Labour Day Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Cisco 300-440 Dumps

Page: 1 / 3
Total 38 questions

Designing and Implementing Cloud Connectivity (ENCC) Questions and Answers

Question 1

Refer to the exhibit.

Drag and drop the steps from the left onto the order on the right to configure a site-to-site VPN connection between an on-premises Cisco IOS XE router and Amazon Web Services (AWS).

Options:

Question 2

What is the role of service providers to establish private connectivity between on-premises networks and Google Cloud resources?

Options:

A.

facilitate direct, dedicated network connections through Google Cloud Interconnect

B.

enable intelligent routing and dynamic path selection using software-defined networking

C.

provide end-to-end encryption for data transmission using native IPsec

D.

accelerate content delivery through integration with Google Cloud CDN

Question 3

Which architecture model establishes internet-based connectivity between on-premises networks and AWS cloud resources?

Options:

A.

That establishes an iPsec VPN tunnel with Internet Key Exchange (IKE) for secure key negotiation and encrypted data transmission

B.

That relies on AWS Elastic Load Balancing (ELB) for traffic distribution and uses SSL/TLS encryption for secure data transmission.

C.

That employs AWS Direct Connect for a dedicated network connection and uses private IP addresses tor secure communication.

D.

That uses Amazon CloudFrontfor caching and distributing content globally and uses HTTPS for secure data transfer.

Question 4

An engineer signs in to Cisco vManage and needs to configure a custom application with a Cisco SD-WAN centralized policy. Drag and drop the steps from the left onto the order on the right to complete the configuration.

Options:

Question 5

Which method is used to create authorization boundary diagrams (ABDs)?

Options:

A.

identify only interconnected systems that are FedRAMP-authorized

B.

show all networks in CIDR notation only

C.

identify all tools as either external or internal to the boundary

D.

show only minor or small upgrade level software components

Question 6

An engineer must use Cisco vManage to configure an application-aware routing policy Drag and drop the steps from the left onto the order on the right to complete the configuration.

Options:

Question 7

An engineer must edit the settings of a site-to-site IPsec VPN connection between an on-premises Cisco IOS XE router and Amazon Web Services (AWS). IPsec must be configured to support multiple peers and failover after 120 seconds of idle time on the first entry of the crypto map named Cisco. Drag and drop the commands from the left onto the order on the right.

Options:

Question 8

Refer to the exhibit.

Refer to the exhibits. An engineer troubleshoots a Cisco SD-WAN connectivity issue between an on-premises data center WAN Edge and a public cloud provider WAN Edge. The engineer discovers that BFD is Dapping on vEdge1. What is the problem?

Options:

A.

The remote Edge device BFD is down.

B.

The remote Edgedevice failed to respond BFD keepalives.

C.

The remote Edge device has a duplicate IP address.

D.

The control plane deleted the BFD session.

Question 9

Refer to the exhibit. An engineer needs to configure a site-to-site IPsec VPN connection between an on-premises Cisco IOS XE router and Amazon Web Services (AWS). Which configuration command must be placed in the blank in the code to complete the tunnel configuration?

Options:

A.

address 20.20.20.21

B.

address 192.10.10.10

C.

tunnel source 20.20.20.21

D.

tunnel source 192.10.10.10

Question 10

A company with multiple branch offices wants a suitable connectivity model to meet these network architecture requirements:

• high availability

• quality of service (QoS)

• multihoming

• specific routing needs

Which connectivity model meets these requirements?

Options:

A.

hub-and-spoke topology using MPLS with static routing and dedicated bandwidth for QoS

B.

star topology with internet-based VPN connections and BGP for routing

C.

hybrid topology that combines MPLS and SD-WAN

D.

fully meshed topology with SD-WAN technology using dynamic routing and prioritized traffic for QoS

Question 11

An engineer must configure an IPsec tunnel to the cloud VPN gateway. Which Two actions send traffic into the tunnel? (Choose two.)

Options:

A.

Configure access lists that match the interesting user traffic.

B.

Configure a static route.

C.

Configure a local policy in Cisco vManage.

D.

Configure an IPsec profile and match the remote peer IP address.

E.

Configure policy-based routing.

Page: 1 / 3
Total 38 questions