nerdexam
Cisco

300-715 · Question #293

A user recently had their laptop stolen. IT has ordered a replacement device for the user and was able to obtain the MAC address of the device 04.57:47:34 35 0A from the vendor before it shipped…

The correct answer is D. MAC addresses can be manually added using the + sign under Context Visibility > Endpoints. MAC addresses can be manually added to Cisco ISE for pre-provisioning by navigating to Context Visibility > Endpoints and using the '+' sign.

Policy Enforcement

Question

A user recently had their laptop stolen. IT has ordered a replacement device for the user and was able to obtain the MAC address of the device 04.57:47:34 35 0A from the vendor before it shipped. Which statement regarding adding MAC addresses to Cisco ISE is correct?

Options

  • AMAC addresses can only be manually imported using a .csv file and the import option.
  • BMAC addresses can only be manually imported using the REST API.
  • CMAC addresses can only be allowed after the device has connected to the network.
  • DMAC addresses can be manually added using the + sign under Context Visibility > Endpoints.

How the community answered

(29 responses)
  • A
    7% (2)
  • B
    3% (1)
  • D
    90% (26)

Why each option

MAC addresses can be manually added to Cisco ISE for pre-provisioning by navigating to Context Visibility > Endpoints and using the '+' sign.

AMAC addresses can only be manually imported using a .csv file and the import option.

While CSV import is a valid method for bulk additions, it is not the *only* way to manually add MAC addresses; individual manual entry is also supported.

BMAC addresses can only be manually imported using the REST API.

While the REST API can be used for automation, it is not the *only* way to add MAC addresses; manual GUI entry and CSV import are also available.

CMAC addresses can only be allowed after the device has connected to the network.

MAC addresses can be pre-provisioned in ISE *before* a device connects to the network, which is often done for MAB policies or known devices.

DMAC addresses can be manually added using the + sign under Context Visibility > Endpoints.Correct

Cisco ISE allows administrators to manually add individual MAC addresses for endpoints through the graphical user interface. This is done by navigating to Context Visibility > Endpoints and then clicking the '+' sign to create a new endpoint entry, enabling pre-registration before the device connects to the network.

Concept tested: Cisco ISE manual endpoint (MAC address) management

Source: https://www.cisco.com/c/en/us/td/docs/security/ise/3-1/admin_guide/b_ISE_admin_3_1_new/m_ise_ctx_vis.html

Topics

#Cisco ISE#Endpoint Management#MAC Address#GUI Navigation

Community Discussion

No community discussion yet for this question.

Full 300-715 Practice