Practice Free 300-715 Exam Online Questions
A Cisco ISE administrator needs to ensure that guest endpoint registrations are only valid for one day When testing the guest policy flow, the administrator sees that the Cisco ISE does not delete the endpoint in the Guest Endpoints identity store after one day and allows access to the guest network after that period.
Which configuration is causing this problem?
- A . The Endpoint Purge Policy is set to 30 days for guest devices
- B . The RADIUS policy set for guest access is set to allow repeated authentication of the same device
- C . The length of access is set to 7 days in the Guest Portal Settings
- D . The Guest Account Purge Policy is set to 15 days
A
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/ise/1-3/admin_guide/b_ise_admin_guide_13/b_ise_admin_guide_sample_chapter_01101.html#:~:text=Cisco%20ISE%2C%20by%20default%2C%20deletes,5000%20endpoints%20every%20three%20minute s.
In a standalone Cisco ISE deployment, which two personas are configured on a node? (Choose two)
- A . publisher
- B . administration
- C . primary
- D . policy service
- E . subscriber
B, D
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/ise/2-0/admin_guide/b_ise_admin_guide_20/b_ise_admin_guide_20_chapter_010.html
What is a function of client provisioning?
- A . Client provisioning ensures that endpoints receive the appropriate posture agents.
- B . Client provisioning checks a dictionary attribute with a value.
- C . Client provisioning ensures an application process is running on the endpoint.
- D . Client provisioning checks the existence, date, and versions of the file on a client.
A
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/ise/1-2/user_guide/ise_client_prov.html#:~:text=After%20Cisco%20ISE%20classifies%20a,packages%20an d%20profiles%2C%20if%20necessary.
Which portal is used to customize the settings for a user to log in and download the compliance module?
- A . Client Profiling
- B . Client Endpoint
- C . Client Provisioning
- D . Client Guest
Which portal is used to customize the settings for a user to log in and download the compliance module?
- A . Client Profiling
- B . Client Endpoint
- C . Client Provisioning
- D . Client Guest
Refer to the exhibit:
Which command is typed within the CU of a switch to view the troubleshooting output?
- A . show authentication sessions mac 000e.84af.59af details
- B . show authentication registrations
- C . show authentication interface gigabitethemet2/0/36
- D . show authentication sessions method
Which command displays all 802 1X/MAB sessions that are active on the switch ports of a Cisco Catalyst switch?
- A . show authentication sessions output
- B . Show authentication sessions
- C . show authentication sessions interface Gi 1/0/x
- D . show authentication sessions interface Gi1/0/x output
Which two actions occur when a Cisco ISE server device administrator logs in to a device? (Choose two)
- A . The device queries the internal identity store
- B . The Cisco ISE server queries the internal identity store
- C . The device queries the external identity store
- D . The Cisco ISE server queries the external identity store.
- E . The device queries the Cisco ISE authorization server
Which are two characteristics of TACACS+? (Choose two)
- A . It uses TCP port 49.
- B . It combines authorization and authentication functions.
- C . It separates authorization and authentication functions.
- D . It encrypts the password only.
- E . It uses UDP port 49.
An engineer is configuring a posture policy for Windows 10 endpoints and wants to ensure that users in each AD group have different conditions to meet to be compliant.
What must be done to accomplish this task?
- A . identify The users groups needed for different policies and create service conditions to map each one to its posture requirement
- B . Configure a simple condition for each AD group and use it in the posture policy for each use case
- C . Use the authorization policy within the policy set to group each AD group with their respective posture policy
- D . Change the posture requirements to use an AD group lor each use case then use those requirements in the posture policy