Special Summer Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

300-620 Exam Dumps - Implementing Cisco Application Centric Infrastructure (300-620 DCACI)

Go to page:
Question # 57

A network engineer demonstrates Cisco ACI to a customer. One of the test cases is to validate a disaster

recovery event by resetting the ACI fabric to factory and then restoring the fabric to the state it was in before

the event. Which setting must be enabled on ACI to export all configuration parameters that are necessary to

meet these requirements?

A.

enabled AES encryption

B.

generated a tech-support file

C.

encrypted export destination

D.

enabled JSON format export

Full Access
Question # 58

Refer to the exhibit. A company merges three of its departments: CORP, HR, and SERVICES, Currently, the connectivity between departments is achieved by using VRF route leaking. The requirement is to redesign the Cisco ACI networking architecture to communicate between EPGs and BDs from any tenant without configuring contracts or VRF route leaking. Which configuration meets these criteria?

A.

Configure an unenforced VRF in the user tenant and map all required EPGs to it.

B.

Implement an enforced VRF in the common tenant and map all required BDs to it.

C.

Configure an enforced VRF in the user tenant and map all required EPGs to it.

D.

Implement an unenforced VRF in the common tenant and map all required BDs to it.

Full Access
Question # 59

Refer to the exhibit.

Which action should be taken to ensure authentication if the RADIUS servers are unavailable?

A.

Adjust the priority of server 10.1.1.1 to 1.

B.

Set the fallback login to local.

C.

Assign the user to the default role.

D.

Set the default login realm to LDAP

Full Access
Question # 60

Refer to the exhibit A Cisco ACI fabric is using out-of-band management connectivity The APIC must access a routable host with an IP address of 192 168 11 2 Which action accomplishes this goal?

A.

Change the switch APIC Connectivity Preference to in-band management

B.

Remove the in-band management address from the APIC.

C.

Add a Fabric Access Policy to allow management connections.

D.

Modify the Pod Profile to use the default Management Access Policy

Full Access
Question # 61

Refer to the exhibit.

The engineer is planning to configure in-band management for the Cisco ACI fabric. The goal is to allow the network operators to reach the Cisco APIC servers and fabric switches from the in-band network. Which configuration must be applied on the bridge domain to accomplish these goals?

A.

Enable Unicast Routing. Configure a virtual IP address.

B.

Enable Unicast Routing. Set scope to Advertised Externally.

C.

Scope: Shared between VRF. Set the IP address as primary.

D.

Make this IP address primary. Configure an L30ut for Route Profile.

Full Access
Question # 62

An engineer must add a group of 70 bare-metal ESXi servers to the Cisco ACI fabric, which is integrated with vCenter. These configuration steps are complete:

The configured pool of ESXi hosts is configured with an Attachable Access Entity Profile (AAEP) called AEP_VMM.

The new group uses the AAEP called AEP_BAREMETAL.

Which action extends functional VMM integration to the new nodes?

A.

Update AAEP to AEP_VMM on all policy groups that are used toward bare-metal servers.

B.

Create a new AAEP container object for policy groups for AEP_VMM.

C.

Implement a separate VMM domain for the bare-metal servers by using AEP_VMM.

D.

Add the VMM domain under the AEP_BAREMETAL AAEP object.

Full Access
Question # 63

Refer to the exhibit. A Cisco APIC raises an error when the EPG must accept endpoints from a VMM domain created. Which action clears the fault?

A.

Expand the VLAN pool for the VMM domain.

B.

Create a bridge domain for the VMM domain.

C.

Associate the EPG with the VMM domain.

D.

Associate the VLAN pool with the VMM domain.

Full Access
Question # 64

An engineer configures SNMP for an ACI fabric and created an SNMP Monitoring Destination Group called snmp_dgroup1. Snmp_dgroup1 is configured with the server hostname and Community password. An SNMP policy called snmp_podpolicy1 is configured to enable SNMP and add an SNMP Client Group Profile called snmp_clgroup1. Snmp_podpolicy1 is associated default pod profile via a pod policy group named podl. Which configuration set must the engineer enable to complete the SNMP configuration?

A.

Configure an SNMP management contract to permit all traffic. Associate snmp_podpolicy1 with an SNMP pod profile.

B.

Configure the OOB management contract to permit all traffic. Associate snmp_clgroup1 with the SNMP management EPG.

C.

Configure the OOB management contract to permit UDP 162. Associate snmp_dgroupl with the OOB management EPG.

D.

Configure an SNMP management contract to permit UDP 162. Associate the SNMP Source to snmp_clgroup1.

Full Access
Go to page: