300-320 · Question #58
A company has hired an entry-level network administrator for its new data center. The company CIO wants to give the administrator limited access on the newly configured Cisco Nexus 7000. Which…
The correct answer is C. RBAC. RBAC (Role-Based Access Control) is the Cisco feature used to grant limited, role-specific permissions to administrators on Nexus devices.
Question
A company has hired an entry-level network administrator for its new data center. The company CIO wants to give the administrator limited access on the newly configured Cisco Nexus 7000. Which feature should be used to allow limited access?
Options
- ANAC
- BVDC
- CRBAC
- DvPC
How the community answered
(24 responses)- A4% (1)
- C92% (22)
- D4% (1)
Why each option
RBAC (Role-Based Access Control) is the Cisco feature used to grant limited, role-specific permissions to administrators on Nexus devices.
NAC (Network Admission Control) controls whether endpoints are allowed onto the network based on posture, not what commands a logged-in administrator can execute.
VDC (Virtual Device Context) partitions the Nexus 7000 into logical devices but does not itself restrict what an administrator can do within a given context.
RBAC on Cisco Nexus OS allows administrators to define custom roles with specific command and resource permissions, enabling fine-grained access control. A new network administrator can be assigned a role that limits which commands and VDCs they can access without granting full admin rights. This is natively supported on the Nexus 7000 via the 'role' configuration.
vPC (Virtual Port Channel) is a Layer 2 link aggregation technology for eliminating STP blocked ports and has no role in managing administrator access.
Concept tested: Cisco NX-OS Role-Based Access Control (RBAC)
Source: https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus7000/sw/security/config/cisco_nexus7000_security_config_guide/sec_rbac.html
Topics
Community Discussion
No community discussion yet for this question.