300-410 Infrastructure Security Practice Question
A network engineer is implementing Control Plane Policing (CoPP) on a Cisco IOS router to protect the route processor from excessive traffic. The engineer has created a class map named 'CRITICAL' that matches BGP traffic and a policy map named 'COPP-POLICY' that applies a police rate of 1000000 bps with a conform-action transmit and exceed-action drop. After applying the policy map to the control plane, the engineer notices that BGP sessions are flapping. Which action should the engineer take to resolve the issue?
⚠ Common exam trap
The trap here is assuming that any BGP flap under CoPP is due to a misconfiguration, but often it is simply an insufficient policer rate for the actual traffic volume.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Increase the police rate in the policy map to accommodate the BGP traffic.
The BGP sessions are flapping because the CoPP policer is dropping legitimate BGP traffic due to a rate limit that is too low. Increasing the police rate allows the necessary BGP traffic to pass, stabilizing the sessions. The other options either disable policing, apply it incorrectly, or remove protection, none of which address the root cause.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Increase the police rate in the policy map to accommodate the BGP traffic.
Why this is correct
BGP sessions may flap if the police rate is too low and legitimate BGP traffic is being dropped. Increasing the police rate allows more BGP traffic to be transmitted, preventing session flaps. The engineer should monitor the actual BGP traffic rate and adjust the policer accordingly.
- ✗
Change the exceed-action to transmit and set a lower conform-action rate.
Why it's wrong here
Changing the exceed-action to transmit would effectively disable policing, allowing all traffic and defeating the purpose of CoPP. Setting a lower conform-action rate would worsen the issue by dropping more BGP traffic. This does not resolve the flapping.
- ✗
Remove the class map from the policy map and rely on default CoPP settings.
Why it's wrong here
Removing the class map would eliminate policing for BGP traffic, leaving the control plane unprotected. Default CoPP settings may not be present or may not suit the network's needs. This does not solve the flapping and reduces security.
- ✗
Apply the policy map to the data plane interfaces instead of the control plane.
Why it's wrong here
CoPP is specifically applied to the control plane to protect the route processor. Applying the policy to data plane interfaces would not protect the control plane and could disrupt all data traffic. It does not address the BGP flapping caused by control plane policing.
Visual reference
Go deeper
Related to this question
About these practice questions
Courseiva writes every 300-410 question from scratch — 1,401 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Cisco exam blueprint
This 300-410 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 300-410 exam.