Pre-Summer Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: cramtick70

300-420 Designing Cisco Enterprise Networks (ENSLD) Questions and Answers

Questions 4

Drag and drop the characteristics from the left onto the configuration protocols they describe on the right.

Options:

Buy Now
Questions 5

An engineer is designing a network for a customer running a wireless network with a common VLAN for all APs. The customer is experiencing unicast flooding in the Layer 2 network between the aggregation and access layers. The customer wants to reduce the flooding and improve convergence time. Which solution meets these requirements?

Options:

A.

Migrate all APs to a common Layer 2 access layer switch and run Layer 3 from the aggregation layer to all remaining access layer switches.

B.

Align HSRP primary and STP root bridges and reduce ARP timers to match CAM timers on the aggregation layer switches.

C.

Migrate to a Layer 3 access campus design if the APs can run on separate VLANs.

D.

Align HSRP primary and STP root bridges if the APs cannot run on separate VLANs.

Buy Now
Questions 6

An engineer is upgrading a company’s main site to include a connection to a second ISP. The company will receive full Internet routing tables from both ISPs via BGP. The engineer must ensure that the company does not become a transit autonomous system. Which solution should be included in this design?

Options:

A.

Tag incoming routes from both ISPs with BGP community no-export.

B.

Lower the MED for updates sent to the secondary ISP.

C.

Use a route-map to prevent all prefixes from being advertised to either ISP.

D.

Modify the local-preference for routes incoming from the primary ISP.

Buy Now
Questions 7

An architect is designing a network solution for a customer The network is IPv6-only with 1000 hosts. The design must provide external access to up to 10 concurrent IPv6 hosts to allow communication with legacy IPv4 devices on an adjacent network. The customer set aside 10 IPv4 addresses to allow for one-to-one communication between hosts. Which solution must the architect select ?

Options:

A.

stateful NAT64

B.

static NAT-PT

C.

dynamic NPTv6

D.

dynamic NAT-PT

Buy Now
Questions 8

A network engineer prepares a script to configure a loopback interface with IP address 172.16.15.12/32. To comply with the company security policies, ' Content-type ' :

‘application/yang-data+json‘ is added to the script. Connection to the network devices must be secured. Which code snippet must the network engineer use to meet this requirement?

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Buy Now
Questions 9

An engineer must configure EIGRP to ensure that all WAN routes are not advertised to the routers in a data center. Which action must be taken?

Options:

A.

Configure the stub router in receive-only mode.

B.

Advertise only the default route.

C.

Summarize the local subnets.

D.

Configure the stub router in distributed mode.

Buy Now
Questions 10

In PIM sparse mode, if an RPF check is successful on a multicast-enabled device, what happens to the multicast packet?

Options:

A.

It is forwarded to all interfaces within the OIL.

B.

It is forwarded to all interfaces except for the receiving interface.

C.

Forwarded packets are dropped to prevent looping.

D.

It is forwarded to all PIM-enabled interfaces.

Buy Now
Questions 11

A client is moving to Model-Driven Telemetry and requires periodic updates. What must the network architect consider with this design?

Options:

A.

Updates that contain changes within the data are sent only when changes occur.

B.

Empty data subscriptions do not generate empty update notifications.

C.

Periodic updates include a full copy of the data that is subscribed to.

D.

The primary push update is sent immediately and cannot be delayed.

Buy Now
Questions 12

An engineer needs to design a management network for the company. The solution has these requirements:

    overlay network does not cause routing issues

    ease of troubleshooting for the operations team

    devices are accessed securely

Which solution meets these requirements?

Options:

A.

VRF for management traffic and SSH keys for device access

B.

Private VLANs for management traffic and TACACS+ for device access

C.

Separate physical interfaces for management traffic and TACACS+ for device access

D.

VLANs for management traffic and RADIUS for device access

Buy Now
Questions 13

Which nonproprietary mechanism can be used to automate rendezvous point distribution in a large PIM domain?

Options:

A.

Embedded RP

B.

BSR

C.

Auto-RP

D.

Static RP

Buy Now
Questions 14

Refer to the exhibit. A customer experienced an unexpected network outage when the link between R1 and R2 went down. An architect must design a solution to ensure network continuity in the event the link fails again. Which solution should the design include?

Options:

A.

Make R31 an L1 router.

B.

Make R3 an L1L2 router

C.

Make Area 0 L2-only

D.

Make R11 an L2 router.

Buy Now
Questions 15

What is the purpose of the fabric management plane in a Cisco SD-Access architecture?

Options:

A.

create LISP-based EID for the end-to-end solution that is offered by SD-Access

B.

enable EID-to-RLOC mapping that is based on the BGP protocol

C.

create an underlay network that is based on the IS-IS routing protocol

D.

enable automation techniques for device deployments and configurations

Buy Now
Questions 16

A company uses cloud-based applications for voice and video calls, file sharing, content sharing, and messaging. During business hours, these applications randomly become slow and unresponsive. However, other applications work smoothly with the current applied QoS polices. Which solution must the company choose to resolve the issue?

Options:

A.

Identify the applications with NBAR2 and allocate the required bandwidth accordingly.

B.

Identify the port used by each application and apply a minimum bandwidth guarantee.

C.

Identify the applications and reserve the required bandwidth on the perimeter routers.

D.

Identify the application ports, create groupings, and rate-limit the required bandwidth.

Buy Now
Questions 17

An engineer is creating a design to enable IPv6 to run on an existing IPv4 IS-IS network. The IPv4 and IPv6 topologies will match exactly, and the engineer plans to use the same router levels for each protocol per interface. Which IS-IS design is required?

Options:

A.

single topology without enabling transition feature

B.

single topology with transition feature enabled

C.

multi topology with transition feature enabled

D.

multi topology without enabling transition feature

Buy Now
Questions 18

Refer to the exhibit. An engineer must connect the IPv6 island to the IPv4-only network to provide IPv6 hosts access to file servers and DNS services in the IPv4 network. Which NAT should the engineer choose?

Options:

A.

stateless NAT66

B.

stateful NAT66

C.

static NAT-PT

D.

dynamic NAT-PT

Buy Now
Questions 19

An architect must design a plan to manage the enterprise network devices. The design must accommodate that:

    not all network devices have a dedicated management interface

    all IP-enabled interfaces on all devices must be reachable

    encryption must be used with all devices which have support

Which solution must the architect choose?

Options:

A.

KVM server

B.

in-band

C.

out-of-band

D.

terminal server

Buy Now
Questions 20

What is a feature of the SaaS subscription model?

Options:

A.

web connection not required

B.

access to industrial-strength storage and computing power

C.

autonomy and control over hardware

D.

tower initial costs

Buy Now
Questions 21

A customer’s environment includes hosts that support IPv6-only. Several of these hosts must communicate with a public web server that has only IPv4 domain name resolution. Which solution should the customer use in this environment?

Options:

A.

utilize NAT64 to translate the addresses

B.

Implement NAT44 at the edge of the customer network

C.

use 6to4 and a tunnel to translate the addresses

D.

implement 6PE to resolve hostname resolution

Buy Now
Questions 22

Refer to the exhibit. An architect must ensure a convergence time of 200 ms or less during a link failure within area 0. In addition, the solution must not impact the overall performance of the network. Which solution must the architect select?

Options:

A.

UDLD

B.

BFD

C.

fast hellos

D.

carrier delay

Buy Now
Questions 23

Drag and drop the descriptions from the left onto the categories they apply to on the right.

Options:

Buy Now
Questions 24

Which feature minimizes HOC connections and reduces strain on the vSmart controller m an SO-WAN architecture?

Options:

A.

control-connections

B.

corrtroWirection

C.

color

D.

affinity

Buy Now
Questions 25

Which design achieves SD-WAN control plane redundancy?

Options:

A.

Configuring BFD on the WAN Edge routers

B.

Using multiple instances of vManage in clusters

C.

Deploying using a virtual platform like UCS or CSP

D.

Managing the underlay network with OMP

Buy Now
Questions 26

What is the purpose of a control plane node in a Cisco SD-Access network fabric?

Options:

A.

to maintain the endpoint database and mapping between endpoints and edge nodes

B.

to detect endpoints in the fabric and inform the host tracking database of EID-to-fabric-edge node bindings

C.

to identify and authenticate endpoints within the network fabric

D.

to act as the network gateway between the network fabric and outside networks

Buy Now
Questions 27

The customer solution requires QoS to support streaming multimedia over a WAN. An architect chooses to use Per-Hop Behavior. Which solution should the engineer use to of mark traffic traveling between branch sites?

Options:

A.

LLQ with DSCP EF

B.

CBWFQ with DSCP AF3

C.

CBWFQ with DSCP AF2

D.

LLQ with DSCP AF4

Buy Now
Questions 28

An engineer is designing a QoS policy that queues excess packets for later transmission. Which mechanism must be included in the design?

Options:

A.

shaping

B.

WRED

C.

policing

D.

RED

Buy Now
Questions 29

What is a logical topology in a Cisco SD-Access architecture considered to be when it is used to virtually connect devices that are built on an arbitrary physical network?

Options:

A.

data plane

B.

control plane

C.

underlay

D.

overlay

Buy Now
Questions 30

Refer to the exhibit.

C0FD9 F48C9ACDC725EA850EC2476EE1E

An architect must design a solution that uses the direct link between R1 and R2 for traffic from 10.10.10.0/24

toward network 10.10.20.0/24. Which solution should the architect include in the design?

Options:

A.

Configure the OSPF cost of the link to a value lower than 30.

B.

Lower the Administrative Distance for OSPF area 0.

C.

Place the link into area 2 and install a new link between R1 and R2 in area 0.

D.

Configure the link to provide multiarea adjacency.

Buy Now
Questions 31

Company A recently acquired another company. Users of the newly acquired company must be able to access a server that exists on Company A’s network, both companies use overlapping IP address ranges. Which action conserves IP address space and provides access to the server?

Options:

A.

Use a single IP address to create overload NAT

B.

Use a single IP address to create a static NAT entry

C.

Build one-to-one NAT translation for every user that needs access

D.

Re-IP overlapping address space in the acquired company

Buy Now
Questions 32

Exhibit:

Options:

A.

Make R3 an L1L2 router.

B.

Make R31 an L1 router.

C.

Make Area 0 L2-only.

D.

Make R11 an L2 router.

Buy Now
Questions 33

Refer to the exhibit. An engineer is designing an OSPF network for a client. Requirements dictate that the routers in Area 1 should receive all routes belonging to the network, including EIGRP, except the ones originated in the RIP domain. Which action should the engineer take?

Options:

A.

Make area 1 a NSSA.

B.

Make area 1 a stub.

C.

Make area 1 a standard OSPF area.

D.

Make the area 1 routers part of area 0.

Buy Now
Questions 34

Which method will filter routes between EIGRP neighbors within the same autonomous system?

Options:

A.

distribute-list

B.

policy-based routing

C.

leak-map

D.

route tagging

Buy Now
Questions 35

Which node performs the LISP Map-Server and Map-Resolver functions in the Cisco SD-Access network architecture?

Options:

A.

control plane node

B.

fabric edge node

C.

border node

D.

intermediate node

Buy Now
Questions 36

An engineer must design a solution to connect a customer to the Internet. The solution will include a Layer 3 circuit with a CIR of 50 Mbps from the service provider. The hand-off from the provider ' s switch to the customer ' s router is 1Gbps. Which solution should the engineer include to prevent potential issues with choppy voice traffic?

Options:

A.

Reduce the bandwidth of the connection to the router.

B.

Implement hierarchical QoS with a parent policing policy.

C.

Implement hierarchical QoS with a parent shaping policy.

D.

Add a bandwidth statement to the router interface.

Buy Now
Questions 37

An engineer must design a QoS solution for a customer. The network currently supports data only, but the

customer will roll out VoIP and IP video in conjunction with the new QoS solution. The engineer plans to use

DiffServ. To ensure priority for voice services, which model must the design include?

Options:

A.

8-class model

B.

4-class model

C.

6-class model

D.

12-class model

Buy Now
Questions 38

Options:

Buy Now
Questions 39

Drag and drop the Cisco SD-WAN components from the left onto their definitions on the right.

Options:

Buy Now
Questions 40

Mobile service provider “A” is going to launch 5G support with the ISP “B” IP network backbone as the underlay transport. Conversational traffic type will be marked with expedited forwarding class, streaming services will be marked with assured forwarding 2 class, and web browsing will be marked with assured forwarding 3 class. Which QoS model meets these requirements if the solution is to be implemented end to end on the ISP_B backbone network?

Options:

A.

6-class QoS strategy with IntServ model

B.

8-class QoS strategy with DiffServ model

C.

12-class QoS strategy with IntServ model

D.

4-class QoS strategy with DiffServ model

Buy Now
Questions 41

Refer to the exhibit.

An architect must design an IGP solution for an enterprise customer. The design must support:

Physical link flaps should have minimal impact.

Access routers should converge quickly after a link failure.

Which two ISIS solutions should the architect include in the design? (Choose two.)

Options:

A.

Use BGP to IS-IS redistribution to advertise all Internet routes in the Level 1 area.

B.

Advertise the IS-IS interface and loopback IP address toward the Internet and data center.

C.

Reduce SPF and PRC intervals to improve convergence time.

D.

Configure all access and aggregate routers to establish Level 1 / Level 2 adjacencies across the network.

E.

Configure access routers to establish a Level 1 adjacency and aggregate routers to establish a Level 1 /

Level 2 adjacency.

Buy Now
Questions 42

Which function are fabric intermediate nodes responsible for in an SD-Access Architecture?

Options:

A.

mapping EIDs to RLOCs

B.

encapsulating user traffic in a VXLAN header including the SGT

C.

registering new endpoints in the HTDB

D.

transporting IP packets between edge nodes and border nodes

Buy Now
Questions 43

At which layer does Cisco Express Forwarding use adjacency tables to populate addressing information?

Options:

A.

    Layer4

B.

    Layer 2

C.

    Layer 1

D.

    Layer 3

Buy Now
Questions 44

Refer to the exhibit An engineer working for a telecommunication company with an employee ID 4449:30 959 Is calculating STP scalability for switches to ensure that the numbers are below the maximum supported value for STP logical ports How many logical interfaces are active for switch A?

Options:

A.

4

B.

307

C.

202

D.

100

Buy Now
Questions 45

Refer to the exhibit.

An architect must design an IPv6 migration solution for an enterprise customer to support these requirements:

* Clients will transition to the new IPv6 network, which provides NAT64 and IPv6 DNS resolution services, using the same DNS name that points to the IPv4 address.

* The service provider will create a client-facing IPv6 interface with a new IPv6 virtual address that points to the same IPv4 DNS server.

* The service provider will support clients that use global IPv6 addresses and encapsulate IPv4 packets into IPv6 tunnels.

Which two migration solutions must the architect choose? (Choose two.)

Options:

A.

Use dual-stack lite from the MPLS network to the IGR.

B.

Use IPv6 tunneling from the devices to the core MPLS network.

C.

Use dual-stack lite from the devices to the core MPLS network.

D.

Use NAT44/64 from the MPLS network to the IGR.

E.

Use NAT44/64 from the devices to the core MPLS network.

Buy Now
Questions 46

Refer to the exhibit.

C0FD9F48 C9ACDC725EA850EC2476EE1E

A network engineer is designing a network for AS100. The design should ensure that all traffic enters AS100

via link 1 unless there is a network failure. In the event of a failure, link 2 should function as the path for

incoming traffic. Which solution should the design include?

Options:

A.

Modify the next-hop attribute on R3.

B.

Use AS-Path prepending on R3.

C.

Modify the next-hop attribute on R4.

D.

Use AS-Path prepending on R4.

Buy Now
Questions 47

What is a primary capability of the cloud-based services model in an IaaS deployment?

Options:

A.

It provides workload-migration capabilities, which allows seamless movement of virtual machines and applications between on-premises infrastructure and the cloud.

B.

It reduces operational costs and increases flexibility by allowing organizations to pay for only the resources they consume.

C.

It provides the ability to scale resources up or down based on demand, which enables an organization to adjust its computing capacity dynamically.

D.

It leverages advanced orchestration and automation tools to streamline resource provisioning and management, which reduces manual effort and improves operational efficiency.

Buy Now
Questions 48

Refer to the exhibit An architect is designing an IPv4 plan using the 172 20 0.0/16 network The design must maximize the number of subnets and minimize the number of wasted IP addresses In addition, the plan must allocate a subnet to these customers and links

    Customer A, which supports 125 hosts

    Customer D, which supports 62 hosts

    Links B C. and E

Which two configuration sets meet these requirements ' ? (Choose two)

A)

B)

C)

D)

E)

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Buy Now
Questions 49

Which WAN connectivity technology is optimal for edge computing compared to others and why?

Options:

A.

Due to low latency, high bandwidth, and closest proximity to the user. 4G/5G connectivity is the optimal WAN technology for edge computing compared to L3 VPN MPLS connectivity, which offers native separation and security with close proximity to the data center.

B.

Due to high bandwidth, separation and security, and proximity to the data center network. DWDM Is the optimal WAN technology lor edge computing compared to 4G/5G connectivity, which offers native separation and security with close proximity to the data center.

C.

Due to low latency, high bandwidth, and closest proximity to the user, L3 VPN MPLS connectivity is the optimal WAN technology for edge computing compared to 4G/5G connectivity, which offers native separation and security with close proximity to the data center.

D.

Due to low cost, high bandwidth, low latency, and closest proximity to the edge of the network, Mero Ethernet is the optimal WAN technology for edge computing compared to MPLS, which offers native separation and security with close proximity to the data center.

Buy Now
Questions 50

A router running ISIS is showing high CPU and bandwidth utilization. An engineer discovers that the router is configured as L1/L2 and has L1 and L2 neighbors. Which step optimizes the design to address the issue?

Options:

A.

Make this router a DIS for each of the interfaces

B.

Disable the default behavior of advertising the default route on the L1/L2 router

C.

Configure the router to be either L1 or L2

D.

Configure each interface as either L1 or L2 circuit type

Buy Now
Questions 51

Refer to the exhibits. An engineer is troubleshooting an issue in which the Gig0/2 interface on a Cisco switch named SW2 fails to become the root port. Which two commands must be run on SW2 to resolve this issue? (Choose two.)

A)

B)

C)

D)

E)

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

E.

Option E

Buy Now
Questions 52

An architect must design a QoS model for a business-critical application that Is delay-sensitive and requires high bandwidth. The company ' s head office hosts the application, and DMVPN tunnels protected with IPsec provide connectivity between the head office and branches. Which solution must the architect choose?

Options:

A.

RSVP

B.

IntServ

C.

WRED

D.

DiffServ

Buy Now
Questions 53

Which feature minimizes TLOC connections and reduces strain on the vSmart controller in an SD-WAN architecture?

Options:

A.

control-direction

B.

affinity

C.

color

D.

control-connections

Buy Now
Questions 54

An architect is designing a network that will utilize the spanning tree protocol to ensure a loop-free topology. The network will support an engineering environment where it is necessary for end users to connect their own network switches for testing purposes. Which feature should the architect include in the design to ensure the spanning tree topology is not affected by these rogue switches?

Options:

A.

BPDU Skew Detection

B.

BPDU guard

C.

loop guard

D.

root guard

Buy Now
Questions 55

Which two statements about VRRP advertisements are true? (Choose two.)

Options:

A.

    They are sent from the master router and standby routers.

B.

    They include VRRP timer information.

C.

    They are sent only from the master router.

D.

    They include priority information.

E.

    They are sent every three seconds by default.

Buy Now
Questions 56

What is the main purpose of the Cisco SD-Access underlay design?

Options:

A.

to enable automated network provisioning and configuration

B.

to support advanced firewall and IPS features

C.

to optimize network traffic routing and load-balancing

D.

to provide network segmentation and isolation for security

Buy Now
Questions 57

Drag and drop the model- driven telemetry considerations from the left onto the modes they apply to on the right.

Options:

Buy Now
Questions 58

A company is using OSPF between its HQ location and a branch office. HQ is assigned area 0 and the branch office is assigned area 1. The company purchases a second branch office, but due to circuit delays to HQ, it

decides to connect the new branch office to the creating branch office as a temporary measure. The new branch office is assigned area 2. Which OSPF configuration enables all three locations to exchange routes?

Options:

A.

The existing branch office must be configured as a stub area

B.

A virtual link must be configured between the new branch office and HQ

C.

A sham link must be configured between the new branch office and HQ

D.

The new branch office must be configured as a stub area

Buy Now
Questions 59

In a Cisco SD-Access fabric, switch node Is equivalent to an access layer switch In a traditional three-tier campus network design?

Options:

A.

edge node

B.

border node

C.

intermediate node

D.

control plane node

Buy Now
Questions 60

An engineer is designing a Layer 3 campus network running EIGRP between the core, aggregation, and access layers. The access layer switches will be connected to the aggregation layer using Layer 3 copper connections. The engineer wants to improve convergence time for access layer switch failures. Which technique must the design include?

Options:

A.

enabling BFD for EIGRP on the access layer uplinks

B.

reducing the EIGRP Hello / Hold timer values

C.

EIGRP summarization from core to aggregation layer

D.

EIGRP summarization from access to aggregation layer

Buy Now
Questions 61

An engineer working for a service provider with an employee ID 4598.48.606 prepared several designs for a traditional campus network. The design must allow the deployment on the same VXLAN to any switch at the access layer and must support:

    Fast convergence

    High availability

    Resilience

Which design must be selected?

Options:

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Buy Now
Questions 62

A customer ' s current Layer 2 infrastructure is running Spanning Tree 802.1d, and all configuration changes are manually implemented on each switch. An architect must redesign the Layer 2 domain to achieve these goals:

    reduce the impact of topology changes

    reduce the time spent on network administration

    reduce manual configuration errors

Which two solutions should the architect include in the new design? (Choose two.)

Options:

A.

Implement Rapid PVST+ instead of STP.

B.

Implement MST instead of STP.

C.

Use VTP to propagate VLAN information and to prune unused VLANs.

D.

Configure broadcast and multicast storm control on all switches.

E.

Configure dynamic trunking protocol to propagate VLAN information.

Buy Now
Questions 63

An architect must develop a campus network solution that includes:

logically segmented and isolated networks

ability to communicate between network segments when required

support for overlapping IP addresses

widely available technologies to avoid purchasing specialized equipment

Which solution must the architect select?

Options:

A.

VSS with IGP

B.

802.1Q with HSRP

C.

vPC with HSRP

D.

VRF-Lite with OSPF

Buy Now
Questions 64

What is a benefit of using VRRPv3 as compared to VRRPv2?

Options:

A.

VRRPv3 supports IPv4 and IPv6

B.

VRRPv3 supports authentication

C.

VRRPv3 supports preemption

D.

VRRPv3 supports stateful switchover

Buy Now
Questions 65

A network engineer must design an MSDP multicast solution to provide RP resilience in a network with two separate domains. Also, multicast sources and receivers must register with the local RP. Which solution must the engineer choose?

Options:

A.

Configure the RP has value to 0, and traffic will route to the closest RP

B.

Configure the RP loopback interface with the same IP address/32, and traffic will route to the closest RP

C.

Configure the RP group ranges to split the multicast traffic, and traffic will route to the longest match

D.

Configure the RP priority with the same value, and traffic will route to the closest RP

Buy Now
Questions 66

Drag and drop the characteristics from the left onto the correct telemetry mode on the right.

Options:

Buy Now
Questions 67

Refer to the exhibit. An architect is designing a Layer 2 network for a customer. The network will use the spanning-tree protocol. During a link failure between SW1 and SW2, the fastest possible convergence time is desired. Which solution must the architect select?

Options:

A.

Loop Guard

B.

UplinkFast

C.

PortFast

D.

BackboneFast

Buy Now
Questions 68

Which PIM mode uses a shared tree only?

Options:

A.

bidirectional

B.

sparse

C.

dense

D.

source-specific

Buy Now
Questions 69

Which information update is carried by OMP and enables the Cisco SD-WAN to build a secure overlay fabric on top of any public or private transport without regard for the actual link IP?

Options:

A.

TLOC

B.

RLOC

C.

LISP PITR

D.

DTLS

Buy Now
Questions 70

Refer to the exhibit. The connection between SW2 and SW3 is fiber and occasionally experiences unidirectional link failure. An architect must optimize the network to reduce the change of layer2 forwarding loops when the link fails. Which solution should the architect include?

Options:

A.

Utilize 8PDU filter on SW3.

B.

Utilize loop guard on SW2

C.

Utilize BPDU guard on SW1

D.

Utilize root guard on SW1.

Buy Now
Questions 71

An enterprise customer has these requirements:

    end-to-end QoS for the business-critical applications and VoIP services based on CoS marking.

    flexibility to offer services such as IPv6 and multicast without any reliance on the service provider.

    support for full-mesh connectivity at Layer 2.

Which WAN connectivity option meets these requirements?

Options:

A.

VPWS

B.

MPLS VPN

C.

DMVPN

D.

VPLS

Buy Now
Questions 72

Which two routing protocols allow for unequal cost load balancing? (Choose two.)

Options:

A.

EIGRP

B.

IS-IS

C.

BGP

D.

OSPF

E.

RIPng

Buy Now
Questions 73

Refer to the exhibit A customer requires a Layer 2 network designed to support:

    500 active logical ports

    trunking of 30 VLANs

    convergence of less than 1 second

Which Spanning Tree Protocol must be selected?

Options:

A.

RPVST+

B.

MSTP

C.

CST

D.

PVST+

Buy Now
Questions 74

Refer to the exhibit. An engineer must ensure that the QoS design guarantees bandwidth for the applications, and an application can request a particular type of service to support its delay requirements. Which solution must the engineer select?

Options:

A.

IntServ with DSCP

B.

DiffServ with DSCP

C.

IntServ with RSVP

D.

DiffServ with RSVP

Buy Now
Questions 75

A company plans to deploy a new application across the campus network and asks an engineer to create a QoS policy. The application has these characteristics:

    UDP-based

    inelastic flows

    sensitive to delay over 100 milliseconds

    sensitive to jitter over 50 milliseconds

The appropriate bandwidth is allocated and assigned to the queues. Which mechanism must the engineer use to manage the flows that exceed the configured threshold?

Options:

A.

policing

B.

scheduling

C.

remarking

D.

shaping

Buy Now
Questions 76

An engineer is designing a BGP solution supporting a VXLAN environment over a Layer 3 IPv4 network fabric with these requirements

    provide Layer 2 adjacency

    allow VM migration of workloads between sites

    IGP is OSPF

Which BGP address family must the engineer choose?

Options:

A.

VPNv4

B.

IPv4 unicast

C.

L2VPN VPLS-VPWS

D.

L2VPNEVPN

Buy Now
Questions 77

A network engineer must optimize a campus OSPF deployment Currently each time a type 1 or type 2 LSA is generated within an area, the OSPF process must recompute the entire SPT Which solution improves the recomputation process?

Options:

A.

iSPF

B.

BFD

C.

SPF

D.

PRC

Buy Now
Questions 78

An engineer must establish a direct connection between two remote offices. The new connection must be established using a logical path, share a common broadcast domain, connect over private WAN, and have as little overhead as possible. Which technology must the engineer choose?

Options:

A.

L2VPN

B.

GET VPN

C.

IPsec

D.

GRE

Buy Now
Questions 79

How is sub-second failure of a transport link detected in a Cisco SD-WAN network?

Options:

A.

Hellos are sent between the WAN Edge routers and the vSmart controller.

B.

BFD runs on the IPsec tunnels between WAN Edge routers.

C.

BGP is used between WAN Edge routers and the vSmart controller.

D.

Link state change messages are sent between vSmart controllers.

Buy Now
Questions 80

A large chain of stores currently uses MPLS-based T1 lines to connect their stores to their data center. An architect must design a new solution to improve availability and reduce costs while keeping these considerations in mind:

» The company uses multicast to deliver training to the stores.

» The company uses dynamic routing protocols and has implemented QoS.

» To simplify deployments, tunnels should be created dynamically on the hub when additional stores open.

Which solution should be included in this design?

Options:

A.

VPLS

B.

GET VPN

C.

DMVPN

D.

IPsec

Buy Now
Questions 81

An architect is creating a migration strategy for a large organization in which the choice made by the application between IPv6 and IPv4 is based on the DNS request. Which migration strategy does the architect choose?

Options:

A.

AFT for public web presence

B.

host-initiated tunnels

C.

dual stack

D.

site-to-site IPv6 over IPv4 tunnels

Buy Now
Questions 82

Refer to the exhibit. A network architect is preparing a network design based on EIGRP. Routers are connected using a Cat6a cable type and the inter-router connection speed is limited to 10 Mbps due to distance. During the pilot phase, a DUAL-3-SIA error message is visible. Which action must the engineer take to create a stable design?

Options:

A.

Enable poison reverse on R4.

B.

Create a summary route on R2.

C.

Disable split horizon on R1.

D.

Configure STUB area on R4.

Buy Now
Questions 83

An engineer is designing an EIGRP network for a small branch site where there is only one Layer 3 router. The engineer wants the router to advertise the local LAN network to remote EIGRP neighbors without sending any unnecessary multicast messages on the local LAN. Which action should the engineer take?

Options:

A.

Use a static default route for this site instead of EIGRP

B.

Advertise the local LAN using the network command and the passive-interface feature

C.

Redistribute the local LAN network using the redistribute connected command

D.

Advertise the local LAN subnet as a stub network

Buy Now
Questions 84

Drag and drop the steps WAN Edge performs when on-boarded into the Cisco SD-WAN overlay from the left into the order they are completed on the right.

Options:

Buy Now
Questions 85

Which type of rendezvous point deployment is standards-based and supports dynamic RP discovery?

Options:

A.

bootstrap router

B.

Anycast-RP

C.

Auto-RP

D.

static RP

Buy Now
Questions 86

Refer to the exhibit A customer requires maximum uptime for the data plane between R1 and R3 running OSPF Which solution must the design include for high availability if the routing process on R2 requires maintenance?

Options:

A.

BFD on all routers

B.

nonstop forwarding on R1 and R3

C.

nonstop forwarding on R3 only

D.

graceful restart on all routers

Buy Now
Questions 87

Which AES mode should be used in a Cisco SD-WAN environment that includes multicast applications?

Options:

A.

Cipher Feedback (CFB)

B.

Cipher Block Chaining (CBC)

C.

Galois/Counter Mode (GCM)

D.

Electronic Code Book (ECB)

Buy Now
Questions 88

An engineer uses Postman and YANG to configure a router with:

    OSPF process ID 400

    network 192.168.128.128/25 enabled for Area 0

Which get-config reply verifies that the model set was designed correctly?

Options:

A.

B.

C.

D.

Buy Now
Questions 89

Which routes does the overlay management protocol advertise in an SD-WAN overlay?

Options:

A.

underlay, MPLS, and overlay

B.

primary, backup, and load-balanced

C.

prefix, TLOC, and service

D.

Internet, MPLS, and backup

Buy Now
Questions 90

Refer to the exhibit. An architect must design a solution to connect the network behind R3 with the EIGRP network. Which mechanism should be included to avoid routing loops?

Options:

A.

split-horizon

B.

summarization

C.

down bit

D.

route tags

Buy Now
Questions 91

Which NETCONF operation creates filtering that is specific to the session notifications?

Options:

A.

< create-subscription >

B.

< commit >

C.

< notification >

D.

< logging >

Buy Now
Questions 92

Which encoding languages are supported in NETCONF compared to RESTCONF?

Options:

A.

NETCONF supports XML and JSON, and RESTCONF supports XML.

B.

NETCONF supports XML, and RESTCONF supports JSON.

C.

NETCONF supports JSON, and RESTCONF supports XML.

D.

NETCONF supports XML, and RESTCONF supports XML and JSON.

Buy Now
Questions 93

Refer to the exhibit. An architect is designing an ISIS network for a customer migrating from IPv4 to IPv6. The current network uses narrow metrics, and the IPv6 areas will increase to 10 within the next two years. Also, IPv6 traffic must not blackhole in IPv4 network during the migration. Which two solutions must the architect choose? (Choose two.)

Options:

A.

multi-topology enabled under address-family ipv6 on C1 and C2

B.

metric-style transition enabled on all routers

C.

multi-topology enabled under address-family ipv6 on E1 and E2

D.

metric-style transition enabled on C1 and C2

E.

metric-style transition enabled on E1 and E2

Buy Now
Questions 94

Refer to the exhibit. An architect must create a stable and scalable EIGRP solution for a customer. The design must:

•conserve bandwidth, memory, and CPU processing

•prevent suboptimal routing

•avoid any unnecessary queries

Which two solutions must the architect select? (Choose two.)

Options:

A.

route summarization

B.

prefix lists

C.

distribute lists

D.

stub routing

E.

static redistribution

Buy Now
Questions 95

A company wants to switch from static to dynamic routing. The branches use DMVPN back to the hub using two internet connections. One internet connection speed is 10 Mbps, and the other is 100 Mbps. All locations use Cisco routers; however, the branch routers have limited memory and CPU resources. Which routing protocol and design solution must the company choose for optimal traffic forwarding during peak traffic times?

Options:

A.

iBGP with the hub routers set up as route reflectors

B.

OSPF deployed in area 0 with branch routers connected back via virtual links

C.

EIGRP with branch routers as stub routers and variance enabled

D.

ISIS with the hub and spoke routers configured in two different areas

Buy Now
Questions 96

An engineer must design a QoS solution for a customer that is connected to an ISP over a 1Gbps link with a 100Mbps CIR. The ISP aggressively drops all traffic received over which is causing numerous TCP retransmissions. The customer is not using any RTP applications but wants to maximize bandwidth usage up to the CIR. Which QoS solution engineer choose?

Options:

A.

Policing

B.

Traffic shaping

C.

Policer with markdown

D.

Queuing

Buy Now
Questions 97

What is a challenge of the SaaS model?

Options:

A.

higher initial costs

B.

lack of application and infrastructure control

C.

requires upgrades to individual computers to meet performance requirements

D.

higher application and data integration complexity

Buy Now
Questions 98

A branch office has a primary L3VPN MPLS connection back to the main office and an IPSEC VPN tunnel that serves as backup. Which design ensures that data is sent over the backup connection only if the primary MPLS circuit is down?

Options:

A.

Use EIGRP to establish a neighbor relationship with the main office via

B.

L3VPN MPLS and the IPSEC VPN tunnel.

C.

Use BGP with the multipath feature enabled to force traffic via the primary path when available.

D.

Use static routes tied to an IP SLA to prefer the primary path while a floating static route points to the backup connection.

E.

Use OSPF with a passive-interface command on the backup connection.

Buy Now
Questions 99

A company wants to switch from static routing to a dynamic routing protocol to ease the administrative and operational overhead. The network topology is hub and spoke, and the branches use DM VPN back to the hub with two 10-Mbps internet connections. The branch routers are multivendor and have limited memory and CPU resources. Which routing protocol and design solution meets the requirements?

Options:

A.

eBGP with the hub routers set up as route reflectors

B.

ISIS with the hub and spoke routers configured in two different areas

C.

EIGRP with branch routers as stub routers and variance enabled

D.

OSPF with the hub in area 0 and branch routers in stub areas with ECMP

Buy Now
Questions 100

A company requires a private WAN design that allows remote sites to connect to HQ. The design must ensure that:

    traffic is always encrypted

    forwarding overhead is reduced

    management of security is centralized

    multicast traffic is supported

Which technology must the company select?

Options:

A.

IPsec P2P

B.

mGRE

C.

DMVPN Phase 3

D.

GET VPN

Buy Now
Questions 101

What is the purpose of service routes in OMP updates?

Options:

A.

specify routes toward a centralized orchestration plane

B.

describe underlay transport Information

C.

define the remote management Information

D.

indicate services that are enabled for service insertion

Buy Now
Questions 102

Refer to the exhibit. A network engineer is designing an OSPF solution to connect a company ' s remote to a newly provisioned MPLS VPN backbone. Some of the branches have a direct dark fiber connection between each other. The engineer wants to ensure that the dark fibers are used only when the MPLS core is unavailable. Which solution must the engineer choose?

Options:

A.

Stub area

B.

Sham link

C.

Virtual link

D.

NSSA

Buy Now
Questions 103

Which design consideration must be made when dual WAN Edge routers are deployed at a branch site?

Options:

A.

Use BGP AS-path prepending to influence egress traffic and use MED to influence ingress traffic from the branch.

B.

HSRP priorities must match the OMP routing policy to prefer one WAN Edge over the other.

C.

Traffic must be symmetrical as it egresses the WAN Edges and returns from remote sites for DPI to function properly.

D.

Configure BFD between WAN Edge routers to detect sub-second link failures.

Buy Now
Questions 104

Which component is part of the Cisco SD-Access overlay architecture?

Options:

A.

border node

B.

spine node

C.

leaf node

D.

Cisco DNA Center

Buy Now
Questions 105

In Cisco SD-Access. virtual networks create segmentation that allows for separation of users and resources. How is this type of segmentation described?

Options:

A.

macro

B.

inter-VN

C.

micro

D.

stretctied

Buy Now
Questions 106

Drag and drop the description from the left onto the corresponding WAN connectivity types and categories on the right.

Options:

Buy Now
Questions 107

Refer to the exhibit. A company developed an application to offer its customers and now it must be deployed. The application deployment must meet these requirements:

Options:

A.

Connect the two firewalls. Deploy the application in DC1 and DC2. Use IP SLA to control advertisements from DC2.

B.

Connect the two firewalls. Deploy the application in DC1 and DC2. Advertise the same prefix from DC1 and DC2.

C.

Deploy the application in DC1 and DC2. Advertise the prefix from DC1 with /32. Advertise the prefix from DC2 with /24.

D.

Deploy the application in DC1 and DC2. Advertise the same prefix from DC1 and DC2. Distribute traffic flows.

Buy Now
Questions 108

Refer to the exhibit An engineer is designing a hierarchical ISIS solution for an enterprise customer with these requirements

    Users in areas 25 and 55 send and receive traffic from both backbone areas

    Link flaps in areas 35 and 45 must not impact other areas

    Routers will double within the next 12 months in areas 35 and 45

Which design must the engineer select?

Options:

A.

A series routers Level 2, B series routers Level 2, and C series routers Level 1

B.

A series routers Level 1/2 B series routers Level 2 and C series routers Level 2

C.

A series routers Level 1. B series routers Level 1/2. and C series routers Level 2

D.

A series routers Level 1.2 B series routers Level 1/2 and C series routers Level 1/2

Buy Now
Questions 109

Refer to the exhibit. An architect is designing a network that requires route redistribution. The design must prevent route feedback and the creation of routing loops. The OSPF domain is using default metrics, and the IS-IS domain is using narrow metrics. Which solution must the architect select?

Options:

A.

Change the IS-IS administrative distance to 105.

B.

Change the OSPF area to a nonbackbone stub area

C.

Use route filtering with an ACL or prefix list.

D.

Use route tagging with a route map.

Buy Now
Questions 110

Refer to the exhibit. An engineer must design an address translation solution to provide Internet connectivity for the corporate network. The design Is restricted to the 172.16.168.0/22 subnet. Which solution must the engineer choose?

Options:

A.

stateful NAT64

B.

stateless NAT64

C.

stateful NAT66

D.

stateless NAT66

Buy Now
Questions 111

How do IETF. OpenConfig and Cisco nativo YANG models differ when used to configuro the same feature on an infrastructure device?

Options:

A.

OpenConfig models are more comprehensive than IETF.

B.

Cisco native models are less comprehensive than OpenConfig.

C.

Cisco native models are less comprehensive than IETF.

D.

IETF models are more comprehensive than OpenConfig.

Buy Now
Questions 112

A company is planning to open two new branches and allocate the 2a01:c30:16:7009::3800/118 IPv6 network for the region. Each branch should have the capacity to accommodate maximum of 200 hosts. Which two networks should the company use? (Choose two.)

Options:

A.

2a01:0c30:0016:7009::3a00/120

B.

2a01:0c30:0016:7009::3b00/121

C.

2a01:0c30:0016:7009::3a80/121

D.

2a01:0c30:0016:7009::3b00/120

E.

2a01:0c30:0016:7009::3c00/120

Buy Now
Exam Code: 300-420
Exam Name: Designing Cisco Enterprise Networks (ENSLD)
Last Update: May 21, 2026
Questions: 339
300-420 pdf

300-420 PDF

$28.5  $94.99
300-420 Engine

300-420 Testing Engine

$33  $109.99
300-420 PDF + Engine

300-420 PDF + Testing Engine

$43.5  $144.99