nerdexam
Cisco

300-715 · Question #1

Which two fields are available when creating an endpoint on the context visibility page of Cisco IS? (Choose two )

The correct answer is A. Policy Assignment C. Identity Group Assignment. When manually creating an endpoint on the Context Visibility page in Cisco ISE, administrators can assign the endpoint to a specific Policy and an Identity Group.

Policy Enforcement

Question

Which two fields are available when creating an endpoint on the context visibility page of Cisco IS? (Choose two )

Options

  • APolicy Assignment
  • BEndpoint Family
  • CIdentity Group Assignment
  • DSecurity Group Tag
  • EIP Address

How the community answered

(41 responses)
  • A
    90% (37)
  • B
    5% (2)
  • D
    2% (1)
  • E
    2% (1)

Why each option

When manually creating an endpoint on the Context Visibility page in Cisco ISE, administrators can assign the endpoint to a specific Policy and an Identity Group.

APolicy AssignmentCorrect

Policy Assignment is a field available to manually assign a specific authorization policy to an endpoint directly from the Context Visibility page in Cisco ISE. This allows for immediate policy enforcement for the manually created endpoint.

BEndpoint Family

Endpoint Family is a classification derived from profiling rules, not a field directly available for manual input when creating an endpoint.

CIdentity Group AssignmentCorrect

Identity Group Assignment is a field available to assign the endpoint to an existing Identity Group, which helps in grouping similar endpoints for easier management and policy application within Cisco ISE. Grouping by identity is a fundamental aspect of access control.

DSecurity Group Tag

Security Group Tag (SGT) is assigned as part of an authorization policy result, not a field manually assigned when creating an endpoint on this page.

EIP Address

IP Address is typically discovered or learned by ISE and is a property of an endpoint, but not a primary field for creating an endpoint entry in this context; MAC address is more common for initial identification.

Concept tested: Cisco ISE Context Visibility endpoint creation fields

Source: https://www.cisco.com/c/en/us/td/docs/security/ise/2-2/admin_guide/b_ise_admin_guide_22/b_ise_admin_guide_22_chapter_0100.html#concept_3593BB8129754407B12C28DFCE7A8380

Topics

#Cisco ISE#Context Visibility#Endpoint Management#Policy Assignment

Community Discussion

No community discussion yet for this question.

Full 300-715 Practice