Exam Details

  • Exam Code
    :600-511
  • Exam Name
    :Designing with Cisco Network Programmability for ACI
  • Certification
    :Cisco Certifications
  • Vendor
    :Cisco
  • Total Questions
    :60 Q&As
  • Last Updated
    :Mar 23, 2025

Cisco Cisco Certifications 600-511 Questions & Answers

  • Question 41:

    Which statement about a whitelist security model is true?

    A. Permit all traffic.

    B. Deny specific traffic flows, and permit any other traffic.

    C. Permit specific traffic flows, and deny any other traffic.

    D. Deny all traffic.

  • Question 42:

    OpenStack integration with the Cisco APIC is provided through a plug-in to which OpenStack Project?

    A. Nova

    B. Swift

    C. Cinder

    D. Neutron

    E. Glance

  • Question 43:

    In which two ways are EPGs defined? (Choose two.)

    A. static binding with a port

    B. host MAC address

    C. external routing adjacency

    D. based on NetFlow groups

    E. using WFQ

  • Question 44:

    When building a contract, what is the function of a filter?

    A. classification of traffic

    B. a Layer 7 parameter setting for filtering application calls

    C. to drop or adjust routing updates

    D. to enforce SLAs

  • Question 45:

    Which four subcomponents can contracts be broken into? (Choose four.)

    A. subjects

    B. filters

    C. actions

    D. labels

    E. tenants

    F. end points

    G. access entity profile

  • Question 46:

    Which statement about bridge domains is true?

    A. EPGs can be associated with multiple bridge domains within a tenant.

    B. Subnets may overlap across bridge domains within a tenant.

    C. Applications that require Layer 2 flooding should use one bridge domain per subnet.

    D. Bridge domains support only private or public subnet scopes.

  • Question 47:

    In which three ways can the location of VMware virtual endpoints be learned? (Choose three.)

    A. out-of-band handshake

    B. Link Layer Discovery Protocol and Cisco Discovery Protocol

    C. distributed switch learning

    D. VXLAN discovery protocol

    E. OpenFlow

    F. NVGRE discovery protocol

  • Question 48:

    You want to satisfy the business, risk, and customer requirements. Which option is a consideration when you select and design an ACI fabric?

    A. the requirement for meaningful services (such as traffic load balancing, segmentation, filtering, traffic insertion, and monitoring) for workloads provided by virtual Layer 4 to Layer 7 servers

    B. virtual machine mobility because moving from one server to another one would have to occur on the same leaf so that ACI can preserve virtual machine visibility and policy enforcement

    C. the breakdown of virtual versus physical workloads because virtual workloads are treated preferentially in ACI

    D. the requirement for a central point of management, but no centralized control plane

  • Question 49:

    Which four options are important functions offered by the Cisco APIC? (Choose four.)

    A. fault and event management

    B. hypervisor, storage, and computing management

    C. Layer 3 through 5 services integration

    D. statistical collection and analysis

    E. performance management

    F. nonblocking data plane

    G. 1.5:1 oversubscribed ports

    H. BGP and OSPF routing protocol support

  • Question 50:

    Before you design an ACI fabric, it is important to understand existing application interactions. If you do not understand them entirely, which approach can you use?

    A. Design a classic routing configuration in which everybody can talk to anybody as the equivalent to a contract called "anyany" that all EPGs provide and consume.

    B. Design around the Cisco ACI whitelist model using the common tenant, where, by default, two EPGs can communicate to each other in the absence of a contract.

    C. Map each EPG to familiar constructs such as VLANs that provide segmentation and will apply policy application interactions.

    D. Leverage advanced orchestration tools like Cisco Intelligent Automation for Cloud or Cisco UCS Director to document existing application interactions.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 600-511 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.