♥♥ 2021 NEW RECOMMEND ♥♥

Free VCE & PDF File for Cisco 300-320 Real Exam (Full Version!)

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW 300-320 Exam Dumps (PDF & VCE):
Available on: http://www.surepassexam.com/300-320-exam-dumps.html

Q131. Which four options are network virtualization technologies that are employed in the data center? (Choose four.) 

A. VLAN 

B. VSAN 

C. VRF 

D. VRP 

E. VLC 

F. VPC 

Answer: A,B,C,F 


Q132. When designing remote access to the Enterprise Campus network for teleworkers and mobile workers, which of the following should the designer consider? 

A. It is recommended to place the VPN termination device in line with the Enterprise Edge firewall, with ingress traffic limited to SSL only 

B. Maintaining access rules, based on the source IP of the client, on an internal firewall drawn from a headend RADIUS server is the most secure deployment 

C. VPN Headend routing using Reverse Route Injection (RRI) with distribution is recommended when the remote user community is small and dedicated DHCP scopes are in place 

D. Clientless SSL VPNs provide more granular access control than SSL VPN clients (thin or thick), including at Layer7 

Answer:


Q133. Source traffic is sent to a VIP on an SLB device, which in turn is routed to the destination server. Return traffic is policy-based routed back to the SLB. 

Which SLB design has been implemented? 

A. router mode 

B. inline bridge mode 

C. one-armed mode 

D. two-armed mode 

Answer:


Q134. Which of the following two statements about Cisco NSF and SSO are the most relevant to the network designer? (Choose two.) 

A. You can reduce outages to 1 to 3 seconds by using SSO in a Layer 2 environment or Cisco NSF with SSO in a Layer 3 environment. 

B. SSO and NSF each require the devices to either be graceful restart-capable or graceful restart-aware. 

C. In a fully redundant topology adding redundant supervisors with NSF and SSO may cause longer convergence times than single supervisors with tuned IGP timers 

D. The primary deployment scenario for Cisco NSF with SSO is in the Distribution and Core layers. 

E. Cisco NSF-aware neighbor relationships are independent of any tuned IGP timers 

Answer: A,C 


Q135. DRAG DROP 

Answer: 


Q136. A customer with a single Cisco Adaptive Security Appliance wants to separate multiple segments of the e-commerce network to allow for different security policies. What firewall technology accommodates these design requirements? 

A. virtual contexts 

B. private VLANs 

C. admission control 

D. virtual private network 

Answer:


Q137. Which option is the Cisco recommendation for data oversubscription for access ports on the access-to-distribution uplink? 

A. 4 to 1 

B. 20 to 1 

C. 16 to 1 

D. 10 to 1 

Answer:


Q138. Which two of these are correct regarding the recommended practice for distribution layer design? (Choose two.) 

A. use a redundant link to the core 

B. use a Layer 2 link between distribution switches 

C. never use a redundant link to the core because of convergence issues 

D. use a Layer 3 link between distribution switches with route summarization 

E. use a Layer 3 link between distribution switches without route summarization 

Answer: A,D 


Q139. A company has hired an entry-level network administrator for its new data center. The company CIO wants to give the administrator limited access on the newly configured Cisco Nexus 7000. Which feature should be used to allow limited access? 

A. NAC 

B. VDC 

C. RBAC 

D. vPC 

Answer:


Q140. What network technology provides Layer 2 high availability between the access and distribution layers? 

A. HSRP 

B. MEC 

C. EIGRP 

D. GLBP 

Answer: