View Full Palo Alto Networks SD-WAN-Engineer Exam Dumps and Practice Test Dumps.
Question 321
What is the primary purpose of route redistribution in a network using multiple routing protocols?
- To increase WAN bandwidth
- To translate application addresses
- To exchange selected routing information between protocols
- To measure application jitter
Correct Answer: 3
Explanation
Route redistribution allows routing information from one routing protocol or routing source to be introduced into another routing domain. This is useful when an SD-WAN environment uses multiple routing technologies and those domains need to exchange selected destination information. Redistribution should be carefully controlled because unrestricted exchange can introduce unnecessary prefixes or undesirable forwarding paths. Administrators should define which routes are eligible for redistribution and use filtering where appropriate. After configuration, the resulting routing tables and advertisements should be reviewed to confirm that required destinations are reachable without introducing unintended routing behavior.
Question 322
Which protocol is commonly used as an interior gateway protocol in enterprise networks?
- OSPF
- BGP
- DHCP
- DNS
Correct Answer: 1
Explanation
OSPF is commonly used as an interior gateway protocol for exchanging routing information within an organization’s routing domain. It uses a link-state approach in which routers maintain topology information and calculate routes based on that information. BGP is primarily used for exchanging routing information between autonomous systems, while DHCP and DNS provide addressing and name-resolution services. In an SD-WAN deployment, OSPF can provide dynamic reachability information that works alongside SD-WAN path-selection policies. Administrators troubleshooting OSPF should examine neighbor relationships, interface participation, areas, advertisements, and the resulting routing table.
Question 323
What does an OSPF adjacency allow neighboring routers to do?
- Exchange routing information
- Perform NAT translation
- Assign DHCP addresses
- Apply QoS classes
Correct Answer: 1
Explanation
An OSPF adjacency allows neighboring routers to establish a routing relationship and exchange link-state information. This information contributes to the topology database used by OSPF to calculate routes. If an expected adjacency does not form, routes learned through that relationship may be unavailable. NAT, DHCP, and QoS perform different functions and are not the purpose of an OSPF adjacency. Administrators troubleshooting adjacency problems should check interface status, IP connectivity, OSPF configuration, area parameters, timers, authentication where applicable, and whether the neighboring devices can successfully communicate using the expected routing interface.
Question 324
An OSPF neighbor is not forming an adjacency. Which item should be investigated?
- Monitor brightness
- OSPF interface and neighbor configuration
- Browser bookmarks
- Keyboard layout
Correct Answer: 2
Explanation
OSPF interface and neighbor configuration should be investigated when an expected adjacency does not form. Administrators should verify that the interfaces are operational and participating in OSPF and that required parameters such as area configuration and addressing are compatible. Basic IP reachability should also be confirmed because routing protocol communication depends on underlying connectivity. Browser bookmarks, keyboard layout, and monitor brightness have no effect on OSPF adjacency formation. A structured check of interface status, addressing, OSPF parameters, and neighbor state can help isolate whether the problem is caused by connectivity or protocol configuration.
Question 325
What is the purpose of BGP route advertisements?
- To communicate reachable prefixes to BGP peers
- To assign VLAN identifiers
- To measure packet loss
- To create DHCP scopes
Correct Answer: 1
Explanation
BGP route advertisements communicate reachable prefixes and associated routing information to BGP peers. These advertisements allow neighboring BGP systems to learn which destinations are available through a particular routing domain or path. The receiving device can then evaluate the information according to BGP’s decision process and configured policies. VLAN identifiers, packet-loss measurements, and DHCP scopes serve unrelated purposes. When troubleshooting BGP reachability, administrators should verify that the expected prefix is being advertised, accepted by the peer, and installed into the appropriate routing information after route-selection rules are applied.
Question 326
What can prevent a BGP-learned route from appearing in the active routing table?
- A preferred competing route or routing-policy decision
- A monitor configuration
- A browser setting
- A keyboard shortcut
Correct Answer: 1
Explanation
A preferred competing route or routing-policy decision can prevent a BGP-learned route from appearing as the active route. A device may receive a BGP prefix successfully while another route has a better preference according to the relevant routing process. Administrators should therefore distinguish between a route being learned and a route being selected for forwarding. When investigating this situation, review BGP information, competing routes, path attributes, administrative preferences, and routing policies. Monitor configuration, browser settings, and keyboard shortcuts do not influence route installation or selection.
Question 327
Why should route filtering be applied carefully?
- Incorrect filtering can remove routes required for connectivity
- It automatically improves application performance
- It creates additional WAN circuits
- It disables NAT
Correct Answer: 1
Explanation
Route filtering should be applied carefully because an incorrect filter can prevent required prefixes from being accepted or advertised. This may cause destinations to become unreachable even though the underlying network connections remain operational. Administrators should identify the routes that must be exchanged and verify filter behavior in both directions where appropriate. Route filtering does not create WAN circuits, disable NAT, or automatically improve application performance. After implementing a filter, administrators should inspect routing advertisements and active routing tables to confirm that necessary routes remain available and that unwanted prefixes are excluded.
Question 328
Which routing control can limit the prefixes advertised to a neighboring routing domain?
- Route filtering
- DNS resolution
- QoS classification
- DHCP relay
Correct Answer: 1
Explanation
Route filtering can limit the prefixes advertised to a neighboring routing domain. This provides administrators with control over which destinations are exposed through a routing relationship and helps prevent unnecessary or unintended route propagation. Filtering is especially useful when multiple routing domains or protocols are connected through redistribution or BGP peering. DNS resolution, QoS classification, and DHCP relay perform different functions and do not control route advertisements. Administrators should test filtering carefully because overly restrictive rules can remove legitimate reachability, while insufficient filtering can allow unwanted routes to propagate.
Question 329
Which routing concept determines the preferred path when several valid routes exist?
- Route selection
- DNS caching
- VLAN tagging
- DHCP leasing
Correct Answer: 1
Explanation
Route selection determines which route is preferred when several valid routing choices are available. The exact decision process depends on the routing protocol and configured routing policies. Factors such as prefix specificity, route preference, protocol metrics, and protocol-specific attributes can influence the final selection. DNS caching resolves names but does not select packet-forwarding routes, while VLAN tagging and DHCP leasing address different networking functions. Administrators troubleshooting unexpected forwarding should examine all candidate routes and understand why one route was selected over another rather than assuming that route availability alone determines forwarding.
Question 330
A routing table contains multiple routes to the same destination. What should be examined to understand the selected route?
- The route’s preference and relevant selection attributes
- The workstation wallpaper
- Browser history
- Monitor size
Correct Answer: 1
Explanation
The route’s preference and relevant selection attributes should be examined when multiple routes exist for the same destination. Depending on the routing source, route selection can consider prefix length, administrative preference, metrics, BGP attributes, or other policy controls. Administrators should compare the available routes rather than examining only the active entry. This is especially important in environments using multiple providers or routing protocols. Workstation wallpaper, browser history, and monitor size have no effect on route selection. Understanding why a route won allows administrators to determine whether the result is expected or caused by an incorrect policy.
Question 331
What is a key advantage of using dynamic routing instead of relying exclusively on static routes?
- Dynamic protocols can adapt to topology changes
- Dynamic routing removes all security controls
- Dynamic routing eliminates IP addressing
- Dynamic routing guarantees unlimited bandwidth
Correct Answer: 1
Explanation
Dynamic routing protocols can adapt routing information when network topology or connectivity changes, reducing the need for administrators to manually modify every affected route. This is useful in SD-WAN environments where WAN availability can change and multiple sites may exchange routes dynamically. Dynamic routing does not eliminate IP addressing or security controls, and it cannot guarantee unlimited bandwidth. Administrators should still design routing policies carefully and verify convergence behavior. Dynamic routing works alongside SD-WAN path selection, so both the availability of routes and the suitability of network paths should be considered during troubleshooting.
Question 332
What should be checked when a dynamically learned route is not present after a WAN recovery?
- Routing neighbor state and route advertisements
- Browser bookmarks
- Monitor resolution
- Keyboard settings
Correct Answer: 1
Explanation
Routing neighbor state and route advertisements should be checked when a dynamically learned route does not return after WAN connectivity is restored. The physical circuit may be operational while the routing relationship remains down or the expected prefix is not being advertised. Administrators should verify interface status, neighbor relationships, protocol state, received advertisements, and the active routing table. Browser bookmarks, monitor resolution, and keyboard settings are unrelated. This layered approach can identify whether the missing route is caused by an incomplete routing-session recovery, an advertisement problem, a filter, or a route-selection issue.
Question 333
Which action helps validate that route redistribution is working as intended?
- Compare expected prefixes with routing advertisements and tables
- Change workstation display settings
- Disable all QoS rules
- Remove application definitions
Correct Answer: 1
Explanation
Comparing expected prefixes with routing advertisements and routing tables helps validate whether route redistribution is working as intended. Administrators should confirm that required routes are being exported from the source routing domain, received by the destination domain, and installed when appropriate. They should also verify that filtering or routing policies have not unintentionally blocked the prefixes. Changing workstation settings or removing application definitions does not validate redistribution and can introduce unrelated problems. Reviewing both advertisements and resulting routing tables provides evidence about where the redistribution process may be failing.
Question 334
Why can uncontrolled route redistribution create routing problems?
- It can propagate unnecessary or conflicting routes
- It automatically encrypts all traffic
- It increases circuit bandwidth
- It disables application classification
Correct Answer: 1
Explanation
Uncontrolled route redistribution can propagate unnecessary or conflicting routes between routing domains. This may influence forwarding decisions unexpectedly and can contribute to routing loops, suboptimal paths, or excessive routing information depending on the topology. Administrators should therefore control redistribution using appropriate policies and filters. Encryption, circuit bandwidth, and application classification are not automatically changed by redistribution. A well-designed redistribution strategy identifies exactly which prefixes should cross each routing boundary and prevents routes from being reintroduced into their original domain in a way that could create instability.
Question 335
Which BGP information is particularly useful when investigating why one path was preferred over another?
- Path attributes
- DNS records
- VLAN descriptions
- DHCP lease times
Correct Answer: 1
Explanation
BGP path attributes are particularly useful when investigating why one BGP path was preferred over another. Attributes provide information used by the BGP decision process and can be influenced by routing policy. When multiple providers or peers advertise the same destination, administrators should compare the relevant attributes and determine how the configured policies affect route selection. DNS records, VLAN descriptions, and DHCP lease times do not determine BGP path preference. Reviewing the BGP table together with the active routing table helps establish whether the selected path matches the intended routing design.
Question 336
What does a BGP peer primarily exchange after establishing a session?
- Routing information
- QoS classes
- DHCP addresses
- Security-zone definitions
Correct Answer: 1
Explanation
After a BGP session is established, BGP peers exchange routing information such as reachable prefixes and associated path information. This information allows each system to build knowledge of available destinations and evaluate routes according to the BGP decision process and configured policies. QoS classes, DHCP addresses, and security-zone definitions are managed by different network functions and are not the primary information exchanged through BGP. When troubleshooting route exchange, administrators should verify the session state, advertised prefixes, received prefixes, filtering, and route-selection behavior to determine whether the expected information is being exchanged.
Question 337
Which condition can cause application traffic to fail even when routing is correct?
- Security Policy or NAT processing can still block or alter the flow
- Correct routing guarantees every application works
- Routing automatically disables Security Policy
- NAT never affects application traffic
Correct Answer: 1
Explanation
Correct routing establishes a forwarding possibility but does not guarantee successful application communication. Security Policy can block the session, while NAT can modify addressing in ways that affect connectivity if translation is not designed correctly. Application identification, path-selection conditions, and service availability can also influence the final result. Administrators should therefore avoid treating a valid route as proof that the complete traffic flow is working. A layered troubleshooting process should verify routing first and then examine security, NAT, application classification, path eligibility, and return traffic to locate the actual failure.
Question 338
What should be verified if an application can reach a local subnet but not a remote subnet?
- Remote route availability and applicable security or NAT rules
- Monitor brightness
- Browser font
- Keyboard layout
Correct Answer: 1
Explanation
Remote route availability and applicable security or NAT rules should be verified when an application can reach a local subnet but cannot reach a remote subnet. Local connectivity indicates that some basic networking functions are working, but the remote destination may require a missing route, an incorrect next hop, an unavailable overlay, or policy processing that differs from local traffic. Administrators should examine destination routing, tunnel or WAN availability, Security Policy, NAT, and path-selection conditions. Monitor brightness, browser fonts, and keyboard layouts have no relationship to remote network reachability.
Question 339
Why is end-to-end validation important after changing routing or SD-WAN policy?
- It confirms that the intended configuration produces the expected traffic behavior
- It guarantees that future failures cannot occur
- It permanently increases bandwidth
- It removes the need for monitoring
Correct Answer: 1
Explanation
End-to-end validation confirms that a routing or SD-WAN policy change produces the intended traffic behavior. A configuration can appear correct while still failing because of an incorrect route, policy match, security rule, NAT behavior, tunnel state, or unavailable path. Administrators should validate representative traffic after changes and compare actual forwarding behavior with the design requirements. Validation does not guarantee that future failures cannot occur or increase physical bandwidth. Continuous monitoring remains important because network conditions can change after deployment. Effective validation therefore combines configuration review with actual operational testing.
Question 340
A routing change is complete, but users report that an application still uses an unexpected WAN path. What should be examined?
- Only the user’s browser
- Only the physical cable
- The effective route, application match, and Path Policy conditions
- The monitor’s display settings
Correct Answer: 3
Explanation
The effective route, application match, and Path Policy conditions should all be examined when an application continues using an unexpected WAN path after a routing change. Routing determines destination reachability, while SD-WAN policy can influence which eligible transport is used for application traffic. The application must also be correctly identified for an application-specific policy to apply. Administrators should compare the active routing information with the effective Path Policy and available path conditions. Examining only a physical cable or workstation settings would overlook the policy and routing interactions that can determine the actual forwarding behavior.