300-915 Sample Questions & Answers
IoT network topology ties with building applications for Cisco IOx for the top weight, alongside edge-versus-cloud compute tradeoffs, messaging over MQTT and AMQP, data services at the edge, visualization techniques, and secure SDLC practices.
Launch the full 300-915 simulator →Showing 10 of 20 free samples.
- Question 1Intermediate
Open Source IoT Software · Identify broker QoS level for messages in a given scenario
A logistics company wants to track its fleet of vehicles using low-power sensors that report their location periodically. The vehicles often travel through areas with intermittent cellular connectivity. The primary requirements are minimal power consumption for the sensors and guaranteed delivery of location data once connectivity is restored. Which messaging protocol and QoS level combination best meets these requirements?
Show answer & explanation
Correct answer: C
MQTT is designed for low-power, constrained devices and unreliable networks, making it ideal for this scenario. QoS level 1 (At Least Once) ensures that the message is guaranteed to be delivered by requiring an acknowledgment (PUBACK) from the broker. If the client doesn't receive the acknowledgment, it will resend the message, which handles the intermittent connectivity issue. QoS 2 is overkill and adds more overhead, while QoS 0 provides no delivery guarantee.
- Question 2Beginner
IoT Data Visualization · Identify the data visualization technique to meet business requirements
An operations team needs to create a dashboard to monitor the health of hundreds of industrial machines. The most critical metric for each machine is its current operational temperature, which must be immediately visible with a clear indication of whether it is within safe, warning, or critical ranges. Which data visualization technique is most suitable for this specific requirement?
Show answer & explanation
Correct answer: B
A gauge is specifically designed to display a single metric's current value in relation to a set range. By setting color-coded thresholds for safe (green), warning (yellow), and critical (red) ranges, the operations team can immediately assess the temperature status of a machine at a glance. A line graph is better for trends over time, a pie chart for proportions, and a bar chart for comparing discrete values.
- Question 3Beginner
Cisco Network IoT Architecture · Describe the purpose, functionality, and use of these operational technology components
A network administrator is tasked with troubleshooting an IoT deployment where sensors are connected to a Cisco IE-3300 switch. The sensors communicate using LoRaWAN to a gateway, which is then connected to the switch. The administrator suspects a misconfiguration in the data flow between the gateway and the upstream router. Which operational technology component is responsible for the long-range, low-power wireless communication in this scenario?
graph TD subgraph Industrial Zone Sensor1[LoRaWAN Sensor] --> Gateway Sensor2[LoRaWAN Sensor] --> Gateway Gateway[LoRaWAN Gateway] --> Switch{IE-3300 Switch} end Switch --> Router[IR1101 Router] Router --> Cloud((Cloud))Show answer & explanation
Correct answer: C
LoRaWAN (Long Range Wide Area Network) is a communication protocol specifically designed for low-power, long-range communication between IoT devices (sensors) and a central gateway. The LoRaWAN Gateway is the component that receives the wireless signals from the sensors and forwards the data to the rest of the network via a standard connection like Ethernet, which is then handled by the switch and router.
- Question 4Intermediate
Compute and Analysis · Determine the use of cloud or specific edge devices for a given application scenario
When comparing edge computing devices like the Cisco IC3000 to centralized cloud compute resources for an industrial video analytics application, which factor is the most compelling reason to process the video feeds at the edge?
Show answer & explanation
Correct answer: D
For applications like real-time video analytics, latency is a critical factor. Processing video feeds at the edge eliminates the delay of sending large amounts of data to a centralized cloud, waiting for processing, and receiving a response. This allows for immediate actions and decisions, such as stopping a machine in case of a safety violation. While other factors like data storage and bandwidth costs are benefits of edge computing, minimizing latency is the primary driver for this type of application.
- Question 5Intermediate
Cisco IOx IoT Software · Describe the process to build applications for Cisco IOx
A developer is creating a
package.yamlmanifest file for a new IOx application. The application requires access to the device's serial port (ttyS1) and needs a persistent storage volume to save configuration files. Which section of thepackage.yamlfile is used to define these hardware and storage access requirements?Show answer & explanation
Correct answer: B
The
resourcessection of thepackage.yamlfile is where an application's requirements are defined. This includes not only CPU and memory but alsodevices(like serial ports) andvolumesfor persistent storage. Thenetworksection defines networking aspects,health-checkdefines monitoring, andapp-configis for application-specific environment variables. - Question 6Advanced
Security · Describe the capabilities of: ISE and ISE integration
An organization needs to secure its industrial network, which contains both modern IT equipment and legacy OT devices that do not support 802.1X. The goal is to apply granular access policies and segment traffic based on device identity. Which Cisco security solution uses passive network monitoring and deep packet inspection to identify and profile endpoints, enabling policy enforcement even for non-802.1X-capable devices?
Show answer & explanation
Correct answer: C
Cisco Identity Services Engine (ISE) provides extensive profiling capabilities. It can use probes like DHCP, DNS, and NetFlow, as well as deep packet inspection of industrial protocols (e.g., CIP, PROFINET), to identify and classify endpoints that cannot actively authenticate via 802.1X. Once a device is profiled, ISE can apply dynamic access policies, such as assigning it to a specific VLAN or applying a downloadable ACL, effectively segmenting the network.
- Question 7IntermediateSelect 2
Cisco Edge Data IoT Software · Identify the process to send data to a public cloud provider
A developer is configuring a northbound connector in Cisco Edge Intelligence to send processed data to an Azure IoT Hub. Which two pieces of information are essential to configure the connector for a secure connection using a SAS token? (Select TWO).
Show answer & explanation
Correct answers: C, D
The IoT Hub Hostname (e.g.,
my-iot-hub.azure-devices.net) is the unique endpoint for the specific IoT Hub instance that the data will be sent to.The Shared Access Key is the secret key used to generate the Shared Access Signature (SAS) token. The SAS token is then used to authenticate the connection to the Azure IoT Hub.
- Question 8Beginner
Cisco Network IoT Architecture · Troubleshoot sensor connectivity issue
An engineer is troubleshooting a sensor connectivity issue in an industrial environment. The sensor, a PLC, is connected to a Cisco switch. The engineer needs to verify Layer 2 connectivity and determine the MAC address of the PLC as seen by the switch. Which IOS command would provide this information?
Show answer & explanation
Correct answer: C
The
show mac address-tablecommand on a Cisco switch displays the MAC address forwarding table. This table lists all the MAC addresses the switch has learned, the VLAN they belong to, and the physical port on which they were learned. This is the correct command to verify Layer 2 connectivity and find the MAC address of a directly connected device like a PLC. - Question 9Intermediate
Security · Identify methods to secure an application and infrastructure during production and testing in a CI/CD pipeline
During a security audit of a CI/CD pipeline for an IOx application, it was discovered that Docker container images are being pulled from public repositories without verification. This practice introduces a significant risk of including vulnerable or malicious code. Which security method should be implemented in the pipeline to mitigate this specific risk?
Show answer & explanation
Correct answer: B
The best practice is to use a private, trusted container registry. Before images are pushed to this registry (or pulled for use in a build), they should be scanned for known vulnerabilities (CVEs). This ensures that the base layers of the application are secure. Tools like Clair, Trivy, or commercial solutions integrated into registries can perform this scanning as part of the CI/CD pipeline, failing the build if high-severity vulnerabilities are found.
- Question 10Advanced
Compute and Analysis · Analyze application resource usage information to determine any required changes to the application or hardware
An IOx application running on an IR829 gateway is frequently being restarted by the system. Analysis of the application resource usage via the FND API shows that the memory consumption periodically spikes and exceeds its allocated limit. The application is stateful and needs to be modified to handle this. What is the most effective change to prevent these restarts while maintaining application state?
Show answer & explanation
Correct answer: C
The root cause of the problem is the application's memory consumption exceeding its allocation, causing the IOx supervisor to terminate it. The most direct and effective solution is to address the source of the high memory usage within the application code itself. This involves profiling the code, identifying memory leaks or inefficient data structures, and optimizing them. Simply increasing the memory allocation might be a temporary fix but does not solve the underlying problem and may not be feasible on resource-constrained edge devices.
Ready for the real thing?
The full 300-915 simulator has every exam-style question, timed mode, and instant scoring.