web analytics
[Lead2pass New] Lead2pass 2017 100% Real 400-101 Exam Questions (481-500) - Updated Study Materials From Lead2pass Free Downloading

[Lead2pass New] Lead2pass 2017 100% Real 400-101 Exam Questions (481-500)

Lead2pass 2017 October New Cisco 400-101 Exam Dumps!

100% Free Download! 100% Pass Guaranteed!

You can prepare for Cisco 400-101 exam with little effort because Lead2pass is now at your service to act as a guide to pass Cisco 400-101 exam. Our Cisco 400-101 braindumps are rich in variety. We offer Cisco 400-101 PDF dumps and Cisco 400-101 VCE. Both are the newest version.

Following questions and answers are all new published by Cisco Official Exam Center: https://www.lead2pass.com/400-101.html

QUESTION 481
Refer to the exhibit. Which statement about the route target for 192.168.1.0/24 is true?

 

A.    Its route target is 64512:100010051.
B.    Its route targets are 64512:100010051, 64512:2002250, and 64512:3002300.
C.    Its route target is 64512:3002300.
D.    Its route targets are 64512:100010051 and 64512:3002300.
E.    Its route targets are 64512:2002250 and 64512:3002300.

Answer: C

QUESTION 482
Which two options are benefits of EIGRP OTP? (Choose two.)

A.    It allows EIGRP routers to peer across a service provider without the service provider involvement.
B.    It allows the customer EIGRP domain to remain contiguous.
C.    It requires only minimal support from the service provider.
D.    It allows EIGRP neighbors to be discovered dynamically.
E.    It fully supports multicast traffic.
F.    It allows the administrator to use different autonomous system numbers per EIGRP domain.

Answer: AB

QUESTION 483
Which three options are best practices for implementing a DMVPN? (Choose three.)

A.    Use IPsec in tunnel mode.
B.    Implement Dead Peer Detection to detect communication loss.
C.    Configure AES for encryption of transported data.
D.    Configure SHA-1 for encryption of transported data.
E.    Deploy IPsec hardware acceleration to minimize router memory overhead.
F.    Configure QoS services only on the head-end router.

Answer: ABC

QUESTION 484
Which IPv6 tunneling type establishes a permanent link between IPv6 domains over IPv4?

A.    IPv4-compatible tunneling
B.    ISATAP tunneling
C.    6to4 tunneling
D.    manual tunneling

Answer: D

QUESTION 485
Which three components comprise the structure of a pseudowire FEC element? (Choose three.)

A.    pseudowire ID
B.    pseudowire type
C.    control word
D.    Layer 3 PDU
E.    header checksum
F.    type of service

Answer: ABC

QUESTION 486
In which two modes do IPv6-in-IPv4 tunnels operate? (Choose two.)

A.    tunnel mode
B.    transport mode
C.    6to4 mode
D.    4to6 mode
E.    ISATAP mode

Answer: AB

QUESTION 487
Which VPN technology requires the use of an external key server?

A.    GETVPN
B.    GDOI
C.    SSL
D.    DMVPN
E.    IPsec
F.    L2TPv3

Answer: A

QUESTION 488
Which three roles does a key server perform when used with GETVPN? (Choose three.)

A.    It authenticates group members.
B.    It manages security policies.
C.    It creates group keys.
D.    It distributes multicast replication policies.
E.    It distributes multicast replication keys.
F.    It configures and routes the GDOI protocol.

Answer: ABC

QUESTION 489
Which two Cisco IOS AAA features are available with the local database? (Choose two.)

A.    command authorization
B.    network access authorization
C.    network accounting
D.    network access authentication

Answer: AD

QUESTION 490
What is the most secure way to store ISAKMP/IPSec preshared keys in Cisco IOS?

A.    Use the service password-encryption command.
B.    Encrypt the ISAKMP preshared key in secure type 5 format.
C.    Encrypt the ISAKMP preshared key in secure type 7 format.
D.    Encrypt the ISAKMP preshared key in secure type 6 format.

Answer: D

QUESTION 491
Which two statements about the protected ports feature and the private VLAN feature are true? (Choose two.)

A.    The protected ports feature is limited to the local switch.
B.    The protected ports feature can isolate traffic between two “protected” ports on different switches.
C.    The private VLAN feature is limited to the local switch.
D.    The private VLAN feature prevents interhost communication within a VLAN across one or more switches.

Answer: AD

QUESTION 492
Which two features are used for inspection when IPv6 address glean is enabled? (Choose two.)

A.    DHCP messages
B.    ND messages
C.    ICMPv6 messages
D.    UDP messages
E.    TCP messages

Answer: AB

QUESTION 493
Refer to the exhibit. Which statement about the R1 configuration is true?

 

A.    It permits host 10.1.1.2 to establish a Telnet connection to R1.
B.    It limits remote hosts to two SSH connection attempts.
C.    SSH connections to R1 will log out after a 5-minute idle interval.
D.    Hosts that reside on network 10.0.0.0/8 can SSH to R1.
E.    The R1 timeout for outgoing SSH connection attempts is 30 seconds.

Answer: E

QUESTION 494
Which two statements about the default SNMP configuration are true? (Choose two.)

A.    The SNMP agent is enabled.
B.    The SNMP trap receiver is configured.
C.    All SNMP notification types are sent.
D.    SNMPv1 is the default version.
E.    SNMPv3 is the default version.

Answer: CD

QUESTION 495
Which two statements about logging are true? (Choose two.)

A.    Log messages are sent to the console port by default.
B.    Log messages are displayed in a Telnet session by default.
C.    Interface status changes are logged at the Notification level.
D.    Interface status changes are logged at the Informational level.
E.    System restart messages are logged at the Critical level.
F.    Reload requests are logged at the Notification level.

Answer: AC

QUESTION 496
Refer to the exhibit. Your network is suffering excessive output drops.
Which two actions can you take to resolve the problem? (Choose two.)

 

A.    Install a switch with larger buffers.
B.    Configure a different queue set.
C.    Reconfigure the switch buffers.
D.    Configure the server application to use TCP.
E.    Update the server operating system.

Answer: AB

QUESTION 497
Refer to the exhibit. If the remaining configuration uses default values, what is the expected output of the show mls qos queue- set command?

 

A.    
B.    
C.    
D.    

Answer: A

QUESTION 498
Which two statements about HSRP are true? (Choose two.)

A.    Its virtual MAC is 0000.0C07.Acxx.
B.    Its multicast virtual MAC is 0000.5E00.01xx.
C.    Its default configuration allows for pre-emption.
D.    It supports tracking.
E.    It supports unique virtual MAC addresses.

Answer: AD

QUESTION 499
Which two statements about the client-identifier in a DHCP pool are true? (Choose two.)

A.    It specifies a unique identifier that is used only for DHCP requests.
B.    It is specified by appending 01 to the MAC address of a DHCP client.
C.    It specifies a hardware address for the client.
D.    It specifies a unique identifier that is used only for BOOTP requests.
E.    It requires that you specify the hardware protocol.

Answer: AB

QUESTION 500
Refer to the exhibit. If router R1 is functioning as a DHCPv6 server and you enter the command show ipv6 dhcp binding, which two options are pieces of information in the output? (Choose two.)

 

A.    The IA PD
B.    The DUID
C.    The prefix pool
D.    The DNS server
E.    The Rapid-Commit setting

Answer: AB

More free Lead2pass 400-101 exam new questions on Google Drive: https://drive.google.com/open?id=0B3Syig5i8gpDZ0lrZUFjNWtFYlk

Cisco Certification 400-101 certificate are those engaged in IT industry’s dream. You need to choose the professional training by Lead2pass Cisco 400-101 dumps. Lead2pass will be with you, and to ensure the success wherever you may increase pursuit your career. Let Lead2pass take all your heart, let the dream to reality!

2017 Cisco 400-101 (All 969 Q&As) exam dumps (PDF&VCE) from Lead2pass:

https://www.lead2pass.com/400-101.html [100% Exam Pass Guaranteed]

Comments are closed.