300-715 Exam Details

  • Exam Code
    :300-715
  • Exam Name
    :Implementing and Configuring Cisco Identity Services Engine (SISE)
  • Certification
    :CCNP Security
  • Vendor
    :Cisco
  • Total Questions
    :448 Q&As
  • Last Updated
    :May 25, 2026

Cisco 300-715 Online Questions & Answers

  • Question 291:

    A network engineer needs to ensure that the access credentials are not exposed during the 802.1x authentication among components. Which two protocols should complete this task? (Choose two.)

    A. PEAP
    B. EAP-MD5
    C. LEAP
    D. EAP-TLS
    E. EAP-TTLS

  • Question 292:

    An administrator is adding a switch to the network that is running cisco ISE and is only for IP phones. the phones do not have the ability to authenticate via 802.1x. Which command is needed on each switch port for authentication?

    A. dot1x system-auth-control
    B. enable bypass-mac
    C. enable network-authentication
    D. mab

  • Question 293:

    What must be configured on the WLC to configure Central Web Authentication using Cisco ISE and a WLC?

    A. Set the NAC State option to SNMP NAC.
    B. Set the NAC State option to RADIUS NAC.
    C. Use the radius-server vsa send authentication command.
    D. Use the ip access-group webauth in command.

  • Question 294:

    An administrator is attempting to join a new node to the primary Cisco ISE node, but receives the error message "Node is Unreachable". What is causing this error?

    A. The second node is a PAN node.
    B. No administrative certificate is available for the second node.
    C. The second node is in standalone mode.
    D. No admin privileges are available on the second node.

  • Question 295:

    An engineer is implementing network access control using Cisco ISE and needs to separate the traffic based on the network device ID and use the IOS device sensor capability. Which probe must be used to accomplish this task?

    A. HTTP probe
    B. NetFlow probe
    C. network scan probe
    D. RADIUS probe

  • Question 296:

    An engineer must create an authentication policy in Cisco ISE to allow wired printers that lack support for 802.1X onto the network. What must the RadiusFlowType be set to in the policy to meet the requirement?

    A. MAB
    B. Wired_MAB
    C. Compliant_Devices
    D. Compliance_Unknown_Devices

  • Question 297:

    When configuring an authorization policy, an administrator cannot see specific Active Directory groups present in their domain to be used as a policy condition. However, other groups that are in the same domain are seen. What is causing this issue?

    A. Cisco ISE only sees the built-in groups, not user created ones
    B. The groups are present but need to be manually typed as conditions
    C. Cisco ISE's connection to the AD join point is failing
    D. The groups are not added to Cisco ISE under the AD join point

  • Question 298:

    An engineer is using the low-impact mode for a phased deployment of Cisco ISE and is trying to connect to the network prior to authentication. Which access will be denied in this?

    A. HTTP
    B. DNS
    C. EAP
    D. DHCP

  • Question 299:

    A network engineer is attempting to terminate and reinitialize wireless user sessions individually by using the Live Sessions tab in Cisco ISE. Cisco ISE and the Cisco WLC are separated by a firewall. Which port must be allowed on the firewall so that the network engineer can perform this function from Cisco ISE?

    A. TCP port 8443
    B. UDP port 5246
    C. UDP port 1700
    D. TCP port 3791

  • Question 300:

    An engineer is deploying Cisco ISE in a network that contains an existing Cisco Secure Firewall ASA. The customer requested that Cisco TrustSec be configured so that Cisco ISE and the firewall can share SGT information. Which protocol must be configured on Cisco ISE to meet the requirement?

    A. RADUIS
    B. pxGrid
    C. PAC
    D. SXP

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 300-715 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.