Cisco 500-254 ExamImplementing and Configuring Cisco Identity Services Engine (SISE)

Total Question: 49 Last Updated: Dec 10,2018
  • Updated 500-254 Dumps
  • Based on Real 500-254 Exams Scenarios
  • Free 500-254 pdf Demo Available
  • Check out our 500-254 Dumps in a new PDF format
  • Instant 500-254 download
  • Guarantee 500-254 success in first attempt
Package Select:

Questions & Answers PDF

Practice Test Software

Practice Test + PDF 30% Discount

Price: $65.95 $29.99

Buy Now Free Trial

10 tips on ht 254-500

100% Correct of 500-254 exam question materials and vce for Cisco certification for consumer, Real Success Guaranteed with Updated 500-254 pdf dumps vce Materials. 100% PASS Implementing and Configuring Cisco Identity Service Engine - SISE exam Today!

2016 May 500-254 Study Guide Questions:

Q21. What are two methods to verify that Cisco ISE is properly connected to AD? (Choose two.) 

A. Use the Test Connection feature in the Cisco ISE External Identity Sources Active Directory. 

B. View the Active Directory Log /opt/CSCOcmp/logs/ad_agent.log. 

C. Use the ISE Dashboard Summary alarms. 

D. Use ktpass to determine if the Kerberos ticket is valid. 

Answer: AB 

Q22. What are the three default Cisco ISE identity user groups? (Choose three.) 

A. employee 

B. contractor 

C. activated guest 

D. guest 

E. sponsor 

Answer: ACD 

Q23. How are access control lists implemented on a Cisco WLC in a Cisco ISE authorization policy? 

A. Dynamic access lists are configured in Cisco ISE. 

B. Named access lists are configured in Cisco ISE. 

C. Named access lists are pushed down to the WLC. 

D. Named access lists are configured on the WLC. 

Answer: D 

500-254 exam question

Most recent 500-254 actual test:

Q24. Client provisioning resources can be added into the Cisco ISE Administration node from which three of these? (Choose three.) 


B. local disk 

C. Posture Agent Profile 



Answer: ABC 

Q25. Which of these is not a default behavior of Cisco ISE 1.1, with respect to authentication, when a user connects to a switch port that is configured for 802.1X, MAB, and web authentication? 

A. MAB uses internal endpoints for retrieving identity. 

B. 802.1X uses internal users for retrieving identity. 

C. Central WebAuth relies on MAB for initial port authentication. 

D. Authentication fails if there is no matching policy. 

Answer: D 

Q26. Which network information device sensor is sending in the RADIUS accounting packet? 





Answer: A 

500-254 download

Breathing test 500-254:

Q27. Which two elements must you configure on a Cisco Wireless LAN Controller to allow Cisco ISE to authenticate wireless users? (Choose two.) 

A. Configure Cisco ISE as a RADIUS authentication server and enter a shared secret. 

B. Configure Cisco ISE as a RADIUS accounting server and enter a shared secret. 

C. Configure all attached LWAPs to use the configured Cisco ISE node. 

D. Configure RADIUS attributes for each SSID. 

E. Configure each WLAN to use the configured Cisco ISE node. 

F. Configure the Cisco Wireless LAN Controller to join a Microsoft Active Directory domain. 

Answer: AE 

Q28. Inline Posture nodes support which enforcement mechanisms? 

A. VLAN assignment 

B. downloadable ACLs 

C. security group access 

D. dynamic ACLs 

Answer: B 

Q29. Which three Cisco TrustSec enforcement modes are used to help protect network operations when securing the network? (Choose three.) 

A. logging mode 

B. monitor mode 

C. semi-passive mode 

D. low-impact mode 

E. closed mode 

Answer: BDE 

Q30. Which three conditions can be used for posture checking? (Choose three.) 

A. application 

B. operating system 

C. file 

D. certificate 

E. service 

Answer: ACE 

Related 500-254 Articles