Winter Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Free and Premium HP HPE6-A73 Dumps Questions Answers

Page: 1 / 10
Total 127 questions

Aruba Certified Switching Professional Exam Questions and Answers

Question 1

Examine the AOS-CX configuration:

The switches have a default factory password setting NetEdit fails to access the configuration of the AOS-CX switches. What should the administrator do to solve this problem?

Options:

A.

Set a password for the default admin user account.

B.

Disable telnet globally.

C.

Use the default VRF instead of the mgmt VRF

D.

Enable IP routing globally

Buy Now
Question 2

When implementing deficit weighted round robin queuing, what importance does the weight value have?

Options:

A.

Prioritizing latency-sensitive traffic

B.

Queue priority in processing traffic

C.

Strict priority queue

D.

Percentage of interface bandwidth

Question 3

In AOS-CX switching, what determines when a frame is forwarded by the switch between the ingress and the egress port?

Options:

A.

Egress port

B.

Ingress port

C.

VSX switch tables

D.

Fabric Load Balancer

Question 4

A network has two AOS-CX switches connected to two different service providers. The administrator is

concerned about bandwidth consumption on the service provider links and learned that the service providers were using the company as a transit AS.

Which feature should the administrator implement to prevent this situation?

Options:

A.

Configure route maps and apply them to BGP

B.

Configure the two switches as route reflectors

C.

Configure a classifier policy to disable MED

D.

Configure bi-directional forwarding detection on both switches

Question 5

An administrator has an aggregation layer of 8325CX switches configured as a VSX pair. The administrator is

concerned that when OSPF network changes occur, the aggregation switches will respond to the changes

slowly, and this will affect network connectivity, especially VoIP calls, in the connected access layer switches.

What should the administrator do on the aggregation layer switches to alleviate this issue?D18912E1457D5D1DDCBD40AB3BF70D5D

Options:

A.

Implement route aggregation

B.

Implement bidirectional forwarding detection (BFD)

C.

Reduce the hello and dead interval timers

D.

Implement graceful restart

Question 6

How is voice traffic prioritized correctly on AOS-CX switches?

Options:

A.

By defining device profiles with QOS settings

B.

By placing it in the strict priority queue

C.

By implementing voice VLANs

D.

By implementing weighted fair queueing (WFQ)

Question 7

Which concept is implemented using Aruba’s dynamic segmentation?

Options:

A.

Root of trust

B.

Device fingerprinting

C.

Zero Touch Provisioning

D.

Colorless port

Question 8

A network engineer is setting up BGP on AOS-CX switches. The engineer is establishing two different eBGP peering’s to two different service providers. The engineer has dozens of contiguous C-class public networks that need to be advertised to the two service providers. The engineer manually defines the networks to be advertised individually with the "network" command.

How can an administrator advertise only a summarized route to the two service providers?

Options:

A.

Create a summarized static route and redistribute this into OSPR

B.

Summarize the networks with the "aggregate-address" BGP command

C.

Enable auto-summarization in the IPv4 address family of the BGP configuration

D.

Create a summarized route in OSPF

Question 9

Examine the following AOS-CX switch configuration:

Which access control entries would allow web traffic to the web servers 10.1.0.100 and 10.1.1.100?

Options:

A.

permit tcp servers eq 80

B.

permit tcp any 10.1.0.100 0.0.1.0 eq 80

C.

permit tcp any 10.1.0.100/10.1.1.100 eq 80

D.

permit tcp any 10.1.0.100/255.255.254.255 eq 80

Question 10

Examine the following AOS-CX configuration:

Based on this configuration, which statement is correct regarding IoT traffic?

Options:

A.

If 10.100.1.2 is not reachable, the IoT traffic will be automatically dropped by the switch

B.

If a specific route is not available in the routing table, the traffic will be routed to 10.100.1.2

C.

The next hop of 10.100.1.2 can be one or more hops away from the AOS-CX switch

D.

All routes are ignored in the routing table for IoT traffic, which is routed to 10.100.1.2

Question 11

A network engineer is examining NAE graphs from the Dashboard but notices that the time shown in the graph does not represent the current time. The engineer verifies that the AOS-CX switch is configured for NTP and is successfully synchronized. What should be done to fix this issue?

Options:

A.

Ensure the engineer’s web browser is configured for the same timezone as the AOS-CX switch

B.

Ensure the engineer’s PC is synchronized to the same NTP server as the AOS-CX switch

C.

Ensure NetEdit and the AOS-CX switch are synchronized to the same NTP server

D.

Enable trust settings for the AOS-CX switch’s SSL certificate

Question 12

An administrator of a large campus network needs a solution that will provide root cause analytics to quickly identify problems so that they can quickly be fixed.

Which AOS-CX switch feature should the administrator utilize to help with root cause analytics?

Options:

A.

NAE

B.

VoQ

C.

NetEdit

D.

VSX

Question 13

A network administrator needs to replace an antiquated access layer solution with a modular solution involving AOS-CX switches. The administrator wants to leverage virtual switching technologies. The solution needs to support high-availability with dual-control planes.

Which solution should the administrator implement?

Options:

A.

AOS-CX 8325

B.

AOS-CX 6300

C.

AOS-CX 6400

D.

AOS-CX 8400

Question 14

When an AOS-CX switch uses a temporary copy of the Configuration State database, what kind of analysis does NetEdit perform to ensure that the configuration is correct?

Options:

A.

Syntax validation

B.

Semantic validation

C.

Conformance validation

D.

Change validation

Question 15

An administrator wants to track what configuration changes were made on a switch. What should the

administrator implement to see the configuration changes on an AOS-CX switch?

Options:

A.

AAA authorization

B.

Network Analysis Engine (NAE)

C.

AAA authentication

D.

VSX synchronization logging

Question 16

What is correct regarding rate limiting and egress queue shaping on AOS-CX switches?

Options:

A.

Rate limiting and egress queue shaping can be used to restrict inbound traffic

B.

Limits can be defined only for broadcast and multicast traffic

C.

Rate limiting and egress queue shaping can be applied globally

D.

Traffic rate limit is configured on queue level

Question 17

Examine the VSX-related configuration of the core layer AOS-CX switch:

A network administrator is troubleshooting a connectivity issue involving the VSX LAG (link aggregation) between the core and access layer switch, during HW replacement of one of the core switches.

Which configuration should the administrator add to the core switch to fix this issue?

Options:

A.

ICX-Tx-Core1(config)# vsx

ICX-Tx-Core1(config-vsx)# system-mac 02:01:00:00:01:00

B.

ICX-Tx-Core1(config)# interface lag 1 multi-chassis

ICX-Tx-Core1(config-if-lag-if)# mtu 9198

C.

ICX-Tx-Core1(config)# interface 1/1/46-1/1/47

ICX-Tx-Core1(config-if-vlan)# active-gateway ip 10.1.11.1 mac 02:02:00:00:01:00

D.

ICX-Tx-Core1(config)# interface 1/1/45

ICX-Tx-Core1(config-if-vlan)# active-gateway ip 192.168.0.0 mac 02:02:00:00:01:00

Question 18

An administrator is managing a network comprised of AOS-CX switches deployed at the aggregation layer. The switches are paired in a VSX stack and run the OSPF routing protocol. The administrator is concerned about how long it takes for OSPF to converge when one of the VSX switches has to reboot.

What should the administrator to do speed up the OSPF convergence of the switch that is rebooting?

Options:

A.

Change the VSXISL link from an OSPF broadcast link point-to-point.

B.

Implement graceful restart on the VSX switches and their neighboring OSPF switches.

C.

Decrease the VSX initial synchronization timer on the two VSX switches.

D.

Define non-backbone areas on the VSX switches as totally stubby areas.

Question 19

A company has an existing wireless solution involving Aruba APs and Mobility controllers running 8.4 code.

The solution leverages a third-party AAA solution. The company is replacing existing access switches with AOS-CX 6300 and 6400 switches. The company wants to leverage the same security and firewall policies for both wired and wireless traffic.

Which solution should the company implement?

Options:

A.

RADIUS dynamic authorization

B.

Downloadable user roles

C.

IPSec

D.

User-based tunneling

Question 20

A network engineer is using NetEdit to manage AOS-CX switches. The engineer notices that a lot of thirdparty VoIP phones are showing up in the NetEdit topology. The engineer deletes these, but they are

automatically rediscovered by NetEdit and added back in.

What should the administrator do to solve this problem?

Options:

A.

Change the VoIP phone SNMP community string to something unknown by NetEdit

B.

Disable LLDP globally on the AOS-CX switches where phones are connected

C.

Disable SSH access on all the VoIP phones

D.

Disable the RESTful API on all the VoIP phones

Question 21

A company has just purchased AOS-CX switches. The company has a free and open-source AAA solution.

The company wants to implement access control on the Ethernet ports of the AOS-CX switches.

Which security features can the company implement given the equipment that they are using?

Options:

A.

Port-based tunneling

B.

Device fingerprinting

C.

Local user roles

D.

Downloadable user roles

Question 22

An AOS-CX switch is configured to implement downloadable user roles. Examine the AOS-CX switch output:

Based on this output, what is the state of the user’s access?

Options:

A.

No downloadable user role exists

B.

MAC authentication has passed, but 802.1X authentication is in progress

C.

The RADIUS request timed out to the AAA server

D.

The port should be configured for 802.1X

Question 23

An administrator wants to use an existing Aruba gateway's firewall policies to filter both wireless and wired traffic. Which AOS-CX switch feature should a customer implement to ensure the gateway applies the same or similar firewall policies to users' wired and wireless traffic?

Options:

A.

GRE tunneling

B.

User-based tunneling

C.

Port-based tunneling

D.

IPSec tunneling

Question 24

A network engineer is having a problem adding a custom-written script to an AOS-CX switch’s NAE GUI. The script was written in Python and was successfully added on other AOS-CX switches. The engineer examines the following items from the CLI of the switch:

What should the engineer perform to fix this issue?

Options:

A.

Install the script’s signature before installing the new script

B.

Ensure the engineer’s desktop and the AOS-CX switch are synchronized to the same NTP server

C.

Enable trust settings for the AOS-CX switch’s SSL certificate

D.

Remove a script that is no longer used before installing the new script

Question 25

An administrator is implementing a downloadable user role solution involving AOS-CX switches. The AAA

solution and the AOS-CX switches can successfully authenticate users; however, the role information fails to

download to the switches. What policy should be added to an intermediate firewall to allow the downloadable

role function to succeed?

Options:

A.

Allow TCP 443

B.

Allow UDP 1811

C.

Allow UDP 8211

D.

Allow TCP 22

Question 26

A network engineer for a company with 896 users across a multi-building campus wants to gather statistics on an important switch uplink and create actions based on issues that occur on the uplink. How often does an NAE agent gather information from the current state database in regard to the uplink interfaces?

Options:

A.

Once every 60 seconds

B.

Once every 1 second

C.

Once every 30 seconds

D.

Once every 5 seconds

Question 27

An administrator will be deploying HPE Aruba Networking Switch Multi-Edit Software to manage an Aruba solution. What does Switch Multi-Edit Software support?

Options:

A.

Manages AOS-CX switches and HPE Aruba Networking Gateways

B.

Tracks configuration and hardware information

C.

Support for HPE Aruba Networking-supplied security updates

D.

Can be purchased as a VM and/or hardware appliance

Question 28

An administrator wants to implement a virtual switching technology that implements a single control-plane solution. Which S-CX switches would meet these criteria?

Options:

A.

All AOS-CX switching platforms

B.

AOS-CX 6300 and 6400 switches

C.

AOS-CX 6300, 6400, and 83xx switches

D.

AOS-CX 6300 switches

Question 29

An administrator is managing a VSX pair of AOS-CX switches An administrator configures the following on the primary AOS-CX switch:

Options:

A.

The primary switch will erase VLAN 200 from the VSX pair

B.

The VLAN is only created on the secondary switch.

C.

The operation is not allowed by the switch and a CLI error is displayed

D.

The VLAN is created on both the primary and secondary switches

Question 30

How is NetEdit installed at a customer location?

Options:

A.

Via an Aruba NetEdit hardware appliance

B.

Via a DVD using a virtualized platform like Microsoft’s Hyper-V

C.

Via the Aruba Central cloud solution

D.

Via an OVA file and a virtualized platform like VMware’s ESXi

Question 31

An administrator is looking for a data center switching solution that will greatly reduce the likelihood of dropped

frames when uplink congestion is experienced. Which AOS-CX switch queuing feature meets the

administrator’s needs?

Options:

A.

FIFO

B.

VOQ

C.

WFQ

D.

DWWR

Question 32

A network administrator is attempting to troubleshoot a connectivity issue between a group of users and a

particular server. The administrator needs to examine the packets over a period of time from their desktop;

however, the administrator is not directly connected to the AOS-CX switch involved with the traffic flow.

What is correct regarding the ERSPAN session that needs to be established on an AOS-CX switch? (Choose two.)

Options:

A.

On the source AOS-CX switch, the destination specified is the switch to which the administrator’s desktop is connected

B.

On the source AOS-CX switch, the destination specified is the administrator’s desktop

C.

The encapsulation protocol used is GRE

D.

The encapsulation protocol used is VXLAN

E.

The encapsulation protocol is UDP

Question 33

Examine the network exhibit:

The ACL configuration defined on Core-1 is as follows:

If telnet was being used, which device connection would be permitted and functional in both directions?

(Choose two.)

Options:

A.

Client 3 to Client 2

B.

Client 1 to Client 2

C.

Server 2 to Client 2

D.

Server 1 to Client 1

E.

Client 1 to Client 3

Question 34

An administrator has configured the following on an AOS-CX switch:

What is the correct ACL rule configuration that would allow traffic from anywhere to reach the web ports on the

two specified servers?

Options:

A.

access-list ip server 10 permit tcp any web-servers group web-ports

B.

access-list ip server 10 permit tcp any object-group web-servers object-group web-ports

C.

access-list ip server 10 permit tcp any group web-servers group web-ports

D.

access-list ip server 10 permit tcp any web-servers web-ports

Question 35

Examine the attached diagram

Two AOS-CX switches are configured for VSX at the access layer, where servers attached to them. An SVI interface is configured for VLAN 10 and serves as the default gateway for VLAN 10. The ISL link between the switches fails, but the keepalive interface functions. Active gateway has been configured on the switches.

What is correct about access from the servers to the Core?

Options:

A.

Server 2 can successfully access the core layer via the keepalive link.

B.

Server 1 and Server 2 can communicate with each other via the core layer.

C.

Server 2 cannot access the core layer.

D.

Server 1 can access the core layer via both uplinks.

Question 36

Examine the network exhibit:

Examine Rome r4"s partial OSPF configuration: router OSPF 1

Area 0

exit interface vlan 100

ip ospf area 0

exit interface vlan 40

ip ospf area 0

exit interface 1/1/1

vlan access 100

mtu9000

Ip ospt hello-Interval 1

Ip ospt dead-Interval 4

ip ospf authentication simple-text

ip ospf authentication-key key123

When executing the "show ip ospf neighbors" command, Router 4 is in a FULL state with Router 3 and Router 2, but a 2-WAY state with Route3. What is causing the 2-WAY state with Router 1?

Options:

A.

The timers on Interface 1/1/1 Is mismatched with Router i's VLAN TOO interlace.

B.

The MTU size on interface 1/1/1 is mismatched with Router Vs VLAN 100 interface.

C.

Router 1 and Route1 3 have a mismatched authentication Key.

Question 37

Examine the following ACL rule policies:

Permit traffic from 10.2.2.1 through 10.2.2.30 to anywhere

Permit traffic from 10.2.2.40 through 10.2.2.55 to anywhere

Deny all others

Based on this policy, place the following ACL rule statements in the correct order to accomplish the above

filtering policy.

Options:

A.

deny ip 10.2.2.31 255.255.255.255 any

permit ip 10.2.2.40 255.255.255.248 any

permit ip 10.2.2.48 255.255.255.248 any

deny ip 10.2.2.32 255.255.255.224 any

permit ip 10.2.2.0 255.255.255.192 any

B.

permit ip 10.2.2.40 255.255.255.248 any

permit ip 10.2.2.48 255.255.255.248 any

permit ip 10.2.2.0 255.255.255.192 any

deny ip 10.2.2.31 255.255.255.255 any

deny ip 10.2.2.32 255.255.255.224 any

C.

deny ip 10.2.2.31 255.255.255.255 any

deny ip 10.2.2.32 255.255.255.224 any

permit ip 10.2.2.40 255.255.255.248 any

permit ip 10.2.2.48 255.255.255.248 any

permit ip 10.2.2.0 255.255.255.192 any

D.

deny ip 10.2.2.31 255.255.255.255 any

permit ip 10.2.2.40 255.255.255.248 any

deny ip 10.2.2.32 255.255.255.224 any

permit ip 10.2.2.48 255.255.255.248 any

permit ip 10.2.2.0 255.255.255.192 any

Question 38

Which statement is correct regarding ACLs and TCAM usage?

Options:

A.

Applying an ACL to a group of ports consumes the same resources as specific ACE entries

B.

Using object groups consumes the same resources as specific ACE entries

C.

Compression is automatically enabled for ASIC TCAMs on AOS-CX switches

D.

Applying an ACL to a group of VLANs consumes the same resources as specific ACE entries

Page: 1 / 10
Total 127 questions