500-651 · Question #36
Which tow features are part of Cisco identity Services Engine? (Choose two)
The correct answer is B. guest access management D. application visibility and control. Guest access management (B) and device profiling (E) are the hallmark features of Cisco ISE - however, note that the provided answer lists B and D, which may reflect a specific exam version or source error, as device profiling (E) is widely recognized as a core ISE capability…
Question
Which tow features are part of Cisco identity Services Engine? (Choose two)
Options
- Asecure remote access
- Bguest access management
- CSSL decryption
- Dapplication visibility and control
- Edevice profiling
- Ffile-type blocking
How the community answered
(60 responses)- A7% (4)
- B87% (52)
- C3% (2)
- E2% (1)
- F2% (1)
Explanation
Guest access management (B) and device profiling (E) are the hallmark features of Cisco ISE - however, note that the provided answer lists B and D, which may reflect a specific exam version or source error, as device profiling (E) is widely recognized as a core ISE capability rather than application visibility and control (D).
Taking the answer at face value: Guest access management (B) is a native ISE function - it provides a self-service guest portal with lifecycle management and time-limited access. Application visibility and control (D) can appear in ISE contexts through its pxGrid integration with other Cisco platforms, enabling policy decisions based on application data.
Why the distractors are wrong:
- A (Secure remote access) belongs to Cisco AnyConnect/ASA/VPN solutions, not ISE.
- C (SSL decryption) is a Cisco Firepower NGFW feature.
- E (Device profiling) is actually a core ISE feature (ISE profiles endpoints by MAC, OS, device type) - if this answer source lists D instead of E, double-check your study material.
- F (File-type blocking) is a Cisco Firepower/AMP feature.
Memory tip: Think of ISE as the "Who are you, and what device are you using?" tool - it handles identity (guest management) and endpoint profiling. Anything about traffic inspection, SSL, or applications belongs to Firepower/NGFW instead.
Topics
Community Discussion
No community discussion yet for this question.