Cisco 400-007 Practice Test - Questions Answers, Page 13
List of questions
Related questions
Your network operations team is deploying Access Control Lists (ACLs) across your Internet gateways They wish to place an ACL inbound on the Internet gateway interface facing the core network (the "trusted" interface). Which IP address would the ACL need for traffic sourced from the inside interface, to match the source address of the traffic?
inside global
outside global
inside local
outside local
You are designing a network for a branch office. In order to improve convergence time, you are required to use the BFD feature Which four routing protocols can you use to facilitate this? (Choose four.)
IS-IS
static
RIP
EIGRP
BGP
A senior network designer suggests that you should improve network convergence times by reducing BGP timers between your CE router and the PE router of the service provider. Which two factors should you consider to adjust the timer values? (Choose two.)
service provider agreement to support tuned timers
manual updates to the peer groups
service provider scheduling of changes to the PE
number of routes on the CE router
number of VRFs on the PE router
You were tasked to enhance the security of a network with these characteristics:
• A pool of servers is accessed by numerous data centers and remote sites
• The servers are accessed via a cluster of firewalls
• The firewalls are configured properly and are not dropping traffic
• The firewalls occasionally cause asymmetric routing of traffic within the server data center.
Which technology should you recommend to enhance security by limiting traffic that could originate from a hacker compromising a workstation and redirecting flows at the servers?
Poison certain subnets by adding static routes to Null0 on the core switches connected to the pool of servers.
Deploy uRPF strict mode.
Limit sources of traffic that exit the server-facing interface of the firewall cluster with ACLs.
Deploy uRPF loose mode
A network architect must redesign a service provider edge, where multiservice and multitenant PEs are currently present. Which design feature should be minimized in the new design to achieve reliability?
bridging
fate sharing
redundancy
unicast overlay routing
DRAG DROP
Drag and drop the design characteristics from the left onto the correct network filter techniques on the right. Not all options are used.
DRAG DROP
Drag and drop the multicast protocols from the left onto the current design situation on the right.
DRAG DROP
Drag and drop the end-to-end network virtualization elements from the left onto the correct network areas on the right.
DRAG DROP
Drag and drop the design use cases from the left onto the correct uRPF techniques used to prevent spoofing attacks Not all options are used.
DRAG DROP
Drag and drop the FCAPS network management reference models from the left onto the correct definitions on the right.
Question