● Implementing and Configuring Cisco Identity Services Engine (300-715 SISE) Exam Materials

- Less than 250 Verified Questions for Implementing and Configuring Cisco Identity Services Engine Dump (300-715 SISE Dump)

- Over 15 Students Passed Implementing and Configuring Cisco Identity Services Engine Exam (300-715 SISE Exam) Using This Dump – Join Them Today!

- 100% Score in the Real Implementing and Configuring Cisco Identity Services Engine Exam (300-715 SISE Exam) at the Pearson VUE Testing Center





Question #1
Comment Image Comment Image Comment Image

A network engineer must configure BYOD using Cisco ISE. In the deployment, the users must be able to submit CSR through the end devices as part of the certificate enrollment process. Which two features must be enabled to meet the requirement? (Choose two answers)

  • A. A new BYOD portal must be created.
  • B. Define a certificate group tag.
  • C. Cisco ISE internal CA service must be enabled.
  • D. A certificate provisioning portal must be configured.
  • E. Add SuperAdmin account into portal admin group.
Question #2
Comment Image Comment Image Comment Image

A network engineer is configuring a Cisco Wireless LAN Controller in order to find out more information about the devices that are connecting. This information must be sent to Cisco ISE to be used in authorization policies for profiling. Which protocol must be configured in the Cisco Wireless LAN Controller to accomplish this task? (Choose one answer)

  • A. CDP
  • B. DNS
  • C. ICMP
  • D. DHCP
Question #3
Comment Image Comment Image Comment Image

An engineer wants to use certificate authentication for endpoints that connect to a wired network integrated with Cisco ISE. The engineer needs to define the certificate field used as the principal username. Which component would be needed to complete the configuration? (Choose one answer)

  • A. authentication profile
  • B. authorization profile
  • C. authorization rule
  • D. authentication policy
Question #4
Comment Image Comment Image Comment Image

An engineer is deploying Cisco ISE in a network that contains existing security products from Cisco and other vendors. One of the requirements from the customer is the ability to support TrustSec and enable the sharing of SGTs and policy objects between Cisco ISE and the other security products in production. Which persona type must be enabled on one of the Cisco ISE nodes in the deployment to support the requirement? (Choose one answer)

  • A. Policy Service
  • B. SXP
  • C. pxGrid
  • D. Identity Mapping
Question #5
Comment Image Comment Image Comment Image

Which default "guest type" is included with Cisco ISE? (Choose one answer)

  • A. visitors
  • B. sponsor
  • C. guest
  • D. contractor
Question #6
Comment Image Comment Image Comment Image

A network engineer is configuring a portal on Cisco ISE for employees. Employees must use this portal when registering personal devices with native suppliers. For onboarding devices connected with Cisco switches and Cisco wireless LAN controllers, the internal CA must be used. Which portal type must the engineer configure? (Choose one answer)

  • A. Client Provisioning portal
  • B. Personal Device portal
  • C. Bring Your Own Device portal
  • D. My Devices portal
Question #7
Comment Image Comment Image Comment Image

An administrator must provide wireless access to noncorporate employees to support apps by using a guest SSID in a deployment with Cisco ISE, Cisco wireless access points, and a Cisco Wireless LAN Controller. When a user opens a web browser after connecting to the wireless network, Cisco ISE must be configured to redirect the user session to an authentication portal. These configurations were performed:

- configured all the required configurations for the Cisco Wireless LAN Controller
- added the Cisco Wireless LAN Controller to the Cisco ISE network devices
- configured an authentication policy for wireless MAB users
- created a guest portal and enabled automatic registration
- created an authorization policy
- created an authorization rule to allow the wireless MAB users
- created an authorization rule to allow guest flow

Which two actions must be taken to complete the configuration? (Choose two answers)

  • A. Configure profiling policies for noncorporate endpoints.
  • B. Enable web redirection and select a redirect access control list.
  • C. Provide a portal URL to log in to.
  • D. Create an authentication profile
  • E. Create an authorization profile.
Question #8
Comment Image Comment Image Comment Image

An engineer is deploying a new Cisco ISE environment for a company. The company wants the deployment to use TACACS+. The engineer verifies that Cisco ISE has a Device Administration license. What must be configured to enable TACACS+ operations? (Choose one answer)

  • A. Device Administration Work Center
  • B. Device Admin Policy Sets settings
  • C. Device Admin service
  • D. Device Administration Deployment settings
Question #9
Comment Image Comment Image Comment Image

An administrator must deploy the Cisco Secure Client posture agent to employee endpoints that access a wireless network by using URL redirection in Cisco ISE. The compliance module must be downloaded from Cisco and uploaded to the Cisco ISE client provisioning resource. What must be used to upload the compliance module? (Choose one answer)

  • A. Secure Client posture profile
  • B. Client Provisioning Portal
  • C. agent resources from the local disk
  • D. Secure Client configuration
Question #10
Comment Image Comment Image Comment Image

On which port does Cisco ISE present the Admin certificate for posture and client provisioning? (Choose one answer)

  • A. TCP/8000
  • B. TCP/8080
  • C. TCP/8905
  • D. TCP/8999