New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Cisco CCNP Enterprise 300-430 Questions and answers with CertsForce

Viewing page 8 out of 9 pages
Viewing questions 71-80 out of questions
Questions # 71:

An engineer set up a VoWLAN with QoS on the WLC and a class map on the switch, but the markings are not being preserved correctly in the end-to- end traffic flow. Which two configurations on the wired network ensure end-to-end QoS? (Choose two.)

Options:

A.

trust boundaries


B.

access lists


C.

policy maps


D.

QoS licenses


E.

NetFlow


Expert Solution
Questions # 72:

A corporation has employees working from their homes. A wireless engineer must connect 1810 OEAP at remote teleworker locations. All configuration has been completed on the controller side, but the network readiness is pending. Which two configurations must be performed on the firewall to allow the AP to join the controller? (Choose two.)

Options:

A.

Block UDP ports 1812 and 1813 on the firewall.


B.

Enable NAT Address on the 5520 with an Internet-routable IP address.


C.

Configure a static IP on the OEAP 1810.


D.

Allow UDP ports 5246 and UDP port 5247 on the firewall.


E.

Allow UDP ports 12222 and 12223 on the firewall.


Expert Solution
Questions # 73:

An engineer must control administrative access to the WLC using their Active Directory without being concerned about RBAC after the admin user is authenticated. Which two features does the engineer configure to accomplish this task? (Choose two.)

Options:

A.

Device Admin Policy Set


B.

User Access Mode: ReadWrite


C.

ACL


D.

RADIUS server


E.

TACACS server


Expert Solution
Questions # 74:

Refer to the exhibit.

Question # 74

An engineer must connect a fork lift via a WGB to a wireless network and must authenticate the WGB certificate against the RADIUS server. Which three steps are required for this configuration? (Choose three.)

Options:

A.

Configure the certificate, WLAN, and radio interface on WGB.


B.

Configure the certificate on the WLC.


C.

Configure WLAN to authenticate using ISE.


D.

Configure the access point with the root certificate from ISE.


E.

Configure WGB as a network device in ISE.


F.

Configure a policy on ISE to allow devices to connect that validate the certificate.


Expert Solution
Questions # 75:

An engineer is working for an organization that recently deployed Cisco SD-Access-based network with all SSIDs working in Fabric-enabled wireless. A recent project requires third-party APs to be connected to the access switches for some interoperability testing. However, Cisco Catalyst Center (formerly DNA Center) detects these APs as rogue on the wire. Which action must the engineer take to avoid reporting third-party APs as high-threat rogue and containing them?

Options:

A.

Reduce the power on the third-party APs and create smaller broadcasting cells.


B.

Upload the MAC addresses of the third-party APs to Cisco Catalyst Center using a wl PS workflow.


C.

Remove specific switches from Cisco Catalyst Center management where third-party APs are connected.


D.

Enable Management Frame Protection on the SSIDs broadcasted using third-party APs.


Expert Solution
Questions # 76:

Where is a Cisco OEAP enabled on a Cisco Catalyst 9800 Series Wireless Controller?

Options:

A.

RF Profile


B.

Flex Profile


C.

Policy Profile


D.

AP Join Profile


Expert Solution
Questions # 77:

An engineer is in the process of implementing Fastiane on a wireless network with a Mobility Express AP installed and Apple end-user devices. Due to a security concern, the IT department has updated all the iPads to version 14.5.423551943. Which QoS profile must the engineer configure on the user WLAN?

Options:

A.

Platinum


B.

Best Effort


C.

Bronze


D.

Silver


Expert Solution
Questions # 78:

Refer to the exhibit.

Question # 78

A network architect configured the Cisco Catalyst 9800 Series Controller to find out information on client types in the wireless network. RADIUS profiling is enabled so that the controller forwards the information about clients to a Cisco ISE server through vendor-specific RADIUS attributes. The ISE server is not profiling any data from the controller. Which configuration must be added in the blank in the code to accomplish the profiling on the Cisco 9800 Series controller?

Options:

A.

aaa accounting identity acct_method start-stop group rad-group


B.

aaa accounting network acct_method start-stop group rad-group


C.

aaa accounting exec acct_method start-stop group rad-group


D.

aaa accounting commands acct_method start-stop group rad-group


Expert Solution
Questions # 79:

Which CLI command do you use to shut down the 2.4 GHz radio of the Floor1_AP1 AP on a Cisco 3850 Switch?

Options:

A.

ap name Floor1_AP1 dot11 shutdown 24ghz


B.

ap name Floor1_AP1 dot11 5ghz shutdown


C.

ap name Floor1 AP1 dot11 24ghz shutdown


D.

ap name Floor1_AP1 shutdown dot11 24ghz


Expert Solution
Questions # 80:

An administrator receives reports of many interferers in the wireless network and wants to get the location of these interferers from the maps in Cisco Prime Infrastructure.

When looking at the floor plans/maps, the administrator does not see any interferers, but can see all wireless clients located successfully.

Which two statements define the cause of the issue? (Choose two.)

Options:

A.

MSE is not added to Cisco Prime infrastructure and synchronized.


B.

Interferer tracking is not enabled on the MSE.


C.

SNMP between Cisco Prime Infrastructure and the WLC is failing.


D.

Context Aware Service tracking limit has already been reached with tracking other elements.


E.

NSMP communication is inactive with the WLC.


Expert Solution
Viewing page 8 out of 9 pages
Viewing questions 71-80 out of questions