♥♥ 2021 NEW RECOMMEND ♥♥
Free VCE & PDF File for Cisco 400-351 Real Exam (Full Version!)
★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions
Free Instant Download NEW 400-351 Exam Dumps (PDF & VCE):
Available on:
http://www.surepassexam.com/400-351-exam-dumps.html
Q21. Which two statements about 802.11r are true? (Choose two)
A. A PTK is generated before the client roams to the target AP.
B. Non-802.11r clients cannot associate to WLANs that have 802 llr enabled on WLC AireOS code 8.0
C. 802.11r IS supported only on OPEN and WPA2 WLANs.
D. This protocol uses the four-way handshake for the key management upon roaming.
Answer: B, C
Q22. Which two statements are true based upon the output in the exhibit? (Choose two.)
A. Operation will be effective only if the video profile on the WLC is mapped to the 802.1p protocol with a tagged value of 5.
B. It is recommended to configure IP multicast on the WLC in multicast-multicast mode.
C. CAC must be enabled to avoid channel oversubscription and guarantee the configured media bandwidth.
D. In case of a violation after an RRC re-evaluation, the stream is demoted to the best- effort class.
Answer: B, ?
Q23. 802.11k and 802.11k-enabled client devices send a request for a list of neighbor APs (a neighbor list) from the APs they are currently associated with. What is this 802.11management frame also known as?
A. association response
B. association packet
C. beacon frame
D. action packet
Answer: D
Q24. Which option in the cisco identity service engine allows for authorization based on Active Directory user and domain computer login?
A. Machine access restriction
B. Active directory group
C. Active directory attributes
D. Identity source sequences
Answer: A
Q25. Your customer is thinking of migrating the exiting IEEE 802.11b/g network to an IEEE 802.11ac network which two statement are true ?(choose two)
A. Backward compatibility need to be considered for the existing legacy IEEE 802.11b/g mobile devices.
B. Channel option are limited on the radio band UNII 3 due to DFS
C. Ensure that the WLANs have WMM enabled and support open or WPA2/AES encryption 1n order to reach IEEE 802.11ac speeds even on IEEE. 802.11ac clients
D. Fewer APs have to be proposed because the IEEE 802.llac network provides a faster speed and larger converge area compared with the IEEE 802.11b/g network.
Answer: A, C
Q26. Your customer plans to deploy a location-aware WLAN in a campus.which statements about the planning considera tion for location-aware WLAN are true ?
(Choose two)
A. Cisco PI allow as APS that are defined equipped with third-party antennas participate in client tag or rogue on demand location tracking
B. Perimeter APs should complement APs located w1thin floor intenor areas m add1 t1on APs should be place m each of the four corners of the floor and at any other corner that are encountered along the floor perimeters.
C. Onsite calibration is require otherwise location tracking for clients cannot be performed
D. At least one AP are resident in each quadrant that surrounds the pomt-in- QUESTION NO:
E. At least one AP that resides in each of at least three of the surrounding quadrant IS located within 70feet(-21.3meters) of the point-in- QUESTION NO:
F. active RFID tags transmit directly to the APs and require 802.11authentication and require 802.11 authentication and association to pass data traffic to the realtime locating.
Answer: C, E
Q27. Why would you enable the RFC 3578 option when adding a new RADIUS authentication server to a WLC?
A. you want to run both RADIUS and TACACS
B. to support Disconnect and Change of Authorization
C. to encrypt communications between the WLC and the RADIUS server
D. to support RADIUS key wrapping
Answer: B
Explanation:
If you are configuring a new RADIUS authentication server, choose Enabled from the Support for RFC 3576 drop-down list to enable RFC 3576, which is an extension to the RADIUS protocol that allows dynamic changes to a user session, or choose Disabled to disable this feature. The default value is Enabled. RFC 3576 includes support for disconnecting users and changing authorizations applicable to a user session and supports disconnect and change-of-authorization (CoA) messages. Disconnect messages cause a user session to be terminated immediately where CoA messages modify session authorization attributes such as data filters.
Q28. After the AP mode is changed from local mode to bridge mode the AP cannot register the WLC considering the debug output into the exhibit .which description of the issue is true?
A. DTLS is not supported in bridge mode
B. The AP priority exceeds the number of joining APs
C. The AP MAC address is not added in the MAC filter list of the WLC
D. The date and time on the WLC and AP do not match
E. The AP does not have a valid certificate
F. The WLC does not have the image for the AP
Answer: C
Q29. While troubleshooting a failed central web authentication configuration on cisco WLC you discover that the Cisco WLC policy manager state is showing RUN For new client and not CENTRAL_WEB_AUTH what is most likely the issue.?
A. The WLAN Layer 2 security should be sent to WPA+WPA2
B. The WLAN NAC state should be set to RADIUS NAC
C. The web login page under the cisco WLC security should be set to external (redirect to external server)
D. The WLAN layer 3 security should be set to web page policy with condition web redirect.
Answer: B
Q30. DRAG DROP Drag and drop the Cisco MSE context-aware solution problem on the left to the possible reason for the failure on the right.
Answer:
Exhibit
A. Enforce airtime entitlement for wireless voice applications.
B. Ensure that call quality dose not degrade for existing VoWLAN calls.
C. Deny client access to the WLAN that do not meet the standard.
D. Allow access only for VoWLAN traffic when interference is detected.
Answer: A, B