Free HPE6-A77 Exam Braindumps (page: 4)

Page 3 of 16

A customer has completed all the required configurations in the Windows server in order for Active Directory Certificate Services (ADCS) to sign Onboard device TLS certificates. The Onboard portal and the Onboard services are also configured. Testing shows that the Client certificates ate still signed by the Onboard Certificate Authority and not ADCS.
How can you help the customer with the situation?

  1. Educate the customer that, when integrating with Active Directory Certificate Services (ADCS) the Onboard CA will the same authority used for signing me final TLS certificate of the device.
  2. Configure the identity certificate signer as Active Directory Certificate Services and enter the ADCS URL http://ADCSVVeoEnrollmentServemostname/certsrv in the OnBoard Provisioning settings.
  3. Enable access to EST servers from the Certificate Authority to make ClearPass Onboard to use of the Active Directory Certificate Services (ADCS) web enrollment to sign the device TLS certificates.
  4. Enable access to SCEP servers from the Certificate Authority to make ClearPass Onboard to use of the Active Directory Certificate Services (ADCS) web enrollment to sign the device TLS certificates.

Answer(s): C



Refer to the exhibit:



A customer has just configured a Posture Policy and the T2-Healthcheck Service. Next they installed the OnGuard Agent on Secure_Employee SSID. When they check Access Tracker they see many WEBAUTH requests are being triggered.
What could be the reason?

  1. OnGuard Web-Based Health Check interval has been wrongly configured to three minutes.
  2. The OnGuard Agent trigger the events based on changing the Health Status
  3. TCP port 6658 is not allowed between the client and the ClearPass server
  4. The OnGuard Agent is connecting to the Data Port interface on ClearPass

Answer(s): A



Refer to the exhibit:



You have configured Onboard but me customer could not onboard one of his devices and has sent you the above screenshots. How could you resolve the issue?

  1. Instruct the user to delete the profile on one of their other BYOD devices.
  2. Instruct the user to run the Quick connect application in Sponsor Mode.
  3. Increase the maximum number of devices allowed by the individual user account.
  4. Increase the maximum number of devices that all users can provision to 3.

Answer(s): D



Refer to the Exhibit:





A customer wants to integrate posture validation into an Aruba Wireless 802.1X authentication service During testing, the client connects to the Aruba Employee Secure SSID and is redirected to the Captive Portal page where the user can download the OnGuard Agent After the Agent is installed, the client receives the Healthy token the client remains connected to the Captive Portal page ClearPass is assigning the endpoint the following roles: T2-Staff-User. (Machine Authenticated! and T2-SOL-Device.
What could cause this behavior?

  1. The Enforcement Policy conditions for rule 1 are not configured correctly.
  2. Used Cached Results: has not been enabled In the Aruba 802.1X Wireless Service
  3. RFC-3576 Is not configured correctly on the Aruba Controller and does not update the role.
  4. The Enforcement Profile should bounce the connection instead of a Terminate session

Answer(s): B






Post your Comments and Discuss HP HPE6-A77 exam with other Community members:

HPE6-A77 Discussions & Posts