Courseiva
ArchitecturehardMultiple SelectObjective-mapped

350-501 Architecture Practice Question

Which TWO are essential components for deploying EVPN in a service provider network?

⚠ Common exam trap

Cisco often tests the misconception that a specific underlay protocol (like OSPF) is mandatory for EVPN, when in fact only the overlay encapsulation and BGP control plane are essential, while the underlay can be any IP-routed network.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Overlay tunnel encapsulation such as VXLAN or MPLS

A is correct because EVPN requires an overlay tunnel encapsulation to transport Layer 2 frames across the IP/MPLS underlay. VXLAN (RFC 7348) and MPLS (RFC 7432) are the two primary encapsulations used to carry Ethernet frames over the overlay, enabling MAC address learning and forwarding in the EVPN control plane.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Overlay tunnel encapsulation such as VXLAN or MPLS

    Why this is correct

    EVPN requires an overlay for traffic forwarding.

  • OSPF as the underlay routing protocol

    Why it's wrong here

    Any IGP can be underlay; OSPF not mandatory.

  • BGP for MAC/VPN route advertisement

    Why this is correct

    BGP EVPN address family is the control plane.

  • PIM-SM for multicast replication

    Why it's wrong here

    EVPN can use ingress replication or PIM; not essential.

  • RSVP-TE for path computation

    Why it's wrong here

    EVPN uses BGP for control plane, not RSVP.

Quick reference

Access Control Model Comparison

ModelAcronymWho Controls Access?Best For
Discretionary Access ControlDACResource ownerSmall teams, file shares
Mandatory Access ControlMACSystem / security labelsClassified govt / military
Role-Based Access ControlRBACAdministrator (via roles)Enterprise environments
Attribute-Based Access ControlABACPolicy engine (user + resource attributes)Fine-grained, dynamic policies
Rule-Based Access ControlRuBACSystem rules / ACLsFirewall rules, network ACLs

About these practice questions

This 350-501 question is part of Courseiva's 971-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 350-501 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 350-501 exam.