New 2021 Guaranteed Success with Lead1Pass 400-101 Dumps Cisco PDF Questions
Exceptional Practice To CCIE Routing and Switching Written Exam Pass the First Time
NEW QUESTION 78
How docs MSTP maintain compatibility with RSTP?
- A. MSTP sends all spanning-tree information in one BPDU.
- B. MSTP supports five port states in the same way as RSTP.
- C. RSTP encodes region information from an MSTP BPDU into a single instance.
- D. RSTP implements a TTL that is compatible with the MSTP max age timer.
Answer: A
NEW QUESTION 79
A configuration includes the line ip nbar port-map SSH tcp 22 23 443 8080. Which option describes the effect of this
configuration line?
- A. It configures NBAR to search for SSH using ports 22, 23, 443, and 8080.
- B. It configures NBAR to allow SSH connections only on ports 22, 23, 443, and 8080.
- C. It enables NBAR to inspect for SSH connections.
- D. It creates a custom NBAR port-map named SSH and associates TCP ports 22, 23, 443, and 8080 to itself.
Answer: A
Explanation:
The ip nbar-port-map command configures NBAR to search for a protocol or protocol name using a port number other
than the well-known port.
Reference: http://www.cisco.com/c/en/us/td/docs/ios/12_2/qos/command/reference/fqos_r/qrfcmd10.pdf
NEW QUESTION 80
Refer to the exhibit.
Which two statements about the EEM applet configuration are true? (Choose two.)
- A. The EEM applet runs before the CLI command is executed.
- B. The running configuration is displayed only if the letter Y is entered at the CLI.
- C. The EEM applet runs after the CLI command is executed.
- D. The EEM applet requires a case-insensitive response.
Answer: A,B
Explanation:
sync
Indicates whether the policy should be executed synchronously before the CLI command executes.
nocase
(Optional) Specifies case insensitive comparison.
Here we see that the sync knob was enabled so A is correct. However, C is not correct as the nocase argument was not used, so the applet is configured to display the config only if a capital Y is issued.
Reference: http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/eem/command/eem-cr-book/eem-cra2.html
NEW QUESTION 81
Which option describes how a router responds if LSA throttling is configured and it receives the identical LSA before the interval is set?
- A. The LSA is ignored and a notification is sent to the sending router to slow down its LSA packet updates.
- B. The LSA is added to the OSPF database and a notification is sent to the sending router to slow down its LSA packet updates.
- C. The LSA is ignored.
- D. The LSA is added to the OSPF database.
Answer: C
Explanation:
Explanation/Reference:
Explanation:
How OSPF LSA Throttling Works
The timers throttle lsa all command controls the generation (sending) of LSAs. The first LSA is always generated immediately upon an OSPF topology change, and the next LSA generated is controlled by the minimum start interval. The subsequent LSAs generated for the same LSA are rate-limited until the maximum interval is reached. The "same LSA" is defined as an LSA instance that contains the same LSA ID number, LSA type, and advertising router ID.
The timers LSA arrival command controls the minimum interval for accepting the same LSA. If an instance of the same LSA arrives sooner than the interval that is set, the LSA is dropped. It is recommended that the arrival interval be less than or equal to the hold-time interval of the timers throttle lsa all command.
Reference: http://www.cisco.com/c/en/us/td/docs/ios/12_0s/feature/guide/fsolsath.html
NEW QUESTION 82
Which option is the default maximum age of the MAC address table?
- A. 500 seconds
- B. 3600 seconds
- C. 1200 seconds
- D. 300 seconds
Answer: D
Explanation:
Explanation/Reference:
Explanation:
To configure the maximum aging time for entries in the Layer 2 table, use the mac-address-table aging- time command in global configuration mode.
Syntax Description
seconds
MAC address table entry maximum age. Valid values are 0, and from 5 to 1000000 seconds. Aging time is counted from the last time that the switch detected the MAC address. The default value is 300 seconds.
Reference.
http://www.cisco.com/c/en/us/td/docs/ios/lanswitch/command/reference/lsw_book/lsw_m1.html
NEW QUESTION 83
Refer to the exhibit.
The Main1 and Branch1 switches are connected directly over an MPLS pseudowire, and both run UDLD. After router B1 reloads because of a power failure, the pseudowire is restored. However, the Branch1 switch is unable to reach the Main1 switch.
Which two actions can you take to restore connectivity and prevent the problem from recurring? (Choose two.)
- A. Configure a backup pseudowire between the Main1 and Branch1 switches.
- B. Configure a backup GRE tunnel between the Main1 and Branch1 switches.
- C. Enable UDLD recovery on both the Main1 and Branch1 switches.
- D. Enable errdisable recovery on both the Main1 and Branch1 switches.
- E. Issue the shutdown and no shutdown commands on both the Branch1 switch's uplink to the B1 router and the Main1 switch's uplink to the M1 router.
- F. Issue the shutdown and no shutdown commands on the Branch1 switch uplink to the B1 router only.
Answer: D,F
NEW QUESTION 84
An NSSA area has two ABRs connected to Area 0. Which statement is true?
- A. Both ABRs forward Type-5 LSAs from the NSSA area to backbone area.
- B. No LSA translation is needed.
- C. Both ABRs translate Type-7 LSAs to Type-5 LSAs.
- D. The ABR with the highest router ID translates Type-7 LSAs to Type-5 LSAs.
Answer: D
Explanation:
Explanation/Reference:
Explanation:
NEW QUESTION 85
What is the cause of ignores and overruns on an interface, when the overall traffic rate of the interface is low?
- A. a software bug
- B. a hardware failure of the interface
- C. a bad cable
- D. microbursts of traffic
Answer: D
Explanation:
Micro-bursting is a phenomenon where rapid bursts of data packets are sent in quick succession, leading to periods of
full line-rate transmission that can overflow packet buffers of the network stack, both in network endpoints and
routers and switches inside the network.
Symptoms of micro bursts will manifest in the form of ignores and/ or overruns (also shown as accumulated in "input
error" counter within show interface output). This is indicative of receive ring and corresponding packet buffer being
overwhelmed due to data bursts coming in over extremely short period of time (microseconds). You will never see a
sustained data traffic within show interface's "input rate" counter as they are averaging bits per second (bps) over 5
minutes by default (way too long to account for microbursts). You can understand microbursts from a scenario where
a 3-lane highway merging into a single lane at rush hour - the capacity burst cannot exceed the total available
bandwidth (i.e. single lane), but it can saturate it for a period of time.
Reference: http://ccieordie.com/?tag=micro-burst
NEW QUESTION 86
Which statement about the OSPF Loop-Free Alternate feature is true?
- A. It is supported when a traffic engineering tunnel interface is protected.
- B. It is supported when traffic can be redirected to a primary neighbor.
- C. It is supported in VRF OSPF instances.
- D. It is supported on routers that are configured with virtual links.
Answer: C
Explanation:
Restrictions for OSPF IPv4 Remote Loop-Free Alternate IP Fast Reroute - The OSPF IPv4 Remote Loop-Free Alternate IP Fast Reroute feature is not supported on devices that are virtual links headends. - The feature is supported only in global VPN routing and forwarding (VRF) OSPF instances. - The only supported tunneling method is MPLS. - You cannot configure a traffic engineering (TE) tunnel interface as a protected interface. Use the MPLS Traffic Engineering-Fast Reroute Link and Node Protection feature to protect these tunnels. For more information, see the "MPLS Traffic Engineering-Fast Reroute Link and Node Protection" section in the Multiprotocol Label Switching Configuration Guide. - You can configure a TE tunnel interface in a repair path, but OSPF will not verify the tunnel's placement; you must ensure that it is not crossing the physical interface that it is intended to protect. - Not all routes can have repair paths. Multipath primary routes might have repair paths for all, some, or no primary paths, depending on the network topology, the connectivity of the computing router, and the attributes required of repair paths. - Devices that can be selected as tunnel termination points must have a /32 address advertised in the area in which remote LFA is enabled. This address will be used as a tunnel termination IP. If the device does not advertise a /32 address, it may not be used for remote LFA tunnel termination.
- All devices in the network that can be selected as tunnel termination points must be configured to accept targeted LDP sessions using the mpls ldp discovery targeted-hello accept command.
Reference: http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_ospf/configuration/xe3s/iro-xe-3s-book/iro-ipfrr-lfa.html
NEW QUESTION 87
Which two statements about the C-bit and PW type are true? (Choose two.)
- A. The C-bit is 3 bits and the PW type is 10 bits.
- B. The C-bit is 1 byte and the PW type is 15 bytes.
- C. The PW type indicates the type of pseudowire.
- D. The PW type indicates the encryption type.
- E. The C-bit set to 1 indicates a control word is present.
Answer: C,E
NEW QUESTION 88
DRAG DROP
Drag each spanning-tree feature on the left to the matching statement on the right.
Answer:
Explanation:
Explanation:
NEW QUESTION 89
Which two ntatementn about TCP are true? (Choone two.)
- A. Itn maximum data offnet in ten 32-bit wordn.
- B. TCP option munt be divinible by 32.
- C. It han a 32-bit window nize.
- D. It han a 16-bit window nize.
- E. Itn maximum data offnet in fifteen 32-bit wordn.
- F. It han a 32-bit checknum field.
Answer: D,E
NEW QUESTION 90
What is a key advantage of Cisco GET VPN over DMVPN?
- A. Cisco GET VPN has a better anti-replay mechanism.
- B. Cisco GET VPN provides zero-touch deployment of IPSEC VPNs.
- C. Cisco GET VPN does not require a secondary overlay routing infrastructure.
- D. Cisco GET VPN supports certificate authentication for tunnel establishment.
Answer: C
NEW QUESTION 91
Refer to the exhibit.
The Main1 and Branch1 switches are connected directly over an MPLS pseudo wire and both run UDLD. After router B1 reloads because of a power failure, the pseudo wire is restored. However, the Branch1 switch is unable to reach the Main1 switch. Which two actions can you take to restore connectivity and prevent the problem from recurring?
(Choose two.)
- A. Configure a backup GRE tunnel between the Main1 and Bianch1 switches.
- B. Enable UDLD recovery on both the Main1 and Branch 1 switches.
- C. Issue the shutdown and no shutdown commands Oil both the Branch1 switch's uplink to the B1 router and the Main1 switch's uplink to the M1 router.
- D. Configure a backup pseudo wire between the Main1 and Branch1 switches
- E. Enable errdisable recovery on both the Main1 and Branch1 switches
Answer: C,E
NEW QUESTION 92
Refer to the exhibit.
You are configuring the S1 switch for the switchport connecting to the client computer. Which option describes the
effect of the command mls qos map cos-dscp 0 8 16 24 32 40 46 56?
- A. Video conferencing is marked CS3.
- B. Voice packets are processed in the priority queue.
- C. Voice packets are given a class selector of 5.
- D. Voice traffic is excluded from the default priority queue.
Answer: D
Explanation:
The default CoS to DSCP mappings are shown below:
Default CoS-to-DSCP Map
CoS Value DSCP Value
0 0
1 8
2 16
3 24
4 32
5 40
6 48
7 56
In our example, we see that COS 6 is mapped to DSCP, not the default of DSCP 48 as shown above. DSCP 46 is
Expedited Forwarding (EF), which is typically used for voice traffic, and this value has not been included in this class
map.
NEW QUESTION 93
Refer to the exhibit.
Which two statements about the output are true? (Choose two.)
- A. It indicates that prefix aggregation cache export is enabled on the device.
- B. It indicates that the flows are being sent to a destination using an RFC1918 address.
- C. It indicates that the device is using NetFlow version 5.
- D. It was obtained with the show ip cache flow command.
Answer: B,C
NEW QUESTION 94
Which two statements about the metric-style wide statement as it applies to route redistribution are true?
(Choose two.)
- A. It is used in PIM for accepting mroutes.
- B. It is used in OSPF.
- C. It is used in IS-IS.
- D. It is used in EIGRP.
- E. It is used for accepting external routes.
- F. It is used for accepting TLV.
Answer: C,F
NEW QUESTION 95
Refer to the exhibit.
Why is the router not accessible via Telnet on the GigabitEthernet0 management interface?
- A. The log keyword needs to be removed from the telnet-acl access list..
- B. The access class needs to have the vrf-also keyword added.
- C. The wrong port is being used in the telnet-acl access list.
- D. The subnet mask is incorrect in the telnet-acl access list.
Answer: B
NEW QUESTION 96
Which three statements are true about PPP CHAP authentication? (Choose three.)
- A. The LCP phase must be complete and in closed state.
- B. By default, the router uses its hostname to identify itself to the peer.
- C. PPP encapsulation must be enabled on the interface.
- D. The LCP phase must be complete and in open state.
- E. PPP encapsulation must be enabled globally.
- F. The hostname used by a router for CHAP authentication cannot be changed.
Answer: B,C,D
Explanation:
Explanation/Reference:
Explanation:
Point-to-Point Protocol (PPP) authentication issues are one of the most common causes for dialup link failures. This document provides some troubleshooting procedures for PPP authentication issues.
Prerequisites
Note. By default, the router uses its hostname to identify itself to the peer. However, this CHAP username can be changed through the ppp chap hostname command.
Reference. http://www.cisco.com/c/en/us/support/docs/wan/point-to-point-protocol-ppp/25647- understanding-ppp-chap.html
NEW QUESTION 97
Which three statements about RIPng are true? (Choose three.)
- A. Its RTE last byte is 0XFF.
- B. It sends updates on FF02::9.
- C. It sends updates on UDP port 520.
- D. It supports authentication.
- E. It supports route tags.
- F. It can be used on networks of greater than 15 hops.
Answer: A,B,E
NEW QUESTION 98
Refer to the exhibit.
Which two conditions can cause this error message to be displayed on the console? (Choose two.)
- A. The EtherChannel is configured as desirable on both ends.
- B. The EtherChannel is configured as auto on one of the interfaces.
- C. There is a speed and duplex mismatch on interface fa0/12.
- D. The port-channel on the adjacent device is misconfigured.
Answer: C,D
NEW QUESTION 99
Refer to the exhibit.
Which two routes are included in the route update? (Choose two.)
- A. 10.3.3.0
- B. 10.3.6.0
- C. 10.3.2.0
- D. 10.3.0.0
- E. 10.3.4.0
Answer: B,E
Explanation:
This access list will permit the 10.3.4.0, 10.3.5.0, 10.3.6.0, and 10.3.7.0 subnets.
NEW QUESTION 100
Refer to the exhibit. What are two effects of the given configuration? (Choose two.)
- A. Track object 100 stays up as long as both Ethernet1/0 and Ethernet1/1 are up
- B. Track object 100 goes down if all three interfaces go down
- C. Track object 100 goes down if Ethernet1/2 goes down
- D. The aggregate weight of track object 100 is set to 40
- E. The aggregate weight of track object 100 is set to 30
- F. Track object 100 goes down if Ethernet1/0 goes down
Answer: A,B
NEW QUESTION 101
......
400-101 EXAM DUMPS WITH GUARANTEED SUCCESS: https://www.lead1pass.com/Cisco/400-101-practice-exam-dumps.html