ExamGecko
Question list
Search
Search

Related questions











Question 29 - HPE6-A68 discussion

Report
Export

A ClearPass administrator wants to make Enforcement decisions during 802.1x authentication based on a client's Onguard posture token.

Which Enforcement profile should be used on the health check service?

A.
RADIUS CoA
Answers
A.
RADIUS CoA
B.
Quarantine VLAN
Answers
B.
Quarantine VLAN
C.
Full Access VLAN
Answers
C.
Full Access VLAN
D.
RADIUS Accept
Answers
D.
RADIUS Accept
E.
RADIUS Reject
Answers
E.
RADIUS Reject
Suggested answer: A

Explanation:

The Health Check Service requires a profile to terminate the session so that the RADIUS 802.1X authentication Service can use the posture token in a new authentication routine. The terminate session profile will utilize the Change of

Authorization feature to force a re-authentication.

See step 6) below.

Navigate to the list of Enforcement Profiles by selecting, Configuration > Enforcement > Profiles.

2. Click the + Add link in the upper right hand corner.

3. From the Template dropdown menu, choose RADIUS Change of Authorization (CoA).

4. Name the policy.

This example uses Dell Terminate Session as the profile name.

5. Leave all the other settings as default, and click Next > to move to the Attributes tab.

6. On the dropdown menu for Select RADIUS CoA Template, choose IETF-Terminate-Session-IETF.

7. Click Next > and review the Summary tab (Figure 22).

8. Click Save.

Reference: ClearPass NAC and Posture Assessment for Campus Networks Configuring ClearPass OnGuard, Switching, and Wireless (v1.0) (September 2015), page 22 http://en.community.dell.com/cfs-file/__key/telligent-evolution-components-attachments/13-4629- 00-00-20-44-16-18/

ClearPass-NAC-and-Posture-Assessment-for-Campus- Networks.pdf?forcedownload=true

asked 16/09/2024
Quratulain Damani
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first