Free HPE6-A68 Exam Braindumps (page: 2)

Page 1 of 30

Refer to the exhibit.



An AD user's department attribute value is configured as "QA". The user authenticates from a laptop running MAC OS X.
Which role is assigned to the user in ClearPass?

  1. HR Local
  2. Remote Employee
  3. [Guest]
  4. Executive
  5. IOS Device

Answer(s): C

Explanation:

None of the Listed Role Name conditions are met.



Refer to the exhibit.



Based on the Attribute configuration shown, which statement accurately describes the status of attribute values?

  1. Only the attribute values of department and memberOf can be used in role mapping policies.
  2. The attribute values of department, title, memberOf, telephoneNumber, and mail are directly applied as ClearPass.
  3. Only the attribute value of company can be used in role mapping policies, not the other attributes.
  4. The attribute values of department and memberOf are directly applied as ClearPass roles.
  5. Only the attribute values of title, telephoneNumber, and mail can be used in role mapping policies.

Answer(s): D



Which components can use Active Directory authorization attributes for the decision-making process? (Select two.)

  1. Profiling policy
  2. Certificate validation policy
  3. Role Mapping policy
  4. Enforcement policy
  5. Posture policy

Answer(s): C,D

Explanation:

C: Role Mappings Page - Rules Editor Page Parameters



D: Enforcement Policy Attributes tab Parameters


Reference:

http://www.arubanetworks.com/techdocs/ClearPass/Aruba_CPPMOnlineHelp/Content/CPPM_User Guide/identity/RoleMappingPolicies.html
http://www.arubanetworks.com/techdocs/ClearPass/Aruba_CPPMOnlineHelp/Content/CPPM_UserGuide/PolicySim/PS_Enforcement_Policy.htm



Refer to the exhibit.



Based on the Authentication sources configuration shown, which statement accurately describes the outcome if the user is not found?

  1. If the user is not found in the remotelab AD but is present in the local user repository, a reject message is sent back to the NAD.
  2. If the user is not found in the local user repository but is present in the remotelab AD, a reject message is sent back to the NAD.
  3. If the user is not found in the local user repository a reject message is sent back to the NAD.
  4. If the user is not found in the local user repository and remotelab AD, a reject message is sent back to the NA
  5. If the user is not found in the local user repository a timeout message is sent back to the NAD.

Answer(s): D

Explanation:

Policy Manager looks for the device or user by executing the first filter associated with the authentication source.
After the device or user is found, Policy Manager then authenticates this entity against this authentication
source. The flow is outlined below:
* On successful authentication, Policy Manager moves on to the next stage of policy evaluation, which
collects role mapping attributes from the authorization sources.
* Where no authentication source is specified (for example, for unmanageable devices), Policy Manager
passes the request to the next configured policy component for this service.
* If Policy Manager does not find the connecting entity in any of the configured authentication sources, it
rejects the request.


Reference:

ClearPass Policy Manager 6.5 User Guide (October 2015), page 134 https://community.arubanetworks.com/aruba/attachments/aruba/SoftwareUserReferenceGuides/52/1/ClearPass%20Policy%20Manager%206.5%20User%20Guide.pdf






Post your Comments and Discuss HP HPE6-A68 exam with other Community members:

HPE6-A68 Discussions & Posts