CompTIA Network+ N10-009 SDN SD-WAN VXLAN Zero Trust SASE IaC And IPv6 Transition Practice Test
Objective 1.8 • 20 original questions
This CompTIA Network+ N10-009 practice test focuses on modern network environments and evolving use cases. All questions are original ExamSnap scenarios aligned to the current N10-009 blueprint; they are not copied from CompTIA exam content. Use the complete N10-009 collection for broader practice across all five domains. For broader exam preparation, review the CompTIA Network+ N10-009 Exam Dumps page.
Instructions: Select the best answer for each question. Review the explanation after answering; each distractor includes a reason it is not the best choice for that scenario.
At Litware Manufacturing, a systems administrator is reviewing a network change. The requirement is to program network behavior through centralized software control rather than configuring each device independently. Which option is the best fit? The decision applies to a branch-office rollout.
Correct answer: E
Why: Separates or centralizes network control logic so policy can be programmed centrally. This directly satisfies the requirement: program network behavior through centralized software control rather than configuring each device independently.
Option review:
A: Runs IPv4 and IPv6 simultaneously on hosts and networks. However, it does not most directly satisfy the requirement in this scenario: program network behavior through centralized software control rather than configuring each device independently.
B: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. However, it does not most directly satisfy the requirement in this scenario: program network behavior through centralized software control rather than configuring each device independently.
C: Tracks changes to infrastructure code so teams can review, branch, merge, and roll back. However, it does not most directly satisfy the requirement in this scenario: program network behavior through centralized software control rather than configuring each device independently.
D: Identifies when deployed configuration diverges from the approved intended state. However, it does not most directly satisfy the requirement in this scenario: program network behavior through centralized software control rather than configuring each device independently.
E: Separates or centralizes network control logic so policy can be programmed centrally. This directly satisfies the requirement: program network behavior through centralized software control rather than configuring each device independently.
Learning point: Use SDN when the key requirement is to program network behavior through centralized software control rather than configuring each device independently.
A ticket at Woodgrove Bank says the team must steer branch application traffic dynamically across multiple WAN transports. Which technology or concept most directly addresses this requirement? The decision applies to a campus refresh.
Correct answer: C
Why: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. This directly satisfies the requirement: steer branch application traffic dynamically across multiple WAN transports.
Option review:
A: Separates or centralizes network control logic so policy can be programmed centrally. However, it does not most directly satisfy the requirement in this scenario: steer branch application traffic dynamically across multiple WAN transports.
B: Tracks changes to infrastructure code so teams can review, branch, merge, and roll back. However, it does not most directly satisfy the requirement in this scenario: steer branch application traffic dynamically across multiple WAN transports.
C: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. This directly satisfies the requirement: steer branch application traffic dynamically across multiple WAN transports.
D: Provides cloud-delivered security services without the WAN-routing component of full SASE. However, it does not most directly satisfy the requirement in this scenario: steer branch application traffic dynamically across multiple WAN transports.
E: Automatically onboards/configures devices with little or no manual local configuration. However, it does not most directly satisfy the requirement in this scenario: steer branch application traffic dynamically across multiple WAN transports.
Learning point: Use SD-WAN when the key requirement is to steer branch application traffic dynamically across multiple WAN transports.
During a design meeting at Blue Yonder Airlines, the junior network administrator needs to deploy many branch devices without a technician manually configuring each one onsite. What should be selected? The decision applies to a data-center segment.
Correct answer: C
Why: Automatically onboards/configures devices with little or no manual local configuration. This directly satisfies the requirement: deploy many branch devices without a technician manually configuring each one onsite.
Option review:
A: Runs IPv4 and IPv6 simultaneously on hosts and networks. However, it does not most directly satisfy the requirement in this scenario: deploy many branch devices without a technician manually configuring each one onsite.
B: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. However, it does not most directly satisfy the requirement in this scenario: deploy many branch devices without a technician manually configuring each one onsite.
C: Automatically onboards/configures devices with little or no manual local configuration. This directly satisfies the requirement: deploy many branch devices without a technician manually configuring each one onsite.
D: Combines wide-area networking and cloud-delivered security capabilities into a unified service architecture. However, it does not most directly satisfy the requirement in this scenario: deploy many branch devices without a technician manually configuring each one onsite.
E: Requires continuous, policy-based verification and least-privilege access rather than trusting network location. However, it does not most directly satisfy the requirement in this scenario: deploy many branch devices without a technician manually configuring each one onsite.
Learning point: Use Zero-touch provisioning when the key requirement is to deploy many branch devices without a technician manually configuring each one onsite.
Contoso Health is updating its network standard. Which option best meets the need to extend logical Layer 2 segments across a routed data-center fabric? The decision applies to a remote-site migration.
Correct answer: A
Why: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. This directly satisfies the requirement: extend logical Layer 2 segments across a routed data-center fabric.
Option review:
A: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. This directly satisfies the requirement: extend logical Layer 2 segments across a routed data-center fabric.
B: Provides cloud-delivered security services without the WAN-routing component of full SASE. However, it does not most directly satisfy the requirement in this scenario: extend logical Layer 2 segments across a routed data-center fabric.
C: Connects separate data centers so services and networks can communicate across sites. However, it does not most directly satisfy the requirement in this scenario: extend logical Layer 2 segments across a routed data-center fabric.
D: Combines wide-area networking and cloud-delivered security capabilities into a unified service architecture. However, it does not most directly satisfy the requirement in this scenario: extend logical Layer 2 segments across a routed data-center fabric.
E: Identifies when deployed configuration diverges from the approved intended state. However, it does not most directly satisfy the requirement in this scenario: extend logical Layer 2 segments across a routed data-center fabric.
Learning point: Use VXLAN when the key requirement is to extend logical Layer 2 segments across a routed data-center fabric.
A field technician at Litware Manufacturing is validating a proposed solution. The design must link two data-center locations for workload or network connectivity. Which answer is most appropriate? The decision applies to a operations lab.
Correct answer: A
Why: Connects separate data centers so services and networks can communicate across sites. This directly satisfies the requirement: link two data-center locations for workload or network connectivity.
Option review:
A: Connects separate data centers so services and networks can communicate across sites. This directly satisfies the requirement: link two data-center locations for workload or network connectivity.
B: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. However, it does not most directly satisfy the requirement in this scenario: link two data-center locations for workload or network connectivity.
C: Carries IPv6 traffic across an IPv4 network by encapsulation. However, it does not most directly satisfy the requirement in this scenario: link two data-center locations for workload or network connectivity.
D: Identifies when deployed configuration diverges from the approved intended state. However, it does not most directly satisfy the requirement in this scenario: link two data-center locations for workload or network connectivity.
E: Requires continuous, policy-based verification and least-privilege access rather than trusting network location. However, it does not most directly satisfy the requirement in this scenario: link two data-center locations for workload or network connectivity.
Learning point: Use Data center interconnect (DCI) when the key requirement is to link two data-center locations for workload or network connectivity.
For a new deployment at Woodgrove Bank, the networking team wants to authorize access based on identity/context with least privilege instead of implicit internal trust. Which choice most directly satisfies the goal? The decision applies to a production maintenance window.
Correct answer: E
Why: Requires continuous, policy-based verification and least-privilege access rather than trusting network location. This directly satisfies the requirement: authorize access based on identity/context with least privilege instead of implicit internal trust.
Option review:
A: Provides cloud-delivered security services without the WAN-routing component of full SASE. However, it does not most directly satisfy the requirement in this scenario: authorize access based on identity/context with least privilege instead of implicit internal trust.
B: Defines infrastructure configuration in machine-readable code/templates for repeatable automation. However, it does not most directly satisfy the requirement in this scenario: authorize access based on identity/context with least privilege instead of implicit internal trust.
C: Combines wide-area networking and cloud-delivered security capabilities into a unified service architecture. However, it does not most directly satisfy the requirement in this scenario: authorize access based on identity/context with least privilege instead of implicit internal trust.
D: Tracks changes to infrastructure code so teams can review, branch, merge, and roll back. However, it does not most directly satisfy the requirement in this scenario: authorize access based on identity/context with least privilege instead of implicit internal trust.
E: Requires continuous, policy-based verification and least-privilege access rather than trusting network location. This directly satisfies the requirement: authorize access based on identity/context with least privilege instead of implicit internal trust.
Learning point: Use Zero trust architecture when the key requirement is to authorize access based on identity/context with least privilege instead of implicit internal trust.
At Blue Yonder Airlines, a systems administrator is reviewing a network change. The requirement is to converge SD-WAN-style connectivity with cloud-delivered security services. Which option is the best fit? The decision applies to a new floor deployment.
Correct answer: A
Why: Combines wide-area networking and cloud-delivered security capabilities into a unified service architecture. This directly satisfies the requirement: converge SD-WAN-style connectivity with cloud-delivered security services.
Option review:
A: Combines wide-area networking and cloud-delivered security capabilities into a unified service architecture. This directly satisfies the requirement: converge SD-WAN-style connectivity with cloud-delivered security services.
B: Automatically onboards/configures devices with little or no manual local configuration. However, it does not most directly satisfy the requirement in this scenario: converge SD-WAN-style connectivity with cloud-delivered security services.
C: Separates or centralizes network control logic so policy can be programmed centrally. However, it does not most directly satisfy the requirement in this scenario: converge SD-WAN-style connectivity with cloud-delivered security services.
D: Builds or updates automation targets from live infrastructure sources rather than static lists. However, it does not most directly satisfy the requirement in this scenario: converge SD-WAN-style connectivity with cloud-delivered security services.
E: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. However, it does not most directly satisfy the requirement in this scenario: converge SD-WAN-style connectivity with cloud-delivered security services.
Learning point: Use SASE when the key requirement is to converge SD-WAN-style connectivity with cloud-delivered security services.
A ticket at Contoso Health says the team must deliver cloud security controls for users and applications without requiring the WAN networking portion. Which technology or concept most directly addresses this requirement? The decision applies to a service-recovery review.
Correct answer: D
Why: Provides cloud-delivered security services without the WAN-routing component of full SASE. This directly satisfies the requirement: deliver cloud security controls for users and applications without requiring the WAN networking portion.
Option review:
A: Builds or updates automation targets from live infrastructure sources rather than static lists. However, it does not most directly satisfy the requirement in this scenario: deliver cloud security controls for users and applications without requiring the WAN networking portion.
B: Tracks changes to infrastructure code so teams can review, branch, merge, and roll back. However, it does not most directly satisfy the requirement in this scenario: deliver cloud security controls for users and applications without requiring the WAN networking portion.
C: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. However, it does not most directly satisfy the requirement in this scenario: deliver cloud security controls for users and applications without requiring the WAN networking portion.
D: Provides cloud-delivered security services without the WAN-routing component of full SASE. This directly satisfies the requirement: deliver cloud security controls for users and applications without requiring the WAN networking portion.
E: Separates or centralizes network control logic so policy can be programmed centrally. However, it does not most directly satisfy the requirement in this scenario: deliver cloud security controls for users and applications without requiring the WAN networking portion.
Learning point: Use Security Service Edge (SSE) when the key requirement is to deliver cloud security controls for users and applications without requiring the WAN networking portion.
During a design meeting at Litware Manufacturing, the junior network administrator needs to manage network or cloud configuration through versioned templates and automation. What should be selected? The decision applies to a branch-office rollout.
Correct answer: A
Why: Defines infrastructure configuration in machine-readable code/templates for repeatable automation. This directly satisfies the requirement: manage network or cloud configuration through versioned templates and automation.
Option review:
A: Defines infrastructure configuration in machine-readable code/templates for repeatable automation. This directly satisfies the requirement: manage network or cloud configuration through versioned templates and automation.
B: Tracks changes to infrastructure code so teams can review, branch, merge, and roll back. However, it does not most directly satisfy the requirement in this scenario: manage network or cloud configuration through versioned templates and automation.
C: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. However, it does not most directly satisfy the requirement in this scenario: manage network or cloud configuration through versioned templates and automation.
D: Runs IPv4 and IPv6 simultaneously on hosts and networks. However, it does not most directly satisfy the requirement in this scenario: manage network or cloud configuration through versioned templates and automation.
E: Requires continuous, policy-based verification and least-privilege access rather than trusting network location. However, it does not most directly satisfy the requirement in this scenario: manage network or cloud configuration through versioned templates and automation.
Learning point: Use Infrastructure as code (IaC) when the key requirement is to manage network or cloud configuration through versioned templates and automation.
Woodgrove Bank is updating its network standard. Which option best meets the need to detect devices whose actual settings no longer match the approved baseline? The decision applies to a campus refresh.
Correct answer: A
Why: Identifies when deployed configuration diverges from the approved intended state. This directly satisfies the requirement: detect devices whose actual settings no longer match the approved baseline.
Option review:
A: Identifies when deployed configuration diverges from the approved intended state. This directly satisfies the requirement: detect devices whose actual settings no longer match the approved baseline.
B: Provides cloud-delivered security services without the WAN-routing component of full SASE. However, it does not most directly satisfy the requirement in this scenario: detect devices whose actual settings no longer match the approved baseline.
C: Separates or centralizes network control logic so policy can be programmed centrally. However, it does not most directly satisfy the requirement in this scenario: detect devices whose actual settings no longer match the approved baseline.
D: Automatically onboards/configures devices with little or no manual local configuration. However, it does not most directly satisfy the requirement in this scenario: detect devices whose actual settings no longer match the approved baseline.
E: Combines wide-area networking and cloud-delivered security capabilities into a unified service architecture. However, it does not most directly satisfy the requirement in this scenario: detect devices whose actual settings no longer match the approved baseline.
Learning point: Use Configuration drift detection when the key requirement is to detect devices whose actual settings no longer match the approved baseline.
A field technician at Blue Yonder Airlines is validating a proposed solution. The design must automatically discover current hosts/devices for an automation workflow. Which answer is most appropriate? The decision applies to a data-center segment.
Correct answer: B
Why: Builds or updates automation targets from live infrastructure sources rather than static lists. This directly satisfies the requirement: automatically discover current hosts/devices for an automation workflow.
Option review:
A: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. However, it does not most directly satisfy the requirement in this scenario: automatically discover current hosts/devices for an automation workflow.
B: Builds or updates automation targets from live infrastructure sources rather than static lists. This directly satisfies the requirement: automatically discover current hosts/devices for an automation workflow.
C: Automatically onboards/configures devices with little or no manual local configuration. However, it does not most directly satisfy the requirement in this scenario: automatically discover current hosts/devices for an automation workflow.
D: Identifies when deployed configuration diverges from the approved intended state. However, it does not most directly satisfy the requirement in this scenario: automatically discover current hosts/devices for an automation workflow.
E: Defines infrastructure configuration in machine-readable code/templates for repeatable automation. However, it does not most directly satisfy the requirement in this scenario: automatically discover current hosts/devices for an automation workflow.
Learning point: Use Dynamic inventory when the key requirement is to automatically discover current hosts/devices for an automation workflow.
For a new deployment at Contoso Health, the networking team wants to maintain auditable history and collaboration for network automation code. Which choice most directly satisfies the goal? The decision applies to a remote-site migration.
Correct answer: E
Why: Tracks changes to infrastructure code so teams can review, branch, merge, and roll back. This directly satisfies the requirement: maintain auditable history and collaboration for network automation code.
Option review:
A: Combines wide-area networking and cloud-delivered security capabilities into a unified service architecture. However, it does not most directly satisfy the requirement in this scenario: maintain auditable history and collaboration for network automation code.
B: Connects separate data centers so services and networks can communicate across sites. However, it does not most directly satisfy the requirement in this scenario: maintain auditable history and collaboration for network automation code.
C: Separates or centralizes network control logic so policy can be programmed centrally. However, it does not most directly satisfy the requirement in this scenario: maintain auditable history and collaboration for network automation code.
D: Runs IPv4 and IPv6 simultaneously on hosts and networks. However, it does not most directly satisfy the requirement in this scenario: maintain auditable history and collaboration for network automation code.
E: Tracks changes to infrastructure code so teams can review, branch, merge, and roll back. This directly satisfies the requirement: maintain auditable history and collaboration for network automation code.
Learning point: Use Source/version control when the key requirement is to maintain auditable history and collaboration for network automation code.
At Litware Manufacturing, a systems administrator is reviewing a network change. The requirement is to support both IPv4-only and IPv6-capable communications during migration. Which option is the best fit? The decision applies to a operations lab.
Correct answer: C
Why: Runs IPv4 and IPv6 simultaneously on hosts and networks. This directly satisfies the requirement: support both IPv4-only and IPv6-capable communications during migration.
Option review:
A: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. However, it does not most directly satisfy the requirement in this scenario: support both IPv4-only and IPv6-capable communications during migration.
B: Automatically onboards/configures devices with little or no manual local configuration. However, it does not most directly satisfy the requirement in this scenario: support both IPv4-only and IPv6-capable communications during migration.
C: Runs IPv4 and IPv6 simultaneously on hosts and networks. This directly satisfies the requirement: support both IPv4-only and IPv6-capable communications during migration.
D: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. However, it does not most directly satisfy the requirement in this scenario: support both IPv4-only and IPv6-capable communications during migration.
E: Defines infrastructure configuration in machine-readable code/templates for repeatable automation. However, it does not most directly satisfy the requirement in this scenario: support both IPv4-only and IPv6-capable communications during migration.
Learning point: Use Dual stack when the key requirement is to support both IPv4-only and IPv6-capable communications during migration.
A ticket at Woodgrove Bank says the team must cross an IPv4-only transit network while transporting IPv6 packets. Which technology or concept most directly addresses this requirement? The decision applies to a production maintenance window.
Correct answer: B
Why: Carries IPv6 traffic across an IPv4 network by encapsulation. This directly satisfies the requirement: cross an IPv4-only transit network while transporting IPv6 packets.
Option review:
A: Tracks changes to infrastructure code so teams can review, branch, merge, and roll back. However, it does not most directly satisfy the requirement in this scenario: cross an IPv4-only transit network while transporting IPv6 packets.
B: Carries IPv6 traffic across an IPv4 network by encapsulation. This directly satisfies the requirement: cross an IPv4-only transit network while transporting IPv6 packets.
C: Combines wide-area networking and cloud-delivered security capabilities into a unified service architecture. However, it does not most directly satisfy the requirement in this scenario: cross an IPv4-only transit network while transporting IPv6 packets.
D: Translates between IPv6 and IPv4 so IPv6-only clients can reach IPv4 services. However, it does not most directly satisfy the requirement in this scenario: cross an IPv4-only transit network while transporting IPv6 packets.
E: Connects separate data centers so services and networks can communicate across sites. However, it does not most directly satisfy the requirement in this scenario: cross an IPv4-only transit network while transporting IPv6 packets.
Learning point: Use IPv6 tunneling when the key requirement is to cross an IPv4-only transit network while transporting IPv6 packets.
During a design meeting at Blue Yonder Airlines, the junior network administrator needs to allow IPv6-only clients to communicate with IPv4-only destinations. What should be selected? The decision applies to a new floor deployment.
Correct answer: A
Why: Translates between IPv6 and IPv4 so IPv6-only clients can reach IPv4 services. This directly satisfies the requirement: allow IPv6-only clients to communicate with IPv4-only destinations.
Option review:
A: Translates between IPv6 and IPv4 so IPv6-only clients can reach IPv4 services. This directly satisfies the requirement: allow IPv6-only clients to communicate with IPv4-only destinations.
B: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. However, it does not most directly satisfy the requirement in this scenario: allow IPv6-only clients to communicate with IPv4-only destinations.
C: Identifies when deployed configuration diverges from the approved intended state. However, it does not most directly satisfy the requirement in this scenario: allow IPv6-only clients to communicate with IPv4-only destinations.
D: Provides cloud-delivered security services without the WAN-routing component of full SASE. However, it does not most directly satisfy the requirement in this scenario: allow IPv6-only clients to communicate with IPv4-only destinations.
E: Defines infrastructure configuration in machine-readable code/templates for repeatable automation. However, it does not most directly satisfy the requirement in this scenario: allow IPv6-only clients to communicate with IPv4-only destinations.
Learning point: Use NAT64 when the key requirement is to allow IPv6-only clients to communicate with IPv4-only destinations.
During a data-center segment, Contoso Health is comparing several networking concepts. Which option is accurately characterized by this statement: Separates or centralizes network control logic so policy can be programmed centrally.
Correct answer: B
Why: Separates or centralizes network control logic so policy can be programmed centrally. This directly satisfies the requirement: Separates or centralizes network control logic so policy can be programmed centrally..
Option review:
A: Provides cloud-delivered security services without the WAN-routing component of full SASE. However, it does not most directly satisfy the requirement in this scenario: Separates or centralizes network control logic so policy can be programmed centrally..
B: Separates or centralizes network control logic so policy can be programmed centrally. This directly satisfies the requirement: Separates or centralizes network control logic so policy can be programmed centrally..
C: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. However, it does not most directly satisfy the requirement in this scenario: Separates or centralizes network control logic so policy can be programmed centrally..
D: Builds or updates automation targets from live infrastructure sources rather than static lists. However, it does not most directly satisfy the requirement in this scenario: Separates or centralizes network control logic so policy can be programmed centrally..
E: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. However, it does not most directly satisfy the requirement in this scenario: Separates or centralizes network control logic so policy can be programmed centrally..
Learning point: Use SDN when the key requirement is to program network behavior through centralized software control rather than configuring each device independently.
During a remote-site migration, Litware Manufacturing is comparing several networking concepts. Which option is accurately characterized by this statement: Uses software-defined policy across WAN transports and can select paths based on application and link conditions.
Correct answer: E
Why: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. This directly satisfies the requirement: Uses software-defined policy across WAN transports and can select paths based on application and link conditions..
Option review:
A: Runs IPv4 and IPv6 simultaneously on hosts and networks. However, it does not most directly satisfy the requirement in this scenario: Uses software-defined policy across WAN transports and can select paths based on application and link conditions..
B: Defines infrastructure configuration in machine-readable code/templates for repeatable automation. However, it does not most directly satisfy the requirement in this scenario: Uses software-defined policy across WAN transports and can select paths based on application and link conditions..
C: Separates or centralizes network control logic so policy can be programmed centrally. However, it does not most directly satisfy the requirement in this scenario: Uses software-defined policy across WAN transports and can select paths based on application and link conditions..
D: Provides cloud-delivered security services without the WAN-routing component of full SASE. However, it does not most directly satisfy the requirement in this scenario: Uses software-defined policy across WAN transports and can select paths based on application and link conditions..
E: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. This directly satisfies the requirement: Uses software-defined policy across WAN transports and can select paths based on application and link conditions..
Learning point: Use SD-WAN when the key requirement is to steer branch application traffic dynamically across multiple WAN transports.
During a operations lab, Woodgrove Bank is comparing several networking concepts. Which option is accurately characterized by this statement: Automatically onboards/configures devices with little or no manual local configuration.
Correct answer: C
Why: Automatically onboards/configures devices with little or no manual local configuration. This directly satisfies the requirement: Automatically onboards/configures devices with little or no manual local configuration..
Option review:
A: Combines wide-area networking and cloud-delivered security capabilities into a unified service architecture. However, it does not most directly satisfy the requirement in this scenario: Automatically onboards/configures devices with little or no manual local configuration..
B: Builds or updates automation targets from live infrastructure sources rather than static lists. However, it does not most directly satisfy the requirement in this scenario: Automatically onboards/configures devices with little or no manual local configuration..
C: Automatically onboards/configures devices with little or no manual local configuration. This directly satisfies the requirement: Automatically onboards/configures devices with little or no manual local configuration..
D: Translates between IPv6 and IPv4 so IPv6-only clients can reach IPv4 services. However, it does not most directly satisfy the requirement in this scenario: Automatically onboards/configures devices with little or no manual local configuration..
E: Defines infrastructure configuration in machine-readable code/templates for repeatable automation. However, it does not most directly satisfy the requirement in this scenario: Automatically onboards/configures devices with little or no manual local configuration..
Learning point: Use Zero-touch provisioning when the key requirement is to deploy many branch devices without a technician manually configuring each one onsite.
During a production maintenance window, Blue Yonder Airlines is comparing several networking concepts. Which option is accurately characterized by this statement: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs.
Correct answer: A
Why: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. This directly satisfies the requirement: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs..
Option review:
A: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs. This directly satisfies the requirement: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs..
B: Tracks changes to infrastructure code so teams can review, branch, merge, and roll back. However, it does not most directly satisfy the requirement in this scenario: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs..
C: Identifies when deployed configuration diverges from the approved intended state. However, it does not most directly satisfy the requirement in this scenario: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs..
D: Runs IPv4 and IPv6 simultaneously on hosts and networks. However, it does not most directly satisfy the requirement in this scenario: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs..
E: Separates or centralizes network control logic so policy can be programmed centrally. However, it does not most directly satisfy the requirement in this scenario: Encapsulates Layer 2 segments over a Layer 3 underlay using a larger segment identifier space than VLANs..
Learning point: Use VXLAN when the key requirement is to extend logical Layer 2 segments across a routed data-center fabric.
During a new floor deployment, Contoso Health is comparing several networking concepts. Which option is accurately characterized by this statement: Connects separate data centers so services and networks can communicate across sites.
Correct answer: E
Why: Connects separate data centers so services and networks can communicate across sites. This directly satisfies the requirement: Connects separate data centers so services and networks can communicate across sites..
Option review:
A: Separates or centralizes network control logic so policy can be programmed centrally. However, it does not most directly satisfy the requirement in this scenario: Connects separate data centers so services and networks can communicate across sites..
B: Uses software-defined policy across WAN transports and can select paths based on application and link conditions. However, it does not most directly satisfy the requirement in this scenario: Connects separate data centers so services and networks can communicate across sites..
C: Automatically onboards/configures devices with little or no manual local configuration. However, it does not most directly satisfy the requirement in this scenario: Connects separate data centers so services and networks can communicate across sites..
D: Provides cloud-delivered security services without the WAN-routing component of full SASE. However, it does not most directly satisfy the requirement in this scenario: Connects separate data centers so services and networks can communicate across sites..
E: Connects separate data centers so services and networks can communicate across sites. This directly satisfies the requirement: Connects separate data centers so services and networks can communicate across sites..
Learning point: Use Data center interconnect (DCI) when the key requirement is to link two data-center locations for workload or network connectivity.
Popular posts
Recent Posts
