[Q121-Q143] Best Quality Cisco 300-620 Exam Questions ExamcollectionPass Realistic Practice Exams [2024]

Share

Best Quality Cisco 300-620 Exam Questions ExamcollectionPass Realistic Practice Exams [2024]

Critical Information To Implementing Cisco Application Centric Infrastructure Pass the First Time


Cisco 300-620 certification exam is ideal for IT professionals who are interested in pursuing a career in network engineering, network administration, or data center operations. Implementing Cisco Application Centric Infrastructure certification exam is also suitable for professionals who are already working with ACI technology and want to enhance their skills and knowledge. Implementing Cisco Application Centric Infrastructure certification helps professionals to stay updated with the latest technologies and advancements in the networking domain, making them more valuable to their organizations.

 

NEW QUESTION # 121
Refer to the exhibit.

A Cisco ACI fabric is newly deployed, and the security team requires more visibility of all inter-EPG traffic flows. All traffic in a VRF must be forwarded to an existing firewall pair. During fallover, the standby firewall must continue to use the same IP and MAC as the primary firewall. Drag and drop the steps from the left Into the Implementation order on the right to configure the service graph that meets the requirements. (Not all steps are used.)

Answer:

Explanation:


NEW QUESTION # 122
Refer to the exhibit.

Refer to the exhibit. A network engineer must complete the Cisco ACI implementation based on the logical system design created by the systems architect. Which Cisco ACI object is required where the dotted line indicates to complete the task?

  • A. attachable Access Entity Profile
  • B. application profile
  • C. contract
  • D. context

Answer: B


NEW QUESTION # 123
An engineer is extending an EPG out of the ACI fabric using static path binding. Which statement about the endpoints is true?

  • A. External endpoints are in the same EPG as the directly attached endpoints.
  • B. External endpoints are in a different bridge domain than the endpoints in the fabric.
  • C. Endpoint learning encompasses the MAC address only.
  • D. Endpoints must connect directly to the ACI leaf port.

Answer: C


NEW QUESTION # 124
Refer to the exhibit. An engineer is implementing Cisco ACI ?VMware vCenter integration for a blade server that lacks support of bonding. Which port channel mode results in "route based on originating virtual port" on the VMware VDS?

  • A. LACP Active
  • B. Static Channel - Mode On
  • C. MAC Pinning+
  • D. MAC Pinning-Physical-NIC-load
  • E. LACP Passive

Answer: C

Explanation:
https://www.cisco.com/c/en/us/td/docs/dcn/aci/apic/6x/virtualization/cisco-aci-virtualization-guide-
60x/ACI-Virtualization-Guide-60x-aci-with-vmware-vds.pdf


NEW QUESTION # 125
Which description regarding the initial APIC cluster discovery process is true?

  • A. The ACI fabric is discovered starting with the spine switches.
  • B. The APIC uses an internal IP address from a pool to communicate with the nodes.
  • C. Every switch is assigned a unique AV by the APIC.
  • D. The APIC discovers the IP address of the other APIC controllers by using Cisco Discovery Protocol.

Answer: B

Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/1-x/aci-fundamentals/ b_ACI-Fundamentals/b_ACI-Fundamentals_chapter_010011.html


NEW QUESTION # 126
An ACI engineer is implementing a Layer 3 out inside the Cisco ACI fabric that must meet these requirements:
The data center core switch must be connected to one of the leaf switches with a single 1G link.
The routes must be exchanged using a link-state routing protocol that supports hierarchical network design.
The data center core switch interface must be using 802.1Q tagging, and each vlan will be configured with a dedicated IP address.
Which set of steps accomplishes these goals?

  • A. Set up the BGP Protocol policy with the Autonomous System number of 0.
    Configure an interface policy and an External Bridged Domain.
    Create an External Bridged Network using the configured VLAN pool.
    Build the Leaf profile, selecting Routed sub-interface and the appropriate VLAN.
  • B. Set up the ElGRP Protocol policy with the selected Autonomous System number. Set up the Routed External Network object ana Node Profile, selecting ElGRP Create the Switch profile, selecting Port-channel and the appropriate interfaces Create the default network and associate it with the Routed Outside object.
  • C. Configure the OSPF Protocol policy with an area of 0.
    Create Routed Outside object and Node Profile, selecting OSPF as the routing protocol. Build the Interface profile, selecting Routed Sub-interface and the appropriate VLAN. Configure the External Network object with a network of 0.0.0.0/0.
  • D. Set up the ElGRP Protocol policy with the selected Autonomous System number. Create the Routed Outside object and Node Profile selecting ElGRP Configure the Interface profile selecting Routed Interface and the appropriate interfaces. Create the External Network object with a network of 0.0.0.0/0.

Answer: C


NEW QUESTION # 127
A Cisco ACI fabric with an ARP packet must ensure detection of silent hosts with an ARP packet.
The current bridge domain is configured with hardware proxy and unicast routing. Which step must be taken on the bridge domain to complete the configuration?

  • A. Enable Flood in the bridge domain for Multi Destination Flooding.
  • B. Set L2 Unknown Unicast to Flood.
  • C. Enable ARP Flooding in the bridge domain.
  • D. Set Optimized Flood for L3 Unknown Multicast.

Answer: C


NEW QUESTION # 128
An engineer is configuring a VRF for a tenant named Cisco. Drag and drop the child objects on the left onto the correct containers on the right for this configuration.

Answer:

Explanation:

Explanation
Application profile---> VRF--> Bridge Domain---> EPG


NEW QUESTION # 129
An engineer is implementing a connection that represents an external bridged network. Which two configurations are used? (Choose two.)

  • A. Static path binding
  • B. VXLAN outside
  • C. Layers 2 internal
  • D. Layer 2 remote fabric
  • E. Layer 2 outside

Answer: D,E

Explanation:
Section: External Network Connectivity


NEW QUESTION # 130
A bridge domain for an EPC called "Web Servers" must be created in the Cisco APIC.
The configuration must meet these requirements:
- Only traffic to known Mac addresses must be allowed to reduce noice.
- The multicast traffic must be limited to the ports that are
participating in multicast routing.
- The endpoints within the bridge domain must be kept in the endpoint
table for 20 minultes without any updates.
Which set of steps configures the bridge domain that satisfies the requirements?

  • A. Set L2 Unknown Unicast to Hardware Proxy.
    Configure L3 Unknown Multicast Flooding to Optimized Flood.
    Create an Endpoint Retention Policy with a Local Endpoint Aging interval of 1200 seconds.
  • B. Switch L2 Unknown Unicast to Flood.
    Select the default Endpoint Retention Policy and set the Local Endpoint Aging to 20 minutes.
    Set Multicast Destination Flooding to Flood in Encapsulation.
  • C. Select the ARP Flooding checkbox.
    Create an Endpoint Retention Policy with a Remote Endpoint Aging Interval of 20 minutes.
    Set L3 Unknown Multicast Flooding to Optimized Flooding
  • D. Multicast Destination Flooding should be set to Flood in BD.
    Set L3 Unknown Multicast Flooding to Flood.
    Select the default Endpoint Retention Policy with a Local Endpoint Aging Interval of 1200 seconds.

Answer: A


NEW QUESTION # 131
An engineer is extending EPG connectivity to an external network. The external network houses the Layer 3 gateway and other end hosts. Which ACI bridge domain configuration should be used?

  • A. Forwarding: Custom
    L2 Unknown Unicast: Flood
    L3 Unknown Multicast Flooding: Flood Multi Destination Flooding: Flood in BD ARP Flooding: Disabled
  • B. Forwarding: Custom
    L2 Unknown Unicast: Hardware Proxy L3 Unknown Multicast Flooding: Flood Multi Destination Flooding: Flood in BD ARP Flooding: Disabled
  • C. Forwarding: Custom
    L2 Unknown Unicast: Hardware Proxy L3 Unknown Multicast Flooding: Flood Multi Destination Flooding: Flood in BD ARP Flooding: Enabled
  • D. Forwarding: Custom
    L2 Unknown Unicast: Flood
    L3 Unknown Multicast Flooding: Flood Multi Destination Flooding: Flood in BD ARP Flooding: Enabled

Answer: A


NEW QUESTION # 132
Which description regarding the initial APIC cluster discovery process is true?

  • A. The APIC discovers the IP address of the other APIC controllers by using Cisco Discovery Protocol.
  • B. The ACI fabric is discovered starting with the spine switches.
  • C. Every switch is assigned a unique AV by the APIC.
  • D. The APIC uses an internal IP address from a pool to communicate with the nodes.

Answer: A

Explanation:
Section: ACI Fabric Infrastructure
Explanation/Reference: https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/1-x/aci-fundamentals/ b_ACI-Fundamentals/b_ACI-Fundamentals_chapter_010011.html


NEW QUESTION # 133
Refer to the exhibit. A Cisco APIC raises an error when the EPG must accept endpoints from a VMM domain created. Which action clears the fault?

  • A. Associate the EPG with the VMM domain.
  • B. Create a bridge domain for the VMM domain.
  • C. Associate the VLAN pool with the VMM domain.
  • D. Expand the VLAN pool for the VMM domain.

Answer: D


NEW QUESTION # 134
An engineer must connect Cisco ACI fabric using Layer 2 with external third-party switches. The third-party switches are configured using 802.1s protocol. Which two constructs are required to complete the task?
(Choose two.)

  • A. static binding of native VLAN in all existing EPGs
  • B. MCP policy with PDU per VLAN enabled
  • C. dedicated EPG for native VLAN
  • D. MCP instance policy with administrative slate disabled
  • E. spanning tree policy for mapping MST Instances to VLANs

Answer: C,E

Explanation:
https://www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2019/pdf/BRKACI-3101.pdf
https://www.cisco.com/c/en/us/solutions/collateral/data-center-virtualization/application-centric-infrastructure/white-paper-c07-732033.html



NEW QUESTION # 135
What is MP-BGP used for in Cisco ACl fabric?

  • A. MP-BGP VPNv4 AF is used between spines in an ACI Multi-Pod fabric to propagate the endpoint
  • B. MP-BGP VPNv4 AF is used as protocol on L3Out between a border leaf and an external router
  • C. MP-BGP Layer 2 VPN EVPN AF is used to propagate L30ut routes that are received from a border leaf.
  • D. MP-BGP VPNv4 AF is used to propagate L3Out routes that are received from a border leaf to the fabric.

Answer: D


NEW QUESTION # 136
An endpoint called EP1 is connected to Cisco ACI compute leaf1. The engineer must replace EP1 with EP2 on the same leaf switch. Which set of actions forces all remote leaves to delete EP1 before timer expiration?

  • A. Set L2 Unknown Unicast to Flood.
    Select Clear remote IP entries.
  • B. Set L2 Unknown Unicast to Flood.
    Select Clear remote MAC entries.
  • C. Set L2 Unknown Unicast to Hardware Proxy.
    Select Clear remote IP entries.
  • D. Set L2 Unknown Unicast to Hardware proxy.
    Select Clear remote MAC entries.

Answer: B

Explanation:
When the bridge domain has L2 Unknown Unicast set to Flood, if an endpoint is deleted the system deletes it from both the local leaf switches as well as the remote leaf switches where the bridge domain is deployed, by selecting Clear Remote MAC Entries. Without this feature, the remote leaf continues to have this endpoint learned until the timer expires.


NEW QUESTION # 137
An administrator must migrate the vSphere Management VMkernel of all ESXi hosts in the production cluster from the standard default virtual switch to a VDS that is integrated with APIC in a VMM domain.
Which action must be completed in this scenario?

  • A. The administrator must set the Management VMkernel BD resolution immediacy to On-Demand.
  • B. The Management VMkernel EPG resolution must be set to Pre-Provosion.
  • C. The VMkernel Management BD must be located under the Management Tenant.
  • D. The administrator must create an in-band VMM Management EPG before performing the migration.

Answer: B


NEW QUESTION # 138
Refer to the exhibit. An engineer is configuring a production Multi-Site solution to provide connectivity from EPGs from a specific site to networks reachable through a remote site L3OUT.
All required schema and template objects are already defined. Which additional configuration must be implemented in the Multi-Site Orchestrator to support the cross-site connectivity?

  • A. Add a new stretched external EPG to the existing L3OUT.
  • B. Enable CloudSec for intersite traffic encryption.
  • C. Implement a policy-based redirect using a service graph.
  • D. Configure a routable TEP pool for SITE1.

Answer: A

Explanation:
In order to provide connectivity from EPGs from a specific site to networks reachable through a remote site L3OUT, a new stretched external EPG must be added to the existing L3OUT.


NEW QUESTION # 139
Drag and drop the Cisco ACI Layer 4 to Layer 7 service insertion terms on the left to the correct descriptions on the right.

Answer:

Explanation:


NEW QUESTION # 140
Which setting prevents the learning of Endpoint IP addresses whose subnet does not match the bridge domain subnet?

  • A. "Limit IP learning to subnet" setting within the bridge domain.
  • B. "Limit IP learning to network" setting within the EPG.
  • C. "Limit IP learning to subnet" setting within the EPG.
  • D. "Limit IP learning to network" setting within the bridge domain.

Answer: A

Explanation:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/2- x/L2_config/b_Cisco_APIC_Layer_2_Configuration_Guide/ b_Cisco_APIC_Layer_2_Configuration_Guide_chapter_010.html


NEW QUESTION # 141
Cisco APICs utilize sharding to provide what function for an ACI fabric?

  • A. It provides horizontal scaling ability for policy management on APICs
  • B. It provides scalability and reliability to the data sets generated and processed by the Distributed Policy Repository, the endpoint registry, the Observer, and the Topology Manager
  • C. It provides replication of application network policies across the APICs in the cluster
  • D. It provides a method for determining which APIC will act as the master in a fabric during the election process

Answer: B


NEW QUESTION # 142
Which Cisco ACI feature allows the encryption of communication over TEP addresses connecting sites via the intersite network in a Cisco Multi-Site deployment?

  • A. TrustSec
  • B. IPsec
  • C. MACsec
  • D. CloudSec

Answer: D


NEW QUESTION # 143
......

300-620 EXAM DUMPS WITH GUARANTEED SUCCESS: https://www.examcollectionpass.com/Cisco/300-620-practice-exam-dumps.html

Best Quality Cisco 300-620 Exam Questions: https://drive.google.com/open?id=1inT3HwqU7LPwjHcHsstERj3pv-1d3Cc-