🔥 3-day streak
Cisco CCNP Security SISE — Implementing and Configuring Cisco Identity Services Engine (300-715)126 / 139
Question 126 of 139
A network administrator is configuring TACACS+ device administration in Cisco ISE. Senior engineers who belong to the Active Directory group 'NetOps-Senior' must be granted full privilege-15 shell access with no command restrictions, while junior engineers in 'NetOps-Junior' should log in at privilege 15 but only be permitted to run 'show' commands. Both groups authenticate against the same AD join point and connect to the same IOS switches. Which combination of ISE Device Admin policy components correctly enforces this differentiated access?
Reviewed for accuracy · Report an issueNext question