Chapter 10 - SD-Access Design Flashcards
Which of the following is not a key benefit of SD-Access?
- Compatibility
- Automation
- Policy
- Assurance
A.
Automation, policy, and assurance are key benefits of SD-Access; compatibility is not.
What are the main components of SD-Access architecture? (Choose two.)
- SD-Access fabric
- Redundancy
- Cisco DNA Center
- Modularity
A and C.
The SD-Access fabric and Cisco DNA Center are two main components of SD-Access architecture.
Which of the following describes the logical mapping and resolution of the endpoint ID to its location in the SD-Access control plane?
- VXLAN
- SGT
- Scalable groups
- LISP
D.
The two main things that LISP keeps track of are the routing locator (RLOC) or router location and the endpoint identifier (EID), which is the IP address or MAC address.
How does Cisco DNA Center make changes on Cisco ISE?
- LISP
- pxGRID
- REST API
- VXLAN
C.
Cisco ISE is tightly integrated with DNA Center through REST APIs to provide the SGT information needed to enforce policy.
Which wireless integration with SD-Access uses CAPWAP for both the control plane and the data plane?
- Fabric wireless
- Over-the-top
- Local mode
- FlexConnect
B.
With the over-the-top (OTT) method of wireless integration with the SD-Access fabric, the control plane and data plane traffic from the APs use CAPWAP-based tunnels.
Which of the following segmentation options uses SGTs to manage group-based polices between groups of endpoints with a VN?
- Microsegmentation
- pxGRID
- Local mode
- Macrosegmentation
A.
Microsegmentation enables data plane isolation and provides a simple way to manage group-based policies between groups of endpoints with a VN.
Which of the following best describes a medium site with many wiring closets or multiple buildings?
- 10,000 endpoints and 32 VNs
- 50,000 endpoints and 64 VNs
- 75,000 endpoints and 96 VNs
- 25,000 endpoints and 64 VNs
D.
Medium sites can support up to 25,000 endpoints and up to 64 VNs.
Which of the following multicast protocols is used for RP redundancy in SD-Access?
- SSM
- IGMP
- VXLAN
- MSDP
D.
Multicast Source Discovery Protocol (MSDP) can be used for RP redundancy.
Multicast Source Discovery Protocol, or MSDP. as the name Implies, is a Protocol for exchanging the Source of the Multicast Senders (the S from the (S,G) pair entry) between RPs (Rendezvous Points ).
How many VNI segments are possible with VXLAN?
- 16 million
- 8092
- 8 million
- 4092
A.
There are 16 million VNI segments possible with VXLAN.
What device fuses the SD-Access VNs into the GRT of the external network?
- Border node
- DNA Center
- Core switch
- Fusion router
D.
The fusion router fuses the SD-Access VNs into the organization’s GRT, Global Routing Table, of the external network.
Which of the following multicast protocols are supported with SD-Access? (Choose two.)
- SSM
- RP
- PIM
- CAPWAP
A and C. SSM and PIM multicast protocols are supported with SD-Access.
What is the preferred connectivity for WLCs? (Choose two.)
- Cisco DNA Center
- SGTs
- VSS
- Switch stacks
C and D.
VSS and Switch stacks are the preferred connectivity for WLCs.
Which of the following best describes the limits for a very small site for SD-Access?
- 2000 endpoints and 8 VNs
- 3000 endpoints and 12 VNs
- 1000 endpoints and 4 VNs
- 4000 endpoints and 16 VNs
A. A very small site in SD-Access supports up to 2000 endpoints and 8 VNs.
Which of the following gives you contextual insights for quick issue resolution and capacity planning?
- Integration
- Assurance
- Policy
- Automation
B. Assurance provides contextual insights for quick issue resolution and capacity planning.
Which of the following is not an example of a technology that is used to create overlay networks?
- OSPF
- MPLS
- GRE
- DMVPN
A. OSPF is not a technology used to create overlay networks.
What is used for endpoints in different VNs to communicate with each other?
- VXLAN
- SGTs
- VRFs
- Fusion router
D. A Fusion router is used to allow endpoints in different VNs to communicate with each other.
Which VRF instance do fabric mode APs use? (Hint: It is the same VRF instance that is used for the underlay in the SD-Access fabric.)
- INFRA
- MGMT
- SGT
- GRE
A. Fabric mode APs use the INFRA VRF instance.
Edge and border nodes get _________ downloaded from ISE to enforce policy based on SGTs.
- scalable groups
- VNs
- VRF instances
- SGACLs
D. Edge and border nodes get SGACLs downloaded from ISE to enforce policy based on SGTs.
What SD-Access site size supports up to 10,000 endpoints, 32 VNs, and up to 200 APs?
- Very small site
- Small site
- Medium site
- Large site
B. A small site in SD-Access supports up to 10,000 endpoints and 32 VNs.
Which of the following APs is supported for fabric mode wireless in SD-Access?
- 802.11n
- 802.11g
- 802.11ac Wave 1
- 802.11a
C. 802.11ac Wave 1 is supported for fabric mode wireless in SD-Access.
Within the VXLAN header, how may SGTs are supported in the Group ID section?
- 16 million
- 4000
- 8 million
- 64,000
D. Within a VXLAN header, 64,000 SGTs are supported in the Group ID section.
What technology is leveraged to enable SGT information to be inserted into the VXLAN headers in the data plane?
- GRT
- Cisco TrustSec
- ISE
- IPsec
B. Cisco TrustSec is leveraged to enable SGT information to be inserted into the VXLAN headers in the data plane.
Which of the following best describes data plane isolation with a VN using SGTs?
- Microsegmentation
- Macrosegmentation
- VRFs
- VNs
A. Data plane isolation with a VN using SGTs describes microsegmentation.
What SD-Access wireless method uses VXLAN in the data plane?
- Over-the-top
- Local mode
- Fabric wireless
- FlexConnect
C. Fabric wireless uses VXLAN in the data plane.
The routing locator (RLOC) and the __________ are the two main things that LISP keeps track of.
- mapping database
- group ID (GID)
- global routing table (GRT)
- endpoint identifier (EID)
D. The routing locator (RLOC) and the endpoint identifier are the two main things that LISP keeps track of.