CCNP Security 300-715 SISE Practice Test 8

CCNP Security 300-715 SISE Practice Test 8 (Hard) - Implementing MAC Authentication Bypass (MAB)

CISCO CCNP Security Exam Logo

1 / 10

Which authentication method authenticates a device to the network using its MAC address instead of requiring 802.1X supplicant software or user-entered credentials?

2 / 10

Which type of endpoint is MAC Authentication Bypass typically intended to support in a Cisco ISE deployment?

3 / 10

Which Cisco ISE identity store is commonly used to validate the MAC address presented during a MAB authentication attempt?

4 / 10

Which security limitation is commonly associated with MAC Authentication Bypass compared to certificate-based or credential-based 802.1X authentication?

5 / 10

Which Cisco ISE capability helps mitigate the weaker identity assurance of MAB by additionally analyzing device attributes (such as DHCP options or HTTP user-agent strings) to validate that a device's behavior matches its claimed identity?

6 / 10

Which authorization outcome would be appropriate to apply via Cisco ISE policy to a device that successfully passes MAB but has limited verified trust compared to a certificate-authenticated corporate laptop?

7 / 10

Which deployment practice helps reduce the operational burden of manually pre-registering every MAB-authenticated device's MAC address in Cisco ISE?

8 / 10

Which sequencing relationship is common between 802.1X and MAB on a wired switchport configured with IBNS 2.0 flexible authentication?

9 / 10

Which risk arises from relying on MAB as the sole authentication method for a large population of endpoints without any supplementary profiling or authorization restriction?

10 / 10

Which combination of practices would provide a reasonably secure MAB deployment for a large number of non-802.1X-capable IoT devices in a Cisco ISE environment?

Your score is

The average score is 0%

0%