Question No.1

Which two BGP attributes can be set with outbound policy to manipulate inbound traffic, if honored by the remote Autonomous system (choose two)?

  1. Multi-exit discriminator (MED)

  2. AS path

  3. Local Preference

  4. Weight

Correct Answer: AB

Question No.2

While configuring a QoS policy, analysis of the switching infrastructure indicates that the switches support 1P3Q3T egress queuing. Which option describes the egress queuing in the infrastructure?

  1. The threshold configuration allows for inter-queue QoS by utilizing buffers.

  2. The priority queue must contain real-time traffic and network management traffic.

  3. The 1P3Q3T indicates one priority queue, three standard queues, and three thresholds.

  4. The priority queue should use less than 20% of the total bandwidth.

Correct Answer: B

Question No.3

If your enterprise is connected to 2 ISP, which method could you use to prevent being used as a transit network? (Choose Two)

  1. filter outbound

  2. filter inbound

  3. throw both ISP

  4. choose only one ISP

  5. Allow every routes inbound

Correct Answer: AE



Question No.4

For which engine an IPS can use its reputation awareness? (Choose two)

  1. Reputation filtering

  2. Reputation subscriptions

  3. Correlation rules

  4. Global correlation inspection

Correct Answer: AC

Explanation: https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config- guide-v60/Correlation_Policies.html

Correlation rules -gt; Connection Tracker -gt; URL Reputation

Question No.5

Two company want to merge their OSPF networks , but they run different OSPF domains. Which is option must be created to accomplished this requirement?

  1. OSPF virtual link to bridge the backbone areas of the two company together

  2. Route Summarization

  3. Static OSPF

  4. Redistribute routes between domains

Correct Answer: A

Question No.6

NAC: Simple access control at user and device contextual level. Which features are needed ? (Choose two)

  1. secure access control

  2. TrustSec

  3. ISE

  4. NAC agent

Correct Answer: CD

Question No.7

With which technology can VSS be combined to achieve better performance?

  1. MEC

  2. NSF

  3. BFD

  4. UDLD

Correct Answer: B

Question No.8

A network engineer is implementing virtualization into the enterprise network. Which system should be used to address policy enforcement at the distribution layer?

  1. Cisco IOS based firewall

  2. multilayer switches

  3. integrated firewall services

  4. identity services engine

  5. intrusion protection systems

Correct Answer: C

Question No.9

A link state routing protocol wants to connect tow separate domains, what should be configured (it#39;s a question about IS-IS)?

  1. Level 1 router

  2. Level 1 router interface

  3. Level 2 router interface

  4. Level 2 router

Correct Answer: D

Question No.10

What is an advantage of using the VPC feature in data center environment ?

  1. All available uplinks bandwidth is used.

  2. FHRP is not required

  3. A single IP is used for management of both devices

  4. The two switches form a single control plane

Correct Answer: A

