無料CCNP Enterprise 350-401日本語究極の学習ガイド(更新された910問あります) [Q414-Q435]

Share

無料CCNP Enterprise 350-401日本語究極の学習ガイド(更新された910問あります)

トップクラスの350-401日本語練習試験問題

質問 # 414
展示を参照してください。この構成の 2 つの効果は何ですか? (2つお選びください。)

  • A. 1 対 1 の NAT 変換を確立します。
  • B. 内部送信元アドレスは 209.165.201.0/27 サブネットに変換されます。
  • C. 10.1.1.0/27 サブネットが内部ローカル アドレスとして割り当てられます。
  • D. 10.1.1.0/27 サブネットが内部グローバル アドレス範囲として割り当てられます。
  • E. 209.165.201.0/27 サブネットが外部ローカル アドレス範囲として割り当てられます。

正解:B、C

解説:
Inside local address - An IP address that is assigned to a host on the inside network. 10.1.1.0/27 Inside global address - A legitimate IP address assigned by the NIC or service provider that represents one or more inside local IP addresses to the outside world. 209.165.201.0/27.


質問 # 415
展示を参照してください。拡張アクセス リスト 100 は、インバウンド方向のインターフェイス GigabitEthernet 0/0 に設定されていますが、192.168.0.0/16 との間のパケットのみを許可するという期待される動作がありません。アクセス リストを適切に設定するコマンド セットはどれですか。

  • A. オプション B
  • B. オプション D
  • C. オプションC
  • D. オプションA

正解:A


質問 # 416

展示を参照してください。エンジニアは、クライアント、サーバー、およびプリンター間でパケットをルーティングするようにスティック上のルーターを構成しようとします。ただし、初期テストでは、この構成が機能していないことが示されています。この問題を解決するコマンドセットはどれですか?
A)

B)

C)

D)

  • A. オプションD
  • B. オプションB
  • C. オプションC
  • D. オプションA

正解:C

解説:
Explanation
We must reconfigure the IP address after assigning or removing an interface to a VRF. Otherwise that interface does not have an IP address.


質問 # 417
Wi-Fiネットワークに干渉を引き起こす2つのソースはどれですか? (2つ選択してください)。

  • A. DECT 6.0 cordless
  • B. Incandesent lights
  • C. mirrored wall
  • D. 900MHz baby monitor
  • E. fish tank

正解:C、E

解説:
Explanation
Windows can actually block your WiFi signal. How? Because the signals will be reflected by the glass.
Some new windows have transparent films that can block certain wave types, and this can make it harder for your WiFi signal to pass through.
Tinted glass is another problem for the same reasons. They sometimes contain metallic films that can completely block out your signal. Mirrors, like windows, can reflect your signal. They're also a source of electromagnetic interference because of their metal backings.
Reference: https://dis-dot-dat.net/what-materials-can-block-a-wifi-signal/
An incandescent light bulb, incandescent lamp or incandescent light globe is an electric light with a wire filament heated until it glows. WiFi operates in the gigahertz microwave band. The FCC has strict regulations on RFI (radio frequency interference) from all sorts of things, including light bulbs -> Incandesent lights do not interfere Wi-Fi networks.
Note:
+ Many baby monitors operate at 900MHz and won't interfere with Wi-Fi, which uses the 2.4GHz band. + DECT cordless phone 6.0 is designed to eliminate wifi interference by operating on a different frequency.
There is essentially no such thing as DECT wifi interference.


質問 # 418
同じ物理サーバーにデプロイされた仮想マシン間で共有できるリソースはどれですか?

  • A. ディスク
  • B. VM構成ファイル
  • C. オペレーティングシステム
  • D. アプリケーション

正解:A


質問 # 419
展示を参照してください。

ネットワークエンジニアは、ファシリティコード7でフィルタリングされたすべてのデバッグレベルログについて、ローカルバッファ、端末、およびsyslogサーバーへのログ記録を有効にしています。この構成スニペットを完了するには、どのコマンドが必要ですか。

  • A. バッファリングされたディスクリミネータDisc1のデバッグのログ
  • B. ロギングディスクリミネーターDisc1の重大度には7つの機能が含まれますfac7が含まれます
  • C. ロギングディスクリミネーターDisc1の重大度には7が含まれます
  • D. バッファリングされたデバッグのログ

正解:B


質問 # 420
Cisco SD-WAN の特徴は何ですか?

  • A. デバイスごとに固有の機能テンプレートを使用します
  • B. 手動による安全なトンネル構成が必要です
  • C. ルーター間のコントロール プレーン接続を使用します。
  • D. DTLS/TLS 認証され、安全なトンネル上で動作します。

正解:D

解説:
https://www.cisco.com/c/en/us/td/docs/routers/sdwan/configuration/security/vedge/security- book.pdf


質問 # 421
REST APIセッションに不正なパスワードが適用されたリクエストに対する正しい応答は、どのHHTPステータスコードですか?

  • A. HTTPステータスコード401
  • B. HTTPステータスコード302
  • C. HTTPステータスコード:504
  • D. HTTPステータスコード200

正解:A

解説:
A 401 error response indicates that the client tried to operate on a protected resource without
providing the proper authorization. It may have provided the wrong credentials or none at all.
Note: answer 'HTTP Status Code 200' 4xx code indicates a "client error" while a 5xx code indicates
a "server error".


質問 # 422
脅威防御ソリューションを左側から右側の説明にドラッグアンドドロップします。

正解:

解説:

Explanation


質問 # 423
エンジニアは、ランサムウェア攻撃から会社を保護する必要があります。エンジニアが実行段階をブロックし、ファイルの暗号化を防ぐことができるソリューションはどれですか?

  • A. Cisco Firepowerを使用して、TORネットワークへのトラフィックをブロックします。
  • B. 悪意のあるアクティビティ保護エンジニアを有効にしてCiscoAMP展開を使用します。
  • C. 侵入ポリシーでCisco Firepowerを使用し、SMBエクスプロイトをブロックするルールをsnortします。
  • D. エクスプロイト防止エンジンを有効にしてCiscoAMP展開を使用します。

正解:B

解説:
Explanation
Ransomware are malicious software that locks up critical resources of the users.
Ransomware uses well-established public/private key cryptography which leaves the only way of recovering the files being the payment of the ransom, or restoring files from backups.
Cisco Advanced Malware Protection (AMP) for Endpoints Malicious Activity Protection (MAP) engine defends your endpoints by monitoring the system and identifying processes that exhibit malicious activities when they execute and stops them from running. Because the MAP engine detects threats by observing the behavior of the process at run time, it can generically determine if a system is under attack by a new variant of ransomware or malware that may have eluded other security products and detection technology, such as legacy signature-based malware detection. The first release of the MAP engine targets identification, blocking, and quarantine of ransomware attacks on the endpoint.


質問 # 424
ファイアウォールを通過するNGFWモードブロックフローはどれですか?

  • A. インラインタップ
  • B. パッシブ
  • C. タップ
  • D. インライン

正解:D

解説:
Firepower Threat Defense (FTD) provides six interface modes which are: Routed, Switched, Inline
Pair, Inline Pair with Tap, Passive, Passive (ERSPAN).
When Inline Pair Mode is in use, packets can be blocked since they are processed inline
When you use Inline Pair mode, the packet goes mainly through the FTD Snort engine
When Tap Mode is enabled, a copy of the packet is inspected and dropped internally while the
actual traffic goes through FTD unmodified
https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/200924-configuringfirepower-
threat-defense-int.html


質問 # 425
ある企業は、Cisco SD-Access Fabric 有線ネットワーク内で新しい OTT ワイヤレス ソリューションを設計するためにネットワーク アーキテクトを雇っています。アーキテクトは、トラフィックを集中的に切り替えるためにアクセス ポイントを WLC に登録したいと考えています。設計にどの AP モードを含める必要がありますか?

  • A. フレックスコネクト
  • B. ファブリック
  • C. ローカル
  • D. ブリッジ

正解:C


質問 # 426
外部 MAC ヘッダーの宛先 MAC は、VXLAN パケットで何を識別しますか?

  • A. ネクスト ホップ
  • B. リーフ スイッチ
  • C. 背骨をエモート
  • D. リモートスイッチ

正解:A


質問 # 427
エンジニアは、2つのVRF間のルートをリークするようにルータを設定する必要があります。エンジニアはどちらの設定を適用する必要がありますか。
A)

B)

C)

D)

  • A. オプションC
  • B. オプションB
  • C. オプションA
  • D. オプションD

正解:D


質問 # 428
スニペットをコード内の空白にドラッグアンドドロップして、日曜日から木曜日の午後9時までアプライアンスで発生したすべてのログを表示するスクリプトを作成します。すべてのオプションが使用されるわけではありません。

正解:

解説:


質問 # 429
Cisco SD-Accessワイヤレスアーキテクチャでは、エンドポイントIDからエッジノードへのバインディングを管理するデバイスはどれですか。

  • A. ファブリックエッジノード
  • B. ファブリックコントロールプレーンノード
  • C. ファブリックボーダーノード
  • D. ファブリックワイヤレスコントローラー

正解:B

解説:
SD-Access Wireless Architecture Control Plane Node - A Closer Look Fabric Control-Plane Node is based on a LISP Map Server / Resolver Runs the LISP Endpoint ID Database to provide overlay reachability information + A simple Host Database, that tracks Endpoint ID to Edge Node bindings (RLOCs) + Host Database supports multiple types of Endpoint ID (EID), such as IPv4
/32, IPv6 /128* or MAC/48 + Receives prefix registrations from Edge Nodes for wired clients, and from Fabric mode WLCs for wireless clients + Resolves lookup requests from FE to locate Endpoints + Updates Fabric Edge nodes, Border nodes with wireless client mobility and RLOC information Reference: https://www.ciscolive.com/c/dam/r/ciscolive/latam/docs/2018/pdf/BRKEWN-2020.pdf


質問 # 430
展示を参照してください。

展示を参照してください。エンジニアは、Switch1のlinux1からSwitch2のLinux2へのトラフィックをミラーリングするERSPANトンネルを設定する必要があります。ERSPANトンネルを有効にするには、宛先構成にどのコマンドを追加する必要がありますか?

  • A. (config-mon-erspan-dst-src)#no shut
  • B. (config-mon-erspan-dst-src)#erspan-id 172.16.10.10
  • C. (config-mon-erspan-dst-src)#erspan-id 110
  • D. (config-mon-erspan-dst-src)#origin ip address 172.16.10.10

正解:C


質問 # 431
展示を参照してください。

エンジニアは、AS 200を出るすべてのトラフィックがエントリポイントとしてリンク2を選択するようにする必要があります。すべてのBGPネイバー関係が形成されていて、どのルーターでも属性が変更されていないと仮定すると、どの構成でタスクを実行できますか?

  • A. オプションD
  • B. オプションC
  • C. オプションA
  • D. オプションB

正解:C


質問 # 432

展示を参照してください。エンジニアは、クライアント、サーバー、およびプリンター間でパケットをルーティングするようにスティック上のルーターを構成しようとします。ただし、初期テストでは、この構成が機能していないことが示されています。この問題を解決するコマンドセットはどれですか?
A)

B)

C)

D)

  • A. オプションD
  • B. オプションB
  • C. オプションC
  • D. オプションA

正解:C

解説:
Explanation
We must reconfigure the IP address after assigning or removing an interface to a VRF. Otherwise that interface does not have an IP address.


質問 # 433
グラフィカルユーザーインターフェイス、テキスト、アプリケーション、電子メール説明が自動的に生成されます

展示を参照してください。スクリプトを実行すると、展示に出力が表示されます。スクリプトの最初の行は何である必要がありますか?

  • A. ncclientインポートマネージャーから
  • B. インポートマネージャー
  • C. ncclientインポートから*
  • D. ncclientmanagerのインポート

正解:C


質問 # 434
展示を参照してください。アクセス リストの機能に影響を与えずに、インターフェイス GigabitEthernet0/1 の 172.20.10.1 からのすべてのトラフィックを許可してログに記録するには、どのコマンド セットを追加する必要がありますか?

  • A. オプション D
  • B. オプションC
  • C. オプション B
  • D. オプションA

正解:A


質問 # 435
......

合格させるCisco 350-401日本語試験問題でテスト復刻エンジンとPDF:https://www.jpntest.com/shiken/350-401J-mondaishu

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡