Want to know Ucertify 400-351 Exam practice test features? Want to lear more about Cisco CCIE Wireless Written Exam certification experience? Study Guaranteed Cisco 400-351 answers to Up to date 400-351 questions at Ucertify. Gat a success with an absolute guarantee to pass Cisco 400-351 (CCIE Wireless Written Exam) test on your first attempt.

Q11. Your customer needs the list of all the guest client that connected to Wi-Fi successfully but have not yet authenticated. The customer decides to create an advanced filter in Cisco Pounder monitor >client and user which two conditions should be included in the filter? (Choose two) 

A. PEM state =WebauthReqD 

B. On Network= Yes 

C. Status =Associated 

D. Type =Lightweight client 

Answer: C, D 


Q12. Which two Characteristic of U-APSD are true ?(Chosse two) 

A. U-APSD is enabled automatically when WMM is enabled 

B. In addition to extending battery life, U-APSD increases the latency of the traffic flow delivered over the wireless media 

C. U-APSD is configured on the access point switch port and supports the Power over Ethernet feature D. (Unscheduled automatic power save delivery) U-APSD is a Qos facility defined in IEEE 802.11e that extends the battery life of mobile clients 

Answer: A, D 


Q13. Which two statements about accessing the GUIand CLI of Cisco WlC are true? (choose two) 

A. The feature " Management using dynamic interface" can be configures in CLI only. 

B. The wireless client can access the Cisco WLC only when the option "Enable controller wireless Management to be accessible from Wireless clients is checked". 

C. Wired clients can have only eli access with the dynamic interface of the Cisco WLC while wireless clients have both CLI and GUI access with the dynamic interface when the feature management using dynamic interface is enabled . 

D. The feature management using dynamic interface can be applied to one of the dynamic interface only. 

Answer: B, D 


Q14. based upon the given configuration which two statement are true? (choose two) 

A. local RADIUS server is used 

B. No password is required everyone can join wireless network 

C. Users will be required to provide a username and password for authentication 

D. User will be required to provide a password only order to get access 

E. Remote RADIUS servers is used 

Answer: A, C 


Q15. Why would you enable the RFC 3578 option when adding a new RADIUS authentication server to a WLC? 

A. you want to run both RADIUS and TACACS 

B. to support Disconnect and Change of Authorization 

C. to encrypt communications between the WLC and the RADIUS server 

D. to support RADIUS key wrapping 

Answer:

Explanation: 

If you are configuring a new RADIUS authentication server, choose Enabled from the Support for RFC 3576 drop-down list to enable RFC 3576, which is an extension to the RADIUS protocol that allows dynamic changes to a user session, or choose Disabled to disable this feature. The default value is Enabled. RFC 3576 includes support for disconnecting users and changing authorizations applicable to a user session and supports disconnect and change-of-authorization (CoA) messages. Disconnect messages cause a user session to be terminated immediately where CoA messages modify session authorization attributes such as data filters. 


Q16. Which option in the cisco identity service engine allows for authorization based on Active Directory user and domain computer login? 

A. Machine access restriction 

B. Active directory group 

C. Active directory attributes 

D. Identity source sequences 

Answer:


Q17. What is the best way to resolve this issue? 

A. Install a publicity signed wildcard certificate by a well-known CA on the RADIUS server 

B. Disable certificate checks on the client. 

C. Use the certificate authority on the Cisco identity services Engine. 

D. Install a publicly signed server certificate by a well-known CA on the RADIUS server 

Answer:


Q18. You are working on a deployment that uses two Cisco APs as wireless bridges. One of the bridges is configured as a root bridge and the second bridge is configured as a nonroot bridge. Client A associates to the root bridge and client B associates to the nonroot bridge. Which two statements about this scenario are true? (Choose two) 

A. The default setting of a bridge is nonroot bridge. 

B. For two bridges to communicate with each other, one of the bridges must be in root mode and the other bridge must be in nonroot mode. 

C. Only one device can connect to the Ethernet port of a nonroot bridge. 

D. Two bridges that are in root mode can talk to each other. 

E. In point-to-multipoint bridging, WGB is not recommended with the root bridge. WGB must be associated to the root AP in point-to-multipoint bridging setup. 

Answer: A, E 


Q19. Refer to the exhibit. 

You enabled NAT to make sure that your WLC is publicly reachable . if other NAT parameters are left to default1 which statement is true. ? 

A. The AP WLC discovery fails for APs int local mode using 209.165.200.44 

B. The AP WLC discover succeeds for OEAPsjoning the WLC using 192.168.3.44 

C. The AP WLC discover succeeds for OEAPsJoning the WLC using 192.168.3.44 or 209 165.200.44D. The AP WLC discover Fail for APs in local mode using 

192.168.3.44 

Answer:

Explanation: 

Section: 2.0 Network Infrastructure 


Q20. Refer to the exhibit The wireless clients use VLAN 2150.the WLC Management is on VLAN 2149 and the lAPs use VLAN 2100 wireless clients report that they cannot access multicast routing enabled which two options must be enabled for the clients to receive multicast video? (Choose two) 

A. MSDP 

B. ip pim-sparse mode on VLAN 2149 

C. ip igmp snooping 

D. ip pim-sparse mode on VLAN 2150 

Answer: B, D