Which command on a WAN Edge device displays the information about the colors present in the fabric that are learned from vSmart via OMP?
A. show omp peers
B. show omp route
C. show omp sessions
D. show omp tlocs
Correct Answer: D


Which component of the Cisco SD-WAN control plane architecture should be located in a public Internet address space and facilitates NAT-traversal?
A. WAN Edge
B. vSmart
C. vBond
D. vManage
Correct Answer: C


Refer to the exhibit.

300-415 q3

An engineer is troubleshooting an issue where vManage and vSmart have a problem establishing a connection to
vBond. Which action fixes the issue?
A. Reconfigure the bond command on the vBond as bond local
B. Configure the tunnel interface on all three controllers with a color of transport
C. Remove the encapsulation IPsec command under the tunnel interface of vBond.
D. Configure encapsulation as IPsec under the tunnel interface of vintage and smart
Correct Answer: A


A network administrator is bringing up one WAN Edge for branch connectivity. Which types of tunnels form when the
Does the WAN edge router connect to the SD-WAN fabric?
A. DTLS or TLS tunnel with vBond controller and IPsec tunnel with vManage controller
B. DTLS or TLS tunnel with vBond controller and IPsec tunnel with other WAN Edge routers
C. DTLS or TLS tunnel with vSmart controller and IPsec tunnel with other Edge routers
D. DTLS or TLS tunnel with vSmart controller and IPsec tunnel with vBond controller
Correct Answer: C


Which two algorithms authenticate a user when configuring SNMPv3 monitoring on a WAN Edge router? (Choose two)
A. AES-256
B. SHA-1
C. AES-128
D. MD5
E. SHA-2
Correct Answer: DE


An engineer is troubleshooting a vEdge router and identifies a “DCONFAIL ? DTLS connection failure” message. What is
the problem?
A. memory issue
B. certificate mismatch
C. organization mismatch
D. connectivity issue
Correct Answer: D


Drag and drop the vManage policy configuration procedures from the left onto the correct definitions on the right.
Select and Place:

300-415 q7



Which port is used for bond under controller certificates if no alternate port is configured?
A. 12345
B. 12347
C. 12346
D. 12344
Correct Answer: C


A network administrator is configuring an application-aware firewall between inside zones to an outside zone on a WAN edge router using vManage GUI. What kind of inspection is performed when the “inspect” action is used?
A. Layer 7 inspection for TCP and Layer 4 inspection for UDP
B. IPS inspection for TCP and-Layer 4 inspection for UDP
C. stateful inspection for TCP and stateless inspection of UDP
D. stateful inspection for TCP and UDP
Correct Answer: D


In which VPN is the NAT operation on an outgoing interface configured for direct Internet access?
A. 0
B. 512
C. 10
D. 1
Correct Answer: A


Which secure connection should be used to access the REST APIs through the Cisco vManage web server?
A. HTTP inspector interface
B. authenticated HTTPS
C. authenticated DTLS
D. JSON Inspector interface
Correct Answer: B


Which attributes are configured to uniquely identify and represent a TLOC route?
A. system IP address, link color, and encapsulation
B. origin, originator, and preference
C. site ID, tag, and VPN
D. firewall, IPS, and application optimization
Correct Answer: A

TLOC routes are the logical tunnel termination points on the vEdge routers that connect into a transport network. A
TLOC route is uniquely identified and represented by a three-tuple, consisting of system IP address, link color, and
encapsulation (Generic Routing Encapsulation [GRE] or IPSec). In addition to system IP address, color, and
encapsulation, TLOC routes also carry attributes such as TLOC private and public IP addresses, carrier, preference,
site ID, tag, and weight. For a TLOC to be considered in an active state on a particular vEdge, an active BFD session
must be associated with that vEdge TLOC.


Which two platforms can host a vEdge Cloud Router? (Choose two)
A. Microsoft Azure
B. Dream host
D. DigitalCloud
E. Google
Correct Answer: AC


A policy is created to influence routing in the network using a group of prefixes. What policy application will achieve this
goal when applied to a site list?
A. Vpn-membership policy
B. Control-policy
C. cflowd-template
D. App-route policy
Correct Answer: B


Which feature template configures OMP?

A. Option A
B. Option B
C. Option C
D. Option D
Correct Answer: A


