You are proposing an Aruba wired and wireless solution to a customer. After a discussion about Aruba ClearPass and IntroSpect, a member of the security team asks about security measures that go beyond software solutions.
What is one advantage of Aruba Secure Infrastructure that you should emphasize to this technical influencer?
A.
Silicon root of trust creates a digital fingerprint in the silicon of ArubaOS switches to ensure they will never boot with compromised hardware.
A.
Silicon root of trust creates a digital fingerprint in the silicon of ArubaOS switches to ensure they will never boot with compromised hardware.
B.
Connectivity Health collects and compiles information about switch configuration, protocol, and system state and uses machine learning to compare this information to baseline figures.
B.
Connectivity Health collects and compiles information about switch configuration, protocol, and system state and uses machine learning to compare this information to baseline figures.
C.
An Aruba infrastructure reduces the likelihood traffic can be intercepted with centralized encryption and deep packet inspection.
C.
An Aruba infrastructure reduces the likelihood traffic can be intercepted with centralized encryption and deep packet inspection.
D.
Aruba controlled APs maintain a distributed policy engine that defines who and what devices can connect to which data, infrastructure, and applications.
D.
Aruba controlled APs maintain a distributed policy engine that defines who and what devices can connect to which data, infrastructure, and applications.
Suggested answer: A
Explanation:
Silicon root of trust creates a digital fingerprint in the silicon of ArubaOS switches to ensure they will never boot with compromised hardware3. This is one advantage of Aruba Secure Infrastructure that goes beyond software solutions.
Connectivity Health collects and compiles information about switch configuration, protocol, and system state and uses machine learning to compare this information to baseline figures, but this is a feature of Aruba Network Analytics Engine (NAE), which is a software solution4. An Aruba infrastructure does not reduce the likelihood traffic can be intercepted with centralized encryption and deep packet inspection; rather it encrypts traffic at every hop using standards-based protocols such as IPSec VPNs3. Aruba controlled APs maintain a distributed policy engine that defines who and what devices can connect to which data, infrastructure, and applications, but this is also a software solution based on Aruba
ClearPass Policy Manager (CPPM).
Question