Free 300-715 Exam Braindumps (page: 44)

Page 44 of 81

An administrator needs to allow guest devices to connect to a private network without requiring usernames and passwords.
Which two features must be configured to allow for this? (Choose two.)

  1. central WebAuth
  2. device registration WebAuth
  3. local WebAuth
  4. self-registered guest portal
  5. hotspot guest portal

Answer(s): B,E



An administrator wants to configure network device administration and is trying to decide whether to use TACACS+ or RADIUS. A reliable protocol must be used that can check command authorization.
Which protocol meets these requirements and why?

  1. RADIUS because it runs over TCP.
  2. RADIUS because it runs over UDP.
  3. TACACS+ because it runs over TCP.
  4. TACACS+ because it runs over UDP.

Answer(s): C



An engineer is creating a new authorization policy to give the endpoints access to VLAN 310 upon successful authentication. The administrator tests the 802.1X authentication for the endpoint and sees that it is authenticating successful.
What must be done to ensure that the endpoint is placed into the correct VLAN?

  1. Configure the switchport access vlan 310 command on the switch port.
  2. Add VLAN 310 in the common tasks of the authorization profile.
  3. Ensure that the endpoint is using the correct policy set.
  4. Ensure that the security group is not preventing the endpoint from being in VLAN 310.

Answer(s): B



An engineer is configuring Cisco ISE for network device administration and has devices that support both protocols.
What are two benefits of choosing TACACS+ over RADIUS for these devices? (Choose two.)

  1. TACACS+ uses secure EAP-TLS while RADIUS does not.
  2. TACACS+ is FIPS compliant while RADIUS is not.
  3. TACACS+ encrypts the entire payload being sent while RADIUS only encrypts the password.
  4. TACACS+ is designed for network access control while RADIUS is designed for role-based access.
  5. TACACS+ provides the ability to authorize specific commands while RADIUS does not.

Answer(s): C,E



Page 44 of 81



Post your Comments and Discuss Cisco® 300-715 exam with other Community members:

Qorban commented on April 11, 2021
I paid in Derham and the process of payment and download was so fast and easy. The Test Engine called Xengine App came for free. I am stdying from that engine. For now I am not ready yet. But ones I go do my test I come back and write my score here so others can a more informed decision.
UNITED ARAB EMIRATES
upvote