Cisco 350-401 Implementing and Operating Cisco Enterprise Network Core Technologies (ENCOR) Online Training
Cisco 350-401 Online Training
The questions for 350-401 were last updated at Sep 15,2025.
- Exam Code: 350-401
- Exam Name: Implementing and Operating Cisco Enterprise Network Core Technologies (ENCOR)
- Certification Provider: Cisco
- Latest update: Sep 15,2025
Refer to the Exhibit.
Which command must be applied to R2 for an OSPF neighborship to form?
- A . network 20.1.1.2.0.0.0.0 area 0
- B . network 20.1.1.2 255.255.0.0. area 0
- C . network 20.1.1.2.0.0.255.255 area 0
- D . network 20.1.1.2 255.255.255 area 0
Which two operations are valid for RESTCONF? (Choose two.)
- A . HEAD
- B . REMOVE
- C . PULL
- D . PATCH
- E . ADD
- F . PUSH
Refer to the exhibit.
The IP SLA is configured in a router. An engineer must configure an EEM applet to shut down the interface and bring it back up when there is a problem with the IP SLA.
Which configuration should the engineer use?
- A . event manager applet EEM_IP_SLA event track 10 state down
- B . event manager applet EEM_IP_SLA event track 10 state unreachable
- C . event manager applet EEM_IP_SLA event sla 10 state unreachable
- D . event manager applet EEM_IP_SLA event sla 10 state down
Which JSON syntax is valid?
- A . {“switch”:”name”:”dist1″,”interfaces”:[“gig1″,”gig2″,”gig3”]}
- B . {„switch‟:(„name‟:‟dist1′,‟interfaces‟:[„gig1′,‟gig2′,‟gig3‟])}
- C . {“switch”:{“name”:”dist1″,”interfaces”:[“gig1″,”gig2″,”gig3”]}}
- D . {/”switch/”:{/”name/”:”dist1″,/”interfaces/”:[“gig1″,”gig2″,”gig3”]}}
Refer to the exhibit.
An engineer must deny Telnet traffic from the loopback interface of router R3 to the loopback interface of router R2 during the weekend hours. All other traffic between the loopback interfaces of routers R3 and R2 must be allowed at all times.
Which command accomplish this task?
A)
B)
C)
D)
- A . Option A
- B . Option B
- C . Option C
- D . Option D
When configuration WPA2 Enterprise on a WLAN, which additional security component configuration is required?
- A . NTP server
- B . PKI server
- C . RADIUS server
- D . TACACS server
Which devices does Cisco DNA Center configure when deploying an IP-based access control policy?
- A . All devices integrating with ISE
- B . selected individual devices
- C . all devices in selected sites
- D . all wired devices
Refer to the exhibit.
An engineer implemented several configuration changes and receives the logging message on switch1.
Which action should the engineer take to resolve this issue?
- A . Change the VTP domain to match on both switches
- B . Change Switch2 to switch port mode dynamic auto
- C . Change Switch1 to switch port mode dynamic auto
- D . Change Switch1 to switch port mode dynamic desirable
Which AP mode allows an engineer to scan configured channels for rogue access points?
- A . sniffer
- B . monitor
- C . bridge
- D . local
Which statement about TLS is accurate when using RESTCONF to write configurations on network devices?
- A . It requires certificates for authentication
- B . It is provided using NGINX acting as a proxy web server
- C . It is used for HTTP and HTTPS requests
- D . It is not supported on Cisco devices
Question 91 has a wrong answer marked s correct. The answer is B.
BPDU filter is the only option to block BPDUs while not going inte err disabled when a BPDU is received.
https://www.exam4training.com/which-command-set-must-be-configured-on-switch1-to-achieve-the-following-results-on-port-fa0-1/
https://www.cisco.com/en/US/docs/switches/metro/me3600x_3800x/trash/swstpopt.html#:~:text=The%20BPDU%20filtering%20feature%20can,bpdufilter%20default%20global%20configuration%20command.