Cisco 300-415 Practice Test - Questions Answers
List of questions
Related questions
Question 1
What are the two advantages of deploying cloud-based Cisco SD-WAN controllers? (Choose two.)
centralized control and data plane
distributed authentication policies
management of SLA
infrastructure as a service
centralized raid storage of data
Question 2
An engineer is troubleshooting a certificate issue on vEdge. Which command is used to verify the validity of the certificates?
show control local-properties
show control summary
show certificate installed
show certificate status
Explanation:
Reference: https://www.cisco.com/c/en/us/td/docs/routers/sdwan/command/sdwan-crbook/operational-cmd.html#wp2835720000
Question 3
What is a benefit of the application-aware firewall?
It blocks traffic by MAC address
It blocks traffic by MTU of the packet.
It blocks traffic by application.
It blocks encrypted traffic
Explanation:
Reference: https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-16-9/sec-data-zbf-xe-16-9-book/sec-data-zbf-xe-16-9-book_chapter_0100100.html
Question 4
When VPNs are grouped to create destination zone in Zone-Based Firewall, how many zones can a single VPN be part of?
two
four
one
three
Explanation:
Reference:
https://sdwandocs.cisco.com/Product_Documentation/Software_Features/Release_18.4/Security/Enterprise_Firewall_with_Application_Awareness
Question 5
Which attributes are configured to uniquely Identify and represent a TLOC route?
system IP address, link color, and encapsulation
firewall, IPS, and application optimization
site ID, tag, and VPN
origin, originator, and preference
Explanation:
https://www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/SDWAN/CVD-SD-WAN-Design-2018OCT.pdf
Question 6
Which device information is requited on PNP/ZTP to support the zero-touch onboarding process?
serial and chassis numbers
interface IP address
public DNS entry
system IP address
Explanation:
https://www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/SDWAN/sd-wan-wan-edgeonboarding-deploy-guide-2020jan.pdf
Question 7
Which configuration step is taken on vManage after WAN Edge list is uploaded?
Send the list to controllers
Enable the ZTP process
Verify the device certificate
Set the device as valid
Explanation:
https://www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/SDWAN/sdwan-wan-edge-onboardingdeploy-guide-2020nov.pdf
Question 8
When software is upgraded on a vManage NMS, which two image-adding options store images in a local vManage software repository? (Choose two.)
To be downloaded over a SMTP connection
To be downloaded over a SNMP connection
To be downloaded over an out-of-band connection
To be downloaded over a control plane connection
To be downloaded over an ICMP connection
Explanation:
Reference: https://sdwandocs.cisco.com/Product_Documentation/vManage_Help/Release_18.2/Maintenance/Software_Repository
Question 9
Which policy configures an application-aware routing policy under Configuration > Policies?
Localized policy
Centralized policy
Data policy
Control policy
Explanation:
Reference: https://www.cisco.com/c/dam/en/us/td/docs/routers/sdwan/configuration/config-18-4.pdf#page=451
Question 10
What is a default protocol for control plane connection?
IPsec
HTTPS
TLS
DTLS
Explanation:
Reference: https://sdwan-docs.cisco.com/Product_Documentation/Software_Features/SDWAN_Release_16.3/05Security/02Configuring_Security_Parameters
Question