Free HPE6-A81 Exam Braindumps (page: 7)

Page 6 of 16

A customer has multiple Aruba Controllers integrated with ClearPass for guest access using a controller-initialed login method. The customer is aware that a public CA-signed captive portal certificate is required in Aruba controllers for controller-initiated workflows. The customer has purchased unique public CA-signed server certificates for each controller.
What configuration steps would you suggest to the customer to complete the deployment? (Select three.)

  1. From the weblogin/ self-registration page NAS Vendor settings, enable the check box for "The controller will send the IP to submit credentials" under Dynamic address.
  2. Edit the HTML header in the weblogin/ self-registration register page with a script to match the controllers IP and captive portal certificate CN names respectively.
  3. From the Aruba controller, enable the option "Add switch IP address in the redirection URL" under the respective L3 Authentication profile mapped in the initial role
  4. From the Aruba controller, enable the option 'Add switch ip address in the redirection URL' under the respective guest AAA profile mapped in the VAP profile.
  5. Add all the controller IP address and its certificate common names in the DNS server's Forward Lookup Zones and Reverse Lookup Zones to resolve queries from client.
  6. From the weblogin/ self-registration page Login form settings, enable the check box for "The controller will send the IP to submit credentials" under Dynamic address.

Answer(s): A,D,F



Refer to the exhibit.



The customer complains that the user shown cannot log into the ClearPess Server at an administrator using the [Policy Manager Admin Network Login Service].
What could be the reason for this?

  1. The mapping on the role should be changed to [RADIUS Super Admin]
  2. The user might be used for a TACACS authentication.
  3. The account created does not fit this purpose.
  4. The local user authentication might be disabled.

Answer(s): C



Which statements art true about the Database server certificate? (Select two)

  1. Database certificate can be created to take a secure backup of the ClearPass database.
  2. ClearPass Policy Manager nodes validates the Database certificate while joining the cluster
  3. Custom Database certificate requires Subject Alternative Name (SAN) field with the DNS name of the server.
  4. A change in Database certificate will only be applicable after a reboot of the node
  5. Database server certificate is optional for the ClearPass servers that are part of a Cluster.

Answer(s): B,C



Which using Allow All MAC AUTH, which authentication source should be mapped to the service?

  1. Static Host List
  2. Endpoint Database
  3. Guest Device Database
  4. Any Authentication source

Answer(s): A






Post your Comments and Discuss HP HPE6-A81 exam with other Community members:

HPE6-A81 Exam Discussions & Posts