最新版を今すぐ試そう![2024年12月] 試験準備には欠かさない!HPE6-A73問題集
有能な受験者がシミュレーション済みのHPE6-A73試験PDF問題を試そう
質問 # 54
An administrator of a large campus network needs a solution that will provide root cause analytics to quickly identify problems so that they can quickly be fixed.
Which AOS-CX switch feature should the administrator utilize to help with root cause analytics?
- A. VSX
- B. NAE
- C. NetEdit
- D. VoQ
正解:B
質問 # 55
A company has implemented 802.1X authentication on AOS-CX access switches, where two ClearPass servers are used to implement AAA. Each switch has the two servers defined.A network engineer notices thefollowing command configured on the AOS-CX switches:
radius-server tracking user-name monitor password plaintext aruba123
What is the purpose of this configuration?
- A. Define the account to implement change of authorization
- B. Define the account to implement downloadable user roles
- C. Speed up the AAA authentication process
- D. Implement replay protection for AAA messages
正解:C
質問 # 56
Examine the network exhibit:
The ACL configuration defined on Core-1 is as follows:
If telnet was being used, which device connection would be permitted and functional in both directions?
(Choose two.)
- A. Client 3 to Client 2
- B. Server 2 to Client 2
- C. Client 1 to Client 3
- D. Server 1 to Client 1
- E. Client 1 to Client 2
正解:D、E
質問 # 57
Examine the attached diagram
Two AOS-CX switches are configured for VSX at the access layer, where servers attached to them. An SVI interface is configured for VLAN 10 and serves as the default gateway for VLAN 10. The ISL link between the switches fails, but the keepalive interface functions. Active gateway has been configured on the switches.
What is correct about access from the servers to the Core?
- A. Server 1 and Server 2 can communicate with each other via the core layer.
- B. Server 2 cannot access the core layer.
- C. Server 1 can access the core layer via both uplinks.
- D. Server 2 can successfully access the core layer via the keepalive link.
正解:A
質問 # 58
An administrator creates an ACL rule with both the "count" and "log" option enabled. What is correct about the action taken by an AOS-CX switch when there is a match on this rule?
- A. Logging will not include certificate and TLS events, but counting will
- B. The total in the "log" record and the count could contain different rule matching statistics
- C. By default, a summarized log is created every minute with a count of the number of matches
- D. The "count" and "log" options are processed by the AOS-CX switch's hardware ASIC
正解:B
質問 # 59
Which protocol does NetEdit use to discover devices in a subnet during the discovery process?
- A. ARP
- B. DHCP
- C. LLDP
- D. ICMP
正解:D
質問 # 60
A customer has twenty AOS-CX switches that will be managed by NetEdit and would like support for NetEdit these switches will exist in the network for at least five years.
Which type of licensing should be used by this customer?
- A. 20 Aruba NetEdit single node subscription licenses
- B. 25 Aruba NetEdit permanent licenses
- C. 1 Aruba NetEdit SMB License
- D. 20 Aruba NetEdit permanent licenses
正解:A
質問 # 61
A company has an existing wireless solution involving Aruba APs and Mobility controllers running 8.4 code.
The solution leverages a third-party AAA solution. The company is replacing existing access switches with AOS-CX 6300 and 6400 switches. The company wants to leverage the same security and firewall policies for both wired and wireless traffic.
Which solution should the company implement?
- A. IPSec
- B. RADIUS dynamic authorization
- C. User-based tunneling
- D. Downloadable user roles
正解:C
質問 # 62
Examine the attached diagram.
The two PCs are located in VLAN 11 (10.1.11.0/24). Which example defines how to implement active gateway on the VSX core for VLAN 11?
- A. vsx
vrrp group 1 - B. interface vlan 11
active-gateway ip 10.1.11.1
active-gateway mac 02:02:00:00:01:00 - C. interface lag 254
active-gateway vlan 11 ip 10.1.11.1
active-gateway vlan 11 mac 02:02:00:00:01:00 - D. interface lag 254
active-gateway ip 10.1.11.1
active-gateway mac 02:02:00:00:01:00
正解:B
質問 # 63
What is correct regarding the tunneling of user traffic between AOS-CX switches and Aruba Mobility Controllers (MCs)?
- A. Uses the same management protocol as Aruba APs
- B. Uses IPSec to protect the management traffic
- C. Supports only port-based tunneling
- D. Uses iPSec to protect the management and data traffic
正解:A
質問 # 64
Examine the output from an AOS-CX switch implementing a dynamic segmentation solution involving downloadable user roles:
Switch# show port-access role clearpass
Role information:
Name : icxarubadur_employee-3044-2
Type : clearpass
Status: failed, parsing_failed
Reauthentication Period :
Authentication Mode :
Session Timeout :
The downloadable user roles are not being downloaded to the AOS-CX switch. Based on the above output, what is the problem?
- A. There is a date/time issue between the ClearPass server and the switch
- B. DNS fails to resolve the ClearPass server's FQDN
- C. The certificate that ClearPass uses in invalid
- D. The AOS-CX switch does not have the ClearPass certificate involved
正解:C
質問 # 65
Examine the network exhibit.
A company has a guest implementation for wireless and wired access. Wireless access is implemented through a third-party vendor. The company is concerned about wired guest traffic traversing the same network as the employee traffic. The network administrator has established a GRE tunnel between AOS-CX switches where guests are connected to a routing switch in the DMZ.
Which feature should the administrator implement to ensure that the guest traffic is tunneled to the DMZ while the employee traffic is forwarded using OSPF?
- A. OSPF route maps using the "set metric" command
- B. Classifier policies
- C. Policy-based routing (PBR)
- D. User-based tunneling (UBT)
正解:D
質問 # 66
A switch will apply a device profile to a port based on which pieces of information? (Select two.)
- A. IP header
- B. User role
- C. MAC address
- D. 802.1Q
- E. LLDP
正解:A、C
質問 # 67
Examine the attached exhibit.
The network administrators is trying to add a remote location as area 3 to the network shown in the diagram.
Based on current connection restrictions, the administrator cannot connect area 3 directly to area 0. The network is using AOS-CX switches.
Which feature should the administrator implement to provide connectivity to the remote location?
- A. Not-so-stubby areas
- B. Bidirectional forward detection (BFD)
- C. OSPFv3
- D. Virtual links
正解:D
質問 # 68
How is voice traffic prioritized correctly on AOS-CX switches?
- A. By placing it in the strict priority queue
- B. By defining device profiles with QOS settings
- C. By implementing weighted fair queueing (WFQ)
- D. By implementing voice VLANs
正解:A
質問 # 69
A company requires access by all users, guests, and employees to be authenticated. Employees will be authenticated using 802.1X, whereas guests will be authenticated using captive portal. Which type of authentication must be configured on an AOS-CX switch ports where both guests and employees connect?
- A. 802.1X only
- B. Both 802.1X and captive portal
- C. 802.1X, captive portal, and MAC-Auth
- D. Both 802.1X and MAC-Auth
正解:D
質問 # 70
Examine the following AOS-CX switch configuration:
Which statement correctly describes what is allowed for traffic entering interface 1/1/3?
- A. IP traffic from 10.1.11.0/24 is allowed to access 10.1.110.0/24
- B. Traffic from 10.0.12.0/24 will generate a log record when accessing 10.0.11.0/24
- C. IP traffic from 10.0.11.0/24 is allowed to access 10.1.12.0/24
- D. IP traffic from 10.1.12.0/24 is allowed to access 172.0.1.0/23
正解:C
質問 # 71
A company has implemented 802.1X authentication on AOS-CX access switches, where two ClearPass servers are used to implement AAA. Each switch has the two servers defined. A network engineer notices the following command configured on the AOS-CX switches:
radius-server tracking user-name monitor password plaintext aruba123
What is the purpose of this configuration?
- A. Define the account to implement change of authorization
- B. Define the account to implement downloadable user roles
- C. Speed up the AAA authentication process
- D. Implement replay protection for AAA messages
正解:C
解説:
Radius service tracking locates the availability of the RADIUS service configured on the switch. It helps to minimize the waiting period for new clients in the unauth-vid (Guest Vlan) when authentication fails because of service is not available, as well as previously authenticated clients in unauth-vid (Guest Vlan) when re-authentication fails because service is not available during the re-authentication period. Note that this feature is disabled by default.
https://techhub.hpe.com/eginfolib/networking/docs/switches/WB/16-02/5200-1650_WB_ASG/content/ch04s04.html
質問 # 72
A network administrator is managing a network that deploys a multicast service. The administrator has multiple streams successfully being routed by PIM-DM in the network. The administrator then adds a new stream with a destination address of 239.0.0.1. However, clients who have not joined the stream are receiving it.
What should the administrator do to fix this problem?
- A. Define the 239.0.0.1 stream on the rendezvous point (RP)
- B. Define the 239.0.0.1 stream on the PIM candidate bootstrap router
- C. Change the destination multicast address to 239.1.1.1
- D. Verify that IGMP is enabled between the switches connecting the multicast source and receivers
正解:A
質問 # 73
An administrator has an aggregation layer of 8325CX switches configured as a VSX pair. The administrator is concerned that when OSPF network changes occur, the aggregation switches will respond to the changes slowly, and this will affect network connectivity, especially VoIP calls, in the connected access layer switches.
What should the administrator do on the aggregation layer switches to alleviate this issue?D18912E1457D5D1DDCBD40AB3BF70D5D
- A. Implement route aggregation
- B. Reduce the hello and dead interval timers
- C. Implement graceful restart
- D. Implement bidirectional forwarding detection (BFD)
正解:A
質問 # 74
An administrator is designing an access layer solution in a data center. A key requirement is to dual-home mission-critical server connections to two different switches, ensuring that the servers always have network access, even during switch software upgrades. This feature should support strictly-controlled provisioning.
What would best meet the administrator's needs when deploying AOS-CX switches?
- A. VSF
- B. Dynamic segmentation
- C. VSX
- D. NAE
正解:C
質問 # 75
Examine the AOS-CS switch output:
Based on this output, what is correct?
- A. Only 802.1X authentication is configured on the port
- B. A local user role was deployed using a ClearPass solution
- C. 802.1X authentication occurred and downloadable user roles are deployed
- D. 802.1X authentication was successful, but MAC authentication is yet to start
正解:C
質問 # 76
......
検証済み材料を使うならまずHPE6-A73テストエンジンを試そう:https://www.jpntest.com/shiken/HPE6-A73-mondaishu
合格するに必要な問題集はHPE6-A73試験:https://drive.google.com/open?id=1131nW7GJZ8-C8OmmXa_v9e4YuHjIhizU