Download Aruba Certified ClearPass Associate 6.5.HPE6-A07.CertDumps.2018-01-05.40q.vcex

Vendor: HP
Exam Code: HPE6-A07
Exam Name: Aruba Certified ClearPass Associate 6.5
Date: Jan 05, 2018
File Size: 3 MB

How to open VCEX files?

Files with VCEX extension can be opened by ProfExam Simulator.

Demo Questions

Question 1
Which licenses are included in the built-in starter kit for ClearPass?
  1. 10 ClearPass Guest licenses, 10 ClearPass OnGuard licenses and 10 ClearPass Onboard licenses
  2. 10 ClearPass Enterprise licenses
  3. 25 ClearPass Policy Manager licenses
  4. 25 ClearPass Profiler licenses
  5. 25 ClearPass Enterprise licenses
Correct answer: E
Question 2
What happens when a client successfully authenticates but does not match any Enforcement Policy rules?
  1. no role is applied to the device
  2. logon profile is applied to the device
  3. default Enforcement profile is applied
  4. guest rule is applied to the device
  5. default rule is applied to the device
Correct answer: C
Explanation:
The first time a device connects, it's allowed on in a limited state (session timeout is a low value and DHCP is allowed) because it doesn't match any Enforcement policy rules based on Endpoint Category.  The default enforcement profile is used. Reference: http://community.arubanetworks.com/t5/Security/MAC-Auth-Service-for-AP-s-Printers-Etc/td-p/243252
The first time a device connects, it's allowed on in a limited state (session timeout is a low value and DHCP is allowed) because it doesn't match any Enforcement policy rules based on Endpoint Category.  The default enforcement profile is used. 
Reference: http://community.arubanetworks.com/t5/Security/MAC-Auth-Service-for-AP-s-Printers-Etc/td-p/243252
Question 3
When Active Directory is added as an authentication source, what should the format be for the Active Directory bin DN?
  1. admin.domain.com
  2. domain.com\admin
  3. domain.com
  4. admin\domain.com
Correct answer: D
Explanation:
For Active Directory, the bind DN can also be in the administrator@domain format (for example, [email protected]). Reference http://www.arubanetworks.com/techdocs/ClearPass/Aruba_CPPMOnlineHelp/Content/CPPM_UserGuide/Auth/AuthSource_GenericLDAP.htm
For Active Directory, the bind DN can also be in the administrator@domain format (for example, [email protected]). 
Reference http://www.arubanetworks.com/techdocs/ClearPass/Aruba_CPPMOnlineHelp/Content/CPPM_UserGuide/Auth/AuthSource_GenericLDAP.htm
Question 4
   
Refer to the exhibit. A user has enabled ‘department’ and ‘memberOf’ as roles. 
What is the direct effect of the user’s action?
  1. The user’s authentication will be rejected if the user does not have an admin user group membership in AD.
  2. The user’s memberOf attribute is sent back to the controller as a firewall role.
  3. The user’s department and group membership will be seen in the Access tracker roles section.
  4. The user’s authentication will be rejected if the user does not have a department attribute in AD.
  5. The user’s department is sent back to the controller as a firewall role.
Correct answer: A
Question 5
When enforcement action is used in ClearPass to bounce a client?
  1. Webpage redirect
  2. ACL
  3. VLAN attribute
  4. RADIUS VSA
  5. RADIUS CoA
Correct answer: E
Explanation:
In the Profiler tab, change the RADIUS CoA Action to "[Cisco - Bounce-Host-Port]".  Make sure your switch is configured for this. Reference http://community.arubanetworks.com/t5/Security/MAC-Auth-Service-for-AP-s-Printers-Etc/td-p/243252
In the Profiler tab, change the RADIUS CoA Action to "[Cisco - Bounce-Host-Port]".  Make sure your switch is configured for this. 
Reference http://community.arubanetworks.com/t5/Security/MAC-Auth-Service-for-AP-s-Printers-Etc/td-p/243252
Question 6
   
Refer to the exhibit. A user connects to an Aruba Access Point wireless SSID named “secure-corporate” and performs an 802.1X authentication with ClearPass as the authentication server. 
Based on this service configuration, which service will be triggered?
  1. pod8-mac auth
  2. No service will be triggered
  3. pod8wireless
  4. [Policy Manager Admin Network Service]
  5. pod8wired
Correct answer: A
Question 7
A ClearPass deployment needs to be designed to determine whether a user authenticating is an HR department employee in the Active Directory Server and whether the user’s device is healthy. 
Which policy service components will the network administrator need to use?
  1. Posture, Authentication and Authorization
  2. Posture and Firewall Roles
  3. Posture and Onboard
  4. Authentication and Authorization
  5. Posture, Authentication and Onboarding
Correct answer: A
Explanation:
Reference http://www.arubanetworks.com/techdocs/ClearPass/Aruba_CPPMOnlineHelp/Content/CPPM_UserGuide/About%20ClearPass/About_ClearPass.htm
Reference http://www.arubanetworks.com/techdocs/ClearPass/Aruba_CPPMOnlineHelp/Content/CPPM_UserGuide/About%20ClearPass/About_ClearPass.htm
Question 8
What is Radius CoA used for?
  1. to validate a host MAC against a white and a black list
  2. to force the client to re-authenticate upon roaming to a new controller
  3. to authenticate users or devices before granting them access to a network
  4. to transmit messages to the NAD/NAS to modify a user’s session status
  5. to apply firewall policies based on authentication credentials
Correct answer: D
Question 9
Which statement most accurately describes how users with Active Directory credentials authenticate with ClearPass when Active Directory is used as an authentication source for an 802.1x service in ClearPass?
  1. A Kerberos request is sent from the Network Access Device to ClearPass which initiates a RADUIS request to the AD server.
  2. A RADIUS request is sent from the Network Access Device to the AD server which communicates with ClearPass.
  3. An LDAP request is sent from the Network Access Device to the AD server which communicates with ClearPass.
  4. An LDAP request is sent from the Network Access Device to ClearPass which initiates a RADIUS request to the AD server.
  5. A RADIUS request is sent from the Network Access Device to the ClearPass which communicates with the AD server.
Correct answer: C
Explanation:
Reference http://www.arubanetworks.com/techdocs/ClearPass/Aruba_DeployGd_HTML/Content/3%20Active%20Directory/AD_auth_source_adding.htm
Reference http://www.arubanetworks.com/techdocs/ClearPass/Aruba_DeployGd_HTML/Content/3%20Active%20Directory/AD_auth_source_adding.htm
Question 10
   
Refer to the exhibit. Based on the information shown, why did the Joining AD fail?
  1. the GSS is wrong
  2. the wrong FQDN of the AD was entered while joining
  3. the wrong domain name was selected while joining the AD
  4. there is a clock difference between ClearPass and AD servers
  5. there is an IP communication issue
Correct answer: C
HOW TO OPEN VCE FILES

Use VCE Exam Simulator to open VCE files
Avanaset

HOW TO OPEN VCEX AND EXAM FILES

Use ProfExam Simulator to open VCEX and EXAM files
ProfExam Screen

ProfExam
ProfExam at a 20% markdown

You have the opportunity to purchase ProfExam at a 20% reduced price

Get Now!