ExamGecko
Home Home / Cisco / 350-401

Cisco 350-401 Practice Test - Questions Answers, Page 18

Question list
Search
Search

List of questions

Search

Related questions











Refer to the exhibit.

SwitchC connects HR and Sales to the Core switch However, business needs require that no traffic from the Finance VLAN traverse this switch Which command meets this requirement?

A.


A.


Answers
B.


B.


Answers
C.


C.


Answers
D.


D.


Answers
Suggested answer: D

An engineer configures HSRP group 37. The configuration does not modify the default virtual MAC address. Which virtual MAC address does the group use?

A.

C0:00:00:25:00:00

A.

C0:00:00:25:00:00

Answers
B.

00:00:0c:07:ac:37

B.

00:00:0c:07:ac:37

Answers
C.

C0:39:83:25:258:5

C.

C0:39:83:25:258:5

Answers
D.

00:00:0c:07:ac:25

D.

00:00:0c:07:ac:25

Answers
Suggested answer: D

An engineer has deployed a single Cisco 5520 WLC with a management IP address of 172.16.50.5/24.

The engineer must register 50 new Cisco AIR-CAP2802I-E-K9 access points to the WLC using DHCP option 43. The access points are connected to a switch in VLAN 100 that uses the 172.16.100.0/24 subnet. The engineer has configured the DHCP scope on the switch as follows:

The access points are failing to join the wireless LAN controller. Which action resolves the issue?

A.

configure option 43 Hex F104.AC10.3205

A.

configure option 43 Hex F104.AC10.3205

Answers
B.

configure option 43 Hex F104.CA10.3205

B.

configure option 43 Hex F104.CA10.3205

Answers
C.

configure dns-server 172.16.50.5

C.

configure dns-server 172.16.50.5

Answers
D.

configure dns-server 172.16.100.1

D.

configure dns-server 172.16.100.1

Answers
Suggested answer: A

Explanation:

The Option 43 hexadecimal string is assembled as a sequence of the TLV values for the Option 43 suboption: Type + Length + Value. Type is always the suboption code 0xf1. Length is the number of controller management IP addresses times 4 in hex. Value is the IP address of the controller listed sequentially in hex.

On this question, there is 1 controller with management interface IP addresses 172.16.50.5/24. The type is 0xf1. The length is 1 * 4 = 8 = 0x04. The mgmt IP addresses 172.16.50.5 translate to ac.10.32.05 (0xac103205). When the string is assembled, it yields f108c0a80a05c0a80a14. The Cisco IOS command that is added to the DHCP scope is: option 43 hex f104ac103205

Refer to the exhibit.

A network engineer must simplify the IPsec configuration by enabling IPsec over GRE using IPsec profiles. Which two configuration changes accomplish this? (Choose two).

A.

Create an IPsec profile, associate the transform-set ACL, and apply the profile to the tunnel interface.

A.

Create an IPsec profile, associate the transform-set ACL, and apply the profile to the tunnel interface.

Answers
B.

Apply the crypto map to the tunnel interface and change the tunnel mode to tunnel mode ipsec ipv4.

B.

Apply the crypto map to the tunnel interface and change the tunnel mode to tunnel mode ipsec ipv4.

Answers
C.

Remove all configuration related to crypto map from R1 and R2 and eliminate the ACL.

C.

Remove all configuration related to crypto map from R1 and R2 and eliminate the ACL.

Answers
D.

Create an IPsec profile, associate the transform-set, and apply the profile to the tunnel interface.

D.

Create an IPsec profile, associate the transform-set, and apply the profile to the tunnel interface.

Answers
E.

Remove the crypto map and modify the ACL to allow traffic between 10.10.0.0/24 to 10.20.0.0/24.

E.

Remove the crypto map and modify the ACL to allow traffic between 10.10.0.0/24 to 10.20.0.0/24.

Answers
Suggested answer: C, D

Refer to the exhibit.

Which action resolves the EtherChannel issue between SW2 and SW3?

A.

Configure switchport mode trunk on SW2.

A.

Configure switchport mode trunk on SW2.

Answers
B.

Configure switchport nonegotiate on SW3

B.

Configure switchport nonegotiate on SW3

Answers
C.

Configure channel-group 1 mode desirable on both interfaces.

C.

Configure channel-group 1 mode desirable on both interfaces.

Answers
D.

Configure channel-group 1 mode active on both interfaces.

D.

Configure channel-group 1 mode active on both interfaces.

Answers
Suggested answer: D

Refer to the exhibit.

Router 1 is currently operating as the HSRP primary with a priority of 110 router1 fails and router2 take over the forwarding role. Which command on router1 causes it to take over the forwarding role when it return to service?

A.

standby 2 priority

A.

standby 2 priority

Answers
B.

standby 2 preempt

B.

standby 2 preempt

Answers
C.

standby 2 track

C.

standby 2 track

Answers
D.

standby 2 timers

D.

standby 2 timers

Answers
Suggested answer: B

Which component of the Cisco Cyber Threat Defense solution provides user and flow context analysis?

A.

Cisco Firepower and FireSIGHT

A.

Cisco Firepower and FireSIGHT

Answers
B.

Cisco Stealth watch system

B.

Cisco Stealth watch system

Answers
C.

Advanced Malware Protection

C.

Advanced Malware Protection

Answers
D.

Cisco Web Security Appliance

D.

Cisco Web Security Appliance

Answers
Suggested answer: B


Refer to the exhibit. An engineer configures CoPP and enters the show command to verify the implementation. What is the result of the configuration?

A.

All traffic will be policed based on access-list 120.

A.

All traffic will be policed based on access-list 120.

Answers
B.

If traffic exceeds the specified rate, it will be transmitted and remarked.

B.

If traffic exceeds the specified rate, it will be transmitted and remarked.

Answers
C.

Class-default traffic will be dropped.

C.

Class-default traffic will be dropped.

Answers
D.

ICMP will be denied based on this configuration.

D.

ICMP will be denied based on this configuration.

Answers
Suggested answer: A

Refer to the exhibit.

What is the result when a switch that is running PVST+ is added to this network?

A.

DSW2 operates in Rapid PVST+ and the new switch operates in PVST+

A.

DSW2 operates in Rapid PVST+ and the new switch operates in PVST+

Answers
B.

Both switches operate in the PVST+ mode

B.

Both switches operate in the PVST+ mode

Answers
C.

Spanning tree is disabled automatically on the network

C.

Spanning tree is disabled automatically on the network

Answers
D.

Both switches operate in the Rapid PVST+ mode.

D.

Both switches operate in the Rapid PVST+ mode.

Answers
Suggested answer: A

Explanation:

From the output we see DSW2 is running in RSTP mode (in fact Rapid PVST+ mode as Cisco does not support RSTP alone). When a new switch running PVST+ mode is added to the topology, they keep running the old STP instances as

RSTP (in fact Rapid PVST+) is compatible with PVST+.

Refer to the exhibit. PC-1 must access the web server on port 8080. To allow this traffic, which statement must be added to an access control list that is applied on SW2 port G0/0 in the inbound direction?

A.

permit host 172.16.0.2 host 192.168.0.5 eq 8080

A.

permit host 172.16.0.2 host 192.168.0.5 eq 8080

Answers
B.

permit host 192.168.0.5 host 172.16.0.2 eq 8080

B.

permit host 192.168.0.5 host 172.16.0.2 eq 8080

Answers
C.

permit host 192.168.0.5 eq 8080 host 172.16.0.2

C.

permit host 192.168.0.5 eq 8080 host 172.16.0.2

Answers
D.

permit host 192.168.0.5 it 8080 host 172.16.0.2

D.

permit host 192.168.0.5 it 8080 host 172.16.0.2

Answers
Suggested answer: C

Explanation:

The inbound direction of G0/0 of SW2 only filter traffic from Web Server to PC-1 so the source IP address and port is of the Web Server.

Total 983 questions
Go to page: of 99