nerdexam
Cisco

350-701 · Question #606

Which feature is used in a push model to allow for session identification host reauthentication and session termination?

The correct answer is A. CoA request. A Change of Authorization (CoA) request is a feature in a push model that allows an AAA server (like Cisco ISE) to dynamically modify or terminate an authenticated user's session without requiring reauthentication.

Submitted by fatema_kw· Mar 30, 2026Secure Network Access

Question

Which feature is used in a push model to allow for session identification host reauthentication and session termination?

Options

  • ACoA request
  • Bcarrier-grade NAT
  • CAAA attributes
  • DAV pair

How the community answered

(41 responses)
  • A
    90% (37)
  • B
    2% (1)
  • C
    2% (1)
  • D
    5% (2)

Why each option

A Change of Authorization (CoA) request is a feature in a push model that allows an AAA server (like Cisco ISE) to dynamically modify or terminate an authenticated user's session without requiring reauthentication.

ACoA requestCorrect

A Change of Authorization (CoA) request is a RADIUS message sent by an Authentication, Authorization, and Accounting (AAA) server to a network access device (e.g., a switch). It allows the AAA server to dynamically change a client's authorization, re-authenticate a host, or terminate a session (disconnect a user) in a 'push' manner without waiting for the client to initiate a new authentication.

Bcarrier-grade NAT

Carrier-grade NAT (CGN) is a large-scale NAT implementation used by ISPs to conserve IPv4 addresses; it has no relation to session identification or reauthentication.

CAAA attributes

AAA attributes are parameters used within AAA protocols (like RADIUS or TACACS+) to convey information about the user, authentication method, or authorization policies; they are not a mechanism for dynamically pushing session changes.

DAV pair

An AV pair (Attribute-Value pair) is a fundamental data structure used within AAA attributes to define specific characteristics or policies, but it is not a feature for dynamic session management in a push model.

Concept tested: RADIUS Change of Authorization (CoA)

Source: https://www.cisco.com/c/en/us/td/docs/ios/security/secure_access/configuration/guide/sec_secure_access_cg_ios_xe/sec_tacacs_coarequest.html

Topics

#AAA#RADIUS#CoA request#Network Access Control

Community Discussion

No community discussion yet for this question.

Full 350-701 Practice