HP Aruba Certified Campus Access Professional Exam HPE7-A01 Question # 6 Topic 1 Discussion
HPE7-A01 Exam Topic 1 Question 6 Discussion:
Question #: 6
Topic #: 1
A customer is concerned about me unprotected traffic between an AOS-CX switch and a gateway, running on AOStO. What is a feasible option to protect this traffic?
A.
Implement an IPSec tunnel to protect PAPI between the AOS-CX switches and the gateway
B.
Implement an MD5 HMAC function lo protect PAPI between the AOS-CX switches and the gateway
C.
Implement a GRE tunnel to protect PAPI between the AOS-CX switches and the gateway
D.
no action is needed, an RSA certificate already encrypts the traffic
According to the Aruba Documentation Portal1, PAPI (Port Aggregation Protocol) is a protocol that allows multiple physical ports to be aggregated into a single logical port for increased bandwidth and performance. PAPI can be used between AOS-CX switches and gateways, or between AOS-CX switches and other devices.
Option A: Implement an IPSec tunnel to protect PAPI between the AOS-CX switches and the gateway
This is because option A shows how to implement an IPSec tunnel between two devices using the interface command and the ipsec command. An IPSec tunnel can provideencryption and authentication for PAPI traffic between two devices, such as an AOS-CX switch and a gateway2.
Therefore, option A is a feasible option to protect this traffic.
I hope this helps you. If you need more information, please let me know.????
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit