Question 181
What happens when an internal user is configured with an external identity store for authentication, but an engineer uses the Cisco ISE admin portal to select an internal identity store as the identity source?
Question 182
Wireless network users authenticate to Cisco ISE using 802.1X through a Cisco Catalyst switch. An engineer must create an updated configuration to assign a security group tag to the user's traffic using inline tagging to prevent unauthenticated users from accessing a restricted server. The configurations were performed:
* configured Cisco ISE as a Cisco TrustSec AAA server
* configured the switch as a RADIUS device in Cisco ISE
* configured the wireless LAN controller as a TrustSec device in Cisco ISE
* created a security group tog for the wireless users
* created a certificate authentication profile
# created an identity source sequence
* assigned an appropriate security group tag to the wireless users
* defined security group access control lists to specify an egress policy
* enforced the access control lists on the TrustSec policy matrix in Cisco ISE
* configured TrustSec on the switch
* configured TrustSec on the wireless LAN controller
Which two actions must be taken to complete the configuration? (Choose two.)
* configured Cisco ISE as a Cisco TrustSec AAA server
* configured the switch as a RADIUS device in Cisco ISE
* configured the wireless LAN controller as a TrustSec device in Cisco ISE
* created a security group tog for the wireless users
* created a certificate authentication profile
# created an identity source sequence
* assigned an appropriate security group tag to the wireless users
* defined security group access control lists to specify an egress policy
* enforced the access control lists on the TrustSec policy matrix in Cisco ISE
* configured TrustSec on the switch
* configured TrustSec on the wireless LAN controller
Which two actions must be taken to complete the configuration? (Choose two.)
Question 183
An engineer is configuring a new switch to deploy in the campus network. The task is to configure TACACS+ and RADIUS authentication using the new switch and Cisco ISE. What is the procedure for adding this new switch on the network resources page?
Question 184
A policy is being created in order to provide device administration access to the switches on a network. There is a requirement to ensure that if the session is not actively being used, after 10 minutes, it will be disconnected. Which task must be configured in order to meet this requirement?
Question 185
An administrator is responsible for configuring network access for a temporary network printer. The administrator must only use the printer MAC address 50:89:65: 18:8: AB for authentication. Which authentication method will accomplish the task?
