Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple70

Pass the Cisco CCNP Enterprise 300-440 Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam 300-440 Premium Access

View all detail and faqs for the 300-440 exam


476 Students Passed

95% Average Score

90% Same Questions
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

Refer to the exhibit.

Question # 1

Which Cisco lKEv2 configuration brings up the IPsec tunnel between the remote office router and the AWS virtual private gateway?

A)

Question # 1

B)

Question # 1

C)

Question # 1

Options:

A.

Option A

B.

Option B

C.

Option C

Questions # 2:

A company with multiple branch offices wants a suitable connectivity model to meet these network architecture requirements:

• high availability

• quality of service (QoS)

• multihoming

• specific routing needs

Which connectivity model meets these requirements?

Options:

A.

hub-and-spoke topology using MPLS with static routing and dedicated bandwidth for QoS

B.

star topology with internet-based VPN connections and BGP for routing

C.

hybrid topology that combines MPLS and SD-WAN

D.

fully meshed topology with SD-WAN technology using dynamic routing and prioritized traffic for QoS

Questions # 3:

An engineer must configure a CLI add-on feature template in Cisco vManage for enhanced policy-based routing (ePBR) for IPv4. These configurations were deleted:

• licensing config enable false

• licensing config privacy hostname true

• licensing config privacy version false

• licensing config utility utility-enable true

Drag and drop the steps from the left onto the order on the right to complete the configuration.

Question # 3

Options:

Questions # 4:

An engineer must configure an AppGoE service node for WAN optimization for applications that are hosted in the cloud using Cisco vManage for C8000V or C8500L-8S4X devices. Drag and drop the steps from the left onto the order on the right to complete the configuration.

Question # 4

Options:

Questions # 5:

A cloud engineer is setting up a new set of nodes in the AWS EKS cluster to manage database integration with Mongo Atlas. The engineer set up security to Mongo but now wants to ensure that the nodes are also secure on the network side. Which feature in AWS should the engineer use?

Options:

A.

EC2 Trust Lock

B.

security groups

C.

tagging

D.

key pairs

Questions # 6:

Refer to the exhibit.

Question # 6

A company uses Cisco SD-WAN in the data center. All devices have the default configuration. An engineer attempts to add a new centralized control policy in Cisco vManage but receives an error message. What is the problem?

Options:

A.

A centralized control policy is already applied to the specific site ID and direction

B.

The policy for "Hub" should be applied in the outbound direction, and the policy for "All-Site" should be applied inbound.

C.

Apply an additional outbound control policy to override the site ID overlaps.

D.

Site-list "All-Site" should be configured with a new match sequence that is lower than the sequence for site-list "Hub*.

Questions # 7:

An engineer must configure an IPsec tunnel to the cloud VPN gateway. Which Two actions send traffic into the tunnel? (Choose two.)

Options:

A.

Configure access lists that match the interesting user traffic.

B.

Configure a static route.

C.

Configure a local policy in Cisco vManage.

D.

Configure an IPsec profile and match the remote peer IP address.

E.

Configure policy-based routing.

Questions # 8:

Question # 8

Question # 8

Refer to the exhibits. An engineer must redistribute only the 10.0.10.0/24 network into BGP to connect an on-premises network to a public cloud provider. These routes are currently redistributed:

Question # 8

Which command is missing on router R2?

Options:

A.

neighbor 10.0.10.2 remote-as 100

B.

redistribute ospf 1 match internal

C.

redistribute ospf 1 match external

D.

neighbor 10.0.10.0/24 remote-as 100

Questions # 9:

Which Microsoft Azure service enables a dedicated and secure connection between an on-premises infrastructure and Azure data centers through a colocation provider?

Options:

A.

Azure Private Link

B.

Azure ExpressRoute

C.

Azure Virtual Network

D.

Azure Site-to-Site VPN

Questions # 10:

Question # 10

Refer to the exhibit. An engineer needs to configure a site-to-site IPsec VPN connection between an on-premises Cisco IOS XE router and Amazon Web Services (AWS). Which configuration command must be placed in the blank in the code to complete the tunnel configuration?

Options:

A.

address 20.20.20.21

B.

address 192.10.10.10

C.

tunnel source 20.20.20.21

D.

tunnel source 192.10.10.10

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.