300-510 Sample Questions

300-510 Sample Questions & Answers

Unicast routing with OSPF and IS-IS multiarea operation is the heaviest topic, alongside traffic engineering across MPLS with segment routing, conditional-match manipulation of IGP routes via route maps, and PIM-SM multicast concepts.

Launch the full 300-510 simulator →

Showing 10 of 20 free samples.

  1. Question 1Beginner

    Unicast Routing · 1.4.a BGP confederations

    True or False: In a BGP confederation, the path attribute information such as MED, Local Preference, and communities are preserved when routes are passed between member-ASNs within the confederation.

    Show answer & explanation

    Correct answer: A

    True. The peering between member-ASNs inside a BGP confederation is known as an 'internal' eBGP (ceBGP) session. While it behaves like eBGP in terms of AS_PATH, it is designed to act like iBGP for attribute propagation. This means attributes like MED, Local Preference, and communities are carried unmodified between the member-ASNs, preserving the original path information throughout the confederation.

  2. Question 2Advanced

    Unicast Routing · 1.5.j Troubleshoot BGP - FlowSpec

    A service provider is using BGP FlowSpec to mitigate DDoS attacks. An attack is detected targeting the server at 198.51.100.50 using UDP port 53. The security team needs to deploy a FlowSpec rule that drops all traffic matching this pattern. Which set of BGP FlowSpec components correctly defines this rule?

    Show answer & explanation

    Correct answer: B

    BGP FlowSpec rules consist of match criteria and an action. To mitigate an attack targeting a server, the match criteria must identify the destination address (the server), the destination port, and the protocol. The correct action to drop the traffic is to set the traffic-rate to 0. Therefore, matching destination-address 198.51.100.50/32, destination-port 53, and protocol UDP with an action of traffic-rate 0 is the correct rule. Matching the source address would block traffic from the server, not to it. redirect-to-vrf is for traffic redirection, and traffic-marking changes DSCP values, neither of which drops the traffic.

  3. Question 3AdvancedSelect 3

    MPLS and Segment Routing · 4.4.c Implement segment routing v6 (SRv6) - Flexible algorithm

    A telecom company is deploying SRv6 in its core network. An engineer needs to create a flexible algorithm to define a custom low-latency path, excluding any links with a specific metric type. Which components are configured to define and apply a new flexible algorithm in an IS-IS SRv6 domain? (Select THREE)

    Show answer & explanation

    Correct answers: A, C, D

  4. Question 4Intermediate

    Unicast Routing · 1.5.g Troubleshoot BGP - Route dampening

    A financial services company has a primary data center (DC1) and a disaster recovery site (DC2). They use BGP for routing between sites. To prevent routing table bloat and instability at DC2, the network team wants to implement a policy where prefixes that flap excessively (more than 3 times in 15 minutes) are suppressed for 30 minutes. Which BGP feature should be configured to enforce this policy?

    Show answer & explanation

    Correct answer: B

    BGP Route Dampening is the feature specifically designed to penalize and suppress unstable (flapping) routes. It assigns a penalty to a route each time it flaps. When the cumulative penalty exceeds a suppress-limit, the route is dampened (suppressed). The penalty value then decays over a configurable half-life time, and the route is un-suppressed once the penalty drops below a reuse-limit. This matches the requirement to suppress excessively flapping routes for a period of time.

  5. Question 5Intermediate

    Unicast Routing · 1.6.e Describe IPv6 tunneling mechanisms - NAT64 and MAP-T

    A service provider is migrating from 6PE to a native IPv6 infrastructure and needs to provide IPv6 access to customers who are still on IPv4-only networks. The provider wants a stateless translation solution that embeds IPv6 address information within the customer's existing IPv4 address. Which IPv6 transition mechanism achieves this goal?

    Show answer & explanation

    Correct answer: C

    MAP-T is a stateless IPv4/IPv6 translation mechanism that embeds IPv4 address and port information into an IPv6 address. This allows for direct translation between IPv4 and IPv6 packets without maintaining state on the translator, making it highly scalable for service provider environments. NAT64 is a stateful mechanism. Static tunnels are not a translation mechanism, and 6to4 is another tunneling technology that doesn't fit the stateless translation requirement described.

  6. Question 6Intermediate

    Routing Policy and Manipulation · 3.2.c Describe conditional matching - Regular expressions

    A consultant is reviewing the routing policy on a Cisco IOS XR router. The policy needs to match BGP routes that have an AS_PATH beginning with AS 65501, followed by any number of ASNs, and ending with AS 65502. Which regular expression correctly matches this specific AS_PATH pattern?

    Show answer & explanation

    Correct answer: B

    This regular expression is broken down as follows:

    • ^: Matches the beginning of the string (start of the AS_PATH).
    • 65501: Matches the literal AS number 65501.
    • : Matches a space or a delimiter between AS numbers.
    • .*: Matches any character (.) zero or more times (*), representing any sequence of AS numbers in the middle.
    • : Matches a space or a delimiter.
    • 65502: Matches the literal AS number 65502.
    • $: Matches the end of the string (end of the AS_PATH, representing the origin AS).
  7. Question 7Intermediate

    Multicast Routing · 2.3.b Implement PIM-SM operations - BIDIR-PIM operations

    A service provider network uses BIDIR-PIM to support a many-to-many multicast application. In a BIDIR-PIM domain, what is the role of the Designated Forwarder (DF) election process?

    Show answer & explanation

    Correct answer: B

    In BIDIR-PIM, traffic can flow both up and down the shared tree. On a multi-access segment (like Ethernet), multiple routers might be connected. The Designated Forwarder (DF) election process is used to select a single router on that segment responsible for forwarding multicast traffic from downstream sources up toward the Rendezvous Point Link (RPL). This prevents duplicate multicast packets from being sent upstream.

  8. Question 8Beginner

    MPLS and Segment Routing · 4.1.d Troubleshoot MPLS - BGP free core

    What is the primary motivation for implementing a 'BGP free core' in an MPLS network?

    Show answer & explanation

    Correct answer: B

    The main goal of a BGP free core design is to improve scalability and simplify operations. In this model, only the Provider Edge (PE) routers run BGP to learn customer routes. The Provider (P) routers in the core only run an IGP and LDP (or use Segment Routing). They forward traffic based on MPLS labels without needing any knowledge of the BGP prefixes. This significantly reduces the memory and CPU load on core routers, as they do not need to hold the full internet routing table.

  9. Question 9Intermediate

    Unicast Routing · 1.7.a Implement fast convergence - Bidirectional forwarding detection

    A service provider is troubleshooting a BGP multihoming scenario for a customer. The customer is connected to two different PE routers, PE1 and PE2. The provider wants to ensure that if the link between the customer and PE1 fails, traffic is rerouted through PE2 in under 50 milliseconds. The physical link failure detection can take up to 1 second. Which fast convergence technology is best suited to achieve this sub-50ms failover requirement?

    Show answer & explanation

    Correct answer: C

    Bidirectional Forwarding Detection (BFD) is a lightweight protocol designed for very fast failure detection of the forwarding path between routers. It can detect failures in milliseconds, far faster than BGP's native keepalive mechanism. By associating a BFD session with the BGP peering, BGP can be notified of a neighbor failure almost instantly, allowing it to trigger convergence and switch to the backup path via PE2 well within the 50ms requirement. Tuning BGP timers cannot safely achieve sub-second convergence. BGP PIC speeds up FIB update after a failure is known, but it relies on another mechanism (like BFD) for the initial failure detection. NSF/NSR are for control plane redundancy, not link failure detection.

  10. Question 10Advanced

    MPLS and Segment Routing · 4.3.c Describe segment routing traffic engineering - PCE-based path calculation

    A financial services company requires an MPLS Traffic Engineering solution with granular control over path selection. A primary requirement is to establish two tunnels between the same source and destination nodes: one optimized for low latency and another optimized for high bandwidth, avoiding shared risk link groups (SRLGs). Which technology provides the necessary centralized path computation and policy enforcement capabilities for these complex MPLS-TE requirements?

    Show answer & explanation

    Correct answer: C

    A Path Computation Element (PCE) provides a centralized, off-box computation engine that can make complex pathing decisions based on a variety of constraints, including latency, bandwidth, and SRLG avoidance. Using the Path Computation Element Communication Protocol (PCEP), routers (PCCs) can request paths from the PCE, and the PCE can proactively push down optimized paths. This architecture is ideal for creating multiple, constraint-based SR-TE policies or RSVP-TE tunnels between the same endpoints, each satisfying different optimization criteria.

Ready for the real thing?

The full 300-510 simulator has every exam-style question, timed mode, and instant scoring.