[Free] 2018(Mar) EnsurePass Testinsides Cisco 300-208 Dumps with VCE and PDF 171-180

Ensurepass.com : Ensure you pass the IT Exams
2018 Mar Cisco Official New Released 300-208
100% Free Download! 100% Pass Guaranteed!

Implementing Cisco Secure Access Solutions

Question No: 171

A network engineer is configuring HTTP based CWA on a switch. Which three configuration elements are required? (Choose three.)

  1. HTTP server enabled

  2. Radius authentication on the port with MAB

  3. Redirect access-list

  4. Redirect-URL

  5. HTTP secure server enabled

  6. Radius authentication on the port with 802.1x

  7. Pre-auth port based access-list

Answer: A,B,C

Question No: 172

An engineer wants to migrate 802. 1X deployment phase from Open to Low-Impact mode. Which option must be configured on the switch port?

  1. open authentication to the domain

  2. ingress access list applied to the interface

  3. authentication host mode to multiple authentication

  4. authentication host mode to multiple domain

Answer: B

Question No: 173

Refer to the exhibit.

Ensurepass 2018 PDF and VCE

If the given configuration is applied to the object-group vpnservers, during which time period are external users able to connect?

  1. From Friday at 6:00 p.m. until Monday at 8:00 a.m.

  2. From Monday at 8:00 a.m. until Friday at 6:00 p.m.

  3. From Friday at 6:01 p.m. until Monday at 8:01 a.m.

  4. From Monday at 8:01 a.m. until Friday at 5:59 p.m.

Answer: A

Question No: 174

Which operating system type needs access to the Internet to download the application that is required for BYOD on-boarding?

  1. iOS

  2. OSX

  3. Android

  4. Windows

Answer: C

Question No: 175

Refer to the exhibit.

Ensurepass 2018 PDF and VCE

Which two things must be verified if authentication is failing with this error message? (Choose two.)

  1. Cisco ISE EAP identity certificate is valid.

  2. CA cert chain of Cisco ISE EAP certificate is installed on the trusted certs store of the client machine.

  3. CA cert chain of the client certificate is installed on Cisco ISE.

  4. Cisco ISE HTTPS/admin certificate is valid.

  5. Cisco ISE server certificate is installed on the client.

Answer: A,B

Question No: 176

Which two profile attributes can be collected by a Cisco Catalyst Switch that supports Device Sensor? (Choose two.)

  1. LLDP agent information

  2. user agent

  3. DHCP options

  4. open ports

  5. operating system

  6. trunk ports

Answer: A,C

Question No: 177

Which ISE feature is used to facilitate a BYOD deployment?

  1. self-service personal device registration and onboarding

  2. Guest Service Sponsor Portal

  3. Local Web Auth

  4. Guest Identity Source Sequence

Answer: A

Question No: 178

Which mechanism does Cisco ISE use to force a device off the network if it is reported lost or stolen?

  1. CoA

  2. dynamic ACLs

  3. SGACL

  4. certificate revocation

Answer: A

Question No: 179

Which statement about the Cisco ISE BYOD feature is true?

  1. Use of SCEP/CA is optional.

  2. BYOD works only on wireless access.

  3. Cisco ISE needs to integrate with MDM to support BYOD.

  4. Only mobile endpoints are supported.

Answer: A

Question No: 180

Which two authentication stores are supported to design a wireless network using PEAP EAP-MSCHAPv2 as the authentication method? (Choose two.)

  1. Microsoft Active Directory

  2. ACS

  3. LDAP

  4. RSA Secure-ID

  5. Certificate Server

Answer: A,B

100% Ensurepass Free Download!
Download Free Demo:300-208 Demo PDF
100% Ensurepass Free Guaranteed!
300-208 Dumps

EnsurePass ExamCollection Testking
Lowest Price Guarantee Yes No No
Up-to-Dated Yes No No
Real Questions Yes No No
Explanation Yes No No
Free VCE Simulator Yes No No
Instant Download Yes No No

You must be logged in to post a comment.

Proudly powered by WordPress   Premium Style Theme by www.gopiplus.com