exam questions

Exam 350-601 All Questions

View all questions & answers for the 350-601 exam

Exam 350-601 topic 1 question 86 discussion

Actual exam question from Cisco's 350-601
Question #: 86
Topic #: 1
[All 350-601 Questions]

The VMM domain is integrated between Cisco APICs and vCenter using a distributed vSwitch. The traffic must be blocked between a subset of endpoints in an
EPG based on specific VM attributes and the rest of the VMs in that EPG. Which set of actions blocks this traffic?

  • A. 1. Set Allow Microsegmentation under the EPG VMM Domain Association to ג€Trueג€ 2. Set Intra-EPG Isolation to ג€Unenforcedג€ for the EPG 3. Set Intra-EPG Isolation to ג€Unenforcedג€ for the uSeg EPG
  • B. 1. Set Allow Microsegmentation under the EPG VMM Domain Association to ג€Falseג€ 2. Set Intra-EPG Isolation to ג€Unenforcedג€ for the EPG 3. Set Intra-EPG Isolation to ג€Enforcedג€ for the uSeg EPG
  • C. 1. Set Allow Microsegmentation under the EPG VMM Domain Association to ג€Trueג€ 2. Set Intra-EPG Isolation to ג€Enforcedג€ for the EPG 3. Set Intra-EPG Isolation to ג€Enforcedג€ for the uSeg EPG
  • D. 1. Set Allow Microsegmentation under the EPG VMM Domain Association to ג€Trueג€ 2. Set Intra-EPG Isolation to ג€Enforcedג€ for the EPG 3. Set Intra-EPG Isolation to ג€Unenforcedג€ for the uSeg EPG
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Rocky_Truth
Highly Voted 1 year, 9 months ago
Selected Answer: C
C. 1. Set Allow Microsegmentation under the EPG VMM Domain Association to "True" 2. Set Intra-EPG Isolation to "Enforced" for the EPG 3. Set Intra-EPG Isolation to "Enforced" for the uSeg EPG. Setting "Allow Microsegmentation" to "True" enables the creation of uSeg EPGs. Setting "Intra-EPG Isolation" to "Enforced" for the EPG and uSeg EPG will allow for the enforcement of microsegmentation between the endpoints based on specific VM attributes. This will block the traffic between the subset of endpoints and the rest of the VMs in that EPG.
upvoted 6 times
...
Reikidude00
Most Recent 1 month, 3 weeks ago
Selected Answer: C
Cant be A, traffic must denied between vm intra-epg
upvoted 1 times
...
mark_87
8 months, 3 weeks ago
Selected Answer: A
Agreed, should be A
upvoted 2 times
...
groblok
1 year, 3 months ago
Selected Answer: D
Intra-EPG Isolation Enforced = the main EPG can achieve isolation within itself. uSeg EPG Enforced = complete isolation each other and groups uSeg EPG Unenforced = controlled isolation can communicate with each other based on policies The request is to block traffic between a subset of endpoints in an EPG, not to completely isolate devices in an EPG
upvoted 4 times
...
Ruzjio
1 year, 5 months ago
Selected Answer: A
The goal here is to block traffic between VMM attribute based EP and the rest EP in same EPG. We do not have to block traffic within the VMM based attribute EP group and the normal EP group. So we don't need to set the Intra-EPG isolation to enforce in the base EPG and the uEPG.
upvoted 3 times
...
H_nna
1 year, 5 months ago
Selected Answer: D
I agree with saju777. Check out his reference, there is a config example: enforcement for intra-epg isolation to on, no need for additional enforcement cause its a standard EPG no useg EPG
upvoted 2 times
...
saju777
2 years ago
I think its D. The Intra EPG Isolation option is left Unenforced here. https://aci-lab.ciscolive.com/lab/pod4/segmentation/mseg
upvoted 4 times
saju777
2 years ago
I meant uSeg Intra-EPG Isolation left Unenforced. Base EPG Intra-EPG Isolation is Enforced.
upvoted 3 times
...
...
zoltaaan
2 years ago
Selected Answer: A
I would go with A too, intra-EPG isolation is not required, the question is asking for blocking traffic between uSeg EPG and the EPG.
upvoted 3 times
...
hazemsalah87
2 years, 2 months ago
Selected Answer: A
there is no requirement to block traffic between EPs in same EPG or same useg EPG
upvoted 3 times
...
GuyThatTakesDumps
2 years, 3 months ago
c is the correct one
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...