Practice Free 300-410 Exam Online Questions
Refer to the exhibit.
After applying IPsec, the engineer observed that the DMVPN tunnel went down, and both spoke-to-spoke and hub were not establishing.
Which two actions resolve the issue? (Choose two.)
- A . Configure the crypto isakmp key cisco address 192.1.1.1 on R2 and R3
- B . Configure the crypto isakmp key cisco address 0.0.0.0 on R2 and R3.
- C . Change the mode from mode tunnel to mode transport on R3
- D . Change the mode from mode transport to mode tunnel on R2.
- E . Remove the crypto isakmp key cisco address 10.1.1.1 on R2 and R3
A, D
Explanation:
*When using DMVPN with IPSec, it is unnecessary to use tunnel mode. Because DMVPN uses GRE which means that a new IP header is already added by GRE. The GRE encapsulation happens on the tunnel interface before the encryption process takes place.
DRAG DROP
Drag and drop the descriptions from the left onto the corresponding MPLS components on the right.

Explanation:
Table Description automatically
generated
Which two statements about VRF-Lite configurations are true? (Choose two.)
- A . They support the exchange of MPLS labels
- B . Different customers can have overlapping IP addresses on different VPNs
- C . They support a maximum of 512.000 routes
- D . Each customer has its own dedicated TCAM resources
- E . Each customer has its own private routing table.
- F . They support IS-IS
Refer to the exhibit.
An engineer must ensure that R3 sees only type 1 and 2 LSAs in area 1.
Which command must the engineer apply on R2?
- A . Area 1 stub nssa
- B . Area 1nssa no-summary
- C . Area a stub no-summary
- D . Area 1 stub
Which configuration enabled the VRF that is labeled “Inet” on FastEthernet0/0?
- A . R1(config)# ip vrf Inet
R1(config-vrf)#interface FastEthernet0/0
R1(config-if)#ip vrf forwarding Inet - B . R1(config)#router ospf 1 vrf Inet
R1(config-router)#ip vrf forwarding FastEthernet0/0 - C . R1(config)#ip vrf Inet FastEthernet0/0
- D . R1(config)# ip vrf Inet
R1(config-vrf)#ip vrf FastEthernet0/0
Refer to the exhibit.
R1 cannot receive the R2 Interfaces with individual prefixes.
What must be reconfigured to advertise R2 Interfaces to R1?
- A . EIGRP process on R2 by removing the stub command Keyword summary
- B . interface FastEthernet0/1 on R2 with an EIGRP summary for all three loopback prefixes
- C . EIGRP process on R2 with the command stub summary receive-only
- D . EIGRP process on R2 with the command stub summary connected
Refer to the exhibit.
A network administrator logs into the router using TACACS+ username and password credentials, but the administrator cannot run any privileged commands.
Which action resolves the issue?
- A . Configure TACACS+ synchronization with the Active Directory admin group
- B . Configure the username from a local database
- C . Configure full access for the username from TACACS+ server
- D . Configure an authorized IP address for this user to access this router
Refer to the exhibit.
Users on a call center report that they cannot browse the internet on Saturdays during the afternoon.
Which configuration resolves the issue?
A)
B)
C)
D)
- A . Option A
- B . Option B
- C . Option C
- D . Option D
Refer to the exhibit.
An engineer configures router A to mark all inside to outside traffic from network 192 168 1 0, except from host 192 168 1 1. with critical IP precedence. The policy did not work as expected.
Which configuration resolves the issue?
A)
B)
C)
D)
- A . Option
- B . Option
- C . Option
- D . Option
Refer to the exhibit.
Which command must be configured to make VRF CCNP work?
- A . interface Loopback0
vrf forwarding CCNP - B . interface Loopback0
ip address 10.1.1.1 255.255.255.0 - C . interface Loopback0
ip address 10.1.1.1 255.255.255.0
vrf forwarding CCNP - D . interface Loopback0
ip address 10.1.1.1 255.255.255.0
ip vrf forwarding CCNP