HP HPE7-A02 Exam Practice Questions (P. 2)
- Full Access (118 questions)
- One Year of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #6
You are setting up user based tunneling (UBT) between access layer AOS-CX switches and AOS-10 gateways. You have selected reserved (local) VLAN mode.
Tunneled devices include IoT devices, which should be assigned to:
*Roles: iot on the switches and iot-wired on the gateways
*VLAN: 64, for which the gateways route traffic
IoT devices connect to the access layer switches’ edge ports, and the access layer switches reach the gateways on their uplinks.
Where must you configure VLAN 64?
Tunneled devices include IoT devices, which should be assigned to:
*Roles: iot on the switches and iot-wired on the gateways
*VLAN: 64, for which the gateways route traffic
IoT devices connect to the access layer switches’ edge ports, and the access layer switches reach the gateways on their uplinks.
Where must you configure VLAN 64?
- AIn the iot-wired role and on no physical interfaces
- BIn the iot role and the iot-wired role and on no physical interfaces
- CIn the iot-wired role and the access switch uplinks
- DIn the iot role and the access switch uplinks
send
light_mode
delete
Question #7
A company has a third-party security appliance deployed in its data center. The company wants to pass all traffic for certain clients through that device before forwarding that traffic toward its ultimate destination.
Which AOS-CX switch technology fulfills this use case?
Which AOS-CX switch technology fulfills this use case?
- AVirtual Network Based Tunneling (VNBT)
- BMC-LAG
- CNetwork Analytics Engine (NAE)
- DDevice profiles
send
light_mode
delete
Question #8
You manage AOS-10 APs with HPE Aruba Networking Central. A role is configured on these APs with these rules:
1. Allow udp on port 67 to any destination
2. Allow any to network 10.1.6.0/23
3. Deny any to network 10.1.0.0/16 + log
4. Deny any to network 10.0.0.0/8
5. Allow any to any destination
You add this new rule immediately before rule 2:
Deny ssh to network 10.1.4.0/23 + denylist
After this change, what happens when a client assigned to this role sends SSH traffic to 10.1.11.42?
1. Allow udp on port 67 to any destination
2. Allow any to network 10.1.6.0/23
3. Deny any to network 10.1.0.0/16 + log
4. Deny any to network 10.0.0.0/8
5. Allow any to any destination
You add this new rule immediately before rule 2:
Deny ssh to network 10.1.4.0/23 + denylist
After this change, what happens when a client assigned to this role sends SSH traffic to 10.1.11.42?
- AThe traffic is permitted.
- BThe traffic is dropped and logged.
- CThe traffic is dropped (without any logging or further action against the client).
- DThe traffic is dropped, and the client is denylisted.
send
light_mode
delete
Question #9
HPE Aruba Networking ClearPass Device Insight (CPDI) could not classify some endpoints using system and user rules. Using machine learning, it did assign those endpoints to a cluster and discover a recommendation. In which of these circumstances does CPDI automatically classify the endpoints based on that recommendation?
- AThe recommendation has 96% confidence, and it based on 13 classified devices.
- BThe recommendation has 98% confidence, and it based on 5 classified devices.
- CThe recommendation has 93% confidence, and it based on 36 classified devices.
- DThe recommendation has 100% confidence, and it based on 4 classified devices.
send
light_mode
delete
Question #10
You are setting up HPE Aruba Networking SSE. Which use case requires you to apply a non-default posture in a rule?
- Aapplying threat inspection to users when they access certain web sites
- Bchecking whether a client has antivirus software as a condition for receiving access to resources
- Credirecting compromised clients to a remediation server
- Dintegrating with HPE Aruba Networking ClearPass OnGuard
send
light_mode
delete
All Pages
