Certification Exam Prep Questions For (300-208) 14-Day Official CCNP Security + CCNA Security Dual-Certification Boot Camp SISAS

QuickStart is now offering assessment questions for 14-Day Official CCNP Security + CCNA Security Dual-Certification Boot Camp (SISAS) (300-208). Whether you are deciding which exam to sign up for, or simply want to practice the materials necessary to complete certification for this course, we have provided a practice assessment to better aid in certification. 100% of the questions are real questions; from a recent version of the test you will take for 14-Day Official CCNP Security + CCNA Security Dual-Certification Boot Camp (SISAS) (300-208).


Arrow
 

1

A network administrator must implement a service which allows granular control regarding IOS commands to be executed. For this, which AAA method of authentication needs to be selected?

A. TACACS+
Correct!
B. Windows Active Directory
Incorrect.
C. RADIUS
Incorrect.
D. Generic LDAP
Incorrect.
2

Based on user groups of Microsoft Active Directory, which attribute an administrator has the power to leverage in order to assign privileges?

A. Member of group or;
Correct!
B. class person
Incorrect.
3

The phasing of Cisco 802.1X allows flexible deployments by using low-impact, open and closed modes. Mention the unique characteristic of the highest secure mode?

4

A network administrator should allow which protocol extension to make use of EAP-Chaining?

A. EAP-FAST
Correct!
B. MSCHAPv2
Incorrect.
C. EAP-TLS
Incorrect.
D. PEAP
Incorrect.
5

Considering the ‘aaa authentication default group tacacs local’ command, how would you define the word ‘default’?

A. Command set
Incorrect.
B. Method list
Correct!
C. Group name
Incorrect.
D. Login type
Incorrect.
6

Modifications are made during troubleshooting to the ISE server, but now every wireless certificate authentication is failing. As per Logs, there is an EAP failure. Mention the most probable cause of this problem?

7

The NAC Agent utilize which protocol and port to deliver discovery packets towards the ISE Policy Service Node?

A. tcp/8905
Incorrect.
B. htp/80
Incorrect.
C. udp/8905
Correct!
D. htps///4
Incorrect.
8

Name the two conditions that remain valid while configuring ISE for the purpose of posturing? (Select two)

A. Dictionary
Incorrect.
B. Profile status
Incorrect.
C. member Of
Incorrect.
D. Service
Correct!
E. File
Correct!
9

In AAA, mention the function performed by authentication?

10

Mention the identity store option that enables you to make changes in the directory services which run on TCP/IP?

11

Which 3 features are supported by CISCO ISE distributed deployments? (Select three).

12

What is the frequency of Profiled Endpoints dashlet for refreshing data?

A. every 40 seconds
Incorrect.
B. every 2 minutes
Incorrect.
C. every 60 seconds
Correct!
D. every 5 minutes
Incorrect.
13

Name the command of the My Devices Portal that can restore some previously lost device to your network?

A. Reset
Incorrect.
B. Reinstate
Correct!
C. Found
Incorrect.
D. Request
Incorrect.
14

Name the first step which happens while provisioning some wired device in some BYOD scenario?

15

Name the 3 features that must be allowed as best practices regarding MAB? (Select three).

A. MD5
Incorrect.
B. DHCP snooping
Correct!
C. IP source guard
Correct!
D. DAI
Correct!
E. storm control
Incorrect.
F. URPF
Incorrect.
16

When MAB is formed, how frequently are ports re-authenticated - by default?

A. every 60 seconds
Incorrect.
B. every 120 seconds
Incorrect.
C. every 90 seconds
Incorrect.
D. never
Correct!
17

What is the most needed step when ACL assignments and dynamic VLAN is deployed?

18

Name the model that Cisco support in the authorization implementation RADIUS change?

A. Push
Correct!
B. policy
Incorrect.
C. pull
Incorrect.
D. security
Incorrect.
19

Name the administrative role that has been permitted to allocate Security Group Access Control Lists?

A. System Admin
Incorrect.
B. Policy Admin
Correct!
C. Network Device Admin
Incorrect.
D. Identity Admin
Incorrect.
20

Excessive log messages are being generated by Wireless client supplicants who are attempting to validate to a wireless network. Mention the 3 WLC authentication settings that must be disabled? (Select three)

A. RADIUS Server Timeout
Incorrect.
B. Idle Timer
Correct!
C. RADIUS Aggressive-Failover
Correct!
D. Session Timeout
Correct!
21

In a controller-based wireless network that is secured with WPA2 Security, name the area where client traffic is decrypted.

A. Access Point
Correct!
B. Wireless LAN Controller
Incorrect.
C. Switch
Incorrect.
D. Authentication Server
Incorrect.
22

Name the feature of IPS and Cisco WLC synchronization?

Practice Exam - 14-Day Official CCNP Security+CCNA Security

$99.00

More Information:

  • Learning Style: On Demand
  • Learning Style: Practice Exam
  • Difficulty: Beginner
  • Course Duration: 1 Hour
  • Course Info: Download PDF
  • Certificate: See Sample

Need Training for 5 or More People?

Customized to your team's need:

  • Annual Subscriptions
  • Private Training
  • Flexible Pricing
  • Enterprise LMS
  • Dedicated Customer Success Manager

Outline

Reviews

Write Your Own Review
Only registered users can write reviews. Please Sign in or create an account

Hit button to validate captcha