300-320 · Question #534
Which two modes for deploying cisco Trustsec are valid? Choose two
The correct answer is B. low-impact E. monitor. Cisco TrustSec supports three deployment modes for phased rollout: Monitor mode allows full network access while logging what policy would have enforced, enabling administrators to validate SGT-based policies without disrupting traffic. Low-impact mode deploys a permissive…
Question
Which two modes for deploying cisco Trustsec are valid? Choose two
Options
- Acascade
- Blow-impact
- Copen
- Dhigh availability
- Emonitor
How the community answered
(40 responses)- A5% (2)
- B93% (37)
- D3% (1)
Explanation
Cisco TrustSec supports three deployment modes for phased rollout: Monitor mode allows full network access while logging what policy would have enforced, enabling administrators to validate SGT-based policies without disrupting traffic. Low-impact mode deploys a permissive pre-authentication ACL that allows critical traffic (like DHCP and DNS) before a device is authenticated, minimizing disruption during rollout. The third standard mode is 'closed' mode, which blocks all traffic until authentication succeeds. 'Cascade', 'high availability', and 'open' are not valid TrustSec deployment mode names.
Topics
Community Discussion
No community discussion yet for this question.