350-401 Virtualization Practice Question
A network administrator is configuring a Cisco IOS-XE router to support virtual routing and forwarding (VRF) for a customer. The administrator wants to ensure that traffic from the customer's VRF can reach the internet through a global routing table. Which feature should be configured to allow communication between the VRF and the global routing table?
⚠ Common exam trap
The trap here is thinking that NAT alone can connect a VRF to the global table; NAT translates addresses but does not provide the necessary routing information.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Route leaking
Route leaking allows routes to be exchanged between VRFs, including the global routing table. By configuring route leaking, you can import routes from the global table into the VRF and export routes from the VRF to the global table. This enables communication between the VRF and the global table, allowing traffic to reach the internet. Other features like NAT or MPLS L3VPN do not provide this local routing capability.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
VXLAN EVPN
Why it's wrong here
VXLAN EVPN is a data center overlay technology that uses BGP EVPN for control plane and VXLAN for data plane. It is not used to connect a VRF to the global routing table on a single router. The scenario requires a local routing feature, not an overlay technology, so VXLAN EVPN is not applicable.
- ✗
VRF-aware NAT
Why it's wrong here
VRF-aware NAT allows translation of IP addresses within a VRF context, but it does not by itself enable routing between a VRF and the global table. NAT can be used in conjunction with route leaking, but the primary feature for exchanging routes between a VRF and the global table is route leaking. Without route leaking, NAT alone would not provide the necessary routing information.
- ✗
MPLS Layer 3 VPN
Why it's wrong here
MPLS Layer 3 VPN is a service provider technology used to interconnect customer sites over an MPLS network. It is not used to enable communication between a VRF and the global routing table on a single router. While MPLS L3VPN uses VRFs, it does not provide the local route leaking required for the scenario.
- ✓
Route leaking
Why this is correct
Route leaking is the process of importing routes from one VRF into another, including the global routing table. By configuring route targets or using static routes with the global keyword, you can leak routes between a VRF and the global table. This allows traffic from the VRF to be routed to the internet via the global table, provided that the global table has a route to the destination.
Visual reference
Go deeper
Related to this question
About these practice questions
This 350-401 question is part of Courseiva's 1,923-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Cisco exam blueprint
This 350-401 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 350-401 exam.