Implementing and Operating Cisco Security Core Technologies (SCOR) — Question 380
Which two configurations must be made on Cisco ISE and on Cisco TrustSec devices to force a session to be adjusted after a policy change is made? (Choose two.)
Answer options
- A. posture assessment
- B. aaa authorization exec default local
- C. tacacs-server host 10.1.1.250 key password
- D. aaa server radius dynamic-author
- E. CoA
Correct answer: D, E
Explanation
The correct answers are D and E because 'aaa server radius dynamic-author' allows for dynamic authorization of users, and 'CoA' (Change of Authorization) is used to modify the session parameters when a policy change occurs. The other options do not directly facilitate session adjustments in response to policy changes.