Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CCIE Security

Domain 4Objective 7

4.7 Cisco ISE Integration with External Identity Sources CCIE-SECURITY Practice Questions (Page 10)

Part of the 4.0 Identity Management, Information Exchange, and Access Control domain, which accounts for 25% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–20 in this domain), expect 1–1 from this objective — we provide 59 practice questions to prepare you well beyond it. (estimate)

59questions here
12free pages
10concepts
25%of the exam

Questions 46–50

  1. 46expert · hard

    A company is evaluating identity source options for Cisco ISE. They have a mix of Windows AD and legacy Unix systems that use LDAP. They also have a RADIUS server for a legacy VPN. They want a single ISE deployment to support all three. What is the most efficient way to configure ISE?

    Select an answer first
  2. 47expert · hard · select all that apply

    A company is integrating an external RADIUS server with Cisco ISE. They want to ensure that authentication requests are sent securely and that responses are handled correctly. Which of the following are important considerations when configuring the external RADIUS identity source? (Select all that apply.)

    Select an answer first
  3. 48expert · hard

    An administrator has joined Cisco ISE to the Active Directory domain 'corp.local'. They have configured the AD identity source and enabled group retrieval. However, when testing authentication, users are authenticated but the AD group conditions in authorization policies are not matching. What is the most likely cause?

    Select an answer first
  4. 49expert · hard

    A company uses a non-standard LDAP directory that does not support the standard LDAP bind operation for authentication. Instead, it requires a custom authentication method. What is the best way to integrate this directory with Cisco ISE?

    Select an answer first
  5. 50expert · hard

    A company has integrated Cisco ISE with Active Directory. They want to use AD attributes, such as 'department', in authorization policies. However, the 'department' attribute is not available in the policy conditions. What should the administrator do?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.