New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Cisco CCNP Service Provider 300-540 Questions and answers with CertsForce

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

Question # 1

Refer to the exhibit. An engineer must configure iBGP multipath load sharing across three paths. Which two commands must be run on router R2? (Choose two.)

Options:

A.

router bgp 100


B.

ip load-sharing ibgp 3


C.

maximum-paths ibgp 3


D.

router bgp 101


E.

ip load-sharing per-destination


Expert Solution
Questions # 2:

An engineer must enable the highest level of logging when troubleshooting Cisco NFVIS. Which command must be run?

Options:

A.

system set-log logtype configuration level warning


B.

system set-log logtype configuration level error


C.

system set-log logtype configuration level critical


D.

system set-log logtype operational level debug


Expert Solution
Questions # 3:

Which command must be run on a Cisco IOS device to configure six parallel iBGP and eBGP routes that can be installed into a routing table?

Options:

A.

maximum paths bgp 6


B.

multipath eibgp 6


C.

maximum paths bgp routers 6


D.

maximum-paths eibgp 6


Expert Solution
Questions # 4:

An engineer must implement a solution on a Cisco ASR 1000 Series router to protect against DDoS attacks. DDoS traffic must be dropped by transmitting Flowspec attributes to edge routers, instructing them to generate an ACL via class-maps and policy-maps. The engineer already configured BGP neighbors. Which action must be taken next?

Options:

A.

Configure Flowspec for the BGP address-family


B.

Set the BGP routing process


C.

Activate the BGP neighbors


D.

Configure the route reflector


Expert Solution
Questions # 5:

An engineer must create a new VPC and deploy several Amazon EC2 instances in AWS. Only SSH connections originating from IP address 20.20.20.20 must be allowed to reach the EC2 instances. What must be configured?

Options:

A.

Access control list


B.

Security group


C.

Web application firewall


D.

Resource group


Expert Solution
Questions # 6:

Which type of cyberattack does Cisco Umbrella DNS-layer security effectively help mitigate?

Options:

A.

Phishing and malware-based attacks


B.

DDoS attacks targeting specific servers


C.

Brute force attacks on user accounts


D.

Advanced persistent threats and zero-day exploits


Expert Solution
Questions # 7:

An engineer recently deployed a Secure Endpoint VPC in AirGap mode. Which command must be run in the Secure Endpoint Private Cloud portal to update the package to the latest version?

Options:

A.

force update -y


B.

rpm -qa


C.

jamf-sync all


D.

genisoimage


Expert Solution
Questions # 8:

Question # 8

Question # 8

Refer to the exhibit. An engineer is troubleshooting an issue where switch LEAF-SW-1 and switch LEAF-SW-2 receive corrupted forwarding and learning information about each other. LEAF-SW-1 and LEAF-SW-2 are configured with BGP EVPN VTEP. Which action resolves the issue?

Options:

A.

On each switch, run the delete suppress-arp command against interface nve1.


B.

On each switch, configure a different secondary IP address against interface loopback0.


C.

On LEAF-SW-1, run the host-reachability protocol bgp command against interface nve1.


D.

On each switch, ensure the same BGP router ID is configured.


Expert Solution
Questions # 9:

How does log management assist in meeting the requirements of cloud security regulatory compliance?

Options:

A.

by supporting documentation and reporting processes


B.

by streamlining resource allocation across cloud environments


C.

by providing enhanced interoperability between cloud platforms


D.

by boosting the security of cloud-based applications


Expert Solution
Questions # 10:

A large company's legacy network is set up with equipment from multiple vendors. The company engaged a network architect to optimize the network for virtualization. The architect must ensure robust and efficient operation, considering the company's immediate needs but also anticipating future network complexities and scalability requirements. The chosen strategy must be capable of integrating seamlessly with existing systems, while providing a pathway for innovation and growth. The solution must facilitate end-to-end service automation throughout the entire lifecycle, and the implementation must ensure the validation, execution, and abstraction of network configurations and services. Which action must be taken to meet the requirements?

Options:

A.

Implement a service life-cycle approach with simplified monitoring that plans for post-deployment adjustments to be incorporated into the automation CI/CD pipeline.


B.

Implement a configuration-management approach that allows for configuring each network device individually to optimize its performance.


C.

Implement a flexible service-modeling approach that leverages automation for ongoing management and refinement as demands on the network evolve.


D.

Implement a service-modeling approach with a static YANG one-size-fits-all model that includes the unique requirements of each different network element.


Expert Solution
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions