Question 216

An administrator is configuring posture assessment in Cisco ISE for the first time. Which two components must be uploaded to Cisco ISE to use Secure Client for the agent configuration in a client provisioning policy? (Choose two.)
  • Question 217

    An engineer is configuring ISE for network device administration and has devices that support both protocols. What are two benefits of choosing TACACS+ over RADUs for these devices? (Choose two.)
  • Question 218

    When setting up profiling in an environment using Cisco ISE for network access control, an organization must use non-proprietary protocols for collecting the information at layer 2. Which two probes will provide this information without forwarding SPAN packets to Cisco ISE? {Choose two.)
  • Question 219

    A network security administrator needs a web authentication configuration when a guest user connects to the network with a wireless connection using these steps:
    - An initial MAB request is sent to the Cisco ISE node.
    - Cisco ISE responds with a URL redirection authorization profile if
    the user's MAC address is unknown in the endpoint identity store.
    - The URL redirection presents the user with an AUP acceptance page
    when the user attempts to go to any URL.
    Which authentication must the administrator configure on Cisco ISE?
  • Question 220

    The security team identified a rogue endpoint with MAC address 00:47:44:40:54:1A attached to the network. Which action must security engineer take within Cisco ISE to effectively restrict network access for this endpoint?