300-715 · Question #325
A network is going through major hardware upgrades and is using Cisco ISE for network access control. Network devices are being added and removed regularly and the Cisco ISE administrators want to…
The correct answer is C. SNMP trap. To track new network devices being added or removed in Cisco ISE for network access control, SNMP traps must be enabled. SNMP traps provide real-time event-driven notifications to ISE for device status changes.
Question
A network is going through major hardware upgrades and is using Cisco ISE for network access control. Network devices are being added and removed regularly and the Cisco ISE administrators want to track new network devices. Which probe must be enabled to provide this visibility for Cisco ISE?
Options
- ADHCP SPAN
- BSNMP query
- CSNMP trap
- DNetFlow
How the community answered
(23 responses)- A4% (1)
- C91% (21)
- D4% (1)
Why each option
To track new network devices being added or removed in Cisco ISE for network access control, SNMP traps must be enabled. SNMP traps provide real-time event-driven notifications to ISE for device status changes.
DHCP SPAN involves mirroring DHCP traffic for profiling endpoints, which is less efficient for real-time tracking of new device additions or removals compared to event-driven SNMP traps.
SNMP query involves Cisco ISE actively polling devices, which is less efficient for detecting and tracking newly added devices in real-time than reactive SNMP traps.
SNMP traps are the most effective probe for tracking new network devices because they provide event-driven notifications to Cisco ISE when devices connect, disconnect, or undergo status changes. This allows ISE to receive real-time updates about device presence and update its endpoint database accordingly, enhancing visibility.
NetFlow provides data on network traffic flows, useful for analytics and anomaly detection, but not directly for identifying and tracking the addition or removal of network devices.
Concept tested: Cisco ISE profiling probe for new devices
Source: https://www.cisco.com/c/en/us/td/docs/security/ise/3-1/admin_guide/b_ISE_admin_3_1/b_ISE_admin_3_1_chapter_0100.html#ID_506
Topics
Community Discussion
No community discussion yet for this question.