Pass the HP HPE Aruba Certified HPE6-A68 Questions and answers with CertsForce

Viewing page 3 out of 4 pages
Viewing questions 21-30 out of questions
Questions # 21:

A customer wants to implement Virtual IP redundancy, such that in case of a ClearPass server outage, 802.1x authentications will not be interrupted. The administrator has enabled a single Virtual IP address on two ClearPass servers.

Which statements accurately describe next steps? (Select two.)

Options:

A.

The NAD should be configured with the primary node IP address for RADIUS authentication on the 802.1x network.


B.

A new Virtual IP address should be created for each NAD.


C.

Both the primary and secondary nodes will respond to authentication requests sent to the Virtual IP address when the primary node is active.


D.

The primary node will respond to authentication requests sent to the Virtual IP address when the primary node is active.


E.

The NAD should be configured with the Virtual IP address for RADIUS authentications on the 802.1x network.


Expert Solution
Questions # 22:

Refer to the exhibit.

Question # 22

A user logged in to the Self-Service Portal as shown.

What do the traffic received and sent statistics present?

Options:

A.

These show the total amount of traffic the guest transmitted, as seen through RADIUS CoA packets from the NAD to ClearPass.


B.

These show the total amount of traffic the NAD transmitted to ClearPass, as seen through RADIUS accounting messages from the NAD to ClearPass.


C.

These show the total amount of traffic the guest transmitted after account expiration, as seen through RADIUS accounting messages sent from the NAD to ClearPass.


D.

These show the total amount of traffic the guest transmitted, as seen through RADIUS CoA packets from the client to ClearPass.


E.

These show the total amount of traffic the guest transmitted, as seen through RADIUS accounting messages sent from the NAD to ClearPass.


Expert Solution
Questions # 23:

Refer to the exhibit.

Question # 23

A user who is tagged with the ClearPass roles of Role_Engineer and developer, but not testqa, connects to the network with a corporate Windows laptop.

Which Enforcement Profile is applied?

Options:

A.

WIRELESS_GUEST_NETWORK


B.

WIRELESS_CAPTIVE_NETWORK


C.

WIRELESS_HANDHELD_NETWORK


D.

Deny Access


E.

WIRELESS_EMPLOYEE_NETWORK


Expert Solution
Questions # 24:

Question # 24

Based on the Policy configuration shown, which VLAN will be assigned when a user with ClearPass role Engineer authenticates to the network successfully using connection protocol WEBAUTH?

Options:

A.

Deny Access


B.

Employee VLAN


C.

Internet VLAN


D.

Full Access VLAN


Expert Solution
Questions # 25:

Refer to the exhibit.

Question # 25

What information can be drawn from the audit row detail shown? (Select two.)

Options:

A.

radius01 was deleted from the list of authentication sources.


B.

The policy service was moved to position number 4.


C.

radius01 was moved to position number 4.


D.

The policy service was moved to position number 3.


E.

raduis01 was added as an authentication source.


Expert Solution
Questions # 26:

Refer to the exhibit.

Question # 26

In the Aruba RADIUS dictionary shown, what is the purpose of the RADIUS attributes?

In the Aruba RADIUS dictionary shown, what is the purpose of the RADIUS attributes?

Options:

A.

to send information via RADIUS packets to Aruba NADs


B.

to gather and send Aruba NAD information to ClearPass


C.

to send information via RADIUS packets to clients


D.

to gather information about Aruba NADs for ClearPass


E.

to send CoA packets from ClearPass to the Aruba NAD


Expert Solution
Questions # 27:

Refer to the exhibit.

Question # 27

A guest connects to the Guest SSID and authenticates successfully using the guest.php web login page.

Based on the MAC Caching service information shown, which statement about the guests’ MAC address is accurate?

Options:

A.

It will be visible in the Guest User Repository with Unknown Status


B.

It will be deleted from the Endpoint table.


C.

It will be visible in the Guest User Repository with Known Status.


D.

It will be visible in the Endpoints table with Known Status.


E.

It will be visible in the Endpoints table with Unknown Status.


Expert Solution
Questions # 28:

Use the arrows to sort the steps to request a Policy Service on the left into the order they are performed on the right.

Question # 28


Expert Solution
Questions # 29:

ClearPass and a wired switch are configured for 802.1x authentication with RADIUS CoA (RFC 3576) on UDP port 3799. This port has been blocked by a firewall between the wired switch and ClearPass.

What will be the outcome of this state?

Options:

A.

RADIUS Authentications will fail because the wired switch will not be able to reach the ClearPass server.


B.

During RADIUS Authentication, certificate exchange between the wired switch and ClearPass will fail.


C.

RADIUS Authentications will timeout because the wired switch will not be able to reach the ClearPass server.


D.

RADIUS Authentication will succeed, but Post-Authentication Disconnect-Requests from ClearPass to the wired switch will not be delivered.


E.

RADIUS Authentication will succeed, but RADIUS Access-Accept messages from ClearPass to the wired switch for Change of Role will not be delivered.


Expert Solution
Questions # 30:

Refer to the exhibit.

Question # 30

Based on the guest Self-Registration with Sponsor Approval workflow shown, at which stage does the sponsor approve the user’s request?

Options:

A.

After the RADIUS Access-Request


B.

After the NAS login, but before the RADIUS Access-Request


C.

Before the user can submit the registration form


D.

After the RADIUS Access-Response


E.

After the receipt page is displayed, before the NAS login


Expert Solution
Viewing page 3 out of 4 pages
Viewing questions 21-30 out of questions