Cisco 300-715 Real Exam Questions
The questions for 300-715 were last updated at Nov 18,2024.
- Exam Code: 300-715
- Exam Name: Implementing and Configuring Cisco Identity Services Engine (SISE)
- Certification Provider: Cisco
- Latest update: Nov 18,2024
Which use case validates a change of authorization?
- A . An authenticated, wired EAP-capable endpoint is discovered
- B . An endpoint profiling policy is changed for authorization policy.
- C . An endpoint that is disconnected from the network is discovered
- D . Endpoints are created through device registration for the guests
A network administrator has just added a front desk receptionist account to the Cisco ISE Guest Service sponsor group. Using the Cisco ISE Guest Sponsor Portal, which guest services can the receptionist provide?
- A . Keep track of guest user activities
- B . Configure authorization settings for guest users
- C . Create and manage guest user accounts
- D . Authenticate guest users to Cisco ISE
Which two values are compared by the binary comparison (unction in authentication that is based on Active Directory?
- A . subject alternative name and the common name
- B . MS-CHAPv2 provided machine credentials and credentials stored in Active Directory
- C . user-presented password hash and a hash stored in Active Directory
- D . user-presented certificate and a certificate stored in Active Directory
What is a valid guest portal type?
- A . Sponsored-Guest
- B . My Devices
- C . Sponsor
- D . Captive-Guest
What must be configured on the Cisco ISE authentication policy for unknown MAC addresses/identities for successful authentication?
- A . pass
- B . reject
- C . drop
- D . continue
Which two responses from the RADIUS server to NAS are valid during the authentication process? (Choose two)
- A . access-response
- B . access-request
- C . access-reserved
- D . access-accept
- E . access-challenge
An administrator is attempting to replace the built-in self-signed certificates on a Cisco ISE appliance. The CA is requesting some information about the appliance in order to sign the new certificate.
What must be done in order to provide the CA this information?
- A . Install the Root CA and intermediate CA.
- B . Generate the CSR.
- C . Download the intermediate server certificate.
- D . Download the CA server certificate.
Refer to the exhibit.
A network engineers configuring the switch to accept downloadable ACLs from a Cisco ISC server.
Which two commands should be run to complete the configuration? (Choose two)
- A . aaa authorization auth-proxy default group radius
- B . radius server vsa sand authentication
- C . radius-server attribute 8 include-in-access-req
- D . ip device tracking
- E . dot1x system-auth-control
A policy is being created in order to provide device administration access to the switches on a network. There is a requirement to ensure that if the session is not actively being used, after 10 minutes, it will be disconnected.
Which task must be configured in order to meet this requirement?
- A . session timeout
- B . idle time
- C . monitor
- D . set attribute as
Which two fields are available when creating an endpoint on the context visibility page of Cisco IS? (Choose two)
- A . Policy Assignment
- B . Endpoint Family
- C . Identity Group Assignment
- D . Security Group Tag
- E . IP Address