Free HPE6-A81 Exam Braindumps (page: 4)

Page 3 of 16

You have designed a ClearPass solution for an Information Technology Business Park with 50,377 concurrent sessions including the visitors. The deployment includes eight ClearPass servers handling RADIUS authentication. Guest Self-Registration. Onboard and OnGuard. CPPM1 is acting as Publisher. CPPM2 to CPPM8 are added as subscriber nodes CPPM4 is the designated Standby Publisher. Servers CPPM2 and CPPM3 will be handling the Guest and Onboard HTTPS traffic. On a few devices, Corporate users will perform username and password based authentication with Active Directory accounts and on few devices, they will be using private CA signed TLS certificates to do the authentication The customer has three Active Directories (AD1, AD2 and A03) part of Multi-Domain Forest. To provide authentication redundancy, the customer has configured multiple Virtual IP settings between ClearPass servers in a cluster.



On all the Network Access Devices (NAD), the primary authentication server is configured as the VIP IP address and the secondary authentication server rs configured as CPPM1 MGMT IP address Based on the information provided, which ClearPass nodes will you join to the AD domain

  1. Join CPPM1. CPPM4 to CPPM7 servers to the AD root domain
  2. Join CPPM2 to CPPM7 ClearPass servers to the AD root domain.
  3. Join all the eight ClearPass servers to AD1, AD2 and AD3 domains.
  4. Join CPPM1. CPPM4 to CPPM8 to the AD1. AD2 and AD3 domains.

Answer(s): D



Refer to the exhibit.



What enforcement prof lit will be assigned to the Windows 10 MDH enabled devices if it completes user authentication and is already profiled by ClearPess?

  1. Cisco Full Access VLAN
  2. Default - Deny Access Profile
  3. Cisco Redirect ACL for profiling
  4. Cisco Redirect URL - Service Unavailable

Answer(s): B



Refer to the exhibit.





You have integrated the Cisco switch with ClearPass to do MAC-Auth for Cisco IP Phones. The phones connect to the network successfully but when you try to change the status of the device from the access tracker, you see only the ArubaOS Radius terminate session options and not the Cisco vendor terminate session options.
What will you check to fix this issue?

  1. Verify if the ClearPass supports RADIUS Dynamic Authorization for the Cisco IP Phones doing MAC.AUTH.
  2. Verify if the Cisco IP Phone is actively connected to the switch to get the Cisco CoA options from ClearPass.
  3. Verify if the Enable RADIUS Dynamic Authorization option is checked for the Cisco switch added under the network devices.
  4. Verify that Cisco is chosen as the vendor name while adding the Cisco Switch under network devices.

Answer(s): D



Refer to the exhibit.



What enforcement profile will be assigned to a client who has successfully completed the user and machine authentication with UNKNOWN posture token?

  1. Redirect to Aruba OnBoard Portal
  2. Redirect to Aruba Quarantine Profile
  3. Redirect to Aruba Dissolvable_page Profile
  4. Deny Access Profile

Answer(s): C






Post your Comments and Discuss HP HPE6-A81 exam with other Community members:

HPE6-A81 Exam Discussions & Posts