300-430 exam dumps

300-430 practice question 291 of 324

Implementing Cisco Enterprise Wireless Networks. Professional level, Cisco. Free question with the correct answer and a full explanation.

300-430 Question 291

Single answer

A network administrator is tasked with implementing Cisco Identity Services Engine (ISE) to provide secure wireless network access for employees and guests. The administrator wants to enforce policies based on user roles and ensure that only corporate-issued devices can access the internal network. Which configuration option in ISE should the administrator use to achieve this?

  1. A

    Device Profiling Policies

  2. B

    Guest Access Services

  3. C

    Policy Sets

  4. D

    RADIUS Accounting

Show answer and explanation

Correct answer: C

Explanation

To enforce policies based on user roles and restrict access to only corporate-issued devices, the administrator should configure Policy Sets in Cisco ISE. Policy Sets allow for granular control, enabling the definition of rules based on user roles, device compliance, and other conditions. Other options, such as Device Profiling Policies or RADIUS Accounting, do not provide the required functionality for this scenario.

  • A. Incorrect.

    Device Profiling Policies are used to identify and classify devices based on their attributes, but they do not directly enforce user role policies or restrict access to corporate devices.

  • B. Incorrect.

    Guest Access Services are designed for managing guest users and providing them limited access, but they do not enforce policies for employees or corporate-issued devices.

  • C. Correct.

    Policy Sets in Cisco ISE allow administrators to create and enforce rules based on user roles, device compliance, and other conditions, making it the correct option to enforce internal network access for corporate devices.

  • D. Incorrect.

    RADIUS Accounting is used for tracking and reporting purposes, such as logging user sessions, but it does not enforce access policies.

Timed practice exam

Take a 300-430 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam