352-011 Exam Details

  • Exam Code
    :352-011
  • Exam Name
    :Cisco Certified Design Expert Practical
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :249 Q&As
  • Last Updated
    :May 31, 2026

Cisco 352-011 Online Questions & Answers

  • Question 101:

    You are redesigning a high-speed transit network due to congestion-related issues. Which congestion avoidance mechanism can you apply to the existing network?

    A. NBAR
    B. FIFO
    C. WRED
    D. Rate-limit
    E. Policy-Based Routing

  • Question 102:

    Which are two data plane hardening techniques? (Choose two)

    A. Infrastructure ACLs
    B. Control Plane Policing
    C. Redundant AAA servers
    D. Disable unused services
    E. Routing protocol authentication
    F. SNMPv3
    G. Warning banners

  • Question 103:

    Which solution suppresses the effect of excessive interface flapping events on routing protocols?

    A. IP Event Dampening
    B. SPF Backoff
    C. Carrier Delay
    D. BFD

  • Question 104:

    The enterprise customer ABC Corp will deploy a centralized unified communications application to provide voice, and instant messaging to their branch offices. Some of the branch offices are located in remote locations and are connected via a 1.5 Mb/s Layer 3 VPN connection. Which two ways are the most cost-effective to ensure that this new application is implemented properly? (Choose two)

    A. Use a low bitrate codec such as G 711
    B. Set voice activity detection to avoid sending packets when the conversations is silent
    C. Enable VRF-Lite on the CE router to create a separate voice VRF
    D. Set LFI on the WAN connections to interleave the small voice packets with the large data packets
    E. Set WAN optimization on the CE router to compress the voice packets for improved bandwidth utilization and performance
    F. Use a low bitrate codec such as G 729

  • Question 105:

    A data center provider has designed a network using these requirements

    Two data center sites are connected to the public internet

    Both data centers are connected to different Internet providers

    Both data centers are also directly connected with a private connection for the internal traffic can also be at this direct connection The data center provider has only /19 public IP address block

    Under normal conditions, Internet traffic should be routed directly to the data center where the services are located.

    When one Internet connections fails to complete traffic for both data centers should be routed by using the remaining Internet connection in which two ways can this routing be achieved? (Choose two)

    A. One /20 block is used for the first data center and the second /20 block is used for the second data center. The /20 block from the local data center is sent out without path prepending and the /20 block from the remote data center is sent out with path prepending at both sites
    B. One /20 block is used for the first data center and the second /20 block is used for the second data center. Each /20 block is only sent out locally. The /19 block is sent out at both Internet connections for the backup case to reroute the traffic through the remaining internet connection
    C. One /20 block is used for the first data center and the second /20 block is used for the second data center. The /20 block from the local data center is sent out with a low BGP local preference and the /20 block from the remote data center is sent out with a higher BGP local preference of both sites
    D. BGP will always load-balance the traffic to both data center sites
    E. One /20 block is used for the first data center and the second /20 block is used for the second data center. The /20 block from the local data center is sent out with a low BGP weight and the /20 block from the remote data center is sent out with a higher BGP weight at both sites
    F. The data center provider must have an additional public IP address block for this routing

  • Question 106:

    Refer to the exhibit.

    This enterprise customer wants to stream one-way video from their head office to eight branch offices using multicast. Their current service provider provides a Layer 3VPN solution and manages the CE routers, but they do not currently multicast. Which solution quickly allows this multicast traffic to go through while allowing for future scalability?

    A. Enable a GRE tunnel between nodes C1 and C4
    B. Enable a GRE tunnel between nodes CE1 and CE2
    C. Enable a GRE tunnel between nodes C2 and C4
    D. Implement hub and spoke MPLS VPN over DMVPN(also known as 2547oDMVPN) between CE1 and CE2
    E. The service provider must provide a Draft Rosen Solution to enable a GRE tunnel node PE1 and PE2

  • Question 107:

    You are designing dual-homed active/active ISP connections from an enterprise customer for internet services, and you have recommended BGP between the customer and ISP. When three security mechanisms do you enable to secure the connection? (Choose three)

    A. uRPF is strict mode
    B. remote triggered black holes
    C. IDS
    D. GTSM
    E. Routing protocol authentication
    F. uRPF in loose mode

  • Question 108:

    Refer to the exhibit.

    Each branch network must connect to the HQ and other branch networks over the phase 2 DMVPN network using a single tunnel interface. OSPF is running over the DMVPN network. Which network type is compatible with the DMVPN tunnel and ensures that the next hop of any route is unchanged?

    A. Point-to-point
    B. Point-to-multipoint
    C. Broadcast
    D. Nonbroadcast

  • Question 109:

    Refer to the exhibit.

    The operations team has identified that some of the multi-tiered e-commerce application have slow performance, due to illegitimate inbound traffic form the internet. On which device do you place traffic filtering to improve performance?

    A. Option A
    B. Option B
    C. Option C
    D. Option D

  • Question 110:

    What is the definition of TOGAF framework?

    A. A framework for enterprise IP address management (IPAM) based on the IANA trusted IP lease allocation scheme.
    B. A series of tools for process improvement that uses statistical method to reduce defect in process and manufacturing.
    C. A framework for enterprise architecture that provides a comprehensive approach for designing planning implementing and governing enterprise information architecture.
    D. A five-volume framework for service management that covers design transition and delivery of service and from which the ISO 20000 was developed.
    E. An ISO framework that establishes a module for network management and contains guidelines for managing object the management database and the application entity.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 352-011 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.