300-715試験無料問題集「Cisco Implementing and Configuring Cisco Identity Services Engine 認定」

Which configuration is required in the Cisco ISE authentication policy to allow Central Web Authentication?

解説: (GoShiken メンバーにのみ表示されます)
An engineer is creating a new authorization policy to give the endpoints access to VLAN 310 upon successful authentication. The administrator tests the 802.1X authentication for the endpoint and sees that it is authenticating successfully. What must be done to ensure that the endpoint is placed into the correct VLAN?

解説: (GoShiken メンバーにのみ表示されます)
An engineer builds a five-node distributed Cisco ISE deployment. The first two deployed nodes are responsible for the primary and secondary administration and monitoring personas.
Which persona configuration is necessary to have the remaining three Cisco ISE nodes serve as dedicated nodes in the Cisco ISE cube that is responsible only for handling the RADIUS and TACACS+ authentication requests, identity lookups, and policy evaluation?

An engineer needs to configure Cisco ISE Profiling Services to authorize network access for IP speakers that require access to the intercom system. This traffic needs to be identified if the ToS bit is set to 5 and the destination IP address is the intercom system. What must be configured to accomplish this goal?

An engineer is starting to implement a wired 802.1X project throughout the campus. The task is for failed authentication to be logged to Cisco ISE and also have a minimal impact on the users.
Which command must the engineer configure?

An administrator is configuring posture assessment in Cisco ISE for the first time. Which two components must be uploaded to Cisco ISE to use Secure Client for the agent configuration in a client provisioning policy? (Choose two.)

An organization wants to split their Cisco ISE deployment to separate the device administration functionalities from the mam deployment. For this to work, the administrator must deregister any nodes that will become a part of the new deployment, but the button for this option is grayed out.
Which configuration is causing this behavior?

解説: (GoShiken メンバーにのみ表示されます)
Which type of identity store allows for creating single-use access credentials in Cisco ISE?

Which two default endpoint identity groups does Cisco ISE create? (Choose two )

解説: (GoShiken メンバーにのみ表示されます)
What is a function of client provisioning?

An administrator for a small network is configuring Cisco ISE to provide dynamic network access to users.
Management needs Cisco ISE to not automatically trigger a CoA whenever a profile change is detected.
Instead, the administrator needs to verify the new profile and manually trigger a CoA.
What must be configuring in the profiler to accomplish this goal?

解説: (GoShiken メンバーにのみ表示されます)
An engineer wants to ease the management of endpoint identity groups from the Cisco ISE GUI.
From the Identity Management menu in Cisco ISE, the engineer must be able to list the endpoint identity groups with a name that contains Android. Which task must the engineer perform?

When configuring Active Directory groups, an administrator is attempting to retrieve a group that has a name that is ambiguous with another group. What must be done so that the correct group is returned?

Which device acts as an authenticator during the 802.1X authentication process?