Save Endpoint Identity Group Filter in Cisco ISE

Configure endpoint identity management
Answer Correct answer: C — Create and save an advanced filter with the specified criteria to ease management of endpoint identity groups.

An engineer wants to ease the management of endpoint identity groups from the Cisco ISE GUI. From the Identity Management menu in Cisco ISE, the engineer must be able to list the endpoint identity groups with a name that contains Android. Which task must the engineer perform?

  1. Create and save a quick filter with name equals Android as the criteria.
  2. Create an identity group named Android and set the parent group to profiled.
  3. Create and save an advanced filter with name equals Android as the criteria. Correct Answer
  4. Create an identity group named Android and populate the group with Android devices only.

Community Votes

C
100%

100% of anonymous learners picked answer C. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

The question tests the ability to save filters in Cisco ISE's Identity Management menu, where the common trap is assuming Quick Filters can be saved.

Cisco ISE allows administrators to ease endpoint identity group management by saving filters for repeated use. This page establishes that Advanced Filters, not Quick Filters, are the feature used to save and reuse search criteria in the Identity Management menu.

Choosing Option A because Quick Filters are frequently used for fast ad-hoc searches, but they cannot be saved for future use in Cisco ISE.

Community Discussion (3 comments)

ce1997d 👍 1 Selected: C
C is the best option but its also wrong. The advance filter should be set to "Contains Android" not equals since it ask for any identity group with the word Android.
4004aa3 👍 2 Selected: C
C is correct, You cannot save Quick filter: https://www.cisco.com/en/US/docs/security/ise/1.0/user_guide/ise10_man_identities.html#wp1152187
ZoneHacker 👍 1 Selected: C
I would have chosen the C but the A is also possible in my opinion.

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

Option C is the correct choice because Cisco ISE only allows Advanced Filters to be saved for future use; Quick Filters are temporary and cannot be saved. To ease the management of repeatedly listing specific endpoint identity groups, an administrator must create and save an Advanced Filter. Although the option text states "name equals Android" rather than "contains," Advanced Filters are the only mechanism in the Identity Management menu that support saving filter criteria for later reuse.

Why the Other Options Are Wrong

Option A is incorrect because Quick Filters in Cisco ISE are session-only and cannot be saved for later use. Options B and D are incorrect because creating a static identity group or manually populating a group does not address the requirement of filtering the existing list of identity groups from the GUI to display those matching a naming convention.

Community Comment Notes

Commenters agreed that Option C is correct because Quick Filters cannot be saved, as noted by one user who provided a reference: "You cannot save Quick filter". Another commenter pointed out a flaw in the option's wording, noting that the criteria should be set to "Contains Android" instead of "equals" to properly meet the question's requirement of finding names that contain the word Android.

Official Reference

Exam Strategy

Remember the distinction between Quick Filters and Advanced Filters in Cisco ISE: Quick Filters are temporary and cannot be saved, while Advanced Filters can be saved and reused for ongoing management tasks.

Related Analysis

← Back to 300-715 Study Guide