Courseiva
mediumMultiple Choice

350-401 Practice Question: Examine the following partial Cisco IOS-XE…

Examine the following partial Cisco IOS-XE configuration:

interface GigabitEthernet0/1
 switchport mode access
 switchport access vlan 10
 ip access-group ACL_IN in
 spanning-tree portfast

What is the effect of this configuration?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

The port will immediately transition to forwarding state, reducing STP convergence time for end hosts.

The configuration enables PortFast on an access port, allowing it to transition directly to forwarding state, bypassing the listening and learning phases. This is commonly used for end-host ports to avoid delays caused by spanning-tree convergence.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    The port will immediately transition to forwarding state, reducing STP convergence time for end hosts.

    Why this is correct

    spanning-tree portfast moves the access port straight to forwarding, bypassing listening and learning states, so end hosts gain connectivity without waiting for STP convergence. The port remains access in VLAN 10 with ACL_IN applied inbound.

  • ✗

    The port will become a trunk port and participate in VLAN trunking.

    Why it's wrong here

    The interface is explicitly configured as an access port in VLAN 10 via switchport mode access, so it cannot form a trunk or carry tagged VLANs. Trunking is tempting where a switch uplink must carry multiple VLANs, but that requires switchport mode trunk and allowed VLAN lists, absent here.

  • ✗

    The port will use Rapid PVST+ and immediately forward after a link failure.

    Why it's wrong here

    spanning-tree portfast only skips listening and learning states on an access port; it does not select Rapid PVST+ or govern reconvergence after a link failure. Rapid PVST+ is tempting for fast topology recovery, but that requires configuring spanning-tree mode rapid-pvst globally, not portfast on one interface.

  • ✗

    The port will block all inbound traffic due to the ACL.

    Why it's wrong here

    ip access-group ACL_IN in filters inbound traffic according to the ACL's permit and deny entries; it does not unconditionally block everything. Blanket blocking is tempting when an ACL has an implicit deny, but that only drops traffic not explicitly permitted, and the ACL contents are not shown.

Visual reference

SW1 Root Bridge SW2 SW3 BLK DP DP RP RP STP blocks one link to prevent loops DP = Designated Port RP = Root Port BLK = Blocked

About these practice questions

Courseiva writes every 350-401 question from scratch — 1,923 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 350-401 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 350-401 exam.