Want to know Pass4sure passleader 400 101 Exam practice test features? Want to lear more about Cisco CCIE Routing and Switching (v5.0) certification experience? Study Actual Cisco cisco 400 101 answers to Updated 400 101 ccie questions at Pass4sure. Gat a success with an absolute guarantee to pass Cisco cisco 400 101 (CCIE Routing and Switching (v5.0)) test on your first attempt.


2026 New 400-101 Exam Dumps with PDF and VCE Free: https://www.2passeasy.com/dumps/400-101/

Q1. Refer to the exhibit. 

While troubleshooting high CPU utilization on one of your Cisco Catalyst switches, you find that the issue is due to excessive flooding that is caused by STP. What can you do to prevent this issue from happening again? 

A. Disable STP completely on the switch. 

B. Change the STP version to RSTP. 

C. Configure PortFast on port-channel 1. 

D. Configure UplinkFast on the switch. 

E. Configure PortFast on interface Gi0/15. 

Answer:

Explanation: 

Topology Changes (TC) should be a rare event in a well-configured network. When a link on a switch port goes up or down, there is eventually a TC, once the STP state of the port is changing to or from forwarding. When the port is flapping, this would cause repetitive TCs and flooding. 

Ports with the STP portfast feature enabled will not cause TCs when going to or from the forwarding state. The configuration of portfast on all end-device ports (such as printers, PCs, and servers) should limit TCs to a low amount and is highly recommended. 

Reference: http://www.cisco.com/c/en/us/support/docs/lan-switching/spanning-tree-protocol/28943-170.html 

Q2. DRAG DROP 

Drag each show command on the left to the description of its output on a PE router on the right. 

Answer:  

Q3. Which three statements are functions that are performed by IKE phase 1? (Choose three.) 

A. It builds a secure tunnel to negotiate IKE phase 1 parameters. 

B. It establishes IPsec security associations. 

C. It authenticates the identities of the IPsec peers. 

D. It protects the IKE exchange by negotiating a matching IKE SA policy. 

E. It protects the identities of IPsec peers. 

F. It negotiates IPsec SA parameters. 

Answer: C,D,E 

Explanation: 

The basic purpose of IKE phase 1 is to authenticate the IPSec peers and to set up a secure channel between the peers to enable IKE exchanges. IKE phase 1 performs the following functions: 

. Authenticates and protects the identities of the IPSec peers 

. Negotiates a matching IKE SA policy between peers to protect the IKE exchange 

. Performs an authenticated Diffie-Hellman exchange with the end result of having matching shared secret keys 

. Sets up a secure tunnel to negotiate IKE phase 2 parameters 

Reference: http://www.ciscopress.com/articles/article.asp?p=25474&seqNum=7

Q4. DRAG DROP 

Drag and drop the method for refreshing BGP prefixes on the left to the corresponding description on the right. 

Answer:  

Q5. Which ICMP message type is used to assist path MTU discovery? 

A. destination unreachable 

B. redirect message 

C. source quench 

D. time exceeded 

Answer:

Q6. Which two OSPF network types require the use of a DR and BDR? (Choose two.) 

A. non-broadcast networks 

B. point-to-point networks 

C. point-to-multipoint networks 

D. broadcast networks 

E. point-to-multipoint non-broadcast networks 

Answer: A,D 

Q7. Which two options are requirements to implement 6VPE? (Choose two.) 

A. MPLS between PEs 

B. 6-in-4 tunnels between PEs 

C. MP-BGP VPNv6 exchange 

D. MP-BGP IPv6+label exchange 

E. Any Transport over MPLS 

F. IPv4/IPv6 dual-stack in core 

Answer: A,C 

Q8. Under Cisco IOS Software, which two features are supported in RADIUS Change of Authorization requests? (Choose two.) 

A. session identification 

B. session reauthentication 

C. session termination 

D. host termination 

Answer: A,C 

Explanation: 

CoA requests, as described in RFC 5176, are used in a pushed model to allow for session identification, host reauthentication, and session termination. The model comprises one request (CoA-Request) and two possible response codes. 

Reference: http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_aaa/configuration/15-sy/sec-usr-aaa-15-sy-book/sec-rad-coa.html 

Q9. What happens when an interface is configured as passive in OSPF? 

A. No OSPF neighbor ship is formed on the interface. 

B. An OSPF neighbor ship is formed with the DR, but not with the BDR. 

C. The subnet configured on the interface is not advertised to any other neighbor. 

D. OSPF hello messages are sent as unicast instead of multicast. 

Answer:

Q10. Which three actions are required when configuring NAT-PT? (Choose three.) 

A. Enable NAT-PT globally. 

B. Specify an IPv4-to-IPv6 translation. 

C. Specify an IPv6-to-IPv4 translation. 

D. Specify a ::/96 prefix that will map to an IPv4 address. 

E. Specify a ::/48 prefix that will map to a MAC address. 

F. Specify a ::/32 prefix that will map to an IPv6 address. 

Answer: B,C,D 

Explanation: 

The detailed steps on configuring NAY-PT is found at the reference link below: 

Reference: http://www.cisco.com/c/en/us/td/docs/ios/ipv6/configuration/guide/12_4t/ipv6_12_4t_book/i p6-nat_trnsln.html