Latest 350-401 Pass Guaranteed Exam Dumps Certification Sample Questions [Q170-Q185]

Share

Latest 350-401 Pass Guaranteed Exam Dumps Certification Sample Questions

New 350-401 Test Materials & Valid 350-401 Test Engine


Cisco 350-401 Exam Certification Details:

Exam Code350-401 ENCOR
Passing ScoreVariable (750-850 / 1000 Approx.)
Recommended TrainingImplementing Cisco Enterprise Network Core Technologies (ENCOR)
Number of Questions90-110
Exam Price$400 USD
Exam RegistrationPEARSON VUE
Sample QuestionsCisco 350-401 Sample Questions
Duration120 minutes
Exam NameImplementing and Operating Cisco Enterprise Network Core Technologies

 

NEW QUESTION 170
Which NGFW mode block flows crossing the firewall?

  • A. Tap
  • B. Inline
  • C. Passive
  • D. Inline tap

Answer: D

 

NEW QUESTION 171
Refer to the exhibit.

An engineer attempts to create a configuration to allow the Blue VRF to leak into the global routing table, but the configuration does not function as expected. Which action resolves this issue?

  • A. Change the source network that Is specified in access-list 101.
  • B. Change the access-list number in the route map
  • C. Change the route-map configuration to VRF_BLUE.
  • D. Change the access-list destination mask to a wildcard.

Answer: D

 

NEW QUESTION 172
An engineer reviews a router's logs and discovers the following entry. What is the event's logging severity level?

  • A. informational
  • B. notification
  • C. error
  • D. warning

Answer: C

 

NEW QUESTION 173
Refer to the exhibit.

Assuming that R is a CE router, which VRF is assigned to Gi0/0 on R1?

  • A. VRF VPN_B
  • B. Management VRF
  • C. VRF VPN_A
  • D. Default VRF

Answer: C

 

NEW QUESTION 174
Drag and drop the descriptions from the left onto the routing protocol they describe on the right.

Answer:

Explanation:

Explanation

 

NEW QUESTION 175
Which OSPF networks types are compatible and allow communication through the two peering devices?

  • A. point-to-multipoint to nonbroadcast
  • B. broadcast to point-to-point
  • C. point-to-multipoint to broadcast
  • D. broadcast to nonbroadcast

Answer: B

 

NEW QUESTION 176
Which two pieces of information are necessary to compute SNR? (Choose two.)

  • A. transmit power
  • B. RSSI
  • C. noise floor
  • D. antenna gain
  • E. EIRP

Answer: B,C

Explanation:
Signal to Noise Ratio (SNR) is defined as the ratio of the transmitted power from the AP to the ambient (noise floor) energy present. To calculate the SNR value, we add the Signal Value to the Noise Value to get the SNR ratio. A positive value of the SNR ratio is always better.
Here is an example to tie together this information to come up with a very simple RF plan calculator for a single AP and a single client.
+ Access Point Power = 20 dBm
+ 50 foot antenna cable = - 3.35 dB Loss
+ Signal attenuation due to glass wall with metal frame = -6 dB
+ External Access Point Antenna = + 5.5 dBi gain
+ RSSI at WLAN Client = -75 dBm at 100ft from the AP
+ Noise level detected by WLAN Client = -85 dBm at 100ft from the AP
Based on the above, we can calculate the following information.
+ EIRP of the AP at source = 20 - 3.35 + 5.5 = 22.15 dBm
+ Transmit power as signal passes through glass wall = 22.15 - 6 = 16.15 dBm
+ SNR at Client = -75 + -85 = 10 dBm (difference between Signal and Noise) Reference:
https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Borderless_Networks/Unified_Access/ CMX/CMX_RFFund.html Receive Signal Strength Indicator (RSSI) is a measurement of how well your device can hear a signal from an access point or router. It's a value that is useful for determining if you have enough signal to get a good wireless connection.
EIRP tells you what's the actual transmit power of the antenna in milliwatts.
dBm is an abbreviation for "decibels relative to one milliwatt," where one milliwatt (1 mW) equals
1/1000 of a watt. It follows the same scale as dB. Therefore 0 dBm = 1 mW, 30 dBm = 1 W, and -
20 dBm = 0.01 mW

 

NEW QUESTION 177
Which two threats does AMP4E have the ability to block? (Choose two.)

  • A. Microsoft Word macro attack
  • B. email phishing
  • C. SQL injection
  • D. ransomware
  • E. DDoS

Answer: B,D

 

NEW QUESTION 178
Which IP SLA operation requires the IP SLA responder to be configured on the remote end?

  • A. UDP jitter
  • B. CMP jitter
  • C. ICMP echo
  • D. TCP connect

Answer: A

Explanation:
Explanation
Cisco IOS IP SLA Responder is a Cisco IOS Software component whose functionality is to respond to Cisco IOS IP SLA request packets. The IP SLA source sends control packets before the operation starts to establish a connection to the responder. Once the control packet is acknowledged, test packets are sent to the responder. The responder inserts a time-stamp when it receives a packet and factors out the destination processing time and adds time-stamps to the sent packets. This feature allows the calculation of unidirectional packet loss, latency, and jitter measurements with the kind of accuracy that is not possible with ping or other dedicated probe testing.
Reference: https://www.cisco.com/en/US/technologies/tk869/tk769/technologies_white_paper090
0aecd806bfb52.html
The IP SLAs responder is a component embedded in the destination Cisco device that allows the system to anticipate and respond to IP SLAs request packets. The responder provides accurate measurements without the need for dedicated probes.
Reference: https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst4500/12-
2/46sg/configuration/guide/Wrapper-46SG/swipsla.html
UDP Jitter measures the delay, delay variation(jitter), corruption, misorderingand packet lossby generating periodic UDP traffic. This operation always requires IP SLA responder.
Reference: https://www.ciscolive.com/c/dam/r/ciscolive/us/docs/2017/pdf/BRKNMS-3043.pdf

 

NEW QUESTION 179

Refer to the exhibit. An engineer configures monitoring on SW1 and enters the show command to verify operation. What does the output confirm?

  • A. SPAN session 2 only monitors egress traffic exiting port FastEthernet 0/14.
  • B. RSPAN session 1 is incompletely configures for monitoring.
  • C. SPAN session 2 monitors all traffic entering and exiting port FastEthernet 0/15.
  • D. RSPAN session 1 monitors activity on VLAN 50 of a remote switch.

Answer: B

 

NEW QUESTION 180
what is a benefit of using a Type 2 hypervisor instead of a Type 1 hypervisor?

  • A. Improved density and scalability
  • B. ability to operate on hardware that is running other OSs
  • C. better application performance
  • D. Improved security because the underlying OS is eliminated

Answer: B

 

NEW QUESTION 181
Drag and drop the characteristics from the left onto the infrastructure types on the right.

Answer:

Explanation:

Explanation

 

NEW QUESTION 182

Refer to the exhibit. Extended access-list 100 is configured on interface GigabitEthernet 0/0 in an inbound direction, but it does not have the expected behavior of allowing only packets to or from 192.168.0.0/16.
Which command set properly configures the access list?

  • A. Option B
  • B. Option A
  • C. Option C
  • D. Option D

Answer: A

 

NEW QUESTION 183
What is the responsibility of a secondary WLC?

  • A. It enables Layer 2 and Layer 3 roaming between Itself and the primary controller.
  • B. It registers the LAPs if the primary controller fails.
  • C. It avoids congestion on the primary controller by sharing the registration load on the LAPs.
  • D. It shares the traffic load of the LAPs with the primary controller.

Answer: B

Explanation:
Explanation
When the primary controller (WLC-1) goes down, the APs automatically get registered with the secondary controller (WLC-2). The APs register back to the primary controller when the primary controller comes back on line.
Reference:
https://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-lan-wlan/69639-wlc-failover.html

 

NEW QUESTION 184
An engineer runs the sample code, and the terminal returns this output. Which change to the sample code corrects this issue?

  • A. Change the JSON method from load() to loads().
  • B. Call the read() method explicitly on the test_json string
  • C. Enclose null in the test_json string in double quotes
  • D. Use a single set of double quotes and condense test_json to a single line

Answer: A

 

NEW QUESTION 185
......


Understanding functional and technical aspects of Implementing Cisco Enterprise Network Core Technologies (350-401 ENCOR) Automation

The following will be discussed in CISCO 350-401 dumps pdf:

  • Next-generation firewall
  • Configure and verify infrastructure security features
  • Explain basic Python components and conditionals with script writing and analysis
  • Describe network programmability protocols such as Network Configuration Protocol (NETCONF) and RESTCONF
  • Configure and verify wireless security features
  • Configure and verify device access control
  • Describe the concepts and features of Quality of Service (QoS), and describe the need within the enterprise network
  • Describe the concepts, purpose, and features of multicast protocols, including Internet Group Management Protocol (IGMP) v2/v3, Protocol-Independent Multicast (PIM) dense mode/sparse mode, and rendezvous points
  • Describe the components of network security design
  • PSK
  • TrustSec, MACsec
  • Threat defense
  • Describe the components and features of the Cisco SD-Access solution, including the nodes, fabric control plane, and data plane, while illustrating the purpose and function of the Virtual Extensible LAN (VXLAN) gateways
  • WebAuth
  • Describe APIs in Cisco DNA Center and vManage
  • Authentication and authorization using AAA
  • Lines and password protection
  • EAP
  • ACLs
  • Describe REST API security
  • Endpoint security
  • CoPP
  • Network access control with 802.1X, MAB, and WebAuth
  • Define the components and features of Cisco SD-WAN solutions, including the orchestration plane, management plane, control plane, and data plane

 

350-401 Sample with Accurate & Updated Questions: https://www.suretorrent.com/350-401-exam-guide-torrent.html

350-401 Updated Exam Dumps [2021] Practice Valid Exam Dumps Question: https://drive.google.com/open?id=1ns50wkxSxibBAuFBUX0u9nVJvTB3fsGP