[Free] 2019(Nov) EnsurePass Cisco 300-208 Dumps with VCE and PDF 31-40

Get Full Version of the Exam

Question No.31

How many days does Cisco ISE wait before it purges a session from the active session list if no RADIUS Accounting STOP message is received?









Correct Answer: B

Question No.32

Which ISE feature is used to facilitate a BYOD deployment?

  1. self-service personal device registration and onboarding

  2. Guest Service Sponsor Portal

  3. Local Web Auth

  4. Guest Identity Source Sequence

Correct Answer: A

Question No.33

Which three are required steps to enable SXP on a Cisco ASA? (Choose three).

  1. configure AAA authentication

  2. configure password

  3. issue the aaa authorization command aaa-server group command

  4. configure a peer

  5. configure TACACS

  6. issue the cts sxp enable command

Correct Answer: BDF

Question No.34

A network administrator needs to implement a service that enables granular control of IOS commands that can be executed. Which AAA authentication method should be selected?



  3. Windows Active Directory

  4. Generic LDAP

Correct Answer: A

Question No.35

Which network access device feature can you configure to gather raw endpoint data?

  1. Device Sensor

  2. Device Classifier

  3. Switched Port Analyzer

  4. Trust Anchor

Correct Answer: A

Question No.36

What are the four code fields which identify the type of an EAP packet?

  1. Request, Reply, Accept, Reject

  2. Request, Reply, Success, Failure

  3. Request, Response, Success, Failure

  4. Request, Response. Accept Reject

Correct Answer: C

Question No.37

Which description of the purpose of the Continue option in an authentication policy rule is true?

  1. It allows Cisco ISE to check the list of rules in an authentication policy until there is a match.

  2. It sends an authentication to the next subrule within the same authentication rule.

  3. It allows Cisco ISE to proceed to the authorization policy regardless of authentication pass/fail.

  4. It sends an authentication to the selected identity store.

  5. It causes Cisco ISE to ignore the NAD because NAD will treat the Cisco ISE server as dead.

Correct Answer: C

Question No.38

Which two components are required to connect to a WLAN network that is secured by EAP-TLS authentication? (Choose two.)

  1. Kerberos authentication server

  2. AAA/RADIUS server

  3. PSKs

  4. CA server

Correct Answer: BD

Question No.39

Your guest-access wireless network is experiencing degraded performance and excessive latency due to user saturation. Which type of rate limiting can you implement on your network to correct the problem?

  1. per-device

  2. per-policy

  3. per-access point

  4. per-controller

  5. per-application

Correct Answer: A

Question No.40

In the command #39;aaa authentication default group tacacs local#39;, how is the word #39;default#39; defined?

  1. Command set

  2. Group name

  3. Method list

  4. Login type

Correct Answer: C

Get Full Version of the Exam
300-208 Dumps
300-208 VCE and PDF

You must be logged in to post a comment.

Proudly powered by WordPress   Premium Style Theme by www.gopiplus.com