Pass the Cisco CCNP Data Center 300-620 Questions and answers with CertsForce

Viewing page 7 out of 8 pages
Viewing questions 61-70 out of questions
Questions # 61:

A bridge domain for an EPC called “Web Servers” must be created in the Cisco APIC. The configuration must meet these requirements:

    Only traffic to known Mac addresses must be allowed to reduce noice.

    The multicast traffic must be limited to the ports that are participating in multicast routing.

    The endpoints within the bridge domain must be kept in the endpoint table for 20 minultes without any updates.

Which set of steps configures the bridge domain that satisfies the requirements?

Options:

A.

Select the ARP Flooding checkbox.

Create an Endpoint Retention Policy with a Remote Endpoint Aging Interval of 20 minutes.

Set L3 Unknown Multicast Flooding to Optimized Flooding


B.

Set L2 Unknown Unicast to Hardware Proxy.

Configure L3 Unknown Multicast Flooding to Optimized Flood.

Create an Endpoint Retention Policy with a Local Endpoint Aging interval of 1200 seconds.


C.

Switch L2 Unknown Unicast to Flood.

Select the default Endpoint Retention Policy and set the Local Endpoint Aging to 20 minutes.

Set Multicast Destination Flooding to Flood in Encapsulation.


D.

Multicast Destination Flooding should be set to Flood in BD.

Set L3 Unknown Multicast Flooding to Flood.

Select the default Endpoint Retention Policy with a Local Endpoint Aging Interval of 1200 seconds.


Expert Solution
Questions # 62:

Which feature is used to program policy CAM on a leaf switch without sending traffic from VM to the leaf?

Options:

A.

immediate resolution immediacy


B.

immediate deployment immediacy


C.

on-demand deployment immediacy


D.

on-demand resolution immediacy


Expert Solution
Questions # 63:

A RADIUS user resolves its role via the Cisco AV Pair. What object does the Cisco AV Pair resolve to?

Options:

A.

tenant


B.

security domain


C.

primary Cisco APIC


D.

managed object class


Expert Solution
Questions # 64:

Which two dynamic routing protocols are supported when using Cisco ACI to connect to an external Layer 3 network? (Choose two.)

Options:

A.

iBGP


B.

VXLAN


C.

IS-IS


D.

RIPv2


E.

eBGP


Expert Solution
Questions # 65:

An engineer is implementing a Cisco ACI environment that consists of more than 20 servers. Two of the servers support only Cisco Discovery Protocol with no order link discovery protocol. The engineer wants the servers to be discovered automatically by the Cisco ACI fabric when connected. Which action must be taken to meet this requirement?

Options:

A.

Create an override policy that enables Cisco Discovery Protocol after LLDP is enabled in the default policy group.


B.

Configure a higher order interface policy that enables Cisco Discovery Protocol for the interface on the desired leaf switch.


C.

Configure a lower order policy group that enables Cisco Discovery Protocol for the interface on the desired leaf switch.


D.

Create an interface profile for the interface that disables LLDP on the desired switch that is referenced by the interface policy group.


Expert Solution
Questions # 66:

Which type of port is used for in-band management within ACI fabric?

Options:

A.

spine switch port


B.

APIC console port


C.

leaf access port


D.

management port


Expert Solution
Questions # 67:

An engineer configures a one-armed policy-based redirect service Insertion for an unmanaged firewall. The engineer configures these Cisco ACI objects:

a contract named All_Traffic_Allowed

a Layer 4 to Layer 7 device named FW-Device

a policy-based redirect policy named FW-1Arm-Policy-Based RedirectPolicy

Which configuration set redirects the traffic to the firewall?

Options:

A.

Configure a policy-based redirect subject.

Associate the policy-based redirect subject with All_Traffic_Allowed.


B.

Configure a firewall bridge domain.

Associate the bridge domain with FW-Device.


C.

Configure a device interface policy.

Associate the device interface policy with FW-Device.


D.

Configure a service graph.

Associate the service graph with All_Traffic_Allowed.


Expert Solution
Questions # 68:

A network engineer must backup the PRODUCTION tenant. The configuration backup should be stored on the APIC using a markup language and contain all secure information. Which export policy must be used to meet these requirement?

A)

Question # 68

B)

Question # 68

C)

Question # 68

D)

Question # 68

Options:

A.

Option A


B.

Option B


C.

Option D


D.

Option D


Expert Solution
Questions # 69:

A Cisco ACI endpoint group must have its gateway address migrated out of the ACI fabric. An engineer configures EPG-TEST with a static port binding and configures the encap VLAN with the required VLAN. Which configuration set must be used on the bridge domain to meet these requirements?

Options:

A.

L2 Unknown Unicast: Hardware Proxy

Unicast Routing: Disabled

ARP Flooding: Enabled


B.

L2 Unknown Unicast: Hardware Proxy

Unicast Routing: Disabled

ARP Flooding: Disabled


C.

L2 Unknown Unicast: Flood

Unicast Routing: Disabled

ARP Flooding: Enabled


D.

L2 Unknown Unicast: Flood

Unicast Routing: Enabled

ARP Flooding: Enabled


Expert Solution
Questions # 70:

An engineer must configure RADIUS authentication with Cisco ACI for remote authentication with out-of-band management access. Drag and drop the RADIUS configuration steps from the left into the required implementation order on the right. Not all steps are used.

Question # 70


Expert Solution
Viewing page 7 out of 8 pages
Viewing questions 61-70 out of questions