Exams > Cisco > 300-430: Implementing Cisco Enterprise Wireless Networks (300-430 ENWLSI)
300-430: Implementing Cisco Enterprise Wireless Networks (300-430 ENWLSI)
Page 6 out of 19 pages Questions 51-60 out of 182 questions
Question#51

An engineer is implementing profiling for BYOD devices using Cisco ISE. When using a distributed model, which persona must the engineer configure with the profiling service?

  • A. Device Admin Node
  • B. Primary Admin Node
  • C. Monitor Node
  • D. Policy Services Node
Discover Answer Hide Answer

D

Question#52

DRAG DROP -
The network management team in a large shopping center has detected numerous rogue APs from local coffee shops that are broadcasting SSIDs. All of these
SSIDs have names starting with ATC (for example, ATC302, ATC011, and ATC566). A wireless network engineer must appropriately classify these SSIDs using the Rogue Rules feature. Drag and drop the options from the left onto the categories in which they must be used on the right. Not all options are used.
Select and Place:

Discover Answer Hide Answer


Question#53

What must be configured on ISE version 2.1 BYOD when using Single SSID?

  • A. open authentication
  • B. 802.1x
  • C. no authentication
  • D. WPA2
Discover Answer Hide Answer

B

Question#54

A wireless engineer must implement a corporate wireless network for a large company in the most efficient way possible. The wireless network must support 32
VLANs for 300 employees in different departments. Which solution must the engineer choose?

  • A. Configure a second WLC to support half of the APs in the deployment.
  • B. Configure one single SSID and implement Cisco ISE for VLAN assignment according to different user roles.
  • C. Configure different AP groups to support different VLANs, so that all of the WLANs can be broadcast on both radios.
  • D. Configure 16 WLANs to be broadcast on the 2.4-GHz band and 16 WLANs to be broadcast on the 5.0-GHz band.
Discover Answer Hide Answer

B

Question#55

Which feature on the Cisco Wireless LAN Controller must be present to support dynamic VLAN mapping?

  • A. FlexConnect ACL
  • B. VLAN name override
  • C. CCKM/OKC
  • D. AAA override
Discover Answer Hide Answer

D

Question#56

Which three properties are used for client profiling of wireless clients? (Choose three.)

  • A. HTTP user agent
  • B. DHCP
  • C. MAC OUI
  • D. hostname
  • E. OS version
  • F. IP address
Discover Answer Hide Answer

ABC

Question#57

Which command set configures a Cisco Catalyst 9800 Series Wireless Controller so that the client traffic enters the network at the AP switch port?
A.

B.

C.

D.

Discover Answer Hide Answer

D

Question#58

What is the default IEEE 802.1x AP authentication configuration on a Cisco Catalyst 9800 Series Wireless Controller?

  • A. EAP-PEAP with 802.1x port authentication
  • B. EAP-TLS with 802.1x port authentication
  • C. EAP-FAST with CAPWAP DTLS + port authentication
  • D. EAP-FAST with CAPWAP DTLS
Discover Answer Hide Answer

C

Question#59

An engineer must implement rogue containment for an SSID. What is the maximum number of APs that should be used for containment?

  • A. 1
  • B. 2
  • C. 3
  • D. 4
Discover Answer Hide Answer

D
Reference:
https://www.cisco.com/c/en/us/td/docs/wireless/technology/roguedetection_deploy/Rogue_Detection.html

Question#60

An engineer is following the proper upgrade path to upgrade a Cisco AireOS WLC from version 7.3 to 8.9. Which two ACLs for Cisco CWA must be configured when upgrading from the specified codes? (Choose two.)

  • A. Permit 0.0.0.0 0.0.0.0 any DNS any
  • B. Permit 0.0.0.0 0.0.0.0 UDP DNS any
  • C. Permit 0.0.0.0 0.0.0.0 UDP any DNS
  • D. Permit any any any
  • E. Permit 0.0.0.0 0.0.0.0 UDP any any
Discover Answer Hide Answer

BC
Reference:
https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/115732-central-web-auth-00.html

chevron rightPrevious Nextchevron right