Labour Day Special Limited Time Flat 70% Discount offer - Ends in 0d 00h 00m 00s - Coupon code: 70spcl

HP HPE6-A82 Aruba Certified ClearPass Associate Exam Exam Practice Test

Page: 1 / 6
Total 60 questions

Aruba Certified ClearPass Associate Exam Questions and Answers

Question 1

When should a role mapping policy be used in an 802.1x service with Active Directory as the authentication source?

Options:

A.

When you want to match Active Directory attributes directly to an enforcement policy.

B.

When you want to enable attributes as roles directly without combining multiple attributes

C.

When you want to translate and combine Active Directory attributes into ClearPass roles.

D.

When you want to match Active Directory attributes to a Aruba firewall role on a Aruba Network Access Device.

Question 2

When using Guest Authentication with MAC Caching service template, which statements are true? (Select two.)

Options:

A.

The guest authentication is provided better security than without using MAC caching

B.

The guest authentication is provided better security than without using MAC caching

C.

The endpoint status of the client will be treated as "known" the first time the client associates to the network

D.

Which wireless SSID and wireless controller must be indicated when configuring the template

E.

The client will be required to re-enter their credentials even if still within the MAC-Auth Expiry term

Question 3

What are two ways to add guest accounts to ClearPass? (Select two.)

Options:

A.

Using the "Import Accounts" under ClearPass Guest

B.

Using the "Create Account" or "Create Multiple'' options under ClearPass Guest

C.

Assigning the default role "Lobby Ambassador to a receptionist to then add the accounts

D.

Using the "Sync Accounts'' under ClearPass Guest

E.

importing accounts from Active Directory once ClearPass is added with Admin credentials

Question 4

What services are recommended to be allowed by the pre-authenticated role assigned to the Client during the Captive Portal process? (Choose three.)

Options:

A.

DHCP options 43 and 150

B.

RADIUS to ClearPass

C.

HTTPS to ClearPass

D.

HTTPS to the Internet

E.

DHCP address assignment

F.

DNS resolution

Question 5

What happens when a client successfully authenticates but does not match any Enforcement Policy rules?

Options:

A.

A RADIUS Accept is returned and the default Enforcement Profile is applied.

B.

A RADIUS reject is returned for the client.

C.

A RADIUS Accept is retuned, and the default rule is applied to the device.

D.

A RADIUS Accept is returned with no Enforcement Profile applied

Question 6

Your boss suggests configuring a guest self-registration page in ClearPass for an upcoming conference event. What are the benefits of using guest serf-registration'? (Select two)

Options:

A.

This will allow conference employees to pre-load additional device information as guests arrive and

register.

B.

This strategy effectively stops employees from putting their own corporate devices on the guest network.

C.

This will enable additional information to be gathered about guests during the conference.

D.

This allows guest users to create and manage their own login account.

D18912E1457D5D1DDCBD40AB3BF70D5D

E.

This will allow employee personal devices to be Onboarded to the corporate network

Question 7

Refer to the exhibit.

Question # 7

What is true regarding leaving the indicated option "Use cached Roles and Posture attributes from previous sessions" unchecked?

Options:

A.

The service will make the enforcement decision based upon the updated Posture regardless of caching

B.

A posture change applied to an endpoint is going to be lost each time the client re-authenticates

C.

Posturing win no longer be evaluated in determining the enforcement policy for current or future sessions.

D.

Cached posture results are no longer stored by ClearPass but instead are saved to the endpoint of the client.

Question 8

What is the significance of using the [Allow ALL MAC AUTH] as an Authentication Method for Guests?

Options:

A.

This removes the reliance on the known or unknown status for MAC authentication.

B.

All clients with unknown endpoints will be granted guest access regardless of authorization

C.

Client attempts will fail without an additional Authentication method applied.

D.

All clients with known endpoints will be granted guest access regardless of authorization.

Question 9

What are benefits of using Network Device Groups in ClearPass? (Select two.)

Options:

A.

Allows Service selection rules to match based upon which Network Device Group the Network Access Device (NAD) belongs to

B.

Network Access Devices (NADs) only require Aruba factory installed certificates to join a Network Device Group

C.

A Network Access Device is must be discovered by ClearPass prior to be added to a Network Device Group

D.

Another way to add a customizable "attribute" field to reference when processing authentication requests

E.

Can apply to both Network Access Devices (NADs) as wen as client machines as a way to filter authentication requests

Page: 1 / 6
Total 60 questions