Weekend Special Sale - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: mxmas70

Home > Cisco > CCNP Enterprise > 300-425

300-425 Designing Cisco Enterprise Wireless Networks (ENWLSD) Question and Answers

Question # 4

An engineer in a branch office that does not have a wired backhaul must ensure that local clients can be switched locally and authenticated centrally. In which mode must the AP be configured?

A.

RAP

B.

Flex+Bridge

C.

MAP

D.

Cisco FlexConnect

Full Access
Question # 5

Refer to the exhibit.

Which two statements about Cisco Prime Infrastructure are true? (Choose two.)

A.

It presents the recommended number of APs for the selected coverage area based on the selections made.

B.

Planning mode requires a special license in Cisco Prime Infrastructure.

C.

It shows the map editor feature in Cisco Prime Infrastructure.

D.

Controllers must be synchronized with Cisco Prime Infrastructure for planning mode to work.

E.

It shows the planning mode feature in Cisco Prime Infrastructure.

Full Access
Question # 6

An engineer designs a new wireless network that uses a Cisco Catalyst 9800 Series wireless controller. The controller must be in a DMZ. The internal network is to be at the main on-premises data center of the customer. In addition, the customer wants to establish an EoIP tunnel to a Cisco 5520 WLC that is in a regional force. How must this requirement be incorporated into the design?

A.

Use Cisco IOS-XE code that supports encryption of the data plane on the Catalyst 9800 WLC.

B.

Use AirOS code that supports encryption of the control plane on the 5520 WLC.

C.

Use Cisco IOS-XE code that supports encryption of the control plane on the Catalyst 9800 WLC.

D.

Use AirOS code that supports encryption of the data plane on the 5520 WLC.

Full Access
Question # 7

Refer to the exhibit.

An engineer determined that during a recent controller failure, some APs did not failover to their secondary controller based on the network design, which has sufficient licenses for all APs. The controllers are not in a mobility group but have A records for their hostnames in DNS. Which setting needs to be addressed?

A.

The controllers must be in the same mobility group.

B.

The secondary controller IP address is incorrect.

C.

DNS hostnames are required to be FQDN.

D.

The AP failover priority was not set high enough.

Full Access
Question # 8

An engineer is upgrading the legacy APs to 802.11ac Wave 2 capable APs. The existing gigabit uplinked switches provide 802.3at. Which switch limitation is a concern?

A.

interface throughput

B.

high availability

C.

collision domains

D.

output power

Full Access
Question # 9

An engineer is configuring a centralized set of controllers for separate facilities. Which two Cisco wireless architectures must be used to ensure flexible sizing of WLAN to VLAN mappings? (Choose two.)

A.

interface group

B.

mobility group

C.

AP group

D.

controller group

E.

RF group

Full Access
Question # 10

An engineer must repurpose a lab WLC appliance for use in the production environment of the enterprise. After the new WLC is configured with the information of the other WLC, the mobility tunnels are still not coming up. What is the reason?

A.

A firewall is blocking UDP port 16667 between the WLCs.

B.

The WLC management interfaces are in the same VLAN.

C.

The hardware platform is incompatible.

D.

The mobility groups are different.

Full Access
Question # 11

A high-density wireless network is designed. Which Cisco WLC configuration setting must be incorporated in the design to encourage clients to use the 5 GHz spectrum?

A.

RRM

B.

Cisco centralized key management

C.

Band select

D.

Load balancing

Full Access
Question # 12

An engineer is designing a high-density WLAN for a 10,000-seat auditorium. The solution must take advantage of human attenuation, as well as the aesthetics of the room. Where must the APs be placed?

A.

on the walls

B.

under the seats

C.

on the ceiling

D.

above the seating areas

Full Access
Question # 13

A wireless network consultant must assess an existing wireless LAN controller. Which section must the consultant check before replacing the old APs with APs that are IEEE 802.11ac-capable?

A.

number of AP licenses

B.

controller PSU

C.

throughput capacity

D.

software version

Full Access
Question # 14

An engineer is designing a new wireless network. Based on the design, O®ceExtend AP functionality must be used. Which type of license must the Cisco 5520 WLC v8.3 have?

A.

Base license

B.

O®ceExtend AP license

C.

WPlus license

D.

Plus license

Full Access
Question # 15

An engineer has designed an anchor redundancy for guest clients connecting to SSID with auto-anchor configured. After adding a second Anchor WLC under the SSID mobility anchor list, clients are load-balanced between existing and new anchors instead of having one anchor as active and the other one as standby. Which feature should be included in the design that will be configured on the WLC running

8.1 or above to ensure anchor redundancy?

A.

Auto-Anchor Foreign Mapping

B.

AP groups

C.

Guest Anchor Priority

D.

802.11r

Full Access
Question # 16

Which two considerations must a network engineer have when planning for voice over wireless roaming? (Choose two.)

A.

Full reauthentication introduces gaps in a voice conversation.

B.

Roaming time increases when using 802.1x + Cisco Centralized Key Management.

C.

Roaming occurs when the phone has seen at least four APs.

D.

Roaming occurs when the phone has reached -80 dBs or below.

E.

Roaming with only 802.1x authentication requires full reauthentication.

Full Access
Question # 17

WLC SSO is set up between two WLCs in a service provider network serving public spaces. On WLC failover, it is noticed that only about half of the original client count is now showing on the secondary WLC, although it is currently showing the role as active. Which design side case explains the issue?

A.

The secondary WLC platform does not support the required client count.

B.

The WLCs had not completed database sync before the primary failure.

C.

SSO is not configured correctly.

D.

Some client sessions were in WebAuth-Req state before failover.

Full Access
Question # 18

An architect configures a set of AirOS controllers to be in the same mobility group as the existing controllers. The implementation should facilitate inter-controller roaming for users in their new campus. After the configuration, the mobility tunnel is not operational for the data path in the network. Which two validations should be performed? (Choose two.)

A.

firewall port 16666

B.

mapping

C.

mepping

D.

rping

E.

firewall IP protocol 97

Full Access
Question # 19

An engineer is performing an active survey of a network that must support different types of mobile devices. The devices must be able to run an application that requires a minimum RF of 73 dBm. Which mobile device must be used for the survey?

A.

one that has a receiver sensitivity of -70 dBm

B.

one that has the lowest receiver sensitivity

C.

one that has the most updated wireless card

D.

one that has 802.11a wireless support

Full Access
Question # 20

An engineer must decide the cell overlap for a wireless voice deployment. Which Cisco measurement recommendation should be considered?

A.

The edge of the cell should be -67 dBm.

B.

The edge of the cell should be below 35 RSSI.

C.

The measurement should be done on the 2.4-GHz band.

D.

One AP should be deployed per 3000 square feet.

Full Access
Question # 21

An engineer is working for a manufacturing company that has a centralized deployment model. Guests at headquarters need wireless access for presentations, demonstrations, and sharing of information. The engineer must provide external users with secure guest access by

connecting to anchor controllers on the DMZ. Auto-Anchor Mobility has been selected in the mobility group to accomplish it. Both anchors are configured as part of the mobility group for HQ. Which design approach ensures that clients connect to the primary controller first and are

pushed to the secondary if the primary fails?

A.

Set the Anchor priority for the primary controller to 1.

B.

Set the Anchor priority for the secondary controller to 1.

C.

Configure ECMP but weigh the cost to be higher to go to the primary.

D.

Configure ECMP but weigh the cost to be higher to go to the secondary.

Full Access
Question # 22

An engineer is conducting a Layer 2 site survey. Which type of client must the engineer match to the survey?

A.

best client available

B.

phone client

C.

normal client

D.

worst client available

Full Access
Question # 23

An engineer is designing a network deployment for a technology company. The company has four buildings with access points that must provide seamless wireless coverage and client roaming. The customer data center must have two WLCs and the core switches for the network. Which type of wireless architecture must be used?

A.

cloud

B.

centralized

C.

autonomous

D.

distributed

Full Access
Question # 24

An AP is receiving 802.11 packets on its 802.11a radio with an RSSI value of -77 dBm. The current AP is part of an AP group that has been assigned an RF profile with RX-SOP set to Medium for 802.11a. Which action does the AP take with the packets?

A.

All frames are classified as non-Wi-Fi frames and are not decoded by the 5 GHz radio.

B.

Frames are decoded by the 2.4 GHz radio.

C.

All frames are classified as non-Wi-Fi frames and are not decoded by the 2.4 GHz radio.

D.

Frames are decoded by the 5 GHz radio.

Full Access
Question # 25

A wireless engineer is designing a wireless network for a warehouse using access points with internal antennas. Which two elements have a negative effect on the wireless users? (Choose two.)

A.

wireless channels

B.

access point height

C.

client authentication

D.

client authorization

E.

absorption

Full Access
Question # 26

A wireless engineer must optimize RF performance for multiple buildings with multiple types of construction and user density. Which two actions must be taken? (Choose two.)

A.

Configure Flexconnect groups for each building.

B.

Configure WMM profiles for each building.

C.

Configure AP groups for each area type.

D.

Configure RF profiles for each area type.

E.

Enable DTPC on the network.

Full Access
Question # 27

Which statement about the 9800 Series Wireless Controller mobility tunnel on a Cisco Catalyst 9800 controller is true?

A.

It is an IPsec tunnel with control path only.

B.

It is a CAPWAP tunnel with data path only.

C.

It is a CAPWAP tunnel with control path and data path.

D.

It is an IPsec tunnel with control path and data path.

Full Access
Question # 28

An engineer is designing an outdoor mesh network to cover several sports fields. The core of the network is located in a building at the entrance of a sports complex. Which type of antenna should be used with the RAP for backhaul connectivity?

A.

5 GHz. 8-dBi omnidirectional antenna

B.

2.4 GHz. 8-dBi patch antenna

C.

2.4 GHz. 14-dBi omnidirectional antenna

D.

5 GHz. 14-DBi patch antenna

Full Access
Question # 29

The wireless team must configure a new voice SSID for optimized roaming across multiple WLCs with Cisco 8821 phones. Which two settings accomplish this goal? (Choose two.)

A.

Configure mobility groups between WLCs.

B.

Use Cisco Centralized Key Management for authentication.

C.

Configure AP groups between WLCs.

D.

Configure AVC profile on new SSID.

E.

Use AVC to tag traffic voice traffic as best effort.

Full Access
Question # 30

A high-density wireless network is designed. Which Cisco WLC configuration setting must be incorporated in the design to encourage clients to use the 5 GHz spectrum?

A.

Band Select

B.

RRM

C.

Cisco Centralized Key Management

D.

load balancing

Full Access
Question # 31

An engineer is reducing the subnet size of the corporate WLAN by segmenting the VLAN into smaller subnets. Clients will be assigned a subnet by location. Which type of groups can the engineer use to map the smaller subnets to the corporate WLAN?

A.

WLC port groups

B.

RF groups

C.

AP groups

D.

interface groups

Full Access
Question # 32

An engineer is designing a new wireless network. The network needs to fulfill the following requirements: ✑ support multimedia applications

✑ support a high concentration of wireless clients

✑ support data over wireless

✑ support roaming

Which approach should be used?

A.

use of micro cells with reduced power levels

B.

use of macro cells with reduced power levels

C.

coverage for cells at maximum power levels

D.

use of macro cells with maximum power levels

Full Access
Question # 33

An engineer needs a wireless design to provide redundancy for APs at remote sites that are connected to Cisco 3504 Wireless LAN

Controllers. The central Cisco 5520 Wireless LAN Controller supports 2000 APs and has 1975 access points associated to it. The engineer decides that not all APs at the remote sites must remain functional in the event of a failure. How does the engineer ensure that the most important access points at the remote sites remain online while not impacting the main site?

A.

Enable Global AP Fail over Priority, set the 1975 APs to a priority of "high", and set the 25 most important APs at the remote sites to "critical".

B.

Enable AP Fallback Mode, set the 1975 APs to a priority of "high", and set the 25 most important APs at the remote sites to "critical". C. Enable Global AP Fail over Priority, leave the 1975 APs at the default priority, and set the most important APs at the remote sites to "low".

C.

Enable AP Fallback Mode, leave the 1975 APs at the default priority, and set the most important APs at the remote sites to "high".

Full Access
Question # 34

A customer has restricted the AP and antenna combinations for a design to be limited to one model integrated antenna AP for carpeted spaces and one model external antenna AP with high gain antennas for industrial, maintenance, or storage areas. When moving between a carpeted area to an industrial area, the engineer forgets to change survey devices and surveys several APs. Which strategy will reduce the negative impact of the design?

A.

Resurvey and adjust the design.

B.

Deploy unsurveyed access points to the design.

C.

Deploy the specified access points per area type.

D.

Increase the Tx power on incorrectly surveyed access points.

Full Access
Question # 35

An engineer is designing a solution where guests terminate on an anchor controller in the DMZ. The engineer is having issues and wants to test connectivity between members of a mobility group. Which command must be issued to test whether a mobility control packet is able to be reached over the management interface?

A.

show logging

B.

mapping

C.

mapping

D.

tracert

Full Access
Question # 36

A new wireless network design has these requirements:

• AireOS WLCs as guest anchors

• a Cisco Catalyst 9800 Series WLC as the foreign controller

• use of Wi-Fi 6 APs

• inter-controller roaming for guest users

Which two design approaches meet these requirements? (Choose two.)

A.

Use EoIP for communication between controllers.

B.

Use WLC software versions that support IRCM.

C.

Use AVC on the anchor WLCs.

D.

Use IPv6 across the wireless network.

E.

Use secure mobility to pair controllers.

Full Access
Question # 37

Refer to the exhibit. During a post Mesh deployment survey, an engineer notices that frame collisions occur when MAP-1 and MAP-3 talk to RAP-2 Which type of issue does the engineer need to address in the design?

A.

co-channel interference

B.

backhaul latency

C.

hidden node

D.

exposed node

Full Access
Question # 38

An engineer must speed up the reauthentication delays that are being experienced on the wireless infrastructure by deploying a key-caching mechanism. Which mechanism must be configured?

A.

PEAP

B.

FT

C.

PMF

D.

GTK-randomization

Full Access
Question # 39

An engineer working for an enterprise deployed multiple Cisco WLCs. A controller that sits in the R&D division is connected through a firewall and is part of the same mobility group. The engineer must ensure that the mobility tunneling is available through the firewall and test it as R&D engineers roam the production ..within their department. How is this requirement met?

A.

mapping on UDP port 16666 and mapping on Protocol 96 between management ports

B.

mapping on UDP port 16666 and mapping on Protocol 97 between management ports

C.

mapping on UDP port 16667 and mapping on Protocol 97 between management ports

D.

mapping on UDP port 16667 and mapping on Protocol 96 between management ports

Full Access
Question # 40

An engineer must create data-link redundancy for the company’s Cisco Wireless LAN Controller. The engineer has decided to configure LAG-based redundancy instead of port-based redundancy. Which three features of LAG-based redundancy influenced this decision? (Choose three.)

A.

Packets are always sent out on the same port they are received on.

B.

All interface traffic passes as long as one port is up.

C.

The same port has multiple untagged dynamics interfaces.

D.

Interface connection to two separate nonstacked switches is available.

E.

Full bandwidth of all links is available.

F.

Ports are grouped into multiple LAGs.

Full Access
Question # 41

An engineer is designing a wireless network to support Cisco Hyperlocation. The customer indicated some How is the design adjusted?

A.

Add additional APs to all the comers of the site.

B.

Add more APs than indicated from the site survey spread across all areas.

C.

Add an additional AP in the middle of the dense area.

D.

Run the site survey using -57d Bm as a threshold.

Full Access
Question # 42

An engineer is designing a new wireless network. The network needs to meet these requirements:

Which design approach should be taken?

A.

5 GHz frequency band with channel bonding, to support 40 MHz channels

B.

5 GHz frequency band without channel bonding, to support 20 MHz channels

C.

5 GHz frequency band with channel bonding, to support 80 MHz channels.

D.

2.4 GHz frequency band without channel bonding, to support 20 MHz channels

Full Access
Question # 43

A wireless engineer is utilizing the voice readiness tool in Cisco Prime for a customer that wants to deploy Cisco IP phones. Which dBm range is the network inspected against?

A.

-78 to -65 dBm

B.

-72 to -67 dBm

C.

-85 to -65 dBm

D.

-85 to -67 dBm

Full Access
Question # 44

A customer is concerned about mesh backhaul link security. Which level of encryption does the backhaul link use?

A.

hash

B.

AES

C.

WEP

D.

3DES

Full Access
Question # 45

An engineer has performed a predictive site survey for high-speed data and voice in an indoor office. What is the recommended data rate with -67 dBm signal level for optimal VoWLAN design?

A.

6 Mbps on 802.11 bgn

B.

24 Mbps on 802.11 bgn

C.

12 Mbps on 802.11 an

D.

24 Mbps on 802.11 an

Full Access
Question # 46

A customer celled with a requirement that internal clients must be on different subnets depending on the building they are in, AH access points are operating in local mode and will not be modified, and this is a single controller solution. Which design approach creates the desired result?

A.

Create an SSID, place it to the desired VLAN under WLANs, and configure 802 lx in ISE to assign the correct VLAN based on the SSID from which the client is authenticating.

B.

Create FlexConnecI groups, place the access points in. and sat the correct VLAN to SSID mapping based on location.

C.

Create AP groups for each desired location, map the correct VLANs to the internal SSID, and add the access points for that location.

D.

Create mobility anchors for the SSID, and on the controller under the internal SSID. create a foreign map to the desired VLAN based on location.

Full Access
Question # 47

An engineer is designing a wireless deployment for a university auditorium. Which two features can be used to help deal with the issues introduced by high AP count? (Choose two.)

A.

TSPEC

B.

RXSOP

C.

TPC

D.

LSS

E.

DFS

Full Access
Question # 48

Based on a wireless network design, an engineer configured a primary and secondary controller for their APs. A power interruption caused the primary Cisco WLC to go down, and, as expected, all APs joined the secondary controller. When the primary controller came back up, all the

APs remained joined to the secondary controller. Which approach must the engineer take for the APs to move back to the primary?

A.

Set AP Fail over Priority to 4 on each AP.

B.

Set AP Fallback to Enabled on the secondary controller.

C.

Set AP Fallback to Enabled on the primary controller.

D.

Set AP Fail over Priority to Critical globally.

Full Access
Question # 49

During a wireless design all APs are mapped to designated controllers in case of a failure. The controllers are located in the same data center but in different racks. An AP failed over to a controller that was not defined on its High Availability tab. The customer does not want the AP to move back to its defined Cisco WLCs until they manually intervene. What needs to be addressed in the design?

A.

Set AP fallback to enabled.

B.

Set AP fallback to disabled.

C.

Change the HA SKU secondary unit option.

D.

Change the default mobility domain.

Full Access
Question # 50

Which UDP port numbers are used for exchange mobility packets in an AireOS wireless deployment?

A.

UDP 16666 for control plane, EoIP (IP protocol 97) for data plane

B.

UDP 16668 for control plane, UDP 16667 for data plane

C.

UDP 16667 for control plane, UDP 16666 for data plane

D.

UDP 16666 for control plane, UDP 16667 for data plane

Full Access
Question # 51

A network administrator of a global organization is collapsing all controllers to a single cluster located in central Europe. Which concern must addressed?

A.

Some channels may not be available consistently across the organization.

B.

Different RF policies per office are not available in this configuration.

C.

Syslog must be configured to the time-zone of the NMS platform.

D.

Centralized controllers cannot uniformly authenticate global users.

Full Access
Question # 52

Refer to the exhibit. An engineer must design a mobility group that has these requirements:

• The mobility group must consist of two WLCs.

• All WLCs must run software version 8.0 or later.

• The WLCs must connect via an IPv4 network.

• Two of the WLCs must be in an SSO high availability pair.

Which two configurations must be included in the design? (Choose two.)

A.

All the WLCs must be of the same model or type.

B.

Only WLCs in an SSO high availability pair must use the same virtual IP address.

C.

The WLAN SSID must be consistent across all the WLCs.

D.

All the WLCs must run the same software version.

E.

Each WLC must use the same mobility domain name.

Full Access
Question # 53

Where must the APs be mounted when used in a high-density wireless network to provide 6 dB to 20 dB of attenuation to a cell?

A.

in the aisle

B.

under the seat

C.

above the stage

D.

under the stage

Full Access
Question # 54

Refer to the exhibit.

An engineer is about to establish a mobility peer connection between a Cisco Catalyst 9800-CL version 16.10.1e and Cisco AireOS 5520 version 8.8.120.0. The data path between the 9800-CL and AireOS 5520 is down, but its control path is up. Based on the configuration, what is the cause of the issue?

A.

The certificate hash key is incorrect leading to data path down.

B.

The data-link-encryption configuration is missing from the 9800-CL configuration.

C.

Encrypted mobility is being used in the 5520 configuration leading to data path down.

D.

CAPS is used to key in MAC address in the IOS_XE configuration leading to data path down.

Full Access
Question # 55

An engineer designed a new wireless network for an enterprise customer. The customer is concerned that some wireless features may not be available because the bill of materials has only Base and no WPlus licenses for the Cisco WLC version 8. What is the reason for the engineer to take this approach regarding the licenses?

A.

ForceExtend AP needs a WPlus license.

B.

CAPWAP Data Encryption licenses are required for this feature.

C.

All WLC features are available because WPLUS license is now included in the Base license.

D.

To have all the features, plus licenses must be installed on the WLC.

Full Access
Question # 56

A customer has two Cisco 550B WLCs that manage all the access points in their network and provide N+1 redundancy and load balancing. The primary Cisco WLC has 60 licenses and the secondary Cisco WLC has 40. The customer wants to convert the N+1 model to an HA model and provide SSO. Configuration must be performed during a maintenance window. After performing all the configurations on both controllers, the config redundancy unit secondary command is issued on the secondary Cisco WLC and it fails. Which parameter needs to be in place to complete the configuration?

A.

A cable in the RP port

B.

The secondary Cisco WLC needs a minimum of 50 base licenses

C.

The primary Cisco WLC is already set as the secondary unit.

D.

SSO needs to be enabled

Full Access
Question # 57

An engineer must perform an assessment of a customer LAN for a future IEEE 802.11ac Wave 2 wireless deployment All access switches are Fast Ethernet-Capable only, and the wired infrastructure between existing APs and access switches is based on the CAT 6A standard. Which two actions provide maximum support of Cisco 3800 Series access points? (Choose two.)

A.

Replace the existing switches with mGig switches.

B.

Replace the existing switches with gigabit switches with 10G uplinks.

C.

Ensure that cable distances between access switches and APs are not longer than 100 meters.

D.

Replace the existing wiring infrastructure with the CAT-7E wiring standard,

E.

Ensure that cable distances between access switches and APs are not longer than 55 meters.

Full Access
Question # 58

A network engineer is preparing for an office site survey with a height of 2.5 meters. Which three components are recommended to complete the survey? (Choose three.)

A.

Use a battery pack to power APs

B.

Use a drawing of the office space to draw AP and client placements.

C.

Use DoS attack on APs while measuring the throughput.

D.

Use APs with directional antennas.

E.

Use APs with external antennas.

F.

Use APs with built-in antennas.

Full Access