
CiscoCertified Network Professional Security
Domain 6Objective 3
6.3 Configure Network Access Control Mechanisms Such as 802.1X and MAB with Cisco Identity Services Engine 350-701 Practice Questions (Page 3)
Part of the Network Access, Visibility, and Enforcement domain, which accounts for 15% of the 350-701 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 1–2 from this objective — we provide 24 practice questions to prepare you well beyond it. (estimate)
24questions here
5free pages
7concepts
15%of the exam
Questions 11–15
- 11
Which component of an ISE policy set specifies the actions to take after authentication succeeds, such as assigning a VLAN or downloading an ACL?
Select an answer first - 12
What is the primary purpose of MAC Authentication Bypass (MAB) in a network access control deployment?
Select an answer first - 13
In a MAB authentication attempt, what does the authenticator use as the username and password in the RADIUS request sent to the authentication server?
Select an answer first - 14
A company has a mix of Windows laptops, iPhones, and Android devices connecting via 802.1X. The security team wants to apply different authorization policies based on device type. The devices are already authenticating successfully. What should the administrator configure in ISE to differentiate the device types?
Select an answer first - 15
In an 802.1X authentication flow, which component is responsible for relaying authentication messages between the end device and the authentication server?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-701” is a trademark of its owner, used for identification only.