What is a requirement for Feed Service to work?
A.
TCP port 3080 must be opened between Cisco ISE and the feed server
B.
Cisco ISE has a base license
C.
Cisco ISE has access to an internal server to download feed update
D.
Cisco ISE has Internet access to download feed update
Cisco ISE has access to an internal server to download feed update
Which two values are compared by the binary comparison (unction in authentication that is based on Active Directory?
A.
subject alternative name and the common name
B.
MS-CHAPv2 provided machine credentials and credentials stored in Active Directory
C.
user-presented password hash and a hash stored in Active Directory
D.
user-presented certificate and a certificate stored in Active Directory
subject alternative name and the common name
MS-CHAPv2 provided machine credentials and credentials stored in Active Directory
Basic certificate checking does not require an identity source. If you want binary comparison checking for the certificates, you must select an identity source. If you select Active Directory as an identity source, subject and common name and subject alternative
name (all values) can be used to look up a user.
https://www.cisco.com/c/en/us/td/docs/security/ise/1-
3/admin_guide/b_ise_admin_guide_13/ b_ise_admin_guide_sample_chapter_01110.html
Which two default endpoint identity groups does cisco ISE create? (Choose three )
A.
Unknown
B.
whitelist
C.
end point
D.
profiled
E.
blacklist
Unknown
profiled
blacklist
Default Endpoint Identity Groups Created for EndpointsCisco ISE creates the following five endpoint identity groups by default: Blacklist, GuestEndpoints, Profiled, RegisteredDevices, and Unknown. In addition, it creates two more identity groups, such as Cisco-IP-Phone and Workstation, which are associated to the Profiled (parent) identity group. A parent group is the default identity group that exists in the system.
https://www.cisco.com/c/en/us/td/docs/security/ise/2-
4/admin_guide/b_ise_admin_guide_24/b_ise_admin_guide_24_new_chapter_010101.html #ID1678
A network administrator has just added a front desk receptionist account to the Cisco ISE Guest Service sponsor group. Using the Cisco ISE Guest Sponsor Portal, which guest services can the receptionist provide?
A.
Keep track of guest user activities
B.
Configure authorization settings for guest users
C.
Create and manage guest user accounts
D.
Authenticate guest users to Cisco ISE
Create and manage guest user accounts
Which personas can a Cisco ISE node assume'?
A.
policy service, gatekeeping, and monitoring
B.
administration, policy service, and monitoring
C.
administration, policy service, gatekeeping
D.
administration, monitoring, and gatekeeping
administration, policy service, and monitoring
https://www.cisco.com/en/US/docs/security/ise/1.0/user_guide/ise10_dis_deploy.html
The persona or personas of a node determine the services provided by a node. An ISE node can assume any or all of the following personas: Administration, Policy Service, and Monitoring. The menu options that are available through the administrative user interface are dependent on the role and personas that an ISE node assumes. See Cisco ISE Nodes and Available Menu Options for more information.
Page 10 out of 31 Pages |
Previous |