
CCIE Security
Domain 4Objective 17
4.17 Access Control and Single Sign-On Using Cisco DUO Security Technology CCIE-SECURITY Practice Questions (Page 6)
Part of the 4.0 Identity Management, Information Exchange, and Access Control domain, which accounts for 25% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–20 in this domain), expect 1–1 from this objective — we provide 29 practice questions to prepare you well beyond it. (estimate)
29questions here
6free pages
17concepts
25%of the exam
Questions 26–29
- 26
A company has an on-premises web application that uses a legacy form-based login. They want to add Duo MFA without changing the application's source code. Which Duo solution is best suited for this scenario?
Select an answer first - 27
A development team is building a custom internal tool and wants to integrate Duo MFA directly into their application's login flow. They want to support both Duo Push and hardware tokens. They also want to use the modern Duo prompt. Which Duo integration method should they use?
Select an answer first - 28
An organization is deploying the Duo Authentication Proxy to protect a RADIUS-based network access server. They require high availability for the authentication service. What is the recommended approach to ensure the Authentication Proxy is not a single point of failure?
Select an answer first - 29
A company is onboarding 200 new employees and needs to enroll them in Duo. They have already synchronized all users from Active Directory. The employees will be issued hardware tokens. What is the most efficient way to enroll these users and assign the tokens?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CCIE-SECURITY
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.