Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

300-715 Implementing and Configuring Cisco Identity Services Engine (SISE) v1.1 (300-715 SISE) is now Stable and With Pass Result | Test Your Knowledge for Free

Exams4sure Dumps

300-715 Practice Questions

Implementing and Configuring Cisco Identity Services Engine (SISE) v1.1 (300-715 SISE)

Last Update 15 hours ago
Total Questions : 322

Dive into our fully updated and stable 300-715 practice test platform, featuring all the latest CCNP Security exam questions added this week. Our preparation tool is more than just a Cisco study aid; it's a strategic advantage.

Our free CCNP Security practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about 300-715. Use this test to pinpoint which areas you need to focus your study on.

300-715 PDF

300-715 PDF (Printable)
$54.25
$154.99

300-715 Testing Engine

300-715 PDF (Printable)
$59.5
$169.99

300-715 PDF + Testing Engine

300-715 PDF (Printable)
$74.55
$212.99
Question # 31

Which two task types are included in the Cisco ISE common tasks support for TACACS+ profiles?

(Choose two.)

Options:

A.  

Firepower

B.  

WLC

C.  

IOS

D.  

ASA

E.  

Shell

Discussion 0
Question # 32

A user changes the status of a device to stolen in the My Devices Portal of Cisco IS

E.  

The device was originally onboarded in the BYOD wireless Portal without a certificate. The device is found later, but the user cannot re-onboard the device because Cisco ISE assigned the device to the Blocklist endpoint identity group. What must the user do in the My Devices Portal to resolve this issue?

Options:

A.  

Manually remove the device from the Blocklist endpoint identity group.

B.  

Change the device state from Stolen to Not Registered.

C.  

Change the BYOD registration attribute of the device to None.

D.  

Delete the device, and then re-add the device.

Discussion 0
Question # 33

An engineer is unable to use SSH to connect to a switch after adding the required CLI commands to the device to enable TACACS+. The device administration license has been added to Cisco ISE, and the required policies have been created. Which action is needed to enable access to the switch?

Options:

A.  

The ip ssh source-interface command needs to be set on the switch

B.  

802.1X authentication needs to be configured on the switch.

C.  

The RSA keypair used for SSH must be regenerated after enabling TACACS+.

D.  

The switch needs to be added as a network device in Cisco ISE and set to use TACACS+.

Discussion 0
Question # 34

What should be considered when configuring certificates for BYOD?

An endpoint certificate is mandatory for the Cisco ISE BYOD

Options:

A.  

An Android endpoint uses EST whereas other operation systems use SCEP for enrollment

B.  

The CN field is populated with the endpoint host name.

C.  

The SAN field is populated with the end user name

Discussion 0
Question # 35

An administrator is configuring new probes to use with Cisco ISE and wants to use metadata to help profile the endpoints. The metadata must contain traffic information relating to the endpoints instead of industry-standard protocol information Which probe should be enabled to meet these requirements?

Options:

A.  

NetFlow probe

B.  

DNS probe

C.  

DHCP probe

D.  

SNMP query probe

Discussion 0
Question # 36

An engineer wants to use certificate authentication for endpoints that connect to a wired network integrated with Cisco IS

E.  

The engineer needs to define the certificate field used as the principal username. Which component would be needed to complete the configuration?

Options:

A.  

Authorization rule

B.  

Authorization profile

C.  

Authentication policy

D.  

Authentication profile

Discussion 0
Question # 37

An administrator needs to give the same level of access to the network devices when users are logging into them using TACACS+ However, the administrator must restrict certain commands based on one of three user roles that require different commands How is this accomplished without creating too many objects using Cisco ISE?

Options:

A.  

Create one shell profile and multiple command sets.

B.  

Create multiple shell profiles and multiple command sets.

C.  

Create one shell profile and one command set.

D.  

Create multiple shell profiles and one command set

Discussion 0
Question # 38

The security engineer for a company has recently deployed Cisco ISE to perform centralized authentication of all network device logins using TACACS+ against the local AD domain. Some of the other network engineers are having a hard time remembering to enter their AD account password instead of the local admin password that they have used for years. The security engineer wants to change the password prompt to " Use Local AD Password: " as a way of providing a hint to the network engineers when logging in. Under which page in Cisco ISE would this change be made?

Options:

A.  

Work Centers > Device Administration > Settings > Connection Settings

B.  

Work Centers > Device Administration > Ext Id Sources > Advanced Settings

C.  

The password prompt cannot be changed on a Cisco IOS device

D.  

Work Centers > Device Administration > Network Resources > Network Devices

Discussion 0
Question # 39

What is the purpose of the ip http server command on a switch?

Options:

A.  

It enables the https server for users for web authentication

B.  

It enables MAB authentication on the switch

C.  

It enables the switch to redirect users for web authentication.

D.  

It enables dot1x authentication on the switch.

Discussion 0
Question # 40

An engineer is starting to implement a wired 802.1X project throughout the campus. The task is to ensure that the authentication procedure is disabled on the ports but still allows all endpoints to connect to the network. Which port-control option must the engineer configure?

Options:

A.  

pae-disabled

B.  

force-unauthorized

C.  

auto

D.  

force-authorized

Discussion 0
Get 300-715 dumps and pass your exam in 24 hours!

Free Exams Sample Questions