exam questions

Exam 300-715 All Questions

View all questions & answers for the 300-715 exam

Exam 300-715 topic 1 question 82 discussion

Actual exam question from Cisco's 300-715
Question #: 82
Topic #: 1
[All 300-715 Questions]

A Cisco ISE administrator needs to ensure that guest endpoint registrations are only valid for 1 day. When testing the guest policy flow, the administrator sees that the Cisco ISE does not delete the endpoint in the GuestEndpoints identity store after 1 day and allows access to the guest network after that period.
Which configuration is causing this problem?

  • A. The Guest Account Purge Policy is set to 15 days.
  • B. The length of access is set to 7 days in the Guest Portal Settings.
  • C. The Endpoint Purge Policy is set to 30 days for guest devices.
  • D. The RADIUS policy set for guest access is set to allow repeated authentication of the same device.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
kornalt
Highly Voted 1 year, 6 months ago
This is about endpoint purge. Not accounts. We could use the elapsed days setting here. So C is correct. https://www.cisco.com/c/en/us/td/docs/security/ise/2-2/admin_guide/b_ise_admin_guide_22/b_ise_admin_guide_22_chapter_01100.html#concept_0776B37A2C3542189950F5DFB1961FA2
upvoted 6 times
...
luismg
Most Recent 5 days, 8 hours ago
Selected Answer: C
Let me reply myself, the question just addresses the problem with the enpoint, so it is clearly C
upvoted 1 times
...
luismg
5 days, 8 hours ago
Selected Answer: B
I think is B The endpoint can be in the store but if the account duration is higher than one day it doesn't matter if it is in the store or not
upvoted 1 times
...
a1b9f69
4 months, 1 week ago
Selected Answer: B
correct answer is B
upvoted 1 times
...
NikoTomas
4 months, 2 weeks ago
Correct is C – Endpoint Purge Policy set to 30 days by default for GuestEndpoints group SISE ebook: “The purge policies are configurable per endpoint identity group, and specific endpoints (such as endpoints with attribute DeviceRegistrationStatus equal to Registered) can also be configured to never purge... You can also see in Figure 13-10 the default purge status of the GuestEndpoints identity group, which is set to purge any endpoints older than 30 days each day at 3:00 a.m.” ------ Incorrect: - A – “Guest Account Purge Policy ...” – not guests are being purged but ENDPOINTS. - B – “Length of access ...in the Guest Portal” – not PORTAL settings specify length of access but GUEST TYPE (also number of registered devices, sessions / simultaneous logins, access days & times, etc...) - D – “RADIUS Policy” – can’t track repeated logins
upvoted 2 times
...
colla
1 year, 1 month ago
Selected Answer: C
The question clearly states: "Cisco ISE does not delete the endpoint in the GuestEndpoints identity store" it doesn't simply say it allows access.
upvoted 3 times
...
THEODORABLE
1 year, 1 month ago
Selected Answer: C
c is correct: endpoint purge
upvoted 2 times
...
homeslice
1 year, 7 months ago
Selected Answer: B
Surely this is B. You set the Maximum Access Time in the "Guest Type" section of the Portal configuration. Purge policies specify the time that it takes for a guest account or endpoint from being delete from the database completely, regardless as to whether it is expired or not.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago