ExamGecko
Home Home / HP / HPE6-A73

HP HPE6-A73 Practice Test - Questions Answers

Question list
Search
Search

List of questions

Search

Related questions











Examine the commands entered on an AOS-CX switch:

What is true regarding this configuration for traffic received on interface 100?

A.
The default next-hop address supersedes the two preceding next-hop addresses
A.
The default next-hop address supersedes the two preceding next-hop addresses
Answers
B.
The traffic is always dropped is the next-hop addresses are unreachable
B.
The traffic is always dropped is the next-hop addresses are unreachable
Answers
C.
The traffic will be routed with the IP routing table entries if the next-hop addresses are unreachable
C.
The traffic will be routed with the IP routing table entries if the next-hop addresses are unreachable
Answers
D.
The next-hop address of 1.1.1.1 is overwritten by the next-hop address of 2.2.2.2
D.
The next-hop address of 1.1.1.1 is overwritten by the next-hop address of 2.2.2.2
Answers
Suggested answer: C

Explanation:

"interface null: equivalent to the policy drop policing action. Any packets matching the class criteria for that policy entry will be dropped and not routed any further."

https://www.arubanetworks.com/techdocs/AOS-CX/10.05/HTML/5200-7300/index.html#GUIDDC7E5E47-8F31-4DE4-B257-1A68665B2AF4.htmlMore than one next hop can be assigned with an ACL and they work by priority (based on thesequence number: lower sequence number -> higher priority). So next-hop 2.2.2.2 will be used if1.1.1.1 is not reachable. If both are unreachable, then the packet will be routed looking at the defaultrouting table, if no specific entry will be found, then the pacjet will be routed to the default next hopdefined in the ACL.

Examine the following ACL rule policies:

Permit traffic from 10.2.2.1 through 10.2.2.30 to anywhere

Permit traffic from 10.2.2.40 through 10.2.2.55 to anywhere

Deny all others

Based on this policy, place the following ACL rule statements in the correct order to accomplish the above filtering policy.

A.
deny ip 10.2.2.31 255.255.255.255 anypermit ip 10.2.2.40 255.255.255.248 anypermit ip 10.2.2.48 255.255.255.248 anydeny ip 10.2.2.32 255.255.255.224 anypermit ip 10.2.2.0 255.255.255.192 any
A.
deny ip 10.2.2.31 255.255.255.255 anypermit ip 10.2.2.40 255.255.255.248 anypermit ip 10.2.2.48 255.255.255.248 anydeny ip 10.2.2.32 255.255.255.224 anypermit ip 10.2.2.0 255.255.255.192 any
Answers
B.
permit ip 10.2.2.40 255.255.255.248 anypermit ip 10.2.2.48 255.255.255.248 anypermit ip 10.2.2.0 255.255.255.192 anydeny ip 10.2.2.31 255.255.255.255 anydeny ip 10.2.2.32 255.255.255.224 any
B.
permit ip 10.2.2.40 255.255.255.248 anypermit ip 10.2.2.48 255.255.255.248 anypermit ip 10.2.2.0 255.255.255.192 anydeny ip 10.2.2.31 255.255.255.255 anydeny ip 10.2.2.32 255.255.255.224 any
Answers
C.
deny ip 10.2.2.31 255.255.255.255 anydeny ip 10.2.2.32 255.255.255.224 anypermit ip 10.2.2.40 255.255.255.248 anypermit ip 10.2.2.48 255.255.255.248 anypermit ip 10.2.2.0 255.255.255.192 any
C.
deny ip 10.2.2.31 255.255.255.255 anydeny ip 10.2.2.32 255.255.255.224 anypermit ip 10.2.2.40 255.255.255.248 anypermit ip 10.2.2.48 255.255.255.248 anypermit ip 10.2.2.0 255.255.255.192 any
Answers
D.
deny ip 10.2.2.31 255.255.255.255 anypermit ip 10.2.2.40 255.255.255.248 anydeny ip 10.2.2.32 255.255.255.224 anypermit ip 10.2.2.48 255.255.255.248 anypermit ip 10.2.2.0 255.255.255.192 any
D.
deny ip 10.2.2.31 255.255.255.255 anypermit ip 10.2.2.40 255.255.255.248 anydeny ip 10.2.2.32 255.255.255.224 anypermit ip 10.2.2.48 255.255.255.248 anypermit ip 10.2.2.0 255.255.255.192 any
Answers
Suggested answer: A

What are best practices when implementing VSX on AOS-CX switches? (Choose two.)

A.
The ISL lag should use the default MTU size.
A.
The ISL lag should use the default MTU size.
Answers
B.
Timers should be left at their default values.
B.
Timers should be left at their default values.
Answers
C.
The default system MAC addresses should be used.
C.
The default system MAC addresses should be used.
Answers
D.
The keepalive connection should use a direct layer-3 connection.
D.
The keepalive connection should use a direct layer-3 connection.
Answers
E.
The ISL lag should use at least 10GbE links or faster.
E.
The ISL lag should use at least 10GbE links or faster.
Answers
Suggested answer: B, D

An administrator wants to implement dynamic segmentation policies. The network consists of AOSCX and Aruba gateways.

Which type of forwarding should the administrator implement for users that already connect via wireless, but will also be connecting on Ethernet switch ports?

A.
User-based tunneling (UBT)
A.
User-based tunneling (UBT)
Answers
B.
Port-based tunneling (PBT)
B.
Port-based tunneling (PBT)
Answers
C.
Switch-to-switch tunneling (SST)
C.
Switch-to-switch tunneling (SST)
Answers
D.
Local switching
D.
Local switching
Answers
Suggested answer: A

Examine the partial output of the BGP routing table of an AOS-CX switch:

The switch is learning about four possible path to reach the 1.0.0.0/8 network. Based on this output, which next-hop route will the AOS-CX select to be placed in the IP routing table?

A.
192 168 1 5
A.
192 168 1 5
Answers
B.
192 168 2 5
B.
192 168 2 5
Answers
C.
192 168 3 5
C.
192 168 3 5
Answers
D.
192 1684 5
D.
192 1684 5
Answers
Suggested answer: C

What is correct regarding rate limiting and egress queue shaping on AOS-CX switches?

A.
Rate limiting and egress queue shaping can be used to restrict inbound traffic
A.
Rate limiting and egress queue shaping can be used to restrict inbound traffic
Answers
B.
Limits can be defined only for broadcast and multicast traffic
B.
Limits can be defined only for broadcast and multicast traffic
Answers
C.
Rate limiting and egress queue shaping can be applied globally
C.
Rate limiting and egress queue shaping can be applied globally
Answers
D.
Traffic rate limit is configured on queue level
D.
Traffic rate limit is configured on queue level
Answers
Suggested answer: D

What is the correct way of associating a VRF instance to either a VLAN or an interface?

A.
Switch(config)# interface <interface-ID>Switch(config-if)# vlan access <VLAN-ID> vrf attach <vrf-name>
A.
Switch(config)# interface <interface-ID>Switch(config-if)# vlan access <VLAN-ID> vrf attach <vrf-name>
Answers
B.
Switch(config)# vlan <VLAN-ID> vrf attach < vrf-name >
B.
Switch(config)# vlan <VLAN-ID> vrf attach < vrf-name >
Answers
C.
Switch(config)# vlan <VLAN-ID>Switch(config-vlan-<VLAN-ID># vrf attach < vrf-name >
C.
Switch(config)# vlan <VLAN-ID>Switch(config-vlan-<VLAN-ID># vrf attach < vrf-name >
Answers
D.
Switch(config)# vlan <VLAN-ID> vrf < vrf-name >
D.
Switch(config)# vlan <VLAN-ID> vrf < vrf-name >
Answers
Suggested answer: C

A company has a third-party AAA server solution. The campus access layer was just upgraded to AOSCX switches that perform access control with MAC-Auth and 802.1X. The company has an Aruba Mobility Controller (MC) solution for wireless, and they want to leverage the firewall policies on the controllers for the wired traffic.

What is correct about how the company should implement a security solution where the wired traffic is processed by the MCs?D18912E1457D5D1DDCBD40AB3BF70D5D

A.
Implement downloadable user roles with a gateway role defined on the AOS-CX switches
A.
Implement downloadable user roles with a gateway role defined on the AOS-CX switches
Answers
B.
Implement local user roles with a gateway role defined on the AOS-CX switches
B.
Implement local user roles with a gateway role defined on the AOS-CX switches
Answers
C.
Implement standards-based RADIUS VSAs to pass policy information directly to the AOS-CX switches and MCs
C.
Implement standards-based RADIUS VSAs to pass policy information directly to the AOS-CX switches and MCs
Answers
D.
Implement downloadable user roles with a device role defined on the AOS-CX switches and MCs
D.
Implement downloadable user roles with a device role defined on the AOS-CX switches and MCs
Answers
Suggested answer: B

An administrator wants to leverage always-on PoE on AOS-CX switches. Which statement is correct regarding this feature?

A.
Provides up to 60W of power per port
A.
Provides up to 60W of power per port
Answers
B.
Supports all AOS-CX switches
B.
Supports all AOS-CX switches
Answers
C.
Provides surge protection for PoE and non-PoE ports
C.
Provides surge protection for PoE and non-PoE ports
Answers
D.
Requires NetEdit to implement
D.
Requires NetEdit to implement
Answers
Suggested answer: A

A network administrator is attempting to troubleshoot a connectivity issue between a group of users and a particular server. The administrator needs to examine the packets over a period of time from their desktop; however, the administrator is not directly connected to the AOS-CX switch involved with the traffic flow.

What is correct regarding the ERSPAN session that needs to be established on an AOS-CX switch?

(Choose two.)

A.
On the source AOS-CX switch, the destination specified is the switch to which the administrator's desktop is connected
A.
On the source AOS-CX switch, the destination specified is the switch to which the administrator's desktop is connected
Answers
B.
On the source AOS-CX switch, the destination specified is the administrator's desktop
B.
On the source AOS-CX switch, the destination specified is the administrator's desktop
Answers
C.
The encapsulation protocol used is GRE
C.
The encapsulation protocol used is GRE
Answers
D.
The encapsulation protocol used is VXLAN
D.
The encapsulation protocol used is VXLAN
Answers
E.
The encapsulation protocol is UDP
E.
The encapsulation protocol is UDP
Answers
Suggested answer: A, C

Explanation:

In AOS CX the remote mirroring is done using a tunnel interface, so the Mirror source and destination must be configured on each Switch. On the source Switch, the source interface (from where the traffic is mirrored) and destination interface (the tunnel interface to where the traffic is sent to). In the destination Switch, the source interface (which would be the tunnel interface (receiving the traffic from the source switch tunnel)) and the destination would be the client where Wireshark enabled client is connected.

Total 127 questions
Go to page: of 13