nerdexam
Cisco

300-320 · Question #534

Which two modes for deploying cisco Trustsec are valid? Choose two

The correct answer is B. low-impact E. monitor. Cisco TrustSec supports three deployment modes for phased rollout: Monitor mode allows full network access while logging what policy would have enforced, enabling administrators to validate SGT-based policies without disrupting traffic. Low-impact mode deploys a permissive…

Security Services

Question

Which two modes for deploying cisco Trustsec are valid? Choose two

Options

  • Acascade
  • Blow-impact
  • Copen
  • Dhigh availability
  • Emonitor

How the community answered

(40 responses)
  • A
    5% (2)
  • B
    93% (37)
  • D
    3% (1)

Explanation

Cisco TrustSec supports three deployment modes for phased rollout: Monitor mode allows full network access while logging what policy would have enforced, enabling administrators to validate SGT-based policies without disrupting traffic. Low-impact mode deploys a permissive pre-authentication ACL that allows critical traffic (like DHCP and DNS) before a device is authenticated, minimizing disruption during rollout. The third standard mode is 'closed' mode, which blocks all traffic until authentication succeeds. 'Cascade', 'high availability', and 'open' are not valid TrustSec deployment mode names.

Topics

#Cisco TrustSec#802.1X#deployment modes#network access control

Community Discussion

No community discussion yet for this question.

Full 300-320 Practice