exam questions

Exam 400-007 All Questions

View all questions & answers for the 400-007 exam

Exam 400-007 topic 1 question 98 discussion

Actual exam question from Cisco's 400-007
Question #: 98
Topic #: 1
[All 400-007 Questions]

Which two technologies enable multilayer segmentation? (Choose two.)

  • A. firewalls
  • B. data plane markings
  • C. filter lists
  • D. segment routing
  • E. policy-based routing
Show Suggested Answer Hide Answer
Suggested Answer: AB 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
pizdecvsemu
Highly Voted 2 years, 2 months ago
Selected Answer: AE
Firewalls for sure. https://community.cisco.com/t5/security-knowledge-base/segmentation-policy-using-sgt-in-pbr-pdf/ta-p/3651240
upvoted 8 times
biddid
2 years, 1 month ago
Agree. Legacy method but true
upvoted 2 times
...
...
ying162
Highly Voted 2 years, 2 months ago
Selected Answer: AB
As per Cisco Trustsec
upvoted 7 times
...
LordAndy
Most Recent 1 month ago
Selected Answer: BE
SGT and PBR are the correct answers
upvoted 1 times
...
sandccie
2 months, 3 weeks ago
Selected Answer: AB
firewalls for sure. data plane markings refer to VLANs.
upvoted 1 times
...
noxkrugger
8 months ago
Selected Answer: AE
OK I agreed with AE
upvoted 1 times
...
Seawanderer
11 months, 2 weeks ago
Selected Answer: AB
Firewalls and SGT (data plane marking)
upvoted 2 times
...
8be7437
11 months, 3 weeks ago
A, B Page 14 https://www.cisco.com/c/dam/en/us/solutions/collateral/design-zone/cisco-validated-profiles/secure-dc-design-guide-cvd.pdfSegmentation
upvoted 2 times
...
TKCA
1 year, 3 months ago
A E, https://blogs.cisco.com/networking/cisco-drives-intent-based-networking-forward-with-multi-level-segmentation
upvoted 1 times
...
Rollizo
1 year, 3 months ago
Selected Answer: AE
https://community.cisco.com/t5/security-knowledge-base/segmentation-policy-using-sgt-in-pbr-pdf/ta-p/3651240?attachment-id=155316 PBR and Firewall can allocate SGT and then segment the traffic
upvoted 1 times
...
Andrew66r
1 year, 10 months ago
it's a very very strange question!! if for "mutilayer segmentation" they mean microsgmentation inside a VLAN, thinking about Trustsec model, I think the answers are data plane marking (SGT) and filter list (permit/deny matrix). The other options (PBR, firewall, segment routing) seem to be related more to routing than to segmentation...
upvoted 2 times
...
JamesBlunt
1 year, 10 months ago
Selected Answer: AC
I'm going to go on a limb and say A&C. that's how you traditionally segment your network. this says the same thing (assuming filter lists = ACLs) https://www.cisco.com/c/en/us/products/security/what-is-network-segmentation.html "Some traditional technologies for segmentation included internal firewalls, and Access Control List (ACL) and Virtual Local Area Network (VLAN) configurations on networking equipment."
upvoted 2 times
...
WuHu
1 year, 11 months ago
Guys, B&D looks correct. Segment Routing provides flexibility in defining and managing segments, and can be used in conjunction with VLANs, VRFs, or other data plane markings to create and enforce logical boundaries between different layers or segments of the network. Firewalls can segment but are not multilayer. PBR and filter lists can't be the answer, come on. You expect a CCDE to recommend using PBR everywhere to segment your traffic?
upvoted 3 times
...
CastleMagic
1 year, 11 months ago
This question has three valid answers. AB (Vanguard Method) and AE (Legacy Method) Which gives more points? Please check page 14 of this document. https://www.cisco.com/c/dam/en/us/solutions/collateral/design-zone/cisco-validated-profiles/secure-dc-design-guide-cvd.pdf
upvoted 2 times
...
bdp123
1 year, 11 months ago
Selected Answer: AB
FWs for sure and data plane markings such as SGT tags (Trustsec) are used for segmentation
upvoted 2 times
...
smokey98
2 years ago
This question is exactly why Cisco Certs are dumb
upvoted 2 times
...
greensheep
2 years ago
segment routing has nothing to do with multilayer segmentation
upvoted 2 times
...
gcpengineer
2 years, 2 months ago
Its AD
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago