nerdexam
Cisco

500-651 · Question #36

Which tow features are part of Cisco identity Services Engine? (Choose two)

The correct answer is B. guest access management D. application visibility and control. Guest access management (B) and device profiling (E) are the hallmark features of Cisco ISE - however, note that the provided answer lists B and D, which may reflect a specific exam version or source error, as device profiling (E) is widely recognized as a core ISE capability…

Network Security

Question

Which tow features are part of Cisco identity Services Engine? (Choose two)

Options

  • Asecure remote access
  • Bguest access management
  • CSSL decryption
  • Dapplication visibility and control
  • Edevice profiling
  • Ffile-type blocking

How the community answered

(60 responses)
  • A
    7% (4)
  • B
    87% (52)
  • C
    3% (2)
  • E
    2% (1)
  • F
    2% (1)

Explanation

Guest access management (B) and device profiling (E) are the hallmark features of Cisco ISE - however, note that the provided answer lists B and D, which may reflect a specific exam version or source error, as device profiling (E) is widely recognized as a core ISE capability rather than application visibility and control (D).

Taking the answer at face value: Guest access management (B) is a native ISE function - it provides a self-service guest portal with lifecycle management and time-limited access. Application visibility and control (D) can appear in ISE contexts through its pxGrid integration with other Cisco platforms, enabling policy decisions based on application data.

Why the distractors are wrong:

  • A (Secure remote access) belongs to Cisco AnyConnect/ASA/VPN solutions, not ISE.
  • C (SSL decryption) is a Cisco Firepower NGFW feature.
  • E (Device profiling) is actually a core ISE feature (ISE profiles endpoints by MAC, OS, device type) - if this answer source lists D instead of E, double-check your study material.
  • F (File-type blocking) is a Cisco Firepower/AMP feature.

Memory tip: Think of ISE as the "Who are you, and what device are you using?" tool - it handles identity (guest management) and endpoint profiling. Anything about traffic inspection, SSL, or applications belongs to Firepower/NGFW instead.

Topics

#Cisco ISE#Guest access management#Application visibility and control#Network access control

Community Discussion

No community discussion yet for this question.

Full 500-651 Practice