DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

Free CCNP 300-715 SISE Exam Questions - Practice Tests and Sample Questions

Practice ExamCisco Certified Network Professional Security Practice Test
Exam NameImplementing and Configuring Cisco Identity Services Engine
Exam Number300-715 SISE
Exam Price$300 USD
Duration90 minutes
Number of Questions55-65
Passing Score750-850 / 1000

Download free CCNP 300-715 SISE exam questions PDF. Get sample SISE practice test questions and answers to test your readiness. Use free dumps and practice exams to pass the 300-715 exam. Improve your CCNP 300-715 SISE exam score. Download sample questions and test dumps to practice answering real SISE exam questions. Review free practice exams and sample questions.

Take other online exams

Question #1
An engineer is designing a BYOD environment utilizing Cisco ISE for devices that do not support native supplicants. Which portal must the security engineer configure to accomplish this task?
A. y Devices
B. DM
C. lient Provisioning
D. YOD
View answer
Correct Answer: A
Question #2
An organization wants to enable web-based guest access for both employees and visitors. The goal is to use a single portal for both user types. Which two authentication methods should be used to meet this requirement? (Choose two.)
A. ertificate-based
B. AC-based
C. OCAL
D. DAP
E. 02
View answer
Correct Answer: CD
Question #3
A network administrator is configuring a secondary Cisco ISE node from the backup configuration of the primary Cisco ISE node to create a high availability pair. The Cisco ISE CA certificates and keys must be manually backed up from the primary Cisco ISE and copied into the secondary Cisco ISE. Which command must be issued for this to work?
A. pplication configure ise
B. ertificate configure ise
C. opy certificate ise
D. mport certificate ise
View answer
Correct Answer: A
Question #4
An administrator is troubleshooting an endpoint that is supposed to bypass 802.1X and use MAB. The endpoint is bypassing 802.1X and successfully getting network access using MAB, however the endpoint cannot communicate because it cannot obtain an IP address. What is the problem?
A. n ACL on the port is blocking HTTP traffic
B. he endpoint is using the wrong protocol to authenticate with Cisco ISE
C. he 802
D. he DHCP probe for Cisco ISE is not working as expected
View answer
Correct Answer: C
Question #5
An engineer deploys Cisco ISE and must configure Active Directory to then use information from Active Directory in an authorization policy. Which two components must be configured, in addition to Active Directory groups, to achieve this goal? (Choose two.)
A. ibrary Condition for External Identity: External Groups
B. DAP External Identity Sources
C. ibrary Condition for Identity Group: User Identity Group
D. dentity Source Sequences
E. ctive Directory External Identity Sources
View answer
Correct Answer: AE
Question #6
An engineer tests Cisco ISE posture services on the network and must configure the compliance module to automatically download and install on endpoints. Which action accomplishes this task for VPN users?
A. ush the compliance module from Cisco FTD prior to attempting posture
B. reate a Cisco AnyConnect configuration and Client Provisioning policy within Cisco ISE
C. se a compound posture condition to check for the compliance module and download, if needed
D. onfigure the compliance module to be downloaded from within the posture policy
View answer
Correct Answer: B
Question #7
An administrator is configuring a Cisco WLC for web authentication. Which two client profiling methods are enabled by default if the Apply Cisco ISE Default Settings check box has been selected? (Choose two.)
A. HCP
B. DP
C. NMP
D. LDP
E. TTP
View answer
Correct Answer: AE
Question #8
An engineer is configuring sponsored guest access and needs to limit each sponsored guest to a maximum of two devices. There are other guest services in production that rely on the default guest types. How should this configuration change be made without disrupting the other guest services currently offering three or more guest devices per user?
A. reate a new sponsor group and adjust the settings to limit the devices for each guest
B. reate an LDAP login for each guest and tag that in the guest portal for authentication
C. reate a new guest type and set the maximum number of devices sponsored guests can register
D. reate an ISE identity group to add users to and limit the number of logins via the group configuration
View answer
Correct Answer: C
Question #9
An administrator needs to allow guest devices to connect to a private network without requiring usernames and passwords. Which two features must be configured to allow for this? (Choose two.)
A. otspot guest portal
B. entral WebAuth
C. elf-registered guest portal
D. evice registration WebAuth
E. ocal WebAuth
View answer
Correct Answer: AD
Question #10
A network administrator must configure endpoints using an 802.1X authentication method with EAP identity certificates that are provided by the Cisco ISE. When the endpoint presents the identity certificate to Cisco ISE to validate the certificate, endpoints must be authorized to connect to the network. Which EAP type must be configured by the network administrator to complete this task?
A. AP-PEAP-MSCHAPv2
B. AP-TLS
C. AP-TTLS
D. AP-FAST
View answer
Correct Answer: B

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number: