Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 300-715 Exam - Topic 13 Question 103 Discussion

An engineer is unable to use SSH to connect to a switch after adding the required CLI commands to the device to enable TACACS+. The device administration license has been added to Cisco ISE, and the required policies have been created. Which action is needed to enable access to the switch?
D) The switch needs to be added as a network device in Cisco ISE and set to use TACACS+.
A) The ip ssh source-interface command needs to be set on the switch
B) 802.1X authentication needs to be configured on the switch.
C) The RSA keypair used for SSH must be regenerated after enabling TACACS+.

Cisco 300-715 Exam - Topic 13 Question 103 Discussion

Actual exam question for Cisco's 300-715 exam
Question #: 103
Topic #: 13
[All 300-715 Questions]

An engineer is unable to use SSH to connect to a switch after adding the required CLI commands to the device to enable TACACS+. The device administration license has been added to Cisco ISE, and the required policies have been created. Which action is needed to enable access to the switch?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Johana
9 months ago
Wait, does TACACS+ really affect SSH like that?
upvoted 0 times
...
Johnna
9 months ago
Adding the switch in Cisco ISE is a must!
upvoted 0 times
...
Johnson
10 months ago
Definitely need to check the RSA keypair after TACACS+ setup.
upvoted 0 times
...
Eladia
10 months ago
I think 802.1X is not the issue here.
upvoted 0 times
...
Shenika
10 months ago
The ip ssh source-interface command is crucial for SSH access.
upvoted 0 times
...
Kayleigh
10 months ago
Adding the switch as a network device in Cisco ISE sounds familiar, but I’m not confident if that’s the right step to take in this scenario.
upvoted 0 times
...
Terrilyn
11 months ago
I feel like regenerating the RSA keypair could be a possibility, but I don't know if that’s necessary just because TACACS+ was enabled.
upvoted 0 times
...
Edward
11 months ago
I think we might have covered a similar question where we had to configure 802.1X, but I can't recall if it applies here since TACACS+ is already set up.
upvoted 0 times
...
Amber
11 months ago
I remember something about needing to set the SSH source interface, but I'm not entirely sure if that's the only thing we need to check.
upvoted 0 times
...
Janet
11 months ago
Ah, I see. The question is really about making sure the integration between the switch and Cisco ISE is set up correctly. Option D sounds like the right approach to me.
upvoted 0 times
...
Jeannine
11 months ago
Based on my understanding, the issue is likely with the SSH configuration on the switch. I'd start by checking the ip ssh source-interface command to ensure it's set properly.
upvoted 0 times
...
Sharee
11 months ago
Wait, I'm a bit confused. Didn't we just enable TACACS+ on the switch? Why would we need to add it to Cisco ISE as well?
upvoted 0 times
...
Chaya
11 months ago
Okay, I think I know the answer here. The key is making sure the switch is properly configured in Cisco ISE to use TACACS+ for authentication.
upvoted 0 times
...
Whitney
11 months ago
Hmm, this seems tricky. I'll need to carefully consider the different options and think through the logical steps.
upvoted 0 times
...
Darrin
2 years ago
Wow, I'm impressed they're testing our Cisco ISE knowledge. Gotta love those enterprise-level authentication protocols.
upvoted 0 times
Arlene
2 years ago
D) The switch needs to be added as a network device in Cisco ISE and set to use TACACS+.
upvoted 0 times
...
Monroe
2 years ago
C) The RSA keypair used for SSH must be regenerated after enabling TACACS+.
upvoted 0 times
...
Mollie
2 years ago
A) The ip ssh source-interface command needs to be set on the switch
upvoted 0 times
...
...
Velda
2 years ago
Haha, 802.1X? On a switch? What is this, a wireless network? I'm going with the Cisco ISE option.
upvoted 0 times
...
Nancey
2 years ago
Regenerating the RSA keypair? That's a bit overkill, don't you think? Let's just add the switch to Cisco ISE and be done with it.
upvoted 0 times
...
Tonette
2 years ago
Ah, I see! The switch needs to be registered with Cisco ISE as a network device and set to use TACACS+ authentication. Makes sense.
upvoted 0 times
Aliza
2 years ago
User 3: Did you also regenerate the RSA keypair for SSH after enabling TACACS+?
upvoted 0 times
...
Page
2 years ago
User 2: Yes, I did that and set it to use TACACS+ authentication.
upvoted 0 times
...
Fletcher
2 years ago
User 1: Have you tried adding the switch as a network device in Cisco ISE?
upvoted 0 times
...
...
An
2 years ago
I don't think regenerating the RSA keypair is necessary if TACACS+ has already been enabled. Adding the switch to Cisco ISE should do the trick.
upvoted 0 times
...
Devorah
2 years ago
But what about regenerating the RSA keypair used for SSH? Could that also be a solution?
upvoted 0 times
...
Curtis
2 years ago
Wait, so we need to add the switch to Cisco ISE and configure it to use TACACS+? Seems like a lot of work just to get SSH access.
upvoted 0 times
Gregoria
2 years ago
It may seem like a lot of work, but it's important for security and access control.
upvoted 0 times
...
Latrice
2 years ago
Yes, that's correct. Adding the switch to Cisco ISE and configuring TACACS+ is necessary for SSH access.
upvoted 0 times
...
...
Glendora
2 years ago
I agree with An, that seems like the most logical step to enable access to the switch.
upvoted 0 times
...
An
2 years ago
I think the switch needs to be added as a network device in Cisco ISE and set to use TACACS+.
upvoted 0 times
...

Save Cancel