Try Before You Buy

Download a free sample of any of our exam questions and answers

  • 24/7 customer support, Secure shopping site
  • Free One year updates to match real exam scenarios
  • If you failed your exam after buying our products we will refund the full amount back to you.

Best Way To Study For Cisco 300-620 Exam Brilliant 300-620 Exam Questions PDF [Q52-Q74]

Share

Best Way To Study For Cisco 300-620 Exam Brilliant 300-620 Exam Questions PDF

Updated Verified Pass 300-620 Exam - Real Questions and Answers


Cisco 300-620 Exam Topics:

SectionWeightObjectives
ACI Fabric Infrastructure20%1. Describe ACI topology and hardware
2. Describe ACI Object Model
3. Utilize faults, event record, and audit log
4. Describe ACI fabric discovery
5. Implement ACI policies
  • access
  • fabric

6. Implement ACI logical constructs

  • tenant
  • application profile
  • VRF
  • bridge domain (unicast routing, Layer 2 unknown hardware proxy, ARP flooding)
  • endpoint groups (EPG)
  • contracts (filter, provider, consumer, reverse port filter, VRF enforced)
Integrations15%1. Implement VMware vCenter DVS integration
2. Describe resolution immediacy in VMM
3. Implement service graph (managed and unmanaged)
ACI Management20%1. Implement out-of-band and in-band
2. Utilize syslog and snmp services
3. Implement configuration backup (snapshot/config import export)
4. Implement AAA and RBAC
5. Configure an upgrade
ACI Packet Forwarding15%1. Describe endpoint learning
2. Implement bridge domain configuration **** (unicast routing, Layer 2 unknown hardware proxy, ARP flooding)


Prerequisites

Though the knowledge areas covered by 300-420 exam are wide and extensive, its related certification never put any prerequisites. Anyone can go for this test. However, the vendor states that it is wise to gain three to five years of expertise in data center solution designing before launching this path. With such a background, the exam journey can become a lot more simplified and easy-to-accomplish.


Career Prospects

Passing the Cisco 300-620 exam brings you closer to the CCNP Data Center certification. With any high-class certificate of this vendor, you can stand out from the crowd of your competitors and demonstrate to your potential employer that you have undertaken the relevant training and are aware of the latest network tendencies and technologies. Obtaining this professional-level certification can guarantee you outstanding career prospects. Some of the positions that you can apply for after passing the test are:

  • Data Engineer
  • Field Engineer
  • Data Center Technician
  • Technical Solutions Architect
  • Systems Engineer
  • Cisco Integrator/Partner
  • Server Administrator
  • Network Engineer

Moreover, getting the CCNP Data Center certification can be highly beneficial in financial terms. Thus, the average salary for the certificate holders is currently approximately $70,279 per annum. A Network Engineer can earn $109,163 and a Data Engineer can get about $132,020 per year. Depending on your level of experience and the type of the enterprise you work for, you are able to earn as much as $235,000.

 

NEW QUESTION 52
An engineer is troubleshooting fabric discovery in a newly deployed Cisco ACI fabric and analyzes this output:

Which ACI fabric address is assigned to interface lo1023?

  • A. Physical tunnel endpoint
  • B. VXLAN tunnel endpoint
  • C. Dynamic tunnel endpoint
  • D. Fabric tunnel endpoint

Answer: B

 

NEW QUESTION 53
An engineer must configure VMM domain integration on a Cisco UCS B-Series server that is connected to a Cisco ACI fabric. Drag and drop the products used to create VMM domain from the bottom into the sequence in which they should be implemented at the top. Products are used more than once.

Answer:

Explanation:

 

NEW QUESTION 54
Refer to the exhibit A Cisco ACI fabric is using out-of-band management connectivity The APIC must access a routable host with an IP address of 192 168 11 2 Which action accomplishes this goal?

  • A. Remove the in-band management address from the APIC.
  • B. Change the switch APIC Connectivity Preference to in-band management
  • C. Add a Fabric Access Policy to allow management connections.
  • D. Modify the Pod Profile to use the default Management Access Policy

Answer: A

 

NEW QUESTION 55
An engineer is implementing a connection that represents an external bridged network. Which two configurations are used? (Choose two.)

  • A. Layer 2 remote fabric
  • B. Layer 2 outside
  • C. VXLAN outside
  • D. Static path binding
  • E. Layers 2 internal

Answer: A,B

 

NEW QUESTION 56
Which attribute should be configured for each user to enable RADIUS for external authentication in Cisco ACI?

  • A. cisco-av-pair
  • B. cisco-auth-features
  • C. cisco-aci-role
  • D. cisco-security domain

Answer: A

 

NEW QUESTION 57
An engineer configured Layer 2 extension from the ACI fabric and changed the Layer 2 unknown unicast policy from Flood to Hardware Proxy. How does this change affect the flooding of the L2 unknown unicast traffic?

  • A. It is dropped by the leaf when the destination endpoint is not present in the endpoint table.
  • B. It is forwarded to one of the APICs to perform as a proxy.
  • C. It is flooded within the whole fabric.
  • D. It is forwarded to one of the spines to perform as a spine proxy.

Answer: D

 

NEW QUESTION 58
Which endpoint learning operation is completed on the egress leaf switch when traffic is received from an L3Out?

  • A. The source IP address of the traffic is learned as a remote endpoint.
  • B. The source MAC and IP address of the traffic is learned as a local endpoint.
  • C. The source MAC address of the traffic is learned as a remote endpoint.
  • D. No source MAC or IP address of the traffic is learned as a remote endpoint.

Answer: A

 

NEW QUESTION 59
In the context of ACI Multi-Site, when is the information of an endpoint (MAC/IP) that belongs to site 1 advertised to site 2 using the EVPN control plane?

  • A. Endpoint information is exchanged across sites when the endpoints are discovered in both sites.
  • B. Endpoint information is not exchanged across sites unless COOP protocol is used.
  • C. Endpoint information is not exchanged across sites unless a policy is configured to allow communication across sites.
  • D. Endpoint information is exchanged across sites as soon as the endpoint is discovered in one site.

Answer: B

Explanation:
Reference:
https://www.cisco.com/c/en/us/solutions/collateral/data-center-virtualization/application-centric- infrastructure/white-paper-c11-739609.html#CiscoACIMultiSiteoverlaydataplane

 

NEW QUESTION 60
Which two components are essential parts of a Cisco ACI Virtual Machine Manager (VMM) domain policy configuration? (Choose two.)

  • A. Layer 3 outside interface association
  • B. EPG association
  • C. EPG static port binding
  • D. IP address pool association
  • E. VMM domain profile

Answer: B,E

Explanation:
Explanation
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/1-x/aci-fundamentals/b_ACI-Fundamenta

 

NEW QUESTION 61
A RADIUS user resolves its role via the Cisco AV Pair. What object does the Cisco AV Pair resolve to?

  • A. managed object class
  • B. tenant
  • C. primary Cisco APIC
  • D. security domain

Answer: A

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/2-x/Security_config/ b_Cisco_APIC_Security_Configuration_Guide/b_Cisco_APIC_Security_Guide_chapter_01011.html

 

NEW QUESTION 62
An engineer is implementing a Cisco ACI data center network that includes Cisco Nexus 2000 Series 10G fabric extenders. Which physical topology is supported?

  • A.
  • B.
  • C.
  • D.

Answer: C

Explanation:
Section: ACI Fabric Infrastructure

 

NEW QUESTION 63
When the subnet is configured on a bridge domain, on which physical devices is the gateway IP address configured?

  • A. only spine switches where the bridge domain of the tenant is present
  • B. only leaf switches where the bridge domain of the tenant is present
  • C. all leaf switches and all spine nodes
  • D. all border leaf nodes where the bridge domain of the tenant is present

Answer: B

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/1-x/Operating_ACI/guide/b_Cisco_Operating_ACI/b_Cisco_Operating_ACI_chapter_0111.html

 

NEW QUESTION 64
An engineer must connect a new host to port 1 on Leaf 101. A Cisco ACI fabric has an MOP policy configured but experience excessive Layer 2 loops The engineer wants the Cisco ACI fabric to detect and prevent Layer 2 loops m the fabric Which set of actions accomplishes these goals'?

  • A. Option A
  • B. Option D
  • C. Option C
  • D. Option B

Answer: D

 

NEW QUESTION 65
Refer to the exhibit.

Which action should be taken to ensure authentication if the RADIUS servers are unavailable?

  • A. Assign the user to the default role.
  • B. Set the fallback login to local.
  • C. Adjust the priority of server 10.1.1.1 to 1.
  • D. Set the default login realm to LDAP

Answer: B

Explanation:
Explanation
Changing the server priority is not logical answer.
The command "aaa user default-role no-login" means that remote users who do not have a user role cannot login. This means that assigning the user to default role will not be able to login.
The "aaa authentication login default" and "aaa authentication login fallback" has identical configuration. The fallback uses RADIUS server. We should change is to local.

 

NEW QUESTION 66
An ACI administrator notices a change in the behavior of the fabric. Which action must be taken to determine if a human intervention introduced the change?

  • A. Inspect event records in the APIC UI to see all actions performed by users.
  • B. Inspect audit logs in the APIC UI to see all user events.
  • C. Inspect /var/log/audit_messages on the APIC to see a record of all user actions.
  • D. Inspect the output of show command history in the APIC CLI.

Answer: A

 

NEW QUESTION 67
An engineer must connect Cisco ACI fabric using Layer 2 with external third-party switches. The third-party switches are configured using 802.1s protocol. Which two constructs are required to complete the task?
(Choose two.)

  • A. static binding of native VLAN in all existing EPGs
  • B. dedicated EPG for native VLAN
  • C. MCP instance policy with administrative slate disabled
  • D. MCP policy with PDU per VLAN enabled
  • E. spanning tree policy for mapping MST Instances to VLANs

Answer: C,D

 

NEW QUESTION 68
Refer to the exhibit, An engineer is deploying a Cisco ACI environment but experiences a STP loop between switch1 and switch2. Which configuration step is needed to break the STP loop?

  • A. Configure a Layer 2 external bridged network on the interfaces facing the MST switches.
  • B. Configure the STP instance to VLAN mapping under the switch STP policy.
  • C. Enable the native VLAN on the interfaces facing the MST switches using static pons in a dedicated EPG.
  • D. Enable BPDU filter under the STP interface policy on the Interfaces lacing the MST switches.

Answer: C

 

NEW QUESTION 69
Which components must be configured for the BGP Route Reflector policy to take effect?

  • A. leaf fabric interface overrides and profiles
  • B. spine fabric interface overrides and profiles
  • C. access policies and profiles
  • D. pod policy groups and profiles

Answer: B

Explanation:
Section: ACI Fabric Infrastructure
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/4-x/L3-configuration/Cisco- APIC-Layer-3-Networking-Configuration-Guide-401/Cisco-APIC-Layer-3-Networking-Configuration-Guide-
401_chapter_01.html

 

NEW QUESTION 70
What do Pods use to allow Pod-to-Pod communication in a Cisco ACI Multi-Pod environment?

  • A. over Layer 3 IPN connectivity via spines
  • B. over Layer 3 IPN connectivity via border leafs
    https://www.cisco.com/c/en/us/solutions/collateral/data-center-virtualization/application-centric-infrastructure/white-paper-c11-737855.html
  • C. over Layer 3 directly connected back-to-back spines
  • D. over Layer 3 Out connectivity via border leafs

Answer: A

 

NEW QUESTION 71
Refer to the exhibit.

Which action should be taken to ensure authentication if the RADIUS servers are unavailable?

  • A. Assign the user to the default role.
  • B. Set the fallback login to local.
  • C. Adjust the priority of server 10.1.1.1 to 1.
  • D. Set the default login realm to LDAP

Answer: B

Explanation:
Changing the server priority is not logical answer.
The command "aaa user default-role no-login" means that remote users who do not have a user role cannot login. This means that assigning the user to default role will not be able to login.
The "aaa authentication login default" and "aaa authentication login fallback" has identical configuration. The fallback uses RADIUS server. We should change is to local.

 

NEW QUESTION 72
An engineer configured a bridge domain with the hardware-proxy option for Layer 2 unknown unicast traffic. Which statement is true about this configuration?

  • A. The spine switch drops the Layer 2 unknown unicast packet if it is unable to find the MAC address in the proxy database.
  • B. The Layer 2 unknown hardware proxy lacks support of the topology change notification.
  • C. The leaf switch drops the Layer 2 unknown unicast packet if it is unable to find the MAC address in the local forwarding tables.
  • D. The leaf switch forwards the Layers 2 unknown unicast packets to all other leaf switches if it is unable to find the MAC address in its local forwarding tables.

Answer: C

 

NEW QUESTION 73
An engineer is extending EPG connectivity to an external network. The external network houses the Layer 3 gateway and other end hosts. Which ACI bridge domain configuration should be used?

  • A. Forwarding: Custom
    L2 Unknown Unicast: Flood
    L3 Unknown Multicast Flooding: Flood Multi Destination Flooding: Flood in BD ARP Flooding: Enabled
  • B. Forwarding: Custom
    L2 Unknown Unicast: Hardware Proxy L3 Unknown Multicast Flooding: Flood Multi Destination Flooding: Flood in BD ARP Flooding: Disabled
  • C. Forwarding: Custom
    L2 Unknown Unicast: Flood
    L3 Unknown Multicast Flooding: Flood Multi Destination Flooding: Flood in BD ARP Flooding: Disabled
  • D. Forwarding: Custom
    L2 Unknown Unicast: Hardware Proxy L3 Unknown Multicast Flooding: Flood Multi Destination Flooding: Flood in BD ARP Flooding: Enabled

Answer: C

 

NEW QUESTION 74
......

Updated PDF (New 2022) Actual Cisco 300-620 Exam Questions: https://braindumps2go.dumptorrent.com/300-620-braindumps-torrent.html