nerdexam
Cisco

700-765 · Question #44

Which feature of Cisco AnyConnect allows pre-login authentication using windows machines, or single sign-on user authentication using Windows logon credentials?

The correct answer is A. Secure Layer-2 Network Access. Cisco AnyConnect's Secure Layer-2 Network Access feature, delivered by the Network Access Manager module, enables pre-login Windows machine authentication and single sign-on using Windows logon credentials.

Cisco Security Product Solutions

Question

Which feature of Cisco AnyConnect allows pre-login authentication using windows machines, or single sign-on user authentication using Windows logon credentials?

Options

  • ASecure Layer-2 Network Access
  • BFlexible AAA Options
  • CDifferentiated Mobile Access
  • DTrusted Network Detection

How the community answered

(52 responses)
  • A
    88% (46)
  • B
    2% (1)
  • C
    8% (4)
  • D
    2% (1)

Why each option

Cisco AnyConnect's Secure Layer-2 Network Access feature, delivered by the Network Access Manager module, enables pre-login Windows machine authentication and single sign-on using Windows logon credentials.

ASecure Layer-2 Network AccessCorrect

The Secure Layer-2 Network Access feature is implemented through the AnyConnect Network Access Manager (NAM) module, which supports Start Before Logon (SBL) so Windows machine credentials authenticate to the network before the user desktop loads, and it also enables single sign-on by passing Windows logon credentials directly to 802.1X wired and wireless authentication.

BFlexible AAA Options

Flexible AAA Options refers to AnyConnect's support for various authentication backends such as RADIUS and LDAP, but does not specifically address pre-login or Windows SSO credential mechanisms.

CDifferentiated Mobile Access

Differentiated Mobile Access refers to per-application VPN and mobile-tailored connectivity features, not pre-login or Windows credential-based single sign-on.

DTrusted Network Detection

Trusted Network Detection automatically connects or disconnects the VPN tunnel based on whether the endpoint is on a trusted network, and has no role in pre-login or Windows credential-based authentication.

Concept tested: AnyConnect Network Access Manager pre-login Windows SSO

Source: https://www.cisco.com/c/en/us/td/docs/security/vpn_client/anyconnect/anyconnect49/administration/guide/b_AnyConnect_Administrator_Guide_4-9/configure-network-access-manager.html

Topics

#AnyConnect#pre-login authentication#SSO#Windows logon

Community Discussion

No community discussion yet for this question.

Full 700-765 Practice