Practice Test Free
  • QUESTIONS
  • COURSES
    • CCNA
    • Cisco Enterprise Core
    • VMware vSphere: Install, Configure, Manage
  • CERTIFICATES
No Result
View All Result
  • Login
  • Register
Quesions Library
  • Cisco
    • 200-301
    • 200-901
      • Multiple Choice
      • Drag Drop
    • 350-401
      • Multiple Choice
      • Drag Drop
    • 350-701
    • 300-410
      • Multiple Choice
      • Drag Drop
    • 300-415
      • Multiple Choice
      • Drag Drop
    • 300-425
    • Others
  • AWS
    • CLF-C02
    • SAA-C03
    • SAP-C02
    • ANS-C01
    • Others
  • Microsoft
    • AZ-104
    • AZ-204
    • AZ-305
    • AZ-900
    • AI-900
    • SC-900
    • Others
  • CompTIA
    • SY0-601
    • N10-008
    • 220-1101
    • 220-1102
    • Others
  • Google
    • Associate Cloud Engineer
    • Professional Cloud Architect
    • Professional Cloud DevOps Engineer
    • Others
  • ISACA
    • CISM
    • CRIS
    • Others
  • LPI
    • 101-500
    • 102-500
    • 201-450
    • 202-450
  • Fortinet
    • NSE4_FGT-7.2
  • VMware
  • >>
    • Juniper
    • EC-Council
      • 312-50v12
    • ISC
      • CISSP
    • PMI
      • PMP
    • Palo Alto Networks
    • RedHat
    • Oracle
    • GIAC
    • F5
    • ITILF
    • Salesforce
Contribute
Practice Test Free
  • QUESTIONS
  • COURSES
    • CCNA
    • Cisco Enterprise Core
    • VMware vSphere: Install, Configure, Manage
  • CERTIFICATES
No Result
View All Result
Practice Test Free
No Result
View All Result
Home Practice Questions Free

350-601 Practice Questions Free

Table of Contents

Toggle
  • 350-601 Practice Questions Free – 50 Exam-Style Questions to Sharpen Your Skills
  • Free Access Full 350-601 Practice Questions Free

350-601 Practice Questions Free – 50 Exam-Style Questions to Sharpen Your Skills

Are you preparing for the 350-601 certification exam? Kickstart your success with our 350-601 Practice Questions Free – a carefully selected set of 50 real exam-style questions to help you test your knowledge and identify areas for improvement.

Practicing with 350-601 practice questions free gives you a powerful edge by allowing you to:

  • Understand the exam structure and question formats
  • Discover your strong and weak areas
  • Build the confidence you need for test day success

Below, you will find 50 free 350-601 practice questions designed to match the real exam in both difficulty and topic coverage. They’re ideal for self-assessment or final review. You can click on each Question to explore the details.

Question 1

Which command reduces the amount of time it takes to complete the ISSU on a Cisco Nexus 7000 Series Switch that has dual supervisor modules and two I/O modules?

A. insinstall all epld bootflash: parallel

B. install all kickstart system parallel

C. install all kickstart system

D. install all epld bootflash:

 


Suggested Answer: B

Starting with Cisco NX-OS Release 5.2(1), multiple linecards can be simultaneously upgraded, and the infrastructure support is available. This decreases the
ISSU time when compared with an ISSU upgrade that is done serially (one card at a time).
To start a parallel upgrade, use the following command: install all kickstart image system image parallel.
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus7000/sw/upgrade/guide/
cisco_nexus7000_software_upgrade_and_downgrade_guide_8x.html

 

Question 2

Image
Refer to the exhibit. The ASA_1 acts as a Layer 3 gateway for all servers. The servers lose the gateway connectivity when the vPC peer links go down and the vPC keepalive remains up. Which action improves the high availability in the network?

A. Create a static port channel with two links from each firewall to the switch.

B. Activate the vPC orphan-port suspend feature on the switch ports connected to the firewall.

C. Enable the vPC peer gateway feature on the vPC devices.

D. Implement the IP redirect feature on the vPC devices.

 


Suggested Answer: C

 

 

Question 3

A Cisco UCS user called `Employee1` accidentally changed the boot policy of the Cisco UCS server at the Cisco UCS Manager root level. This change impacted all service profiles, and their storage connectivity was lost. The system administrator wants to prevent this issue from recurring in the future. The new security policy mandates that access must be restricted up to the organization level and prevent other users from modifying root policies. Which action must be taken to meet these requirements?

A. Modify the privilege level assigned to the user

B. Assign users to a specific Cisco UCS locale

C. Assign the user ג€Employee1ג€ the network-operator role

D. Define a custom user role and assign it to users

 


Suggested Answer: A

Reference:
https://www.cisco.com/c/en/us/td/docs/unified_computing/ucs/ucs-manager/GUI-User-Guides/Admin-Management/3-1/
b_Cisco_UCS_Admin_Mgmt_Guide_3_1/b_UCSM_Admin_Mgmt_Guide_chapter_01.html#concept_E41FB2D2F363406EAC1011CC59B5D4BB

 

Question 4

An engineer is running an ACI fabric, has VMM integration with VMware vCenter, and wants to enable microsegmentation based on vCenter VM attributes.
Which statement describes microsegmentation in this scenario?

A. ACI does not support microsegmentation based on vCenter VM attributes. The network attributes should be used for microsegmentation.

B. When enabled, microsegmentation performs distributed switching and routing on the ESXi hosts.

C. Microsegmentation is supported only using AVE or AVS.

D. An ACI microsegmented EPG automatically creates a port group with a private VLAN configured on a VMware vCenter distributed virtual switch.

 


Suggested Answer: D

When you enable Microsegmentation with Cisco ACI, Cisco APIC allocates a pair of VLANs (PVLANs) and configures a PVLAN portgroup on VMware vCenter.
Doing so forces traffic to go to the leaf switch even if two VMs in the same portgroup try to talk to each other
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/4-x/virtualization/Cisco-ACI-Virtualization-Guide-42x/Cisco-ACI-Virtualization-

Guide-421_chapter_0100.html

 

Question 5

A network engineer configures a converged network adapter (CNA) and must associate a virtual Fibre Channel 7 interface to VSAN 7. The CNA is connected to the interface Eth1/7, and VLAN 700 is mapped to the VSAN. Which configuration must be applied to create the virtual Fibre Channel interface and associate it with the Ethernet physical interface?

A. switch(config)# interface vfc 7 switch(config-if)# bind interface ethernet 1/7

B. switch(config)# vlan 700 switch(config-vlan)# fcoe vsan 7

C. switch(config)# vsan database switch(config-vsan)# vsan 7 interface vfc 7

D. switch(config)# interface ethernet 1/7 switch(config-if)# vfc 7 attach vlan 1,700

 


Suggested Answer: A

Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus5000/sw/fcoe/421_n1_1/b_Cisco_n5k_fcoe_config_gd_re_421_n1_1/

Cisco_n5k_fcoe_config_gd_re_421_n1_1_chapter4.html

 

Question 6

Image
Refer to the exhibit. An engineer must activate the port-security database on a Cisco MDS 9000 Series Switch for VSAN 100, but receives the error shown. Which command completes the configuration?

A. port-security config-enable vsan 100

B. port-security vsan 100 database active

C. port-security enabled mode vsan 100

D. port-security activate vsan 100 force

 


Suggested Answer: D

 

 

Question 7

An online retailer uses 200 cloud-hosted virtual machines (VMs). Currently, the configuration of each VM is performed manually. To support the growth strategy of the retailer, the retailer starts to automatically scale the VMs to meet demand and uses Ansible for configuration management.
Which action must be performed in Ansible to meet the requirements before automation is performed?

A. Register each VM in Ansible.

B. Add each VM to the .ini inventory file.

C. Set up and configure Ansible Tower.

D. Configure a dynamic inventory plug-in.

 


Suggested Answer: D

 

 

Question 8

A network architect wants to propose a scalable network monitoring solution in which data is repeatedly acquired from network devices. The solution must use a push model and provide close to real-time access to operational data. Which technology must be used to meet these requirements?

A. CLI-based scripting

B. logging

C. SNMPv3

D. streaming telemetry

 


Suggested Answer: D

Reference:
https://blogs.cisco.com/developer/its-time-to-move-away-from-snmp-and-cli-and-use-model-driven-telemetry

 

Question 9

Which virtualization feature is provided by network-attached storage?

A. raw device passthrough

B. VM cluster shared ask

C. hypervisor host boot LUN

D. ALUA path redirection

 


Suggested Answer: B

 

 

Question 10

DRAG DROP -
A network engineer must configure FCoE on an interface of a Cisco MDS 9000 Series Switch. It should be used for mapping between VLAN 600 and VLAN 6.
Drag and drop the commands from the bottom into their implementation order in the FCoE configuration. Not all commands are used.
Select and Place:
 Image

 


Suggested Answer:
Correct Answer Image

 

 

Question 11

Image
Refer to the exhibit. A network engineer requires remote access via SSH to a Cisco MDS 9000 Series Switch. The solution must support secure access using the local user database when the RADIUS servers are unreachable from the switches. Which command meets these requirements?

A. aaa authentication none

B. aaa authentication login default group radius

C. aaa authentication login default fallback error local

D. aaa authentication login default group local

 


Suggested Answer: C

Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus9000/sw/6-x/security/configuration/guide/b_Cisco_Nexus_9000_Series_NX-

OS_Security_Configuration_Guide/b_Cisco_Nexus_9000_Series_NX-OS_Security_Configuration_Guide_chapter_0111.html

 

Question 12

Due to a major version change, an engineer must perform a software upgrade on a Cisco Nexus Series switch.
Which two technologies should be implemented to reduce disruptions to the network during the upgrade? (Choose two.)

A. vPC

B. HSRP

C. VDC

D. VRF

E. VTP

 


Suggested Answer: AB

 

 

Question 13

DRAG DROP -
Drag and drop the keywords onto the URL request to collect all the subnets configured under tenant Production using a REST API. Not all options are used.
Select and Place:
 Image

 


Suggested Answer:
Correct Answer Image

 

 

Question 14

Image
Refer to the exhibit. A source is sending a multicast traffic stream to the receiver. How is the multicast traffic expected to flow through the network when it reaches a vPC peer?

A. • The multicast traffic is not replicated to the ports that joined a multicast group (224.0.0.13) or the peer link.• The multicast traffic stream flows over the vPC link to ensure that orphan ports get the multicast stream in failure scenarios.

B. • The multicast traffic is replicated to the ports that joined a given multicast group and the peer link.• The multicast traffic stream flows from Agg-1 to Agg-2 over the M1-to-M2 peer link and forwards the traffic over Layer 4 to Access-2.

C. • The multicast traffic is replicated to the ports that joined a given multicast group and the peer link.• The multicast traffic stream flows over the peer link to ensure that orphan ports receive the multicast stream in failure scenarios.

D. • The multicast traffic is not replicated to the ports that joined a multicast group (224.0.0.13) or the peer link.• The multicast traffic stream flows from Agg-1 to Agg-2 over the M1-to-M2 peer link and forwards the traffic over Layer 4 to Access-2.

 


Suggested Answer: D

 

 

Question 15

An engineer needs to connect Cisco UCS Fabric Interconnect (FI) to an external storage array. Due to budget limitations, the engineer must connect a Cisco UCS FI directly to an FC storage port. Which two actions must be taken to complete this connection? (Choose two.)

A. Create a storage connection policy.

B. Configure the fabric interconnect in end-host mode.

C. Create the required VSAN in the SAN cloud.

D. Set FC zoning to disabled when creating the VSAN.

E. Configure the fabric interconnect in FC switch mode.

 


Suggested Answer: AE

 

 

Question 16

An engineer must use the Embedded Event Manager to monitor events that occur on a Cisco Nexus 9000 Series Switch. An environment variable needs to be created so that several policies use the monitored events in their actions. The external email server is represented by IP address 10.10.10.10. Which command sets the environment variable?

A. n9k2# event manager environment mailserver “10.10.10.10”

B. n9k2(config)# event manager environment mailserver “10.10.10.10”

C. n9k2(config-applet)# environment mailserver “10.10.10.10”

D. n9k2(config)# event manager policy environment mailserver “10.10.10.10”

 


Suggested Answer: B

To set an Embedded Event Manager (EEM) environment variable, use the event manager environment command in global configuration mode.
Reference:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/eem/command/eem-cr-book/eem-cr-e1.html

 

Question 17

An engineer must perform a POAP deployment of a Cisco Nexus 9000 Series Switch. The switch must automatically receive its software image and configuration file upon power-on. Also, only UDP is permitted between the Nexus 9000 switch and the server that hosts the Cisco NX-OS system images.
Which set of actions completes the configuration?

A. Enable option 35.Define HTTP transfer protocol.

B. Enable option 67.Define TFTP transfer protocol.

C. Enable option 43.Define HTTP transfer protocol.

D. Enable option 46.Define TFTP transfer protocol.

 


Suggested Answer: C

 

 

Question 18

Which two statements describe modifying Cisco UCS user accounts? (Choose two.)

A. Disabling a user account maintains all of the data in the Cisco UCS Fabric Interconnect.

B. The admin account is used only to log on by using SSH.

C. The password of the user account must contain a minimum of 10 characters.

D. Local user accounts override the same account on a remote authentication server, such as TACACS, RADIUS, or LDAP.

E. The password of the user account expires in 30 days.

 


Suggested Answer: AD

A locally authenticated user account is authenticated directly through the fabric interconnect and can be enabled or disabled by anyone with admin or aaa privileges. After a local user account is disabled, the user cannot log in. The database does not delete the configuration details for disabled local user accounts. If you re-enable a disabled local user account, the account becomes active with the existing configuration, including the username and password.
A remotely authenticated user account is any user account that is authenticated through LDAP, RADIUS, or TACACS+.
If a user maintains a local user account and a remote user account simultaneously, the roles defined in the local user account override those maintained in the remote user account.
Reference:
https://www.cisco.com/c/en/us/td/docs/unified_computing/ucs/ucs-manager/GUI-User-Guides/Admin-Management/3-1/
b_Cisco_UCS_Admin_Mgmt_Guide_3_1/b_UCSM_Admin_Mgmt_Guide_chapter_01.html

 

Question 19

Which data structure results from running this Python code?
 Image

A. tuple

B. dictionary

C. set

D. list

 


Suggested Answer: B

Reference:
https://www.geeksforgeeks.org/read-json-file-using-python/

 

Question 20

Image
Refer to the exhibit. VLAN 10 is experiencing delays and packet drops when the traffic is forwarded through the switch. The destination flow analyzer accepts traffic captures of not more than 30 seconds. Which configuration implements the traffic capture that meets the requirements?
A.
 Image
B.
 Image
C.
 Image
D.
 Image

 


Suggested Answer: D

Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus9000/sw/7-x/system_management/configuration/guide/
b_Cisco_Nexus_9000_Series_NX-OS_System_Management_Configuration_Guide_7x/b_Cisco_Nexus_9000_Series_NX-
OS_System_Management_Configuration_Guide_7x_chapter_011100.html

 

Question 21

Refer to the exhibit.
 Image
An engineer implements an FCoE Unified Fabric where vPC exists between N9K-A and N9K-B. To avoid rate discards, bandwidth must be regulated to account for sent traffic that exceeds the access speed.
Which set of commands completes the configuration?

A. fcoe cost 255 on N9K-Arandom-detect min 10 max 20spanning-tree port type edge on Po10

B. fcoe cost 0 on N9K-Ashape min 0 gbps max 1 gbpsspanning-tree port type edge on Po1

C. fcoe fcf-priority 0 on N9K-Ahardware qos fc rate-shaper lowspanning-tree port type edge trunk on Po10

D. fcoe fcf-priority 255 on N9K-Apolice 50000spanning-tree port type edge trunk on Po1

 


Suggested Answer: C

 

 

Question 22

Which configuration statically assigns VSAN membership to a virtual Fibre Channel interface?

A. switch(config-vsan-db)# vsan 100 interface vfc 31

B. switch(config-vsan-db)# vsan 100 fc 3/1

C. switch(config-vsan-db)# vsan 100 bind interface fc 3/1

D. switch(config-vsan-db)# vsan 100 bind interface vfc 31

 


Suggested Answer: A

Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus5000/sw/configuration/guide/cli/CLIConfigurationGuide/vsan.html

 

Question 23

Refer to the exhibit.
 Image
A DevOps engineer must create a PowerShell script to display a list of tenants in the Cisco Application Centric Infrastructure (ACI) by using the Cisco ACI PowerShell module. The engineer does NOT know how many results will be returned, so it is important to iterate through all the results.
Which code snippet completes the script?

A.
Image

B.
Image

C.
Image

D.
Image

 


Suggested Answer: A

 

 

Question 24

Which two components are used by the Cisco Nexus switches telemetry process? (Choose two.)

A. telemetry agent

B. data encoding

C. data collection

D. telemetry compression

E. data manipulation

 


Suggested Answer: BC

 

 

Question 25

What is the benefit of adding Cisco HyperFlex Hardware Acceleration Cards to a HyperFlex deployment?

A. increased compression efficiency

B. increased network throughput

C. GPU acceleration

D. offline encryption acceleration

 


Suggested Answer: A

HyperFlex Hardware Acceleration Cards provide improved performance and compression efficiency for most storage workloads.
Reference:
https://www.cisco.com/c/en/us/td/docs/hyperconverged_systems/HyperFlex_HX_DataPlatformSoftware/Installation_VMWare_ESXi/3_5/
b_HyperFlexSystems_Installation_Guide_for_VMware_ESXi_3_5/m_configure_hyperflex_hardware_acceleration_cards.html

 

Question 26

An engineer is implementing traffic monitoring for a server vNIC that is configured with fabric failover enabled. The requirement is for the traffic to be sent to an analyzer, even during a failure of one of the fabric interconnects. The analyzer is connected to unconfigured Ethernet ports on both fabric interconnects. Which configuration accomplishes this task?

A. Create two traffic monitoring sessions with different names, one per fabric. Connect an analyzer on each FI as the destination for the monitoring session local to the FI.

B. Create two traffic monitoring sessions with the same name, one per fabric. Connect the analyzer connected to FI-A as the destination for both monitoring sessions.

C. Create two traffic monitoring sessions with different names, one per fabric. Connect the analyzer connected to FI-B as the destination for both monitoring sessions.

D. Create two traffic monitoring sessions with the same name, one per fabric. Connect an analyzer on each FI as the destination for the monitoring session local to that FI.

 


Suggested Answer: C

 

 

Question 27

A network architect must redesign a data center network based on OSPFv2. The network must perform fast reconvergence between directly connected switches.
Which two actions must be taken to meet the requirements? (Choose two.)

A. Set low OSPF hello and DEAD timers.

B. Configure all links on AREA 0.

C. Enable BFD for failure detection.

D. Use OSPF point-to-point links only.

E. Implement a virtual link between the switches.

 


Suggested Answer: CD

Detecting link and node failures quickly is number one priority for fast convergence. For maximum speed, relying on IGP keepalive times should be avoided whether possible and physical failure detection mechanisms should be used. This implies the use of physical point-to-point links whether possible.
BFD (BiDirectional Forwarding Detection) provides sub-second convergence for many protocols and is done in hardware. BFD will also only work on point-to- point links.

 

Question 28

A customer reports Fibre Channel login requests to a Cisco MDS 9000 Series Switch from an unauthorized source. The customer requires a feature that will allow all devices already logged in and learned to be added to the Fibre Channel active database. Which two features must be enabled to accomplish this goal?
(Choose two.)

A. auto-learning

B. smart aliases

C. port security

D. enhanced zoning

E. device aliases

 


Suggested Answer: DE

By default, the port security feature is not activated in any switch in the Cisco MDS 9000 Family.
By activating the port security feature, the following apply:
ג€¢ Auto-learning is also automatically enabled, which means:
ג€” From this point, auto-learning happens only for the devices or interfaces that were not logged into the switch.
ג€” You cannot activate the database until you disable auto-learning.
ג€¢ All the devices that are already logged in are learned and are added to the active database.
ג€¢ All entries in the configured database are copied to the active database.
After the database is activated, subsequent device login is subject to the activated port bound WWN pairs, excluding the auto-learned entries. You must disable auto-learning before the auto-learned entries become activated.
When you activate the port security feature, auto-learning is also automatically enabled. You can choose to activate the port security feature and disable auto- learning.
Reference:
https://www.cisco.com/en/US/docs/storage/san_switches/mds9000/sw/rel_3_x/configuration/guides/fm_3_3_1/psec.html

 

Question 29

A network engineer must prevent data corruption due to cross fabric communication in an FCoE environment. Which configuration must be applied to the Cisco
Nexus Unified Switches to achieve this objective?

A. switch(config-if)# shutdown lan

B. switch(config-if)# no fcoe fcf-priority 0

C. switch(config)# fcoe fcmap 0e.fc.2a

D. switch(config)# no fcoe fcf-priority 255

 


Suggested Answer: C

You can prevent data corruption due to cross-fabric talk by configuring an FC-Map that identifies the Fibre Channel fabric for this switch. When the FC-Map is configured, the switch discards the MAC addresses that are not part of the current fabric. An FCF can assign Fabric Provide MAC Addresses (FPMA) to the CNAs consisting of the FC-Map Value for the Fabric and the Fibre Channel ID (FCID) assigned during Fabric Login switch# switchto vdc fcoe type storage fcoe# configure terminal fcoe(config)# fcoe fcmap 0x0efc2a
Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus5000/sw/fcoe/521n11/b_5k_FCoE_Config_521N11/configuring_fcoe.html

 

Question 30

The Cisco Nexus switch Generic Online Diagnostics policy for a PortLoopback test requires 10 consecutive failures to error disable the port. The customer wants to change it to 5 consecutive failures. Which configuration applies the changes for module 1 only?

A. Nexus(config)# event manager applet custom-PortLoopback override __PortLoopback Nexus(config-applet)# event gold mod all test PortLoopback testing-type bootup consecutive-failure 5 Nexus(config-applet)# action 1 publish-event

B. Nexus(config)# event manager applet custom-PortLoopback override __PortLoopback Nexus(config-applet)# event gold mod 1 test PortLoopback testing-type monitoring consecutive-failure 5 Nexus(config-applet)# action 1 publish-default

C. Nexus(config)# event manager applet custom-PortLoopback override __PortLoopback Nexus(config-applet)# event gold mod all test PortLoopback testing-type monitoring consecutive-failure 5 Nexus(config-applet)# action 1 policy-default

D. Nexus(config)# event manager applet custom-PortLoopback override __PortLoopback Nexus(config-applet)# event gold mod 1 test PortLoopback testing-type bootup consecutive-failure 5 Nexus(config-applet)# action 1 policy-event

 


Suggested Answer: D

Reference:
https://www.ciscolive.com/c/dam/r/ciscolive/us/docs/2017/pdf/BRKDCN-3234.pdf

 

Question 31

A customer needs a tool to take advantage of the CI/CD model to streamline its operations and optimize cost. The customer wants to integrate the solution with the Cisco products it currently uses, including Cisco ACI networking and Cisco UCS Series servers. The solution should also provide on-premises Kubernetes and
AppDynamics performance monitoring. Because of the security requirements, the solution should not install a local client on products under management. Which orchestration solution meets these requirements?

A. Cisco UCS Director

B. Cisco CloudCenter

C. Cisco APIC

D. Cisco DCNM

 


Suggested Answer: B

With Cisco CloudCenter you can automate multicloud workload deployment and increase feature velocity, consistently enforce multicloud governance, and optimize cloud service consumption to reduce risk and cloud costs.
Streamline consumption of cloud or on-premises services with the combination of CloudCenter with Cisco Container Platform for on-premises Kubernetes, and
AppDynamics for business and application performance monitoring.
Reference:
https://www.cisco.com/c/en/us/products/cloud-systems-management/cloudcenter/index.html

 

Question 32

A network engineer needs a solution that simplifies the initial deployment of Cisco Nexus Series Switches. The solution must support these requirements:
• zero-touch provisioning
• configuration through DHCP options
• initial configuration from a central TFTP server
• no manual configuration management after the initial installation
Which technology supports these goals?

A. Ansible

B. Cisco Intersight

C. Chef

D. POAP

 


Suggested Answer: D

 

 

Question 33

Which Cisco UCS Manager XML encoded backup type must be used to back up user names, roles, and service profiles?

A. System Configuration

B. Full State Configuration

C. Logical Configuration

D. All Configuration

 


Suggested Answer: A

 

 

Question 34

An engineer is performing a configuration on a Cisco Nexus 5000 Series Switch. The requirement is for the current Fibre Channel IDs in VSAN 120 to be saved across reboots. The Cisco environment also must integrate with a third-party solution that requires persistent Fibre Channel IDs for the VSAN. The WWN of the
Cisco switch must be 33:e8:00:05:30:00:16:df and its Fibre Channel ID 0x070128. Which command set meets these requirements?

A. fcdomain fcid database vsan 120 wwn 33:e8:00:05:30:00:16:df fcid 0x070128 fcdomain fcid persistent vsan 120

B. fabric-binding database vsan 120 vsan 120 wwn 33:e8:00:05:30:00:16:df fcid 0x070128

C. vsan 120 wwn 33:e8:00:05:30:00:16:df fcid 0x070128 fabric-binding activate vsan 120 purge fcdomain fcid vsan 4

D. ysan 120 wwn 33:e8:00:05:30:00:16:df fcid 0x070128 fcdomain fcid preserve vsan 120

 


Suggested Answer: A

Reference:
https://www.cisco.com/en/US/docs/storage/san_switches/mds9000/sw/rel_1_x/1_0_2a/san-os/configuration/guide/Domains.pdf

 

Question 35

Image
Refer to the exhibit. An engineer is configuring a VSAN on the network. Which option must be selected to create the VSAN?

A. Common/Global

B. Fabric B

C. FC Zoning Enabled

D. Fabric A

 


Suggested Answer: A

When you assign the VSAN to both fabrics, both
of them must have different VSAN ID and FCoE VLAN ID” and considering that in the diagram, VSAN ID and FCoE VLAN ID are 2001, which forces to put that config on only one fabric.
Reference:
https://www.cisco.com/c/en/us/td/docs/unified_computing/ucs/ucs-central/GUI-User-Guides/Storage-Mgmt/1-5/
b_CiscoUCSCentral_Storage_Management_Guide_1-5/b_CiscoUCSCentral_Storage_Management_Guide_1-5_chapter_011.pdf

 

Question 36

An engineer needs to install a new package on a Cisco Nexus 9000 Series Switch. What the impact of running the install commit  command on the switch?

A. The switch is restarted after the upgrade is complete.

B. The previous package that was in use is deleted from bootflash.

C. The package is used after the switch is restarted.

D. The package is used in the running configuration.

 


Suggested Answer: C

 

 

Question 37

An engineer is implementing VSAN 10 on multiple Cisco Nexus 5600 Series Switches and must ensure that the full zone set and active zone set are identical across the fabric. Which configuration must be implemented to meet this requirement?

A. switch(config)# zoneset distribute vsan 10

B. switch(config)# zone-attribute-group name ATTR1 vsan 10

C. switch(config)# zoneset distribute full vsan 10

D. switch(config)# zoneset activate name ZONE10 vsan 10

 


Suggested Answer: C

 

 

Question 38

Which component is disrupted when the Cisco Integrated Management Controller is upgraded on a Cisco UCS Series Server?

A. SAN traffic

B. Cisco UCS Manager

C. KVM sessions

D. data traffic

 


Suggested Answer: B

The CIMC Firmware Update Utility is used to update the firmware versions for host(x86)-based systems for standalone servers. To update the firmware, you must restart the host system to either the Linux operating system or to the EFI prompt. You can use the procedures to update the firmware version using KVM as well.
Although the procedure to update the firmware version using Linux, EFI, or KVM is the same, be aware that when you activate the new firmware version, the connection to the CIMC is reset, and the KVM window will close.
Reference:
https://www.cisco.com/c/en/us/td/docs/unified_computing/ucs/c/sw/fwp/user/guide/Firmware_Upgrade_Utility/Using.pdf

 

Question 39

Refer to the exhibit.
 Image
A network engineer is setting up a multihomed OTV network. The first site has been set up with a primary and secondary adjacency server.
Which configuration must be added on the remote OTV AEDs site?
A.
 Image
B.
 Image
C.
 Image
D.
 Image

 


Suggested Answer: C

We need to add both IP’s for the primary and secondary adjacency server when using a unicast only design.

 

Question 40

A SAN administrator receives reports about latency and response-time issues that impact various applications. The incidents have gradually increased in frequency and severity and have reached a critical state. Which DCNM configuration set identifies the source of the issues?

A. • Slow Drain Analysis• Duration Once/Run Immediately• Start/Stop Collection• Current Jobs/Result

B. • SAN Insights• Storage Enclosure• Select Host/Initiator-Target Pair

C. • Events• Time Now• Select MDS Switch• Advanced Filter/Source

D. • FC Flows• Interval 24 Hours• Export/Save

 


Suggested Answer: A

 

 

Question 41

An engineer must configure a VDS port group using APIC policy. The requirements are for the frames to be mapped to a particular Layer 2 network and for the virtual machine assigned to the port group to receive all frames passed on the virtual switch.
Which two settings must be used to meet these requirements? (Choose two.)

A. VLAN

B. forged transmits

C. port binding

D. promiscuous mode

E. VMDirectPath

 


Suggested Answer: CD

 

 

Question 42

An engineer must remove the running configuration of a Cisco Nexus 9000 Series Switch and replace it with a backup file without restarting the switch. The backup file is stored on an SFTP server that is reachable via the mgmt0 interface.
Which set of commands accomplishes this task?

A. configure replace sftp://admin@192.168.10.100/backup.cfg vrf mgmt0 copy running-config bootflash://startup-config

B. copy sftp://admin@192.168.10.100/backup.cfg bootflash:///backup.cfg vrf management configure replace bootflash:///backup.cfg

C. copy sftp://admin@192.168.10.100/backup.cfg startup-config vrf mgmt0 copy startup-config running-config

D. copy sftp://admin@192.168.10.100/backup.cfg startup-config vrf management reload in 10

 


Suggested Answer: A

 

 

Question 43

DRAG DROP -
A network engineer must implement RBAC on Cisco MDS 9000 Series Multilayer Switches.
Drag and drop the Cisco MDS 9000 Series roles from the left onto the categories they belong to on the right.
Select and Place:
 Image

 


Suggested Answer:
Correct Answer Image

Reference:
https://www.cisco.com/c/en/us/td/docs/unified_computing/ucs/ucs-manager/GUI-User-Guides/Admin-Management/3-1/
b_Cisco_UCS_Admin_Mgmt_Guide_3_1/b_UCSM_Admin_Mgmt_Guide_chapter_01.html

 

Question 44

Which component is excluded by default from the host firmware package?

A. network interface controller

B. local disk

C. board controller

D. storage controller

 


Suggested Answer: B

 

 

Question 45

A Cisco ACI engineer must configure an access port on a Cisco ACI leaf switch. The access policy should be configured so that it supports L3Out connectivity concurrently with several EPGs that are mapped to this interface with the static port method. How should the access policy be configured?

A. by linking the interface policy group to multiple Attachable Access Entity Profiles

B. with two interface policy groups that are linked to the same interface profile port selector

C. by mapping a single physical domain, mapped to the L3out and EPG interfaces

D. with a single Attachable Access Entity Profile that is linked to the corresponding routed domain and physical domain

 


Suggested Answer: A

The access policy (the interface policy group) needs to have one single Attachable Access Entity Profile assigned since it is the same interface. Then different physical domains can be used for the routed and switched domain.

 

Question 46

What does WWPN uniquely identify in this Fibre Channel fabric?
 Image

A. interface

B. zone

C. area

D. switch

 


Suggested Answer: A

 

 

Question 47

An engineer configures user authentication on Cisco UCS Manager to ensure that the user and roles can be saved on the external server and secured using authentication. Which set of actions meets these requirements?

A. Implement a logical configuration backup and configure the HTTPS protocol.

B. Configure a full state backup and implement an FTP protocol.

C. Perform a system configuration backup and use the SCP protocol.

D. Deploy an all configuration backup and implement a TFTP protocol.

 


Suggested Answer: C

 

 

Question 48

Image
Refer to the exhibit. What happens to the broadcast traffic when it reaches aggregation switches?

A. Agg-2 switch receives broadcast packets and stops forwarding to the peer link on Agg-1 switch.

B. Agg-1 switch prevents broadcast packets received on the vPC peer link from exiting the switch on ports Eth2/4 and Eth2/5.

C. Agg-1 and Agg-2 switches receive broadcast packets and does not forward them to the peer link or the port channel.

D. Only Agg-1 switch receives broadcast packets and does not forward to the peer link on Agg-2 switch.

 


Suggested Answer: B

Duplicate Frames Prevention in vPC
One of the most important forwarding rules for vPC is that a frame that enters the vPC peer switch from the peer link cannot exit the switch from a vPC member port.Figure shows switch-es 3 and 4 connected to 5k01 and 5k02 with vPCs Po51 and Po52. If one of the hosts connected to switch 4 sends either an unknown unicast or a broadcast, this traffic may get hashed to port eth2/2 on PortChannel 52. 5k02 receives the broadcast and needs to forward it to the peer link for the potential orphan ports on 5k01 to receive it.
Upon receiving the broadcast, 5k01 detects that this frame is coming from the vPC peer link. Therefore, it does not forward it to port 2/9 or 2/10; if it did, a duplicate frame on switch 3 or 4, respectively, would be created.
If a host on switch 4 sends a broadcast, 5k02 will correctly forward it to Po51 on port 2/9 and place it on the peer link. 5k01 will prevent this broadcast frame from exiting onto port 2/9 or 2/10 because this frame entered 5k01 from a vPC peer link. Should eth2/2 on switch 3 go down, port 2/9 on 5k01 would become an orphan port and as a result will receive traffic that traverses the peer link.
Reference Image
Reference:
https://www.cciein8weeks.com/courses/ccie-dc-400-151-v2-1-exam-cert-guide-3rd-edition/297/

 

Question 49

An engineer must configure multiple EPGs on a single access port in a large Cisco ACI fabric without using VMM integration. The relevant access policies and tenant policies have been created. A single AAEP is used to configure the access ports in the fabric. Which two additional steps must be taken to complete the configuration? (Choose two.)

A. The EPGs must link directly to the corresponding AAEP

B. A contract must be defined between the EPGs

C. The EPGs must be configured as static ports

D. The corresponding bridge domains must be configured in legacy mode

E. The EPGs must be linked to the correct physical domain

 


Suggested Answer: BE

Reference:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/2-x/L2_config/b_Cisco_APIC_Layer_2_Configuration_Guide/
b_Cisco_APIC_Layer_2_Configuration_Guide_chapter_011.html

 

Question 50

Which behavior defines streaming telemetry as a push model in Cisco devices?

A. Events and network changes generate telemetry data

B. Monitoring clients are pulling data from the network to see real-time statistics

C. JSON encoded telemetry data is transported using the gRPC protocol

D. The network devices send data in JSON or GPB format to configure endpoints

 


Suggested Answer: D

Encoder –
Data that is streamed from a router can be encoded using one of these formats:
ג€¢ GPB encoding: Configuring for GPB encoding requires metadata in the form of com-piled .proto files. A .proto file describes the GPB message format which is used to stream data. The .proto files are available at Cisco Network Telemetry Proto in Github.
– Compact GPB encoding: Data is streamed in a compressed format and not in a self-descriptive format. A .proto file corresponding to each sensor-path must be used by the collector to decode the streamed data.
– Self-describing GPB encoding: Data streamed for each sensor path is in a self-describing and ASCII text format. A single .proto file, telemetry.proto, is used by the collector to decode any sensor path data. Self-describing GPB encod-ing is easier to manage because it needs single .proto file to decode any sensor path data, even though the message size is large.
ג€¢ JSON encoding: Data is streamed in strings of keys and its values in a human-readable format.
Transport –
In the telemetry push model, the router streams telemetry data using a transport protocol. The generated data is encapsulated into the desired format using encoders.
Model-Driven Telemetry (MDT) data is streamed through these supported transport protocols:
ג€¢ Google Protocol RPC (gRPC): used for both dial-in and dial-out modes.
ג€¢ Transmission Control Protocol (TCP): used for only dial-out mode.
ג€¢ User Datagram Protocol (UDP): used for only dial-out mode. Because UDP is connec-tionless, the UDP destination is shown as Active irrespective of the state of the collec-tor. This is not ideally suitable for a busy network. If a message is dropped by the net-work before it reaches the collector, the protocol does not resend the data.
Reference:
https://www.cisco.com/c/en/us/td/docs/iosxr/ncs5500/telemetry/70x/b-telemetry-cg-ncs5500-70x/b-telemetry-cg-ncs5500-70x_chapter_01.html

 

Free Access Full 350-601 Practice Questions Free

Want more hands-on practice? Click here to access the full bank of 350-601 practice questions free and reinforce your understanding of all exam objectives.

We update our question sets regularly, so check back often for new and relevant content.

Good luck with your 350-601 certification journey!

Share18Tweet11
Previous Post

350-501 Practice Questions Free

Next Post

350-701 Practice Questions Free

Next Post

350-701 Practice Questions Free

350-801 Practice Questions Free

350-901 Practice Questions Free

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

Network+ Practice Test

Comptia Security+ Practice Test

A+ Certification Practice Test

Aws Cloud Practitioner Exam Questions

Aws Cloud Practitioner Practice Exam

Comptia A+ Practice Test

  • About
  • DMCA
  • Privacy & Policy
  • Contact

PracticeTestFree.com materials do not contain actual questions and answers from Cisco's Certification Exams. PracticeTestFree.com doesn't offer Real Microsoft Exam Questions. PracticeTestFree.com doesn't offer Real Amazon Exam Questions.

  • Login
  • Sign Up
No Result
View All Result
  • Quesions
    • Cisco
    • AWS
    • Microsoft
    • CompTIA
    • Google
    • ISACA
    • ECCouncil
    • F5
    • GIAC
    • ISC
    • Juniper
    • LPI
    • Oracle
    • Palo Alto Networks
    • PMI
    • RedHat
    • Salesforce
    • VMware
  • Courses
    • CCNA
    • ENCOR
    • VMware vSphere
  • Certificates

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.