DRAG DROP
Refer to the exhibit. A Cisco ACI fabric is newly deployed, and the security team requires more visibility of all inter EPG traffic flows. All traffic in a VRF must be forwarded to an existing firewall pair. During failover, the standby firewall must continue to use the same IP and MAC as the primary firewall. Drag and drop the steps from the left into the implementation order on the right to configure the service graph that meets the requirements. (Not all steps are used.)
Select and Place:
An engineer is implementing a Cisco ACI data center network that includes Cisco Nexus 2000 Series 10G fabric extenders. Which physical topology is supported?
A. Option A
B. Option B
C. Option C
D. Option D
How is an EPG extended outside of the ACI fabric?
A. Create an external bridged network that is assigned to a leaf port.
B. Create an external routed network that is assigned to an EPG.
C. Enable unicast routing within an EPG.
D. Statically assign a VLAN ID to a leaf port in an EPG.
An engineer needs to deploy a leaf access port policy group in ACI Fabric to support the following requirements:
1.
Control the amount of application data flowing into the system
2.
Allow the newly connected device to auto-negotiate link speed with the leaf switch
Which two ACI policies must be configured to achieve these requirements? (Choose two.)
A. link level policy
B. L2 interface policy
C. slow drain policy
D. ingress data plane policing policy
E. ingress control plane policing policy
A network engineer must configure a Cisco ACI system to detect network loops for untagged and tagged traffic. The loop must be detected and stopped by disabling an interface within 4 seconds. Which configuration must be used?
A. Option A
B. Option B
C. Option C
D. Option D
What are two descriptions of ACI Multi-Site? (Choose two.)
A. Routers in the Inter-Site network must run OSPF, DHCP relay, and MP-BGP
B. ACI Multi-Site is a solution that allows one APIC cluster to manage multiple ACI sites
C. The Multi-Site orchestrator must be directly attached to one ACI leaf
D. ACI Multi-Site is a solution that supports a dedicated APIC cluster per site
E. The Inter-Site network routers should run OSPF to establish peering with the spines
Refer to the exhibit.
An engineer is integrating a VMware vCenter with Cisco ACI VMM domain configuration. ACI creates port-group names with the format of "Tenant | Application | EPG". Which configuration option is used to generate port groups with names formatted as "Tenant=Application=EPG"?
A. enable tag collection
B. security domains
C. delimiter
D. virtual switch name
Which statement regarding ACI Multi-Pod and TEP pool is true?
A. The IP addresses used in the IPN network can overlap TEP pool of the APIC.
B. A different TEP pool must be assigned to each Pod.
C. The Pod1 TEP pool must be split and a portion of the TEP pool allocated to each Pod.
D. The same TEP pool is used in all Pods.
A Cisco ACI endpoint group must have its gateway address migrated out of the ACI fabric. An engineer configures EPG-TEST with a static port binding and configures the encap VLAN with the required VLAN. Which configuration set must be used on the bridge domain to meet these requirements?
A. L2 Unknown Unicast: Hardware Proxy Unicast Routing: Disabled ARP Flooding: Enabled
B. L2 Unknown Unicast: Hardware Proxy Unicast Routing: Disabled ARP Flooding: Disabled
C. L2 Unknown Unicast: Flood Unicast Routing: Disabled ARP Flooding: Enabled
D. L2 Unknown Unicast: Flood Unicast Routing: Enabled ARP Flooding: Enabled
Which feature should be disabled on a bridge domain when a default gateway for endpoints is on an external device instead of a Cisco ACI bridge domain SVI?
A. unknown unicast flooding
B. ARP flooding
C. unicast routing
D. proxy ARP