Cisco 300-715 Practice Test - Questions Answers, Page 19
List of questions
Related questions
An administrator enables the profiling service for Cisco ISE to use for authorization policies while in closed mode. When the endpoints connect, they receive limited access so that the profiling probes can gather information and Cisco ISE can assign the correct profiles. They are using the default values within Cisco ISE. but the devices do not change their access due to the new profile. What is the problem'?
In closed mode, profiling does not work unless CDP is enabled.
The profiling probes are not able to collect enough information to change the device profile
The profiler feed is not downloading new information so the profiler is inactive
The default profiler configuration is set to No CoA for the reauthentication setting
Which RADIUS attribute is used to dynamically assign the inactivity active timer for MAB users from the Cisco ISE node'?
radius-server timeout
session-timeout
idle-timeout
termination-action
An administrator is configuring cisco ISE lo authenticate users logging into network devices using TACACS+ The administrator is not seeing any oí the authentication in the TACACS+ live logs. Which action ensures the users are able to log into the network devices?
Enable the device administration service in the Administration persona
Enable the session services in the administration persona
Enable the service sessions in the PSN persona.
Enable the device administration service in the PSN persona.
DRAG DROP
Drag the steps to configure a Cisco ISE node as a primary administration node from the left into the correct order on the right.
DRAG DROP
Drag the Cisco ISE node types from the left onto the appropriate purposes on the right.
DRAG DROP
An organization wants to implement 802.1X and is debating whether to use PEAP-MSCHAPv2 or PEAP-EAP-TLS for authentication. Drag the characteristics on the left to the corresponding protocol on the right
DRAG DROP
Drag the descriptions on the left onto the components of 802.1X on the right.
DRAG DROP
Drag and drop the description from the left onto the protocol on the right that is used to carry out system authentication, authorization, and accounting.
An engineer is configuring the remote access VPN to use Cisco ISE for AAA and needs to conduct posture checks on the connecting endpoints After the endpoint connects, it receives its initial authorization result and continues onto the compliance scan What must be done for this AAA configuration to allow compliant access to the network?
Configure the posture authorization so it defaults to unknown status
Fix the CoA port number
Ensure that authorization only mode is not enabled
Enable dynamic authorization within the AAA server group
Which two Cisco ISE deployment models require two nodes configured with dedicated PAN and MnT personas? (Choose two.)
three PSN nodes
seven PSN nodes with one PxGrid node
five PSN nodes with one PxGrid node
two PSN nodes with one PxGrid node
six PSN nodes
Question