exam questions

Exam 300-420 All Questions

View all questions & answers for the 300-420 exam

Exam 300-420 topic 1 question 212 discussion

Actual exam question from Cisco's 300-420
Question #: 212
Topic #: 1
[All 300-420 Questions]

An engineer must design a management network for a customer's enterprise network. The design must:
• provide the ability to grant and revoke access privileges
• allow only protocols SSH, NTP, FTP, and SNMP
• restrict access to management interfaces

Which solution must the engineer choose to meet the requirements?

  • A. in-band
  • B. mGRE
  • C. out-of-band
  • D. enterprise internal private
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
[Removed]
10 months ago
Is it advisable to run this "allow only protocols SSH, NTP, FTP, and SNMP" in an out-of-band management? I think I'll go with in-band (A) Basically you can limit the access in the in-band if you like
upvoted 1 times
...
Marinheiro
1 year, 3 months ago
Hard to know The Management Plane Protection (MPP) feature can be used to limit remote management sessions to specific trusted interfaces only. This is very useful when a router connects a trusted network to an untrusted network such as the Internet. MPP applies to all management protocols, such as SSH, HTTPS, and SNMP. This feature is configured using the management-interface command in the control pane. This command can be repeated to enable the same or a different set of protocols on other interfaces. One key restriction of this feature is that it cannot be applied to an out-of-band management interface (also called a dedicated management interface), if the device has one. Example 2-12 shows the usage of this command. https://www.ciscopress.com/articles/article.asp?p=2928193&seqNum=2#:~:text=The%20Management%20Plane%20Protection%20(MPP,SSH%2C%20HTTPS%2C%20and%20SNMP.
upvoted 3 times
...
sebtiny
1 year, 5 months ago
Selected Answer: C
--> restrict access to management interfaces
upvoted 1 times
...
SpicyMochi
1 year, 6 months ago
Selected Answer: C
C. out-of-band The engineer should choose an out-of-band management network solution to meet the customer's requirements. Out-of-band management involves using a separate, dedicated network for managing devices, separate from the production network. This approach provides the ability to grant and revoke access privileges, restrict access to management interfaces, and limit the allowed protocols to SSH, NTP, FTP, and SNMP. It also enhances security and control, as management traffic is isolated from the production traffic.
upvoted 3 times
...
ted_ba
1 year, 6 months ago
correct ! out band is when no metter if the network will outage I still have manage to device .
upvoted 3 times
...
cerifyme85
1 year, 6 months ago
Selected Answer: C
restrict access to management interfaces Seems like C to me
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago