HP HPE7-A02 Exam Practice Questions (P. 1)
- Full Access (70 questions)
- One Year of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #1
A company uses HPE Networking ClearPass Policy Manager (CPPM) as a TACACS+ server to authenticate managers on its AOS-CX switches. The company wants CPPM to control commands managers are allowed to enter.
Which service must you add to the managers’ TACACS+ enforcement profile?
Which service must you add to the managers’ TACACS+ enforcement profile?
send
light_mode
delete
Question #2
An AOS-CX switch has this admin user account configured on it: netadmin in the operators group
You have configured these commands on an AOS-CX switch:
tacacs-server host cp.example.com key plaintext &12xl.powmay7855 aaa authentication login ssh group tacacs local aaa authentication allow-fail-through
A user accesses the switch with SSH and logs in as netadmin with the correct password. When switch sends a TACACS+ request to the ClearPass server at cp.example.com, the server does not send a response. Authentication times out.
What happens?
You have configured these commands on an AOS-CX switch:
tacacs-server host cp.example.com key plaintext &12xl.powmay7855 aaa authentication login ssh group tacacs local aaa authentication allow-fail-through
A user accesses the switch with SSH and logs in as netadmin with the correct password. When switch sends a TACACS+ request to the ClearPass server at cp.example.com, the server does not send a response. Authentication times out.
What happens?
- AThe user is logged in and granted operator access.
- BThe user is logged in and allowed to enter auditor commands only.
- CThe user is logged in and granted administrators access.
- DThe user is not allowed to log in.
send
light_mode
delete
Question #3
You have created this rule in an HPE Aruba Networking ClearPass Policy Manager (CPPM) service’s enforcement policy. IF Authorization [Endpoints Repository] Conflict EQUALS true THEN apply “quarantine_profile”
What information can help you determine whether you need to configure cluster-wide profiler parameters to ignore some conflicts?
What information can help you determine whether you need to configure cluster-wide profiler parameters to ignore some conflicts?
- AWhether the company has devices that use PXE boot
- BWhether some devices are incapable of captive portal or 802.1X authentication
- CWhether the company has rare Internet of Things (IoT) devices
- DWhether some devices are running legacy operating systems
send
light_mode
delete
Question #4
A port-access role for AOS-CX switches has this policy applied to it:

The company wants to permit clients in this role to access 10.2.12.0/24 with HTTPS.
What should you do?

The company wants to permit clients in this role to access 10.2.12.0/24 with HTTPS.
What should you do?
- AAdd this rule to zoneC: 5 match any 10.2.12.0/24 eq https
- BAdd this rule to zone A: 5 ignore tcp any 10.2.12.0/24 eq https
- CAdd this rule to zone B: 5 match tcp any 10.2.12.0/24 eq https
- DAdd this rule to zoneC: 5 ignore tcp any 10.2.12.0/24 eq https
send
light_mode
delete
Question #5
You are setting up HPE Aruba Networking SSE to prohibit users from uploading and downloading files from Dropbox. What is part of the process?
- Aadding a web category that includes Dropbox
- Binstalling the HPE Aruba Networking SSE root certificate on clients
- Cdeploying a connector that can reach the remote users
- Ddeploying a connector that can reach Dropbox
send
light_mode
delete
All Pages
