Oct 04, 2021 Step by Step Guide to Prepare for 352-001 Exam BrainDumps
CCDE 352-001 Real Exam Questions and Answers FREE Updated on 2021
NEW QUESTION 12
You are designing a WAN network solution with EIGRP based on VPLS. The interface speed is 10 Mb/s, but the access rate of the WAN connection is 256 Kb/s. What should you include in the network design, in order to avoid potential issues with EIGRP?
- A. Tag outbound EIGRP traffic and have the WAN provider add it to the priority queue.
- B. Limit traffic to theaccess rate with interface traffic shaping.
- C. Limit EIGRP traffic to the access rate with a policer.
- D. Set the interface bandwidth to match the access rate.
Answer: D
Explanation:
Explanation/Reference:
Explanation:
NEW QUESTION 13
You are designing a network using multipoint GRE tunnels and need to be able to detect when connectivity between the GRE tunnel endpoints is broken. Which statement is true about configuring keepalives for multipoint GRE tunnels?
- A. No configuration is required to detect when connectivity is broken between the GRE tunnel endpoints.
- B. The keepalive timer values on the routers must have the same value.
- C. GRE tunnel keepalives will not detect when connectivity is broken between the GRE tunnel endpoints.
- D. Both routers must support GRE tunnel keepalives.
Answer: C
Explanation:
Explanation/Reference:
Explanation:
NEW QUESTION 14
Which content networking device allows bandwidth configuration settings so that streaming content will not interfere with other network traffic?
- A. Content Engine
- B. Content Distribution Manager
- C. IP/TV Control Server
- D. IP/TV Broadcast Server
Answer: C
Explanation:
Section: (none)
Explanation/Reference:
NEW QUESTION 15
Refer to the Exhibit.
The server is running multiple VLANs on its NIC. Which two Layer 2 features should be applied to the network location identified by a circle? (Choose two)
- A. BPDU guard
- B. Loop guard
- C. PortFast trunk
- D. UDLD
- E. BPDU filtering
- F. Port Fast
Answer: A,C
NEW QUESTION 16
Which solution provides interoperability and protects data traffic from eavesdropping?
- A. IPsec-VPN
- B. GET-VPN
- C. DMVPN
- D. Cisco MPLS TE
Answer: A
NEW QUESTION 17
You work as a network technician for an IT company, you are tasked to deploy BGP across a satellite link system to a small number of retail stores.
What must be done in order to successfully deploy BGP in this situation?
- A. set the BGP hold timer to under one second
- B. manually configure static routes to back up BGP across the satellite link
- C. configure the initial window size, maximum MTU, and TCP keepalive parameters
- D. configure all the BGP peering sessions across the satellite links as EBGP
Answer: C
Explanation:
Section: (none)
Explanation/Reference:
NEW QUESTION 18
A network designer has provisioned a router to use IPsec to encrypt the traffic over a GRE tunnel going to a web server at a remote location. From the router, the network designer can ping the web server, although the users in the office comment that they are unable to reach it. (Note: The DF bit is not set.) Which aspect should be changed in the design of the virtual connection?
- A. MTU size on the GRE tunnel
- B. IP addresses of the GRE tunnel endpoints
- C. encapsulation of the GRE tunnel
- D. IPsec configuration
Answer: A
NEW QUESTION 19
An enterprise company has an audit requirement to encrypt traffic between selected development teams.
Those teams are located in multiple sites across the country. They must migrate all locations to an MPLS Layer
3 VPN-based service, but this implementation must not impact the VoIP solution. The VoIP traffic to and from the call center sites must be copied to the data center servers so that it is recorded to meet another audit requirement.
Which solution meets these requirements?
- A. Implement LISP-based tunnels for the development traffic
- B. Implement site-to-site GRE tunnels only for development traffic
- C. Implement a DMVPN-based solution encrypting all traffic except the VoIP traffic
- D. Implement GETVPN with selective encryption only for the development traffic
Answer: D
Explanation:
Section: Evolving Technologies
NEW QUESTION 20
Today most of the enterprises are selecting container technologies that require integration with their existing data centers and infrastructure solutions. With which three factors do enterprises most commonly struggle to enable their current IT operations staff with? (Choose three.)
- A. virtualization
- B. scalability
- C. data analytics
- D. data security
- E. cost avoidance
- F. compliance
- G. performance and availability
Answer: B,D,G
Explanation:
Section: Evolving Technologies
NEW QUESTION 21
You are designing the routing design for two merging companies that have overlapping IP address space. Which of these must you consider when developing the routing and NAT design?
- A. Local to global NAT translation is done before policy-based routing
- B. Local to global NAT translation is done after routing
- C. Global to local NAT translation is done after policy-based routing.
- D. Global to local NAT translation is done before routing.
Answer: D
NEW QUESTION 22
Refer to the exhibit. In this BGP design, what is the next hop for 10.1.1.0/24 on R8 and R7?
- A. The next hop for 10.1.1.0/24 on R7 is R6 and the next hop for R8 is R5.
- B. The next hop for 10.1.1.0/24 on R7 is R8 and the next hop for R8 is R7.
- C. The next hop for 10.1.1.0/24 on R7 is R5 and the next hop for R8 is R6.
- D. The next hop for 10.1.1.0/24 on R7 is R3 and the next hop for R8 is R4.
Answer: B
NEW QUESTION 23
A company has these requirements for access to their wireless and wired corporate LANs using 802.1x:
- Client devices that are corporate assets and have been joined to the Active Directory domain are allowed access.
- Personal devices must not be allowed access.
- Clients and access servers must be mutually authenticated.
Which solution meets these requirements?
- A. Protected Extensible Authentication Protocol/Microsoft Challenge Handshake Authentication Protocol Version 2 with machine authentication
- B. Extensible Authentication Protocol-Transport Layer Security with machine authentication
- C. Extensible Authentication Protocol-Transport Layer Security with user authentication
- D. Protected Extensible Authentication Protocol/Microsoft Challenge Handshake Authentication Protocol Version 2 with user authentication
Answer: B
Explanation:
Explanation/Reference:
Explanation:
38
NEW QUESTION 24
You are tasked with implementing a 1000-phone remote access solution, where phone calls will traverse a WAN edge router. Assuming all of the following features are supported in a hardware- assisted manner, which of the following will have the most negative impact on the delay of the packet?
- A. encryption
- B. stateful firewall
- C. MPLS encapsulation
- D. GRE encapsulation
Answer: A
NEW QUESTION 25
Drag and drop the EIGRP design considerations from the left onto the corresponding hierarchical layer characteristics on the right
Answer:
Explanation:

NEW QUESTION 26
When a router running EIGRP considers alternate paths, which ones will it consider loop- free?
- A. ones in which the reported distance is the same as the metric of the best possible path
- B. ones in which the feasible distance is the same as the best possible route
- C. ones in which the reported distance is equal to the feasible distance
- D. ones in which the reported distance is less than the feasible distance
Answer: D
NEW QUESTION 27
In a redesign of a multiple-area network, it is recommended that summarization is to be implemented. For redundancy requirements, summarization is done at multiple locations for each summary. Some customers now complain of higher latency and performance issues for a server hosted in the summarized area. What design issues should be considered when creating the summarization?
- A. Summarization creates routing loops.
- B. Summarization causes packet loss when RPF is enabled.
- C. Summarization adds CPU overhead on the routers sourcing the summarized advertisement.
- D. Summarization prevents the visibility of the metric to the component subnets.
Answer: D
Explanation:
Explanation/Reference:
57
Explanation:
NEW QUESTION 28
You are designing a Group Encrypted Transport virtual private network solution for an existing branch network. The existing network has the following characteristics:
- 50 remote sites (with an additional 30 remote sites expected over the next 3 years) - Connectivity between all sites is via Multiprotocol Label Switching Layer 3 virtual private network service from a single provider - Open Shortest Path First is the routing protocol used between provider edge and customer edge routers - The customer edge routers will become group members performing the encryption between sites
Which additional routing protocol would you use for the overlay routing between the group members?
- A. Next Hop Resolution Protocol
- B. Open Shortest Path First (with a different process ID)
- C. External Border Gateway Protocol
- D. Enhanced Interior Gateway Routing Protocol
- E. No additional protocol is necessary.
- F. Routing Information Protocol Version 2
Answer: E
NEW QUESTION 29
A company plans to include nonstop forwarding and bidirectional forwarding direction as a part of their network redundancy plan. In which two ways do NSF and BFD work together when different hardware platforms are compared?
- A. During supervisor engine or routing engine failover, the NSF feature will always ensure down independent of the used hardware platform
- B. To ensure that BFD at the peer router will not trigger a link down during NSF, the BFD packets must be processed fast enough and, during supervisor engine or routing engine failover, by processing the BFD independent from the supervisor engine or routing engine
- C. Because BFD is always processed at the line cards (not at the supervisor engine or routing engine), a supervisor engine or routing engine will not affect the BFD peer router
- D. Because BFD is always processed at the supervisor engine or routing engine, a supervisor engine or routing engine failover will always trigger a link down at the peer router
- E. On some hardware platforms, BFD and NSF are not supported together During supervisor engine or routing engine failover, the BFD at the peer router will trigger a link down
Answer: B,E
Explanation:
Explanation
https://netcraftsmen.com/non-stop-forwarding-and-fast-re-routing/
NEW QUESTION 30
Refer to the exhibit.
You are designing a loop-free hierarchical VPLS service. Which two design considerations should be implemented for the pseudowires between the N-PE and U-PE routers? (Choose two.)
- A. Disable MAC learning on the N-PE routers.
- B. Disable split horizon toward the U-PE router.
- C. Disable split horizon toward the N-PE routers.
- D. Enable split horizon toward the U-PE router.
- E. Disable MAC learning on the U-PE route.
- F. Enable split horizon toward the N-PE routers.
Answer: B,F
Explanation:
Explanation/Reference:
Explanation:
NEW QUESTION 31
A large service provider network has a single-level IS-IS network with 500 routers. This network has short- haul and long-haul links. Periodically, long-haul links bounce for a short period of time, causing 10 to 20 flaps in a few minutes. The probable cause is local road construction. Although fast convergence is important, a design engineer is concerned about taxing CPU cycles on the older routers. Which solution protects the CPU of the older routers during the short periods of excessive flapping, yet has no impact on fast convergence for all interface failures?
- A. Implement LSP generation throttling on routers with long-haul links
- B. Modify hello timers on routers with short-haul links
- C. Implement a delay between successive IS-IS LSP packet transmissions on routers with long-haul links
- D. Modify the length of time that an LSP remains in the router database without being refreshed on all routers
Answer: C
NEW QUESTION 32
You are designing a traffic monitoring and analysis system for a customer. Which traffic monitoring technique would you recommend to place the least amount of burden on the network infrastructure?
- A. SPAN monitor ports
- B. IP NBAR
- C. NetFlow
- D. passive taps
Answer: D
NEW QUESTION 33
Why does EIGRP use queries?
- A. to test for neighbor state when the network topology is in flux
- B. to find alternate loop-free paths that have been discarded due to split horizons
- C. to withdraw routing information from the network
- D. to test known alternate paths and determine if they are loop-free
Answer: B
NEW QUESTION 34
A network engineering team is in the process of designing a lab network for a customer demonstration. The design engineer wants to show that the resiliency of the MPLS traffic Engineering Fast Reroute solution has the same failover/failback times as a traditional SONET/SDH network (around 50MSEC). In order to address both link failure and node failure within the lab typology network, which type of the MPLS TE tunnels must be considered for this demonstration?
- A. next-next-hop (NNHop) tunnel
- B. TE backup tunnel
- C. FRR Backup tunnel
- D. Next-hop (NHop) tunnel
Answer: A
NEW QUESTION 35
......
Ultimate Guide to Prepare 352-001 Certification Exam for CCDE: https://www.realvce.com/352-001_free-dumps.html