Full 300-620 Practice Test and 113 unique questions with explanations waiting just for you! [Q20-Q45]

Share

Full 300-620 Practice Test and 113 unique questions with explanations waiting just for you!

CCNP Data Center Dumps 300-620 Exam for Full Questions - Exam Study Guide

NEW QUESTION 20
Refer to the exhibit.

An engineer is integrating a VMware vCenter with Cisco ACI VMM domain configuration. ACI creates port-group names with the format of "Tenant | Application | EPG". Which configuration option is used to generate port groups with names formatted as "Tenant=Application=EPG"?

  • A. delimiter
  • B. virtual switch name
  • C. security domains
  • D. enable tag collection

Answer: A

 

NEW QUESTION 21
Which two components are essential parts of a Cisco ACI Virtual Machine Manager (VMM) domain policy configuration? (Choose two.)

  • A. Layer 3 outside interface association
  • B. EPG association
  • C. IP address pool association
  • D. EPG static port binding
  • E. VMM domain profile

Answer: B,E

Explanation:
Section: Integrations
Explanation/Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/1-x/aci-fundamentals/b_ACI- Fundamentals/b_ACI-Fundamentals_chapter_01011.html

 

NEW QUESTION 22
What must be configured to redistribute externally learned OSPF routes within the ACI fabric?

  • A. BGP Inter-leak Route Map
  • B. Route Control Profile
  • C. PIM Sparse Mode
  • D. BGP Route Reflector

Answer: D

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/1-x/ACI_Best_Practices/ b_ACI_Best_Practices/b_ACI_Best_Practices_chapter_010010.html

 

NEW QUESTION 23
Drag and drop the Cisco ACI Layer 4 to Layer 7 service insertion terms on the left to the correct descriptions on the right.

Answer:

Explanation:

 

NEW QUESTION 24
Which components must be configured for the BGP Route Reflector policy to take effect?

  • A. access policies and profiles
  • B. pod policy groups and profiles
  • C. spine fabric interface overrides and profiles
  • D. leaf fabric interface overrides and profiles

Answer: B

 

NEW QUESTION 25

Refer to the exhibit. Which action should be taken to ensure authentication if the RADIUS servers are unavailable?

  • A. Adjust the priority of server 10.1.1.1 to 1.
  • B. Set the default login realm to LDAP.
  • C. Set the fallback login to local.
  • D. Assign the user to the default role.

Answer: C

Explanation:
Section: ACI Management

 

NEW QUESTION 26
An engineer wants to monitor all configuration changes, threshold crossing, and link-state transitions in a Cisco ACI fabric. Which action must be taken to receive the required messages?

  • A. Add Session Logs and Audit Logs to the monitor policy.
  • B. Include Audit Logs and Events in the Syslog source policy.
  • C. Add Faults and Events to the monitor policy.
  • D. Include Events and Session Logs in the Syslog source policy.

Answer: B

 

NEW QUESTION 27
An engineer is implementing Cisco ACI at a large platform-as-a-service provider using APIC controllers, 9396PX leaf switches, and 9336PQ spine switches. The leaf switch ports are configured as IEEE 802.1p ports. Where does the traffic exit from the EPG in IEEE 802.1p mode in this configuration?

  • A. from leaf ports untagged
  • B. from leaf ports tagged as VLAN 0
  • C. from leaf ports tagged as VLAN 1
  • D. from leaf ports tagged as VLAN 4094

Answer: B

 

NEW QUESTION 28
Which type of profile needs to be created to deploy an access port policy group?

  • A. leaf interface
  • B. module
  • C. Pod
  • D. attachable entity

Answer: D

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/1-x/Operating_ACI/guide/ b_Cisco_Operating_ACI/b_Cisco_Operating_ACI_chapter_0110.html

 

NEW QUESTION 29
What does a bridge domain represent?

  • A. tenant
  • B. physical domain
  • C. Layer 2 forwarding construct
  • D. Layer 3 cloud

Answer: C

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/2-x/L2_config/ b_Cisco_APIC_Layer_2_Configuration_Guide/ b_Cisco_APIC_Layer_2_Configuration_Guide_chapter_010.html

 

NEW QUESTION 30
Which setting prevents the learning of Endpoint IP addresses whose subnet does not match the bridge domain subnet?

  • A. "Limit IP learning to network" setting within the bridge domain.
  • B. "Limit IP learning to subnet" setting within the bridge domain.
  • C. "Limit IP learning to subnet" setting within the EPG.
  • D. "Limit IP learning to network" setting within the EPG.

Answer: B

Explanation:
Section: ACI Packet Forwarding
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/2-x/L2_config/ b_Cisco_APIC_Layer_2_Configuration_Guide/ b_Cisco_APIC_Layer_2_Configuration_Guide_chapter_010.html

 

NEW QUESTION 31
On which two interface types should a user configure storm control to protect against broadcast traffic?
(Choose two.)

  • A. APIC facing interfaces
  • B. port channel on a single leaf switch
  • C. all interfaces on the leaf switches in the fabric
  • D. endpoint-facing trunk interface
  • E. fabric uplink interfaces on the leaf switches

Answer: B,D

 

NEW QUESTION 32
An engineer must create a backup of the Cisco ACI fabric for disaster recovery purposes. The backup must be transferred over a secure and encrypted transport. The backup file must contain all user and password related information. The engineer also wants to process and confirm the backup file validity by using a Python script. This requires the data structure to have a format similar to a Python dictionary. Which configuration set must be used to meet these requirements?

  • A. Under the Create Remote location settings, select Protocol: FTP
    Under the Export policy, select
    - Format: XML
    - Modify Global AES Encryption Settings: Disabled
  • B. Under the Create Remote location settings, select Protocol: FTP
    Under the Export policy, select
    - Format: XML
    - Modify Global AES Encryption Settings: Enabled
  • C. Under the Create Remote location settings, select Protocol: SCP
    Under the Export policy, select
    - Format: JSON
    - Modify Global AES Encryption Settings: Disabled
  • D. Under the Create Remote location settings, select Protocol: SCP
    Under the Export policy, select
    - Format: JSON
    - Modify Global AES Encryption Settings: Enabled

Answer: D

 

NEW QUESTION 33
When configuring Cisco ACI VMM domain integration with VMware vCenter, which object is created in vCenter?

  • A. VMware vSphere Standard vSwitch
  • B. datacenter
  • C. cluster
  • D. VMware vSphere Distributed Switch

Answer: D

Explanation:
Section: Integrations

 

NEW QUESTION 34
What must be enabled in the bridge domain to have the endpoint table learn the IP addresses of endpoints?

  • A. L2 unknown unicast: flood
  • B. subnet scope
  • C. GARP based detection
  • D. unicast routing

Answer: D

 

NEW QUESTION 35
Which components must be configured for the BGP Route Reflector policy to take effect?

  • A. spine fabric interface overrides and profiles
  • B. access policies and profiles
  • C. pod policy groups and profiles
  • D. leaf fabric interface overrides and profiles

Answer: A

Explanation:
Section: ACI Fabric Infrastructure
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/4-x/L3-configuration/Cisco- APIC-Layer-3-Networking-Configuration-Guide-401/Cisco-APIC-Layer-3-Networking-Configuration-Guide-
401_chapter_01.html

 

NEW QUESTION 36
What are two requirements for the IPN network when implementing a Multi-Pod ACI fabric? (Choose two.)

  • A. BGP routing
  • B. EIGRP routing
  • C. VLAN ID 4
  • D. PIM ASM multicast routing
  • E. OSPF routing

Answer: C,E

 

NEW QUESTION 37
Which attribute should be configured for each user to enable RADIUS for external authentication in Cisco ACI?

  • A. cisco-aci-role
  • B. cisco-av-pair
  • C. cisco-security domain
  • D. cisco-auth-features

Answer: B

Explanation:
Section: ACI Management
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/2-x/Security_config/ b_Cisco_APIC_Security_Configuration_Guide/b_Cisco_APIC_Security_Guide_chapter_01011.html

 

NEW QUESTION 38
Which two protocols support accessing backup files on a remote location from the APIC? (Choose two.)

  • A. TFTP
  • B. HTTPS
  • C. SFTP
  • D. SMB
  • E. FTP

Answer: C,E

 

NEW QUESTION 39

Refer to the exhibit. Which two components should be configured as route reflectors in the ACI fabric?
(Choose two.)

  • A. apic2
  • B. Leaf1
  • C. Spine1
  • D. apic1
  • E. Leaf2
  • F. Spine2

Answer: C,F

Explanation:
Section: ACI Fabric Infrastructure
Explanation/Reference:

 

NEW QUESTION 40
Regarding the MTU value of MP-BGP EVPN control plane packets in Cisco ACI, which statement about communication between spine nodes in different sites is true?

  • A. By default, spine nodes generate 9000-bytes packets to exchange endpoints routing information. As a result, the Inter-Site network should be able to carry 9000-bytes packets.
  • B. By default, spine nodes generate 1500-bytes packets to exchange endpoints routing information. As a result, the Inter-Site network should be able to carry 1800-bytes packets.
  • C. By default, spine nodes generate 9000-bytes packets to exchange endpoints routing information. As a result, the Inter-Site network should be able to carry 9100-bytes packets.
  • D. By default, spine nodes generate 1500-bytes packets to exchange endpoints routing information. As a result, the Inter-Site network should be able to carry 1500-bytes packets.

Answer: C

 

NEW QUESTION 41
Which statement regarding ACI Multi-Pod and TEP pool is true?

  • A. The Pod1 TEP pool must be split and a portion of the TEP pool allocated to each Pod.
  • B. The same TEP pool is used in all Pods.
  • C. A different TEP pool must be assigned to each Pod.
  • D. The IP addresses used in the IPN network can overlap TEP pool of the APIC.

Answer: C

 

NEW QUESTION 42
Which description regarding the initial APIC cluster discovery process is true?

  • A. Every switch is assigned a unique AV by the APIC.
  • B. The APIC discovers the IP address of the other APIC controllers by using Cisco Discovery Protocol.
  • C. The ACI fabric is discovered starting with the spine switches.
  • D. The APIC uses an internal IP address from a pool to communicate with the nodes.

Answer: D

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/1-x/aci-fundamentals/ b_ACI-Fundamentals/b_ACI-Fundamentals_chapter_010011.html

 

NEW QUESTION 43
Which protocol does ACI use to securely sane the configuration in a remote location?

  • A. FTP
  • B. SCP
  • C. TFTP
  • D. HTTPS

Answer: B

Explanation:
Section: ACI Management
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/kb/ b_KB_Using_Import_Export_to_Recover_Config_States.html

 

NEW QUESTION 44
When Cisco ACI connects to an outside Layers 2 network, where does the ACI fabric flood the STP BPDU frame?

  • A. between all the spine and leaf switches
  • B. within the bridge domain
  • C. within the APIC
  • D. within the access encap VLAN

Answer: D

 

NEW QUESTION 45
......

Authentic Best resources for 300-620 Online Practice Exam: https://www.practicevce.com/Cisco/300-620-practice-exam-dumps.html

Get the superior quality 300-620 Dumps Questions from PracticeVCE: https://drive.google.com/open?id=1pz3db_bDUjYgqnxr2XGBt0KMYq1Dll7u