♥♥ 2021 NEW RECOMMEND ♥♥
Free VCE & PDF File for Cisco 400-351 Real Exam (Full Version!)
★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions
Free Instant Download NEW 400-351 Exam Dumps (PDF & VCE):
Available on:
http://www.surepassexam.com/400-351-exam-dumps.html
Q1. 802.11k and 802.11k-enabled client devices send a request for a list of neighbor APs (a neighbor list) from the APs they are currently associated with. What is this 802.11management frame also known as?
A. association response
B. association packet
C. beacon frame
D. action packet
Answer: D
Q2. Refer to the exhibit.
You enabled NAT to make sure that your WLC is publicly reachable . if other NAT parameters are left to default1 which statement is true. ?
A. The AP WLC discovery fails for APs int local mode using 209.165.200.44
B. The AP WLC discover succeeds for OEAPsjoning the WLC using 192.168.3.44
C. The AP WLC discover succeeds for OEAPsJoning the WLC using 192.168.3.44 or 209 165.200.44D. The AP WLC discover Fail for APs in local mode using
192.168.3.44
Answer: C
Explanation:
Section: 2.0 Network Infrastructure
Q3. After the AP mode is changed from local mode to bridge mode the AP cannot register the WLC considering the debug output into the exhibit .which description of the issue is true?
A. DTLS is not supported in bridge mode
B. The AP priority exceeds the number of joining APs
C. The AP MAC address is not added in the MAC filter list of the WLC
D. The date and time on the WLC and AP do not match
E. The AP does not have a valid certificate
F. The WLC does not have the image for the AP
Answer: C
Q4. Your customer is having wireless VoIP problems. When the Cisco 7925 phones roam from APtlo AP2, the voice drops out and comes back. The phones are set up for PEAP/WPA2-AES with CCKM to an external RADIUS server .The APs and WLAN are setup in FlexConnect mode. Which statement explains the issue?
A. PEAP with WPA2-AES is not supported with Cisco Centralized Key Management, use EAP-FAST.
B. The APs have not been added to the FlexConnectgroup .
C. PEAP with WPA2-AES is not supported with Cisco Centralized Key Management, use LEAP.
D. The APs have been added to the FlexConnectgroup .
Answer: B
Q5. DRAG DROP Drag and drop the RRM function on the left to the entity that performs the function on the right
Answer:
Exhibit
Answer:
Q6. DRAG DROP
Drag and drop the characteristic on the left to the appropriate EAP type on the right.
Answer:
Exhibit
Q7. When creating a guest account on Cisco identity Services Engine .Which option in the sponsor portal allows for the guest credentials to be used for RADIUS authentication without requiring the guest user to log into the guest portal?
A. Set the Guest role to Guest
B. Set the Guest role to Activated guest
C. Set the Time Profile to Radius 1Day
D. Check the box to send email not send email notification id the guest user name is based on the email address.
Answer: B
Q8. DRAG DROP Drag and drop the Cisco MSE context-aware solution problem on the left to the possible reason for the failure on the right.
Answer:
Exhibit
A. Enforce airtime entitlement for wireless voice applications.
B. Ensure that call quality dose not degrade for existing VoWLAN calls.
C. Deny client access to the WLAN that do not meet the standard.
D. Allow access only for VoWLAN traffic when interference is detected.
Answer: A, B
Q9. You are implementing a WLC at a remote site and want to make sure that you are able to sync up with the Cisco WCS at the central site. Which two statements about this process are true? (Choose two.)
A. If the WLC is behind a firewall, you must make sure that UDP ports 161 and 162 are open.
B. The Cisco WCS server does not need direct IP connectivity to the WLC.
C. Cisco WCS will not be able to communicate with the WLC if the WLC is behind a NAT device.
D. If the WLC is behind a NAT device, the WLC's dynamic AP-manager interface must be configured with the external NAT IP address.
Answer: A, C
Q10. What is the best way to resolve this issue?
A. Install a publicity signed wildcard certificate by a well-known CA on the RADIUS server
B. Disable certificate checks on the client.
C. Use the certificate authority on the Cisco identity services Engine.
D. Install a publicly signed server certificate by a well-known CA on the RADIUS server
Answer: A
