300-715 Implementing and Configuring Cisco Identity Services Engine (SISE)

Loading demo links...

Showing 10–12 of 15 questions

Question 10 (New Update)

An organization is adding nodes to their Cisco ISE deployment and has two nodes designated as primary and secondary PAN and MnT nodes. The organization also has four PSNs An administrator is adding two more PSNs to this deployment but is having problems adding one of them What is the problem?

Select an option, then click Submit answer.

  • The new nodes must be set to primary prior to being added to the deployment

  • The current PAN is only able to track a max of four nodes

  • Only five PSNs are allowed to be in the Cisco ISE cube if configured this way.

  • One of the new nodes must be designated as a pxGrid node

Question 11 (Policy Enforcement)

A network engineer is configuring Cisco TrustSec and needs to ensure that the Security Group Tag is being transmitted between two devices.

Where in the Layer 2 frame should this be verified?

Select an option, then click Submit answer.

  • payload

  • 802.1 AE header

  • CMD field

  • 802.1Q field

Question 12 (New Update)

A network administrator notices that after a company-wide shut down, many users cannot connect their laptops to the corporate SSID. What must be done to permit access in a timely manner?

Select an option, then click Submit answer.

  • Authenticate the user's system to the secondary Cisco ISE node and move this user to the primary with the renewed certificate.

  • Connect this system as a guest user and then redirect the web auth protocol to log in to the network.

  • Add a certificate issue from the CA server, revoke the expired certificate, and add the new certificate in system.

  • Allow authentication for expired certificates within the EAP-TLS section under the allowed protocols.