Pre-Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

300-715 Implementing and Configuring Cisco Identity Services Engine (SISE) v4.0 (300-715 SISE) is now Stable and With Pass Result | Test Your Knowledge for Free

Exams4sure Dumps

300-715 Practice Questions

Implementing and Configuring Cisco Identity Services Engine (SISE) v4.0 (300-715 SISE)

Last Update 1 day ago
Total Questions : 299

Dive into our fully updated and stable 300-715 practice test platform, featuring all the latest CCNP Security exam questions added this week. Our preparation tool is more than just a Cisco study aid; it's a strategic advantage.

Our free CCNP Security practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about 300-715. Use this test to pinpoint which areas you need to focus your study on.

300-715 PDF

300-715 PDF (Printable)
$48.3
$137.99

300-715 Testing Engine

300-715 PDF (Printable)
$52.5
$149.99

300-715 PDF + Testing Engine

300-715 PDF (Printable)
$65.45
$186.99
Question # 11

What is a characteristic of the UDP protocol?

Options:

A.  

UDP can detect when a server is down.

B.  

UDP offers best-effort delivery

C.  

UDP can detect when a server is slow

D.  

UDP offers information about a non-existent server

Discussion 0
Question # 12

What is an advantage of TACACS+ versus RADIUS authentication when reviewing reports in Cisco ISE?

Options:

A.  

TACACS+ reduces authentication latency, and RADIUS increases latency by adding additional packet headers.

B.  

TACACS+ performs secure communication with IPsec, and RADIUS uses DTLS encryption.

C.  

TACACS+ provides command accounting, and RADIUS combines authentication and authorization.

D.  

TACACS+ uses SSL certificates, and RADIUS does not have encryption.

Discussion 0
Question # 13

What are two differences between the RADIUS and TACACS+ protocols'? (Choose two.)

Options:

A.  

RADIUS is a Cisco proprietary protocol, whereas TACACS+ is an open standard protocol

B.  

TACACS+uses TCP port 49. whereas RADIUS uses UDP ports 1812 and 1813.

C.  

RADIUS offers multiprotocol support, whereas TACACS+ does not

D.  

RADIUS combines authentication and authorization, whereas TACACS+ does not

E.  

RADIUS enables encryption of all the packets, whereas with TACACS+. only the password is encrypted.

Discussion 0
Question # 14

An engineer wants to use certificate authentication for endpoints that connect to a wired network integrated with Cisco IS

E.  

The engineer needs to define the certificate field used as the principal username. Which component would be needed to complete the configuration?

Options:

A.  

Authorization rule

B.  

Authorization profile

C.  

Authentication policy

D.  

Authentication profile

Discussion 0
Question # 15

A network engineer is in the predeployment discovery phase o! a Cisco ISE deployment and must discover the network. There is an existing network management system in the network. Which type of probe must be configured to gather the information?

Options:

A.  

NetFlow

B.  

RADIUS

C.  

SNMP

D.  

NMAP

Discussion 0
Question # 16

An administrator needs to allow guest devices to connect to a private network without requiring usernames and passwords. Which two features must be configured to allow for this? (Choose two.)

Options:

A.  

hotspot guest portal

B.  

device registration WebAuth

C.  

central WebAuth

D.  

local WebAuth

E.  

self-registered guest portal

Discussion 0
Question # 17

An ISE administrator must change the inactivity timer for MAB endpoints to terminate the authentication session whenever a switch port that is connected to an IP phone does not detect packets from the device for 30 minutes. Which action must be taken to accomplish this task?

Options:

A.  

Add the authentication timer reauthenticate server command to the switchport.

B.  

Add the authentication timer inactivity 3600 command to the switchport.

C.  

Change the idle-timeout on the Radius server to 3600 seconds for IP Phone endpoints.

D.  

Configure the session-timeout to be 3600 seconds on Cisco IS

E.  

Discussion 0
Question # 18

Drag the descriptions on the left onto the components of 802.1X on the right.

Question # 18

Options:

Discussion 0
Question # 19

A network engineer must configure BYOD using Cisco IS

E.  

In the deployment, the users must be able to submit CSR through the end devices. Which two features must be enabled to meet the requirement?

(Choose two.)

Options:

A.  

Define a certificate group tag.

B.  

A new BYOD portal must be created.

C.  

A certificate provisioning portal must be configured.

D.  

Cisco ISE Internal CA service must be enabled.

E.  

Add SuperAdmin account into portal admin group.

Discussion 0
Question # 20

An administrator must provide wired network access to unidentified Cisco devices that fail 802.1X authentication. Cisco ISE profiling services must be configured to gather Cisco Discovery Protocol and LLDP endpoint information from a Cisco switch. These configurations were performed:

• configured switches to accept SNMP queries from Cisco ISE

• enabled Cisco Discovery Protocol and LLDP on the switches

• added the switch as a NAD to Cisco ISE

What must be enabled to complete the configuration?

Options:

A.  

SNMP traps on the switch

B.  

SNMP MIBs in Cisco ISE

C.  

SNMP Trap probe in Cisco ISE

D.  

SNMP Query probe in Cisco ISE

Discussion 0
Get 300-715 dumps and pass your exam in 24 hours!

Free Exams Sample Questions