Cisco 400-007 Practice Test - Questions Answers, Page 18
List of questions
Related questions
Which parameter is the most important factor to consider when deciding service placement in a cloud solution?
data replication cost
application structure
security framework Implementation time
data confidentiality rules
An external edge router provides connectivity from a service provider to an enterprise Which two Internet edge best practices meet compliance regulations'? (Choose two )
Implement filtenng to control traffic that is sourced from the infrastructure IP space.
Enable and use only secure protocols.
Send logs to a centralized logging collection server.
Implement EBGP to advertise all owned IP blocks.
Use login banners and interface access lists to restrict administrative access to the system
What are two top cloud-native security challenges faced by today's cloud-oriented organizations?
(Choose two )
establishing user roles
polymorphism
lack of visibility and tracking
increased attack surface
user credential validation
As a network designer you need to support an enterprise with hundreds of remote sites connected over a single WAN network that carries different types of traffic, including VoIP, video, and data applications which of following design considerations will not impact design decision?
Focus on the solution instead of the problem, which helps to reduce downtime duration
The location of the data collection
What direction the data or flows should be metered
Identify traffic types and top talkers over this link
A customer migrates from a traditional Layer 2 data center network into a new SDN-based. spineand- leaf VXLAN EVPN data center within the same location. The networks are joined to enable host migration at Layer 2 Which activity should be completed each time a legacy network is migrated?
The migrated VLAN should be pruned from the Layer 2 interconnects.
The migrated network should have a VXLAN VNID configured within the new network.
The migrated network should be advertised to the EVPN network as a Type 2 network.
The migrated network should be added to the EVPN BGP routing.
The administrator of a small branch office wants to implement the Layer 2 network without running STP The office has some redundant paths Which mechanism can the administrator use to allow redundancy without creating Layer 2 loops?
Use double-sided VPC on both switches
Use two port channels as Flex links
Use fabric path with ECMP
Use 802.3ad link bundling.
An engineer is designing the QoS strategy for Company XYZ. Based on initial analysis, a lot of scavenger type of traffic is traversing the network's 20Mb Internet link toward the service provider.
The new design must use a QoS technique that limits scavenger traffic to 2 Mbps, which helps avoid oversubscription of the link during times of congestion. Which QoS technique can be used to facilitate this requirement?
class-based traffic policing
LLQ
CBWFQ
class-based traffic shaping
Company XYZ has designed their network to run GRE over IPsec on their Internet-based VPN to connect two sites. Which IPsec tunneling feature can they enable to optimize the data flow while ensuring that the headers contain no duplicate IP addresses?
Transport Mode in IPsec Phase I
Transport Mode in IPsec Phase II
Tunnel Mode in IPsec Phase II
Tunnel Mode in IPsec Phase I
Which development model is closely associated with traditional project management?
static model
Agile model
evolutionary delivery model
lifecycle model
The controller has a global view of the network, and it can easily ensure that the network is in a consistent and optimal configuration. Which two statements describe a centralized SDN control path? (Choose two.)
Scaling of the centralized controller cluster is challenging for services like DHCP and loadbalancing.
It is highly-available by design with no single-point-of-failure risks present.
Integrating smart NIC capabilities on the local host level is made easier through rest APIs.
It significantly improves the latency when performing reactive handling of PACKET_IN events.
It centralized controller can support all southbound APIs, which allows for easy integration with legacy equipment.
Question