Free Demo Questions

Test Online Free Cisco 300-715 Exam Questions and Answers

Practice a live sample before buying full access. This page keeps the free 300-715 question set organized by page so visitors and search engines can reach the canonical -questions.html URL directly.

Updated Sep 05, 2025 42 Questions 3 Pages
Page 2 of 3
Question 16 Selectable Answer
A network administrator changed a Cisco ISE deployment from pilot to production and noticed that the JVM memory utilization increased significantly. The administrator suspects this is due to replication between the nodes.
What must be configured to minimize performance degradation?

Answer:
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/ise/2-3/admin_guide/b_ise_admin_guide_23/b_ise_admin_guide_23_chapter_010111.html
Question 17 Written Answer
DRAG DROP
Drag and drop the description from the left onto the protocol on the right that is used to carry out system authentication, authentication, and accounting.


Answer:


Explanation:
Graphical user interface, chart, application
Description automatically generated
https://www.mbne.net/tech-notes/aaa-tacacs-radius
Question 18 Selectable Answer
An organization is hosting a conference and must make guest accounts for several of the speakers attending. The conference ended two days early but the guest accounts are still being used to access the network .
What must be configured to correct this?

Answer:
Question 19 Selectable Answer
Refer to the exhibit.



Which component must be configured to apply the SGACL?

Answer:
Explanation:
https://www.cisco.com/c/en/us/td/docs/switches/lan/trustsec/configuration/guide/trustsec/ar ch_over.html#52796
Question 20 Selectable Answer
An adminístrator is migrating device administration access to Cisco ISE from the legacy TACACS+ solution that used only privilege 1 and 15 access levels. The organization requires more granular controls of the privileges and wants to customize access levels 2-5 to correspond with different roles and access needs.
Besides defining a new shell profile in Cisco ISE. what must be done to accomplish this configuration?

Answer:
Explanation:
https://learningnetwork.cisco.com/s/blogs/a0D3i000002eeWTEAY/cisco-ios-privilege-levels
Question 21 Written Answer
DRAG DROP
Drag the descriptions on the left onto the components of 802.1X on the right.


Answer:


Explanation:
https://netlabz.wordpress.com/2016/09/24/cisco-ise-fundamentals/


Question 22 Selectable Answer
A network administrator is configuring authorization policies on Cisco ISE There is a requirement to use AD group assignments to control access to network resources After a recent power failure and Cisco ISE rebooting itself, the AD group assignments no longer work.
What is the cause of this issue?

Answer:
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/ise/2-3/ise_active_directory_integration/b_ISE_AD_integration_2x.html#ID612
Question 23 Selectable Answer
Which RADIUS attribute is used to dynamically assign the inactivity active timer for MAB users from the Cisco ISE node'?

Answer:
Question 24 Selectable Answer
What is a characteristic of the UDP protocol?

Answer:
Explanation:
https://www.cisco.com/c/en/us/support/docs/security-vpn/remote-authentication-dial-user-service-radius/13838-10.html
Question 25 Selectable Answer
An engineer is configuring 802.1X and wants it to be transparent from the users' point of view. The implementation should provide open authentication on the switch ports while providing strong levels of security for non-authenticated devices .
Which deployment mode should be used to achieve this?

Answer:
Explanation:
https://www.lookingpoint.com/blog/cisco-ise-wired-802.1x-deployment-monitormode#:~:text=Low%20impact%20mode%20works%20similar,DHCP%2C%20 PXE%20boot%2C%20etc.
Question 26 Selectable Answer
What is a valid guest portal type?

Answer:
Question 27 Selectable Answer
Which command displays all 802 1X/MAB sessions that are active on the switch ports of aCisco Catalyst switch?

Answer:
Question 28 Selectable Answer
Which two features should be used on Cisco ISE to enable the TACACS+ feature? (Choose two )

Answer:
Question 29 Selectable Answer
An engineer is configuring Cisco ISE policies to support MAB for devices that do not have 802.1X capabilities. The engineer is configuring new endpoint identity groups as conditions to be used in the AuthZ policies, but noticed that the endpoints are not hitting the correct policies .
What must be done in order to get the devices into the right policies?

Answer:
Question 30 Selectable Answer
Refer to the exhibit. An engineer is creating a new TACACS* command set and cannot use any show commands after togging into the device with this command set authorization.
Which configuration is causing this issue?

Answer:
Showing page 2 of 3