Pass the Cisco CCNP Data Center 300-620 Questions and answers with CertsForce

Viewing page 2 out of 8 pages
Viewing questions 11-20 out of questions
Questions # 11:

An engineer wants to filter the System Faults page and view only the active faults that are present in the Cisco

ACI fabric. Which two lifecycle stages must be selected for filtering? (Choose two.)

Options:

A.

Raised


B.

Retaining


C.

Soaking, Clearing


D.

Raised, Clearing


E.

Soaking


Expert Solution
Questions # 12:

Which two actions extend a Layer 2 domain beyond the ACI fabric? (Choose two.)

Options:

A.

extending the routed domain out of the ACI fabric


B.

creating a single homed Layer 3 Out


C.

creating an external physical network


D.

extending the bridge domain out of the ACI fabric


E.

extending the EPG out of the ACI fabric


Expert Solution
Questions # 13:

A Cisco APIC is configured with RADIUS authentication as the default The network administrator must ensure that users can access the APIC GUI with a local account if the RADIUS server is unreachable. Which action must be taken to accomplish this goal?

Options:

A.

Create an additional login domain that references local accounts


B.

Enable the fallback check with the default authentication domain


C.

Associate console authentication with the "RADIUS" realm.


D.

Reference the local realm in the fallback domain


Expert Solution
Questions # 14:

An engineer wants to configure Cisco ACI switches to use authenticated ZMQ when communicating with the proxy spine. Which configuration allows MD5 ZMQ messages only?

Options:

A.

IS-IS password using MD5


B.

COOP Group policy in strict mode


C.

COOP Group policy in compatible mode


D.

BGP password using MD5


Expert Solution
Questions # 15:

An engineer is implementing an out-of-band (OOB) management access for the Cisco ACI fabric. The secure access must meet these requirements:

• Only GUI and secure shell must be allowed to access the management interfaces of the ACIs.

• The only IP ranges that must be permitted to connect the fabric will be 10.10.10.0724 and 192.168.15.0/24.

Which configuration set meets these requirements?

Options:

A.

Implement HTTPS and SSH protocol filters in the OOB contract. Add the required subnets to the external network instance profile.


B.

Create an out-of-band EPG in the external management entity. Associate the management profile with the OOB contract.


C.

Set up static IPs on the management interfaces from the required IP range. Add the required subnets to the external network instance profile.


D.

Create an out-of-band EPG in the common tenant. Associate the external network instance profile with the OOB contract.


Expert Solution
Questions # 16:

Network engineer configured a Cisco ACI fabric as follows:

• An EPG called EPG-A is created and associated with a VMM domain called North. •The EPG-A is associated with BD-A and is in an application profile called Apps-A.

• The BD-A is associated with VRF-1 in the Prod tenant.

Which port group must be selected to place VMs in EPG-A?

Options:

A.

Prod|VRF-1 |Apps-A|EPG-A


B.

Prod|Business_Apps|BD-A|EPG-A


C.

Prod|Apps-A|North|EPG-A


D.

Prod|Apps-A|EPG-A


Expert Solution
Questions # 17:

Refer to the exhibit.

Question # 17

Which two components should be configured as route reflectors in the ACI fabric? (Choose two.)

Options:

A.

Spine1


B.

apic1


C.

Spine2


D.

Leaf1


E.

Leaf2


F.

apic2


Expert Solution
Questions # 18:

Which endpoint learning operation is completed on the ingress leaf switch when traffic is received from a Layer 3 Out?

Options:

A.

The source MAC address of the traffic is learned as a local endpoint.


B.

The source MAC address of the traffic is learned as a remote endpoint.


C.

The source IP address of the traffic is learned as a remote endpoint.


D.

The source IP address of the traffic is learned as a local endpoint.


Expert Solution
Questions # 19:

Question # 19

Refer to the exhibit. An engineer is migrating legacy servers into the Cisco ACI environment. The requirement is to ensure that all endpoints and MAC addresses are learned properly in legacy and Cisco ACI switches. Which configuration set must be configured under the bridge domain called bd__360 to accomplish this goal?

Options:

A.

L2 Unknown Unicast: Hardware Proxy ARP Flooding: Disabled


B.

L2 Unknown Unicast: Hardware Proxy ARP Flooding: Enabled


C.

L2 Unknown Unicast: Flood ARP Flooding: Disabled


D.

L2 Unknown Unicast: Flood

ARP Flooding: Enabled


Expert Solution
Questions # 20:

Question # 20

When the subnet is configured on a bridge domain, on which physical devices is the gateway IP address configured?

Options:

A.

all leaf switches and all spine nodes


B.

only spine switches where the bridge domain of the tenant is present


C.

only leaf switches where the bridge domain of the tenant is present


D.

all border leaf nodes where the bridge domain of the tenant is present


Expert Solution
Viewing page 2 out of 8 pages
Viewing questions 11-20 out of questions