Which statement about Cisco FabricPath is true?


A.      It is the best solution for interconnecting multiple data centers.

B.      It optimizes STP throughout the Layer 2 network.

C.      It is a simplified extension of Layer 3 networks across a single data center.

D.      The Cisco FabricPath domain appears as a single STP bridge, where each edge port uses the same MAC address.


Correct Answer: D




Which statement about scalability in Cisco OTV is true?


A.      The control plane avoids flooding by exchanging MAC reachability.

B.      IP-based functionality provides Layer 3 extension over any transport.

C.      Any encapsulation overhead is avoided by using IS-IS.

D.      Unknown unicasts are handled by the authoritative edge device.


Correct Answer: A




Which two statements about Cisco Nexus 7000 line cards are true? (Choose two.)


A.      M1, M2, and F1 cards are allowed in the same VDC.

B.      M line cards are service-oriented and likely face the access layer and provide Layer 2 connectivity.

C.      F line cards are performance-oriented and likely connect northbound to the core layer for Layer 3 connectivity.

D.      M line cards support Layer 2, Layer 3, and Layer 4 with large forwarding tables and a rich feature set.

E.       The F2 line card must reside in the admin VDC.


Correct Answer: AD




Which statement about the Layer 3 card on the Cisco Nexus 5500 Series Switch is true?


A.      BGP support is not provided, but RIP, EIGRP, and OSPF support is provided.

B.      Up to two 4-port cards are supported with up to 160 Gb/s of Layer 3 forwarding capability.

C.      Up to 16 FEX connections are supported.

D.      Port channels cannot be configured as Layer 3 interfaces.


Correct Answer: C




Which statement explains why a Cisco UCS 6200 Fabric Interconnect that is configured in end host mode is beneficial to the unified fabric network?


A.        There is support for multiple (power of 2) uplinks.

B.        Upstream Layer 2 disjoint networks will remain separated.

C.        The 6200 can connect directly via vPC to a Layer 3 aggregation device.

D.        STP is not required on the uplink ports from the 6200.


Correct Answer: D




Which option is a restriction of the unified ports on the Cisco UCS 6200 Series Fabric Interconnect when connecting to the unified fabric network?


A.      Direct FC connections are not supported to Cisco MDS switches

B.      The FCoE or Fibre Channel port allocations must be contiguous on the 6200.

C.      10-G Fibre Channel ports only use SFP+ interfaces.

D.      vPC is not supported on the Ethernet ports.


Correct Answer: B




Which statement about the implementation of Cisco TrustSec on Cisco Nexus 7000 Series Switches is true?


A.      While SGACL enforcement and SGT propagation are supported on the M and F modules, 802.1AE (MACsec) support is available only on the M module.

B.      SGT Exchange Protocol is required to propagate the SGTs across F modules that lack hardware support for Cisco TrustSec.

C.      AAA authentication and authorization is supported using TACACS or RADIUS to a Cisco Secure Access Control Server.

D.      Both Cisco TrustSec and 802.1X can be configured on an F or M module interface.


Correct Answer: A




Which statement about implementation of Cisco TrustSec on Cisco Nexus 5546 or 5548 switches are true?


A.      Cisco TrustSec support varies depending on Cisco Nexus 5500 Series Switch model.

B.      The hardware is not able to support MACsec switch-port-level encryption based on IEEE 802.1AE.

C.      The maximum number of RBACL TCAM user configurable entries is 128k.

D.      The SGT Exchange Protocol must use the management (mgmt 0) interface.


Correct Answer: B




Which two security features are only supported on the Cisco Nexus 7000 Series Switches? (Choose two.)


A.      IP source guard

B.      traffic storm control

C.      CoPP

D.      DHCP snooping

E.       Dynamic ARP Inspection

F.       NAC


Correct Answer: BF




After enabling strong, reversible 128-bit Advanced Encryption Standard password type-6 encryption on a Cisco Nexus 7000, which command would convert existing plain or weakly encrypted passwords to type-6 encrypted passwords?


A.      switch# key config-key ascii

B.      switch(config)# feature password encryption aes

C.      switch# encryption re-encrypt obfuscated

D.      switch# encryption decrypt type6


Correct Answer: C

