
Cisco Certified Network Professional Service Provider
The Cisco Certified Network Professional (CCNP) Service Provider certification validates your ability to configure, verify, and optimize next-generation service provider IP network infrastructures. This professional-level credential is designed for network engineers who architect and operate service provider networks, covering core architecture, services, automation, QoS, security, and network assurance. Earning it demonstrates the advanced skills needed to manage complex service provider environments and opens the path to expert-level CCIE certification.
869 practice questions · Updated 2026-07-30
350-501 Curriculum
Every domain, objective, and concept the 350-501 exam measures.
- Metro Ethernet Architecture
- MPLS Architecture
- Unified MPLS
- Segment Routing (SR)
- Segment Routing Traffic Engineering (SRTE)
- Segment Routing IPv6 (SRv6)
- xDSL Technologies
- DWDM Technology
- DOCSIS Technology
- TDM Technology
- xPON Technologies
- Packet Core Architecture
- RAN Fronthaul Transport
- ORAN Transport
- Routed Optical Network
- IOS architecture
- IOS XE architecture
- IOS XR architecture
- Comparison of IOS, IOS XE, and IOS XR
- NFV infrastructure components
- NFV architecture and reference points
- VNF lifecycle management
- VNF resource requirements and performance
- Container fundamentals
- Container orchestration
- Application hosting models
- Application hosting on NFV
- MPLS QoS Pipe Model
- MPLS QoS Short Pipe Model
- MPLS QoS Uniform Model
- MPLS TE QoS MAM
- MPLS TE QoS RDM
- MPLS TE QoS CBTS
- MPLS TE QoS PBTS
- MPLS TE QoS DS-TE
- DiffServ QoS Model
- IntServ QoS Model
- Trust Boundaries in Enterprise and SP Environments
- IPv6 Flow Label
- Control Plane Protection Techniques (LPTS and CoPP)
- BGP TTL Security and Protocol Authentication
- BGP Prefix Suppression
- LDP Security (Authentication and Label Allocation Filtering)
- BGPsec
- BGP Flowspec
- Traceback
- AAA and TACACS
- RestAPI security
- DDoS
- uRPF operation and configuration
- uRPF caveats and troubleshooting
- ACL fundamentals for data plane
- ACL design and implementation
- RTBH concept and trigger
- RTBH configuration with BGP
- MACsec fundamentals
- MACsec configuration and verification
- IS-IS route advertisement fundamentals
- IS-IS area addressing and NETs
- IS-IS Level 1 and Level 2 routing
- IS-IS single topology
- IS-IS multitopology
- IS-IS metric types and configuration
- IS-IS metric propagation and route selection
- OSPF neighbor adjacency states
- OSPF neighbor discovery and hello protocol
- OSPF adjacency requirements
- OSPF neighbor relationship types
- OSPF route advertisement process
- OSPF LSA types
- OSPF flooding and synchronization
- OSPF multiarea design
- OSPF route types in multiarea
- OSPF area addressing and summarization
- OSPF virtual links
- OSPF metric calculation
- OSPF metric types for external routes
- BGP path selection overview
- Highest weight
- Highest local preference
- Locally originated routes
- Shortest AS path
- Origin type
- Lowest MED
- Prefer eBGP over iBGP
- Lowest IGP metric to next hop
- Maximum paths and load balancing
- Tie-breaking rules
- BGP Neighbor Configuration
- BGP Neighbor States and Timers
- Prefix Advertisement Fundamentals
- BGP Address Family Configuration
- BGP Path Selection Algorithm
- BGP Attributes Manipulation
- BGP Route Redistribution
- BGP Additional Paths
- BGP PIC (Prefix Independent Convergence)
- Routing Policy Language (RPL) Basics
- Route Map Configuration
- BGP Policy Implementation
- OSPF Policy Implementation
- IS-IS Policy Implementation
- Policy Application and Verification
- BGP neighbor adjacency troubleshooting
- OSPF neighbor adjacency troubleshooting
- IS-IS neighbor adjacency troubleshooting
- BGP route advertisement troubleshooting
- OSPF route advertisement troubleshooting
- IS-IS route advertisement troubleshooting
- NAT44
- NAT64
- CGNAT
- MAP-T
- DS Lite
- NSF (Non-Stop Forwarding)
- Graceful Restart
- NSR (Non-Stop Routing)
- BFD (Bidirectional Forwarding Detection)
- Link Aggregation
- LDP sync
- LDP session protection
- LDP neighbor discovery and establishment
- LDP neighbor states and parameters
- Unified MPLS architecture
- Inter-AS and inter-area MPLS options
- MPLS OAM tools
- MPLS OAM fault management
- IS-IS extensions for TE
- OSPF extensions for TE
- RSVP-TE signaling
- RSVP-TE path selection and setup
- RSVP-TE resource reservation
- Fast Reroute (FRR) overview
- FRR backup path computation
- FRR protection mechanisms
- Segment types
- SR control plane with BGP
- SR control plane with OSPF
- SR control plane with IS-IS
- Segment routing traffic engineering
- TI-LFA
- PCE-PCC architectures
- Flexible algorithm
- SRv6 locator
- SRv6 micro-segment
- SRv6 encapsulation
- SRv6 interworking gateway
- EVPN Overview
- EVPN Components and Operation
- EVPN Route Types
- EVPN Multihoming and Redundancy
- Inter-AS VPN Models
- Inter-AS VPN Configuration and Operation
- Carrier Supporting Carrier (CSC) Overview
- CSC Implementation and Operation
- Multicast VPN (mVPN) Overview
- mVPN Signaling and Data Plane
- mVPN Profiles and Inter-AS Operation
- E-Line service
- E-Tree service
- E-Access service
- E-LAN service
- IEEE 802.1ad (QinQ)
- IEEE 802.1ah (MAC-in-MAC)
- ITU G.8032 Ethernet Ring Protection
- Ethernet OAM protocols
- Connectivity Fault Management (CFM)
- Ethernet Link OAM (IEEE 802.3ah)
- Performance monitoring (Y.1731)
- VLAN tag manipulation techniques
- QinQ tag manipulation
- VLAN translation
- Intra-AS VPN architecture
- Route targets and route distinguishers
- MP-BGP VPNv4 route exchange
- VRF configuration
- PE-CE routing protocols
- MPLS label stack for VPN
- Shared services concept
- Extranet VPN design
- Internet access via L3VPN
- Route leaking and filtering
- PIM-SM
- PIM-SSM
- PIM-BIDIR
- PIMv6
- IGMP v1/v2/v3
- MLD
- Classification and marking fundamentals
- Classification techniques
- Marking mechanisms
- Congestion avoidance techniques
- Traffic policing
- Traffic shaping
- Policing vs. shaping comparison
- Programmable API Overview
- REST API Fundamentals
- Cisco NX-API
- Cisco IOS XE RESTCONF and NETCONF
- Cisco IOS XR APIs
- Cisco DNA Center APIs
- Cisco Meraki APIs
- Cisco SD-WAN vManage APIs
- Cisco APIC APIs
- Authentication and Security in APIs
- REST API fundamentals
- HTTP methods and status codes
- Authentication and authorization
- API endpoints and URL structure
- Request and response payloads
- Interpreting external scripts
- Error handling and troubleshooting
- NSO Overview
- NSO Architecture
- Service Models
- Service Lifecycle Management
- NSO and Network Automation
- Purpose of data modeling languages
- YANG as a data modeling language
- Benefits of using YANG
- High-level principles of YANG
- Configuration management tools overview
- Ansible fundamentals
- Ansible playbooks and YAML
- Ansible for network devices
- Terraform fundamentals
- Terraform configuration language (HCL)
- Terraform for network infrastructure
- Comparison of Ansible and Terraform
- ZTP Overview
- ZTP Process
- DHCP-based ZTP
- Configuration File Delivery
- Secure ZTP Mechanisms
- PKI and Certificates in ZTP
- Secure Boot and Image Verification
- ZTP Troubleshooting
- gRPC and gNMI Overview
- Dial-in and Dial-out Configuration
- TCP Transport Configuration
- TLS Certificate Configuration
- mTLS Certificate Configuration
- Certificate Management and Validation
- NetFlow/IPFIX fundamentals
- NetFlow/IPFIX configuration
- Flow record and exporter configuration
- Flow monitor application
- NetFlow/IPFIX verification
- Troubleshooting NetFlow/IPFIX
- NETCONF protocol overview
- RESTCONF protocol overview
- NETCONF configuration operations
- RESTCONF resource operations
- NETCONF and RESTCONF datastores
- YANG data modeling
- NETCONF configuration verification
- RESTCONF configuration verification
- NETCONF and RESTCONF authentication and security
- Troubleshooting NETCONF and RESTCONF
- SNMP versions and architecture
- SNMPv2c configuration
- SNMPv3 security models
- SNMPv3 configuration
- SNMP MIBs and OIDs
- SNMP traps and informs
- SNMP verification commands
- SNMP troubleshooting
Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for 350-501, so none is invented.