Winter Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Free and Premium HP HPE6-A46 Dumps Questions Answers

Page: 1 / 6
Total 169 questions

Delta - Implementing Aruba Campus Switching Solutions Questions and Answers

Question 1

A network administrator wants to use Aruba AirWave to audit an AOS-Switch configuration. What is one requirement?

Options:

A.

The switch defines the AirWave IP address in its zero touch provisioning (ZTP) profile.

B.

The switch specifies the AirWave IP address for the RADIUS server used for Telnet and SSH authentication.

C.

The switch is authorized in AirWave, which has the correct credentials to log in as a CLI manager.

D.

The switch is set to Manage Read-Write mode in AirWave but is not set to Monitor Only + Firmware Updates.

Buy Now
Question 2

A company requires AOS-Switches at the campus core. The switches:

  • Will act as the default gateways for several campus VLANs
  • Must provide redundancy for their services and tolerate the loss of a link or an entire switch
  • Must recover from the failure of one of the switches within a second or less

VRRP and MSTP are proposed to meet these requirements. What is an issue with this proposal?

Options:

A.

VRRP provides redundancy against lost links but not a failed switch.

B.

VRRP provides routing redundancy but not default gateway redundancy.

C.

VRRP does not interoperate with MSTP.

D.

VRRP takes longer than a second to fail over.

Question 3

Refer to the exhibit.

A company has IP phones that are LLDP-MED capable. The exhibit shows the configuration for the VLAN to which IP phones belong, as well as the configuration for ports to which phones will connect. AOS-Switches at the access layer are set up to use LLDP-MED. The administrator wants to automatically provision the phones to send traffic with the right VLAN tag and priority.

Which additional configuration step must the administrator complete?

Options:

A.

Specify LLDP-MED as the global LLDP mode

B.

Specify the voice setting in VLAN 3

C.

Enable LMA and configure the proper LMA profiles

D.

Enable 802.1X and MAC-based VLANs on the ports

Question 4

Refer to the exhibit.

Switch-1 and Switch-2 connect on interface A23. The switches experience a connectivity issue. The network administrator sees that both switches show this interface as up. The administrator sees the output shown in the exhibit on Switch-1.

What is a typical issue that could cause this output?

Options:

A.

a hardware issue, such as a broken cable

B.

asymmetric routing introduced by a routing configuration error

C.

an issue with queuing, caused by mismatched QoS settings

D.

mismatched IP addresses on the VLAN for the link

Question 5

Refer to the exhibit.

Switch-1 and Switch-2 are configured to provide VRRP in VLAN 2. Based on the output, what will happen when a client in VLAN 2 sends an ARP request for its default gateway IP address?

Options:

A.

Only Switch-2 will respond, and it will respond with its own MAC address.

B.

Only Switch-2 will respond, and it will respond with the virtual MAC address for VRID 2.

C.

Both Switch-1 and Switch-2 will respond, and both will respond with the virtual MAC address for VRID 2.

D.

Both Switch-1 and Switch-2 will respond, and each will respond with its own MAC Address.

Question 6

Refer to the exhibits.

Exhibit 1

Exhibit 2

A network administrator needs to understand why endpoints that use Switch-3 as their default router can no longer reach some resources. The exhibit shows the OSPF link state database (LSDB) on Switch-1 when the OSPF solution was first deployed and the current LSDB.

What is a likely place to find the issue?

Options:

A.

in the connectivity status between Switch-3 and Switch-1

B.

in the connectivity status between Switch-1 and Switch-2

C.

in the Switch-1 OSPF Area 1 configuration settings

D.

in the Switch-3 OSPF Area 1 configuration settings

Question 7

Refer to the exhibit.

AOS-Switches will enforce 802.1X authentication on edge ports. The company has two RADIUS servers, which are meant to provide redundancy and load sharing of requests. The exhibit shows the planned RADIUS setting to deploy to the switches.

Which adjustment to the plan should administrators make in order to meet the customers’ requirements?

Options:

A.

Remove the dynamic authorization setting for both RADIUS servers.

B.

Specify a different RADIUS dynamic authorization port for each of the RADIUS servers.

C.

Specify one server on half of the switches and the other server on the other half of the switches.

D.

Change the order in which the RADIUS servers are specified on half of the switches.

Question 8

What is a typical reason to implement MAC authentication on an AOS-Switch?

Options:

A.

to filter traffic at the edge, based on multiple criteria in the MAC header

B.

to provision switch ports to support devices such as IP phones or printers

C.

to enhance the security of an 802.1X solution

D.

to control management access to the switch CLI based on device, as well as user credentials

Question 9

What is one difference between BPDU protection and root guard?

Options:

A.

BPDU protection works with RPVST+, RSTP, and MSTP. Root guard works with RSTP or MSTP, but not RPVST+.

B.

BPDU protection blocks a port if it receives any BPDU, but root guard blocks a port only if the BPDU indicates a better root path.

C.

BPDU protection is typically implemented on edge ports, but root guard is typically implemented on uplinks with the root port role.

D.

BPDU protection drops BPDUs received on a port, but does not block the port. Root guard blocks the port if it receives a BPDU.

Question 10

Which switches can be deployed in a mesh topology for backplane stacking?

Options:

A.

Aruba 2920 switches

B.

Aruba 2930F switches

C.

Aruba 2930M switches

D.

Aruba 3810 switches

Question 11

Network administrators need to track when traffic matches deny entry in an ACL applied to a port. They want the alert to be sent to a syslog server that is already set up to send logs.

What should administrators do to enable alerts?

Options:

A.

Specify the log option for the ACL entry, and enable ACL debugging.

B.

Set the debug destination to session, and enable ACL debugging.

C.

Enable ACL debugging, and enable SNMP port security traps.

D.

Specify the log option for the ACL entry, and enable SNMP port security traps.

Question 12

Refer to the exhibits.

Exhibit 1

Exhibit 2

The company wants to minimize congestion on Link 1. Which spanning tree implementation meets this goal?

Options:

A.

Instance 1 = VLANs 4,6 Instance 2 = VLANs 5,7Switch 2 instance 1 priority = 0 Switch 2 instance 2 priority = 1Switch 3 instance 1 priority = 0 Switch 3 instance 2 priority = 1

B.

Instance 1 = VLANs 4-5 Instance 2 = VLANs 6-7Switch 2 instance 1 priority = 0 Switch 2 instance 2 priority = 1Switch 3 instance 1 priority = 0 Switch 3 instance 2 priority = 1

C.

Instance 1 = VLANs 4,6 Instance 2 = VLANs 5,7Switch 2 instance 1 priority = 0 Switch 2 instance 2 priority = 1Switch 3 instance 1 priority = 1 Switch 3 instance 2 priority = 0

D.

Instance 1 = VLANs 4-5 Instance 2 = VLANs 6-7Switch 2 instance 1 priority = 0 Switch 2 instance 2 priority = 1Switch 3 instance 1 priority = 1 Switch 3 instance 2 priority = 0

Question 13

Which solution allows administrators to monitor link status and port utilization on AOS-Switches from a centralized location?

Options:

A.

Aruba Mobility Controller

B.

Aruba AirWave

C.

Aruba Mobility Manager

D.

Aruba ClearPass

Question 14

Refer to the exhibit.

A network administrator wants to prevent endpoints from spoofing the MAC address of the VLAN 2 default gateway. What should the administrator configure on Switch-1?

Options:

A.

MAC lockdown of the default gateway MAC address on ports 1-20

B.

MAC lockdown of the default gateway MAC address on trk1

C.

default gateway MAC address as a port security authorized address on trk1

D.

default gateway MAC address as a port security authorized address on ports 1-20

Question 15

The implementation plan for AOS-Switches calls for them to implement port-based tunneled node. The Aruba Mobility Controllers that will support the AOS-Switches run software 8.1. The controllers will also support APs, are managed by Mobility Master, and use clustering.

Which issue with this plan needs to be addressed?

Options:

A.

The controllers cannot support tunneled node with AOS-Switches when they are managed by the Mobility Master.

B.

The switches cannot connect to controllers that also support APs.

C.

The controllers must have their software updated before they can support the switches.

D.

The switches must use role-based tunneled node to work with clustering controllers.

Question 16

Refer to the exhibit.

The access layer AOS-Switches currently run DHCP snooping on VLAN 2 and connection rate filtering on edge ports. They are at default settings for ARP protection. A network administrator then enters these commands on each of the access layer switches:

Switch(config)# arp-protect vlan 2 Switch(config)# arp-protect

Which behavior accurse?

Options:

A.

The switches will forward legitimate traffic and prevent ARP poisoning attacks, but interfere with connection rate filtering.

B.

The switches can now prevent ARP poisoning attacks and do not interfere with legitimate communications.

C.

The switches can prevent ARP poisoning attacks, but legitimate communications with VLAN 2 could also be disrupted.

D.

The switches will not apply ARP protection due to interference from DHCP snooping, so the commands have no effect on current behavior.

Question 17

An architect proposes several Aruba 2930M switches, which the customer wants to combine into a single logical switch. What must be included in the proposal to meet this requirement?

Options:

A.

backplane stacking license

B.

QSFP+ fiber transceivers and MPO cable

C.

backplane stacking modules and cables

D.

QSFP+ fiber transceivers and 40GbE to 10GbE cable splitters

Question 18

An AOS-Switch needs to use captive portal to integrate with an Aruba ClearPass Guest solution. The solution should allow guests to connect their own devices to the network, be redirected to a portal, log in, and be granted access transparently.

What is one setting administrators should configure for this solution?

Options:

A.

ClearPass should be defined as the enhanced Web Auth (EWA) server.

B.

RADIUS MAC-Auth should be enabled on the guest ports.

C.

Web-Auth should be enabled on the guest ports.

D.

BYOD redirect should be enabled globally.

Question 19

What is a reason for hello packets between two OSPF routers?

Options:

A.

to permit an OSPF adjacency between two VSF fabrics

B.

to monitor connectivity with the neighbor, but not exchange the routing table

C.

to establish an area that is not directly connected to the backbone Area 0

D.

to permit OSPF to operate between two routers that also run VRRP

Question 20

Which situation requires an AOS-Switch interface to support MAC-based VLANs?

Options:

A.

The interface has an extended MAC ACL applied to it in the outbound direction, and it uses VLAN ID as one of the criteria for rules.

B.

The interface has an extended MAC ACL applied to it in the inbound direction, and it has multiple tagged VLAN assignments.

C.

The interface is configured to support Local MAC Authentication (LMA), authenticates endpoints against a non-default MAC group, and limits the address count to 1.

D.

The interface is configured to support 802.1X in user-based mode, connects to more than one endpoint at a time, and users are assigned to different dynamic VLANs.

Question 21

Refer to the exhibit.

Endpoints in VLAN 2 connect directly to this switch. These devices should only be able to send DHCP, DNS, HTTP, and HTTPS traffic. However, they are able to send any traffic. Based on the exhibit, what is the issue?

Options:

A.

The ACL lacks a deny ip any any statement at the end

B.

The switch does not have an IP address on VLAN 2

C.

The ACL is applied in the wrong direction

D.

The name of the ACL applied to VLAN 2 is incorrect

Question 22

Refer to the exhibit.

Switch-1 is routing traffic to 192.0.2.0/24 over a less-than-optimal path. Which issue could prevent Switch-1 from selecting the first route listed in the table as a best BGP route?

Options:

A.

It does not have AS 46501 configured on it.

B.

It has no route to 192.168.2.1 in its IP routing table.

C.

It has no network statement for 192.168.2.0/24 in its BGP configuration.

D.

It has learned the same route using OSPF.

Question 23

A company has AOS-Switches deployed at sites with inexperienced IT staff. The main office network administrators want to track if configurations change on branch switches.

What should be set up for this purpose?

Options:

A.

an SNMP trap

B.

an RMON alarm

C.

an IP SLA profile

D.

an auto-config server

Question 24

A company wants to implement 802.1X authentication to authenticate client devices on AOS-Switch ports. The company has a RADIUS server that uses PEAP MSCHAP-v2 for the authentication method. What is one task administrators should complete before they implement the plan?

Options:

A.

Set up an isolated VLAN in the network for the 802.1X communications.

B.

Install personal certificates on client devices.

C.

Configure DHCP services on the AOS-Switches for pre-authenticated clients.

D.

Ensure client devices trust the RADIUS server certificate.

Question 25

Refer to the exhibit.

A network administrator needs to deploy AOS-Switches that implement port-based tunneled node. Their Aruba controller has IP address 10.1.10.5/24. The architect has assigned tunneled-node endpoints to VLAN 20.

What is one issue with the current configuration planned for VLAN 20 on the switch?

Options:

A.

VLAN 20 must have GRE enabled on it.

B.

VLAN 20 cannot have an IP address.

C.

VLAN 20 must have an IP address in the same subnet as the controller.

D.

VLAN 20 must not enable jumbo frames.

Page: 1 / 6
Total 169 questions