An engineer is implementing a Cisco ACI data center network that includes Cisco Nexus 2000 Series 10G fabric extenders. Which physical topology is supported?
Answer(s): D
Option D is correct because Cisco ACI with Nexus 2000 Series fabric extenders (FEX) uses a topology where the FEX connects to a single upstream APIC-controlled leaf switch, forming a spine-leaf with FEXs as fabric extenders behind a single parent leaf. The other options are incorrect because:A) Implies a topology not supported by FEX integration with ACI for 10G fabric extenders.B) Describes a non-existent or unsupported dispersion of FEXs across multiple distinct spine/leaf boundaries in this context.C) Suggests a topology incompatible with FEX-to-APIC control and established ACI fabric design.D) Matches the supported single-leaf-connected FEX deployment model.
An ACI administrator notices a change in the behavior of the fabric. Which action must be taken to determine if a human intervention introduced the change?
Answer(s): C
Option C is correct because APIC UI audit logs capture user events and changes, allowing verification of human interventions and correlating actions with fabric behavior.A) Incorrect — Event records in the APIC UI may show actions but are not as specifically framed as audit logs for all user events; scope might be limited or filtered.B) Incorrect — /var/log/audit_messages is not standard APIC UI-accessible; APIC audit is exposed in UI/logs rather than host-level audit_messages.D) Incorrect — show command history in the APIC CLI is not a typical or reliable source for comprehensive user-audit trails across the fabric; UI audit is preferred.
An engineer is creating a configuration import policy that must terminate if the imported configuration is incompatible with the existing system. Which import mode achieves this result?
Answer(s): B
Option B is correct because atomic import mode ensures the entire configuration import is treated as an all-or-nothing operation; if any part is incompatible with the existing system, the import is aborted and no changes are applied, preserving system integrity. A) merge allows applying changes incrementally, which can leave partial updates and conflicts. C) best effort attempts to apply as much as possible, tolerating incompatibilities. D) replace substitutes the current configuration wholesale but does not inherently terminate on incompatibility; it can still apply if local checks pass.
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/4-x/aci-fundamentals/Cisco- ACI-Fundamentals-401/Cisco-ACI-Fundamentals-401_chapter_01011.html
Which components must be configured for the BGP Route Reflector policy to take effect?
Option C is correct because BGP Route Reflector policy in DCACI is applied via pod policy groups and profiles, which define route reflection behavior within a pod and propagate routes accordingly.A) Incorrect — spine fabric interface overrides and profiles pertain to spine-specific interface configurations, not route reflector policy scope.B) Incorrect — access policies and profiles relate to user or device access control, not BGP route reflection behavior.D) Incorrect — leaf fabric interface overrides and profiles govern leaf-side interface overrides, not the Route Reflector policy application.
https://www.cisco.com/c/en/us/solutions/collateral/data-center-virtualization/application-centric- infrastructure/guide-c07-743150.html#2DistributeexternalrouteswithintheACIfabric
Which type of policy configures the suppression of faults that are generated from a port being down?
Option C is correct because fault suppression policies in ACI DCACI control how faults generated by a down port are filtered or suppressed based on fault severity assignments. This directly targets faults, not events, and applies to fault lifecycle/severity handling.A) Incorrect — fault lifecycle assignment governs the stages a fault goes through (creation, closure, rollback), not suppression rules for down-port faults.B) Incorrect — event lifecycle assignment handles events, not faults, and does not specify suppression of down-port faults.D) Incorrect — event severity assignment pertains to events’ severity, not faults arising from a port down.
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/all/faults/guide/ b_APIC_Faults_Errors/b_IFC_Faults_Errors_chapter_01.html
Which type of profile needs to be created to deploy an access port policy group?
Option D is correct because deploying an access port policy group requires a leaf interface profile to map policies to specific leaf ports in the ACI fabric.A) Incorrect — Attachable entity profile (AEP) defines how an endpoint device attaches to an EPG, not a port policy for access port grouping.B) Incorrect — Pod involves logical grouping of fabric elements, not the specific port policy application to an access port.C) Incorrect — Module is a hardware construct in APIC terms, not the profile type used to deploy an access port policy group.
A situation causes a fault to be raised on the APIC. The ACI administrator does not want that fault to be raised because it is not directly relevant to the environment. Which action should the administrator take to prevent the fault from appearing?
Option C is correct because ignoring a fault via Ignore Fault creates a fault severity assignment policy that hides that fault from the APIC fault views, effectively suppressing it for the administrator’s environment.A is incorrect because Acknowledge Fault only marks the fault as acknowledged; it does not hide or suppress it from fault views.B is incorrect because a stats threshold policy controls performance metrics and thresholds, not fault visibility or suppression.D is incorrect because a global health score policy can influence health scoring but does not provide per-fault hiding by fault code; it’s not the mechanism for suppressing a specific fault.
A RADIUS user resolves its role via the Cisco AV Pair. What object does the Cisco AV Pair resolve to?
Option D is correct because Cisco AV Pair resolves to a managed object class within APIC’s ABAC/Attribute-Policy framework, mapping RADIUS attributes to specific UCS/ACI managed objects for enforcement.A) Incorrect — tenant is not the direct object resolved by AV Pair; AV Pair targets a managed object class for policy application, not a tenant entity itself.B) Incorrect — security domain is not the AV Pair resolution target; AV Pair maps to object classes used for policy evaluation, not a domain construct.C) Incorrect — primary Cisco APIC is not what the AV Pair resolves to; APIC is the controller, while AV Pair maps to a class of managed objects.
https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/2-x/Security_config/ b_Cisco_APIC_Security_Configuration_Guide/b_Cisco_APIC_Security_Guide_chapter_01011.html
Share your comments for Cisco 300-620 exam with other users:
has anyone recently attended safe 6.0 certification? is it the samq question from here.
expository experience
52 should be b&c. controller failure has nothing to do with this type of issue. degraded state tells us its a raid issue, and if the os is missing then the bootable device isnt found. the only other consideration could be data loss but thats somewhat broad whereas b&c show understanding of the specific issues the question is asking about.
great help!!!
very useful tools
looks a good platform to prepare az-104
want to pass the exam
good resource
question 11 : d
only the free dumps will be enough for pass, or have to purchase the premium one. please suggest.
good questions. thanks.
good for practice.
great case study
the questions in this exam dumps is valid. i passed my test last monday. i only whish they had their pricing in inr instead of usd. but it is still worth it.
q40 the answer is not d, why are you giving incorrect answers? snapshot consolidation is used to merge the snapshot delta disk files to the vm base disk
thanks, very relevant
wrong answer. it is true not false.
please i need the mo-100 questions
very good use full
very valid questions
will these question help me to clear pl-300 exam?
please provide me with these dumps questions. thanks
in the pdf downloaded is write google cloud database engineer i think that it isnt the correct exam
i think you have the answers wrong regarding question: "what are three core principles of web content accessibility guidelines (wcag)? answer: robust, operable, understandable
these questions are not valid , they dont come for the exam now
question looks valid
good for practice
need more q&a to go ahead
question 59 - a newly-created role is not assigned to any user, nor granted to any other role. answer is b https://docs.snowflake.com/en/user-guide/security-access-control-overview
just passed my exam today. i saw all of these questions in my text today. so i can confirm this is a valid dump.
needed dumps
very helpful
will post once the exam is finished
relevant questions