300-620 DCACI: Implementing Cisco Application Cent… Practice Exam
QuestionQ1
ACI Management
Save question
An engineer needs to monitor a Cisco ACI fabric using SNMP. The fabric does not have the “permit any contract” attribute configured. What action must be performed to receive SNMP traps from Cisco APIC?
AConsume the inband contract from the out-of-band EPG.
BConfigure the OOB contract under the common tenant.
CAdd the UDP filter port 162 to the existing OOB contract.
DProvide a standard contract under the user tenant.
0
Community Discussion
No comments yet. Be the first to start the discussion!
QuestionQ2
Integrations
0
Community Discussion
No comments yet. Be the first to start the discussion!
QuestionQ3
ACI Packet Forwarding
0
Community Discussion
No comments yet. Be the first to start the discussion!
QuestionQ4
ACI Packet Forwarding
0
Community Discussion
No comments yet. Be the first to start the discussion!
QuestionQ5
ACI Fabric Infrastructure
0
Community Discussion
No comments yet. Be the first to start the discussion!
It's free
100% of the questions are free for all users. No strings attached.
An SNMP monitoring service is being added to a Cisco ACI fabric. The solution must meet these requirements:
A notification must be generated when significant hardware-related events occur.
The notification system must be redundant by using multiple servers to receive the notifications.
Which set of actions fulfills these requirements?
AImplement an SNMP Monitoring Destination Group.Associate the SNMP policy to the desired pod in the Pod Policies section under the Fabric tab.
BConfigure an SNMP policy with community policies in the Tenant section of the common tenant.Link the SNMP policy to the common tenant in the Monitoring Policies section under the Fabric tab.
CDefine an SNMP policy with community policies in the Fabric Policies section under the Fabric tab.Implement an SNMP Client Group Profile.
DConfigure an SNMP Monitoring Destination Group.Define an SNMP source by using the previously defined group in the Access Policies section under the Fabric tab.
An engineer has configured a bridge domain with the hardware-proxy option for Layer 2 unknown-unicast traffic. Which statement is true of this configuration?
AThe leaf switch drops the Layer 2 unknown unicast packet if it is unable to find the MAC address in the local forwarding tables.
BThe Layer 2 unknown hardware proxy lacks support of the topology change notification.
CThe leaf switch forwards the Layers 2 unknown unicast packets to all other leaf switches if it is unable to find the MAC address in its local forwarding tables.
DThe spine switch drops the Layer 2 unknown unicast packet if it is unable to find the MAC address in the proxy database.
An engineer configured VMM resolution immediacy as pre-provision in a Cisco ACI environment. No Cisco Discovery Protocol neighborship has formed between the hypervisors and the ACI fabric leaf nodes. How does this impact policy downloads to the leaf switches?
ANo policies are downloaded because LLDP is the only supported discovery protocol.
BPolicies are downloaded when the hypervisor host is connected to the VMM VDS.
CPolicies are downloaded to the ACI leaf switch regardless of Cisco Discovery Protocol neighborship.
DNo policies are downloaded because there is no discovery protocol neighborship.
Which IP address pool must be reachable over the backbone from the physical pod to the remote leaf?
Aseed pod tunnel endpoint pool
Bseed pod external tunnel endpoint pool
Cremote leaf tunnel endpoint pool
Dremote leaf external tunnel endpoint pool
QuestionQ6
ACI Packet Forwarding
0
Community Discussion
No comments yet. Be the first to start the discussion!
QuestionQ7
External Network Connectivity
QuestionQ8
ACI Packet Forwarding
QuestionQ9
ACI Packet Forwarding
QuestionQ10
ACI Management
QuestionQ11
ACI Management
QuestionQ12
ACI Management
QuestionQ13
ACI Packet Forwarding
QuestionQ14
Integrations
QuestionQ15
ACI Fabric Infrastructure
QuestionQ16
ACI Management
QuestionQ17
ACI Fabric Infrastructure
QuestionQ18
ACI Packet Forwarding
QuestionQ19
ACI Fabric Infrastructure
QuestionQ20
ACI Management
QuestionQ21
ACI Management
QuestionQ22
ACI Fabric Infrastructure
QuestionQ23
External Network Connectivity
QuestionQ24
Integrations
QuestionQ25
External Network Connectivity
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Ad
Want a break from the ads?
Go ad-free and unlock Learn Mode, Exam Mode, AstroTutor AI and every premium tool — everything you need to walk in prepared, and confident.
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Save question
0
Community Discussion
No comments yet. Be the first to start the discussion!
Refer to the exhibit. A Cisco ACI fabric is configured with a VPC protection group set to consecutive. The following ACI objects have also been created:
Access policy group Acc_Pol_Grp
STP policy STP_Pol
Which set of actions must be performed to disable Eth1/1 when it receives a BPDU from SW2?
AEnable BPDU guard on STP_Pol.Assign STP_Pol to Acc_Pol_Grp.Assign STP_Pol to Eth1/1.
BEnable BPDU guard on STP_Pol.Assign STP_Pol to Acc_Pol_Grp.Assign Acc_Pol_Grp to Eth1/1.
CEnable BPDU guard on Acc_Pol_Grp.Assign STP_Pol to Acc_Pol_Grp.Assign STP_Pol to Eth1/1.
DEnable BPDU guard on Acc_Pol_Grp.Assign STP_Pol to Acc_Pol_Grp.Assign Acc_Pol_Grp to Eth1/1.
How is an EPG extended beyond the ACI fabric?
ACreate an external bridged network that is assigned to a leaf port.
BCreate an external routed network that is assigned to an EPG.
CEnable unicast routing within an EPG.
DStatically assign a VLAN ID to a leaf port in an EPG.
Which endpoint-learning operation is performed on the egress leaf switch when it receives traffic from an L3Out?
AThe source MAC and IP address of the traffic is learned as a local endpoint.
BThe source MAC address of the traffic is learned as a remote endpoint.
CNo source MAC or IP address of the traffic is learned as a remote endpoint.
DThe source IP address of the traffic is learned as a remote endpoint.
Which MP-BGP address-family type exchanges MAC and IP endpoint information between spines in two separate pods?
AIPv4
BL2VPN
CVNPv4
DNSAP
Refer to the following exhibit.
A network engineer must configure a user tenant to generate the error shown when a new EPG is configured. Which action achieves this objective?
AFrom Access Policies, set Exceed Action to Fail Transaction Action.
BFrom Fabric Policies, set Exceed Action to Fail Transaction Action.
CFrom Access Policies, set Exceed Action to Raise Fault Action.
DFrom Fabric Policies, set Exceed Action to Raise Fault Action.
An engineer must set up an export policy that regularly backs up Cisco APIC configuration to a remote location. The backup must be transmitted using a secure, encrypted protocol. Which configuration set is required?
AConfigure the export policy with the required export destination.Set the export destination as TLS.Configure the scheduler with a maximum number of nodes.
BConfigure the export policy with the required export destination.Set the export destination as SSH.Set the scheduler settings to recurring.
CConfigure the export policy with the required export destination.Set the export destination as SCP.Set the scheduler settings to recurring.
DConfigure the export policy with the required export destination.Set the export destination as AES.Configure the scheduler with a maximum number of nodes.
Refer to the exhibit. The engineering team restored the Cisco ACI fabric from an earlier daily snapshot imported from a remote location. During the restoration, the team found that all password information had been lost. Which set of steps must be used to prevent password loss during future system restores?
ASpecify a secure transport protocol on the scheduler policy.Configure the configuration export policy with the required AES key.
BEnable global AES encryption on the configuration export policy.Use import replace mode on the configuration import policy.
CSpecify a secure transport protocol on the scheduler policy.Configure the configuration import policy with the required AES key.
DEnable global AES encryption on the configuration export policy.Use import merge mode on the configuration import policy.
An engineer must connect an ESXi host to the Cisco ACI fabric. The host is connected to Leaf 1 and has gateway IP address 10.10.10.254/24 configured within the ACI fabric. A new firewall is connected to Leaf 2 and mapped to the same EPG and BD as the ESXi host. The engineer must move the ESXi host gateway to the firewall. Which configuration set accomplishes this goal?
ADisable unicast routing.Configure IP address 10.10.10.254/24 on the ACI BD.
BDisable unicast routing.Define IP address 10.10.10.254/24 on the firewall.
CEnable unicast routing.Configure IP address 10.10.10.254/24 on the ACI EPG.
DEnable unicast routing.Set IP address 10.10.10.254/24 on the firewall.
An engineer must integrate a Cisco ACI fabric with VMware and discover an ESXi host by using LLDP. Two EPGs have been created and associated with the VMM domain. The engineer must configure ACI so that contracts are pushed to the ACI leaf switches when the VM is mapped to an EPG, and the contracts are removed when LLDP is disabled. Which configuration must be selected to meet these requirements?
ADeployment immediacy: On-Demand
BResolution immediacy: On-Demand
CDeployment immediacy: Immediate
DResolution immediacy: Immediate
An organization has deployed active-active data centers and active-standby firewalls in each data center. Which action should be performed in a Cisco ACI Multi-Pod to preserve traffic symmetry through the firewalls?
ADisable Resilient Hashing.
BDisable service node Health Tracking.
CEnable Pod ID Aware Redirection.
DEnable Endpoint Dataplane Learning.
VM App_1 belongs to VLAN 10, and VM App_2 belongs to VLAN 20. Pool_1 includes VLAN 10, while Pool_2 includes VLAN 20. Currently, AP_1 is on Server 1. The Cisco ACI fabric has the following configuration:
The two physical domains are named Phys_1 and Phys_2.
The two VLAN pools are named Pool_1 and Pool_2.
The two AAEPs are named AAEP_1 and AAEP_2.
An engineer needs to replace App_1 with App_2. Which action in the VPC interface policy group achieves this goal?
AConfigure Phys_2.
BMap VM App_2.
CAttach AAEP_2.
DAssign Pool_2.
Which resolution-immediacy setting permits a policy to be downloaded to the Cisco ACI leaf switch software regardless of CDP/LLDP neighborship?
AExpedite
BImmediate
CPre-Provision
DOn Demand
Refer to the exhibit.
Two L3Outs have been configured under the same VRF, along with a route map named Any_Route_RtCtrl. The fabric is deployed as follows:
The two L3Outs have received a default route.
Both External EPGs imported the route map.
R1 and the firewall advertise summarized private RFC subnets to ACI.
A design change is required to let traffic bypass the firewall and use R1 before it reaches subnet 10.16.29.0/28.
Which action set meets this requirement?
AAdvertise default route to FWE_GiDNS_L3out using local preference value 200.Add the subnet 10.0.0.0/8 to Any_Route_RtCtrl route map of FWE_GiDNS_L3out.
BAdvertise default route to GiDNS_CPN_L3Out using local preference value 20.Add the subnet 10.0.0.0/8 to Any_Route_RtCtrl route map of GiDNS_CPN_L3Out.
CAdvertise a default route to FWE_GiDNS_L3out using local preference value 20.Add the subnet 10.0.0.0/8 to Any_Route_RtCtrl route map of GiDNS_CPN_L3Out.
DAdvertise default route to GiDNS_CPN_L3Out using local preference value 200.Add the subnet 10.0.0.0/8 to Any_Route_RtCtrl route map of FWE_GiDNS_L3out.
A Cisco ACI environment contains multiple silent hosts that are frequently moved between leaf switches. After a host is moved, the bridge domain requires more than a few seconds to relearn the host’s new location. The requirement is to minimize the impact of relocation and enable the ACI fabric to relearn the host’s new location more quickly. Which action must be taken to meet these requirements?
ASet Unicast Routing to Enabled.
BConfigure ARP Flooding to Enabled.
CSet L2 Unknown Unicast to Hardware Proxy.
DConfigure IP Data-Plane Learning to No.
Refer to the exhibit. A client reports that ACI domain connectivity to Fibre Channel storage is experiencing B2B credit oversubscription. The environment has a SYSLOG server for collecting state messages. Which value should be selected to clear the critical fault?
A300
B410
C350
D510
A condition causes a fault to be raised on the APIC. The ACI administrator does not want the fault raised because it is not directly relevant to the environment. What action should the administrator take to prevent the fault from appearing?
AUnder System -> Faults, right-click on the fault and select Acknowledge Fault so that acknowledged faults will immediately disappear.
BCreate a stats threshold policy with both rising and falling thresholds defined so that the critical severity threshold matches the squelched threshold.
CUnder System -> Faults, right-click on the fault and select Ignore Fault to create a fault severity assignment policy that hides the fault.
DCreate a new global health score policy that ignores specific faults as identified by their unique fault code.
Which routing protocol is supported between Cisco ACI spine switches and IPNs in a Cisco ACI Multi-Pod deployment?
AOSPF
BIS-IS
CBGP
DEIGRP
An engineer is configuring a connection that represents an external bridged network. Which two configurations are used?
Choose two
ALayer 2 remote fabric
BLayer 2 outside
CLayers 2 internal
DStatic path binding
EVXLAN outside
When setting up Cisco ACI VMM domain integration with VMware vCenter, which object is created in vCenter?
Adatacenter
BVMware vSphere Standard vSwitch
CVMware vSphere Distributed Switch
Dcluster
Refer to the exhibit. A customer is deploying a WAN with the following requirements:
Routers 1 and 2 must receive only routes 192.168.11.0/24 and 192.168.21.0/24 from the Cisco ACI fabric.
Reachability to WAN users must be allowed only for the servers located in vrf_prod.
Which settings must be configured to satisfy these objectives?
AConfigure the subnets 192.168.11.0/24 and 192.168.21.0/24 as Private to VRF.Configure the subnet 192.168.31.0/24 as Advertised Externally.Configure an EPG subnet 0.0.0.0/0 as Shared Route Control Subnet.
BConfigure the subnets 192.168.11.0/24 and 192.168.21.0/24 as Private to VRF.Configure the subnet 192.168.31.0/24 as Advertised Externally.Configure an EPG subnet 0.0.0.0/0 as External Subnets for External EPG.
CConfigure the subnets 192.168.11.0/24 and 192.168.21.0/24 as Advertised Externally.Configure the subnet 192.168.31.0/24 as Private to VRF.Configure an EPG subnet 0.0.0.0/0 as External Subnets for External EPG.
DConfigure the subnets 192.168.11.0/24 and 192.168.21.0/24 as Advertised Externally.Configure the subnet 192.168.31.0/24 as Private to VRF.Configure an EPG subnet 0.0.0.0/0 as Shared Route Control Subnet.
Community Discussion