nerdexam
Cisco

700-765 · Question #36

Which tow features are part of Cisco identity Services Engine? (Choose two)

The correct answer is B. guest access management D. application visibility and control. Cisco Identity Services Engine (ISE) delivers guest access management and application visibility and control as part of its policy-based network access capabilities.

Cisco Security Product Solutions

Question

Which tow features are part of Cisco identity Services Engine? (Choose two)

Options

  • Asecure remote access
  • Bguest access management
  • CSSL decryption
  • Dapplication visibility and control
  • Edevice profiling
  • Ffile-type blocking

How the community answered

(19 responses)
  • B
    95% (18)
  • E
    5% (1)

Why each option

Cisco Identity Services Engine (ISE) delivers guest access management and application visibility and control as part of its policy-based network access capabilities.

Asecure remote access

Secure remote access via VPN is handled by Cisco AnyConnect paired with ASA or Firepower headends; ISE provides posture assessment for remote sessions but is not the access solution itself.

Bguest access managementCorrect

Guest access management is a primary ISE capability, providing customizable guest portals, sponsor-based approval workflows, and full guest lifecycle management for temporary network users.

CSSL decryption

SSL decryption is a function of next-generation firewalls such as Cisco Firepower Threat Defense, not a capability provided natively by ISE.

Dapplication visibility and controlCorrect

Cisco ISE provides application visibility and control by integrating with Cisco's TrustSec and pxGrid ecosystem, enabling application-aware policy enforcement across the network based on user and device context.

Edevice profiling

Device profiling, while associated with ISE in some contexts, is not one of the two features this question identifies as primary ISE capabilities; the focus here is on guest access and application-aware policy enforcement.

Ffile-type blocking

File-type blocking is a threat defense feature associated with Cisco Firepower and Cisco Secure Malware Analytics (AMP), not part of ISE's identity and access control feature set.

Concept tested: Cisco ISE guest access and application visibility features

Source: https://www.cisco.com/c/en/us/products/security/identity-services-engine/index.html

Topics

#Cisco ISE#identity services#guest access#application visibility

Community Discussion

No community discussion yet for this question.

Full 700-765 Practice