ExamGecko
Home Home / HP / HPE6-A73

HP HPE6-A73 Practice Test - Questions Answers, Page 12

Question list
Search
Search

List of questions

Search

Related questions











What is the purpose of the transit VLAN when implementing dynamic segmentation policies involving AOS-CX switches and an Aruba gateway solution?

A.
It identifies the VLAN that the user traffic will be assigned to when it comes out of the tunnel and is forwarded by the gateway.
A.
It identifies the VLAN that the user traffic will be assigned to when it comes out of the tunnel and is forwarded by the gateway.
Answers
B.
It identifies the VLAN that the user traffic will be assigned to, whether the traffic is tunneled or locally switched
B.
It identifies the VLAN that the user traffic will be assigned to, whether the traffic is tunneled or locally switched
Answers
C.
It defines the VXLAN identifier to identified UBT traffic between the AOS-CX switches and the gateway solution
C.
It defines the VXLAN identifier to identified UBT traffic between the AOS-CX switches and the gateway solution
Answers
D.
It identifies the VLAN that the switch will use when tunneling the traffic to the gateway
D.
It identifies the VLAN that the switch will use when tunneling the traffic to the gateway
Answers
Suggested answer: D

An administrator will be implementing tunneling between AOS-CX switches and Aruba gateways.

Which list of protocols must minimally be allowed by an intermediate firewall between two sets of devices?

A.
IP protocol 50 and UDP 8209
A.
IP protocol 50 and UDP 8209
Answers
B.
UDP 4500 and IP protocol 47
B.
UDP 4500 and IP protocol 47
Answers
C.
UDP 8211 and IP protocol 47
C.
UDP 8211 and IP protocol 47
Answers
D.
UDP 4500 and UDP 8209
D.
UDP 4500 and UDP 8209
Answers
Suggested answer: C

Explanation:

ACSP Study Guide Page 788 - Allow the following protocols/ports

- PAPI: UDP 8211

- GRE: Protocoll 47

In AOS-CX switching, what determines when a frame is forwarded by the switch between the ingress and the egress port?

A.
Egress port
A.
Egress port
Answers
B.
Ingress port
B.
Ingress port
Answers
C.
VSX switch tables
C.
VSX switch tables
Answers
D.
Fabric Load Balancer
D.
Fabric Load Balancer
Answers
Suggested answer: B

Which protocol should be configured to allow NetEdit to discover third-party devices?

A.
SNMP
A.
SNMP
Answers
B.
SSH
B.
SSH
Answers
C.
HTTPS
C.
HTTPS
Answers
D.
HTTP
D.
HTTP
Answers
Suggested answer: A

An administrator is managing a VSX pair of AOS-CX switches An administrator configures the following on the primary AOS-CX switch:

A.
The primary switch will erase VLAN 200 from the VSX pair
A.
The primary switch will erase VLAN 200 from the VSX pair
Answers
B.
The VLAN is only created on the secondary switch.
B.
The VLAN is only created on the secondary switch.
Answers
C.
The operation is not allowed by the switch and a CLI error is displayed
C.
The operation is not allowed by the switch and a CLI error is displayed
Answers
D.
The VLAN is created on both the primary and secondary switches
D.
The VLAN is created on both the primary and secondary switches
Answers
Suggested answer: D

What is true regarding VSX and keepalives on AOS-CX switches?

A.
A separate VLAN on the ISL link is used.
A.
A separate VLAN on the ISL link is used.
Answers
B.
A VSX LAG for the keepalives is a best practice.
B.
A VSX LAG for the keepalives is a best practice.
Answers
C.
The OOBM port must be used.
C.
The OOBM port must be used.
Answers
D.
A 1GbE or faster port is used.
D.
A 1GbE or faster port is used.
Answers
Suggested answer: D

An administrator is designing an access layer solution in a data center. A key requirement is to dualhome mission-critical server connections to two different switches, ensuring that the servers always have network access, even during switch software upgrades. This feature should support strictlycontrolled provisioning.

What would best meet the administrator's needs when deploying AOS-CX switches?

A.
VSF
A.
VSF
Answers
B.
Dynamic segmentation
B.
Dynamic segmentation
Answers
C.
VSX
C.
VSX
Answers
D.
NAE
D.
NAE
Answers
Suggested answer: C

MAC authentication is enabled on port 1/1/27 of an AOS-CX switch. The following MAC addresses are defined on the AAA server:

* 88:3a:30:97:b6:00

* 00:50:56:b1:fc:9b

Examine the AOS-CX switch output:

Based on this information, what is true concerning port 1/1/27?

A.
Device-mode is enabled with a client limit of 1.
A.
Device-mode is enabled with a client limit of 1.
Answers
B.
Device-mode is enabled with a client limit of 2.
B.
Device-mode is enabled with a client limit of 2.
Answers
C.
Client-mode is enabled with a client limit of 1.
C.
Client-mode is enabled with a client limit of 1.
Answers
D.
Client-mode is enabled with a client limit of 2.
D.
Client-mode is enabled with a client limit of 2.
Answers
Suggested answer: C

Explanation:

https://www.arubanetworks.com/techdocs/AOS-CX/AOSCX-CLI-Bank/cli_63006400/Content/Chp_Port_acc/Port_acc_rol_cmds/aut-mod-fl-10.htm client-mode = Selects client mode. In this mode, all clients connecting to the port are sent for authentication.

device-mode = Selects device mode. In this mode, only the first client connecting to the port is sent for authentication. Once this client is authenticated, the port is considered as open and all subsequent clients trying to connect on that port are not sent for authentication.

A network administrator is tasked to set up BGP in the company's network. The administrator is defining an eBGP peering between an AOS-CX switch and a directly-connected service provider. The administrator has configured the following on the AOS-CX switch:

However, when using the "show bgp all summary" command, the state does not display "Established" for the eBGP peer. What must the administrator configure to fix this issue?

A.
router bgp 64500 neighbor 192.168.1.1 ebgp-multihop
A.
router bgp 64500 neighbor 192.168.1.1 ebgp-multihop
Answers
B.
router bgp 64500 enable
B.
router bgp 64500 enable
Answers
C.
router bgp 64500 address-family ipv4 unicast neighbor 192.168.1.1 activate
C.
router bgp 64500 address-family ipv4 unicast neighbor 192.168.1.1 activate
Answers
D.
router bgp 64500 neighbor 192.168.1.1 update-source loopback0
D.
router bgp 64500 neighbor 192.168.1.1 update-source loopback0
Answers
Suggested answer: C

A company has recently purchased a ClearPass AAA solution. Their network consists of AOS-CX switches at the access layer. The company is implementing a rollout of IoT devices for smart building management to control the lighting and

HVAC systems. The network administrator is concerned about allowing secure access to these devices since they only support MAC-Auth.

Which ClearPass feature should the administrator leverage to help determine that MAC address spoofing is not occurring for this group of devices?

A.
User-based tunneling
A.
User-based tunneling
Answers
B.
Device fingerprinting
B.
Device fingerprinting
Answers
C.
RADIUS change of authorization
C.
RADIUS change of authorization
Answers
D.
Downloadable user roles
D.
Downloadable user roles
Answers
Suggested answer: B
Total 127 questions
Go to page: of 13