List of questions
Related questions
Question 42 - HPE6-A84 discussion
You are setting up Aruba ClearPass Policy Manager (CPPM) to enforce EAP-TLS authentication with Active Directory as the authentication source. The company wants to prevent users with disabled accounts from connecting even if those users still have valid certificates.
As the first part of meeting these criteria, what should you do to enable CPPM to determine where accounts are enabled in AD or not?
A.
Add an Endpoint Context Server to the domain controller with actions for querying the domain controller for account status.
B.
Enable OCSP in the EAP-TLS authentication method settings and configure an OCSP override to the domain controller FQDN.
C.
Add a custom attribute for userAccountControl to the filters in the AD authentication source.
D.
Install a Microsoft Active Directory extension in Aruba ClearPass Guest and set up an HTTP authentication source that points to that extension.
Your answer:
0 comments
Sorted by
Leave a comment first