Exam CCIE Data Center Written Exam
Number 400-151
Posted July 08, 2019
Demo Questions

Question 1
Which two statements about VXLAN are true? (Choose two.)

  • A: VXLAN uses a UDP destination port of 4987.
  • B: A VTEP is a virtual or physical device that maps end devices to VXLAN segments.
  • C: Devices that terminate VXLAN tunnels are known as VTEPs.
  • D: VXLAN adds an additional 32 bytes worth of headers.

Question 2
Which two security features are supported by NX-API (Choose two.)

  • A: NX-API support certificate-based authentication.
  • B: Users must have appropriate accounts to access the device through NX-API.
  • C: All communication to the device is encrypted when you use HTTPS.
  • D: All communication to the device is encrypted when you use VPN.

Question 3
Which three guidelines and limitations of policy-based routing are true? (Choose three.)

  • A: A match command can refer to more than one ACL in a route map for policy-based routing.
  • B: Setting a tunnel interface or an IP address via a tunnel interface as a next hop in a police-based routing policy is not supported.
  • C: The same route map can be shared among different interfaces for policy-based routing as long as interfaces belong to the same VRF instance.
  • D: An ACL used in a policy-based routing route map cannot include a deny statement.
  • E: A policy-based routing route map can have multiple match or set statements per route-map statement.
  • F: Policy-based routing and WCCPv2 are not supported on the same interface if bank chaining is disabled.

Question 4
Which three options are benefits of the vPC peer switch feature? (Choose three.)

  • A: After the peer link comes up, it performs an ARP bulk sync over CFSoE to the peer switch
  • B: It improves convergence forLayer 3 flows.
  • C: It allows a pair of vPC peer devices to appear as a single STP root in the Layer 2.
  • D: It simplifies STP configuration by configuring both vPC with the same STP priority.
  • E: It eliminates the recommendation to pin the STP root to the vPCprimary switch.

Question 5

Refer to the exhibit. If you inspect a VXLAN packet at point 2, which two options about the outer fields in the VXLAN header are two? (Choose two.)

  • A: Outer S-IP = IP-1 ; Outer D-IP = IP-2.
  • B: Outer S-IP = IP-A : Outer D-IP = IP-B.
  • C: Outer S-MAC = MAC-1 ; Outer D-MAC= MAC-4.
  • D: Outer S-MAC = NAC-A ; Outer D-MAC = MAC-B.
  • E: Outer S-IP = IP-1 ; Outer D-IP = IP-4.
  • F: Outer S-MAC = MAC-1 ; Outer D-MAC = MAC-2

Question 6
For which two multicast distribution modes is RP Configuration required? (Choose two.)

  • A: BIDIR
  • B: RPF routes for multicast
  • C: SSM
  • D: ASM

Question 7
Which three statements about ASM and SSM are correct? (Choose three.)

  • A: By default, the SSM group range for PIM is and for PIM6 is FF3x/96.
  • B: PIM ASM is not fully supported on a vPC.
  • C: In ASM mode, only the last-hop router switches from the shared tree to theSPT.
  • D: ASM mode requires that you configure an RP.
  • E: If you want to use the default SSM group range, you must configure the SSM group range.

Question 8

Refer to the exhibit. Within an ACI fabric, a routing protocol is needed to assist with route redistribution between the outside networks and the internal fabric. Which routing protocol is needed to run in the fabric at location 1 to allow the VM access to the networks advertised by the external Layer 3 network.

  • A: iBGP
  • B: eBGP
  • C: IS-IS
  • D: MP-BGP
  • E: OSPF

Question 9
Which option is achieved by enabling FabricPath?

  • A: decreases the mobility and virtualization
  • B: loop prevention and mitigation without the use of Spanning Three
  • C: Layer 2 multipathing in the FabricPath network
  • D: single control plane only for multicast traffic

Question 10
Which three statements are true about redistribution of routes from L3Outs in an ACI fabric? (Choose three.)

  • A: ACI fabric runs MP-BGP.
  • B: Route control subnets control the exchange of routing information (prefixes) into and out of the fabric (control plane).
  • C: Routes are nor redistributed to leaf switches where the same VRF is present.
  • D: Routes learned from L3Outs on border leaf switches are not redistributed into MP-BGP at the ingress leaf.
  • E: Security import subnets control the forwarding of packets into and out of L3Out connections (data plane).
  • F: The routes are advertised to all external Layer 3 Outside connections.



