aiotestking uk

400-351 Exam Questions - Online Test


400-351 Premium VCE File

Learn More 100% Pass Guarantee - Dumps Verified - Instant Download
150 Lectures, 20 Hours

Proper study guides for Latest Cisco CCIE Wireless Written Exam certified begins with Cisco 400-351 preparation products which designed to deliver the Virtual 400-351 questions by making you pass the 400-351 test at your first time. Try the free 400-351 demo right now.

NEW QUESTION 1
which topology is a valid and functional convergence access topology?
5760-AIR-CT5760-25-kg
3850-WS-C3850-48P-s
5508-AIR-CT55098+25-kg
2960-WS-C2960+24TC-S
3650-WS-C3650-24TS-L
3702-AIR-cap3702i-A-K9
A)
400-351 dumps exhibit
B)
400-351 dumps exhibit
C)
400-351 dumps exhibit
D)
400-351 dumps exhibit

  • A. Exhibit A
  • B. Exhibit B
  • C. Exhibit C
  • D. Exhibit D

Answer: A

NEW QUESTION 2
You must configure user management access on Cisco Prime Infrastructure Each user that requires access belongs to a department and each department needs to have specific access. Which configuration in Cisco Prime is the best way to easily administer these users?

  • A. Configure user groups
  • B. Create one user account for each department and each department shares it internally
  • C. Create virtual domains
  • D. Configure access for each user individually

Answer: C

NEW QUESTION 3
During the Cisco 5760 WLC high availability active and standby process (elected or re-elected) which factor can determine which Cisco 5760 WLC become active?

  • A. The cisco 5760 WLC the highest stack member priority value
  • B. the cisco 5760 WLC the highest IP address
  • C. the cisco 5760 WLC the lowest stack member priority value.
  • D. the cisco 5760 WLC the highest Mac address

Answer: A

NEW QUESTION 4
Which three steps are required during the intial configuration of a Cisco Converged Access controller so that the access points can join? (Choose three)

  • A. The Cisco 5760 controller that acts as a mobility controller can support up to 10000APs.
  • B. Ensure that an active license is enabled with the proper AP count.
  • C. Ensure that the wireless management interface is correctly configured.
  • D. In a Converged Access deployment, the APs must be on the same VLAN as the wireless management interface.
  • E. To enable wireless services, the Cisco 3850 switch must run an ipservices or ipbase license.
  • F. Network connectivity is not necessary because all the APs connect directly to the Converged Access controller.

Answer: BCE

NEW QUESTION 5
Which two option describe implication of deploying autonomous APs in repeater mode? (Choose two)

  • A. The Ethernet port is disabled in repeater mode
  • B. You can configure multiple VLANs on repeater access point
  • C. You should disable Cisco Aironet extensions on the parent(root) AP and on the repeater APs
  • D. The infrastructure SSID should be assigned to the native VLAN

Answer: AD

NEW QUESTION 6
You have Cisco Prime Infrastructure deployed on your network in high availability mode. Which statement is true?

  • A. The Health Monitor process only runs on the primary server Oracle Recovery Manager runs on both servers and synchronizes the databases when the primary unit fails.
  • B. High availability deployments consist of two Cisco Prime Infrastructure servers, a primary and a secondary Each of these servers has an active database and a standby backup copy of the active database Under normal circumstances, both servers are active via a common virtual IP address.
  • C. If you choose to deploy the primary and secondary servers on the same IP subnet, you can configure your devices to send notifications to Cisco Prime Infrastructure at a single virtual IP address.
  • D. You can trigger a failover manually or have it triggered automatically However, for maximum uptime and no data loss, it is recommended to configure the high availability pair for automatic failover.

Answer: B

NEW QUESTION 7
Which statement is true about using fast-secure roaming 802.11r and Cisco Centralized Key Management in a hybrid VoWLAN deployment that has legacy Cisco 7925 and newer Cisco 8821 wireless IP phones, using 802.1X PEAP security?

  • A. Only the FSR method can be configured per WLAN, either 802.11r FT or Cisco CK
  • B. The Cisco 7925 and the Cisco 8821 phones support both of these FSR standards
  • C. You can have only Cisco CKM and not FT 802.1X enabled on the WLA
  • D. In this scenario, the Cisco 7925 and the Cisco 8821 uses Cisco CKM
  • E. You can have only FT 802.1X and not Cisco CKM enabled on the WLA
  • F. The Cisco 8821 uses FT 802.1X and the Cisco 7925 resorts to regular reauthentication
  • G. You can have Cisco CKM and FT 802.1X enabled on the WLA
  • H. The Cisco 7925 uses Cisco CKM, and the Cisco 8821 uses FT 802.1X

Answer: D

NEW QUESTION 8
Which two statements are true about adding Identity Services Engines 1.3 to Prime Infrastructure 2.2?(Choose two.)

  • A. You need to use super user credentials on ISE for PI integration to work.
  • B. If you add two ISEs, one should be primary and the other should be standby.
  • C. Configuration templates within PI can be used to set up ISE.
  • D. A maximum of three ISEs can be added to P

Answer: AB

Explanation:
400-351 dumps exhibit
400-351 dumps exhibit
http://www.cisco.com/c/en/us/td/docs/net_mgmt/prime/infrastructure/2-2/user/guide/pi_ug.pdf

NEW QUESTION 9
Refer to the exhibit
400-351 dumps exhibit
Your customer is testing native supplicant provisioning using the ISE (at 192.168.1.2) and a Cisco WLC. The Cisco WLC has an ACC Configured on it called onboarding during the testing of many different client devices (android apple windows) it appears that these devices are never redirected to the on boarding portal through they a access the internet which statement explain this behavior.

  • A. The ACL has a permit any at the end of the list redirection does not take place unless the client hits a website that gets denied
  • B. The source and destination port in the ACL are not set up correctly
  • C. The ACL has a permit any at the end of the list redirection does not take place unless the client hits a websites that guest permitted
  • D. there is nothing wrong the acl the problem must exist either on the client side or on the configured ISE authorization profile.

Answer: C

Explanation:
400-351 dumps exhibit
http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/115732-central-webauth- 00.html

NEW QUESTION 10
A network engineer collected these debugs while troubleshooting authentication issues on autonomous access point. Which two pieces of information can be identified from the debug outputs'? (Choose two)
400-351 dumps exhibit

  • A. This is an example of authentication done with a local RADIUS server
  • B. This is an example of authentication done with a local external server
  • C. The user was authenticated using EAP-FAST method
  • D. An incorrect password was used during authentication

Answer: AC

NEW QUESTION 11
You are the network administrator and your company has deployed a single Cisco 5500 Series Wireless Controller with 100 Cisco Aironet 3500 Series APs A new IT member is worried that all of these APs are working at a power level 3 on the 5 GHz radio, particularly as this power level setting is
causing issues in your wireless network Which issue will cause this behavior?

  • A. The problem has to do with the TPC version in use which has been setup to TPCv1 as this is a high density deployment in this mode there could be higher roaming delays and coverage hole incidents
  • B. The WLC is misconfigured because the static power of level 3 has been set for all the APs under TPC settings
  • C. Cisco 7925 wireless IP Phones are in use and the DTPC feature is enabled on the 5 GHz radio
  • D. The WLC has been recently rebooted which causes the TPC algorithm to set power level 3 on all APs for 90 seconds

Answer: B

NEW QUESTION 12
RX-SOP is configured for the -80 dBm for 2 4 GHz radio with the value set as Low Threshold. Which two values represent the threshold values for each band? (Choose two)

  • A. -82 dBm for 2 4 GHz
  • B. -85 dBm for 2 4 GHz
  • C. -80 dBm for 5 GHz
  • D. -82 dBm for 5 GHz
  • E. -85 dBm for 5 GHz

Answer: BC

NEW QUESTION 13
Which two objects are considered node metrics in RPL? (Choose two.)

  • A. Hop count object
  • B. Colour object
  • C. Latency object
  • D. Throughput object
  • E. State and attributes object

Answer: AC

NEW QUESTION 14
Which Cisco WLC configuration option should be used if you do not want to require guest user to re authenticate via local web authentication when their device has not been associated to the cisco WLC for a longer period?

  • A. Condition Web Redirect
  • B. Client user idle timeout
  • C. Session Timeout
  • D. Sleeping Client

Answer: D

NEW QUESTION 15
Refer to the exhibit.
400-351 dumps exhibit
While troubleshooting a central web authentication issue with Cisco ISE 2 0 or above, you see this message on the Cisco WLC Which statement about this message is true"?

  • A. This message is not accepted by WLC because it is using an invalid TLV.
  • B. This is a standard CoA message from ISE and the WLC does not send a dissociation frame on air to the client.
  • C. This message is valid only for clients with CCX version 3 or above.
  • D. This message results in WLC sending a dissociation frame to the client on ai

Answer: B

NEW QUESTION 16
When connecting an autonomous access point in workgroup bridge mode to a WLAN configured on a Cisco WLC. Which two options are true? (Choose two.)

  • A. The WGB mode allows to connect only one wired client behind the WGB to the WLAN.
  • B. The WGB cannot serve wireless clients.
  • C. The traffic of the wired client behind the WGB can be tunneled only to the Cisco WLC on the VLAN configured for the dynamic interface of the WLAN.
  • D. The traffic of the wired client tagged on a specific VLAN behind the WGB can be tunneled to the same VLAN behind the the Cisco WLC.
  • E. The WGB creates a network extension for the wired clients.
  • F. The WGB could serve wireless clients only on the other radio not connecting to the WLA

Answer: BC

Explanation:

http://www.cisco.com/c/en/us/td/docs/routers/access/wireless/software/guide/RolesWGB.html

NEW QUESTION 17
Refer to the exhibit.
400-351 dumps exhibit
APs on VLAN 2100 can get IP address but cannotregister to the WLC The iP address of the WLC
management interface is 24.244.4.227 which option is the correct DHCP option 43 configuration.?

  • A. f10412f41cd9
  • B. f10418f404227
  • C. f10818f41cd0a181cf4a01c
  • D. f10418f404e3
  • E. f1040a3f0701

Answer: D

NEW QUESTION 18
DRAG DROP
400-351 dumps exhibit

  • A. Mastered
  • B. Not Mastered

Answer: A

Explanation:
400-351 dumps exhibit

NEW QUESTION 19
Which two effects does TSPEC-based admission control have as it relates to WMM clients? (Choose two)

  • A. Deny clients access to the WLAN that do not support WMM.
  • B. Allow access only for VoWLAN traffic when interference is detected.
  • C. Enforce airtime entitlement for wireless voice applications.
  • D. Ensure that call quality does not degrade for existing VoWLAN calls.
  • E. Deny clients access to the WLAN if then do not comply with the TERP standar

Answer: CD

Explanation:
http://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Mobility/vowlan/41dg/vowlan41dgbook/ vowlan_ch2.html http://www.cisco.com/c/en/us/td/docs/wireless/technology/vowlan/troubleshooting/vowlan_troub leshoot/5_Troubleshooting_CAC_Rev1-2.html#wp1053384

NEW QUESTION 20
Prime infrastructure will trigger alarms indicating that the prime infrastructure physicalor virtual server is low on disk space as the administrator which three actions can you take to increase disk space immediately upon receiving a major alert (60 percent disk usage)? (choose three)

  • A. Change the disk controller RAID
  • B. Enable corn job on ade for disk clean up using $ du-sh
  • C. Compacting the PI database using the NCS CLEANUP command
  • D. Reduce the storage load on the local disk by setting up and using remote buckupreposttories
  • E. Reduce the length of time you store client association data and related events.
  • F. Compacting the PI database using the NCS DATABASE PURGE command

Answer: CDE

NEW QUESTION 21
After going through the DCF process, what further process does the client go through to reserve a medium?

  • A. No process, it can begin transmitting immediately
  • B. Send a REQ, receive an ACK, send frames
  • C. Send an RTS and SIFS, receive a CTS and SIFS, then send frames
  • D. Send a CTS and SIFS, receive an RTS and SIFS, then send frames

Answer: C

NEW QUESTION 22
400-351 dumps exhibit
Refer to the exhibit. Which three statements about this extract of the configuration of an autonomous AP are true? (Choose three)

  • A. This configuration is of a non-root bridge access point.
  • B. The RADIUS server IP address I misconfigure
  • C. It points to the AP itsel
  • D. Which creates a loop for the RADIUS packets.
  • E. This configuration allows bridging of VLANs 3 and 4.
  • F. The SSID is not visible for clients proting the wireless medium.
  • G. The administrator cannot access the AP via the web GUI using a secure connection.
  • H. The native VLAN must be VLAN 1 to match the native VLAN configured on the switch to which the AP is connecting.

Answer: CDE

Explanation:
Root bridge + basic Config of Autonomous AP + AP SSID boardcast -(=mbssid guest-mode) https://supportforums.cisco.com/document/61936/autonomous-ap-and-bridge-basic-configurationtemplate# Configurationon_Non_Root_bridge
Local Radius
http://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-lan-wlan/116580- configure-eapfast-00.html

NEW QUESTION 23
What is the function of a Virtual Network (VN) in Software-Defined Access?

  • A. Provides a unique routing and switching forwarding construct
  • B. Provides the IP address information for SD-Access endpoint routing
  • C. Provides a unique endpoint grouping construct
  • D. Provides an isolation network for DNAC to ISE communication

Answer: B

NEW QUESTION 24
Why would you enable the RFC 3578 option when adding a new RADIUS authentication server to a WLC?

  • A. you want to run both RADIUS and TACACS
  • B. to support Disconnect and Change of Authorization
  • C. to encrypt communications between the WLC and the RADIUS server
  • D. to support RADIUS key wrapping

Answer: B

Explanation:
If you are configuring a new RADIUS authentication server, choose Enabled from the Support for RFC 3576 drop-down list to enable RFC 3576, which is an extension to the RADIUS protocol that allows dynamic changes to a user session, or choose Disabled to disable this feature. The default value is Enabled. RFC 3576 includes support for disconnecting users and changing authorizations applicable to a user session and supports disconnect and change-of-authorization (CoA) messages. Disconnect messages cause a user session to be terminated immediately where CoA messages modify session authorization attributes such as data filters.

NEW QUESTION 25
Refer to the exhibit.
400-351 dumps exhibit
You are configuring a MAC-based ACL on a root bridge. You must ensure that only one WGB can associate to the root Which command or set of commands must you use?

  • A. access-list 700 permit 001b.d43e.6d52 ffff.ffff.ffff access-list 700 deny 0000.0000.0000 0000.0000.0000
  • B. access-list 700 permit 001b.d43e.6d52 0000.0000.0000access-list 700 deny 0000.0000.0000 ffff.ffff.ffff
  • C. access-list 700 permit 001b.2bab.68d0 0000.0000.0000access-list 700 deny 0000.0000.0000 ffff.ffff.ffff
  • D. access-list 700 permit 001b.2bab.68d0 0000.0000.0000

Answer: D

NEW QUESTION 26
Heartbeats are used to maintain the high-availability status of an application. Which factor is most important?

  • A. Bandwidth
  • B. Latency
  • C. Routing
  • D. Round-trip time

Answer: D

Explanation:
http://www.cisco.com/c/en/us/td/docs/wireless/controller/7-
4/configuration/guides/consolidated/b_cg74_CONSOLIDATED/b_cg74_CONSOLIDATED_chapter_011 11101.html https://books.google.com.hk/books?id=YLHvHGGx5AEC&pg=PT66&lpg=PT66&dq=wlc+heatbeat+ro
und+trip+time&source=bl&ots=ClFsWOm0RH&sig=5NO_zaiDBOmHlDzXfLiLgrkgpP0&hl=zh- TW&sa=X&ved=0ahUKEwjb0M31vdLPAhUT9mMKHRJkDv4Q6AEIWDAH#v=onepage&q=wlc%20heat beat%20round%20trip%20time&f=false
Cisco Prime Infrastructure 3.1.3 Administrator Guide - Configuring High Availability [Cisco Prime Infrastructure] - Cisco
http://www.cisco.com/c/en/us/td/docs/net_mgmt/prime/infrastructure/3-1- 3/administrator/guide/PIAdminBook/config_HA.html
Health Monitor (HM) detects failure conditions using the heartbeat messages that the two servers exchange. If the primary server is not responsive to three consecutive heartbeat messages from the secondary, it is considered to have failed. During the health check. HM also checks the application process status and database health; if there is no proper response to these checks, these are also treated as having failed.
The HA system takes approximately 10 to 15 seconds to detect a process failure on the primary server and initiate a failover. If the secondary server is unable to reach the primary server due to a network issue, it might take more time to initiate a failover. In addition, it may take additional time for the application processes on the secondary server to be fully operational.
High Availability FAQ –Cisco. http://www.cisco.com/c/en/us/products/collateral/wireless/aironet-1130-ag-series/qa_c67- 714540.html
Q. What are the recommendations for the network between the primary and secondary controllers connected via RP over Layer 2 VLAN/fiber to achieve client SSO?
A. The Layer 2 network
for RP connectivity needs to follow these recommendations to ensure appropriate performance in case of a switchover:
• Round-trip time (RTT) latency on the redundancy link: 80 ms or less for the default keep-alive timeout or 80 percent of the configured keep-alive timeout
• Preferred maximum transmission unit (MTU) on the redundancy link: 1500 or above
• Bandwidth on the redundancy link: 60 Mbps or more

NEW QUESTION 27
Which organization is a consortium of industry leaders in switching and wireless, silicon, and other technology areas working to deliver Multigigabit Ethernet speeds over existing cabling?

  • A. Ethernet Alliance
  • B. Wi-Fi Alliance
  • C. mGig Consortium
  • D. NBASE-T Alliance

Answer: D

NEW QUESTION 28
When configuration an autonoumous access point, which configuration broadcasts two SSIDs?

  • A. dot11 ssid data1 vlan 10 authentication openauthentication key-managerment wpa version 1 wpa-psk ascii cisco123end!dot11 ssid data2 vlan 11 authentication openauthentication key-management wpa version 2 wps-psk accii Cisco12345end
  • B. dot11 ssid data1 vlan 10 authentication openauthentication key-management wpa version 1 wpa-psk ascii cisco123mbssid guest-mode end!dot11 ssid data2 vlan 11 authentication openauthentication key-management wpa version 2 wpa-psk accii Cisco12345mbssid guest-mode end
  • C. mbssid!dot11 ssid data1 vlan 10 authentication openauthentication key-management wpa version 1 wpa-psk ascii cisco123end!dot11 ssid data2 vlan 11authentication openauthentication key-management wpa version 2 wpa-psk accii Cisco12345end
  • D. dot11 ssid data1 vlan 10 authentication openauthentication key-management wpa version 1 wpa-psk ascii cisco123guest-mode end!dot11 ssid data2 vlan 11 authentication openauthentication key-management wpa version 2 wpa-psk ascii cisco12345guest-mode end
  • E. dot11 ssid data1 vlan 10 authentication openauthentication key-management wpa version 1 wpa-psk ascii cisco123mbssid end!dot11 ssid data2 vlan 11 authentication openauthentication key-management wpa version 2 wpa-psk accii Cisco12345mbssid end

Answer: B

Explanation:
400-351 dumps exhibit
http://www.cisco.com/c/en/us/td/docs/routers/access/1800/wireless/configuration/guide/awg/s37 ssid.pdf

NEW QUESTION 29
......

100% Valid and Newest Version 400-351 Questions & Answers shared by prep-labs.com, Get Full Dumps HERE: https://www.prep-labs.com/dumps/400-351/ (New 393 Q&As)