The LAN infrastructure consists of switches from multiple vendors, and Spanning Tree must be used as a Layer 2 loop prevention mechanism. All configured

VLANs must be grouped in two SIP instances. Which standards-based Spanning Tree technology supports this design solution?

Options:

A.  

MSTP

B.  

RSTP

C.  

Rapid PVST

D.  

STP

Discussion 0
Questions 37

Which design consideration must be made when using IPv6 overlay tunnels?

Options:

A.  

Overlay tunnels that connect isolated IPv6 networks can be considered a final IPv6 network architecture.

B.  

Overlay tunnels should only be considered as a transition technique toward a permanent solution.

C.  

Overlay tunnels can be configured only between border devices and require only the IPv6 protocol stack.

D.  

Overlay tunneling encapsulates IPv4 packets in IPv6 packets for delivery across an IPv6 infrastructure.

Discussion 0
Questions 38

What is the purpose of Cisco vBond as a Session Traversal Utilities for NAT server?

Options:

A.  

allow Cisco Catalyst SD-WAN routers to locate their own mapped IP addresses

B.  

integrate Cisco SD-Access Wireless into the fabric

C.  

secure data traffic between Cisco Catalyst SD-WAN edge routers that use IPsec

D.  

provide Zero-Touch Provisioning to Cisco Catalyst SD-WAN vEdge devices

Discussion 0
Questions 39

A network engineer must design an MSDP multicast solution to provide RP resilience in a network with two separate domains. Also, multicast sources and receivers must register with the local RP. Which solution must the engineer choose?

Options:

A.  

Configure the RP has value to 0, and traffic will route to the closest RP

B.  

Configure the RP loopback interface with the same IP address/32, and traffic will route to the closest RP

C.  

Configure the RP group ranges to split the multicast traffic, and traffic will route to the longest match

D.  

Configure the RP priority with the same value, and traffic will route to the closest RP

Discussion 0
Questions 40

An architect is designing a network that will utilize the spanning tree protocol to ensure a loop-free topology. The network will support an engineering environment where it is necessary for end users to connect their own network switches for testing purposes. Which feature should the architect include in the design to ensure the spanning tree topology is not affected by these rogue switches?

Options:

A.  

BPDU Skew Detection

B.  

BPDU guard

C.  

loop guard

D.  

root guard

Discussion 0
Questions 41

When is it advisable to provide dedicated control plane nodes within a Cisco SD-Access design?

Options:

A.  

in a small deployment where border nodes are not required

B.  

in a design where fabric edge nodes are unable to provide control plane functionality

C.  

in designs without Cisco DNA Center

D.  

when there is a requirement for frequent roaming of endpoints across fabric edge nodes

Discussion 0
Questions 42

Drag and drop the characteristics from the left onto the YANG modules they describe on the right. Not all options are used.

Options:

Discussion 0
Questions 43

An engineer must design a solution to connect a customer to the Internet. The solution will include a Layer 3 circuit with a CIR of 50 Mbps from the service provider. The hand-off from the provider ' s switch to the customer ' s router is 1Gbps. Which solution should the engineer include to prevent potential issues with choppy voice traffic?

Options:

A.  

Reduce the bandwidth of the connection to the router.

B.  

Implement hierarchical QoS with a parent policing policy.

C.  

Implement hierarchical QoS with a parent shaping policy.

D.  

Add a bandwidth statement to the router interface.

Discussion 0
Questions 44

Which feature is required for graceful restart to recover from a processor failure?

Options:

A.  

Cisco Express Forwarding

B.  

Virtual Switch System

C.  

Stateful Switchover

D.  

Bidirectional Forwarding Detection

Discussion 0
Questions 45

Refer to the exhibit An engineer working for a telecommunication company with an employee ID 4449:30 959 Is calculating STP scalability for switches to ensure that the numbers are below the maximum supported value for STP logical ports How many logical interfaces are active for switch A?

Options:

A.  

4

B.  

307

C.  

202

D.  

100

Discussion 0
Questions 46

When vEdge router redundancy is designed, which FHRP is supported?

Options:

A.  

HSRP

B.  

OMP

C.  

GLBP

D.  

VRRP

Discussion 0
Questions 47

An engineer must design a scalable QoS architecture that allows the separation of the traffic into classes on predefined business requirements. The design must also utilize the differentiated services code points as the QoS priority descriptor value and support at least 10 levels of classification. Which QoS technology should the engineer include in the design?

Options:

A.  

RSVP

B.  

Diffserv

C.  

Best effort

D.  

Interserv

Discussion 0
Questions 48

Which element in a Cisco SD-WAN architecture maintains a centralized routing table?

Options:

A.  

WAN Edge router

B.  

vSmart Controller

C.  

vManage NMS

D.  

vBond Orchestrator

Discussion 0
Questions 49

Which solution allows overlay VNs to communicate with each other in an SD-WAN Architecture?

Options:

A.  

External fusion routers can be used to map VNs to VRFs and selectively route traffic between VRFs.

B.  

GRE tunneling can be configured between fabric edges to connect one VN to another.

C.  

SGTs can be used to permit traffic from one VN to another.

D.  

Route leaking can be used on the fabric border nodes to inject routes from one VN to another.

Discussion 0
Questions 50

Which function does the Cisco SD-Access intermediate node perform?

Options:

A.  

Act as LISP proxy tunnel router.

B.  

Route and transport IP traffic.

C.  

Act as an anycast Layer 3 gateway.

D.  

Map users to a virtual network.

Discussion 0
Questions 51

Refer to the exhibit. Customers report low video quality and delays when having point-to-point telepresence video calls between the two locations. An architect must optimize a design so that traffic follows the same path for egress and ingress traffic flows. Which technique optimizes the design?

Options:

A.  

Configure route leaking on the router in area 2.

B.  

Configure route leaking on the router in area 1.

C.  

Configure the high metric on the router in area 4.

D.  

Configure route filter on the router in area 4.

Discussion 0
Questions 52

Which two statements about VRRP advertisements are true? (Choose two.)

Options:

A.  

    They are sent from the master router and standby routers.

B.  

    They include VRRP timer information.

C.  

    They are sent only from the master router.

D.  

    They include priority information.

E.  

    They are sent every three seconds by default.

Discussion 0
Questions 53

Refer to the exhibit. An architect is designing an IPv4 plan using the 172.16.0.0/16. The design must maximize the number of subnets while meeting these requirements:

    500 hosts within the server room

    100 hosts at the remote site

    25 hosts at the access site

Which plan must the architect choose?

A)

B)

C)

D)

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 54

An architect must design an IPv6 migration solution for a corporation with remote offices to support:

* The customer has IPv4 peering with their service provider.

* IPv6 users need access to IPv4 and IPv6 resources.

* Existing content providers will migrate to IPv6 in the next two years.

* Users will be migrated in a phase-by-phase approach.

Which migration solution must the architect choose?

Options:

A.  

NAT46

B.  

tunneling

C.  

NAT64

D.  

dual-stack

Discussion 0
Questions 55

An engineer must propose a solution for a campus network that includes the capability to create multiple Layer 3 virtual networks. Each network must have its own addressing structure and routing table for data forwarding. The solution must be scalable to support hundreds of virtual networks and allow simple configuration and management with minimal administrative overhead. Which solution does the engineer recommend?

Options:

A.  

hop-by-hop EVN

B.  

multihop MPLS core

C.  

multihop IPsec tunneling

D.  

hop-by-hop VRF-Lite

Discussion 0
Questions 56

Company A recently acquired another company. Users of the newly acquired company must be able to access a server that exists on Company A’s network, both companies use overlapping IP address ranges. Which action conserves IP address space and provides access to the server?

Options:

A.  

Use a single IP address to create overload NAT

B.  

Use a single IP address to create a static NAT entry

C.  

Build one-to-one NAT translation for every user that needs access

D.  

Re-IP overlapping address space in the acquired company

Discussion 0
Questions 57

What is the purpose of service routes in OMP updates?

Options:

A.  

specify routes toward a centralized orchestration plane

B.  

describe underlay transport Information

C.  

define the remote management Information

D.  

indicate services that are enabled for service insertion

Discussion 0
Questions 58

A customer’s environment includes hosts that support IPv6-only. Several of these hosts must communicate with a public web server that has only IPv4 domain name resolution. Which solution should the customer use in this environment?

Options:

A.  

utilize NAT64 to translate the addresses

B.  

Implement NAT44 at the edge of the customer network

C.  

use 6to4 and a tunnel to translate the addresses

D.  

implement 6PE to resolve hostname resolution

Discussion 0
Questions 59

A network engineer must connect two sites across a public network using a secure tunneling technology that

supports multicast traffic. Which technology must be chosen?

Options:

A.  

IPsec

B.  

GRE

C.  

PPTP

D.  

GRE over IPsec

Discussion 0
Questions 60

What is the main purpose of the Cisco SD-Access overlay design?

Options:

A.  

To simplify network management and troubleshooting for support teams

B.  

To ensure high availability and fault tolerance for user services

C.  

To enable seamless integration with SD-Access overlay services

D.  

To enhance network visibility and monitoring for infrastructure

Discussion 0
Questions 61

Refer to the exhibit A customer wants to adopt a dynamic site-to-site VPN solution to secure communication for VoIP, video, and FTP traffic between the remote branches and the headquarters. The customer also wants the branches to communicate directly, thereby reducing traffic at the headquarters location. The solution must consider that the branch routers are limited in available memory. Which VPN solution meets these requirements?

Options:

A.  

DMVPN Phase 2 Hub and Spoke design

B.  

DMVPN Phase 3 Hub and Spoke design

C.  

DMVPN Phase 1 Hub and Spoke design

D.  

DMVPN Phase 3 Hierarchical design

Discussion 0
Questions 62

A company’s branch location uses redundant routers and links for connectivity to the headquarters. Also, to use the entire available bandwidth, the branch uses a dynamic routing protocol. An architect must design a multicast streaming solution to avoid RPF check failures because of the current network design. Which deployment model must the architect choose?

Options:

A.  

PIM-SM

B.  

BIDIR-PIM

C.  

PIM-BSR

D.  

PIM-SSM

Discussion 0
Questions 63

Refer to the exhibit. A Cisco Catalyst switch is configured to.. only one MAC address to be learned manually on interface gkjO/2. Which command must be run to dynamically learn the devices that are connected to the switch port?

Options:

A.  

Option A

B.  

Option B

C.  

Option C

D.  

Option D

Discussion 0
Questions 64

Refer to the exhibit. A network architect is preparing a network design based on EIGRP. Routers are connected using a Cat6a cable type and the inter-router connection speed is limited to 10 Mbps due to distance. During the pilot phase, a DUAL-3-SIA error message is visible. Which action must the engineer take to create a stable design?

Options:

A.  

Enable poison reverse on R4.

B.  

Create a summary route on R2.

C.  

Disable split horizon on R1.

D.  

Configure STUB area on R4.

Discussion 0
Questions 65

Refer to the exhibit. An engineer is designing a BGP solution for a client that peers with ISP1 for full Internet connectivity and with ISP2 for direct exchange of routes for several third parties. Which action, when implemented on the edge routers, enables the client network to reach the Internet through ISP1?

Options:

A.  

Run an eBGP session within different VRFs for each ISP.

B.  

Advertise a default route for downstream routers within the client network.

C.  

Apply the AS-path prepend feature for ISP2.

D.  

Apply route filtering such that the client advertises only routes originated from its own AS.

Discussion 0
Questions 66

A network administrator is troubleshooting a DMVPN setup between the hub and the spoke. Which action should the administrator take before troubleshooting the IPsec configuration?

Options:

A.  

    Verify the GRE tunnels.

B.  

    Verify ISAKMP.

C.  

    Verify NHRP.

D.  

    Verify crypto maps.

Discussion 0
Questions 67

Which two options can you use to configure an EIGRP stub router? (Choose two)

Options:

A.  

    summary-only

B.  

    receive-only

C.  

    external

D.  

    summary

E.  

    totally-stubby

F.  

    not-so-stubby

Discussion 0
Questions 68

A company is working with a service provider to design a BGP policy. The company is dual-homed with the provider and wants to control which link inbound traffic transits. Also, the company will advertise several networks to the provider and needs propagation to go no further. Which BGP attribute meet these requirements?

Options:

A.  

AS-path

B.  

MED

C.  

community

D.  

local preference

Discussion 0
Questions 69

An engineer must design a multicast network for a financial application. Most of the multicast sources also receive multicast traffic (many-to-many deployment model). To better scale routing tables, the design must not use source trees. Which multicast protocol satisfies these requirements?

Options:

A.  

PIM-SSM

B.  

PIM-SM

C.  

MSDP

D.  

BIDIR-PIM

Discussion 0
Questions 70

An engineer working for a service provider with an employee ID: 4863:43:939 must design a solution to provide remote connectivity over the public internet. The design must:

    securely connect multiple remote sites to the central site

    provide redundant paths to the central site

    allow auto path selection based on failure and connection quality

    support IP multicast

    minimal configuration at remote sites

Which solution must the engineer choose?

Options:

A.  

MPLS provided service with BGP

B.  

dual DMVPN with EIGRP routing

C.  

full mesh OSPF with IPsec tunnels

D.  

full mesh ISIS with GRE tunnels and IPsec

Discussion 0
Questions 71

An engineer is designing an IPv4 addressing plan for an enterprise with 1000 branches. Each branch requires a prefix for data and a prefix for voice. Each prefix must accommodate up to 128 hosts, and prefixes must facilitate summarization at aggregation points in the network. The security team requires a simple method for identifying voce prefixes. Which allocation does the engineer recommend from the RFC1918 address space?

Options:

A.  

/24 prefixes for data from 10.0.0.0/15 and /24 prefixes for voice from 172.16.0.0/15

B.  

/24 prefixes for data from 10.0.0.0/8 and /24 prefixes for voice from the next contiguous /24 prefix per site

C.  

/25 prefixes for data from 10.0.0.0/8 end /25 prefixes for voice from the next contiguous /25 prefix per branch

D.  

/24 prefixes for data from 10.0.0.0/8 and /24 prefixes for voice from 172.16.0.0/12

Discussion 0
Questions 72

Refer to the exhibit. An engineer is designing an OSPF solution for a customer. The design must take into consideration:

    Application load balancers D. E. and F are in different geographical locations and are OSPF-enabled.

    Hosts A, B. and C connect to an application through the load balancers using IP address 10.1.1.1/32.

    In the event of a failure of one of the load balancers, hosts must still have access to the application.

Which solution must the engineer choose?

Options:

A.  

All load balancers to be co-located in area 0.

B.  

X, Y, and Z to be configured as different areas

C.  

At least one load balancer to be in area 0.

D.  

X, Y and Z to be configured as the same area

Discussion 0
Questions 73

What is a logical topology in a Cisco SD-Access architecture considered to be when it is used to virtually connect devices that are built on an arbitrary physical network?

Options:

A.  

data plane

B.  

control plane

C.  

underlay

D.  

overlay

Discussion 0
Questions 74

Refer to the exhibit. These requirements must be met:

    VLANs span multiple access switches.

    All VLANs are trunked on all access switch uplinks to distribution switches.

    The STP version is Rapid PVST+.

Which design provides the fastest spanning-tree convergence?

Options:

A.  

Switch D configured as VLAN 10 secondary root, Switch C configured as VLAN 10 primary root, link A configured as Layer 2 trunk

B.  

Switch D configured as VLAN 10 primary root, Switch C configured as VLAN 10 secondary root, link A configured as Layer 2 trunk

C.  

Switch D configured as VLAN 10 primary root, Switch C configured as VLAN 10 secondary root, link A configured as Layer 3 routed link

D.  

Switch D configured as VLAN 10 secondary root, Switch C configured as VLAN 10 primary root, link A configured as Layer 3 routed link

Discussion 0
Questions 75

Refer to the exhibit. A customer is planning to deploy a new branch in New York. The new office will not exceed 1024 users. Which subnet must be used to provide maximum number of host addresses while not providing more than necessary?

Options:

A.  

192.168.8.0/21

B.  

192.168.16.0/22

C.  

192.168.16.0/21

D.  

192.168.8.0/22

Discussion 0
Questions 76

Which control plane protocol is responsible for ElD-to-RLOC mapping concerning SO-Access Architecture?

Options:

A.  

GBAC

B.  

LISP

C.  

CEF

D.  

VXLAN

Discussion 0
Questions 77

A network engineer must design a multicast solution to prevent the spoofing of multicast streams and ensure efficient bandwidth utilization. The network will be merged with another multicast domain in the future, and the merge must require minimum effort. Which two solutions meet the customer requirements? (Choose two.)

Options:

A.  

PIM-SSM

B.  

IGMPv3

C.  

IGMPv2

D.  

PIM-SM

E.  

MSDP

Discussion 0
Questions 78

Which queuing structure is used on SD-WAN Edge routers?

Options:

A.  

FIFO

B.  

LLQ+WFQ

C.  

1P-4Q-2T

D.  

Priority

Discussion 0
Questions 79

Which PIM mode uses a shared tree only?

Options:

A.  

bidirectional

B.  

sparse

C.  

dense

D.  

source-specific

Discussion 0
Questions 80

An architect is designing a multicast solution for a network that contains over 100 routers. The architect plans to create several multicast domains and balance the PIM-SM traffic within the network. Which technology should the architect include in the design?

Options:

A.  

DVMRP

B.  

IGMP

C.  

MOSPF

D.  

MSDP

Discussion 0
Questions 81

Which protocol is the Cisco SD-Access data plane based on?

Options:

A.  

OMP

B.  

VXLAN

C.  

NHRP

D.  

LISP

Discussion 0
Questions 82

A company must run a pilot project for an IPv6 application within the network on existing servers and is investigating migration strategies. Contained within a single VLAN, the pilot must span a dual-site data center environment that is formed of Layer 2 and Layer 3 switches. What is a primary consideration for the pilot?

Options:

A.  

Layer 2 and Layer 3 switches within each data center that provisions the data center network must support dual stacking.

B.  

Hosts within each data center that participates in the pilot must support dual stacking.

C.  

Layer 2 switches within each data center that provisions the VLAN must support dual stacking.

D.  

Layer 3 switches within each data center that provisions the network must support dual stacking.

Discussion 0
Questions 83

An engineer must connect a new remote site to an existing OSPF network. The new site consists of two low-end routers, one for WAN, and one for LAN. There is no demand for traffic to pass through this area. Which area type does the engineer choose to provide minimal router resources utilization, while still allowing for full connectivity to the rest of the network?

Options:

A.  

not so stubby

B.  

totally not so stubby

C.  

totally stubby area

D.  

stubby area

Discussion 0
Questions 84

In the SD-WAN underlay network, which WAN Edge VPN ID is defined as the transport VPN and is used to

carry control traffic?

Options:

A.  

VPN 0

B.  

VPN 512

C.  

VPN 128

D.  

VPN 256

Discussion 0
Questions 85

An engineer is designing a campus network with Cisco Catalyst 95CO switches in the aggression layer. The design requires running nonblocking Layer 2 MEC from the aggregation layer to the access layer. The Catalyst switches are located on different campus floors for availability reasons, and each access switch veil contam a single VLAN. Which technology must the engineer choose for the aggregation switches in the design?

Options:

A.  

VPC

B.  

VSS

C.  

StackWise Virtual

D.  

StackWise-180

Discussion 0
Questions 86

Drag and drop the Cisco Catalyst SD-WAN components from the left to their definitions on the nght

Options:

Discussion 0
Questions 87

How does OMP behave in a Cisco Catalyst SD-WAN architecture if no policy is defined?

Options:

A.  

To allow a hub-and-spoke topology for WAN Edge routers to communicate via the central location

B.  

To allow a point-to-point topology for WAN Edge routers to communicate from the central location to remote locations

C.  

To allow all WAN Edge routers to communicate using a full mesh topology

D.  

To block all communication between WAN Edge routers

Discussion 0
Questions 88

Currently, inter-VRF routing between the global routing table and VRF-A is accomplished on the client firewall, but the customer wants to do this on the core network layer. The customer does not want to run BGP, VRF-Lite : or static routing Which mechanism meets the requirements?

Options:

A.  

policy-based routing with the global set statement in a route map

B.  

route map that matches access lists and prefix lists with the import feature

C.  

inter-VRF can only be used on an external device with a link in each VRF

D.  

VRF receive feature under the global routing interfaces

Discussion 0
Questions 89

Refer to the exhibit. A customer has two eBGP peerings from a single CE router toward two service providers. The customer has hired an architect to design a solution to ensure certain traffic enters the customer ' s network through interface g¡g0/0. Which solution must the architect include in the design?

Options:

A.  

Advertise a lower MED value toward the less preferred service provider.

B.  

Prepend additional AS on the AS path toward the preferred service provider.

C.  

Break aggregated routes into longer prefixes and advertise to the preferred service provider.

D.  

Set a higher local preference to the preferred service provider path.

Discussion 0
Questions 90

An engineer is creating a design to enable IPv6 to run on an existing IPv4 IS-IS network. The IPv4 and IPv6 topologies will match exactly, and the engineer plans to use the same router levels for each protocol per interface. Which IS-IS design is required?

Options:

A.  

single topology without enabling transition feature

B.  

single topology with transition feature enabled

C.  

multi topology with transition feature enabled

D.  

multi topology without enabling transition feature

Discussion 0
Questions 91

Which control-plane technology allows the same subnet to exist across multiple network locations?

Options:

A.  

LISP

B.  

VXLAN

C.  

FabricPath

D.  

ISE mobility services

Discussion 0
Questions 92

A company is expanding its headquarters to support the relocation of several departments. The network has been running RIP, but as the company has grown, the engineering team has determined that it needs to support a more robust routing protocol. The team is working to design a routing solution that:

    supports network segregation, with summarization between segments

    ensures fast convergence

    provides scalability

Which design must the network team deploy?

Options:

A.  

Deploy EIGRP with stub areas.

B.  

Deploy OSPF with multiple areas.

C.  

Deploy OSPF with a virtual link that connects at least two segments.

D.  

Deploy EIGRP with modified K values.

Discussion 0
Questions 93

Refer to the exhibit. The distribution switches serve as the layer 3 boundary. HSRP preemption is enabled. When the primary switch comes back after a failure, traffic is initially dropped. Which solution must be implemented to improve the design?

Options:

A.  

Increase the hello timers on both HSRP devices

B.  

Use the preempt delay feature on the primary HSRP device.

C.  

Use the preempt delay feature on the backup HSRP device

D.  

Configure a higher mac-refresh interval on both HSRP devices

Discussion 0
Questions 94

An architect is designing a network for an enterprise site. The design must use an active/backup design for the WAN. It must guarantee the SLA for several applications regardless of which connection is used. Which deployment model should the architect choose?

Options:

A.  

MPLS WAN from two separate ISPs

B.  

hybrid WAN using MPLS VPN and internet VPN from a single ISP

C.  

hybrid WAN using MPLS VPN and internet VPN from two separate ISPs

D.  

internet WAN from two separate ISPs

Discussion 0
Questions 95

An engineer must configure EIGRP to ensure that all WAN routes are not advertised to the routers in a data center. Which action must be taken?

Options:

A.  

Configure the stub router in receive-only mode.

B.  

Advertise only the default route.

C.  

Summarize the local subnets.

D.  

Configure the stub router in distributed mode.

Discussion 0
Questions 96

A company is planning to open two new branches and allocate the 2a01:c30:16:7009::3800/118 IPv6 network for the region. Each branch should have the capacity to accommodate maximum of 200 hosts. Which two networks should the company use? (Choose two.)

Options:

A.  

2a01:0c30:0016:7009::3a00/120

B.  

2a01:0c30:0016:7009::3b00/121

C.  

2a01:0c30:0016:7009::3a80/121

D.  

2a01:0c30:0016:7009::3b00/120

E.  

2a01:0c30:0016:7009::3c00/120

Discussion 0
Questions 97

An engineer must design a management network that enables SSH, NTP, FTP, and SNMP over the production network. The design requires the management of routers and switches that exist across different networks. Which feature must the design include?

Options:

A.  

Management Plane Protection

B.  

dedicated management console connection per device

C.  

terminal server

D.  

dedicated management VRF connection per device

Discussion 0
Questions 98

An architect is designing a network solution for a customer. The customer wants a design with redundancy at the distribution layer and the fastest convergence time possible during a failover. In addition, the company has a small IT support team, so the deployment process must be simple and quick. Which solution must the architect select?

Options:

A.  

GLBP

B.  

VRRP

C.  

HSRP

D.  

VSS

Discussion 0
Questions 99

An engineer is designing a QoS policy that queues excess packets for later transmission. Which mechanism must be included in the design?

Options:

A.  

shaping

B.  

WRED

C.  

policing

D.  

RED

Discussion 0
Questions 100

What is a primary capability of the cloud-based services model in an IaaS deployment?

Options:

A.  

It provides workload-migration capabilities, which allows seamless movement of virtual machines and applications between on-premises infrastructure and the cloud.

B.  

It reduces operational costs and increases flexibility by allowing organizations to pay for only the resources they consume.

C.  

It provides the ability to scale resources up or down based on demand, which enables an organization to adjust its computing capacity dynamically.

D.  

It leverages advanced orchestration and automation tools to streamline resource provisioning and management, which reduces manual effort and improves operational efficiency.

Discussion 0
Questions 101

A company ' s security policy requires that all connections between sites be encrypted in a manner that does not

require maintenance of permanent tunnels. The sites are connected through a private MPLS-based service that

uses a dynamically changing key and spoke-to-spoke communication. Which type of transport encryption must

be used in this environment?

Options:

A.  

GETVPN

B.  

DMVPN

C.  

GRE VPN

D.  

standard IPsec VPN

Discussion 0
Questions 102

Which nonproprietary mechanism can be used to automate rendezvous point distribution in a large PIM domain?

Options:

A.  

Embedded RP

B.  

BSR

C.  

Auto-RP

D.  

Static RP

Discussion 0
Questions 103

Refer to the exhibit. All routers currently reside in OSPF area 0. The network manager recently used R1 and R2 as aggregation routers for remote branch locations and R3 and R4 for aggregation routers for remote office locations. The network has since been suffering from outages, which are causing frequent SPF runs. To enhance stability and introduce areas to the OSPF network with the minimal number of ABRs possible, which two solutions should the network manager recommend? (Choose two.)

Options:

A.  

a new OSPF area for R1 and R2 connections, with R1 and R2 as ABRs

B.  

a new OSPF area for R3 and R4 connections, with R5 and R6 as ABRs

C.  

a new OSPF area for R3 and R4 connections, with R3 and R4 as ABRs

D.  

a new OSPF area for R1, R2, R3, and R4 connections, with R1, R2, R3, and R4 as

ABRs

E.  

a new OSPF area for R1 and R2 connections, with R5 and R6 as ABRs

Discussion 0
Questions 104

A customer is discussing QoS requirements with a network consultant. The customer has specified that end-to-end path verification is a requirement. Which QoS solution meets this requirement?

Options:

A.  

IntServ model with RSVP to support the traffic flows

B.  

DiffServ model with PHB to support the traffic flows

C.  

marking traffic at the access layer with DSCP to support the traffic flows

D.  

marking traffic at the access layer with CoS to support the traffic flows

Discussion 0
Questions 105

Which two functions does the control plane node provide in a Cisco SD-Access architecture? (Choose two.)

Options:

A.  

LISP proxy ETR

B.  

host tracking database

C.  

policy mapping

D.  

map server

E.  

endpoint registration

Discussion 0
Questions 106

Which feature minimizes HOC connections and reduces strain on the vSmart controller m an SO-WAN architecture?

Options:

A.  

control-connections

B.  

corrtroWirection

C.  

color

D.  

affinity

Discussion 0
Questions 107

Drag and drop the elements from the left onto the functions they perform in the Cisco SD-WAN architecture on the right.

Options:

Discussion 0
Questions 108

Which type of rendezvous point deployment is standards-based and support dynamic RP discovery?

Options:

A.  

Auto-RP

B.  

Anycast-RP

C.  

bootstrap router

D.  

static RP

Discussion 0
Questions 109

Refer to the exhibit. An architect is designing an ISIS solution with these requirements:

    The backbone area will grow to 50 routers in the next 12 months.

    Routers A1 and A2 must avoid suboptimal routing.

    Summarization and route-leaking should be allowed in areas 49.002 and 49.003.

Which solution must the architect select?

Options:

A.  

area 49.000 L1, area 49.001 L2, area 49.002 L2, and area 49.003 L2

B.  

area 49.000 L1, area 49.001 L1, area 49.002 L2, and area 49.003 L2

C.  

area 49.000 L2. area 49.001 L1, area 49.002 L1, and area 49.003 L1

D.  

area 49.000 L2. area 49.001 L2, area 49.002 L1, and area 49.003 L1

Discussion 0
Questions 110

Refer to the exhibit. An architect is designing a BGP solution to connect a remote branch to a service provider. There are several prefixes within the branch that the company does not want to be advertised to the internet. Which solution should the architect use to accomplish this?

Options:

A.  

Set the BGP Internet community for all prefixes.

B.  

Implement the NOPEER community.

C.  

Use the BGP No-Advertise community for the prefixes to exclude.

D.  

Attach the No-Export community with the prefixes to exclude

Discussion 0
Questions 111

Which method will filter routes between EIGRP neighbors within the same autonomous system?

Options:

A.  

distribute-list

B.  

policy-based routing

C.  

leak-map

D.  

route tagging

Discussion 0
Questions 112

A company needs to increase access port capacity on one floor of a building. They want to leverage the existing catalyst access switch. There is no problem with uplink bandwidth capacity. However, no additional uplinks can be added because no ports are available on the distribution switches. Which solution must the company choose to provide additional access ports?

Options:

A.  

VDC

B.  

VSS

C.  

Etherchannel

D.  

Stackwise

Discussion 0
Questions 113

A company is running BGP on a single router, which has two connections to the same ISP. Which BGP

feature ensures traffic is load balanced across the two links to the ISP?

Options:

A.  

Multihop

B.  

Multipath Load Sharing

C.  

Next-Hop Address Tracking

D.  

AS-Path Prepending

Discussion 0