Jan-2024 Free 500-220 Test Questions Real Practice Test Questions [Q26-Q47]

Share

Jan-2024 Free 500-220 Test Questions Real Practice Test Questions

500-220 Dumps Updated Jan 23, 2024 WIith 74 Questions


Cisco 500-220 (Engineering Cisco Meraki Solutions) certification exam is designed to test the skills and knowledge of IT professionals who are responsible for deploying and managing Cisco Meraki solutions. Engineering Cisco Meraki Solutions certification exam is aimed at engineers who work with Meraki products and solutions, including wireless, switching, security, and endpoint management. 500-220 exam is intended to validate the candidate's ability to design, implement, configure, and troubleshoot Meraki solutions.

 

NEW QUESTION # 26
What are two organization permission types? (Choose two.)

  • A. Full
  • B. Read-only
  • C. Monitor-only
  • D. Write-only
  • E. Write

Answer: A,B


NEW QUESTION # 27
One thousand concurrent users stream video to their laptops. A 30/70 split between 2.4 GHz and 5 GHz is used.
Based on client count, how many APs (rounded to the nearest whole number) are needed?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B


NEW QUESTION # 28
Refer to the exhibit.

During a Meraki AP deployment, the default SSID that the exhibit shows is broadcast. What causes this behavior?

  • A. An AP cannot connect to the default gateway.
  • B. An AP has never connected to the Meraki Cloud Controller.
  • C. An AP has Site Survey mode enabled.
  • D. An AP does not have a wired connection to the network.

Answer: B

Explanation:
Reference:
Troubleshooting_local_connection_issues_using_default_SSID_on_MR_Access_Points


NEW QUESTION # 29
Which type of authentication protocol is used when using OSPF on an MX appliance?

  • A. MD5
  • B. plaintext
  • C. certificate
  • D. SHA-1

Answer: A

Explanation:
Reference:
Using_OSPF_to_Advertise_Remote_VPN_Subnets


NEW QUESTION # 30
Which design requirement is met by implementing syslog versus SNMP?

  • A. when organization-wide information must be collected
  • B. when automation capabilities are needed
  • C. when proactive alerts for critical events must be generated
  • D. when information such as flows and client connectivity must be gathered

Answer: D

Explanation:
Explanation
Implementing syslog versus SNMP can meet the design requirement of gathering information such as flows and client connectivity. Syslog can collect and report various types of events, such as VPN connectivity, uplink connectivity, DHCP leases, firewall rules, IDS alerts, and security events. Syslog can also provide detailed information about the flows and client connectivity on the network devices, such as source and destination IP addresses, ports, protocols, bytes transferred, etc. SNMP, on the other hand, can collect and report various statistics and information about the network devices, such as CPU utilization, interface status, memory usage, etc. However, SNMP does not provide as much information about the flows and client connectivity as syslog does.


NEW QUESTION # 31
Which information is used to calculate whether a WAN link has high usage?

  • A. total number of devices that are actively passing traffic
  • B. total historical throughput of an uplink
  • C. data under Security & SD WAN > Appliance Status > Uplink > Live Data
  • D. value under Security & SD WAN > SD WAN & Traffic Shaping > Uplink Configuration

Answer: D

Explanation:
Explanation
Which information is used to calculate whether a WAN link has high usage not how to view (To accurately identify high utilization, users must set the ISP-provided bandwidth limits under Security and SD-WAN > SD-WAN and Traffic Shaping > Uplink Configuration for each uplink. If the bandwidth usage is higher than
80% of the defined limit, it will mark that uplink as High Usage.)
https://documentation.meraki.com/MI/MI_WAN_Health#:~:text=To%20accurately%20identify%20high%20util


NEW QUESTION # 32
Air Marshal has contained a malicious SSID.
What are two effects on connectivity? (Choose two.)

  • A. New clients cannot connect.
  • B. New clients can connect.
  • C. Currently associated clients stay connected.
  • D. Currently associated clients are affected by restrictive traffic shaping rules.
  • E. Currently associated clients are disconnected.

Answer: A,E

Explanation:
Explanation
When a rogue access point is contained, clients will be unable to connect to the rogue AP. Additionally, any currently associated clients will lose their connection to the rogue AP.
https://documentation.meraki.com/MR/Monitoring_and_Reporting/Air_Marshal


NEW QUESTION # 33
The WAN connection of a Cisco Meraki MX security appliance is congested, and the MX appliance is buffering the traffic from LAN ports going to the WAN ports. High, normal, and low priority queue buffers are all full. Which proportion of the normal traffic is forwarded compared to the other queues?

  • A. 5/15 packets
  • B. 4/10 packets
  • C. 2/7 packets
  • D. 2/10 packets

Answer: C

Explanation:
Explanation
https://documentation.meraki.com/MX/Firewall_and_Traffic_Shaping/SD-WAN_and_Traffic_Shaping


NEW QUESTION # 34
Refer to the exhibit.

What does the MX Security Appliance send to determine whether VPN traffic exceeds the configured latency threshold in the VoIP custom performance class?

  • A. 1000-byte TCP probes every second, through VPN tunnels that are established over the primary WAN link.
  • B. 100-byte UDP probes every second, through VPN tunnels that are established over every WAN link.
  • C. 1000-byte TCP probes every second, through VPN tunnels that are established over every WAN link.
  • D. 100-byte UDP probes every second, through VPN tunnels that are established over the primary WAN link.

Answer: C


NEW QUESTION # 35
Which enrollment method must be used when containerization is required on BYOD Android devices managed by Systems Manager?

  • A. Android Business utilizing a BYOD Profile
  • B. Android Enterprise utilizing a Work Profile
  • C. Systems Manager container ID
  • D. Systems Manager network ID

Answer: B

Explanation:
Explanation
https://documentation.meraki.com/SM/Device_Enrollment/Containerization_with_Systems_Manager


NEW QUESTION # 36
Refer to the exhibit.

What are the Loss and Average Latency statistics based on?

  • A. responses that the MX appliance receives on the connectivity-testing IP address that is configured on the Security & SD-WAN > SD-WAN & Traffic Shaping page
  • B. responses that the MX appliance receives on the connectivity-testing IP addresses on the Security & SD- WAN > Firewall page
  • C. responses that the MX appliance receives on the connectivity-testing hostnames on the Insight > Web App Health page
  • D. responses that the MX appliance receives on the connectivity-testing IP addresses on the Help > Firewall info page

Answer: B


NEW QUESTION # 37
What are two roles of the network and device tags in a Dashboard? (Choose two.)

  • A. Tags enable administrators to configure a combination of network and device specific tags to create summary reports filtered for specific devices across multiple networks.
  • B. Device tags can be assigned to MR APs to influence the gateway selection for repeaters in a mesh wireless network.
  • C. Network tags can be used to simplify the assignment of network-level permissions in an Organization with many networks.
  • D. Device tags can be used to simplify the assignment of device-level permissions in an Organization with many administrators.
  • E. Network tags can be used to assign networks to separate Auto VPN domains in an Organization with many networks.

Answer: A,C

Explanation:
Explanation
See Permissions by Network Tag section To simplify the assignment of network-level permissions in an organization with many networks, permissions can be granted to users for a given network tag.
https://documentation.meraki.com/General_Administration/Managing_Dashboard_Access/Managing_Dashboard The Organization > Configure > Manage Tags page allows Administrators to configure a combination of Network and Device specific tags to create Summary Reports filtered for specific devices across multiple networks.
https://documentation.meraki.com/General_Administration/Organizations_and_Networks/Organization_Menu/M


NEW QUESTION # 38
Which Cisco Meraki product must be deployed in addition to Systems Manager so that Systems Manager Sentry enrollment can be used?

  • A. MS Switch
  • B. MR Access Point
  • C. Meraki Insight
  • D. MV Smart Camera

Answer: B


NEW QUESTION # 39
A Cisco Meraki MV camera is monitoring an office and its field of vision currently captures work desks and employee computer screens. However, recording employee computer screens is prohibited by local regulation.
Which feature in Dashboard can be used to preserve the current position of the camera while also meeting regulation requirements?

  • A. area or interest
  • B. restricted mode
  • C. zone exclusion
  • D. sensor crop
  • E. privacy window

Answer: B


NEW QUESTION # 40
Refer to the exhibit.

Which design recommendation should be considered?

  • A. A 50-percent throughput loss occurs for every hop. Cisco Meraki best practice recommends a 2-hop maximum.
  • B. A 25-percent throughput loss occurs for every hop. Cisco Meraki best practice recommends a 2-hop maximum.
  • C. A 50-percent throughput loss occurs for every hop. Cisco Meraki best practice recommends a 1-hop maximum.
  • D. A 25-percent throughput loss occurs for every hop. Cisco Meraki best practice recommends a 1-hop maximum.

Answer: C

Explanation:
Explanation
https://documentation.meraki.com/MR/Deployment_Guides/Mesh_Deployment_Guide There will be a throughput reduction (~50% reduction) with each "hop" in a mesh. It is recommended that a mesh network be designed for no more than one mesh hop from the gateway to client device.


NEW QUESTION # 41
One thousand concurrent users stream video to their laptops. A 30/70 split between 2.4 GHz and 5 GHz is used.
Based on client count, how many APs (rounded to the nearest whole number) are needed?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: C

Explanation:
Explanation
https://documentation.meraki.com/Architectures_and_Best_Practices/Cisco_Meraki_Best_Practice_Design/Best


NEW QUESTION # 42
Which VLAN is used to source pings across the site-to-site VPN when using the MX Live tools?

  • A. highest VLAN ID that is configured and set to NO to use VPN
  • B. lowest VLAN ID configured and set to NO to use VPN
  • C. lowest VLAN ID that is configured and set to YES to use VPN
  • D. highest VLAN ID that is configured and set to YES to use VPN

Answer: D

Explanation:
Reference:
Using_the_Ping_Live_Tool


NEW QUESTION # 43
Which three verbs of request are available in the Cisco Meraki API? (Choose three.)

  • A. POST
  • B. ADD
  • C. PATCH
  • D. PUT
  • E. GET
  • F. SET

Answer: A,D,E

Explanation:
Reference:
Cisco_Meraki_Dashboard_API


NEW QUESTION # 44
What are two ways peers interact with ports that Auto VPN uses? (Choose two.)

  • A. Peers contact the VPN registry at UDP port 9350.
  • B. For IPsec tunneling, peers use UDP ports 500 and 4500.
  • C. For IPsec tunneling, peers use high TCP ports within the 32768 to 61000 range.
  • D. For IPsec tunneling, peers use high UDP ports within the 32768 to 61000 range.
  • E. Peers contact the VPN registry at TCP port 9350.

Answer: A,D

Explanation:
Explanation
Ports used to contact the VPN registry:
- Source UDP port range 32768-61000
- Destination UDP port 9350 or UDP port 9351
Ports used for IPsec tunneling:
- Source UDP port range 32768-61000
- Destination UDP port range 32768-61000
https://documentation.meraki.com/MX/Site-to-site_VPN/Meraki_Auto_VPN_-_Configuration_and_Troubleshoo


NEW QUESTION # 45
Which API endpoint clones a new Organization?

  • A. PUT /organizations/{organizationId}/clone
  • B. POST /organizations/{organizationId}/clone
  • C. POST /organizations/clone/{organizationId}
  • D. POST /organizations/{organizationId}/new

Answer: D


NEW QUESTION # 46
Refer to the exhibit.

Assuming this MX has established a full tunnel with its VPN peer, how will the MX route the WebEx traffic?

  • A. WebEx traffic will prefer WAN 2 as long as it meets the thresholds in the "Conf" performance class.
  • B. WebEx traffic will prefer WAN 2 as long as it is up.
  • C. WebEx traffic will be load-balanced between both active WAN links.
  • D. WebEx traffic will prefer WAN 1 as it is the primary uplink.

Answer: A

Explanation:
Explanation
Assuming this MX has established a full tunnel with its VPN peer, the MX will route the WebEx traffic based on the SD-WAN policy configured in the exhibit. The SD-WAN policy has two performance classes: Conf and Default. The Conf performance class matches the traffic with destination port 9000, which is used by WebEx for VoIP and video RTP3. The Conf performance class has a preferred uplink of WAN 2 and a failover uplink of WAN 1. It also has thresholds for latency, jitter, and loss that determine when to switch from the preferred uplink to the failover uplink. Therefore, the WebEx traffic will prefer WAN 2 as long as it meets the thresholds in the Conf performance class. If WAN 2 exceeds the thresholds or goes down, the WebEx traffic will switch to WAN 1 as the failover uplink.


NEW QUESTION # 47
......

View All 500-220 Actual Free Exam Questions Updated: https://freedumps.validvce.com/500-220-exam-collection.html