Get Latest [Apr-2023] Conduct effective penetration tests using ValidExam 300-420
Penetration testers simulate 300-420 exam PDF
NEW QUESTION # 56
Drag and drop the components in a Cisco SD-Access architecture from the left onto their descriptions on the right.
Answer:
Explanation:

NEW QUESTION # 57
Drag and drop the steps WAN Edge performs when on-boarded into the Cisco SD-WAN overlay from the left into the order they are completed on the right.
Answer:
Explanation:
Explanation
Table Description automatically generated with low confidence
NEW QUESTION # 58
Refer to the exhibit.
An architect is designing an EIGRP solution based on these requirements:
* Traffic forwarding should use the best two paths while all links are available
* Single path failure must not impact traffic between branch and HQ
Which solution must the architect select?
- A. Metric weights 010100
- B. Variance 2
- C. Maximum-paths 2
- D. Add-paths 2
Answer: B
Explanation:
ENSLD cert guide page 113. shortest path = 900, next 1700 and finally 3300 for the worst path. Witch variance 2, all routes under 1800 (900x2) become active.
NEW QUESTION # 59
An engineer is looking for a standards-driven YANG model to manage a multivendor network environment.
Which model must the engineer choose?
- A. OpenConfig
- B. Native
- C. IETF
- D. IEEE NETCONF
Answer: C
Explanation:
Section: Automation
NEW QUESTION # 60
A customer's current Layer 2 infrastructure is running Spanning Tree 802.1d, and all configuration changes are manually implemented on each switch. An architect must redesign the Layer 2 domain to achieve these goals:
reduce the impact of topology changes
reduce the time spent on network administration
reduce manual configuration errors
Which two solutions should the architect include in the new design? (Choose two.)
- A. Configure broadcast and multicast storm control on all switches.
- B. Configure dynamic trunking protocol to propagate VLAN information.
- C. Use VTP to propagate VLAN information and to prune unused VLANs.
- D. Implement MST instead of STP.
- E. Implement Rapid PVST+ instead of STP.
Answer: C,E
NEW QUESTION # 61
Refer to the exhibit.
Customers report low video quality and delays when having point-to-point telepresence video calls between the two locations. An architect must optimize a design so that traffic follows the same path for egress and ingress traffic flows. Which technique optimizes the design?
- A. Configure the high metric on the router in area 4.
- B. Configure route leaking on the router in area 1.
- C. Configure route leaking on the router in area 2.
- D. Configure route filter on the router in area 4.
Answer: A
NEW QUESTION # 62
Which consideration must be taken into account when using the DHCP relay feature in a Cisco SD-Access Architecture?
- A. DHCP Option-82 must be enabled to map the circuit IP option to the access fabric node where the DHCP discover originated.
- B. DHCP-relay must be enabled on fabric edge nodes to provide the correct mapping of DHCP scope to the local anycast gateway.
- C. DHCP servers must support Cisco SD-Access extensions to correctly assign IPs to endpoints in an SD-Access fabric with anycast gateway.
- D. A DHCP server must be enabled on the border nodes to allow subnets to span multiple fabric edges.
Answer: A
Explanation:
https://www.cisco.com/c/en/us/td/docs/cloud-systems-management/network-automation-and-management/dna-center/tech_notes/sda_dhcp/b_cisco_sda_dhcp.html
NEW QUESTION # 63
An engineer must design a scalable QoS architecture that allows the separation of the traffic into classes on predefined business requirements. The design must also utilize the differentiated services code points as the QoS priority descriptor value and support at least 10 levels of classification. Which QoS technology should the engineer include in the design?
- A. Interserv
- B. RSVP
- C. Best effort
- D. Diffserv
Answer: D
NEW QUESTION # 64
Which common issue causes intermittent DMVPN tunnel flaps?
- A. a routing neighbor reachability issue
- B. interface bandwidth congestion
- C. that the GRE tunnel to hub router is not encrypted
- D. a suboptimal routing table
Answer: A
NEW QUESTION # 65
When IPsec VPNs are designed, what is a unique requirement if support for IP Multicast is required?
- A. encapsulation of traffic with GRE or VTI
- B. IPsec forwarding using tunnel mode
- C. additional bandwidth for headend
- D. IPsec forwarding using transport mode
Answer: A
NEW QUESTION # 66
Which two statements about VRRP object tracking are true? (Choose two)
- A. A VRRP group can track only one object at a time
- B. VRRP supports only interface tracking
- C. The priority of a VRRP device can change in accordance with the up or down status of a VRRP object
- D. The VRRP interface priority must be manually configured by the administrator
- E. VRRP can track the status of interfaces and routes
Answer: C,E
Explanation:
Explanation
https://www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2019/pdf/BRKCRS-2821.pdf
NEW QUESTION # 67
In a multicast network, which condition must be met for an RPF check to be performed on the RP address'?
- A. The PIM DM device receives a multicast packet and has no directly connected members
- B. The PIM DM device receives a multicast packet and has no directly connected PIM neighbor
- C. The PIM router or multilayer switch has a source-tree state
- D. The PIM router or multilayer switch has a shared-tree state
Answer: D
NEW QUESTION # 68
Refer to the exhibit. MTU has been configured as shown, and no MTU command has been configured on the tunnel interfaces. It has been found that fragmentation is occurring when tunneled packets are placed onto the IPv6 underlay network. Which configuration change will resolve this problem?
- A. Set the MTU to 1476 on the tunnel interfaces
- B. Set the MTU to 1500 on the tunnel interfaces
- C. Increase the MTU on the IPv6 network
- D. Increase the MTU on the IPv4 networks
Answer: A
NEW QUESTION # 69
Which feature is required for graceful restart to recover from a processor failure?
- A. Stateful Switchover
- B. Virtual Switch System
- C. Bidirectional Forwarding Detection
- D. Cisco Express Forwarding
Answer: A
Explanation:
https://archive.nanog.org/meetings/nanog42/presentations/Weissner_SSO.pdf The Stateful Switchover (SSO) feature works with Nonstop Forwarding (NSF) in Cisco software to minimize the amount of time a network is unavailable to its users following a switchover. The primary objective of SSO is to improve the availability of networks constructed with Cisco routers.
NEW QUESTION # 70
A branch office has a primary L3VPN MPLS connection back to the main office and an IPSEC VPN tunnel that serves as backup. Which design ensures that data is sent over the backup connection only if the primary MPLS circuit is down?
- A. Use BGP with the multipath feature enabled to force traffic via the primary path when available.
- B. Use OSPF with a passive-interface command on the backup connection.
- C. Use static routes tied to an IP SLA to prefer the primary path while a floating static route points to the backup connection.
- D. Use EIGRP to establish a neighbor relationship with the main office via
- E. L3VPN MPLS and the IPSEC VPN tunnel.
Answer: A
NEW QUESTION # 71
Drag and drop the components in a Cisco SD-Access architecture from the left onto their descriptions on the right.
Answer:
Explanation:
NEW QUESTION # 72
Refer to the exhibit.
A customer is running HSRP on the core routers. Over time the company has grown and requires more network capacity. In the current environment, some of the downstream interfaces are almost fully utilized, but others are not. Which solution improves the situation?
- A. Add more interfaces to R1 and R2.
- B. Configure port channel toward downstream switches.
- C. Make router R2 active for half of the VLANs.
- D. Enable RSTP on the downstream switches.
Answer: C
NEW QUESTION # 73
A customer plans to adopt distributed QoS in their enterprise WAN. The policy must allow for individual packet marking according to the type of treatment required and for forwarding based on hop-by-hop treatment locally defined on each device. Which technology must the customer select?
- A. IntServ
- B. CBWFQ
- C. LLQ
- D. Diffserv
Answer: D
NEW QUESTION # 74
An engineer is designing an EIGRP network for a small branch site where there is only one Layer 3 router. The engineer wants the router to advertise the local LAN network to remote EIGRP neighbors without sending any unnecessary multicast messages on the local LAN. Which action should the engineer take?
- A. Advertise the local LAN subnet as a stub network
- B. Advertise the local LAN using the network command and the passive-interface feature
- C. Use a static default route for this site instead of EIGRP
- D. Redistribute the local LAN network using the redistribute connected command
Answer: B
Explanation:
Section: Advanced Addressing and Routing Solutions
NEW QUESTION # 75
Which two border nodes are available in the Cisco SD-Access architecture? (Choose two.)
- A. internal border
- B. extended border
- C. edge border
- D. anywhere border
- E. intermediate border
Answer: B,D
Explanation:
Section: Advanced Enterprise Campus Networks
NEW QUESTION # 76
A network solution is being designed for a company that connects to multiple Internet service providers.
Which
Cisco proprietary BGP path attribute will influence outbound traffic flow?
- A. Weight
- B. AS Path
- C. Community
- D. MED
- E. Local Preference
Answer: A
NEW QUESTION # 77
Drag and drop the elements from the left onto the YANG models where they and used on the right.
Answer:
Explanation:
Explanation
Diagram Description automatically generated
NEW QUESTION # 78
An engineer is designing a multicast network for a company specializing in VoD content. Receivers are across the Internet, and for performance reasons, the multicast framework close to the receivers within each AS. For high availability, if the sources in one AS are no longer available, the receivers of that AS must be able to receive the VoD content from sources in another AS. Which feature must the design include?
- A. MSDP
- B. Anycast RP
- C. Bidirectional PIM
- D. SSM
Answer: B
Explanation:
https://learningnetwork.cisco.com/s/question/0D53i00000KsrGrCAJ/rendezvous-point-high-availability-mechanisms
NEW QUESTION # 79
Drag and drop the characteristics from the left onto the Yang model they describe on the right.
Answer:
Explanation:
NEW QUESTION # 80
......
Tested Material Used To 300-420 Test Engine: https://www.validexam.com/300-420-latest-dumps.html
Steps Necessary To Pass The 300-420 Exam: https://drive.google.com/open?id=1sQY2ATGZpdEW4kdSAZEbT5ecNTSrTbHE