exam questions

Exam 400-007 All Questions

View all questions & answers for the 400-007 exam

Exam 400-007 topic 1 question 132 discussion

Actual exam question from Cisco's 400-007
Question #: 132
Topic #: 1
[All 400-007 Questions]

An architect receives a functional requirement for a NAC system from a customer security policy stating that if a corporate Wi-Fi device does not meet current AV definitions, then it cannot access the corporate network until the definitions are updated. Which component should be built into the NAC design?

  • A. posture assessment with remediation VLAN
  • B. quarantine SGTs
  • C. dACLs with SGTs
  • D. quarantine VLAN
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
J_W
Highly Voted 8 months ago
Selected Answer: A
The other options (B, C, and D) are related to NAC functionalities but do not specifically address the requirement of restricting network access based on the compliance status of AV definitions. They involve different aspects of network access control, such as using security group tags (SGTs) and dynamic access control lists (dACLs) for segmentation and quarantine VLANs for isolating non-compliant devices, but they may not directly align with the given requirement.
upvoted 5 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...