Cisco 300-715 Implementing and Configuring Cisco Identity Services Engine SISE Exam Practice Test

Page: 1 / 14
Total 244 questions
Question 1

Which Cisco ISE deployment model is recommended for an enterprise that has over 50,000 concurrent active endpoints?



Answer : C


Question 2

An engineer needs to configure a new certificate template in the Cisco ISE Internal Certificate Authority to prevent BYOD devices from needing to re-enroll when their MAC address changes. Which option must be selected in the Subject Alternative Name field?



Answer : B

The engineer needs to select the option of MAC Address and GUID in the Subject Alternative Name field when configuring a new certificate template in the Cisco ISE Internal Certificate Authority to prevent BYOD devices from needing to re-enroll when their MAC address changes.


Question 3

An administrator must block access to BYOD endpoints that were onboarded without a certificate and have been reported as stolen in the Cisco ISE My Devices Portal. Which condition must be used when configuring an authorization policy that sets DenyAccess permission?



Answer : A

https://www.cisco.com/c/en/us/td/docs/security/ise/2-6/admin_guide/b_ISE_26_admin_guide/b_ISE_admin_26_byod.html


Question 4

What is a difference between TACACS+ and RADIUS in regards to encryption?



Answer : D


Question 5

An administrator is configuring posture assessment in Cisco ISE for the first time. Which two components must be uploaded to Cisco ISE to use Anyconnect for the agent configuration in a client provisioning policy? (Choose two.)



Answer : B, D


Question 6

An engineer is unable to use SSH to connect to a switch after adding the required CLI commands to the device to enable TACACS+. The device administration license has been added to Cisco ISE, and the required policies have been created. Which action is needed to enable access to the switch?



Answer : D


Question 7

What is a difference between RADIUS and TACACS+?



Answer : C


Page:    1 / 14   
Total 244 questions