Courseiva
easyMultiple Choice

350-401 Practice Question: Is a valid AP mode on Cisco 9800 WLCs that allows…

Which of the following is a valid AP mode on Cisco 9800 WLCs that allows the AP to function as a standalone access point without controller management?

⚠ Common exam trap

Cisco often tests the misconception that FlexConnect is only a 'remote office' mode and not a true standalone mode, leading candidates to incorrectly choose Local mode because they assume all APs require constant controller contact.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

FlexConnect mode

FlexConnect mode (option B) is the correct answer because it allows a Cisco AP to switch client traffic locally at the AP and continue forwarding traffic even if the connection to the Cisco 9800 WLC is lost, effectively functioning as a standalone access point without controller management. In this mode, the AP can operate in a 'connected' or 'standalone' state, with the latter providing full local switching and authentication when the CAPWAP tunnel to the controller is down.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Local mode

    Why it's wrong here

    In Local mode, the AP is fully controlled by the WLC; all client traffic is tunneled via CAPWAP from the AP to the WLC, and if the WLC becomes unreachable, the AP cannot forward client data or authenticate new clients. This makes it unsuitable for scenarios expecting standalone survival when WAN connectivity to the controller is lost. So verdict: wrong because it doesn't support local switching or independent operation.

  • ✓

    FlexConnect mode

    Why this is correct

    FlexConnect (formerly Hybrid REAP) lets an AP locally switch client traffic at the edge and can continue to service clients even if the CAPWAP link to the WLC drops, using local authentication and forwarding policies. This 'split-tunnel' or local-switching capability is precisely what enables a remote site to keep working independently when WAN/controller connectivity is unavailable. That's why it's correct.

  • ✗

    Monitor mode

    Why it's wrong here

    Monitor mode converts the AP into a dedicated sensor that uses its radios to passively listen on all channels for intrusion detection and rogue AP scanning, but it does not provide any SSID or client connectivity. It cannot host BSSIDs or forward client frames, so it cannot serve the role described in the question. Thus it's wrong because it doesn't offer any client-serving functionality.

  • ✗

    Sniffer mode

    Why it's wrong here

    Sniffer mode instructs the AP to capture all 802.11 frames on a selected channel and forward those to a remote packet capture display, similar to a wired tap. The AP's radio is exclusively used for monitoring, so no client can associate to it and no user traffic is switched — making it impossible for it to operate as an access point. Therefore it's wrong for a distinct reason: it's a monitoring tool, not a serving mode.

About these practice questions

This 350-401 question is part of Courseiva's 1,923-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 350-401 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 350-401 exam.