Cisco® 350-501 Exam Practice Questions (P. 4)
- Full Access (465 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #31

Refer to the exhibit. Which type of DDoS attack will be mitigated by this configuration?
send
light_mode
delete
Question #32

Refer to the exhibit. While troubleshooting the network, a network operator with an employee id: 1234:55:678 is trying to ping XR1. Which result should the operator expect when trying to ping to an XR1 local address?
- AAII ICMP traffic is droppedMost Voted
- BAII ICMP traffic responds successfully
- CICMP traffic works at a policed rate of 19 bytes per second every 100 ms
- DICMP traffic works at a policed rate of 19 packets every 100 ms
Correct Answer:
B
B
send
light_mode
delete
Question #33

Refer to the exhibit. Which show command should be implemented to display per-interface statistics about uRPF drops and suppressed drops?
- Ashow cef interface
- Bshow ip traffic
- Cshow ip interfaceMost Voted
- Dshow ip interface brief
Correct Answer:
C
Reference:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_urpf/configuration/xe-3s/sec-data-urpf-xe-3s-book/cfg-unicast-rpf.html#GUID-3609F224-
5D40-422E-8754-B12C60677612
C
Reference:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_urpf/configuration/xe-3s/sec-data-urpf-xe-3s-book/cfg-unicast-rpf.html#GUID-3609F224-
5D40-422E-8754-B12C60677612
send
light_mode
delete
Question #34

Refer to the exhibit. What is the result of this configuration?
- ARouter 1 opens and closes a TCP connection to the TACACS+ server every time a user requires authorization
- BRouter 1 and the TACACS+ server maintain one open connection between them only when network administrator is accessing the router with password ciscotest
- CRouter 1 and the TACACS+ server maintain one open connection between themMost Voted
- DRouter 1 opens and closes a TCP connection to the TACACS+ server every time a user requires authentication
Correct Answer:
B
B
send
light_mode
delete
Question #35
Which QoS model allows hosts to report their QoS needs to the network?
- AIntServMost Voted
- BCB-WFQ
- CDiffServ
- DMQC
Correct Answer:
A
IntServ follows the signaled-QoS model, where the end-hosts signal their QoS needs to the network.
Reference:
https://www.cisco.com/en/US/technologies/tk543/tk766/technologies_white_paper09186a00800a3e2f.html
A
IntServ follows the signaled-QoS model, where the end-hosts signal their QoS needs to the network.
Reference:
https://www.cisco.com/en/US/technologies/tk543/tk766/technologies_white_paper09186a00800a3e2f.html
send
light_mode
delete
Question #36

Refer to the exhibit. Which show command shows statistics for the control plane policy and is used to troubleshoot?
- Ashow control-plane CoPP
- Bshow policy control-plane
- Cshow control-plane
- Dshow policy-map control-planeMost Voted
Correct Answer:
D
D
send
light_mode
delete
Question #37

Refer to the exhibit. An engineer has started to configure a router for secure remote access as shown. All users who require network access need to be authenticated by the SSH protocol. Which two actions must the engineer implement to complete the SSH configuration? (Choose two.)
- AConfigure an IP domain name.Most Voted
- BConfigure ACL 100 to permit access to port 22.
- CConfigure a password under the vty lines.
- DConfigure crypto keys.Most Voted
- EConfigure service password encryption.
Correct Answer:
AD
AD
send
light_mode
delete
Question #38

Refer to the exhibit. To protect in-band management access to CPE-R7, an engineer wants to allow only SSH management and provisioning traffic from management network 192.168.0.0/16. Which infrastructure ACL change must be applied to router PE-R9 to complete this task?
- Aip access-list extended INFRA-ACL 15 permit tcp 192.168.0.0 0.0.255.255 range 49152 65535 100.64.0.0 0.31.255.255 eq 443
- Bip access-list extended INFRA-ACL no 10 15 permit tcp 192.168.0.0 0.0.255.255 range 49152 65535 100.64.0.0 0.31.255.255 eq 22Most Voted
- Cip access-list extended INFRA-ACL 15 permit tcp 192.168.0.0 0.0.255.255 range 49152 65535 100.64.0.0 0.31.255.255 eq 22
- Dip access-list extended INFRA-ACL no 10 15 permit tcp 192.168.0.0 0.0.255.255 eq 22 100.64.0.0 0.31.255.255 eq 22
Correct Answer:
B
B
send
light_mode
delete
Question #39

Refer to the exhibit. A network engineer notices that router R2 is failing to install network 172.16.33.1/32 in the routing table. Which configuration must the engineer apply to R2 to fix the problem?
- AR2(config)# access-list 1 permit 172.16.33.0 0.0.0.255
- BR2(config)# access-list 1 permit 172.16.33.0 255.255.0.0
- CR2(config)# access-list 1 permit 172.16.33.0 255.255.255.0
- DR2(config)# access-list 1 permit 172.16.33.0 255.0.0.0
Correct Answer:
A
A
send
light_mode
delete
Question #40
Which two PHY modes are available to implement an IOS XR 10 Gigabit Ethernet interface? (Choose two.)
- ALANMost Voted
- BSONET
- CMAN
- DWANMost Voted
- EWDWM
Correct Answer:
AD
AD

Absolutely, A and D are spot on! For the 10 Gigabit Ethernet interfaces on IOS XR, LAN and WAN PHY modes ensure the flexibility needed in various physical layer deployments. This configuration aids tremendously in adapting to different network scales from local area networks through to wide area networks, aligning perfectly with Cisco's versatile interfacing options. Plus, it's all backed up by the ample documentation on Cisco's site, confirming the reliability of these modes for real-world applications. Keep this in mind when setting up your interfaces!
send
light_mode
delete
All Pages