Labour Day Special 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: exams65

Aruba Certified ClearPass Expert Written Exam Question and Answers

Aruba Certified ClearPass Expert Written Exam

Last Update May 2, 2024
Total Questions : 60

We are offering FREE HPE6-A81 HP exam questions. All you do is to just go and sign up. Give your details, prepare HPE6-A81 free exam questions and then go for complete pool of Aruba Certified ClearPass Expert Written Exam test questions that will help you more.

HPE6-A81 pdf

HPE6-A81 PDF

$35  $99.99
HPE6-A81 Engine

HPE6-A81 Testing Engine

$42  $119.99
HPE6-A81 PDF + Engine

HPE6-A81 PDF + Testing Engine

$56  $159.99
Questions 1

Which statements art true about the Database server certificate? (Select two)

Options:

A.  

Database certificate can be created to take a secure backup of the ClearPass database.

B.  

ClearPass Policy Manager nodes validates the Database certificate while joining the cluster

C.  

Custom Database certificate requires Subject Alternative Name (SAN) field with the DNS name of the server.

D.  

A change in Database certificate will only be applicable after a reboot of the node

E.  

Database server certificate is optional for the ClearPass servers that are part of a Cluster.

Discussion 0
Questions 2

A customer has acquired another company that has its own Active Directory infrastructure. The 802 1X PEAP authentication works with the customer's original Active Directory servers but the customer would like to authenticate users from the acquired company as well.

What steps are required, in regards to the Authentication Sources, in order to support this request? (Select two.)

Options:

A.  

Create a new Authentication Source, type Active Directory.

B.  

Create a new Authentication Source, type Generic LDAP.

C.  

Add the new AD server(s) as backup into the existing Authentication Source.

D.  

There is no need to join ClearPass to the new AD domain.

E.  

Join the ClearPass server(s) to the new AD domain.

Discussion 0
Questions 3

Your customer has read about a feature in OnGuard for OnGuard Persistent Agent and Agentless OnGuard that can display a new Posture Results web page to notify that and users with posture results for unhealthy clients after the health check is done. Where do you configure this option?

Options:

A.  

Policy Manager > Configuration > Enforcement > Profiles > Add a new profiles with Agent Enforcement as the template, and on the Attributes tab add the new Show Posture Results in Guest Page attribute and set the value for the attribute to true.

B.  

Policy Manager > Configuration > Enforcement > Profiles > Add new profile with Aruba Radius Enforcement as the template, and on the Attributes tab add the Aruba-User-Role configured with the captive portal profile mapped with default Posture Check web page URL.

C.  

Policy Manager > Configuration > Services > Edit the Web-base Health Check Only service, and on the posture tab under Remediation URL add the default Quarantined Blocked web page URL and complete the service configuration by hitting save.

D.  

Policy Manager > Configuration > Services > Edit the Web-base Health Check Only service, and on the posture tab enable the checkbox for the new option Show Posture Results in Guest Page and complete the service configuration by hitting save.

Discussion 0
Questions 4

The customer has configured the guest self-registration with sponsor approval. The guest users that the sponsor email and the other requested details while registering the account but the users were able to complete the authentication and access the internet without the sponsor's approval.

What configuration settings will you check to make this setup work?

Options:

A.  

Check if sponsor name field is enabled in the register form page

B.  

Check if sponsor email field is enabled in the register form page

C.  

Check if authentication option n is enabled in the self-registration page enabled.

D.  

Check if sponsor confirmation is enabled in the self-registration page

Discussion 0
Questions 5

You art deploying Cleat Pass Policy Manager with Guest functionality for a customer with multiple Aruba Networks Mobility Controllers. The customer wants to avoid SSL errors during guest access but due to company security policy cannot use a wildcard certificate on ClearPass or the Controllers.

What is the most efficient way to configure the customer's guest solution? (Select two.)

Options:

A.  

Install the same public certificate on all Controllers with the common name "controller.{company domain)

B.  

Build multiple Web Login pages with vendor settings configured for each controller

C.  

Build one Web Login page with vendor settings for captiveportal-controller (company domain)

D.  

Build one Web Login page with vendor settings for controller (company domain)

E.  

Install multiple public certificates with a different Common Name on each controller

Discussion 0
Questions 6

Refer to the exhibit.

You are doing a ClearPass PoC at a customer site with a single Aruba Mobility Controller. The customer asked for a demonstration of a simple Web Login functionality. You used a service template to create the guest services. During testing, the user gets redirected back to the weblogin page with an Authentication failed message The guest configurations on the Aruba Mobility Controller are configured correctly Why would the guest fail to authenticate successfully?

Options:

A.  

The authentication source mapped in the service is incorrect It should be mapped as [Guest Device Repository! (Local SQL DB].

B.  

The Unique-Device- Count does not allow any Client devices. Update the Enforcement policy condition: Unique-Device-Count.

C.  

The username and/or password used for authentication is incorrect Re-enter the correct password on the weblogin page.

D.  

The username used for authentication does not exist in the Guest User Database. Create a new user and authenticate again

Discussion 0
Questions 7

Refer to the exhibit.

What enforcement profile will be assigned to a client who has successfully completed the user and machine authentication with UNKNOWN posture token?

Options:

A.  

Redirect to Aruba OnBoard Portal

B.  

Redirect to Aruba Quarantine Profile

C.  

Redirect to Aruba Dissolvable_page Profile

D.  

Deny Access Profile

Discussion 0
Questions 8

Which statements are true about that integration between ClearPass Policy Manager and ClearPass Device Insight? (Select two)

Options:

A.  

Policy Manager stops using ClearPass Profiler for fingerprinting and uses Device Insight Analyzer instead for endpoint in-depth data analysis.

B.  

ClearPass Device Insight updates ClearPass Policy Manager every 60 minutes if it detects a change in device classification like device spoofing.

C.  

To provide enhanced profiling and reporting. additional configuration is required to transmit data in both directions between CPPM and Device Insight.

D.  

When Device Insight integration mode is enabled. you can still use Update Fingerprint button to Update Endpoints at Configuration > Identity > Endpoints

E.  

An attribute named Device Insight Tags art added to the Endpoints that art available to use in service, role-mapping, and enforcement policy Rules

Discussion 0
Questions 9

Refer to the exhibit.

A customer it troubleshooting a client not getting the SHV posture updated and the OnGuard agent shows the Health Status Not Known. What could the user do to update the health status?

Options:

A.  

connect using an interface that is configured as Managed Interface

B.  

reinstall the OnGuard agent from the Wired interface

C.  

change the Policy Manager Zone mapping and add the WIRED interface range

D.  

modify the agent.conf file and add the WIRED interface to it

Discussion 0