exam questions

Exam 300-715 All Questions

View all questions & answers for the 300-715 exam

Exam 300-715 topic 1 question 155 discussion

Actual exam question from Cisco's 300-715
Question #: 155
Topic #: 1
[All 300-715 Questions]

An administrator adds a new network device to the Cisco ISE configuration to authenticate endpoints to the network. The RADIUS test fails after the administrator configures all of the settings in Cisco ISE and adds the proper configurations to the switch.
What is the issue?

  • A. The endpoint profile is showing as ''unknown"
  • B. The endpoint does not have the appropriate credentials for network access
  • C. The certificate on the switch is self-signed, not a CA-provided certificate
  • D. The shared secret is incorrect on the switch or on Cisco ISE
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
tliz
Highly Voted 1 year, 8 months ago
Selected Answer: D
I believe D is the correct answer. RADIUS test is called out in the question. Im assuming the CLI *test aaa group radius server ise-psn fake-user fake-pass new-code* is used. In this example when the 'RADIUS test' fails it is due to an incorrect shared secret. Endpoint has nothing to do with RADIUS test. Nothing in the question refers to RADIUS / DTLS so C is not the answer.
upvoted 7 times
Cachaman
1 month, 1 week ago
when you have the wrong key on the network device or ISE you will get: No authoritative response from server
upvoted 1 times
...
...
faridh
Highly Voted 1 year, 2 months ago
Selected Answer: B
If "the administrator configures all of the settings in Cisco ISE and adds the proper configurations to the switch" means the shared secrets were configured properly, The answer is B
upvoted 5 times
...
Cachaman
Most Recent 1 month, 1 week ago
Selected Answer: B
Correct answer is B 100%. I just tested this Wrong user creds (Same keys in ISE and the SW) 3560CX-B#test aaa group radius cisco wrong legacy Attempting authentication test to server-group radius using radius User authentication request was rejected by server. Correct user creds (Same keys in ISE and the SW) 3560CX-B#test aaa group radius cisco good legacy Attempting authentication test to server-group radius using radius User was successfully authenticated. Correct user creds (Different keys in ISE and the SW) 3560CX-B#test aaa group radius cisco good legacy Attempting authentication test to server-group radius using radius No authoritative response from any server.
upvoted 1 times
...
Cachaman
1 month, 3 weeks ago
Selected Answer: D
Correct answer is D The key here is "RADIUS test" is done with the command: test aaa radius username admin password cisco123 leagacy RADIUS communication happens between the NAS and ISE not the endpoint and the switch.
upvoted 1 times
...
dawlims
2 months, 2 weeks ago
Selected Answer: B
Answer for me is B because of this statement 'configures all of the settings in Cisco ISE and adds the proper configurations to the switch'.
upvoted 1 times
...
iteducation92
7 months, 3 weeks ago
Thanks for the post. visit https://www.iteducationcentre.com/ccna-course-in-pune-area.php for more details
upvoted 1 times
...
NullNull88
7 months, 3 weeks ago
"endpoint" is not relevant we are talking about a NAD and ISE
upvoted 1 times
...
Leogxn
1 year, 3 months ago
Selected Answer: B
If "the administrator configures all of the settings in Cisco ISE and adds the proper configurations to the switch" means the shared secrets were configured properly, The answer is B
upvoted 2 times
...
johndelorien
1 year, 4 months ago
Selected Answer: B
out of experience - D but based on "has been properly configured" it should be B
upvoted 1 times
...
denverfly
1 year, 5 months ago
Selected Answer: D
The most likely cause of the RADIUS test failure is that the shared secret is incorrect on the switch or on Cisco ISE. The shared secret is a password that is used to encrypt RADIUS traffic between the switch and Cisco ISE. If the shared secret is incorrect, then the RADIUS traffic will not be encrypted and will be easily intercepted by attackers. This could allow attackers to impersonate valid users and gain access to the network
upvoted 2 times
...
west33637
1 year, 9 months ago
Selected Answer: B
The question states that the NAD and ISE have been properly configured. This is a simulated user test.
upvoted 3 times
...
formentini
1 year, 9 months ago
Selected Answer: B
I think the answer is B. Question states that configuration has properly been made on both the devices (ISE and the switch)
upvoted 1 times
...
IlPerdan0
1 year, 10 months ago
Selected Answer: D
Usually the failing authentication between NAD and ISE is the mismatched RADIUS shared secret.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago