exam questions

Exam 500-490 All Questions

View all questions & answers for the 500-490 exam

Exam 500-490 topic 1 question 6 discussion

Actual exam question from Cisco's 500-490
Question #: 6
Topic #: 1
[All 500-490 Questions]

Which two statements are true regarding Cisco ISE? (Choose two.)

  • A. It distributed deployments, failover from primary to secondary Policy Administration Nodes happens automatically.
  • B. The number of logs that ISE can retain is determined by your disk space.
  • C. ISE supports IPv6 downloadable ACLs.
  • D. ISE can detected endpoints whose addresses have been translated via NAT.
  • E. ISE supports up to 100 Policy Services Nodes.
  • F. In two-nodes standalone ISE deployments, failover must be done manually.
Show Suggested Answer Hide Answer
Suggested Answer: AB 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
asdfoqw2e032
Highly Voted 2 years, 9 months ago
Its B & C. IPv6 DACLs are supported. Failover has to be configured.
upvoted 10 times
...
kejvi
Most Recent 7 months, 3 weeks ago
Selected Answer: AB
ISE partialy support IPv6, but not downloadable ACL
upvoted 1 times
...
msmith508
10 months, 4 weeks ago
BC..."There is no automatic failover for the Administration persona." https://www.cisco.com/en/US/docs/security/ise/1.0/user_guide/ise10_dis_deploy.html...Newer platforms and ISE versions appear to support ipv6 dacl just fine now
upvoted 1 times
...
python_tamer
1 year, 6 months ago
Selected Answer: BC
B and C. A. It distributed deployments, failover from primary to secondary Policy Administration Nodes happens automatically. NO - you can configure automatic PAN failover but it's not enabled by default. B. The number of logs that ISE can retain is determined by your disk space. YES. C. ISE supports IPv6 downloadable ACLs. YES. D. ISE can detected endpoints whose addresses have been translated via NAT. NO. E. ISE supports up to 100 Policy Services Nodes. NO (50). F. In two-nodes standalone ISE deployments, failover must be done manually. TRICKY as it doesn't state if it's referring to PAN or PSN. PAN failover is manual if only 2 nodes as you need a third witness node, but PSN failover assuming NADs are correctly configured, is automatic. As this is a bit vague, let's say no.
upvoted 2 times
...
daduizhang
1 year, 9 months ago
i think answer is A,C
upvoted 1 times
...
on1y_hardcore
2 years, 4 months ago
I think it is A,C. dACL IPv6 supported - C: https://www.cisco.com/c/en/us/td/docs/security/ise/2-6/admin_guide/b_ise_admin_guide_26/b_ise_admin_guide_26_chapter_00.html#concept_1DDC955BCC5446FF8A10F4E33291D84F Auto failover can be configured - A And for logging we use period of time.
upvoted 1 times
...
road2ccie
2 years, 5 months ago
answer is correct, dacl ipv6 is not supported.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...