Cisco 642-998 Exam -

Free 642-998 Sample Questions:

Q: 1
Secure connectivity protects against information threat or alteration of end-user data over untrusted transport mediums.
Which three ways provide secure connectivity across the WAN? (Choose three.)
A. direct IPsec encapsulation
B. virtualization experience infrastructure
C. dynamic multipoint GRE
D. virtual tunnel interface
E. policy-based routing
Answer: ACD

Q: 2
The nondefault VDC was suspended. When it was unsuspended, some of the running configuration commands that were configured before the suspension are no longer present in the show running configuration output.
Which statement describes the possible cause of the missing commands?
A. The configuration is there, but protocol adjacencies must be completely up and active before the configuration statements appear in the running configuration.
B. A reload of the VDC is required to recover the complete running configuration from a suspended state.
C. When a suspend action is performed on the VDC, the running configuration is saved automatically to the startup configuration. The missing commands are considered a defect.
D. Before the suspend action, the operator did not save the running configuration to the startup configuration.
Answer: D

Q: 3
Which function does the graceful restart feature allow a Cisco Nexus 7000 Series router to perform?
A. Perform a rapid route convergence.
B. Initialize a standby supervisor transparently when one is present.
C. Remain in the data forwarding path through a process restart.
D. Maintain a management connection throughout a router restart.
Answer: C

Q: 4
On a Cisco Nexus 7000 Series router, which statement about HSRP and VRRP is true?
A. When VDCs are in use, only VRRP is supported.
B. HSRP and VRRP both use the same multicast IP address with different port numbers.
C. HSRP has shorter default hold and hello times.
D. The VRRP group IP address can be the same as the router-specific IP address.
Answer: D

Q: 5
Which two options are roles of the authentication server in Cisco TrustSec? (Choose two.)
A. derives the security group tag based on the security policy configuration
B. provides policy authentication
C. verifies the identities of the supplicant that are part of the Cisco TrustSec
D. provides reauthentication timeouts
E. authenticates the user if the supplicant is an endpoint device
Answer: CE

Q: 6
Which is the first step of the ISSU process?
A. Switch over to the standby supervisor.
B. Upgrade the BIOS of standby supervisors.
C. Upgrade the BIOS of the active supervisor.
D. Bring up the standby supervisor with the new kickstart image.
Answer: B

Q: 7
Which two issues explain why a packet is not being routed as desired in a policy-based routing configuration? (Choose two.)
A. The route map is not applied to the egress interface.
B. The route map is not applied to the ingress interface.
C. The next hop that is configured in the route map is not in the global routing table.
D. The next hop that is configured in the route map has a higher metric than the default next hop.
Answer: CD

Q: 8
Which GLBP load-balancing algorithm ensures that a client is always mapped to the same VMAC address?
A. vmac-weighted
B. dedicated-vmac-mode
C. shortest-path and weighting
D. host-dependent
Answer: D

