ExamGecko
Question list
Search
Search

Related questions











Question 9 - HPE7-A01 discussion

Report
Export

The administrator notices that wired guest users that have exceeded their bandwidth limit are not being disconnected Access Tracker in ClearPass indicates a disconnect CoA message is being sent to the AOS-CX switch.

An administrator has performed the following configuration

What is the most likely cause of this issue?

A.
Change of Authorization has not been globally enabled on the switch
Answers
A.
Change of Authorization has not been globally enabled on the switch
B.
The SSL certificate for CPPM has not been added as a trust point on the switch
Answers
B.
The SSL certificate for CPPM has not been added as a trust point on the switch
C.
There is a mismatch between the RADIUS secret on the switch and CPPM.
Answers
C.
There is a mismatch between the RADIUS secret on the switch and CPPM.
D.
There is a time difference between the switch and the ClearPass Policy Manager
Answers
D.
There is a time difference between the switch and the ClearPass Policy Manager
Suggested answer: D

Explanation:

Change of Authorization (CoA) is a feature that allows ClearPass Policy Manager (CPPM) to send messages to network devices such as switches to change the authorization state of a user session. CoA requires that both CPPM and the network device support this feature and have it enabled. For AOS-CX switches, CoA must be globally enabled using the commandradius-server coa enable. If CoA is not enabled on the switch, the disconnect CoA message from CPPM will be ignored and the user session will not be terminated.

Reference: https://www.arubanetworks.com/techdocs/ClearPass/6.7/PolicyManager/index.htm#CPPM_UserGuide/Admin/ChangeOfAuthorization.htm https://techhub.hpe.com/eginfolib/Aruba/OS-CX_10.04/5200-6692/GUID-9B8F6E8F-9C7A-4F0D-AE7B-9D8E6C5B6A7F.html

asked 16/09/2024
Tuukka Valkeasuo
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first