Courseiva
mediumMultiple SelectObjective-mapped

350-401 Practice Question: Which two statements about SD-WAN policy…

Which two statements about SD-WAN policy architecture are true? (Choose two.)

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Centralized control policies are configured on the vSmart controller and affect route advertisement and path selection.

Centralized control policies are applied on vSmart to influence routing (e.g., path selection), while localized data policies are applied on edge devices for QoS, ACL, and forwarding. App-route policies are a type of centralized data policy. vManage is for configuration, not policy enforcement. Centralized data policies are applied on vSmart, not edge devices.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Centralized control policies are configured on the vSmart controller and affect route advertisement and path selection.

    Why this is correct

    Correct because control policies on vSmart manipulate OMP routes and TLOCs to influence routing decisions.

  • Localized data policies, such as QoS and ACL, are configured on vEdge or cEdge routers and affect traffic forwarding.

    Why this is correct

    Correct because localized policies are applied directly on the edge devices for per-packet actions.

  • Application-aware routing policies are a type of localized control policy that steers traffic based on application performance.

    Why it's wrong here

    Incorrect because app-route policies are centralized data policies, not localized control policies.

  • Centralized data policies are applied on the edge devices to enforce per-tunnel QoS and ACL rules.

    Why it's wrong here

    Incorrect because centralized data policies are applied on vSmart, not on edge devices.

  • vManage is the primary device where all SD-WAN policies are enforced and processed in real time.

    Why it's wrong here

    Incorrect because vManage is the management plane for configuration and monitoring, not for policy enforcement.

Visual reference

Source Router + ACL permit 10.0.0.0/8 deny any Server 10.0.0.5 ✓ 192.168.1.1 ✗ dropped ACLs evaluate top-down; first match wins — implicit deny all at end

About these practice questions

One of 1,175 original 350-401 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 350-401 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 350-401 exam.