hardMultiple Select
300-410 Practice Question: Which TWO statements about EEM applet debugging…
Which TWO statements about EEM applet debugging and verification are correct? (Choose TWO.)
⚠ Common exam trap
Many candidates confuse 'available' policies with 'registered' policies; many candidates assume 'show event manager policy available' displays configured applets, but it actually lists policies that are available in the system, not those that are actively registered.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
The 'debug event manager action cli' command enables debugging output for CLI actions executed by EEM applets.
Option B is correct because 'debug event manager action cli' specifically turns on debug output for CLI actions that EEM applets execute, letting you see the exact commands run and their results. Option C is correct because 'show event manager history events' displays the recent event history, showing which events fired and triggered applets, which is useful for verifying applet triggering. Option A is wrong because 'show event manager policy available' lists the EEM policies/applets available to be registered on the device, not all configured applets. Option D is wrong because 'show event manager policy active' shows policies that are currently registered and active, not everything that has run recently. Option E is wrong because 'show event manager applet' is not the correct syntax for verifying EEM applets; the valid commands use 'show event manager policy' or 'show event manager history'.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
The command 'show event manager policy available' displays all configured EEM applets on the device.
Why it's wrong here
'show event manager policy available' lists policy files registered on the device, including those not yet bound to any event, so it does not display configured applets. It is the right command for confirming which policy files have been uploaded before registering them.
- ✓
The 'debug event manager action cli' command enables debugging output for CLI actions executed by EEM applets.
Why this is correct
The `debug event manager action cli` command targets the CLI action handler specifically, producing output each time an applet runs a CLI command. This satisfies the stem's verification requirement by confirming whether the applet's CLI actions execute and what they return, rather than debugging event detection or applet registration.
- ✓
The 'show event manager history events' command displays a log of recent events that have triggered applets.
Why this is correct
The `show event manager history events` command queries the EEM history buffer, which records each event that matched an applet's event detector, including timestamps and event type. This directly satisfies the stem's verification requirement, confirming which events fired and triggered applets without enabling debug-level logging.
- ✗
The 'show event manager policy active' command shows all applets that are currently running or have run recently.
Why it's wrong here
'show event manager policy active' lists registered policies eligible to run, not applets that are currently executing or recently executed; it shows registration state, not run history. It is the correct command for verifying which policies are registered and active on the device.
- ✗
The 'show event manager applet' command is not a valid IOS command.
Why it's wrong here
The command exists and works: 'show event manager applet' displays registered EEM applets, their event triggers and status, so denying its validity is factually wrong. It tempts candidates who confuse EEM verification with policy-level commands such as 'show event manager policy registered', which lists Tcl policies rather than applets.
Go deeper
Related to this question
About these practice questions
One of 1,401 original 300-410 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Cisco exam blueprint
This 300-410 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 300-410 exam.