Summer Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: cramtreat

300-420 Designing Cisco Enterprise Networks (ENSLD) Questions and Answers

Questions 4

Refer to the exhibit. A customer is planning to deploy a new branch in New York. The new office will not exceed 1024 users. Which subnet must be used to provide maximum number of host addresses while not providing more than necessary?

Options:

A.

192.168.8.0/21

B.

192.168.16.0/22

C.

192.168.16.0/21

D.

192.168.8.0/22

Buy Now
Questions 5

What are two characteristics of a migration from an IP-VPN service to a Cisco SD-WAN architecture? (Choose two.)

Options:

A.

increased solution complexity

B.

increased security

C.

increased scalability

D.

centralized application policies

E.

distributed control plane

Buy Now
Questions 6

Refer to the exhibit An engineer is designing an OSPF solution with these requirements:

    NMS server will manage R5 and R6.

    Upon failure of R1. all NMS traffic should be routed through R4.

    Upon failure of the link between R5 and R6. all traffic destined for 10.6.6.6 should be routed through R4

Which solution must the engineer choose?

Options:

A.

Advertise 172.16.1.1 into OSPF process 1 with high cost on R1.

B.

Apply static routes on R2 and R3 with IP SLA tracking toward R5 and R6.

C.

Enable the default-Information originate command with a higher metric on R2 to R1.

D.

Redistribute OSPF process 1 into process 2 on R1 and R4.

Buy Now
Questions 7

Refer to the exhibit. Customers report low video quality and delays when having point-to-point telepresence video calls between the two locations. An architect must optimize a design so that traffic follows the same path for egress and ingress traffic flows. Which technique optimizes the design?

Options:

A.

Configure route leaking on the router in area 2.

B.

Configure route leaking on the router in area 1.

C.

Configure the high metric on the router in area 4.

D.

Configure route filter on the router in area 4.

Buy Now
Questions 8

Drag and drop the types of WAN connectivity from the left onto the connectivity use cases on the right.

Options:

Buy Now
Questions 9

Refer to the exhibit. An architect must create a stable and scalable EIGRP solution for a customer. The design must:

•conserve bandwidth, memory, and CPU processing

•prevent suboptimal routing

•avoid any unnecessary queries

Which two solutions must the architect select? (Choose two.)

Options:

A.

route summarization

B.

prefix lists

C.

distribute lists

D.

stub routing

E.

static redistribution

Buy Now
Questions 10

Exhibit:

Options:

A.

Make R3 an L1L2 router.

B.

Make R31 an L1 router.

C.

Make Area 0 L2-only.

D.

Make R11 an L2 router.

Buy Now
Questions 11

Refer to the exhibit. Area 10 is a regular OSPF area and networks 10.1.1.0/24 and 172.16.1.0/24 are internal. Which design provides optimal routing between both networks when the link between routers C and E fails?

Options:

A.

Move the link between routers C and D to area 10.

B.

Create an OSPF virtual link between routers E and F.

C.

Create a tunnel between routers E and F in area 10.

D.

Make area 10 a not-so-stubby area.

Buy Now
Questions 12

An engineer must peer with an ISP for internet connectivity using BGP, initially, the engineer wants to receive only specific prefixes from the ISP and a default route. However, the solution must provide the flexibility to add prefixes in the future at short notice. The ISP has a two-week change process in place. Which route filtering solution must the engineer employ?

Options:

A.

Request a limited internet routing table and a default route from the ISP and configure the BGP max-limit to 1 with an access list that permits only the specific internet prefixes and blocked networks

B.

Request only the required prefixes and default route be advertised from the ISO with whitelisted networks

C.

Request a full internet routing table and a default route from the ISP and configure inbound route filtering with a prefix list that permits the default route and required prefixes

D.

Configure outbound route filtering on the enterprise and ISP so that the enterprise tell the ISP which prefixes are required

Buy Now
Questions 13

Refer to the exhibit. An architect reviews the low-level design of a company's enterprise network and advises optimizing the STP convergence time. Which functionality must be to Gi1/0/1-10 to follow the architect's recommendation?

Options:

A.

PortFast

B.

root guard

C.

UplinkFast

D.

BPDU guard

Buy Now
Questions 14

Refer to the exhibit An engineer working for a telecommunication company with an employee ID 4449:30 959 Is calculating STP scalability for switches to ensure that the numbers are below the maximum supported value for STP logical ports How many logical interfaces are active for switch A?

Options:

A.

4

B.

307

C.

202

D.

100

Buy Now
Questions 15

How do endpoints inside an SD-Access network reach resources outside the fabric?

Options:

A.

a VRF fusion router is used to map resources in one VN to another VN

B.

Fabric borders use VRFs to map VNs to VRFs

C.

SD-Access transit links are used to transport encapsulated traffic from one fabric to another

D.

A fabric edge is used to de-encapsulate VXLAN traffic to normal IP traffic then transported over the outside network

Buy Now
Questions 16

Drag and drop the descriptions from the left onto the Cisco SD-WAN component they describe on the right.

Options:

Buy Now
Questions 17

Which feature is used to optimize WAN bandwidth of IGMP network traffic among WAN Edge routers in the

same VPN?

Options:

A.

IGMPv2

B.

multicast RP

C.

multicast-replicator

D.

multicast service routes

Buy Now
Questions 18

Refer to the exhibit.

The failover time of ISP-2 is significantly shorter than ISP-1 when an interface on the ISP router toward the campus network fails. Which solution minimizes the downtime to the sub-second?

Options:

A.

Aggressive timers

B.

Next-hop address tracking

C.

Graceful-restart

D.

BFD

Buy Now
Questions 19

A company wants to switch from static routing to a dynamic routing protocol to ease the administrative and operational overhead. The network topology is hub and spoke, and the branches use DMVPN back to the hub using two 100 Mbps internet connections. Both links must be used due to spikes in traffic, and routing must take traffic utilization of the links into account. Also, the branch routers have limited memory and CPU resources. Which routing protocol and design solution must the company choose?

Options:

A.

iBGP with the hub routers set up as route reflectors and branches set up as clients

B.

OSPF deployed in area 0 with branch routers connecting from area 1

C.

ISIS with the hub and spoke routers configured in two different areas

D.

EIGRP with branch routers as stub routers using ECMP

Buy Now
Questions 20

What is the role of a control-plane node in a Cisco SD-Access architecture?

Options:

A.

fabric device that connects wired endpoints to the SD-Access fabric

B.

map system that manages endpoint to device relationships

C.

fabric device that connects APs and wireless endpoints to the SD-Access fabric

D.

map system that manages External Layer 3 networks

Buy Now
Questions 21

When expanding an existing Cisco SD-Access network, in addition to the control plane, which two device roles are needed to create an additional fabric site? (Choose two.)

Options:

A.

leaf

B.

cEdge

C.

WLC

D.

edge

E.

border

Buy Now
Questions 22

An engineer is designing a BGP solution supporting a VXLAN environment over a Layer 3 IPv4 network fabric with these requirements

    provide Layer 2 adjacency

    allow VM migration of workloads between sites

    IGP is OSPF

Which BGP address family must the engineer choose?

Options:

A.

VPNv4

B.

IPv4 unicast

C.

L2VPN VPLS-VPWS

D.

L2VPNEVPN

Buy Now
Questions 23

Which design element should an engineer consider when multicast is included in a Cisco SD-Access architecture?

Options:

A.

PIM SSM must run in the underlay.

B.

Multicast clients reside in the underlay, and the multicast source is outside the fabric or

in the overlay.

C.

Rendezvous points must be used in a PIM SSM deployment.

D.

Multicast traffic is transported in the overlay and the EID space for wired and wireless clients.

Buy Now
Questions 24

Refer to the exhibit.

An architect is designing an EIGRP solution based on these requirements:

* Traffic forwarding should use the best two paths while all links are available

* Single path failure must not impact traffic between branch and HQ

Which solution must the architect select?

Options:

A.

Maximum-paths 2

B.

Add-paths 2

C.

Metric weights 010100

D.

Variance 2

Buy Now
Questions 25

What is a benefit of using VRRPv3 as compared to VRRPv2?

Options:

A.

VRRPv3 supports IPv4 and IPv6

B.

VRRPv3 supports authentication

C.

VRRPv3 supports preemption

D.

VRRPv3 supports stateful switchover

Buy Now
Questions 26

Which two border nodes are available in the Cisco SD-Access architecture? (Choose two.)

Options:

A.

extended border

B.

edge border

C.

internal border

D.

anywhere border

E.

intermediate border

Buy Now
Questions 27

Refer to the exhibit. A customer has two eBGP peerings from a single CE router toward two service providers. The customer has hired an architect to design a solution to ensure certain traffic enters the customer's network through interface g¡g0/0. Which solution must the architect include in the design?

Options:

A.

Advertise a lower MED value toward the less preferred service provider.

B.

Prepend additional AS on the AS path toward the preferred service provider.

C.

Break aggregated routes into longer prefixes and advertise to the preferred service provider.

D.

Set a higher local preference to the preferred service provider path.

Buy Now
Questions 28

When a first hop redundancy solution is designed, which protocol ensures that load balancing occurs over multiple routers using a single virtual IP address and multiple virtual MAC addresses?

Options:

A.

GLBP

B.

IRDP

C.

VRRP

D.

HSRP

Buy Now
Questions 29

Refer to the exhibit. A network architect is preparing a network design based on the EIGRR Routers are connected using a cat6a cable type and the inter-router connection speed is limited to 10 Mbps due to distance. During the pilot phase, a DUAL-3-SIA error message is visible. Which action must the engineer take to create a stable design?

Options:

A.

Enable poison reverse on R4.

B.

Configure STUB area on R4.

C.

Create a summary route on R2.

D.

Disable split horizon on R1.

Buy Now
Questions 30

Refer to the exhibit. Where must an architect plan for route summarization for the topology?

Options:

A.

from the core toward the aggregation and the access toward the aggregation

B.

from the core toward the aggregation and the aggregation toward the core

C.

from the aggregation toward the access and the access toward the aggregation

D.

from the aggregation toward the core and the aggregation toward the access

Buy Now
Questions 31

Drag and drop the elements from the left onto the protocols where they are used on the right.

Options:

Buy Now
Questions 32

What is the function of the multicast Reverse Path Forwarding check?

Options:

A.

It allows for a loop-free distribution tree from the source to receivers.

B.

It serves as an Auto RP Mapping agent.

C.

It prevents bootstrap messages from reaching all routers.

D.

It is used to discover and announce RP-set information.

Buy Now
Questions 33

An architect is designing a network for an enterprise site. The design must use an active/backup design for the WAN. It must guarantee the SLA for several applications regardless of which connection is used. Which deployment model should the architect choose?

Options:

A.

MPLS WAN from two separate ISPs

B.

hybrid WAN using MPLS VPN and internet VPN from a single ISP

C.

hybrid WAN using MPLS VPN and internet VPN from two separate ISPs

D.

internet WAN from two separate ISPs

Buy Now
Questions 34

Refer to the exhibit. A company specializing in VoD content creation has two offices in a separate multicast domain connected by a WAN link. BGP communication has been established between the offices. Clients are inside the LAN in each office. In AS5373. R2 has been selected as RP. What must the network architect design to deliver VoD content to clients in AS65773?

Options:

A.

MSDP

B.

PIM ASM with Auto-RP

C.

PIM SSM

D.

PIM ASM with BSR

Buy Now
Questions 35

Which feature of Cisco SD-WAN Secure Direct Cloud Access divides user traffic into different zones and VPNs or VRFs?

Options:

A.

centralized data policy

B.

secure segmentation

C.

perimeter control

D.

application-awareness routing

Buy Now
Questions 36

An architect is designing a network that will utilize the spanning tree protocol to ensure a loop-free topology. The network will support an engineering environment where it is necessary for end users to connect their own network switches for testing purposes. Which feature should the architect include in the design to ensure the spanning tree topology is not affected by these rogue switches?

Options:

A.

BPDU Skew Detection

B.

BPDU guard

C.

loop guard

D.

root guard

Buy Now
Questions 37

What are two benefits of designing an SD-WAN network fabric with direct Internet access implemented at

every site? (Choose two.)

Options:

A.

It decreases latency to applications hosted by public cloud service provider.

B.

It decreases latency on Internet circuits.

C.

It increases the speed of delivery of site deployments through zero-touch provisioning.

D.

It increases the total available bandwidth on Internet circuits.

E.

It alleviates network traffic on MPLS circuits.

Buy Now
Questions 38

Which WAN connectivity technology is optimal for edge computing compared to others and why?

Options:

A.

Due to low latency, high bandwidth, and closest proximity to the user. 4G/5G connectivity is the optimal WAN technology for edge computing compared to L3 VPN MPLS connectivity, which offers native separation and security with close proximity to the data center.

B.

Due to high bandwidth, separation and security, and proximity to the data center network. DWDM Is the optimal WAN technology lor edge computing compared to 4G/5G connectivity, which offers native separation and security with close proximity to the data center.

C.

Due to low latency, high bandwidth, and closest proximity to the user, L3 VPN MPLS connectivity is the optimal WAN technology for edge computing compared to 4G/5G connectivity, which offers native separation and security with close proximity to the data center.

D.

Due to low cost, high bandwidth, low latency, and closest proximity to the edge of the network, Mero Ethernet is the optimal WAN technology for edge computing compared to MPLS, which offers native separation and security with close proximity to the data center.

Buy Now
Questions 39

Which function are fabric intermediate nodes responsible for in an SD-Access Architecture?

Options:

A.

mapping EIDs to RLOCs

B.

encapsulating user traffic in a VXLAN header including the SGT

C.

registering new endpoints in the HTDB

D.

transporting IP packets between edge nodes and border nodes

Buy Now
Questions 40

Which component of Cisco SD-Access integrates with Cisco DNA Center to perform policy segmentation and enforcement through the use of security group access control lists and security group tags?

Options:

A.

Cisco Application Policy Infrastructure Controller Enterprise Module

B.

Cisco Network Data Platform

C.

Cisco Identity Services Engine

D.

Cisco TrustSec

Buy Now
Questions 41

Refer to the exhibit. A network engineer with an employee ID: 4384:99:754 must design a BGP solution based on these conditions:

    Traffic sessions occur between the branches and the data center.

    Branch B has limited resources to process routing updates.

    HQ must filter out all prefixes from branch A to R4.

Which outbound route filtering (ORF) solution must the engineer choose?

Options:

A.

Use a prefix list with the 192.168.10.0/24 subnet for ORF on R4.

B.

Use a prefix list with the 10.10.10.0/24 subnet for ORF on R2

C.

Use a prefix list with the 10.10.10.0/24 subnet for ORF on R5.

D.

Use a prefix list with the 192.168.10.0/24 subnet for ORF on R2.

Buy Now
Questions 42

Which control plane protocol is responsible for ElD-to-RLOC mapping concerning SO-Access Architecture?

Options:

A.

GBAC

B.

LISP

C.

CEF

D.

VXLAN

Buy Now
Questions 43

Refer to the exhibits. An engineer is troubleshooting an issue in which the Gig0/2 interface on a Cisco switch named SW2 fails to become the root port. Which two commands must be run on SW2 to resolve this issue? (Choose two.)

A)

B)

C)

D)

E)

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

E.

Option E

Buy Now
Questions 44

What is an advantage of using model-driven telemetry in the network?

Options:

A.

It uses interrupt-driven polling to pull data at regular intervals.

B.

It uses JSON encoding and is compatible with a wide variety of tools on the market.

C.

It uses MIB models to structure the data that are well known In the industry.

D.

Telemetry obtains data by parsing the CLI output from show commands.

Buy Now
Questions 45

An enterprise customer has these requirements:

    end-to-end QoS for the business-critical applications and VoIP services based on CoS marking.

    flexibility to offer services such as IPv6 and multicast without any reliance on the service provider.

    support for full-mesh connectivity at Layer 2.

Which WAN connectivity option meets these requirements?

Options:

A.

VPWS

B.

MPLS VPN

C.

DMVPN

D.

VPLS

Buy Now
Questions 46

An architect must design a QoS model for a business-critical application that Is delay-sensitive and requires high bandwidth. The company's head office hosts the application, and DMVPN tunnels protected with IPsec provide connectivity between the head office and branches. Which solution must the architect choose?

Options:

A.

RSVP

B.

IntServ

C.

WRED

D.

DiffServ

Buy Now
Questions 47

Drag and drop the description from the left onto the corresponding WAN connectivity types and categories on the right.

Options:

Buy Now
Questions 48

In a Cisco SD-Access fabric, which node facilities connectivity between the fabric and networks external to the fabric?

Options:

A.

intermediate

B.

edge

C.

control plane

D.

border

Buy Now
Questions 49

Refer to the exhibit. A customer needs to apply QoS to the network management traffic passing through the GigabitEthernet0/2 interface. All eight queuing classes are in use, so the new requirement must be integrated into the existing policy. Which solution must the customer choose?

Options:

A.

Mark traffic to DSCP CS5 and assign it to the SIGNALLING class. Then, baseline existing queue sizes to determine if additional bandwidth can be provisioned to the SIGNALLING class.

B.

Mark the traffic to DSCP CS4 and assign it to the SIGNALLING class. Then, prioritize traffic within the class.

C.

Mark the traffic to DSCP CS6 and assign it to the ROUTING class Then, prioritize traffic within the class.

D.

Mark the traffic to DSCP CS2 and assign it to the ROUTING class Then, baseline existing queue sizes to determine if additional bandwidth can be provisioned to the ROUTING class

Buy Now
Questions 50

A company has many spoke sites with two data centers. The company wants to exchange the routing information between the data centers and the spoke sites using EIGRP. All locations belong to a single AS. and auto-summarization Is disabled. Which two actions must the company choose? (Choose two.)

Options:

A.

Exchange all routes between locations

B.

Summarize the routes between the hubs.

C.

Make each spoke site router a stub router

D.

Summarize the routes from spokes to the hubs.

E.

Split the network into two separate ASs

Buy Now
Questions 51

Refer to the exhibit.

C0FD9F48 C9ACDC725EA850EC2476EE1E

A network engineer is designing a network for AS100. The design should ensure that all traffic enters AS100

via link 1 unless there is a network failure. In the event of a failure, link 2 should function as the path for

incoming traffic. Which solution should the design include?

Options:

A.

Modify the next-hop attribute on R3.

B.

Use AS-Path prepending on R3.

C.

Modify the next-hop attribute on R4.

D.

Use AS-Path prepending on R4.

Buy Now
Questions 52

An architect is creating a migration strategy for a large organization in which the choice made by the application between IPv6 and IPv4 is based on the DNS request. Which migration strategy does the architect choose?

Options:

A.

AFT for public web presence

B.

host-initiated tunnels

C.

dual stack

D.

site-to-site IPv6 over IPv4 tunnels

Buy Now
Questions 53

A company wants to switch from static routing to a dynamic routing protocol to ease the administrative and operational overhead. The network topology is hub and spoke, and the branches use DM VPN back to the hub with two 10-Mbps internet connections. The branch routers are multivendor and have limited memory and CPU resources. Which routing protocol and design solution meets the requirements?

Options:

A.

eBGP with the hub routers set up as route reflectors

B.

ISIS with the hub and spoke routers configured in two different areas

C.

EIGRP with branch routers as stub routers and variance enabled

D.

OSPF with the hub in area 0 and branch routers in stub areas with ECMP

Buy Now
Questions 54

What is a feature of the SaaS subscription model?

Options:

A.

web connection not required

B.

access to industrial-strength storage and computing power

C.

autonomy and control over hardware

D.

tower initial costs

Buy Now
Questions 55

A network engineer must connect two sites across a public network using a secure tunneling technology that

supports multicast traffic. Which technology must be chosen?

Options:

A.

IPsec

B.

GRE

C.

PPTP

D.

GRE over IPsec

Buy Now
Questions 56

Drag and drop the descriptions from the left onto the categories they apply to on the right.

Options:

Buy Now
Questions 57

Which feature provides the capability for intra-VN traffic filtering and control within the Cisco SO-Access architecture?

Options:

A.

scalable groups

B.

MAC ACL

C.

prefix list

D.

service policy

Buy Now
Questions 58

Which two functions does the control plane node provide in a Cisco SD-Access architecture? (Choose two.)

Options:

A.

LISP proxy ETR

B.

host tracking database

C.

policy mapping

D.

map server

E.

endpoint registration

Buy Now
Questions 59

Refer to the exhibit. An engineer must design an automatic failover solution. The solution should allow HSRP to detect a WAN 1 failure and initiate an automatic failover, making router R2 the active HSRP router. Which two solutions should the engineer choose? (Choose two.)

Options:

A.

Implement Enhanced Object Tracking on router R1

B.

use a floating static route

C.

Implement IP SLA on router R1

D.

Implement PBR on router R1

E.

use IP source routing

Buy Now
Questions 60

When is it advisable to provide dedicated control plane nodes within a Cisco SD-Access design?

Options:

A.

in a small deployment where border nodes are not required

B.

in a design where fabric edge nodes are unable to provide control plane functionality

C.

in designs without Cisco DNA Center

D.

when there is a requirement for frequent roaming of endpoints across fabric edge nodes

Buy Now
Questions 61

What is the purpose of a TLOC extension in a Cisco SD-WAN network fabric?

Options:

A.

to facilitate WAN Edge router redundancy within a site

B.

to identify the physical interface where a WAN Edge router connects to the WAN transport network

C.

to expand the number of colors that are potentially applied to a network transport interface

D.

to aggregate multiple physical interfaces into a single logical Interface

Buy Now
Questions 62

Refer to the exhibit. An engineer is designing an OSPF network for a client. Requirements dictate that the routers in Area 1 should receive all routes belonging to the network, including EIGRP, except the ones originated in the RIP domain. Which action should the engineer take?

Options:

A.

Make area 1 a NSSA.

B.

Make area 1 a stub.

C.

Make area 1 a standard OSPF area.

D.

Make the area 1 routers part of area 0.

Buy Now
Questions 63

An engineer must design a scalable QoS architecture that allows the separation of the traffic into classes on predefined business requirements. The design must also utilize the differentiated services code points as the QoS priority descriptor value and support at least 10 levels of classification. Which QoS technology should the engineer include in the design?

Options:

A.

RSVP

B.

Diffserv

C.

Best effort

D.

Interserv

Buy Now
Questions 64

Refer to the exhibit. An architect is designing a hierarchical ISIS solution for a customer with these requirements:

    Routers will double In all areas within the next 24 months.

    Link flaps within areas 20 and 30 must not impact the backbone area.

    Traffic originating from A201 and A302 routers must connect to application servers in the backbone.

Which design must the architect select?

Options:

A.

C201 Level 1/2, A301 Level 1/2 and A102 Level 1/2

B.

C101 Level 1/2. A201 Level 1, and A101 Level 2

C.

C102 Level 2. A202 Level 2, and A102 Level 1

D.

C302 Level 2. A302 Level 1/2. and A101 Level 2

Buy Now
Questions 65

Refer to the exhibit. An architect is developing a solution to consolidate networks while retaining device redundancy. The routing protocol for the WAN routers must be open standard, ensure high availability, and provide the fastest convergence time. Which solution must the design include?

Options:

A.

both routers running EIGRP

B.

one router running OSPFv2 and other OSPF v3

C.

one router running ISIS and other OSPF v3

D.

both routers running OSPFv2

Buy Now
Questions 66

A client is moving to Model-Driven Telemetry and requires periodic updates. What must the network architect consider with this design?

Options:

A.

Updates that contain changes within the data are sent only when changes occur.

B.

Empty data subscriptions do not generate empty update notifications.

C.

Periodic updates include a full copy of the data that is subscribed to.

D.

The primary push update is sent immediately and cannot be delayed.

Buy Now
Questions 67

Which consideration must be taken into account when using the DHCP relay feature in a Cisco SD-Access Architecture?

Options:

A.

DHCP-relay must be enabled on fabric edge nodes to provide the correct mapping of DHCP scope to the local anycast gateway.

B.

A DHCP server must be enabled on the border nodes to allow subnets to span multiple fabric edges.

C.

DHCP servers must support Cisco SD-Access extensions to correctly assign IPs to endpoints in an SD-Access fabric with anycast gateway.

D.

DHCP Option-82 must be enabled to map the circuit IP option to the access fabric node where the DHCP discover originated.

Buy Now
Questions 68

An engineer must design a multicast network for a financial application. Most of the multicast sources also receive multicast traffic (many-to-many deployment model). To better scale routing tables, the design must not use source trees. Which multicast protocol satisfies these requirements?

Options:

A.

PIM-SSM

B.

PIM-SM

C.

MSDP

D.

BIDIR-PIM

Buy Now
Questions 69

Which method will filter routes between EIGRP neighbors within the same autonomous system?

Options:

A.

distribute-list

B.

policy-based routing

C.

leak-map

D.

route tagging

Buy Now
Questions 70

A customer’s environment includes hosts that support IPv6-only. Several of these hosts must communicate with a public web server that has only IPv4 domain name resolution. Which solution should the customer use in this environment?

Options:

A.

utilize NAT64 to translate the addresses

B.

Implement NAT44 at the edge of the customer network

C.

use 6to4 and a tunnel to translate the addresses

D.

implement 6PE to resolve hostname resolution

Buy Now
Questions 71

A network engineer must design a multicast solution to prevent the spoofing of multicast streams and ensure efficient bandwidth utilization. The network will be merged with another multicast domain in the future, and the merge must require minimum effort. Which two solutions meet the customer requirements? (Choose two.)

Options:

A.

PIM-SSM

B.

IGMPv3

C.

IGMPv2

D.

PIM-SM

E.

MSDP

Buy Now
Questions 72

An engineer is designing a QoS solution for a customer The customer's internet connection has a bandwidth of 10 Mbps. The design must ensure that traffic bursts of data do not exceed the bandwidth of the connection and that received traffic does not starve out business-critical traffic Which solution must the engineer choose?

Options:

A.

Configure the queuing default queue for shaping inbound and policing outbound.

B.

Configure the queuing default queue for shaping inbound and policing inbound.

C.

Configure the queuing default queue for shaping outbound and policing inbound.

D.

Configure the queuing default queue for shaping outbound and policing outbound.

Buy Now
Questions 73

What is the purpose of a control plane node in a Cisco SD-Access network fabric?

Options:

A.

to maintain the endpoint database and mapping between endpoints and edge nodes

B.

to detect endpoints in the fabric and inform the host tracking database of EID-to-fabric-edge node bindings

C.

to identify and authenticate endpoints within the network fabric

D.

to act as the network gateway between the network fabric and outside networks

Buy Now
Questions 74

Refer to the exhibit. An engineer proposed this solution for a company that requires a loop-free. Layer 2 network design. The network will run 802.1W, and all links will be 1 Gbps. If all interfaces are up as point- to-point adjacencies, what are the expected port end states based on the design?

Options:

A.

Eth1/2 on SW2 and SW3 will be in a Desg FWD state

B.

Eth1/3 on SW2 and SW3 will be m an Attn BLK state

C.

Eth1/2 on SW3 and SW4 will be m an Attn BLKbtate.

D.

Eth1/1 on SW1 and SW2 will be in a Root FWD state.

Buy Now
Questions 75

An engineer must design an addressing plan for a small business using a single /24 network. Each department must have its own subnet. Drag and drop the subnets from the left onto the departments requirements that they fulfill on the right. Not all options are used.

Options:

Buy Now
Questions 76

In PIM sparse mode, if an RPF check is successful on a multicast-enabled device, what happens to the multicast packet?

Options:

A.

It is forwarded to all interfaces within the OIL.

B.

It is forwarded to all interfaces except for the receiving interface.

C.

Forwarded packets are dropped to prevent looping.

D.

It is forwarded to all PIM-enabled interfaces.

Buy Now
Questions 77

Refer to the exhibit. A customer experienced an unexpected network outage when the link between R1 and R2 went down. An architect must design a solution to ensure network continuity in the event the link fails again. Which solution should the design include?

Options:

A.

Make R31 an L1 router.

B.

Make R3 an L1L2 router

C.

Make Area 0 L2-only

D.

Make R11 an L2 router.

Buy Now
Questions 78

Refer to the exhibit. Which method must an architect use to provide connectivity between the mail servers?

Options:

A.

ISATAP

B.

6to4

C.

IPv4 compaliDie

D.

6rd

Buy Now
Questions 79

An engineer is designing a Layer 3 campus network running EIGRP between the core, aggregation, and access layers. The access layer switches will be connected to the aggregation layer using Layer 3 copper connections. The engineer wants to improve convergence time for access layer switch failures. Which technique must the design include?

Options:

A.

enabling BFD for EIGRP on the access layer uplinks

B.

reducing the EIGRP Hello / Hold timer values

C.

EIGRP summarization from core to aggregation layer

D.

EIGRP summarization from access to aggregation layer

Buy Now
Questions 80

An engineer is working with NETCONF and Cisco NX-OS based devices. The engineer needs a YANG model that supports a specific feature relevant only to Cisco NX-OS. Which model must the engineer choose?

Options:

A.

Native

B.

IEEE

C.

OpenConfig

D.

IETF

Buy Now
Questions 81

Refer to the exhibit.

An architect must design an IPv6 migration solution for an enterprise customer to support these requirements:

* Clients will transition to the new IPv6 network, which provides NAT64 and IPv6 DNS resolution services, using the same DNS name that points to the IPv4 address.

* The service provider will create a client-facing IPv6 interface with a new IPv6 virtual address that points to the same IPv4 DNS server.

* The service provider will support clients that use global IPv6 addresses and encapsulate IPv4 packets into IPv6 tunnels.

Which two migration solutions must the architect choose? (Choose two.)

Options:

A.

Use dual-stack lite from the MPLS network to the IGR.

B.

Use IPv6 tunneling from the devices to the core MPLS network.

C.

Use dual-stack lite from the devices to the core MPLS network.

D.

Use NAT44/64 from the MPLS network to the IGR.

E.

Use NAT44/64 from the devices to the core MPLS network.

Buy Now
Questions 82

Which two techniques improve the application experience in a Cisco SD-WAN design? (Choose two.)

Options:

A.

utilizing forward error correction

B.

implementing a stateful application firewall

C.

implementing AMP

D.

utilizing quality of service

E.

implementing Cisco Umbrella

Buy Now
Questions 83

A network engineer must design an MSDP multicast solution to provide RP resilience in a network with two separate domains. Also, multicast sources and receivers must register with the local RP. Which solution must the engineer choose?

Options:

A.

Configure the RP has value to 0, and traffic will route to the closest RP

B.

Configure the RP loopback interface with the same IP address/32, and traffic will route to the closest RP

C.

Configure the RP group ranges to split the multicast traffic, and traffic will route to the longest match

D.

Configure the RP priority with the same value, and traffic will route to the closest RP

Buy Now
Questions 84

Which routes does the overlay management protocol advertise in an SD-WAN overlay?

Options:

A.

underlay, MPLS, and overlay

B.

primary, backup, and load-balanced

C.

prefix, TLOC, and service

D.

Internet, MPLS, and backup

Buy Now
Questions 85

An engineer must design a solution to connect a customer to the Internet. The solution will include a Layer 3 circuit with a CIR of 50 Mbps from the service provider. The hand-off from the provider's switch to the customer's router is 1Gbps. Which solution should the engineer include to prevent potential issues with choppy voice traffic?

Options:

A.

Reduce the bandwidth of the connection to the router.

B.

Implement hierarchical QoS with a parent policing policy.

C.

Implement hierarchical QoS with a parent shaping policy.

D.

Add a bandwidth statement to the router interface.

Buy Now
Questions 86

A network administrator is troubleshooting a DMVPN setup between the hub and the spoke. Which action should the administrator take before troubleshooting the IPsec configuration?

Options:

A.

    Verify the GRE tunnels.

B.

    Verify ISAKMP.

C.

    Verify NHRP.

D.

    Verify crypto maps.

Buy Now
Questions 87

How are wireless endpoints registered in the HTDB in a Cisco SD-Access architecture?

Options:

A.

Fabric edge nodes update the HTDB based on CAPPWAP messaging from the AP

B.

Fabric WLCs update the HTDB as new clients connect to the wireless network

C.

Border nodes first register endpoints and then update the HTDB

D.

Fabric APs update the HTDB with the clients' ElD and RLOC

Buy Now
Questions 88

An engineer is looking for a standards-driven YANG model to manage a multivendor network environment. Which model must the engineer choose?

Options:

A.

Native

B.

OpenConfig

C.

IETF

D.

IEEE NETCONF

Buy Now
Questions 89

Drag and drop the characteristics from the left onto the correct telemetry mode on the right.

Options:

Buy Now
Questions 90

An architect must develop a campus network solution that includes:

logically segmented and isolated networks

ability to communicate between network segments when required

support for overlapping IP addresses

widely available technologies to avoid purchasing specialized equipment

Which solution must the architect select?

Options:

A.

VSS with IGP

B.

802.1Q with HSRP

C.

vPC with HSRP

D.

VRF-Lite with OSPF

Buy Now
Questions 91

Refer to the exhibit. Due to budget constraints, a customer decided to purchase WAN routers with one LAN and one WAN interface per device. There is a requirement to connect the three sites to ensure high availability without buying additional WAN links. Which design deployment must the customer choose?

Options:

A.

single-homed full mesh

B.

single-homed hub-and-spoke

C.

dual-homed hub-and-spoke

D.

dual-homed full mesh

Buy Now
Questions 92

A global organization with several branches hired a network architect to design an overlay VPN solution. The branches communicate with each other frequently. The customer expects to add more branches in the future. To meet the customer's security requirements, the architect plans to provide traffic protection using dynamic IPsec tunnels. Which solution should the architect choose?

Options:

A.

DMVPN

B.

EasyVPN

C.

GETVPN

D.

L2TP

Buy Now
Questions 93

An engineer is designing an IPv4 addressing plan for an enterprise with 1000 branches. Each branch requires a prefix for data and a prefix for voice. Each prefix must accommodate up to 128 hosts, and prefixes must facilitate summarization at aggregation points in the network. The security team requires a simple method for identifying voce prefixes. Which allocation does the engineer recommend from the RFC1918 address space?

Options:

A.

/24 prefixes for data from 10.0.0.0/15 and /24 prefixes for voice from 172.16.0.0/15

B.

/24 prefixes for data from 10.0.0.0/8 and /24 prefixes for voice from the next contiguous /24 prefix per site

C.

/25 prefixes for data from 10.0.0.0/8 end /25 prefixes for voice from the next contiguous /25 prefix per branch

D.

/24 prefixes for data from 10.0.0.0/8 and /24 prefixes for voice from 172.16.0.0/12

Buy Now
Questions 94

Refer to the exhibit.

EIGRP has been configured on all links. The spoke nodes have been configured as EIGRP stubs, and the WAN links to R3 have higher bandwidth and lower delay than the links to R4. When a link failure occurs at the R1-R2 link, what happens to traffic on R1 that is destined for a subnet attached to R2?

Options:

A.

R1 has no route to R2 and drops the traffic

B.

R1 load-balances across the paths through R3 and R4 to reach R2

C.

R1 forwards the traffic to R3, but R3 drops the traffic

D.

R1 forwards the traffic to R3 in order to reach R2

Buy Now
Questions 95

Which NETCONF operation creates filtering that is specific to the session notifications?

Options:

A.

B.

C.

D.

Buy Now
Questions 96

A company must automate a set of complex changes aligned with DR testing in the network. These changes are specific, and the DR playbook will be adjusted in the future. The playbook has diverse routing and switching assets in scope as well as multiple vendor and hardware platforms. A developer will create a thin, web front-end microservice and integrate with an Open daylight controller to push changes to the network. Which YANG model should be used?

Options:

A.

Use a single native vendor YANG model to minimize development time

B.

Use an open YANG model to allow the reuse of code and standardize the implementation across platforms

C.

Use multiple native vendor YANG models to provide code consistency.

D.

Develop an individualized YANG model to minimize development resources and time to market.

Buy Now
Questions 97

Refer to the exhibit. The distribution switches serve as the layer 3 boundary. HSRP preemption is enabled. When the primary switch comes back after a failure, traffic is initially dropped. Which solution must be implemented to improve the design?

Options:

A.

Increase the hello timers on both HSRP devices

B.

Use the preempt delay feature on the primary HSRP device.

C.

Use the preempt delay feature on the backup HSRP device

D.

Configure a higher mac-refresh interval on both HSRP devices

Buy Now
Questions 98

Refer to the exhibit. An architect is designing a network that requires route redistribution. The design must prevent route feedback and the creation of routing loops. The OSPF domain is using default metrics, and the IS-IS domain is using narrow metrics. Which solution must the architect select?

Options:

A.

Change the IS-IS administrative distance to 105.

B.

Change the OSPF area to a nonbackbone stub area

C.

Use route filtering with an ACL or prefix list.

D.

Use route tagging with a route map.

Buy Now
Questions 99

A network solution is being designed for a company that connects to multiple Internet service providers. Which Cisco proprietary BGP path attribute will influence outbound traffic flow?

Options:

A.

Local Preference

B.

MED

C.

Weight

D.

AS Path

E.

Community

Buy Now
Questions 100

Prior to establishing full-mesh iPsec tunnels in a typical Cisco SD-WAN deployment, which mechanism do WAN Edge routers use to exchange Key information for data plane encryption?

Options:

A.

They use vSmart controllers as key exchange servers.

B.

They use vManage as a key exchange server.

C.

They use IKEv2 when exchanging keys with each other.

D.

They use vBond as a key exchange server.

Buy Now
Questions 101

An engineer must propose a QoS architecture model that allows an application to inform the network of its traffic profile and to request a particular type of service to support its bandwidth and delay requirements. The application requires consistent and dedicated bandwidth end to end. Which QoS architecture model meets these requirements?

Options:

A.

DiffServ

B.

LLQ

C.

WRED

D.

IntServ

Buy Now
Exam Code: 300-420
Exam Name: Designing Cisco Enterprise Networks (ENSLD)
Last Update: Jun 15, 2025
Questions: 339
300-420 pdf

300-420 PDF

$33.25  $94.99
300-420 Engine

300-420 Testing Engine

$38.5  $109.99
300-420 PDF + Engine

300-420 PDF + Testing Engine

$50.75  $144.99