300-715 · Question #178
A network administrator is configuring client provisioning resource policies for client machines and must ensure that an agent pop-up is presented to the client when attempting to connect to the…
The correct answer is A. the client provisioning URL in the authorization policy. To present a client provisioning (posture) agent pop-up to users, the authorization policy result must include a redirect URL pointing to the ISE Client Provisioning Portal. When ISE returns this redirect as part of the authorization, the network device (NAD) applies a…
Question
A network administrator is configuring client provisioning resource policies for client machines and must ensure that an agent pop-up is presented to the client when attempting to connect to the network. Which configuration item needs to be added to allow for this?
Options
- Athe client provisioning URL in the authorization policy
- Ba temporal agent that gets installed onto the system
- Ca remote posture agent proxying the network connection
- Dan API connection back to the client
How the community answered
(28 responses)- A93% (26)
- B4% (1)
- D4% (1)
Explanation
To present a client provisioning (posture) agent pop-up to users, the authorization policy result must include a redirect URL pointing to the ISE Client Provisioning Portal. When ISE returns this redirect as part of the authorization, the network device (NAD) applies a restrictive redirect ACL and the client's HTTP traffic is intercepted and forwarded to the provisioning portal URL. This triggers the browser pop-up that prompts the user to download and install the posture agent. Without the redirect URL in the authorization policy result, clients are never directed to the portal. Temporal agents, remote proxies, and API connections are not the mechanism ISE uses to initiate the client provisioning workflow.
Topics
Community Discussion
No community discussion yet for this question.