New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Cisco CCNP Enterprise 300-430 Questions and answers with CertsForce

Viewing page 1 out of 9 pages
Viewing questions 1-10 out of questions
Questions # 1:

An engineer has configured Cisco Centralized Key Management for an enterprise that has remote branches. The remote offices are connected back to the data center using a VPN connection with low-bandwidth connections. The goal is to improve roaming. Which type of group must be configured?

Options:

A.

RF


B.

Cisco FlexConnect


C.

interlace


D.

AP


Expert Solution
Questions # 2:

The CTO of an organization wants to ensure that all Android devices are placed into a separate VLAN on their wireless network. However, the CTO does not want to deploy ISE. Which feature must be implemented on the Cisco WLC?

Options:

A.

WLAN local policy


B.

RADIUS server overwrite interface


C.

AAA override


D.

custom AVC profile


Expert Solution
Questions # 3:

Refer to the exhibit.

Question # 3

An engineer must provide a position of rogue APs on a floor map using Cisco PI 3.0, but no rogue AP options are showing on the left-hand navigation menu under Maps. What is the reason for this omission?

Options:

A.

An assurance license is not installed.


B.

The controller operational status background task is disabled.


C.

The Show Detected Interferers feature under the AP option is disabled.


D.

Cisco MSE has not been added to Cisco PI.


Expert Solution
Questions # 4:

A network administrator of a school district must implement a DNS-based ACL to block students from accessing certain teacher URLs where test papers are hosted. The infrastructure contains a Cisco Catalyst 9800 WLC with 25 9136 APs. The administrator configured the URL Filter List called urllist_flex_pre, applied the URL Filter List to the default Flex Profile, and defined Preauth called urllist_local_preauth and Postauth called urllist_local_postaut URL Filter List. Which configuration must the administrator apply to implement the ACL on the default policy profile?

Question # 4

Question # 4

Options:

A.

Option A


B.

Option B


C.

Option C


D.

Option D


Expert Solution
Questions # 5:

After installing and configuring Cisco CMX, an administrator must change the NTP server on the Cisco CMX server. Which action accomplishes this task?

Options:

A.

Manually edit /etc/ntp.conf using an XML editor before restarting the server by using service restart all services.


B.

Log in to the Cisco CMX CLI and issue set ntp server NTP_IP where NTP_IP is the IP of the NTP server.


C.

Manually edit /etc/ntp.conf as the admin user before restarting ntpd by using service ntpd restart.


D.

Log in to the Cisco CMX GUI as the administrator and type the IP address of the NTP server in System tab > Settings> TimeZone/NTP.


Expert Solution
Questions # 6:

A healthcare organization notices many rogue APs and is concerned about a honeypot attack. Which configuration must a wireless network engineer perform in Cisco Prime Infrastructure to prevent these attacks most efficiently upon detection?

Options:

A.

Set the auto containment level to 0 and select the Using Our SSID containment option.


B.

Set the manual containment level to 4 and select the Ad Hoc Rogue AP containment option.


C.

Set the auto containment level to 0 and select the Ad Hoc Rogue AP containment option.


D.

Set the auto containment level to 4 and select the Using Our SSID containment option.


Expert Solution
Questions # 7:

What must be configured on the Global Configuration page of the WLC for an AP to use 802.1x to authenticate to the wired infrastructure?

Options:

A.

local access point credentials


B.

RADIUS shared secret


C.

TACACS server IP address


D.

supplicant credentials


Expert Solution
Questions # 8:

The network management team in a large shopping center has detected numerous rogue APs from local coffee shops that are broadcasting SSIDs. All of these SSIDs have names starting with ATC (for example, ATC302, ATC011, and ATC566). A wireless network engineer must appropriately classify these SSIDs using the Rogue Rules feature. Drag and drop the options from the left onto the categories in which they must be used on the right. Not all options are used.

Question # 8


Expert Solution
Questions # 9:

A network administrator managing a Cisco Catalyst 9800-80 WLC must place all iOS connected devices to the guest SSID on VLAN 101. The rest of the clients must connect on VLAN 102 distribute load across subnets. To achieve this configuration, the administrator configures a local policy on the WLC. Which two configurations are required? (Choose two.)

Options:

A.

Assign a policy map under global security policy settings.


B.

Add local profiling policy under global security policy settings.


C.

Create a service template.


D.

Allow HTTP and DHCP profiling under policy map.


E.

Enable device classification on global wireless settings.


Expert Solution
Questions # 10:

Which devices can be tracked with the Cisco Context Aware Services?

Options:

A.

wired and wireless devices


B.

wireless devices


C.

wired devices


D.

Cisco certified wireless devices


Expert Solution
Viewing page 1 out of 9 pages
Viewing questions 1-10 out of questions