DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

Free Cisco 350-501 SPCOR Practice Questions 2026 Part1

Are you preparing for the Cisco 350-501 certification exam? SPOTO offers the Cisco 350-501 Premium File; all questions are aligned with the latest exam content and come with expert-provided answers. Our question banks cover the latest question types, core concepts, and detailed explanations, helping you familiarize yourself with the exam format and difficulty level. Whether you are reviewing core concepts or simulating a real exam environment, these resources will rapidly boost your confidence and readiness.
For over two decades, SPOTO has successfully helped numerous IT professionals secure their ideal positions at Fortune 500 companies. Download now to start practicing efficiently and ensure a high score on the actual exam. Don't miss this opportunity to pass your certification exam with ease!
Take other online exams

Question #1
A network engineer must enable the helper router to terminate the OSPF graceful restart process if it detects any changes in the LSA.Which command enables this feature?
A. nsf ietf helper disable
B. nsf cisco helper disable
C. nsf ietf helper strict-lsa-checking
D. nsf cisco enforce global
View answer
Correct Answer: C

View The Updated 350-501 Exam Questions

SPOTO Provides 100% Real 350-501 Exam Questions for You to Pass Your 350-501 Exam!

Question #2
Refer to the exhibit. A network operator needs to shut down interface Gi0/0/0/2 for maintenance. What occurs to the interface states of Gi0/0/0/0 and Gi0/0/0/1?
A. Gi0/0/0/1 and Gi0/0/0/0 become active
B. Gi0/0/0/1 and Gi0/0/0/0 remain standby
C. Gi0/0/0/0 becomes active; Gi0/0/0/1 remains standby
D. Gi0/0/0/1 becomes active; Gi0/0/0/0 remains standby
View answer
Correct Answer: D
Question #3
Which statement about the Cisco MPLS TE forwarding adjacency feature is true?
A. It enables the MPLS core to use EIGRP as the routing protocol
B. It enables the Cisco MPLS TE tunnel to be advertised into the running IGP
C. It enables the tailend router to advertise routes to the headend router over the tunnel
D. It enables the headend and tailend routers to establish a bidirectional tunnel
View answer
Correct Answer: B
Question #4
Refer to the exhibit. An organization s network recently experienced several significant outages due to device failures. The network administrator just moved the network devices to a new central data center, and packets are switched using labels. The administrator Is now implementing NSF on the network to reduce potential risk factors in the event of another outage.Which task must the administrator perform on each router as part of the process?
A. mplement MPLS to forward packets while the RIB updates after a faliover
B. opy the router s existing state information and share the file with its peers to enable BGP soft resets
C. mplement Graceful Restart to mitigate the delay in MPLS LDP synchronization when the IGP starts up
D. emove route filtering to speed repopulation of the link-state database
View answer
Correct Answer: C
Question #5
After you analyze your network environment, you decide to implement a full separation model for Internet access and MPLS L3VPN services.For which reason do you make this decision?
A. It enables EGP and IGP to operate independently
B. It enables you to choose whether to separate or centralize each individual service
C. It is easier to manage a system in which services are mixed
D. It requires only one edge router
View answer
Correct Answer: B
Question #6
Refer to the exhibit. A network operator needs to shut down interface Gi0/0/0/2 for maintenance. What occurs to the interface states of Gi0/0/0/0 and Gi0/0/0/1?
A. Gi0/0/0/1 and Gi0/0/0/0 become active
B. Gi0/0/0/1 and Gi0/0/0/0 remain standby
C. Gi0/0/0/0 becomes active; Gi0/0/0/1 remains standby
D. Gi0/0/0/1 becomes active; Gi0/0/0/0 remains standby
View answer
Correct Answer: D
Question #7
An engineer working for telecommunication company needs to secure the LAN network using a prefix list.Which best practice should the engineer follow when he implements a prefix list?
A. An engineer must identify the prefix list with a number only
B. The final entry in a prefix list must be /32
C. An engineer must include only the prefixes for which he needs to log activity
D. An engineer must use nonsequential sequence numbers in the prefix list so that he can insert additional entries later
View answer
Correct Answer: D
Question #8
Refer to the exhibit:http://www.justcerts.comP-Which statement about the status of the neighbor relationship between R1 and R2 is true?
A. he neighbor relationship is down because the two routers are configured with different area types
B. he neighbor relationship is down because the two routers are in the same subnet
C. he neighbor relationship is up because R2 is level 1 and level 2 router
D. he neighbor relationship is down because R2 is operating as a Level 1 router and the two routers are in different area
View answer
Correct Answer: D
Question #9
What are two factors to consider when implementing NSR High Availability on an MPLS PE router? (Choose two.)
A. It requires all PE-CE sessions to support NSR
B. It requires routing protocol extensions
C. It consumes more memory and CPU resources than NSF
D. It operates normally without NSR support on the PE peers
E. It cannot sync state information across redundant RPs
View answer
Correct Answer: CD
Question #10
Refer to the exhibit:http://www.justcerts.comP-Which statement about the neighbor statements for 192.168.1.1 is true?
A. he router must have TDP configured for the send-label command to operate
B. he neighbor router receives at least four labels from this router
C. he router sends BGP labels for its prefixes to this peer
D. he router sends only a label for the prefix for LoopbackO
View answer
Correct Answer: C
Question #11
Refer to the exhibit. While troubleshooting a connectivity issue on router R2, a network engineer with an employee id: 1234:44:876 notices that although it detects three OSPF links from R1, the OSPF prefixes are missing from the routing table. What is the reason for the problem?
A. The serial interfaces have different MTUs
B. Both loopback interfaces on R1 are configured as stub
C. The subnet masks on the serial interfaces are mismatched
D. The R2 Serial1/0 interface is configured with an IP address, but the R1 Serial1/0 interface is unnumbered
View answer
Correct Answer: D
Question #12
Refer to the exhibit. A network engineer is implementing an OSPF configuration. Based on the output, which statement is true?
A. OSPFv3 does not run for IPv4 on FastEthernet0/0 until IPv6 routing is enabled on the router and IPv6 is enabled on interface FastEthernet0/0
B. In the ospfv3 1 area 1 ipv4 command, area 0 must be configured instead of area 1
C. OSPFv3 cannot be configured for IPv4; OSPFv3 works only for IPv6
D. "IPv6 routing not enabled" is just an informational message and OSPFv3 runs for IPv4 on interface FastEthernet0/0 anyway
View answer
Correct Answer: A
Question #13
Refer to the exhibit. Which type of DDoS attack will be mitigated by this configuration?
A. teardrop attack
B. smurf attack
C. SYN flood
D. SIP INVITE flood attacks
View answer
Correct Answer: B
Question #14
Why do Cisco MPLS TE tunnels require a link-state routing protocol?
A. The link-state database provides segmentation by area, which improves the path-selection process
B. The link-state database provides a data repository from which the tunnel endpoints can dynamically select a source ID
C. Link-state routing protocols use SPF calculations that the tunnel endpoints leverage to implement the tunnel
D. The tunnel endpoints use the link-state database to evaluate the entire topology and determine the best path
View answer
Correct Answer: D
Question #15
Refer to the exhibit. A network operator recently configured BGP FlowSpec for the internal IT network. What will be inferred from the configuration deployed on the network?
A. The policy is configured locally on CSR1 and drops all traffic for TCP ports 80 and 443
B. The policy is configured locally on CSR1 and currently has no active traffic
C. The policy is learned via BGP FlowSpec and drops all traffic for TCP ports 80 and 443
D. The policy is learned via BGP FlowSpec and has active traffic
View answer
Correct Answer: D
Question #16
How much must the MTU be increased when configuring the 802.1q VLAN tag?
A. 2 bytes
B. 4 bytes
C. 8 bytes
D. 12 bytes
View answer
Correct Answer: B
Question #17
Refer to the exhibit. Which statement about the status of the neighbor relationship between R1 and R2 is true?
A. The neighbor relationship is down because the two routers are configured with different area types
B. The neighbor relationship is down because the two routers are in the same subnet
C. The neighbor relationship is up because R2 is level 1 and Ievel 2 router
D. The neighbor relationship is down because R2 is operating as a Level 1 router and the two routers are in different areas
View answer
Correct Answer: D
Question #18
What is the primary purpose of application hosting in a service-provider virtualization environment?
A. to leverage artificial intelligence and other algorithms for use in network-based applications
B. to consolidate multiple applications onto fewer physical network computer devices
C. to provide a secure remote-access portal for service-provider customers to access network applications
D. to provide a platform for running third-party applications directly on network devices
View answer
Correct Answer: D
Question #19
Refer to the exhibit. A network engineer is implementing an OSPF configuration. Based on the output, which statement is true?
A. OSPFv3 does not run for IPv4 on FastEthernet0/0 until IPv6 routing is enabled on the router and IPv6 is enabled on interface FastEthernet0/0
B. In the ospfv3 1 area 1 ipv4 command, area 0 must be configured instead of area 1
C. OSPFv3 cannot be configured for IPv4; OSPFv3 works only for IPv6
D. "IPv6 routing not enabled" is just an informational message and OSPFv3 runs for IPv4 on interface FastEthernet0/0 anyway
View answer
Correct Answer: A
Question #20
You are writing an RPL script to accept routes only from certain autonomous systems. Consider this code:RP/0/RP0/CPU0:router(config-rpl)# if as-path in (ios-regex `.*77$') RP/0/RP0/CPU0:router(config-rpl-if)# passRP/0/RP0/CPU0:router(config-rpl-if)# endifIf you apply this code to BGP filters, which effect does the code have on your router?
A. denies routes from AS 7070
B. allows routes from AS 7077
C. denies routes from AS 7007
D. allows routes from AS 770
View answer
Correct Answer: B
Question #21
What are two factors to consider when implementing NSR High Availability on an MPLS PE router? (Choose two.)
A. It requires all PE-CE sessions to support NSR
B. It requires routing protocol extensions
C. It consumes more memory and CPU resources than NSF
D. It operates normally without NSR support on the PE peers
E. It cannot sync state information across redundant RPs
View answer
Correct Answer: CD
Question #22
Refer to the exhibit. Assume all other configurations are correct and the network is otherwise operating normally.Which conclusion can you draw about the neighbor relationship between routers R1 and R2?
A. The neighbor relationship is up
B. The neighbor relationship will be up only if the two devices have activated the correct neighbor relationships under the IPv4 address family
C. The neighbor is down because the local-as value for R2 is missing in the R1 neighbor statement
D. The neighbor relationship is down because R1 believes R2 is in AS 65012
View answer
Correct Answer: D
Question #23
Refer to the exhibit. R1 and R2 are directly connected with Fast Ethernet interfaces and have the above configuration applied OSPF adjacency is not formed. When the debug ip ospf hello command is issued on R1, these log messages are seen:Which command can be configured on routers R1 and R2 on f0/0 interfaces to form OSPF adjacency?
A. ip ospf network point-to-multipoint non-broadcast
B. ip ospf network non-broadcast
C. ip ospf network broadcast
D. ip ospf network point-to-point
View answer
Correct Answer: D
Question #24
What is the primary purpose of routed optical networks?
A. to provide redundancy for failed network connections by automatically switching to backup paths
B. to convert analog signals to digital signals for transmission over fiber-optic cables
C. to encrypt and secure data traveling across the network
D. to simplify network management by collapsing multiple layers into a single architecture
View answer
Correct Answer: D
Question #25
Refer to the exhibit. Which task completes the configuration?
A. Specify the local-as value in the neighbor statement
B. Specify the source interface in the neighbor statement
C. Specify the maximum number of prefixes that R1 receives from neighbor 192
D. Specify the activate neighbor 192
View answer
Correct Answer: D
Question #26
While implementing TTL security, you issue the PE(config-router-af)#neighbor 2.2.2.2 ttl-security hops 2 command.After you issue this command, which BGP packets does the PE accept?
A. to 2
B. from 2
C. to 2
D. from 2
View answer
Correct Answer: D
Question #27
Company A must increase throughput between two non-IEEE 802.3ad switches located in the access and distribution layers. A network engineer must create a link group with the same speed and duplex. The STP protocol must not block any of the group ports. Which action completes the implementation?
A. Group Ethernet interfaces with mode desirable under the physical interfaces
B. Enable Port Aggregation Protocol with mode auto under the logical group interface
C. Configure a group logical interface with mode active enabled
D. Bundle the physical interfaces with mode lacp configured on each of them
View answer
Correct Answer: A
Question #28
Refer to the exhibit. ISP ASN 65100 provides Internet services to router CE-1 and receives customer prefix 198.18.18.0/24 via eBGP. An administrator for the ISP is now provisioning RTBH services to provide on-demand data-plane security for the customer's IP space. Which route-map configuration must the administrator apply to router RTBH-1 to complete the implementation of RTBH services to CE-1?
A. oute-map RTBH-CUSTOMER-IN permit 10description AS65001match ip address prefix-list AS65001-PREFIXESmatch community 99set local-preference 200set community no-export additiveset ip next-hop 192
B. oute-map RTBH-CUSTOMER-IN permit 10description AS65001match ip address prefix-list AS65001-PREFIXESmatch community 99set local-preference 200set community no-advertise additiveset ip next-hop 192
C. oute-map RTBH-CUSTOMER-IN permit 10description AS65001match ip address prefix-list AS65001-PREFIXESmatch community 99set local-preference 200set community local-as additiveset ip next-hop 192
D. oute-map RTBH-CUSTOMER-IN permit 10description AS65001match ip address prefixlist AS65001-PREFIXESmatch community 99set local-preference 200set community no-advertise additiveset ip next-hop local-addressroute-map RTBH-CUSTOMER-IN deny 65535description DEFAULT DENY
View answer
Correct Answer: A
Question #29
Refer to the exhibit. Which condition must be met by the OSPF peer of router R1 before the two devices can establish communication?
A. The OSPF peer must use clear-text authentication
B. The OSPF peer must be configured as an OSPF stub router
C. The interface on the OSPF peer may have a different key ID, but it must use the same key value as the configured interface
D. The interface on the OSPF peer must use the same key ID and key value as the configured interface
View answer
Correct Answer: D
Question #30
After you analyze your network environment, you decide to implement a full separation model for Internet access and MPLS L3VPN services.For which reason do you make this decision?
A. It enables EGP and IGP to operate independently
B. It enables you to choose whether to separate or centralize each individual service
C. It is easier to manage a system in which services are mixed
D. It requires only one edge router
View answer
Correct Answer: B
Question #31
What are two factors to consider when implementing NSR High Availability on an MPLS PE router? (Choose two.)
A. It requires all PE-CE sessions to support NSR
B. It requires routing protocol extensions
C. It consumes more memory and CPU resources than NSF
D. It operates normally without NSR support on the PE peers
E. It cannot sync state information across redundant RPs
View answer
Correct Answer: CD
Question #32
Refer to the exhibit. BGPsec is implemented on R1, R2, R3, and R4. BGP peering is established between neighboring autonomous systems.Which statement about implementation is true?
A. BGP updates from the iBGP peers are appended with a community of local-as
B. BGP updates from the all BGP peers are appended with a community of no-export
C. BGP updates from the eBGP peers are appended with an additional AS path value that is statically set by the domain administrator
D. BGP updates from the eBGP peers are appended with a BGPsec attribute sequence that includes a public key hash and digital signature
View answer
Correct Answer: D
Question #33
Refer to the exhibit. A network engineer notices that router R2 is failing to install network 172.16.33.1/32 in the routing table. Which configuration must the engineer apply to R2 to fix the problem?
A. R2(config)# access-list 1 permit 172
B. R2(config)# access-list 1 permit 172
C. R2(config)# access-list 1 permit 172
D. R2(config)# access-list 1 permit 172
View answer
Correct Answer: A
Question #34
What is the characteristic of the TI-LFA?
A. t guarantees a loop-free path for all areas configured in OSPF
B. t applies on the area and instance and makes all the interfaces inherit the configuration
C. t applies only on the instance and makes all the interfaces inherit the configuration
D. t guarantees a loop-free path for all interfaces in the OSPF super backbone
View answer
Correct Answer: B
Question #35
Egress PE NAT is being used via a single centralized router to provide Internet access to L3VPN customers.Which description of the NAT operation is true?
A. The NAT table contains a field to identify the inside VRF of a translation
B. Multiple address pools are needed for the same L3VPN because each site has a separate NAT
C. The different L3VPNs using the Internet access must not have IP overlaps internally
D. Users in different VRFs cannot share the same outside global IP address
View answer
Correct Answer: A
Question #36
Refer to the exhibit. ASN 64501 currently reaches the networks under the 10.0.0.0/8 prefix via the North_B router, which is a slow backup link. The administrator of ASN 64502 wants traffic from ASN 64501 to 10.0.0.0/8 to travel via the primary link, North_A.Which change to the network configuration accomplishes this task?
A. Set a higher local preference between North_A and South-A
B. Set a lower MED between North_B and South_B
C. Advertise the 10
D. Set a lower Weight value for incoming traffic on North_A
View answer
Correct Answer: C
Question #37
Refer to the exhibit. Which two statements about the IS-IS topology are true? (Choose two.)
A. R1 and R4 are Level 2 neighbors
B. All four routers are operating as Level 1-2 routers
C. All four routers are operating as Level 2 routers only
D. All four routers are operating as Level 1 routers only
E. R1 and R2 are Level 2 neighbors
View answer
Correct Answer: BE
Question #38
Refer to the exhibit. Router 1 was experiencing a DDoS attack that was traced to interface gigabitethernet0/1.Which statement about this configuration is true?
A. Router 1 accepts all traffic that ingresses and egresses interface gigabitethernet0/1
B. Router 1 drops all traffic that ingresses interface gigabitethernet0/1 that has a FIB entry that exits a different interface
C. Router 1 accepts source addresses that have a match in the FIB that indicates it is reachable through a real interface
D. Router 1 accepts source addresses on interface gigabitethernet0/1 that are private addresses
View answer
Correct Answer: C
Question #39
Refer to the exhibit. An engineer is updating this network to meet these conditions:Area 10 will receive inter-area routes and support mutual redistribution of external routes with the extranet.The ::/0 route is prohibited in Area 10.Area 11 will receive only the ::/0 route from the ABR.External route redistribution is not supported in Area 11.The ABR in Area 11 will advertise no interarea routes.Which two configurations must be performed to meet the requirements? (Choose two.)
A. Configure area 10 as nssa on R9 and XR32
B. Configure area 11 as stub no-summary on R7 and as stub on XR31
C. Configure area 11 as nssa no-summary on R7 and as nssa on XR31
D. Configure area 11 as nssa default-information-originate on R7 and as nssa on XR31
E. Configure area 10 as stub on R9 and XR32
View answer
Correct Answer: AB
Question #40
Refer to the exhibit. Which statement about the neighbor statements for 192.168.1.1 is true?
A. The router sends BGP labels for its prefixes to this peer
B. The router must have TDP configured for the send-label command to operate
C. The neighbor router receives at least four labels from this router
D. The router sends only a label for the prefix for Loopback0
View answer
Correct Answer: A
Question #41
Refer to the exhibit. A network operator needs to shut down interface Gi0/0/0/2 for maintenance. What occurs to the interface states of Gi0/0/0/0 and Gi0/0/0/1?
A. Gi0/0/0/1 and Gi0/0/0/0 become active
B. Gi0/0/0/1 and Gi0/0/0/0 remain standby
C. Gi0/0/0/0 becomes active; Gi0/0/0/1 remains standby
D. Gi0/0/0/1 becomes active; Gi0/0/0/0 remains standby
View answer
Correct Answer: D
Question #42
An engineer is trying to implement BGP in a multihomed architecture. What must the engineer configure to influence inbound path selection?
A. A route map with AS-PATH attribute to control the inbound traffic
B. An offset list to set the metric for routes received from neighboring autonomous systems
C. An access list to identify traffic and enable it on both of the provider-facing interfaces
D. A route map with WEIGHT attribute to control the inbound traffic
View answer
Correct Answer: A
Question #43
What is the primary purpose of Secure ZTP?
A. to automate the secure provisioning of network devices during initial deployment
B. to securely and seamlessly encrypt traffic across the entire network
C. to provide real-time threat detection and mitigation for devices in the network
D. to provide secure remote access to network devices for management and troubleshooting
View answer
Correct Answer: A
Question #44
Refer to the exhibit. A network operator needs to shut down interface Gi0/0/0/2 for maintenance. What occurs to the interface states of Gi0/0/0/0 and Gi0/0/0/1?
A. Gi0/0/0/1 and Gi0/0/0/0 become active
B. Gi0/0/0/1 and Gi0/0/0/0 remain standby
C. Gi0/0/0/0 becomes active; Gi0/0/0/1 remains standby
D. Gi0/0/0/1 becomes active; Gi0/0/0/0 remains standby
View answer
Correct Answer: D
Question #45
Which Cisco Software OS uses microkernel architecture?
A. IOS 12
B. IOS
C. IOS 15
D. IOS XR
View answer
Correct Answer: D
Question #46
Which condition must be met for TI-LFA to protect LDP traffic?
A. For single-segment protection, the PQ node must be LDP and SR-capable
B. The protected destination must have an associated LDP label and prefix-SID
C. The point of local repair must be LDP-capable
D. For double-segment protection, the P and Q nodes must be SR-capable
E. Reveal Answer
View answer
Correct Answer: D

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number:
Contact Us