Free 300-420 Exam Braindumps (page: 15)

Page 14 of 73

Which component of Cisco SD-Access integrates with Cisco DNA Center to perform policy segmentation and enforcement through the use of security group access control lists and security group tags?

  1. Cisco Application Policy Infrastructure Controller Enterprise Module
  2. Cisco Network Data Platform
  3. Cisco Identity Services Engine
  4. Cisco TrustSec

Answer(s): C



Which design element should an engineer consider when multicast is included in a Cisco SD-Access architecture?

  1. PIM SSM must run in the underlay.
  2. Multicast clients reside in the underlay, and the multicast source is outside the fabric or in the overlay.
  3. Rendezvous points must be used in a PIM SSM deployment.
  4. Multicast traffic is transported in the overlay and the EID space for wired and wireless clients.

Answer(s): D


Reference:

https://www.ciscolive.com/c/dam/r/ciscolive/us/docs/2018/pdf/BRKEWN-2020.pdf Slide 113



What is the role of a control-plane node in a Cisco SD-Access architecture?

  1. fabric device that connects wired endpoints to the SD-Access fabric
  2. map system that manages endpoint to device relationships
  3. fabric device that connects APs and wireless endpoints to the SD-Access fabric
  4. map system that manages External Layer 3 networks

Answer(s): B


Reference:

https://netaavi.com/my-blog-1/f/overview-of-sda-fabric-solution



How is end-to-end microsegmentation enforced in a Cisco SD-Access architecture?

  1. VLANs are used to segment traffic at Layer 2.
  2. 5-tuples and ACLs are used to permit or deny traffic.
  3. SGTs and SGTACLs are used to control access to various resources.
  4. VRFs are used to segment traffic at Layer 3.

Answer(s): C






Post your Comments and Discuss Cisco® 300-420 exam with other Community members: