Exams > Cisco > 300-715: Implementing and Configuring Cisco Identity Services Engine (300-715 SISE)
300-715: Implementing and Configuring Cisco Identity Services Engine (300-715 SISE)
Page 4 out of 19 pages Questions 31-40 out of 184 questions
Question#31

Which two methods should a sponsor select to create bulk guest accounts from the sponsor portal? (Choose two.)

  • A. Known
  • B. Monthly
  • C. Daily
  • D. Imported
  • E. Random
Discover Answer Hide Answer

AE
Reference:
https://www.cisco.com/c/en/us/td/docs/security/ise/1-3/sponsor_guide/b_spons_SponsorPortalUserGuide_13/ b_spons_SponsorPortalUserGuide_13_chapter_01.html

Question#32

What is a valid guest portal type?

  • A. Sponsor
  • B. Sponsored-Guest
  • C. Captive-Guest
  • D. My Devices
Discover Answer Hide Answer

B
Reference:
https://www.cisco.com/c/en/us/td/docs/security/ise/1-3/admin_guide/b_ise_admin_guide_13/b_ise_admin_guide_sample_chapter_01111.html

Question#33

What is the purpose of the ip http server command on a switch?

  • A. It enables the https server for users for web authentication.
  • B. It enables dot1x authentication on the switch.
  • C. It enables MAB authentication on the switch.
  • D. It enables the switch to redirect users for web authentication.
Discover Answer Hide Answer

C

Question#34

Which advanced option within a WLAN must be enabled to trigger Central Web Authentication for Wireless users on AireOS controller?

  • A. DHCP server
  • B. override Interface ACL
  • C. static IP tunneling
  • D. AAA override
Discover Answer Hide Answer

D
Reference:
https://www.cisco.com/c/en/us/td/docs/wireless/controller/7-4/configuration/guides/consolidated/b_cg74_CONSOLIDATED/ b_cg74_CONSOLIDATED_chapter_010110111.html

Question#35

Which configuration is required in the Cisco ISE authentication policy to allow Central Web Authentication?

  • A. MAB and if user not found, continue
  • B. MAB and if authentication failed, continue
  • C. Dot1x and if authentication failed, continue
  • D. Dot1x and if user not found, continue
Discover Answer Hide Answer

A

Question#36

An engineer is configuring web authentication using non-standard ports and needs the switch to redirect traffic to the correct port.
Which command should be used to accomplish this task?

  • A. permit tcp any any eq <port number>
  • B. ip http port <port number>
  • C. aaa group server radius
  • D. aaa group server radius proxy
Discover Answer Hide Answer

B

Question#37

An engineer is using Cisco ISE and configuring guest services to allow wireless devices to access the network.
Which action accomplishes this task?

  • A. Create the redirect ACL on Cisco ISE and add it to the Cisco ISE Policy.
  • B. Create the redirect ACL on the WLC and add it to the WLC policy.
  • C. Create the redirect ACL on Cisco ISE and add it to the WLC policy.
  • D. Create the redirect ACL on the WLC and add it to the Cisco ISE policy.
Discover Answer Hide Answer

D

Question#38

An engineer is configuring web authentication and needs to allow specific protocols to permit DNS traffic.
Which type of access list should be used for this configuration?

  • A. extended ACL
  • B. reflexive ACL
  • C. numbered ACL
  • D. standard ACL
Discover Answer Hide Answer

A

Question#39

An administrator is adding a switch to a network that is running Cisco ISE and is only for IP Phones. The phones do not have the ability to authenticate via
802.1X.
Which command is needed on each switch port for authentication?

  • A. dot1x system-auth-control
  • B. enable bypass-MAC
  • C. enable network-authentication
  • D. mab
Discover Answer Hide Answer

D

Question#40

A network engineer needs to ensure that the access credentials are not exposed during the 802.1X authentication among components.
Which two protocols should be configured to accomplish this task? (Choose two.)

  • A. PEAP
  • B. EAP-TLS
  • C. EAP-MD5
  • D. EAP-TTLS
  • E. LEAP
Discover Answer Hide Answer

BC

chevron rightPrevious Nextchevron right