Pre-Summer Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmas50

Versa Networks VNX301 - Versa Certified SD-WAN Specialist (VNX300)

Page: 1 / 2
Total 60 questions

A branch device has completed Stage 3 onboarding. Which set of tunnels or sessions should exist after the device becomes fully operational in the customer SD-WAN network?

A.

IKE and IPsec sessions between the branch and Controller, and VXLAN and ESP sessions between branches

B.

Only an HTTPS session between the branch and Director

C.

Only a BGP session between the branch and Analytics

D.

GRE-only tunnels between all branches without IPsec

What are two features of the Stateful Firewall service in the Versa Operating System? (Choose two.)

A.

DoS protection

B.

Intrusion Detection System

C.

URL filtering

D.

Application-Level Gateways (ALG)

You want to test a WAN circuit in a way that more closely simulates a single SCP or FTP file transfer. Which method should you use?

A.

Run the internet speed test from Versa Director with default settings.

B.

Run the internet speed test from the VOS CLI using the single-session option.

C.

Run show interfaces brief repeatedly during business hours.

D.

Use only the SD-WAN SLA monitor latency value.

A branch has correct underlay speed and no asymmetric SD-WAN paths, but users still report packet loss during large transfers. You suspect QoS shaping is dropping traffic. Which command is most appropriate to verify interface-level CoS drops?

A.

show class-of-services interfaces detail interface-name

B.

show alarms last-n 10

C.

show system uptime

D.

show cgnat tenants

You are configuring a CGNAT rule for branch internet access and want to verify which access-list entry will match traffic before translation. Which information is shown by the CGNAT ACL command?

A.

Rule ID, category, precedence, VRF, source IP, and destination IP

B.

Only system uptime and CPU usage

C.

Only SD-WAN SLA latency, jitter, and loss

D.

Only BGP AS path and local preference

A Director administrator opens the Monitor tab for a provider organization and wants to see the number of tenants, SD-WAN branches, Controllers, hubs, Director nodes, and Analytics nodes. Which pane provides this information?

A.

Asset Inventory

B.

Package Information

C.

Uptime

D.

High Availability

A branch user reports poor throughput over an SD-WAN tunnel. The command show interfaces detail vni-0/0 shows the interface is operating at half-duplex / 100 Mbps , although the circuit is expected to run at 1 Gbps full duplex. What is the most likely cause?

A.

SD-WAN SLA probing is disabled.

B.

The Controller is not advertising branch routes.

C.

There is an underlay link speed or duplex mismatch.

D.

VXLAN encapsulation is missing on the overlay.

A CGNAT pool shows repeated alloc-failures and increasing free-failures . Which troubleshooting approach is most appropriate?

A.

Inspect CGNAT pool statistics and then verify CGNAT state in the vsmd daemon.

B.

Ignore the counters because CGNAT does not track allocation state.

C.

Troubleshoot only OSPF neighbors in the LAN VR.

D.

Reboot Versa Analytics because allocation counters are stored only there.

A branch uses a template variable for the WAN VLAN ID. During deployment, Branch-A receives VLAN 100 and Branch-B receives VLAN 200 from device bind data while using the same template. Which statement is correct?

A.

This is expected because template variables allow unique per-device values.

B.

This is impossible because all devices using a template must share identical VLAN IDs.

C.

The device template must be duplicated for each branch.

D.

The Controller automatically rewrites VLAN IDs after IPsec comes up.

Examine the exhibit below.

According to the CGNAT pool configuration shown in the exhibit, which two statements are true? (Choose two.)

A.

Port translation will not be applied on sessions.

B.

Only addresses sourced from hosts in the 192.168.10.100 through 192.168.10.150 address range will be translated.

C.

The source address of matching sessions will be translated to an address in the range of 192.168.10.100 through 192.168.10.150.

D.

Ports will be dynamically translated for each session. group