300-445 Question 23
Select 2An enterprise network assurance strategy requires continuous monitoring of traffic between branch offices and a central data center. To ensure comprehensive visibility and compliance with security requirements, where should you deploy network assurance agents?
- A
At the branch office edge devices connecting to the WAN
- B
Inside the central data center near the core switches
- C
At the Internet Service Provider’s (ISP) edge routers
- D
On the virtual machines hosting critical applications
- E
At the endpoints used by employees in the branch offices
Show answer and explanation
Correct answers: A, B
Explanation
To meet the network assurance and security requirements for monitoring traffic between branch offices and the central data center, agents must be strategically deployed at both the branch office edge devices and near the core switches in the central data center. These locations provide comprehensive visibility into WAN traffic and ensure compliance with security policies. Other options, such as ISP edge routers, virtual machines, or endpoints, are either impractical or do not align with the scenario's requirements.
- A. Correct.
Deploying agents at the branch office edge devices ensures traffic entering and exiting the branch is monitored, allowing for visibility into WAN traffic and potential bottlenecks or security breaches.
- B. Correct.
Deploying agents near the core switches in the central data center provides visibility into traffic flows between the branch offices and data center, ensuring compliance and identifying anomalies.
- C. Incorrect.
ISPs manage their own infrastructure, and deploying agents here is not feasible or relevant for enterprise-specific assurance and security monitoring.
- D. Incorrect.
While monitoring virtual machines is important, it does not provide visibility into the network traffic between branch offices and the central data center, which is the focus of this scenario.
- E. Incorrect.
Monitoring endpoints directly is not scalable or effective for enterprise network assurance strategies, especially for WAN and data center traffic.