nerdexam
Cisco

300-430 · Question #62

A network engineer is configuring a Cisco AireOS WLC environment for central web authentication using Cisco ISE. The controllers are configured using auto-anchor for the guest network. Which three…

The correct answer is C. UDP/1812-1813 open to ISE D. downloadable preauth ACL on ISE E. local preauth ACL on WLC. For central web authentication with Cisco ISE in a Cisco AireOS WLC environment using auto- anchor for the guest network, the foreign WLC must have UDP ports 1812 and 1813 open to ISE for RADIUS authentication and accounting. Additionally, a downloadable preauth ACL on ISE is…

Wireless Security and Mobility

Question

A network engineer is configuring a Cisco AireOS WLC environment for central web authentication using Cisco ISE. The controllers are configured using auto-anchor for the guest network. Which three components must be implemented for the foreign WLC? (Choose three.)

Options

  • ADHCP RADIUS profiling enabled.
  • BHTTP RADIUS profiling enabled.
  • CUDP/1812-1813 open to ISE
  • Ddownloadable preauth ACL on ISE
  • Elocal preauth ACL on WLC
  • FWLAN Layer 2 security

How the community answered

(51 responses)
  • A
    24% (12)
  • B
    10% (5)
  • C
    61% (31)
  • F
    6% (3)

Explanation

For central web authentication with Cisco ISE in a Cisco AireOS WLC environment using auto- anchor for the guest network, the foreign WLC must have UDP ports 1812 and 1813 open to ISE for RADIUS authentication and accounting. Additionally, a downloadable preauth ACL on ISE is required to define the permissions for the guest user before authentication, and a local preauth ACL on the WLC is needed to restrict or allow traffic prior to authentication.

Topics

#central web authentication#Cisco ISE#auto-anchor#foreign WLC

Community Discussion

No community discussion yet for this question.

Full 300-430 Practice