Pass the Cisco CCNP Data Center 300-620 Questions and answers with CertsForce

Viewing page 5 out of 8 pages
Viewing questions 41-50 out of questions
Questions # 41:

How does Cisco ACI detect the IP address of a silent host that moved from one location to another without notifying a Cisco ACI leaf?

Options:

A.

ARP requests are flooded in the bridge domain.


B.

Bounce entries are installed on the leaf switch.


C.

Endpoint announce messages are sent to COOP.


D.

Silent hosts are detected by the ACI fabric.


Expert Solution
Questions # 42:

Question # 42

Refer to the exhibit. A tenant is configured with a single L30ut and a single-homed link to the core router called Core-1. An engineer must add a second link to the L30ut that connects to Core-2 router. Which action allows the traffic from Core-2 to BL-1002 to have the same connectivity as the traffic from Core-1 to BL-1001?

Options:

A.

Add a second path to the logical interface profile of the existing L30ut


B.

Add a second subnet to the external EPG to the existing L30ut.


C.

Add a second OSPF interface profile to the logical interface profile.


D.

Add a second interface to the external domain to the existing L30ut.


Expert Solution
Questions # 43:

An engineer must connect Cisco ACI fabric using Layer 2 with external third-party switches. The third-party

switches are configured using 802.1s protocol. Which two constructs are required to complete the task?

(Choose two.)

Options:

A.

spanning tree policy for mapping MST Instances to VLANs


B.

MCP policy with PDU per VLAN enabled


C.

MCP instance policy with administrative slate disabled


D.

dedicated EPG for native VLAN


E.

static binding of native VLAN in all existing EPGs


Expert Solution
Questions # 44:

A network engineer configures the Cisco ACI fabric to connect to vCenter with these requirements:

Port groups must be automatically created on the distributed virtual switch.

Port groups must use the VLAN allocation in the range between 20-30.

The deployment must optimize the CAM space on the leaf switches.

Which set of actions meets these criteria?

Options:

A.

Create a dynamic VLAN pool with the VLAN range of 20-30.

Create a VMM domain and associate it with the VLAN pool.

Create the EPG and associate the domain.

Set the deployment immediacy to On Demand.


B.

Create a dynamic VLAN pool with the VLAN range of 20-30.

Create a physical domain and associate it with the VLAN pool.

Create the EPG and associate the domain.

Set the deployment immediacy to On Demand.


C.

Create a static VLAN pool with the VLAN range of 20-30.

Create a physical domain and associate it with the VLAN pool.

Create the EPG and associate the domain.

Set the deployment immediacy to Immediate.


D.

Create a static VLAN pool with the VLAN range of 20-30.

Create a VMM domain and associate it with the VLAN pool.

Create the EPG and associate the domain.

Set the deployment immediacy to Immediate.


Expert Solution
Questions # 45:

Question # 45

Refer to the exhibit. An engineer configured subnets on the external EPG called L3OUT_CORE. The external endpoints in the 10.1.0.0/24 subnet can reach internal endpoints, but the external endpoints in the 172.16.1.0/24 subnet are unreachable. Which set of actions enables the connectivity?

Options:

A.

Delete both external EPG subnets.

Create the 0.0.0.0/1 subnet.


B.

Delete the external EPG subnet 0.0.0.128/1.

Create the 128.0.0.0/1 subnet.


C.

Delete both external EPG subnets.

Create the 0.0.0.0/0 subnet.


D.

Delete the external EPG subnet 0.0.0.0/0.

Create the 0.0.0.0/128 subnet.


Expert Solution
Questions # 46:

A packet is routed between two endpoints on different Cisco ACI leaf switches. Which VXLAN VNID is applied to the packet?

Options:

A.

FD


B.

EPG


C.

VRF


D.

BD


Expert Solution
Questions # 47:

Question # 47

Refer to the exhibit. A network engineer must complete the Cisco ACI implementation based on the logical system design created by the systems architect. Which Cisco ACI object is required where the dotted line indicates to complete the task?

Options:

A.

contract


B.

application profile


C.

context


D.

attachable Access Entity Profile


Expert Solution
Questions # 48:

Cisco ACI fabric contains a tenant called Prod. User_1 must have write access to tenant Prod and full access to the fabric access policy. Which set of actions must be taken to meet these requirements?

Options:

A.

Associate User_1 to the fabric access policy.

Associate the security domain to the fabric access policy.

Create RBAC for the distinguished name of tenant Prod.


B.

Associate User_1 to tenant Prod.

Associate the security domain to the distinguished name of the fabric access policy.

Create RBAC for the distinguished name of security domain.


C.

Associate User_1 to the distinguished name of the fabric access policy.

Associate the security domain to RBAC.

Create RBAC for the distinguished name of User__1.


D.

Associate User_1 to the security domain.

Associate the security domain to tenant Prod.

Create RBAC for the distinguished name of fabric access policy.


Expert Solution
Questions # 49:

Question # 49

Refer to the exhibit. An engineer is configuring a production Multi-Site solution to provide connectivity from EPGs from a specific site to networks reachable through a remote site L3OUT. All required schema and template objects are already defined. Which additional configuration must be implemented in the Multi-Site Orchestrator to support the cross-site connectivity?

Options:

A.

Configure a routable TEP pool for SITE1.


B.

Enable CloudSec for intersite traffic encryption.


C.

Add a new stretched external EPG to the existing L3OUT.


D.

Implement a policy-based redirect using a service graph.


Expert Solution
Questions # 50:

A network engineer must design a method to allow the Cisco ACI to redirect traffic to the firewalls. Only traffic that matches specific L4-L7 policy rules should be redirected. The load must be distributed across multiple firewalls to scale the performance horizontally. Which action must be taken to meet these requirements?

Options:

A.

Configure ACI Service Graph with Unidirectional PBR.


B.

Implement ACI Service Graph with GIPo.


C.

Implement ACI Service Graph Two Nodes with GIPo.


D.

Configure ACI Service Graph with Symmetric PBR.


Expert Solution
Viewing page 5 out of 8 pages
Viewing questions 41-50 out of questions