Implementing and Configuring Cisco Identity Services Engine (300-715 SISE)

Here you have the best Cisco 300-715 practice exam questions

  • You have 274 total questions to study from
  • Each page has 5 questions, making a total of 55 pages
  • You can navigate through the pages using the buttons at the bottom
  • This questions were last updated on November 15, 2024
Question 1 of 274

Which personas can a Cisco ISE node assume?

    Correct Answer: C

    Cisco Identity Services Engine (ISE) nodes can assume three personas: administration, policy service, and monitoring. The administration persona is responsible for managing configuration and policies, the policy service persona handles policy decision making, and the monitoring persona takes care of logs and alerts. Therefore, the correct set of personas that a Cisco ISE node can assume includes administration, policy service, and monitoring.

Question 2 of 274

What occurs when a Cisco ISE distributed deployment has two nodes and the secondary node is deregistered?

    Correct Answer: D

    When a Cisco ISE distributed deployment has two nodes and the secondary node is deregistered, the primary node becomes standalone. This means the primary node will continue to operate independently, handling all necessary functions of Cisco ISE, including authentication, authorization, and policy enforcement, without relying on the secondary node.

Question 3 of 274

DRAG DROP -

Drag the steps to configure a Cisco ISE node as a primary administration node from the left into the correct order on the right.

Select and Place:

    Correct Answer:

    Reference:

    https://www.cisco.com/en/US/docs/security/ise/1.0/user_guide/ise10_dis_deploy.html

Question 4 of 274

Which two features are available when the primary admin node is down and the secondary admin node has not been promoted? (Choose two.)

    Correct Answer: A, C

    When the primary admin node is down and the secondary admin node has not been promoted, certain services continue to function while others do not. New AD user 802.1X authentication will still be available because authentication services run on both nodes. Similarly, the posture service is also available because it runs independently of the primary node. Guest access and BYOD services typically rely on the primary admin node for their operation, and hence will not be available in such scenarios. Therefore, the correct answers are new AD user 802.1X authentication and posture.

Question 5 of 274

Which supplicant(s) and server(s) are capable of supporting EAP-CHAINING?

    Correct Answer: B

    Cisco AnyConnect NAM (Network Access Manager) and Cisco Identity Services Engine (ISE) are capable of supporting EAP-CHAINING. EAP-CHAINING is a method used to validate both user and machine credentials during the authentication process, and Cisco AnyConnect NAM supports this function alongside Cisco ISE.