Cisco 300-620 Practice Test - Questions Answers, Page 9
List of questions
Related questions
A network engineer must design a method to allow the Cisco ACI to redirect traffic to the firewalls.
Only traffic that matches specific L4-L7 policy rules should be redirected. The load must be distributed across multiple firewalls to scale the performance horizontally. Which action must be taken to meet these requirements?
Configure ACI Service Graph with Unidirectional PBR.
Implement ACI Service Graph with GIPo.
Implement ACI Service Graph Two Nodes with GIPo.
Configure ACI Service Graph with Symmetric PBR.
An engineer created two interface protocol policies called Pol_CDP40275332 and Pol_LLDP46783451. The policies must be used together in a single policy. Which ACI object must be used?
interface policy group
switch policy group
switch profile
interface profile
What is the minimum number of APICs does Cisco recommend to deploy in a production cluster?
1
3
4
5
Refer to the exhibit.
An engineer must implement the inter-tenant service graph. Which set of actions must be taken to accomplish this goal?
• Define the contract in the provider tenant and export it to the consumer tenant.
• Define the L4-L7 device, service graph template, and ASA bridge domains in the provider tenant.
• Define the contract in the provider tenant and export it to the consumer tenant.
• Define the L4-L7 device and service graph template in the provider tenant and the ASA bridge domains in the consumer tenant
• Define the contract in the provider tenant and export it to the provider tenant.
• Define the L4-L7 device and service graph template in the provider tenant and the ASA bridge domains in the consumer tenant.
• Define the contract in the provider tenant and export it to the provider tenant.
• Define the L4-L7 device, service graph template, and ASA bridge domains in the consumer tenant.
When the subnet is configured on a bridge domain, on which physical devices is the gateway IP address configured?
all leaf switches and all spine nodes
only spine switches where the bridge domain of the tenant is present
only leaf switches where the bridge domain of the tenant is present
all border leaf nodes where the bridge domain of the tenant is present
Refer to the exhibit.
A systems engineer is implementing the Cisco ACI fabric. However, the Server2 information is missing from the Leaf 101 endpoint table and the COOP database of the spine. The requirement is for the bridge domain configuration to enforce the ACI fabric to forward the unicast packets generated by Server1 destined to Server2. Which action must be taken to meet these requirements?
Enable ARP Flooding
Set L2 Unknown Unicast to Flood
Set IP Data-Plane Learning to No
Enable Unicast Routing
An engineer must allow multiple external networks to communicate with internal ACI subnets.
Which action should the engineer take to assign the prefix to the class ID of the external Endpoint Group?
Enable the Export Route Control Subnet for the External Endpoint Group flag.
Enable an L30ut with Shared Route Control Subnet.
Configure subnets with the External Subnets for External EPG flag enabled.
Configure subnets with the Import Route Control Subnet flag enabled.
An engineer must ensure that Cisco ACI flushes the appropriate endpoints when a topology change notification message is received in an MST domain. Which three steps are required to accomplish this goal? (Choose three.)
Enable the BPDU interface controls under the spanning tree interface policy.
Configure a new STP interface policy.
Bind the spanning tree policy to the switch policy group.
Associate the STP interface policy to the appropriate interface policy group.
Create a new region policy under the spanning tree policy.
Map VLAN range to MAT instance number.
A Cisco ACI bridge domain and VRF are configured with a default data-plane learning configuration.
Which two endpoint attributes are programmed in the leaf switch when receiving traffic? (Choose two.)
Remote MAC. IP
Remote Subnet
Local IP, not MAC
Local MAC, IP
Local Subnet
Remote IP
Refer to the exhibit.
An engineer wants to initiate an ICMP ping from Server1 to Server2. The requirement is for the BD1 to enforce ICMP replies that follow the expected path. The packets must be prevented from taking the direct path from Leaf1 to Server1.
Which action must be taken on BD1 to meet these requirements?
Set L2 Unknown Unicast to Flood.
Set L2 Unknown Unicast to Hardware Proxy.
Disable Unicast Routing.
Enable ARP Flooding.
Question