400-201 Premium Bundle

400-201 Premium Bundle

CCIE SP Written v4.0 Certification Exam

4.5 
(16215 ratings)
0 QuestionsPractice Tests
0 PDFPrint version
November 23, 2024Last update

Cisco 400-201 Free Practice Questions

Q1. Refer to the exhibit. 

IS-IS configuration has been deployed using the default IS-IS metric value and default IS-IS metric-style. The SP decides to implement MPLS TE in all routers, except R5. In order to maintain IS-IS adjacency between R3 and R5 without impacting reachability, which command should be configured on R3 router under the IS-IS process? 

A. metric-style narrow 

B. metric-style wide 

C. metric-style narrow transition 

D. metric-style transition 

Answer:

Q2. When IPv6 is enabled on an interface, which three multicast addresses does the configured interface automatically join? (Choose three.) 

A. FF01::2 

B. FEC0::1 

C. FF02:0:0:0:0:1:FF00::/104 

D. FF02::1 

E. FF01::1 

F. FF02::2 

G. FF02::D 

H. FF02::5 

Answer: C,D,F 

Explanation: 

http://www.cisco.com/c/en/us/td/docs/switches/datacenter/mds9000/sw/4_1/configuration/guides/cli_4_1/clibook/ipv6.pdf https://www.iana.org/assignments/ipv6-multicast-addresses/ipv6-multicast-addresses.xml 

Q3. A service provider is using multicast flows to provide streaming video content to its customers. Video streams are sometimes interrupted, and network instability is determined to be the cause. Which action should the service provider take to decrease the burden on the router resources in an unstable unicast routing environment? 

A. Reduce the volume of query messages. 

B. Tune the RPF backoff. 

C. i Increase the PIM hello hold timers. 

D. Filter unnecessary SA messages. 

Answer:

Q4. An engineer wants to configure Fast Reroute in the network. Which methodology eliminates RSVP configuration in the network? 

A. Enable LDP Fast Synch. 

B. Enable IP Fast Reroute. 

C. Enable the auto tunnel primary feature. 

D. Enable Cisco MPLS TE Fast Reroute. 

E. Enable the auto tunnel backup feature. 

Answer:

Explanation: 

http://www.cisco.com/en/US/docs/ios/12_0st/12_0st10/feature/guide/fastrout.html 

Q5. DRAG DROP 

Drag and drop the MPLS operation listed on the left to the correct order of the operation on the right. 

Answer:  

Q6. In order to prevent malicious traffic flows, how does BGPsec protect prefix advertisements? 

A. It validates only the originating AS. 

B. It validates routes with encryption. 

C. It validates the AS path. 

D. It validates the next-hop AS. 

Answer:

Q7. What is the PPMP label used for? 

A. for the ingress replication model with BIDIR-PIM in an overlay model 

B. only for the inter-AS mVPN models that use mLDP 

C. for the partitioned mVPN model with PIM signaling in an overlay model 

D. only for unicast over MPLS VPN 

E. for all the default MDT and mVPN models 

Answer:

Explanation: http://lostintransit.se/tag/bgp/ 

https://tools.ietf.org/html/draft-rosen-l3vpn-mvpn-mspmsi-08#section-3.2.2.1 

Q8. A Server Provider is seeing an increasing amount of attacks against its customers. For which kind of attack would an engineer want to design a Backscatter Traceback solution? 

A. Rogue DNS/DHCP Servers 

B. IP Spoofing 

C. Ping of Death 

D. Distributed Denial of Service 

E. Network Attack TCP/UDP Scan 

Answer:

Explanation: Reference: http://www.cisco.com/web/about/security/intelligence/sp_infrastruct_scty.html 

http://www.cisco.com/web/about/ac123/ac147/archived_issues/ipj_10-4/104_ip-spoofing.html 

Q9. An engineer is deploying RTBH. What is necessary routing constraint required for successful implementation? 

A. The trigger device must have an iBGP session with all the clusters/route reflectors in the autonomous system. 

B. The trigger device must redistribute the static route pointing to a null interface into the IGP process. 

C. The no ip reachables command must be issued on the PE router interface under attack. 

D. The attacker’s destination IP address must be routed to a null interface. 

E. The eBGP sessions need to set the next-hop attribute value to the trigger device loopback interface. 

Answer:

Explanation: 

http://www.cisco.com/web/about/security/intelligence/ipv6_rtbh.html Old Dumps Actual Test pg no.52 (520 Q) 

Q10. What is the main advantage of H-VPLS over VPLS? 

A. H-VPLS provides redundancy. 

B. H-VPLS provides security. 

C. H-VPLS improves the scalability. 

D. H-VPLS allows a broader use of protocols. 

Answer:

Explanation: 

http://www.cisco.com/en/US/products/ps6603/products_white_paper09186a00801ed506.s html 

Q11. In a routing virtualization concept, which are the two main techniques for creating vitalized router entities as defined by their physical and operational characteristics? (Choose two.) 

A. HVR 

B. SVR 

C. SDR 

D. DRP 

E. VDC 

Answer: A,B 

Q12. How many bits are expressed by";:" in the address 2D01:DB::C:B7BA:130B? 

A. 16 bits 

B. 32 bits 

C. 40 bits 

D. 44 bits 

E. 48 bits 

F. 52 bits 

G. 56 bits 

H. 64 bits 

Answer: E

Q13. When troubleshooting a DoS attack, a support engineer finds a huge number of packets that are destined to one of the core routers interface IP address. By the time the packets reach this core router, they have a TTL of 0. Based on Cisco platform running IOS 15.3S, which technique is most effective in resolving this problem 

A. Configure LPTS. 

B. Configure an ACL on the core router interface. 

C. Configure CoPP on the core router. 

D. Configure policing on PE routers. 

E. Configure a receive ACL on the core router. 

Answer:

Q14. A telecom company offers ISPs the ability to resell dynamic IP broadband services over its local loops, but it does not allow the resellers to install broadband network gateways. If an ISP wants to become a reseller but is unable to use NHRP, which tunneling protocol should be implemented? 

A. IP in IP 

B. IPsec 

C. L2TP 

D. GRE 

Answer:

Explanation: 

However, while OpenVPN can not be used with VoIP, L2TP can be used for VoIP. Only use this if OpenVPN is not available and you are in need of very high security/encryption. 

Q15. Refer to the exhibit. 

ABC and XY2 MPLS VPN customers require Internet access. An ISP engineer deployed the solution on PE1 device. Which statement about CEs connectivity to Internet is true? 

A. Only CE-XYZ will have connectivity 

B. Neither CE will have connectivity, as IAR does not have route back to the subnet used on NAT configuration. 

C. Both CEs will have connectivity. 

D. Only CE-ABC will have connectivity. 

E. Neither CE will have connectivity, as both CEs are using the same subnet used on NAT configuration. 

Answer:

START 400-201 EXAM