Exam Details

  • Exam Code
    :300-410
  • Exam Name
    :Implementing Cisco Enterprise Advanced Routing and Services (ENARSI)
  • Certification
    :CCNP Enterprise
  • Vendor
    :Cisco
  • Total Questions
    :925 Q&As
  • Last Updated
    :Apr 17, 2025

Cisco CCNP Enterprise 300-410 Questions & Answers

  • Question 451:

    Refer to the exhibit.

    An engineer implemented an access list on R1 to allow anyone to Telnet except R2 Loopback0 to R1 Loopback4 How must sequence 20 be replaced on the R1 access list to resolve the issue?

    A. sequence 20 permit tcp host 1001:ABC:2011:7::1 host 400A:0:400C::1 eq telnet

    B. sequence 20 deny tcp host 400A:0:400C::1 host 1001:ABC:2011:7::1 eq telnet

    C. sequence 20 permit tcp host 400A:0:400C::1 host 1001:ABC:2011:7::1 eq telnet

    D. sequence 20 deny tcp host 1001:ABC:2011:7::1 host 400A:0:400C::1 eq telnet

  • Question 452:

    Refer to the exhibit.

    Site1 must perform unequal cost load balancing toward the segments behind Site2 and Site3. Some of the routes are getting load balanced but others are not. Which configuration allows Site1 to load balance toward all the LAN segments of the remote routers?

    A. Site2 router eigrp 100 variance 3

    B. Site2 router eigrp 100 variance 2

    C. Site3 router eigrp 100 variance 2

    D. Site1 router eigrp 100 variance 3

  • Question 453:

    Refer to the exhibit.

    After configuring OSPF in R1, some external destinations in the network became unreachable. Which action resolves the issue?

    A. Clear the OSPF process on R1 to flush stale LSAs sent by other routers.

    B. Change the R1 router ID from 10.255.255.1 to a unique value and clear the process.

    C. Increase the SPF delay interval on R1 to synchronize routes.

    D. Disconnect the router with the OSPF router ID 0.0.0.0 from the network.

  • Question 454:

    Refer to the exhibit.

    An administrator configured a Cisco router for TACACS authentication, but the router is using the local enable password instead. Which action resolves the issue?

    A. Configure the aaa authentication login default group admin local if-authenticated command instead.

    B. Configure the aaa authentication login admin group tacacs+ local enable none command instead.

    C. Configure the aaa authentication login admin group tacacs+ local if-authenticated command instead.

    D. Configure the aaa authentication login admin group admin local enable command instead.

  • Question 455:

    Refer to the exhibit.

    An engineer configured SNMP traps to record spoofed packets drop of more than 48000 a minute on the ethernet0/0 interlace. During an IP spoofing attack, the engineer noticed that no notifications have been received by the SNMP server. Which configuration resolves the issue on R1?

    A. ip verity unicast notification threshold 48000

    B. ip verify unicast notification threshold 8000

    C. ip verify unicast notification threshold 800

    D. ip verify unicast notification threshold 80

  • Question 456:

    Which IPv6 feature enables a device to reject traffic when it is originated from an address that is not stored in the device binding table?

    A. IPv6 Snooping

    B. IPv6 Source Guard

    C. IPv6 DAD Proxy

    D. IPv6 RA Guard

  • Question 457:

    Which configuration feature should be used to block rogue router advertisements instead of using the IPv6 Router Advertisement Guard feature?

    A. VACL blocking broadcast frames from nonauthorized hosts

    B. IPv4 ACL blocking route advertisements from nonauthorized hosts

    C. PVLANs with promiscuous ports associated to route advertisements and isolated ports for nodes

    D. PVLANs with community ports associated to route advertisements and isolated ports for nodes

  • Question 458:

    What are the two goals of micro BFD sessions? (Choose two.)

    A. The high bandwidth member link of a link aggregation group must run BFD

    B. Continuity for each member link of a link aggregation group must be verified

    C. Each member link on a link aggregation group must run BFD

    D. Any member link on a link aggregation group must run BFD.

  • Question 459:

    Which IPv6 first hop security feature controls the traffic necessary for proper discovery of neighbor device operation and performance?

    A. RA Throttling

    B. Source or Destination Guard

    C. ND Multicast Suppression

    D. IPv6 Snooping

  • Question 460:

    A customer reports that traffic is not passing on an EIGRP enabled multipoint interface on a router configured as below:

    interface Serial0/0/0 no ip address interface Serial0/0/0.9 multipoint ip address 10.1.1.1 255.255.255.248 ip split-horizon eigrp 1

    Which action resolves the issue?

    A. Enable split horizon.

    B. Disable poison reverse.

    C. Disable split horizon.

    D. Enable poison reverse.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 300-410 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.