300-715 Dumps

300-715 Free Practice Test

Cisco 300-715: Implementing and Configuring Cisco Identity Services Engine (SISE)

QUESTION 16

When planning for the deployment of Cisco ISE, an organization's security policy dictates that they must use network access authentication via RADIUS. It also states that the deployment provide an adequate amount of security and visibility for the hosts on the network. Why should the engineer configure MAB in this situation?

Correct Answer: C

QUESTION 17

A policy is being created in order to provide device administration access to the switches on a network. There is a requirement to ensure that if the session is not actively being used, after 10 minutes, it will be disconnected. Which task must be configured in order to meet this requirement?

Correct Answer: A
https://www.cisco.com/c/en/us/td/docs/security/ise/2-4/admin_guide/b_ISE_admin_guide_24/m_admin_ac

QUESTION 18

In which two ways can users and endpoints be classified for TrustSec? (Choose Two.)

Correct Answer: AE

QUESTION 19

A security administrator is using Cisco ISE to create a BYOD onboarding solution for all employees who use personal devices on the corporate network. The administrator generates a Certificate Signing Request and signs the request using an external Certificate Authority server. Which certificate usage option must be selected when importing the certificate into ISE?

Correct Answer: C

QUESTION 20

Which two features should be used on Cisco ISE to enable the TACACS+ feature? (Choose two )

Correct Answer: BC