ExamGecko
Home Home / Cisco / 500-220

Cisco 500-220 Practice Test - Questions Answers, Page 5

Question list
Search
Search

Air Marshal has contained a malicious SSID.

What are two effects on connectivity? (Choose two.)

A.

Currently associated clients stay connected.

A.

Currently associated clients stay connected.

Answers
B.

New clients can connect.

B.

New clients can connect.

Answers
C.

Currently associated clients are affected by restrictive traffic shaping rules.

C.

Currently associated clients are affected by restrictive traffic shaping rules.

Answers
D.

New clients cannot connect.

D.

New clients cannot connect.

Answers
E.

Currently associated clients are disconnected.

E.

Currently associated clients are disconnected.

Answers
Suggested answer: D, E

Explanation:

When a rogue access point is contained, clients will be unable to connect to the rogue AP. Additionally, any currently associated clients will lose their connection to the rogue AP. https://documentation.meraki.com/MR/Monitoring_and_Reporting/Air_Marshal

What is the best practice Systems Manager enrollment method when deploying corporate-owned iOS devices?

A.

manual

A.

manual

Answers
B.

Apple Configurator

B.

Apple Configurator

Answers
C.

Sentry enrollment

C.

Sentry enrollment

Answers
D.

DEP

D.

DEP

Answers
Suggested answer: D

Explanation:

iOS devices that are using Apple's Device Enrollment Program (DEP) can be supervised and enrolled over-the-air anytime they are factory reset. DEP is the best way to permanently force your devices to be owned and managed by your organization, and it is important to assign your DEP settings properly before deployment. https://documentation.meraki.com/SM/Device_Enrollment/Enrolling_and_Supervising_iOS_Devices_using_Apple_Configurator_2.5_or_Later#:~:text=DEP%20is%20the%20best%20way,DEP%20settings%20properly%20before%20deployment.

A customer requires a hub-and-spoke Auto VPN deployment with two NAT-mode hubs with dual uplink connections and 50 remote sites with a single uplink connection.

How many tunnels does each hub need to support?

A.

52

A.

52

Answers
B.

54

B.

54

Answers
C.

100

C.

100

Answers
D.

104

D.

104

Answers
Suggested answer: D

Explanation:

https://documentation.meraki.com/Architectures_and_Best_Practices/Auto_VPN_Hub_Deployment_Recommendations

This is the number of tunnels that each hub needs to support in a hub-and-spoke Auto VPN deployment with two NAT-mode hubs with dual uplink connections and 50 remote sites with a single uplink connection.This can be calculated by using the formula for the hub tunnel count in a hub-and-spoke topology1:

Hub Tunnel Count = (H x (H - 1) / 2 x L1) + (H x S x L1 x L2)

Where H is the number of hubs, S is the number of spokes, L1 is the number of uplinks for the hubs, and L2 is the number of uplinks for the spokes. In this case, H = 2, S = 50, L1 = 2, and L2 = 1. Therefore,

Hub Tunnel Count = (2 x (2 - 1) / 2 x 2) + (2 x 50 x 2 x 1) Hub Tunnel Count = (2 x 1 / 2 x 2) + (200 x 2) Hub Tunnel Count = (2 / 2 x 2) + (400) Hub Tunnel Count = (1 x 2) + (400) Hub Tunnel Count = 2 + 400 Hub Tunnel Count =402

This question is related to the topic ofAuto VPN Hub Deployment Recommendationsin the Cisco Meraki documentation. You can find more information about this topic in theAuto VPN Hub Deployment Recommendationsarticle or theMeraki Auto VPN General Best Practicespage.

Which order is accurate for a firmware upgrade on MX appliances in a high-availability configuration?

A.

starts on the secondary MX appliance and then occurs on the primary MX appliance

A.

starts on the secondary MX appliance and then occurs on the primary MX appliance

Answers
B.

starts on both MX appliances at the same time and then reboots both appliances after traffic on the primary MX appliance ceases

B.

starts on both MX appliances at the same time and then reboots both appliances after traffic on the primary MX appliance ceases

Answers
C.

starts on both MX appliances at the same time and then immediately reboots both appliances

C.

starts on both MX appliances at the same time and then immediately reboots both appliances

Answers
D.

starts on the primary MX appliance and then occurs on the secondary MX appliance

D.

starts on the primary MX appliance and then occurs on the secondary MX appliance

Answers
Suggested answer: D

How is high-availability supported for Cisco Meraki devices?

A.

Only the MX Security Appliances that use VRRP support high availability.

A.

Only the MX Security Appliances that use VRRP support high availability.

Answers
B.

An active/active high-availability pair is recommended for MX Security Appliances.

B.

An active/active high-availability pair is recommended for MX Security Appliances.

Answers
C.

The MX Security Appliances and MS Series Switches that use VRRP support an active/passive high- availability pair.

C.

The MX Security Appliances and MS Series Switches that use VRRP support an active/passive high- availability pair.

Answers
D.

The MX Security Appliances and MS Series Switches that use HSRP support an active/passive high- availability pair.

D.

The MX Security Appliances and MS Series Switches that use HSRP support an active/passive high- availability pair.

Answers
Suggested answer: C

Explanation:

https://documentation.meraki.com/MS/Layer_3_Switching/MS_Warm_Spare_(VRRP)_Overview

Which three verbs of request are available in the Cisco Meraki API? (Choose three.)

A.

SET

A.

SET

Answers
B.

PUT

B.

PUT

Answers
C.

PATCH

C.

PATCH

Answers
D.

ADD

D.

ADD

Answers
E.

POST

E.

POST

Answers
F.

GET

F.

GET

Answers
Suggested answer: B, E, F

Explanation:

Verbs in the API follow the usual REST conventions:

GET returns the value of a resource or a list of resources, depending on whether an identifier is specified.

POST adds a new resource

PUT updates a resource

DELETE removes a resource

https://documentation.meraki.com/General_Administration/Other_Topics/Cisco_Meraki_Dashboard_API

A customer wants to use Microsoft Azure to host corporate application servers.

Which feature does the customer get by using a vMX appliance rather than connecting directly to Azure by VPN?

A.

malware protection

A.

malware protection

Answers
B.

SD-WAN

B.

SD-WAN

Answers
C.

next-generation firewall

C.

next-generation firewall

Answers
D.

intrusion prevention

D.

intrusion prevention

Answers
Suggested answer: B

Explanation:

https://documentation.meraki.com/MX/MX_Installation_Guides/vMX_Setup_Guide_for_Microsoft_Azure

Refer to the exhibit.

What is an advantage of implementing inter-VLAN routing on an MX Security Appliance rather than performing inter-VLAN routing on an MS Series Switch?

A.

The MX appliance performs IDS/IPS for inter-VLAN traffic.

A.

The MX appliance performs IDS/IPS for inter-VLAN traffic.

Answers
B.

The MX appliance performs AMP for inter-VLAN traffic.

B.

The MX appliance performs AMP for inter-VLAN traffic.

Answers
C.

The MX appliance performs data encryption for inter-VLAN traffic.

C.

The MX appliance performs data encryption for inter-VLAN traffic.

Answers
D.

The MX appliance performs content filtering for inter-VLAN traffic.

D.

The MX appliance performs content filtering for inter-VLAN traffic.

Answers
Suggested answer: C

Which API endpoint clones a new Organization?

A.

POST /organizations/clone/{organizationId}

A.

POST /organizations/clone/{organizationId}

Answers
B.

PUT /organizations/{organizationId}/clone

B.

PUT /organizations/{organizationId}/clone

Answers
C.

POST /organizations/{organizationId}/new

C.

POST /organizations/{organizationId}/new

Answers
D.

POST /organizations/{organizationId}/clone

D.

POST /organizations/{organizationId}/clone

Answers
Suggested answer: D

Explanation:

https://developer.cisco.com/meraki/api-v1/#!clone-organization

Refer to the exhibit.

During a Meraki AP deployment, the default SSID that the exhibit shows is broadcast. What causes this behavior?

A.

An AP does not have a wired connection to the network.

A.

An AP does not have a wired connection to the network.

Answers
B.

An AP cannot connect to the default gateway.

B.

An AP cannot connect to the default gateway.

Answers
C.

An AP has never connected to the Meraki Cloud Controller.

C.

An AP has never connected to the Meraki Cloud Controller.

Answers
D.

An AP has Site Survey mode enabled.

D.

An AP has Site Survey mode enabled.

Answers
Suggested answer: C

Explanation:

If a Meraki Access Point does not have a configuration from the Meraki Cloud Controller it will instead broadcast a default SSID of 'Meraki-Scanning.'

vs

<SSID_name>-scanning

Cause: Similar to 'bad-gateway', an AP is unable to connect to its default gateway.

https://documentation.meraki.com/MR/Other_Topics/Troubleshooting_local_connection_issues_using_default_SSID_on_MR_Access_Points

This is because the AP is broadcasting the default SSID ''meraki-scanning'' which is only broadcast when the AP has never connected to the Meraki Cloud Controller1.

This question is related to the topic ofWireless Access Points Quick Startin the Cisco Meraki documentation. You can find more information about this topic in theWireless Access Points Quick Startarticle or theUsing the Cisco Meraki Device Local Status Pagepage.

Total 72 questions
Go to page: of 8