A network engineer is integrating a new Hyperflex storage duster into an existing Cisco ACI fabric. The Hyperflex cluster must be managed by vCenter, so a new vSphere Distributed switch must be created. In addition, the hardware discovery must be performed by a vendor-neutral discovery protocol. Which set of steps meets these requirements?
A. Configure an Interface Policy group, select CDP, and apply it to the desired interfaces. Enter the vCenter IP and credentials in the Create vCenter Controller dialog box. In the Create VMware VMM domain dialog box, select Read-Only Mode. B. Configure an Interface Policy group, select LLDP, and apply it to the selected interfaces. Create a VLAN pool, add it to the VMware VMM domain, and include the appropriate interfaces. Enter the vCenter IP and credentials in the Create vCenter Controller dialog box. C. Configure a Switch Policy group, select LLDP, and apply it to the indicated interfaces. Set up a VMware VMM domain and apply it to the appropriate interfaces. Enter the APIC management IP and credentials in the Create vCenter Controller dialog box. D. Configure an Interface Policy group, select CDP, and apply it to the designated interfaces. Create a VMware VMM domain, add it to the VLAN pool, and associate it to the designated interfaces. Select Read Only Mode in the Create VMware VMM domain dialog box.
B. Configure an Interface Policy group, select LLDP, and apply it to the selected interfaces. Create a VLAN pool, add it to the VMware VMM domain, and include the appropriate interfaces. Enter the vCenter IP and credentials in the Create vCenter Controller dialog box.
Question 132:
Refer to the exhibit.
An engineer must divert the traffic between VM-1 and VM-2 by using a Multi-Node service graph. The solution should prevent an insufficient number of available Layer 4 to Layer 7 devices in the first cluster. Which configuration set accomplishes this goal?
A. PBR node tracking tracking threshold with action bypass symmetric PBR resilient hashing B. PBR node tracking tracking threshold with action permit unidirectional PBR resilient hashing C. PBR node tracking tracking threshold with action permit symmetric PBR resilient hashing D. PBR node tracking tracking threshold with action deny symmetric PBR unidirectional PBR
C. PBR node tracking tracking threshold with action permit symmetric PBR resilient hashing
Explanation/Reference:
1.
PBR node tracking: This allows PBR to track the status of the Layer 4 to Layer 7 devices in the service graph.
2.
Tracking threshold with action permit: This sets the threshold for device availability and permits traffic redirection to the available devices.
3.
Symmetric PBR: This ensures that both inbound and outbound traffic is redirected through the same set of Layer 4 to Layer 7 devices in the service graph.
4.
Resilient hashing: This load-balancing algorithm ensures that traffic is distributed evenly across all available devices, preventing any one device from becoming overloaded.
Question 133:
An administrator must collect hardware and environmental messages from leaf and spine switches and send them to an external logging server. Which monitoring method should be configured?
A. endpoint retention policy B. syslog destination and source policy C. COOP policy D. bridge domain subnet scope
B. syslog destination and source policy
Explanation
The correct answer is B because syslog destination and source policy is the mechanism used to export relevant operational messages from ACI devices to an external logging server. Option A is incorrect because endpoint retention policy controls endpoint aging only. Option C is incorrect because COOP handles endpoint reachability information, not event export. Option D is incorrect because subnet scope controls route visibility, not monitoring message delivery.
Question 134:
How does a Cisco ACI fabric update endpoint information when an endpoint transitions between two Cisco ACI leaf switches?
A. The original leaf reports the move to the COOP database on spine switches. B. COOP creates a bounce entry in the new leaf instead of data plane learning. C. The new leaf updates the COOP database on spine switches with the new endpoint. D. The spine switch pushes all endpoint database entries to each leaf switch.
C. The new leaf updates the COOP database on spine switches with the new endpoint.
Question 135:
Refer to the exhibit.
Endpoint-A must communicate with Endpoint-B, but Leaf-101 has not learned the location of Endpoint-B. Which step must Leaf-101 take before sending the data?
A. Leaf-101 forwards the packet to the anycast proxy VTEP IP. B. Leaf-101 creates an eVXLAN tunnel to Leaf-104. C. Leaf-101 sends the packet to the Spine-201. D. Leaf-101 broadcasts an ARP request on a link to one of the spines.
A. Leaf-101 forwards the packet to the anycast proxy VTEP IP.
Explanation/Reference:
In this scenario, given the ingress leaf does not know the destination MAC address, it will forward the packet to the spine anycast proxy-mac address. The spine will perform a COOP lookup for the destination MAC.
When Layer 3 routed traffic is destined to a Cisco ACI fabric, which mechanism does ACI use to detect silent hosts?
A. gratuitous ARP B. ARP gleaning C. proxy ARP D. inverse ARP
B. ARP gleaning
Explanation/Reference:
ARP Gleaning, also known as Silent Host Detection, is a process where ACI Spines generate an ARP request for a destination IP address that does not exist in the COOP (Cluster of On-Premises) database
Question 138:
Refer to the exhibit.
A Cisco APIC raises an error when the EPG must accept endpoints from a VMM domain created. Which action clears the fault?
A. Expand the VLAN pool for the VMM domain. B. Create a bridge domain for the VMM domain. C. Associate the EPG with the VMM domain. D. Associate the VLAN pool with the VMM domain.
A. Expand the VLAN pool for the VMM domain.
Explanation/Reference:
Question 139:
A company deploys separate ACI sites, each with its own APIC cluster, and wants policy-based intersite connectivity between them. Which ACI Anywhere architecture is being described?
A. Multi-Pod B. Remote Leaf C. Multi-Site D. bridge domain stretching only
C. Multi-Site
Explanation
The correct answer is C because Multi-Site is the ACI architecture that uses a dedicated APIC cluster per site while enabling intersite policy-based connectivity. Option A is incorrect because Multi-Pod uses one APIC cluster across multiple pods. Option B is incorrect because Remote Leaf extends leaf presence from a fabric and does not represent multiple full sites with separate APIC clusters. Option D is incorrect because simple bridge-domain stretching does not define the overall ACI Anywhere architecture described.
Question 140:
A RADIUS user resolves its role via the Cisco AV Pair. What object does the Cisco AV Pair resolve to?
A. tenant B. security domain C. primary Cisco APIC D. managed object class
D. managed object class
Explanation/Reference:
managed object class is an object ; security domain is a tag
Nowadays, the certification exams become more and more important and required by more and more
enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare
for the exam in a short time with less efforts? How to get a ideal result and how to find the
most reliable resources? Here on Vcedump.com, you will find all the answers.
Vcedump.com provide not only Cisco exam questions,
answers and explanations but also complete assistance on your exam preparation and certification
application. If you are confused on your 300-620 exam preparations
and Cisco certification application, do not hesitate to visit our
Vcedump.com to find your solutions here.