Implementing and Configuring Cisco Identity Services Engine (SISE) — Question 333
Due to a recent network incident, all access to network devices must be centrally logged and tracked in Cisco ISE. On which nodes must the Device Admin service be enabled?
Answer options
- A. one PAN
- B. each PSN
- C. each PAN
- D. one PSN
Correct answer: B
Explanation
The Device Admin service needs to be enabled on each Policy Services Node (PSN) to ensure comprehensive access logging and tracking for all network devices. While the PAN manages the system, it is the PSNs that handle authentication requests, making them crucial for this functionality. The other options do not provide the necessary coverage for device access monitoring.