nerdexam
Cisco

300-715 · Question #367

An engineer must provide network access using a Cisco ISE policy that matches the identity group of endpoints unrecognized by any Cisco ISE profilers and manually adds the endpoints to a new…

The correct answer is D. endpoint MAC address. In Cisco ISE, to enforce a policy for endpoints that are not recognized by any profiler and need to be manually added to a specific identity group (e.g., "legacy devices"), the MAC address of the endpoint must be configured. The MAC address serves as the unique identifier for…

Policy Enforcement

Question

An engineer must provide network access using a Cisco ISE policy that matches the identity group of endpoints unrecognized by any Cisco ISE profilers and manually adds the endpoints to a new identity group named legacy devices. These configurations were performed on the new endpoint page:

  • configured profiling policy
  • configured the legacy devices identity group

What must be configured next to complete the configuration?

Options

  • Aendpoint operating system
  • Bendpoint device name
  • Cendpoint description
  • Dendpoint MAC address

How the community answered

(41 responses)
  • A
    7% (3)
  • B
    2% (1)
  • C
    2% (1)
  • D
    88% (36)

Explanation

In Cisco ISE, to enforce a policy for endpoints that are not recognized by any profiler and need to be manually added to a specific identity group (e.g., "legacy devices"), the MAC address of the endpoint must be configured. The MAC address serves as the unique identifier for the device, allowing Cisco ISE to apply the desired policy and assign the endpoint to the appropriate identity

Topics

#Cisco ISE#Endpoint identification#Identity groups#Manual endpoint entry

Community Discussion

No community discussion yet for this question.

Full 300-715 Practice