[Free] 2018(Mar) EnsurePass Testking Cisco 200-601 Dumps with VCE and PDF 21-30

Ensurepass.com : Ensure you pass the IT Exams
2018 Mar Cisco Official New Released 200-601
100% Free Download! 100% Pass Guaranteed!

Managing Industrial Networking for Manufacturing with Cisco Technologies

Question No: 21

Refer to the exhibit.

Ensurepass 2018 PDF and VCE

CIP Implicit messages from I/O#1 are being marked IP DSCP 47 by the endpoint and this marking is trusted by L2SW4. L2SW4 is configured to map DSCP 47 to output queue 1 threshold 1. You have received feedback that some of these messages are not being received. Executing the show mls interface GigabitEthernet statistics command on L2SW4 results in:

L2SW4# show mls interface GigabitEthernet 1/1 statistics

lt;output omittedgt;

output queues dropped:

queue: threshold1 threshold2 threshold3

queue 0




queue 1




queue 2




queue 3




Repeating this command results in the counters incrementing for queue 1 threshold 1. What are two options for reducing the packet loss on this interface while preserving the end-to-end DSCP marking? (Choose two)

  1. Configure I/O#1 to mark this traffic with a different DSCP that is mapped to a less congested queue

  2. Increase the buffer allocation for input queue 1

  3. Increase the buffer allocation for output queue 1

  4. Alter the service policy to police to a higher CIR

  5. Change the egress queue map on L2SW4 to map this traffic to a less congested queue

Answer: C,E

Question No: 22

Which two are possible solutions to control which devices can communicate between industrial zones? (Choose two)

  1. Use per zone private IP addressing and deploy NAT to control traffic between zones

  2. Put access control lists on switches connecting industrial zones to control traffic

  3. Attach each zone to a firewall to control intra-zone traffic

  4. Deploy QoS traffic shaping to limit the volume of traffic between industrial zones

  5. Deploy an IDS system between the zones to control intra-zone traffic

Answer: B,C

Question No: 23

Refer to the exhibit.

Ensurepass 2018 PDF and VCE

Which values are correct for AP 2 to allow for efficient roaming?

  1. Channel 6, SSID Sittingduck, BSSID 00:0a:0b:0c:0d:0e

  2. Channel 1, SSID Sittingduck, BSSID 00:01:02:03:04:05

  3. Channel 1, SSID Sittingduck, BSSID 00:0a:0b:0c:0d:0e

  4. Channel 6, SSID Sittingduck, BSSID 00:01:02:03:04:05

Answer: A

Question No: 24

Refer to the exhibit.

Ensurepass 2018 PDF and VCE

L3SW1 has a spanning-tree priority of 8192 set on VLANs 1, 300, and 301, and these VLANs are configured on and trunked between all switches. Executing the command show spanning-tree blockedports on L2SW5 results in:

L2SW5# show spanning-tree blockedports Name Blocked Interfaces List

———- —————— VLAN0001 Gi1/1

VLAN0300 Gi1/1

VLAN0301 Gi1/1

An additional VLAN, VLAN302, is defined on all switches and trunked between them. VLAN302 access ports are set up on each of the switches and PLC#1, I/O#1, and the PanelView are attached. You expect the new VLAN to be listed as blocked on interface GigabitEthernet1/1 of L2SW5 but it is not. The three new devices are able to communicate with each other.

After executing the same command on all switches you see this output on L2SW4:

L2SW4# show spanning-tree blockedports

Name Blocked Interfaces List

———- —————— VLAN0001 Gi1/2

VLAN0300 Gi1/2

VLAN0301 Gi1/2

Why is VLAN302 forwarding on L2SW5 interface GigabitEthernet 1/1 and L2SW4 interface GigabitEthernet 1/1 and 1/2?

  1. VLAN302 is not configured in the VLAN database on L2SW5

  2. VLAN302 is not in the allowed list on the L2SW5 interface GigabitEthernet1/1 trunk

  3. L2SW4 is the spanning tree root for VLAN 302

  4. The FO3 fiber-optic cable between L2SW4 and L2SW5 is damaged

Answer: C

Question No: 25

You have reached the limit of IPv4 IGMP groups available on a Cisco IE 3000 switch that was deployed using the Express Setup. Which CLI command will increase the number of available IPv4 IGMP groups and multicast routes from 256 to 1000 on this switch?

  1. switch(config)#sdm prefer routing

  2. switch(config)#sdm prefer vlan igmp

  3. switch(config)#sdm prefer routing igmp

  4. switch(config)#sdm prefer vlan

Answer: A

Question No: 26

It is determined that an intermittent high packet loss event is occurring within a segment of the network. The assigned task is to determine the cause. Which of these conditions should be suspected?





Answer: D

Question No: 27

Your supervisor calls you and tells you that one of the Stratix 5700 switches is not assigning all CIP explicit messages to the proper QoS queue. The switch was deployed with the ab-global macro and CIP explicit messages were previously being assigned to the

proper QoS queue. You suspect the access-lists associated with the ab-global macro have been changed. Look at the following access list from the switch configuration:

access-list 101 permit udp any eq 2222 any dscp 55 access-list 102 permit udp any eq 2222 any dscp 47 access-list 103 permit udp any eq 2222 any dscp 43 access-list 104 permit udp any eq 2222 any

access-list 105 permit udp any eq 44818 any access-list 105 permit tcp any eq 44816 any

What needs to be done to fix the above access list?

  1. Access list 105 should reference udp port 44816

  2. Access lists 101-104 should reference udp port 2212

  3. Access list 105 should reference tcp port 44818

  4. Access list 104 should be a deny access list rather than a permit access list

Answer: C

Question No: 28

Which in-depth approach is used when deploying defense in an industrial zone?

  1. Use PLCs and control systems from multiple vendors in such a way that the process will become resilient for failures of one vendor.

  2. Deploy two factor authentications for all operators which need to login remote while working from home.

  3. Collect log files at a central location for easy back-up and encryption to provide privacy.

  4. Create multiple zones in the industrial zone and protect / inspect traffic between the zones with firewalls and intrusion monitors.

Answer: D

Question No: 29

Which statement is correct regarding ProfiNET communication classes?

  1. ProfiNET-RT traffic is carried in UDP and TCP packets

  2. ProfiNET-NRT is used to carry time critical status information

  3. ProfiNET-IRT requires switches with hardware time scheduling capabilities

  4. ProfiNET-NRT is prioritized as Layer-2 Class-of-Service 1 (CoS 1)

Answer: C

Question No: 30

Which selection is a reason why IGMP snooping should be configured on a switched network?

  1. IGMP snooping populates the snooping table with the results of DHCP requests and can be used by Dynamic ARP Inspection to block IP spoofing attacks at Layer-2.

  2. IGMP snooping verifies the source IP address of every IPv4 packet to ensure that it hasn#39;t been originated from a port different than its return path.

  3. IGMP snooping is used to filter ping requests and results to avoid overflowing the MAC address table of the switch.

  4. IGMP snooping allows a Layer-2 switch to limit the transmission of multicast frames to only the ports that have members of the relevant IGMP group.

Answer: D

100% Ensurepass Free Download!
Download Free Demo:200-601 Demo PDF
100% Ensurepass Free Guaranteed!
200-601 Dumps

EnsurePass ExamCollection Testking
Lowest Price Guarantee Yes No No
Up-to-Dated Yes No No
Real Questions Yes No No
Explanation Yes No No
Free VCE Simulator Yes No No
Instant Download Yes No No

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.