Download New Updated (Spring 2015) Cisco 300-208 Actual Tests 51-60

Ensurepass

 

QUESTION 51

What implementation must be added to the WLC to enable 802.1X and CoA for wireless endpoints?

 

A.

the ISE

B.

an ACL

C.

a router

D.

a policy server

 

Correct Answer: A

 

 

QUESTION 52

What are the initial steps must you perform to add the ISE to the WLC?

 

A.

1. With a Web browser, establish an HTTP connection to the WLC pod.

2. Navigate to Administration > Authentication > New.

3. Enter server values to begin the configuration.

B.

1. With a Web browser, establish an FTP connection to the WLC pod.

2. Navigate to Security > Administration > New.

3. Add additional security features for FTP authentication.

C.

1. With a Web browser, establish an HTTP connection to the WLC pod.

2. Navigate to Authentication > New.

3. Enter ACLs and Authentication methods to begin the configuration.

D.

1. With a Web browser connect, establish an HTTPS connection to the WLC pod.

2. Navigate to Security > Authentication > New.

3. Enter server values to begin the configuration.

 

Correct Answer: D

 

 

QUESTION 53

Which command configures console port authorization under line con 0?

 

A.

authorization default|WORD

B.

authorization exec line con 0|WORD

C.

authorization line con 0|WORD

D.

authorization exec default|WORD

 

Correct Answer: D

QUESTION 54

Which two statements about administrative access to the ACS Solution Engine are true? (Choose two.)

 

A.

The ACS Solution Engine supports command-line connections through a serial-port connection.

B.

For GUI access, an administrative GUI user must be created with the add-guiadmin command.

C.

The ACS Solution Engine supports command-line connections through an Ethernet interface.

D.

An ACL-based policy must be configured to allow administrative-user access.

E.

GUI access to the ACS Solution Engine is not supported.

 

Correct Answer: BD

 

 

QUESTION 55

What is the purpose of the Cisco ISE Guest Service Sponsor Portal?

 

A.

It tracks and stores user activity while connected to the Cisco ISE.

B.

It securely authenticates guest users for the Cisco ISE Guest Service.

C.

It filters guest users from account holders to the Cisco ISE.

D.

It creates and manages Guest User accounts.

 

Correct Answer: D

 

 

QUESTION 56

What is the effect of the ip http secure-server command on a Cisco ISE?

 

A.

It enables the HTTP server for users to connect on the command line.

B.

It enables the HTTP server for users to connect using Web-based authentication.

C.

It enables the HTTPS server for users to connect using Web-based authentication.

D.

It enables the HTTPS server for users to connect on the command line.

 

Correct Answer: C

 

 

QUESTION 57

When RADIUS NAC and AAA Override are enabled for WLC on a Cisco ISE, which two statements about RADIUS NAC are true? (Choose two.)

 

A.

It will return an access-accept and send the redirection URL for all users.

B.

It establishes secure connectivity between the RADIUS server and the ISE.

C.

It allows the ISE to send a CoA request that indicates when the user is authenticated.

D.

It is used for posture assessment, so the ISE changes the user profile based on posture result.

E.

It allows multiple users to authenticate at the same time.

 

Correct Answer: CD

 

 

QUESTION 58

What are the initial steps to configure an ACS as a TACACS server?

 

A.

1. Choose Network Devices and AAA Clients > Network Resources.

2. Click Create.

B.

1. Choose Network Resources > Network Devices and AAA Clients.

2. Click Create.

C.

1. Choose Network Resources > Network Devices and AAA Clients.

2. Click Manage.

D.

1. Choose Network Devices and AAA Clients > Network Resources.

2. Click Install.

 

Correct Answer: B

 

 

QUESTION 59

Which two statements about administrative access to the Cisco Secure ACS SE are true? (Choose two.)

 

A.

The Cisco Secure ACS SE supports command-line connections through a serial-port connection.

B.

For GUI access, an administrative GUI user must be created by using the add-guiadmin command.

C.

The Cisco Secure ACS SE supports command-line connections through an Ethernet interface.

D.

An ACL-based policy must be configured to allow administrative-user access.

E.

GUI access to the Cisco Secure ASC SE is not supported.

 

Correct Answer: BD

 

 

QUESTION 60

When RADIUS NAC and AAA Override are enabled for a WLC on a Cisco ISE, which two statements about RADIUS NAC are true? (Choose two.)

 

A.

It returns an access-accept and sends the redirection URL for all users.

B.

It establishes secure connectivity between the RADIUS server and the Cisco ISE.

C.

It allows the Cisco ISE to send a CoA request that indicates when the user is authenticated.

D.

It is used for posture assessment, so the Cisco ISE changes the user profile based on posture result.

E.

It allows multiple users to authenticate at the same time.

 

Correct Answer: CD

 

Free VCE & PDF File for Cisco 300-208 Real Exam

Instant Access to Free VCE Files: CCNA | CCNP | CCIE …
Instant Access to Free PDF Files: CCNA | CCNP | CCIE …