300-715 Exam Questions
419 real 300-715 exam questions with expert-verified answers and explanations. Page 9 of 9.
- Question #401Network Access Device Administration
What is an advantage of TACACS+ versus RADIUS authentication when reviewing reports in Cisco ISE?
TACACS+ vs RADIUSAAA ProtocolsCommand AccountingNetwork Device Administration - Question #402Network Access Device Administration
What is a difference between RADIUS versus TACACS+ with regards to packet encryption?
RADIUS encryptionTACACS+ encryptionAAA protocols - Question #403Network Access Device Administration
Drag and Drop Question A network engineer must add a Cisco switch named HQ-IDF100 to Cisco ISE for TACACS+ device administration with a shared secret of PASSWORD1 and an IP address...
Cisco ISETACACS+Device AdministrationNAD Configuration - Question #404Profiler
What is the default port used by Cisco ISE for NetFlow version 9 probe?
Cisco ISENetFlow v9Probe PortProfiler - Question #405Web Auth and Guest Services
An engineer must create and sign a new certificate for all the portals in a Cisco ISE environment of a company. The company reports that wildcard certificates are blocked in the en...
Cisco ISECertificatesSAN (Subject Alternative Name)Portals - Question #406Architecture and Deployment
Which media type must be used for zero-touch provisioning on a Cisco ISE hardware appliance?
ISE ProvisioningZero-Touch ProvisioningHardware Appliance - Question #407Policy Enforcement
Drag and Drop Question Drag and drop the CLI commands from the bottom onto the boxes in the code to enable 802.1x authentication and MAB on the same interface of a Cisco switch. No...
802.1XMABNetwork Access ControlSwitch Configuration - Question #408Policy Enforcement
An administrator must authenticate Cisco Secure Client users using a secure token against an LDAP server to grant wireless network access in a Cisco ISE deployment. These configura...
EAP-GTCSecure Token AuthenticationCisco Secure ClientLDAP Integration - Question #409Policy Enforcement
Drag and Drop Question An engineer must configure Cisco TrustSec in Cisco ISE. The engineer completes the Active Directory integration but must create a security group. Drag and dr...
Cisco TrustSecCisco ISE ConfigurationSecurity Group ManagementActive Directory Integration - Question #410Web Auth and Guest Services
An administrator must change the authentication method from local accounts to SAMIL for wireless guest users in a Cisco ISE deployment. Using the SAML protocol, the guest portal mu...
SAMLCisco ISEGuest PortalIdentity Provider - Question #411Web Auth and Guest Services
An engineer is configuring a Sponsor portal in Cisco ISE. The authentication flow must go to an external source that uses Kerberos. Which type of external database must be used to...
ISE Sponsor PortalExternal Identity StoresKerberos AuthenticationActive Directory - Question #412Web Auth and Guest Services
An engineer must change the message that appears when a device is added to blocklist in Cisco ISE. The new message needs to contain static and dynamic content. These configurations...
Cisco ISEPortal CustomizationBlocklist PortalDevice Portal - Question #413Profiler
An administrator is editing a csv list of endpoints and wants to reprofile some of the devices indefinitely before importing the list into Cisco ISE. Which field and Boolean value...
Cisco ISE Endpoint ManagementEndpoint ProfilingStatic AssignmentCSV Import - Question #414
An administrator must restrict access to the IP address of an application based on the browser version of the endpoint. Cisco ISE profiling services and quest portal access must be...
- Question #415Profiler
An engineer is performing a bulk import of printer endpoints into a Cisco ISE local database by using LDAP. Which LDAP field must be configured to ensure that devices are not profi...
Cisco ISEEndpoint ProfilingLDAP IntegrationBulk Import - Question #416Architecture and Deployment
What is used by the CA to issue a certificate to an endpoint?
Certificate Authority (CA)PKICertificate TemplateCertificate Issuance - Question #417Network Access Device Administration
An engineer is deploying a new Cisco ISE environment for a company. The company wants the deployment to use TACACS+. The engineer verifies that Cisco ISE has a Device Administratio...
TACACS+Cisco ISEDevice AdministrationService Enablement - Question #418Network Access Device Administration
A company is deploying new Cisco switches on a local network. The network engineer must configure TACACS+ between the switches and Cisco ISE. What configuration value is mandatory...
TACACS+Cisco ISEShared SecretNAD Administration - Question #419Network Access Device Administration
An engineer must deploy device administration using Cisco ISE. Each department requires its own groups and privileges within Cisco ISE, and some departments only need access to spe...
Cisco ISEDevice AdministrationTACACS+Authentication