exam questions

Exam 300-430 All Questions

View all questions & answers for the 300-430 exam

Exam 300-430 topic 1 question 157 discussion

Actual exam question from Cisco's 300-430
Question #: 157
Topic #: 1
[All 300-430 Questions]


Refer to the exhibit. An engineer implemented the CPU ACL on your Cisco 5520 Series Wireless LAN Controller, and the controller is no longer manageable via the network. What must be changes on this CPU ACL to enable it to manage the controller again?

  • A. Permit statements must be added to the top of the ACL in both directions, which specify the network to be managed from and the virtual interface of the controller.
  • B. Line 1 must be set to a destination port of HTTP.
  • C. Permit statements must be added to the top of the ACL, which specify the network to be managed from.
  • D. Line 1 must be set to the inbound direction.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Robesera
Highly Voted 2 years ago
Shouldnt the correct answer be C? You dont manage the WLC using the virtual interface ip
upvoted 10 times
Spineraptor
2 years ago
I agree with C, you manage the WLC using the management IP.
upvoted 5 times
...
...
atulsharma13
Most Recent 1 year, 1 month ago
The answer is A we can configure WLC with virtual interface also. Configure the management interface: interface management ip address <management_ip_address> <subnet_mask> Configure the virtual interface: interface virtual <virtual_interface_number> ip address <virtual_ip_address> <subnet_mask> Enable management on the virtual interface: management-interface virtual <virtual_interface_number>
upvoted 1 times
...
atulsharma13
1 year, 1 month ago
Permit statements must be added to the top of the ACL in both directions, not just in one direction. This is because the controller needs to communicate with the network and vice versa for management purposes. Simply adding permit statements to the top of the ACL without specifying the network to be managed from and the virtual interface of the controller may not be sufficient to enable management again.
upvoted 1 times
...
peer1024
1 year, 1 month ago
Selected Answer: C
Managment: via management interface with ROUTABLE IP LWA: via virtual interface and this has a NON ROUTABLE IP. Therefore A is wrong....
upvoted 1 times
...
peer1024
1 year, 5 months ago
Selected Answer: C
CCNP Enterprise ENWLSD 300-425 ENWLSI 300-430 Official Cert Guide.pdf Page 454 For AireOS controllers using versions 6.0 and later, CPU ACLs are applicable for traffic originating both to and from the controller. Thus, when you’re creating the ACLs and attaching them to the CPU, the ACL direction fields do not have any relevance. Page 79 As with CAPWAP, the controller’s management interface is used to communicate with AAA servers, as well as a host of other services, including MSE/CMX, directory servers, other controllers, and more. --> we need an ACL without direction, which includes the management interface and the admin network.
upvoted 3 times
...
PauBau
1 year, 7 months ago
Selected Answer: C
It is C
upvoted 1 times
...
dareangel11
1 year, 11 months ago
provided answer is incorrect, i tested above deny acl in my simulation virtual wlc lab.
upvoted 2 times
...
dareangel11
1 year, 11 months ago
provided answer is correct, i tested above deny acl in my simulation virtual wlc lab.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...