CCNP Data Center 350-601 DCCOR Practice Test 27

CCNP Data Center 350-601 DCCOR Practice Test 27 - Network Security - AAA/RBAC and ACI Contracts/Microsegmentation

CCNP Data Center Exam Logo

1 / 10

What is the primary purpose of AAA (Authentication, Authorization, and Accounting) in a data center network security design?

2 / 10

An administrator with a newly assigned RBAC role in UCS Manager cannot perform expected configuration changes. What is a likely cause?

3 / 10

What is a benefit of using ACI contracts to control communication between EPGs, compared to relying solely on traditional VLAN-based network segmentation?

4 / 10

Two EPGs that should be able to communicate based on business requirements are unable to exchange traffic despite both being in the same VRF. What should be verified first?

5 / 10

A security team wants to implement microsegmentation so that individual workloads within the same EPG can be restricted from communicating with each other unless explicitly required (a zero-trust-like approach). Which ACI capability addresses this?

6 / 10

How does RBAC in UCS Manager or APIC relate to the principle of least privilege in network security design?

7 / 10

When deciding whether to use a broad, permissive contract versus multiple narrow, specific contracts between EPGs, what is a key decision factor?

8 / 10

Which APIC GUI location is used to verify which contracts are currently applied between two specific EPGs?

9 / 10

What is the relationship between TACACS+/RADIUS integration and RBAC when managing administrative access to UCS Manager or APIC?

10 / 10

A compliance audit requires demonstrating that only authorized personnel could have made a specific configuration change on the APIC. Which AAA component provides this evidence?

Your score is

The average score is 0%

0%