300-715 Exam Details

  • Exam Code
    :300-715
  • Exam Name
    :Implementing and Configuring Cisco Identity Services Engine (SISE)
  • Certification
    :CCNP Security
  • Vendor
    :Cisco
  • Total Questions
    :448 Q&As
  • Last Updated
    :May 25, 2026

Cisco 300-715 Online Questions & Answers

  • Question 191:

    What is a difference between RADIUS versus TACACS+ with regards to packet encryption?

    A. TACACS+ encrypts the entire body of the packet, and RADIUS encrypts the username and password in the access-request packet.
    B. RADIUS encrypts the entire body of the packet, and TACACS+ encrypts the username and password in the access-request packet.
    C. RADIUS encrypts the entire body of the packet, and TACACS+ encrypts only the password in the access-request packet.
    D. TACACS+ encrypts the entire body of the packet, and RADIUS encrypts only the password in the access-request packet.

  • Question 192:

    Which two statements are correct regarding the differences between RADIUS and TACACS+? (Choose two.)

    A. RADIUS encrypts the entire packet, whereas TACACS+ only encrypts the password field.
    B. RADIUS primary use is for network access, whereas TACACS+ primary use is for device administration.
    C. RADIUS combines the authentication and authorization functions, whereas TACACS+ separates them.
    D. RADIUS uses TCP as the transmission protocol, whereas TACACS+ uses both UDP and TCP protocols.
    E. RADIUS supports full command logging, whereas TACACS+ does not provide any command logging.

  • Question 193:

    An organization is adding nodes to their Cisco ISE deployment and has two nodes designated as primary and secondary PAN and MnT nodes. The organization also has four PSNs An administrator is adding two more PSNs to this deployment but is having problems adding one of them What is the problem?

    A. The new nodes must be set to primary prior to being added to the deployment
    B. The current PAN is only able to track a max of four nodes
    C. Only five PSNs are allowed to be in the Cisco ISE cube if configured this way.
    D. One of the new nodes must be designated as a pxGrid node

  • Question 194:

    When creating a policy within Cisco ISE for network access control, the administrator wants to allow different access restrictions based upon the wireless SSID to which the device is connecting. Which policy condition must be used in order to accomplish this?

    A. Network Access NetworkDeviceName CONTAINS
    B. DEVICE Device Type CONTAINS
    C. Radius Called-Station-ID CONTAINS
    D. Airespace Airespace-Wlan-ld CONTAINS

  • Question 195:

    An engineer is assigned to enhance security across the campus network. The task is to enable MAB across all access switches in the network. Which command must be entered on the switch to enable MAB?

    A. Switch(config)# authentication port-control auto
    B. Switch(config)# mab
    C. Switch# authentication port-control auto
    D. Switch(config-if)# mab

  • Question 196:

    A company manager is hosting a conference. Conference participants must connect to an open guest SSID and only use a preassigned code that they enter into the guest portal prior to gaining access to the network. How should the manager configure Cisco ISE to accomplish this goal?

    A. Create entries in the guest identity group for all participants.
    B. Create an access code to be entered in the AUP page.
    C. Create logins for each participant to give them sponsored access.
    D. Create a registration code to be entered on the portal splash page.

  • Question 197:

    DRAG DROP

    An engineer must configure Cisco TrustSec in Cisco ISE. The engineer completes the Active Directory integration but must create a security group.

    Drag and drop the configuration steps from the left into the sequence on the right to create the security group.

    Select and Place:

  • Question 198:

    An engineer must onboard secure Windows 11 laptops of directors on the BYOD portal by using Cisco ISE. Corporate security policies require the Cisco ISE internal CA to use an ECC certificate rather than the standard RSA certificate.

    What must be configured in Cisco ISE?

    A. key type of ECC on the Cisco ISE EAP authentication certificate template
    B. key type of ECC in the Cisco ISE system certificates
    C. Windows 11 laptop with an ECC certificate as the minimal requirement
    D. key type of ECC in the Cisco ISE internal CA settings

  • Question 199:

    Which two configurations are needed on a catalyst switch for it to be added as a network access device in a Cisco ISE that is being used for 802 1X authentications? (Choose two ) A. Option A

    B. Option B

    C. Option C

    D. Option D

    E. Option E

    Correct Answer. AC

  • Question 200:

    Which media type must be used for zero-touch provisioning on a Cisco ISE hardware appliance?

    A. virtual media
    B. network
    C. USB
    D. CD/DVD

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 300-715 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.