nerdexam
Cisco

350-501 · Question #4

After you analyze your network environment, you decide to implement a full separation model for Internet access and MPLS L3VPN services. For which reason do you make this decision?

The correct answer is D. It enables EGP and IGP to operate independently. A full separation model for Internet access and MPLS L3VPN services is chosen to ensure the independent operation of Exterior Gateway Protocols (EGP) and Interior Gateway Protocols (IGP).

Architecture

Question

After you analyze your network environment, you decide to implement a full separation model for Internet access and MPLS L3VPN services. For which reason do you make this decision?

Options

  • AIt enables you to choose whether to separate or centralize each individual service.
  • BIt is easier to manage a system in which services are mixed
  • CIt requires only one edge router
  • DIt enables EGP and IGP to operate independently

How the community answered

(53 responses)
  • A
    13% (7)
  • B
    4% (2)
  • C
    6% (3)
  • D
    77% (41)

Why each option

A full separation model for Internet access and MPLS L3VPN services is chosen to ensure the independent operation of Exterior Gateway Protocols (EGP) and Interior Gateway Protocols (IGP).

AIt enables you to choose whether to separate or centralize each individual service.

The full separation model is a specific architectural choice that enforces separation, not one that provides flexibility to choose whether to separate or centralize individual services.

BIt is easier to manage a system in which services are mixed

Mixing services generally increases complexity and management overhead, especially when security and performance isolation are critical, making separation a more manageable approach for complex scenarios.

CIt requires only one edge router

A full separation model often requires more edge routers or logically separate routing instances (e.g., VRFs) to achieve the necessary isolation, not just one edge router.

DIt enables EGP and IGP to operate independentlyCorrect

By fully separating Internet access from MPLS L3VPN services, the External Gateway Protocols (e.g., BGP) and Interior Gateway Protocols (e.g., OSPF/IS-IS) can operate in isolation, providing better security, stability, and control over routing policies without interference.

Concept tested: Network architecture - service separation

Source: https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Data_Center/DCSecurity_3-1_Campus_LAN_Access_Reference_Design/DCSecurity_3-1_Campus_LAN_Access_Reference_Design/DC_Security_3-1_Reference_Design_Chapter2.html

Topics

#Network Architecture#Service Separation#EGP#IGP

Community Discussion

No community discussion yet for this question.

Full 350-501 Practice