Which combination of authentication policy design practices would provide secure and maintainable identity verification for an organization using a mix of 802.1X, MAB, and TACACS+ device administration?
Correct Answer: Distinct, clearly scoped authentication rules for each access type (802.1X, MAB, TACACS+) referencing appropriate identity source sequences, a safe default rule, and regular review of live authentication logs
Explanation: Distinct, well-scoped rules per access type, a safe default rule, and regular log review provide secure, maintainable authentication policy, unlike a single undifferentiated catch-all rule, an always-accept default rule, never reviewing logs, mismatched identity source sequences, or random-order identity source attempts with no defined precedence.
Correct Answer: Distinct, clearly scoped authentication rules for each access type (802.1X, MAB, TACACS+) referencing appropriate identity source sequences, a safe default rule, and regular review of live authentication logs
Explanation: Distinct, well-scoped rules per access type, a safe default rule, and regular log review provide secure, maintainable authentication policy, unlike a single undifferentiated catch-all rule, an always-accept default rule, never reviewing logs, mismatched identity source sequences, or random-order identity source attempts with no defined precedence.