BC..."There is no automatic failover for the Administration persona." https://www.cisco.com/en/US/docs/security/ise/1.0/user_guide/ise10_dis_deploy.html...Newer platforms and ISE versions appear to support ipv6 dacl just fine now
B and C.
A. It distributed deployments, failover from primary to secondary Policy Administration Nodes happens automatically.
NO - you can configure automatic PAN failover but it's not enabled by default.
B. The number of logs that ISE can retain is determined by your disk space.
YES.
C. ISE supports IPv6 downloadable ACLs.
YES.
D. ISE can detected endpoints whose addresses have been translated via NAT.
NO.
E. ISE supports up to 100 Policy Services Nodes.
NO (50).
F. In two-nodes standalone ISE deployments, failover must be done manually.
TRICKY as it doesn't state if it's referring to PAN or PSN. PAN failover is manual if only 2 nodes as you need a third witness node, but PSN failover assuming NADs are correctly configured, is automatic. As this is a bit vague, let's say no.
I think it is A,C.
dACL IPv6 supported - C:
https://www.cisco.com/c/en/us/td/docs/security/ise/2-6/admin_guide/b_ise_admin_guide_26/b_ise_admin_guide_26_chapter_00.html#concept_1DDC955BCC5446FF8A10F4E33291D84F
Auto failover can be configured - A
And for logging we use period of time.
This section is not available anymore. Please use the main Exam Page.500-490 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
asdfoqw2e032
Highly Voted 2 years, 9 months agokejvi
Most Recent 7 months, 3 weeks agomsmith508
10 months, 4 weeks agopython_tamer
1 year, 6 months agodaduizhang
1 year, 9 months agoon1y_hardcore
2 years, 4 months agoroad2ccie
2 years, 5 months ago