Latest 300-410 Pass Guaranteed Exam Dumps with Accurate & Updated Questions
300-410 Exam Brain Dumps - Study Notes and Theory
NEW QUESTION # 63
A network administrator is troubleshooting a high utilization issue on the route processor of a router that was reported by NMS The administrator logged into the router to check the control plane policing and observed that the BGP process is dropping a high number of routing packets and causing thousands of routes to recalculate frequently. Which solution resolves this issue?
- A. Police the cir for BGP, conform-action transmit, and exceed action transmit.
- B. Shape the cir for BGP. conform-action transmit, and exceed action transmit.
- C. Police the pir for BGP, conform-action set-prec-transmit, and exceed action set-clp-transmit.
- D. Shape the pir for BGP, conform-action set-prec-transmit, and exceed action set-frde-transmit.
Answer: A,D
NEW QUESTION # 64
Which statement about IPv6 RA Guard is true?
- A. It cannot be configured on a switch port interface in the ingress direction.
- B. Packets that are dropped by IPv6 RA Guard cannot be spanned.
- C. It is not supported in hardware when TCAM is programmed.
- D. It does not offer protection in environments where IPv6 traffic is tunneled.
Answer: D
Explanation:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipv6_fhsec/configuration/xe-3s/ip6f-xe-3s-book/ip6-ra-guard.html#GUID-589AF00C-7499-439F-AD23-51005D61CAB7 The IPv6 RA Guard feature does not offer protection in environments where IPv6 traffic is tunneled.
NEW QUESTION # 65
Refer to the exhibit.
Which configuration denies Telnet traffic to router 2 from 198A:0:200C::1/64?
- A. Option D
- B. Option C
- C. Option B
- D. Option A
Answer: D
NEW QUESTION # 66
Drag and drop the LDP features from the left onto the descriptions on the right
Answer:
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_ldp/configuration/15-sy/mp-ldp-15-sy-boo k/mp-ldp-inbound-filtr.html
NEW QUESTION # 67
Refer to the exhibit.

The network administrator configured the network to connect two disjointed networks and ail the connectivity is up except the virtual link which causes area 250 to be unreachable. Which two configurations resolve this issue? (Choose two.)
- A. R2
router ospf 1
router-id 10.23.23.2 - B. R4
router ospf 1
no area 234 virtual-link 10.23.23.2
area 234 virtual-link 0.0.0.22 - C. R4
router ospf 1
no area area 234 virtual-link 10.23.23.2
area 0 virtual-link 0.0.0.22 - D. R2
router ospf 1
no area 234 virtual-link 10.34.34.4
area 234 virtual-link 0.0.0.44 - E. R2
router ospf 1
no area area 234 virtual-link 10.34.34.4
area 0 virtual-link 0.0.0.44
Answer: B,D
Explanation:
Reference:
An important thing to remember when configuring virtual-link is we need to configure the OSPF router ID and NOT the IP address of the ABR.
Therefore in this question we have to use the command "area 234 virtual-link 0.0.0.44" on R2 and "area 234 virtual-link 0.0.0.22" on R4.
NEW QUESTION # 68
Refer to the exhibit.
A router receiving BGP routing updates from multiple neighbors for routers in AS 690. What is the reason that the router still sends traffic that is destined to AS 690 to a neighbor other than 10.222.1.1?
- A. The local preference value should be set to the same value as the weight in the route map.
- B. The local preference value in another neighbor statement is higher than 250.
- C. The route map is applied in the wrong direction.
- D. The weight value in another neighbor statement is higher than 200.
Answer: C
NEW QUESTION # 69
Refer to the exhibit.
R6 should reach R1 via R5>R2>R1. Which action resolves the issue?
- A. Increase the cost to 61 between R2-R3-R1
- B. Decrease the cost to 41 between R2 and R1
- C. Increase the cost to 61 between R2 and R3
- D. Decrease the cost to 2 between R6-R5-R2
Answer: C
NEW QUESTION # 70 
- A. snmp-server group NETVIEW v2c priv read NETVIEW access 20
- B. access-list 20 permit 10.221.10.12
- C. snmp-server group NETADMIN v3 priv read NETVIEW write NETADMIN access 22
- D. access-list 20 permit 10.221.10.11
Answer: D
NEW QUESTION # 71
What are two functions of LDP? (Choose two.)
- A. It requires MPLS Traffic Engineering.
- B. It uses Forwarding Equivalence Class
- C. It must use Resource Reservation Protocol.
- D. It is defined in RFC 3038 and 3039.
- E. It advertises labels per Forwarding Equivalence Class.
Answer: B,E
Explanation:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/sw/5_x/nx-os/mpls/configuration/guide/mpls_cg/mp_mpls_overview.pdf
NEW QUESTION # 72
Refer to the exhibit.
A network administrator configured an IPv6 access list to allow TCP return frame only, but it is not working as expected. Which changes resolve this issue?
- A. Option D
- B. Option C
- C. Option B
- D. Option A
Answer: B
Explanation:
Explanation
https://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst3750/software/release/122_55_se/configuration/guid
NEW QUESTION # 73
Refer to the exhibit.
Which set of commands restore reachability to loopback0?
A)
B)
C)
D)
- A. Option D
- B. Option C
- C. Option B
- D. Option A
Answer: D
NEW QUESTION # 74
Refer to the exhibit.
An engineer is troubleshooting BGP on a device but discovers that the clock on the device does not correspond to the time stamp of the log entries. Which action ensures consistency between the two times?
- A. Configure the service timestamps log datetime localtime command in global configuration mode.
- B. Configure the service timestamps log uptime command in global configuration mode.
- C. Make sure that the clock on the device is synchronized with an NTP server.
- D. Configure the logging clock synchronize command in global configuration mode.
Answer: B
Explanation:
https://community.cisco.com/t5/networking-documents/router-log-timestamp-entries-are-different-from-the-system-clock/ta-p/3132258
NEW QUESTION # 75
Drag and drop the operations from the left onto the locations where the operations are performed on the right.
Answer:
Explanation:
NEW QUESTION # 76
What does the PE router convert the Ipv4 prefix to within an MPLS VPN?
- A. eBGP path association between the PE and CE sessions
- B. VPN-IPv4 prefix combined with the 64-bit route distinguisher
- C. 48-bit route combining the IP and PE router-id
- D. prefix that combines the ASN, PE router-id, and IP prefix
Answer: B
Explanation:
NEW QUESTION # 77
An engineer configured routing between multiple OSPF domains and introduced a routing loop that caused network instability. Which action resolves the problem?
- A. Set a tag using the redistribute command toward a different domain and deny the matching tag when exiting from that domain
- B. Set a tag using the network command in a domain and use the route-map command to deny the matching tag when entering into a different domain
- C. Set a tag using the redistribute command toward a domain and deny inbound m the other domain by a matching tag
- D. Set a tag using the network command in a domain and use the route-map command to deny the matching lag when exiting toward a different domain
Answer: C
NEW QUESTION # 78 
Refer to the exhibit. Which subnet is redistributed from EIGRP to OSPF routing protocols?
- A. 10.1.2.0/24
- B. 10.2.3.0/26
- C. 10.2.2.0/24
- D. 10.1.4.0/26
Answer: C
Explanation:
Section: Layer 3 Technologies
NEW QUESTION # 79
Refer to the exhibit.
A client is concerned that passwords are visible when running this show archive log config all.
Which router configuration is needed to resolve this issue?
- A. MASS-RTR(config)#service password-encryption
- B. MASS-RTR(config-archive-log-cfg)#password encryption aes
- C. MASS-RTR(config)#aaa authentication arap
- D. MASS-RTR(config-archive-log-cfg)#hidekeys
Answer: D
Explanation:
NEW QUESTION # 80
Which two site-to-site tunnel-based VPN technologies support routing, multicast and private IP addressing?
(Choose two.)
- A. GRE
- B. MPLS VPN
- C. GET VPN
- D. IPsec VPN
- E. DMVPN
Answer: A,E
NEW QUESTION # 81
Refer to the exhibit.
The network administrator can see the DHCP discovery packet in R1. but R2 is not replying to the DHCP request. The R1 related interface is configured with the DHCP helper address. If the PC is directly connected to the FaO/1 interface on R2, the DHCP server assigns as IP address from the DHCP pool to the PC. Which two commands resolve this issue? (Choose two.)
- A. service dhcp command on R1
- B. ip dhcp relay information trust-all command on R2
- C. ip dhcp relay information enable command on R1
- D. service dhcp-relay command on R1
- E. ip dhcp option 82 command on R2
Answer: A,B
Explanation:
1. R1 received DHCP packet and its interface was configured with the DHCP helper address. But we are not sure if R1 forward DHCP packet to R2 or not. 2. If we connect PC directly to R2 then this problem will not appear -> DHCP Server function was configured on R2.
From these facts, the most likely problem is related to Option 82. Maybe R2 ignored DHCP request packets because it was receiving these packets with the giant field set to 0.0.0.0.
By default Cisco IOS devices reject packets with zero "giaddr" and by default Cisco Catalyst switches use "giaddr" of zero when configured for DHCP snooping! Reference: https://blog.ine.com/2009/07/22/understanding-dhcp-option-82 If we can run the "debug ip dhcp server packet" on R2, we may see these messages:
*Feb 22 23:54:57.759: IP: s=0.0.0.0 (FastEthernet0/1), d=255.255.255.255, len 34 4, input feature, MCI Check(64), rtype 0, forus FALSE, sendself FALSE, mtu 0, fw dchk FALSE *Feb 22 23:54:57.759: IP: s=0.0.0.0 (FastEthernet0/1), d=255.255.255.255, len 34 4, rcvd 2 *Feb 22 23:54:57.759: IP: s=0.0.0.0 (FastEthernet0/1), d=255.255.255.255, len 34 4, stop process pak for forus packet
*Feb 22 23:54:57.759: DHCPD: inconsistent relay information. *Feb 22 23:54:57.759: DHCPD: relay information option exists, but giaddr is zero We are receiving the DHCP packet from R1, source 0.0.0.0, and destination 255.255.255.255 broadcast, but if you notice from the debug output, R2, our DHCP Server, is complaining that the relay information is inconsistent. Option 82, Information Option, is contained in the packet but the GIADDR is zero. The GIADDR stands for Gateway IP Address, which is the IP Address of the relaying agent. The Option 82, Information Option, would then contain the receiving port and hostname of the Relaying Agent by default.
R2 sees the Option 82 information, signalling that the DHCP packet might have been relayed, BUT there is no relaying IP Address. This is the behavior of DHCP Snooping when enabling it on a switch, and since the switchport does not contain an IP Address, since it's Layer 2, no GIADDR will be added.
Instead, just the Option 82 Information is added and this is the problem we have, but there are options:
1. You could trust all on R2 the DHCP Server, which will cause the server to not be so suspicious: - ip dhcp relay information trust-all - ip dhcp relay information trusted 2. Disable the addition of Option 82 information on SW: - no ip dhcp snooping information option 3. Trust the port that is receiving the DHCP Discover: - ip dhcp snooping trust Any of these options will fix our predicament.
Reference:
But in the answer choices, we only have 1 correct answer which is the command "ip dhcp relay information trust-all". We checked if we need any "service dhcp..." command on both IOS version 12.4 and 15.1:
Therefore we only have the "service dhcp" command, we don't have any "service dhcp-relay" command available. But the description of the "service dhcp" command says that it enables both DHCP server and relay agent so this is the best answer left.
NEW QUESTION # 82
Refer to the exhibit.
Users in the branch network of 2001:db8:0:4::/64 report that they cannot access the Internet. Which command is issued in IPv6 router EIGRP 100 configuration mode to solve this issue?
- A. Issue the no eigrp stub command on R2.
- B. Issue the eigrp stub command on R1.
- C. Issue the no eigrp stub command on R1.
- D. Issue the eigrp stub command on R2.
Answer: C
NEW QUESTION # 83
Drag and Drop the IPv6 First-Hop Security features from the left onto the definitions on the right.
Answer:
Explanation:




NEW QUESTION # 84
Drag and drop the LDP features from the left onto the descriptions on the right
Answer:
Explanation:
Reference:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_ldp/configuration/15-sy/mp-ldp-15-sy-boo k/mp-ldp-inbound-filtr.html
NEW QUESTION # 85
......
Pass Cisco 300-410 Test Practice Test Questions Exam Dumps: https://www.actual4labs.com/Cisco/300-410-actual-exam-dumps.html
The Best CCNP Enterprise Study Guide for the 300-410 Exam: https://drive.google.com/open?id=1qDLO_bLGmIU31z9zVqmE-qKASs90BLjI