ExamGecko
Home Home / HP / HPE6-A68

HP HPE6-A68 Practice Test - Questions Answers, Page 2

Question list
Search
Search

List of questions

Search

Related questions











A customer wants all guests who access a company's guest network to have their accounts approved by the receptionist, before they are given access to the network.

How should the network administrator set this up in ClearPass? (Select two.)

A.
Enable sponsor approval confirmation in Receipt actions.
A.
Enable sponsor approval confirmation in Receipt actions.
Answers
B.
Configure SMTP messaging in the Policy Manager.
B.
Configure SMTP messaging in the Policy Manager.
Answers
C.
Configure a MAC caching service in the Policy Manager.
C.
Configure a MAC caching service in the Policy Manager.
Answers
D.
Configure a MAC auth service in the Policy Manager.
D.
Configure a MAC auth service in the Policy Manager.
Answers
E.
Enable sponsor approval in the captive portal authentication profile on the NAD.
E.
Enable sponsor approval in the captive portal authentication profile on the NAD.
Answers
Suggested answer: A, D

Explanation:

A: Sponsored self-registration is a means to allow guests to self-register, but not give them full access until a sponsor (could even be a central help desk) has approved the request. When the registration form is completed by the guest/user, an on screen message is displayed for the guest stating the account requires approval.

Guests are disabled upon registration and need to wait on the receipt page for the confirmation until the login button gets enabled.

D: Device Mac Authentication is designed for authenticating guest devices based on their MAC address.

Reference: ClearPass Policy Manager 6.5 User Guide (October 2015), page 94

https://community.arubanetworks.com/aruba/attachments/aruba/SoftwareUserReferenceGuides/52/1/ClearPass%20Policy%20Manager%206.5%20User%20Guide.pdf

Refer to the exhibit.

When configuring a Web Login Page in ClearPass Guest, the information shown is displayed.

What is the page name field used for?

A.
for forming the Web Login Page URL
A.
for forming the Web Login Page URL
Answers
B.
for Administrators to access the PHP page, but not guests
B.
for Administrators to access the PHP page, but not guests
Answers
C.
for Administrators to reference the page only
C.
for Administrators to reference the page only
Answers
D.
for forming the Web Login Page URL where Administrators add guest users
D.
for forming the Web Login Page URL where Administrators add guest users
Answers
E.
for informing the Web Login Page URL and the page name that guests must configure on their laptop wireless supplicant.
E.
for informing the Web Login Page URL and the page name that guests must configure on their laptop wireless supplicant.
Answers
Suggested answer: A

Explanation:

The Page Name is an identifier page name that will appear in the URL -- for example, "/guest/page_name.php".

Reference: http://www.arubanetworks.com/techdocs/ClearPass/CPGuest_UG_HTML_6.5/Content/Configuratio n/CreateEditWebLogin.htm

Refer to the exhibit.

When configuring a Web Login Page in ClearPass Guest, the information shown is displayed.

What is the Address field value 'securelogin.arubanetworks.com' used for?

A.
for ClearPass to send a TACACS+ request to the NAD
A.
for ClearPass to send a TACACS+ request to the NAD
Answers
B.
for appending to the Web Login URL, before the page name
B.
for appending to the Web Login URL, before the page name
Answers
C.
for the client to POST the user credentials to the NAD
C.
for the client to POST the user credentials to the NAD
Answers
D.
for ClearPass to send a RADIUS request to the NAD
D.
for ClearPass to send a RADIUS request to the NAD
Answers
E.
for appending to the Web Login URL, after the page name.
E.
for appending to the Web Login URL, after the page name.
Answers
Suggested answer: C

Refer to the exhibit.

A guest connects to the Guest SSID and authenticates successfully using the guest.php web login page.

Based on the MAC Caching service information shown, which statement about the guests' MAC address is accurate?

A.
It will be visible in the Guest User Repository with Unknown Status
A.
It will be visible in the Guest User Repository with Unknown Status
Answers
B.
It will be deleted from the Endpoint table.
B.
It will be deleted from the Endpoint table.
Answers
C.
It will be visible in the Guest User Repository with Known Status.
C.
It will be visible in the Guest User Repository with Known Status.
Answers
D.
It will be visible in the Endpoints table with Known Status.
D.
It will be visible in the Endpoints table with Known Status.
Answers
E.
It will be visible in the Endpoints table with Unknown Status.
E.
It will be visible in the Endpoints table with Unknown Status.
Answers
Suggested answer: D

A university wants to deploy ClearPass with the Guest module. The university has two types that need to use web login authentication. The first type of users are students whose accounts are in an Active Directory server. The second type of users are friends of students who need to self-register to access the network.

How should the service be set up in the Policy Manager for this network?

A.
Guest User Repository and Active Directory server both as authentication sources
A.
Guest User Repository and Active Directory server both as authentication sources
Answers
B.
Active Directory server as the authentication source, and Guest User Repository as the authorization source
B.
Active Directory server as the authentication source, and Guest User Repository as the authorization source
Answers
C.
Guest User Repository as the authentication source, and Guest User Repository and Active Directory server as authorization sources
C.
Guest User Repository as the authentication source, and Guest User Repository and Active Directory server as authorization sources
Answers
D.
Either the Guest User Repository or Active Directory server should be the single authentication source
D.
Either the Guest User Repository or Active Directory server should be the single authentication source
Answers
E.
Guest User Repository as the authentication source and the Active Directory server as the authorization source
E.
Guest User Repository as the authentication source and the Active Directory server as the authorization source
Answers
Suggested answer: A

An administrator enabled the Pre-auth check for their guest self-registration.

At what stage in the registration process in this check performed?

A.
after the user clicks the login button and after the NAD sends an authentication request
A.
after the user clicks the login button and after the NAD sends an authentication request
Answers
B.
after the user self-registers but before the user logs in
B.
after the user self-registers but before the user logs in
Answers
C.
after the user clicks the login button but before the NAD sends an authentication request
C.
after the user clicks the login button but before the NAD sends an authentication request
Answers
D.
when a user is re-authenticating to the network
D.
when a user is re-authenticating to the network
Answers
E.
before the user self-registers
E.
before the user self-registers
Answers
Suggested answer: C

Explanation:

The Onboard template is designed for configuration that allows to perform checks before allowing Onboard provisioning for Bring Your Own Device (BYOD) use-cases. This service creates an Onboard Pre-Auth service to check the user's credentials before starting the device provisioning process. This also creates an authorization service that checks whether a user's device can be provisioned using Onboard.

Refer to the exhibit.

Based on the guest Self-Registration with Sponsor Approval workflow shown, at which stage is an email request sent to the sponsor?

A.
after 'Guest Role (7)'
A.
after 'Guest Role (7)'
Answers
B.
after 'Login Message page (5)'
B.
after 'Login Message page (5)'
Answers
C.
after 'Submit form (3)'
C.
after 'Submit form (3)'
Answers
D.
after 'Automated NAS login (6)'
D.
after 'Automated NAS login (6)'
Answers
E.
after 'Redirects (1)'
E.
after 'Redirects (1)'
Answers
Suggested answer: C

Explanation:

There's the Self Service part of provisioning one's information.

Then the sponsor/operator part to confirm that guest is valid.

Then the enablement via the sponsor/operator clicking 'confirm'.

Reference: https://community.arubanetworks.com/t5/Security/Guest-Captive-Portal-sponsorapproval-architecture/td-p/267625

Refer to the exhibit.

A user logged in to the Self-Service Portal as shown.

What do the traffic received and sent statistics present?

A.
These show the total amount of traffic the guest transmitted, as seen through RADIUS CoA packets from the NAD to ClearPass.
A.
These show the total amount of traffic the guest transmitted, as seen through RADIUS CoA packets from the NAD to ClearPass.
Answers
B.
These show the total amount of traffic the NAD transmitted to ClearPass, as seen through RADIUS accounting messages from the NAD to ClearPass.
B.
These show the total amount of traffic the NAD transmitted to ClearPass, as seen through RADIUS accounting messages from the NAD to ClearPass.
Answers
C.
These show the total amount of traffic the guest transmitted after account expiration, as seen through RADIUS accounting messages sent from the NAD to ClearPass.
C.
These show the total amount of traffic the guest transmitted after account expiration, as seen through RADIUS accounting messages sent from the NAD to ClearPass.
Answers
D.
These show the total amount of traffic the guest transmitted, as seen through RADIUS CoA packets from the client to ClearPass.
D.
These show the total amount of traffic the guest transmitted, as seen through RADIUS CoA packets from the client to ClearPass.
Answers
E.
These show the total amount of traffic the guest transmitted, as seen through RADIUS accounting messages sent from the NAD to ClearPass.
E.
These show the total amount of traffic the guest transmitted, as seen through RADIUS accounting messages sent from the NAD to ClearPass.
Answers
Suggested answer: E

Refer to the exhibit.

Based on the configuration of the create_user form shown, which statement accurately describes the status?

A.
The email field will be visible to guest users when they access the web login page.
A.
The email field will be visible to guest users when they access the web login page.
Answers
B.
The visitor_company field will be visible to operators creating the account.
B.
The visitor_company field will be visible to operators creating the account.
Answers
C.
The visitor_company field will be visible to the guest users when they access the web login page.
C.
The visitor_company field will be visible to the guest users when they access the web login page.
Answers
D.
The visitor_phone field will be visible to the guest users in the web login page.
D.
The visitor_phone field will be visible to the guest users in the web login page.
Answers
E.
The visitor_phone field will be visible to operators creating the account.
E.
The visitor_phone field will be visible to operators creating the account.
Answers
Suggested answer: A

Explanation:

Reference: https://community.arubanetworks.com/t5/AAA-NAC-Guest-Access-BYOD/expiretimezone-field-is-not-showing-up-on-the-create-user-form/ta-p/250230

Refer to the exhibit.

Based on the information shown, which field in the Captive Portal Authentication profile should be changed so that guest users are redirected to a page on ClearPass when they connect to the Guest SSID?

A.
both Login and Welcome Page
A.
both Login and Welcome Page
Answers
B.
Default Role
B.
Default Role
Answers
C.
Welcome Page
C.
Welcome Page
Answers
D.
Default Guest Role
D.
Default Guest Role
Answers
E.
Login Page
E.
Login Page
Answers
Suggested answer: E

Explanation:

The Login page is the URL of the page that appears for the user logon. This can be set to any URL.

The Welcome page is the URL of the page that appears after logon and before redirection to the web URL. This can be set to any URL.

Reference: http://www.arubanetworks.com/techdocs/ArubaOS_63_Web_Help/Content/ArubaFrameStyles/Cap tive_Portal/Captive_Portal_Authentic.htm

Total 116 questions
Go to page: of 12