A Cisco ACI fabric connects with the same L3Out to SW1 and SW2. The fabric has a single tenant and single VRF.
Which two actions must be taken to allow Host1 to communicate with the external EPG subnet? (Choose two.)
A. Disable unicast routing on bridge domain Telco_BD. B. Add subnet 2a01:8c8:03a0:3::2/64 under Telco_EPG. C. Advertise externally 2a01:8c8:03a0:3::1/64 on Telco_BD. D. Associate bridge domain Telco_BD to L3out_Telco. E. Check the box of No Default SVI Gateway under Telco_BD.
C. Advertise externally 2a01:8c8:03a0:3::1/64 on Telco_BD. D. Associate bridge domain Telco_BD to L3out_Telco.
Question 182:
What must be configured to allow SNMP traffic on the APIC controller?
A. out-of-band management interface B. contract under tenant mgmt C. SNMP relay policy D. out-of-band bridge domain
B. contract under tenant mgmt
Question 183:
On which two interface types should a user configure storm control to protect against broadcast traffic? (Choose two.)
A. APIC facing interfaces B. port channel on a single leaf switch C. all interfaces on the leaf switches in the fabric D. endpoint-facing trunk interface E. fabric uplink interfaces on the leaf switches
B. port channel on a single leaf switch D. endpoint-facing trunk interface
Explanation/Reference:
Typically, a fabric administrator configures storm control in fabric access policies on the following interfaces:
1.
A regular trunk interface.
2.
A direct port channel on a single leaf switch.
3.
A virtual port channel (a port channel on two leaf switches).
Which service graph feature prevents redirection of traffic to a PBR node that is down?
A. threshold B. node tracking C. resilient hashing D. health group
D. health group
Question 185:
An SNMP monitoring service is added to a Cisco ACI fabric. The solution must meet these requirements:
1.
The notification must be generated when significant events occur during hardware-related events.
2.
The notification system must be redundant by using multiple servers to receive the notifications.
Which set of actions meets these requirements?
A. Implement an SNMP Monitoring Destination Group. Associate the SNMP policy to the desired pod in the Pod Policies section under the Fabric tab. B. Configure an SNMP policy with community policies in the Tenant section of the common tenant. Link the SNMP policy to the common tenant in the Monitoring Policies section under the Fabric tab. C. Define an SNMP policy with community policies in the Fabric Policies section under the Fabric tab. Implement an SNMP Client Group Profile. D. Configure an SNMP Monitoring Destination Group. Define an SNMP source by using the previously defined group in the Access Policies section under the Fabric tab.
A. Implement an SNMP Monitoring Destination Group. Associate the SNMP policy to the desired pod in the Pod Policies section under the Fabric tab.
An engineer must migrate workloads from the brownfield network to the Cisco ACI fabric. The VLAN 10 default gateway remains in the router located in the brownfield network. The bridge domain has already been associated with L2Out. Which two actions must be taken to migrate the workloads? (Choose two.)
A. Enable ARP Flooding. B. Configure Multi-Destination Flooding Flood in Encapsulation. C. Select limit IP learning to Subnet. D. Set L2 Unknown Unicast Flood. E. Map the MAC address of the default gateway to the bridge domain.
A. Enable ARP Flooding. D. Set L2 Unknown Unicast Flood.
Enable ARP flooding: ARP requests originated from devices connected to the Cisco ACI fabric should be able to reach the default gateway or other endpoints part of the same IP subnet and still connected to the brownfield network. Since
those entities are unknown to the Cisco ACI fabric, it is required to flood ARP requests across the Cisco ACI fabric and toward the brownfield network.
Enable Unknown Unicast flooding: similar considerations valid for ARP traffic apply also to Layer 2 unknown traffic (unicast and multicast), so it is required to ensure flooding is enabled in this phase for those traffic types.
Question 187:
Which table holds IP address, MAC address and VXLAN/VLAN information on a Cisco ACI leaf?
An engineer deploys a two-pod Cisco ACI Multi-Pod environment. Why should no more than two Cisco APIC controllers be deployed in the same pod?
A. to enable equal capacity to scale in each pod B. to avoid losing all replicas of a shard if a pod fails C. to avoid hair-pinning traffic that is destined for the primary APIC controller between pods D. to ensure that all nodes in all pods have local access to a controller
B. to avoid losing all replicas of a shard if a pod fails
Explanation/Reference:
"To ensure that a total loss of a given pod does not result in the loss of all shards for a given attribute, Cisco recommends that no more than two APICs be placed in a single pod."
A Cisco ACI fabric has L3Out using BGP with the maximum number of BGP prefixes configured as 1000. The fabric must raise the fault when 1001 prefixes are learned and the prefix 1002 must not be learned. Which BGP peer prefix action accomplishes this goal?
A. Log B. Reject C. Restart D. Shutdown
B. Reject
Question 190:
Refer to the exhibit. An engineer configures connectivity for a bare metal server called SVR-15. EPG-15 is associated with a physical domain named phys_dom-15. The VPC member port is statically bound to EPG-15 with Encapsulation VLAN-1500. Which step must the engineer take to ensure that SVR-15 is connected to the Cisco ACI fabric?
A. Associate an LACP interface policy to phys_dom-15 for VLAN-1500. B. Enable dynamic VLAN assignment for the VLAN pool that is associated with phys_dom-15. C. Configure a VPC explicit protection group for VLAN-1500 on the VPC member ports. D. Confirm that the VLAN pool that is associated with phys_dom-15 includes VLAN-1500.
D. Confirm that the VLAN pool that is associated with phys_dom-15 includes VLAN-1500.
Nowadays, the certification exams become more and more important and required by more and more
enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare
for the exam in a short time with less efforts? How to get a ideal result and how to find the
most reliable resources? Here on Vcedump.com, you will find all the answers.
Vcedump.com provide not only Cisco exam questions,
answers and explanations but also complete assistance on your exam preparation and certification
application. If you are confused on your 300-620 exam preparations
and Cisco certification application, do not hesitate to visit our
Vcedump.com to find your solutions here.