ExamGecko
Home Home / Cisco / 350-401

Cisco 350-401 Practice Test - Questions Answers, Page 20

Question list
Search
Search

Related questions











Refer the exhibit.

Which router is the designated router on the segment 192.168.0.0/24?

A.

This segment has no designated router because it is a nonbroadcast network type.

A.

This segment has no designated router because it is a nonbroadcast network type.

Answers
B.

This segment has no designated router because it is a p2p network type.

B.

This segment has no designated router because it is a p2p network type.

Answers
C.

Router Chicago because it has a lower router ID

C.

Router Chicago because it has a lower router ID

Answers
D.

Router NewYork because it has a higher router ID

D.

Router NewYork because it has a higher router ID

Answers
Suggested answer: B

The login method is configured on the VTY lines of a router with these parameters.

The first method for authentication is TACACS

If TACACS is unavailable, login is allowed without any provided credentials Which configuration accomplishes this task?

A.

R1#sh run | include aaa

aaa new-model

aaa authentication login VTY group tacacs+ none

aaa session-id common

R1#sh run | section vty

line vty 0 4

password 7 0202039485748

R1#sh run | include username

R1#

A.

R1#sh run | include aaa

aaa new-model

aaa authentication login VTY group tacacs+ none

aaa session-id common

R1#sh run | section vty

line vty 0 4

password 7 0202039485748

R1#sh run | include username

R1#

Answers
B.

R1#sh run | include aaa

aaa new-model

aaa authentication login telnet group tacacs+ none

aaa session-id common

R1#sh run | section vty

line vty 0 4

R1#sh run | include username

R1#

B.

R1#sh run | include aaa

aaa new-model

aaa authentication login telnet group tacacs+ none

aaa session-id common

R1#sh run | section vty

line vty 0 4

R1#sh run | include username

R1#

Answers
C.

R1#sh run | include aaa

aaa new-model

aaa authentication login default group tacacs+ none

aaa session-id common

R1#sh run | section vty

line vty 0 4

password 7 0202039485748

C.

R1#sh run | include aaa

aaa new-model

aaa authentication login default group tacacs+ none

aaa session-id common

R1#sh run | section vty

line vty 0 4

password 7 0202039485748

Answers
D.

R1#sh run | include aaa

aaa new-model

aaa authentication login default group tacacs+

aaa session-id common

R1#sh run | section vty

line vty 0 4

transport input none

R1#

D.

R1#sh run | include aaa

aaa new-model

aaa authentication login default group tacacs+

aaa session-id common

R1#sh run | section vty

line vty 0 4

transport input none

R1#

Answers
Suggested answer: C

Explanation:

According to the requirements (first use TACACS+, then allow login with no authentication), we have to use "aaa authentication login … group tacacs+ none" for AAA command.

The next thing to check is the if the "aaa authentication login default" or "aaa authentication login list-name" is used. The 'default' keyword means we want to apply for all login connections (such as tty, vty, console and aux). If we use this keyword, we don't need to configure anything else under tty, vty and aux lines. If we don't use this keyword then we have to specify which line(s) we want to apply the authentication feature.

From above information, we can find out answer 'R1#sh run | include aaa aaa new-model aaa authentication login default group tacacs+ none aaa session-id common R1#sh run | section vty line vty 0 4 password 7 0202039485748 If you want to learn more about AAA configuration, please read our AAA TACACS+ and RADIUS Tutorial – Part 2.

For your information, answer 'R1#sh run | include aaa aaa new-model aaa authentication login telnet group tacacs+ none aaa session-id common R1#sh run | section vty line vty 0 4 R1#sh run | include username R1#' would be correct if we add the following command under vty line ("line vty 0 4"): "login authentication telnet" ("telnet" is the name of the AAA list above)

Which technology is used as the basis for the cisco sd-access data plane?

A.

IPsec

A.

IPsec

Answers
B.

LISP

B.

LISP

Answers
C.

VXLAN

C.

VXLAN

Answers
D.

802.1Q

D.

802.1Q

Answers
Suggested answer: C

Explanation:

A virtual network identifier (VNI) is a value that identifies a specific virtual network in the data plane.

What is YANG used for?

A.

scraping data via CLI

A.

scraping data via CLI

Answers
B.

processing SNMP read-only polls

B.

processing SNMP read-only polls

Answers
C.

describing data models

C.

describing data models

Answers
D.

providing a transport for network configuration data between client and server

D.

providing a transport for network configuration data between client and server

Answers
Suggested answer: C

Which method does Cisco DNA Center use to allow management of non-Cisco devices through southbound protocols?

A.

It creates device packs through the use of an SDK

A.

It creates device packs through the use of an SDK

Answers
B.

It uses an API call to interrogate the devices and register the returned data.

B.

It uses an API call to interrogate the devices and register the returned data.

Answers
C.

It obtains MIBs from each vendor that details the APIs available.

C.

It obtains MIBs from each vendor that details the APIs available.

Answers
D.

It imports available APIs for the non-Cisco device in a CSV format.

D.

It imports available APIs for the non-Cisco device in a CSV format.

Answers
Suggested answer: A

Explanation:

Cisco DNA Center allows customers to manage their non-Cisco devices through the use of a Software Development Kit (SDK) that can be used to create Device Packages for third-party devices.

Reference: https://developer.cisco.com/docs/dna-center/#!cisco-dna-center-platformoverview/multivendor-support-southbound

A network is being migrated from IPV4 to IPV6 using a dual-stack approach. Network management is already 100% IPV6 enabled. In a dual-stack network with two dual-stack NetFlow collections, how many flow exporters are needed per network device in the flexible NetFlow configuration?

A.

1

A.

1

Answers
B.

2

B.

2

Answers
C.

4

C.

4

Answers
D.

8

D.

8

Answers
Suggested answer: B

What are two considerations when using SSO as a network redundancy feature? (Choose two)

A.

both supervisors must be configured separately

A.

both supervisors must be configured separately

Answers
B.

the multicast state is preserved during switchover

B.

the multicast state is preserved during switchover

Answers
C.

must be combined with NSF to support uninterrupted Layer 2 operations

C.

must be combined with NSF to support uninterrupted Layer 2 operations

Answers
D.

must be combined with NSF to support uninterrupted Layer 3 operations

D.

must be combined with NSF to support uninterrupted Layer 3 operations

Answers
E.

requires synchronization between supervisors in order to guarantee continuous connectivity

E.

requires synchronization between supervisors in order to guarantee continuous connectivity

Answers
Suggested answer: D, E

Explanation:

Cisco IOS Nonstop Forwarding(NSF) always runs with stateful switchover (SSO) and provides redundancy for Layer 3 traffic.

Reference:

https://www.cisco.com/en/US/docs/switches/lan/catalyst3850/software/release/3se/consolidated_guide/b_consolidated_3850_3se_cg_chapter_01101110.pdf

Refer to the exhibit. Which command is required to verify NETCONF capability reply messages?

A.

show netconf | section rpc-reply

A.

show netconf | section rpc-reply

Answers
B.

show netconf rpc-reply

B.

show netconf rpc-reply

Answers
C.

show netconf xml rpc-reply

C.

show netconf xml rpc-reply

Answers
D.

show netconf schema | section rpc-reply

D.

show netconf schema | section rpc-reply

Answers
Suggested answer: D

A network engineer must configure a router to send logging messages to a syslog server based on these requirements: uses syslog IP address: 10.10.10.1 uses a reliable protocol must not use any well-known TCP/UDP ports Which configuration must be used?

A.

logging host 10.10.10.1 transport tcp port 1024

A.

logging host 10.10.10.1 transport tcp port 1024

Answers
B.

logging origin-id 10.10.10.1

B.

logging origin-id 10.10.10.1

Answers
C.

logging host 10.10.10.1 transport udp port 1023

C.

logging host 10.10.10.1 transport udp port 1023

Answers
D.

logging host 10.10.10.1 transport udp port 1024

D.

logging host 10.10.10.1 transport udp port 1024

Answers
Suggested answer: A

Refer to the exhibit. A network engineer must configure NETCONF. After creating the configuration, the engineer gets output from the command show line, but not from show running-config. Which command completes the configuration?

A.

Option A

A.

Option A

Answers
B.

Option B

B.

Option B

Answers
C.

Option C

C.

Option C

Answers
D.

Option D

D.

Option D

Answers
Suggested answer: C
Total 983 questions
Go to page: of 99