
CCIE Security
Domain 4Objective 4
4.4 AAA for Network Access with 802.1X and MAB Using Cisco ISE CCIE-SECURITY Practice Questions (Page 3)
Part of the 4.0 Identity Management, Information Exchange, and Access Control domain, which accounts for 25% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–20 in this domain), expect 1–1 from this objective — we provide 60 practice questions to prepare you well beyond it. (estimate)
60questions here
12free pages
11concepts
25%of the exam
Questions 11–15
- 11
What is the purpose of Change of Authorization (CoA) in a RADIUS-based network access environment?
Select an answer first - 12
During 802.1X authentication, which protocol is used between the authenticator and the authentication server to carry EAP messages?
Select an answer first - 13
Which CoA message type is used by ISE to change the authorization attributes of an existing session?
Select an answer first - 14
When troubleshooting an 802.1X authentication failure, which log source would provide the most detailed information about the EAP conversation between the supplicant and ISE?
Select an answer first - 15
A user reports that their device is failing 802.1X authentication. Which command on the switch would help you see the authentication status and any RADIUS-related errors?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.