350-601 Dumps 2023 - New Cisco 350-601 Exam Questions
Free 350-601 braindumps download (350-601 exam dumps Free Updated)
NEW QUESTION 156
An engineer must affirm the identity of the Cisco UCS Manager after a valid CA-signed keyring for HTTPS access is created. Which action completes the configuration?
- A. Set Cipher Suite Mode
- B. Implement SSLv3
- C. Create a trusted point
- D. Enable TLSv1.2
Answer: C
NEW QUESTION 157
Refer to the exhibit.
An engineer is configuring a VSAN on the network Which option must be selected to create the VSAN?
- A. FC Zoning Enabled
- B. Fabric B
- C. Fabric A
- D. Common/Global
Answer: C
NEW QUESTION 158
Which two statements about the process of performing an EPLD upgrade on a Cisco MDS 9000 series Switch are true? (Choose two.)
- A. The active supervisor can be upgraded.
- B. If an upgrade is interrupted, the upgrade continues after a connection is restored.
- C. The upgrade can be performed from the standby supervisor module.
- D. The Upgrade process disrupts only the module that is being upgraded.
- E. Modules must be online to be upgraded.
Answer: D,E
Explanation:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/mds9000/sw/8_x/release_notes/epld/epld_rn_8x.html
"On a Cisco Nexus 9500 platform switch that has two supervisor modules, upgrade the EPLDs for the standby supervisor and then switch the active supervisor to the standby mode to upgrade its EPLDs. The supervisor switchover is not disruptive to traffic on Cisco Nexus 9500 platform switches. On a switch that has only one supervisor module, you can upgrade the active supervisor, but this will disrupt its operations during the upgrade." Under Installation guidelines.
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus9000/sw/92x/epld-rn/ nxos_n9K_epldRN_924.html
NEW QUESTION 159
A UCS B- Series server located in B5108 chassis 1 slot 1 is currently unavailable. The server needs to be associated with a specific service profile when it becomes available. Which associate service profile option should be selected to accomplish this goal?
- A. restrict migration
- B. server pool
- C. custom server
- D. server
Answer: C
Explanation:
https://www.cisco.com/en/US/docs/unified_computing/ucs/sw/gui/config/guide/141/ UCSM_GUI_Configuration_Guide_141_chapter28.html
NEW QUESTION 160
Refer to the exhibit.
Which statement describes the default gateway configuration of the vPC?
- A. N7K-2 acts as the default gateway for all traffic.
- B. N7K-1 acts as the default gateway for all traffic.
- C. Either switch can act as the active default gateway.
- D. N7K-2 forwards traffic that is destined for the default gateway by using the peer link.
Answer: C
Explanation:
https://community.cisco.com/t5/networking-documents/peer-gateway-feature-on-the-nexus-7000/ta-p/3113290
NEW QUESTION 161
Refer to the exhibit.
What is the result of implementing this configuration?
- A. The TACACS+ server uses the type-6 encrypted format.
- B. The switch queries the TACACS+ server by using a clear text PAP login.
- C. The timeout value on the TACACS+ server is 10 seconds.
- D. The switch queries the TACACS+ server by using an encrypted text PAP login.
Answer: D
Explanation:
Explanation
tacacs-server key
To configure a global TACACS+ shared secret key, use the tacacs-server key command. To remove a configured shared secret, use the no form of this command.
tacacs-server key [0 | 7] shared-secret
Syntax Description
7 (Optional) Configures a preshared key specified in encrypted text to authenticate communication between the TACACS+ client and server.
NEW QUESTION 162 
Refer to the exhibit An engineer must mirror the traffic on a switch The engineer locates the server port that requires monitoring on switch1, but the packet sniffer is on switch2 The engineer must configure the source IP address on switch1 Much command accomplishes this goal?
- A. monitor erspon origin ip-address 209.165.200.225
- B. source interface vbn512
- C. monitor session 10 type erspan-source
- D. source ip 209.165.200.225
Answer: A
NEW QUESTION 163
An engineer must configure multiple EPGs on a single access port in a large Cisco ACI fabric without using VMM integration. The relevant access policies and tenant policies have been created. A single AAEP is used to configure the access port in the fabric. Which two additional steps must be taken to complete the configuration? (Choose two.)
- A. A contract must be defined between the EPGs
- B. The corresponding bridge domains must be configured in legacy mode
- C. The EPGs must be configured as static ports
- D. The EPGs must link directly to the corresponding AAEP
- E. The EPGs must be linked to the correct physical domain
Answer: C,E
Explanation:
Attach EPG to Physical Domain (to AAEP through it) and add static ports to EPG Contract is needed to allow communication between two EPGs, or EPG and L3out or between two L3out
NEW QUESTION 164
An engineer needs to Implement a solution that prevents loops from occurring accidentally by connecting a switch to interface Ethemet1/1. The port Is designated to be used tor host connectivity. What configuration should be implemented?
- A. Option A
- B. Option D
- C. Option B
- D. Option C
Answer: D
NEW QUESTION 165
A network engineer needs to upgrade the EPLDs of the fabric modules for a Cisco MDS director-class switch. In which order are components reloaded during the process?
- A. all fabric modules followed by the entire switching platform
- B. one module and one supervisor at the time
- C. all fabric modules in parallel
- D. one fabric module at the time
Answer: D
Explanation:
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/mds9000/sw/8_x/release_notes/epld/epld_rn_8_4_1a.html#pgfId-321469
"To update all EPLDs sequentially with a single command, use the install all epld command with the module all fan-module all xbar all options. After each module is upgraded, it is power cycled to load the EPLD update."
NEW QUESTION 166
Which adjacency server configuration makes two OTV edge devices located in the same site bring up the dual-site adjacency?
A)
B)
C)
D)
- A. Option A
- B. Option D
- C. Option C
- D. Option B
Answer: D
NEW QUESTION 167 
Refer to the exhibit. Software downgrade is required on a Cisco Nexus 7000 Series Switch. What is displayed when this command is executed?
- A. compatibility of software in the system bootflash file
- B. features that are enabled automatically after the downgrade
- C. features and commands that are removed automatically from the configuration
- D. impact of a software upgrade in ISSU and chassis reload
Answer: A
NEW QUESTION 168
A bridge domain is being extended out of a Cisco ACI fabric. Between which of these components are policies used to identify the connectivity between Endpoint Groups and the external connection?
- A. internal contracts and external contracts
- B. L2Out and L3Out
- C. internal EPGs and external EPGs
- D. an external bridge domain and an external routed domain
Answer: B
NEW QUESTION 169
Refer to the exhibit.
What is the result of implementing the configuration?
- A. Only the RADIUS server is used for authentication.
- B. Users specify the RADIUS server when they log in.
- C. RADIUS traffic is sourced from the VLAN 200 interface.
- D. The RADIUS server timeout value is 15 milliseconds.
Answer: A
NEW QUESTION 170
Which product includes prebuilt templates that can be used to customize fabric deployments?
- A. Cisco UCS Manger
- B. Cisco ACI
- C. Cisco Tetration
- D. Cisco data Center Network Manger
Answer: D
Explanation:
Explanation
https://www.cisco.com/c/en/us/products/collateral/cloud-systems-management/prime-data-center-networkmanag
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/sw/11_2_1/config_guide/lanfabric/ b_dcnm_fabric_lan/template_usage.html
NEW QUESTION 171
An engineer must implement a disaster recovery policy for the Cisco UCS infrastructure. The solution must meet these criteria:
The Recovery Point Objective must be 48 hours.
The backup must use encrypted transmission.
The Recovery Time Objective must be 4 hours.
Which configuration set must be used in the scheduled backup to meet these requirements?
- A. Option A
- B. Option C
- C. Option B
- D. Option D
Answer: D
NEW QUESTION 172
When a strict CoPP policy is implemented, which statement describes an event during which packets are dropped?
- A. A large system image is copied to a switch by using the default VRF.
- B. A ping sweep is performed on a network that is connected through a switch.
- C. Fifteen SSH sessions remain connected to the switch.
- D. A web server that is connected to a switch is affected by a DDoS attack.
Answer: A
NEW QUESTION 173
Refer to the exhibit.
Service degradation is reported on a VM that is deployed on a Cisco UCS blade server. The traffic from the vNIC is required to SPAN in both directions to a packet analyzer that is connected to UCS-A slot 2 port 12.
Which two commands are needed to complete the configuration? (Choose two.)
- A. UCS-A /org/service-profile/vnic/mon-src* # set direction receive transmit
- B. UCS-A /eth-traffic-mon/fabric/eth-mon-session' # create dest-interface 2 12
- C. UCS-A /eth-traffic-mon/fabric/eth-mon-session* # create eth-mon-session/dest-interface 2 12
- D. UCS-A /org/service-profile/vnic/mon-src* # set direction both
- E. UCS-A /eth-traffic-mon/fabric/eth-mon-session # activate
Answer: B,D
NEW QUESTION 174
A network engineer must implement RBAC on Cisco MDS 9000 Series Multilayer Switches.
Drag and drop the Cisco MDS 9000 Series roles from the left onto the correct categories on the right.
Answer:
Explanation:

NEW QUESTION 175
Which two actions should be taken before an upgrade is started on a Cisco MDS switch? (Choose two.)
- A. check the impact of the upgrade using the show install all impact command
- B. free up space on the USB3 device by deleting old Cisco NX-OS image files
- C. disable Cisco Fabric Services
- D. make the primary supervisor the active supervisor
- E. back up the configuration
Answer: A,E
Explanation:
Explanation
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/mds9000/sw/5_2/upgrade/guides/nx-os/ upgrade.html
NEW QUESTION 176
Refer to the exhibit.
What is a characteristic presented in the service profile of the UUID?
- A. unique system generated
- B. vendor assigned
- C. based on the hardware
- D. allocated from a UUID pool
Answer: C
Explanation:
Explanation
there is no parameter for 'set identity dynamic-uuid' to specify a pool name - you can only state "derived" or a 32 hex character string (128-bits, therefore full UUID).
ucspe /org/service-profile # set identity dynamic-uuid
derived Derived
FFFFFFFF-FFFF-FFFF-FFFF-FFFFFFFFFFFF Dynamic UUID
The documentation, as usual for Cisco, is poor. Shagua references old v1.4.1 documentation but it's the same in 4.1. It's inaccurate as uuid-pool should now read uuid-suffix-pool. You can use UCSPE to check the CLI with contextual help.
ucspe /org/service-profile # set identity
dynamic-uuid Dynamic UUID
dynamic-wwnn Dynamic WWNN
uuid-suffix-pool UUID Suffix Pool
wwnn-pool WWNN Pool
If set identity dynamic-uuid only gives us the option of a static UUID or the parameter "derived", and set identity uuid-suffix-pool is the option to assign a pool... I would suggest that the most logical answer here is
- derived from the hardware.
https://www.cisco.com/en/US/docs/unified_computing/ucs/sw/cli/config/guide/1.4.1/CLI_Config_Guide_1_4_1_
NEW QUESTION 177
What occurs when running the command install deactivate <filename> while a software maintenance upgrade is performed on a Cisco Nexus 9000 Series switch?
- A. The current upgrade stops.
- B. The package is removed from the switch.
- C. The package features for the line card are disabled.
- D. The current set of packages is committed.
Answer: C
NEW QUESTION 178
......
Verified 350-601 dumps Q&As - Pass Guarantee Exam Dumps Test Engine: https://www.premiumvcedump.com/Cisco/valid-350-601-premium-vce-exam-dumps.html
350-601 Dumps for Pass Guaranteed - Pass 350-601 Exam: https://drive.google.com/open?id=187qZ8wAB91FJqLbr-czx4ANMhNwGFelq