Implementing and Configuring Cisco Identity Services Engine (SISE) — Question 105
An engineer is configuring TACACS+ within Cisco ISE for use with a non-Cisco network device. They need to send special attributes in the Access-Accept response to ensure that the users are given the appropriate access. What must be configured to accomplish this?
Answer options
- A. custom access conditions for defining the different roles
- B. shell profiles with custom attributes that define the various roles
- C. dACLs to enforce the various access policies for the users
- D. TACACS+ command sets to provide appropriate access
Correct answer: B
Explanation
The correct answer is B because shell profiles with custom attributes allow the configuration of specific user roles and their associated attributes. Options A and C do not directly involve sending custom attributes in the Access-Accept response, while option D pertains to command sets rather than defining user roles with attributes.