Cisco 500-220 Practice Test - Questions Answers, Page 4

List of questions
Question 31

Refer to the exhibit.
Which IDS/IPS mode is the MX Security Appliance configured for?
quarantine
prevention
detection
blocking
You can enable intrusion prevention by setting the Mode drop-down to Prevention under Security & SD-WAN > Configure > Threat protection > Intrusion detection and prevention. Traffic will be automatically blocked by best effort if it is detected as malicious based on the detection ruleset specified above. https://documentation.meraki.com/MX/Content_Filtering_and_Threat_Protection/Threat_Protection
Question 32

Which two primary metrics does Meraki Insight use to calculate the Application Performance Score? (Choose two.)
Maximum Jitter
Total Bandwidth Usage
Maximum Latency
Per-flow Goodput
Application Response Time
Question 33

DRAG DROP
Drag and drop the steps from the left into the sequence on the right to manage device control, according to Cisco Meraki best practice.
Question 34

What is a feature of distributed Layer 3 roaming?
An MX Security Appliance is not required as a concentrator.
An MX Security Appliance is required as a concentrator.
All wireless client traffic can be split-tunneled.
All wireless client traffic is tunneled.
https://documentation.meraki.com/Architectures_and_Best_Practices/Cisco_Meraki_Best_Practice_Design/Best_Practice_Design_-_MR_Wireless/Wireless_Layer_3_Roaming_Best_Practices
This is a feature of distributed Layer 3 roaming, which maintains layer 3 connections for end devices as they roam across layer 3 boundaries without a concentrator1.The first access point that a device connects to will become the anchor access point1.
Question 35

Refer to the exhibit.
What are two outcomes reflected in the Web App Health application? (Choose two.)
Users on both networks may be experiencing issues when attempting to reach Google.
Network #1 could not load Google because of a remote server issue.
Network #2 had better application performance than Network #1.
Network #2 could not load Google because of a local client misconfiguration.
Neither network recorded any server-side performance issues.
Question 36

What are two organization permission types? (Choose two.)
Full
Read-only
Monitor-only
Write
Write-only
Managing_Dashboard_Administrators_and_Permissions
Question 37

Refer to the exhibit.
Which design recommendation should be considered?
A 25-percent throughput loss occurs for every hop. Cisco Meraki best practice recommends a 1-hop maximum.
A 25-percent throughput loss occurs for every hop. Cisco Meraki best practice recommends a 2-hop maximum.
A 50-percent throughput loss occurs for every hop. Cisco Meraki best practice recommends a 1-hop maximum.
A 50-percent throughput loss occurs for every hop. Cisco Meraki best practice recommends a 2-hop maximum.
https://documentation.meraki.com/MR/Deployment_Guides/Mesh_Deployment_Guide
There will be a throughput reduction (~50% reduction) with each ''hop'' in a mesh. It is recommended that a mesh network be designed for no more than one mesh hop from the gateway to client device.
Question 38

What are two roles of the network and device tags in a Dashboard? (Choose two.)
Tags enable administrators to configure a combination of network and device specific tags to create summary reports filtered for specific devices across multiple networks.
Network tags can be used to assign networks to separate Auto VPN domains in an Organization with many networks.
Network tags can be used to simplify the assignment of network-level permissions in an Organization with many networks.
Device tags can be used to simplify the assignment of device-level permissions in an Organization with many administrators.
Device tags can be assigned to MR APs to influence the gateway selection for repeaters in a mesh wireless network.
See Permissions by Network Tag section To simplify the assignment of network-level permissions in an organization with many networks, permissions can be granted to users for a given network tag. https://documentation.meraki.com/General_Administration/Managing_Dashboard_Access/Managing_Dashboard_Administrators_and_Permissions
The Organization > Configure > Manage Tags page allows Administrators to configure a combination of Network and Device specific tags to create Summary Reports filtered for specific devices across multiple networks. https://documentation.meraki.com/General_Administration/Organizations_and_Networks/Organization_Menu/Manage_Tags
Question 39

Refer to the exhibit.
Which outcome occurs when logging is set to Enabled?
Outbound flows are sent to a configured syslog server if a syslog sender is configured for flows.
The hits counter within this section is now enabled.
This firewall rule is now enabled.
Inbound flows are sent to a configured syslog server if a syslog server configured for flows.
'Inbound and outbound flows will generate a syslog message showing the source and destination along with port numbers and the firewall rule that they matched. For inbound rules, 1=deny and 0=allow.' https://documentation.meraki.com/General_Administration/Monitoring_and_Reporting/Syslog_Server_Overview_and_Configuration
Question 40

Refer to the exhibit.
What is the minimal Cisco Meraki Insight licensing requirement?
A single Meraki Insight license must be configured on network A to gain Web App Health visibility on network B.
A single Meraki Insight license must be configured on network B to gain Web App Health visibility on network B.
A single Meraki Insight license must be configured on network A, and a single license must be configured on network B, to gain Web App Health visibility on network B.
Two Meraki Insight licenses must be configured on network A to gain Web App Health visibility on network B.
Two Meraki Insight licenses must be configured on network A and a single license must be configured on network B, to gain Web App Health visibility on network B.
If you only need traffic statistics from your spoke site clients then you only need to enable insight on the spoke network as the hub site will not gather data for remote sites. https://community.meraki.com/t5/Wireless-LAN/Meraki-Insight-Licensing/m-p/152684
A license is only required for those networks where Meraki Insight functionality is desired. One license is required per network, regardless of whether that network has a single MX or HA pair. Licenses can be moved between networks, but historical data for the old network will be lost. https://meraki.cisco.com/lib/pdf/meraki_datasheet_mi.pdf
Question