Winter Special Flat 65% Limited Time Discount offer - Ends in 0d 00h 00m 00s - Coupon code: suredis

HP HPE6-A73 Aruba Certified Switching Professional Exam Exam Practice Test

Demo: 38 questions
Total 127 questions

Aruba Certified Switching Professional Exam Questions and Answers

Question 1

The network is configured for OSPF with the following attributes:

Core1 and Core2 and ABRs

Area 1 has 20 networks in the 10.1.0.0/16 range

Area 0 has 10 networks in the 10.0.0.0/16 range

Area 2 has 50 networks in the 10.2.0.0/16 range

The ASBR is importing a static route into Area 1

Core2 has a summary for Area 2: area 0.0.0.2 range 10.2.0.0/16 type inter-area

Here is the OSPF configuration performed on Core1:

Based on the above information, what is correct?

Options:

A.

Area 0 has 13 routes

B.

Core1 has no OSPF routes

C.

Core1 has received one LSA Type 5 from the ASBR

D.

Area 1 has 23 routes

Question 2

Examine the network exhibit.

A network administrator is implementing OSPF on a VSX pair of aggregation switches: Agg1 and Agg2. VLANs 10 and 20 are connected to layer-2 access switches. Agg-1 and Agg-2 are configured as the default gateway for VLANs 10 and 20, with active gateway enabled.

What is the best practice for configuring OSPF on the aggregation switches and their connection to the Core switch?

Options:

A.

Define a layer-2 VSX LAG associated with a layer-3 VLAN interface. Enable active gateway for the Layer-3 VLAN.

B.

Define separate layer-3 VLAN interfaces between the aggregation and core switches. Enable active forwarding for the Layer-3 VLAN.

C.

Define separate layer-3 VLAN interfaces between the aggregation and core switches. Enable active gateway for the Layer-3 VLAN.

D.

Define a layer-2 VSX LAG associated with a layer-3 VLAN interface. Enable active forwarding for the Layer-3 VLAN.

Question 3

A network engineer is having a problem adding a custom-written script to an AOS-CX switch’s NAE GUI. The script was written in Python and was successfully added on other AOS-CX switches. The engineer examines the following items from the CLI of the switch:

What should the engineer perform to fix this issue?

Options:

A.

Install the script’s signature before installing the new script

B.

Ensure the engineer’s desktop and the AOS-CX switch are synchronized to the same NTP server

C.

Enable trust settings for the AOS-CX switch’s SSL certificate

D.

Remove a script that is no longer used before installing the new script

Question 4

Examine the following AOS-CX switch configuration:

Which statement correctly describes what is allowed for traffic entering interface 1/1/3?

Options:

A.

IP traffic from 10.1.11.0/24 is allowed to access 10.1.110.0/24

B.

IP traffic from 10.0.11.0/24 is allowed to access 10.1.12.0/24

C.

Traffic from 10.0.12.0/24 will generate a log record when accessing 10.0.11.0/24

D.

IP traffic from 10.1.12.0/24 is allowed to access 172.0.1.0/23

Question 5

What is a best practice concerning voice traffic and dynamic segmentation on AOS-CX switches?

Options:

A.

Controller authentication and user-based tunneling of the voice traffic

B.

Switch authentication and user-based tunneling of the voice traffic

C.

Controller authentication and port-based tunneling of the voice traffic

D.

Switch authentication and local forwarding of the voice traffic

Question 6

An administrator is designing an access layer solution in a data center. A key requirement is to dual-home mission-critical server connections to two different switches, ensuring that the servers always have network access, even during switch software upgrades. This feature should support strictly-controlled provisioning.

What would best meet the administrator's needs when deploying AOS-CX switches?

Options:

A.

VSF

B.

Dynamic segmentation

C.

VSX

D.

NAE

Question 7

How does an administrator install a script and create an agent and actions for the Network Analysis Engine running on AOS-CX switches?

Options:

A.

Access the switches' command-line interface.

B.

Access the switches' web user interface

C.

Use Aruba Central's web user interface

D.

Use the NetEdit web user interface

Question 8

A company is implementing AOS-CX switches at the access layer. The company wants to implement access control for employees and guests.

Which security features will require a ClearPass server to be installed and used by the company?

Options:

A.

Downloadable user roles

B.

Dynamic segmentation

C.

User-based tunneling (UBT)

D.

Change of authorization (CoA)

Question 9

An administrator wants to implement dynamic segmentation policies. The network consists of AOS-CX and Aruba gateways.

Which type of forwarding should the administrator implement for users that already connect via wireless, but will also be connecting on Ethernet switch ports?

Options:

A.

User-based tunneling (UBT)

B.

Port-based tunneling (PBT)

C.

Switch-to-switch tunneling (SST)

D.

Local switching

Question 10

Which protocols are used by NetEdit to interact with third-party devices? (Choose two.)

Options:

A.

telnet

B.

SNMP

C.

SSH

D.

Restful API

E.

CDP

Question 11

What is correct regarding the operation of VSX and multicasting with PIM-SM routing configured?

Options:

A.

Each VSX peers runs PIM and builds its own group database. One of the VSX peers is elected as the

designated router (DR) to forward multicast streams to a receiver VLAN

B.

Each VSX peers runs PIM and creates a shared group database. Both VSX peers can forward multicast

streams to receivers in a VLAN, achieving load sharing

C.

Each VSX peers runs PIM and builds its own group database. Both VSX peers can forward multicast

streams to receivers in a VLAN, achieving load sharing

D.

Each VSX peers runs PIM and creates a shared group database. One of the VSX peers is elected as the

designated router (DR) to forward multicast streams to a receiver VLAN

Question 12

Examine the network exhibit:

The ACL configuration defined on Core-1 is as follows:

If telnet was being used, which device connection would be permitted and functional in both directions?

(Choose two.)

Options:

A.

Client 3 to Client 2

B.

Client 1 to Client 2

C.

Server 2 to Client 2

D.

Server 1 to Client 1

E.

Client 1 to Client 3

Question 13

What is correct regarding the tunneling of user traffic between AOS-CX switches and Aruba Mobility

Controllers (MCs)?

Options:

A.

Uses IPSec to protect the management and data traffic

B.

Uses IPSec to protect the management traffic

C.

Supports only port-based tunneling

D.

Uses the same management protocol as Aruba APs

Question 14

A network has two AOS-CX switches connected to two different service providers. The administrator is

concerned about bandwidth consumption on the service provider links and learned that the service providers were using the company as a transit AS.

Which feature should the administrator implement to prevent this situation?

Options:

A.

Configure route maps and apply them to BGP

B.

Configure the two switches as route reflectors

C.

Configure a classifier policy to disable MED

D.

Configure bi-directional forwarding detection on both switches

Question 15

Which concept is implemented using Aruba’s dynamic segmentation?

Options:

A.

Root of trust

B.

Device fingerprinting

C.

Zero Touch Provisioning

D.

Colorless port

Question 16

Examine the network exhibit.

A company has a guest implementation for wireless and wired access. Wireless access is implemented

through a third-party vendor. The company is concerned about wired guest traffic traversing the same network as the employee traffic. The network administrator has established a GRE tunnel between AOS-CX switches where guests are connected to a routing switch in the DMZ.

Which feature should the administrator implement to ensure that the guest traffic is tunneled to the DMZ while the employee traffic is forwarded using OSPF?

Options:

A.

OSPF route maps using the “set metric” command

B.

Policy-based routing (PBR)

C.

User-based tunneling (UBT)

D.

Classifier policies

Question 17

An administrator has configured the following on an AOS-CX switch:

What is the correct ACL rule configuration that would allow traffic from anywhere to reach the web ports on the

two specified servers?

Options:

A.

access-list ip server 10 permit tcp any web-servers group web-ports

B.

access-list ip server 10 permit tcp any object-group web-servers object-group web-ports

C.

access-list ip server 10 permit tcp any group web-servers group web-ports

D.

access-list ip server 10 permit tcp any web-servers web-ports

Question 18

Examine the configuration performed on newly deployed AOS-CX switches:

After performing this configuration, the administrator notices that the switch ports always remain in the EAP start state. What should the administrator do to fix this problem?

Options:

A.

Define the server group cppm

B.

Set the ports to client-mode

C.

Create and assign a local user role to the ports

D.

Enable change of authorization (CoA)

Question 19

An administrator wants to leverage always-on PoE on AOS-CX switches. Which statement is correct regarding this feature?

Options:

A.

Provides up to 60W of power per port

B.

Supports all AOS-CX switches

C.

Provides surge protection for PoE and non-PoE ports

D.

Requires NetEdit to implement

Question 20

Examine the attached exhibit.

The network administrators is trying to add a remote location as area 3 to the network shown in the diagram.

Based on current connection restrictions, the administrator cannot connect area 3 directly to area 0. The

network is using AOS-CX switches.

Which feature should the administrator implement to provide connectivity to the remote location?

Options:

A.

Not-so-stubby areas

B.

Bidirectional forward detection (BFD)

C.

OSPFv3

D.

Virtual links

Question 21

A network administrator wants to centralize the management of AOS-CX switches by implementing NetEdit.

How should the administrator purchase and/or install the NetEdit solution?

Options:

A.

Install as a hardware appliance

B.

Installed on a supported version of RedHat Enterprise Linux

C.

Installed in a virtualized solution by using the Aruba-supplied OVA file

D.

Installed on a supported version of Debian Linux

Question 22

An administrator is managing a network comprised of AOS-CX switches deployed at the aggregation layer. The switches are paired in a VSX stack and run the OSPF routing protocol. The administrator is concerned about how long it takes for OSPF to converge when one of the VSX switches has to reboot.

What should the administrator to do speed up the OSPF convergence of the switch that is rebooting?

Options:

A.

Change the VSXISL link from an OSPF broadcast link point-to-point.

B.

Implement graceful restart on the VSX switches and their neighboring OSPF switches.

C.

Decrease the VSX initial synchronization timer on the two VSX switches.

D.

Define non-backbone areas on the VSX switches as totally stubby areas.

Question 23

A switch will apply a device profile to a port based on which pieces of information? (Select two.)

Options:

A.

IP header

B.

MAC address

C.

LLDP

D.

User role

E.

802.1Q

Question 24

A company requires access by all users, guests, and employees to be authenticated. Employees will be

authenticated using 802.1X, whereas guests will be authenticated using captive portal. Which type of

authentication must be configured on an AOS-CX switch ports where both guests and employees connect?

Options:

A.

Both 802.1X and captive portal

B.

802.1X only

C.

Both 802.1X and MAC-Auth

D.

802.1X, captive portal, and MAC-Auth

Question 25

A customer has twenty AOS-CX switches that will be managed by NetEdit and would like support for NetEdit these switches will exist in the network for at least five years.

Which type of licensing should be used by this customer?

Options:

A.

20 Aruba NetEdit permanent licenses

B.

20 Aruba NetEdit single node subscription licenses

C.

25 Aruba NetEdit permanent licenses

D.

1 Aruba NetEdit SMB License

Question 26

An administrate is managing a VSX pair of AOS-CX switches. The administrator configures the following on the secondary switch:

secondary (config)# vlan 100

secondary (conflg. vlan-100) # description BBB

Currently VLAN 100 does not exist on the primary switch. The administrator then accesses the primary switch and configures the following:

Primary(config) vlan 100 primary(config-v1an-100) # description AAA

What Is correct regarding the results of this configuration?

Options:

A.

Each switch will have a different description defined.

B.

Both switches will have a description of "AAA".

C.

Both switches will have a description of "BBS".

D.

An error Is displayed on the primary switch regarding a mismatched parameter.

Question 27

MAC authentication is enabled on port 1/1/27 of an AOS-CX switch. The following MAC addresses are defined on the AAA server:

* 88:3a:30:97:b6:00

* 00:50:56:b1:fc:9b

Examine the AOS-CX switch output:

Based on this information, what is true concerning port 1/1/27?

Options:

A.

Device-mode is enabled with a client limit of 1.

B.

Device-mode is enabled with a client limit of 2.

C.

Client-mode is enabled with a client limit of 1.

D.

Client-mode is enabled with a client limit of 2.

Question 28

Examine the network topology.

Company XYZ has two connections to a service provider (ISP1). Here is the configuration of Router1:

Here is the configuration of Router2:

Based on configuration of Router1 and Router2, which BGP metric is being manipulated?

Options:

A.

Weight

B.

Multiple exit discriminator

C.

Local preference

D.

AS path length

Question 29

When cutting and pasting configurations into NetEdit, which character is used to enter commands within the context of the previous command?

Options:

A.

<ESC>

B.

">"

C.

Space

D.

Tab

Question 30

What is the correct way of associating a VRF instance to either a VLAN or an interface?

Options:

A.

Switch(config)# interface

Switch(config-if)# vlan access vrf attach

B.

Switch(config)# vlan vrf attach < vrf-name >

C.

Switch(config)# vlan

Switch(config-vlan-# vrf attach < vrf-name >

D.

Switch(config)# vlan vrf < vrf-name >

Question 31

Which AOS-CX switches support weighted fair queuing (WFQ)?

Options:

A.

Both 8320 and 8325

B.

Both 6300 and 6400

C.

8400 only

D.

6300 only

Question 32

Which AOS-CX feature is used to prevent head-on-line (HOL) blocking?

Options:

A.

VSF

B.

WFQ

C.

VOQ

D.

VSX

Question 33

Which protocol should be configured to allow NetEdit to discover third-party devices?

Options:

A.

SNMP

B.

SSH

C.

HTTPS

D.

HTTP

Question 34

An administrator will be replacing a campus switching infrastructure with AOS-CX switches that support VSX capabilities. The campus involves a core, as well as multiple access layers. Which feature should the

administrator implement to allow both VSX-capable core switches to process traffic sent to the default gateway in the campus VLANs?

Options:

A.

VRF

B.

VRRP

C.

IP helper

D.

Active gateway

Question 35

How is NetEdit installed at a customer location?

Options:

A.

Via an Aruba NetEdit hardware appliance

B.

Via a DVD using a virtualized platform like Microsoft’s Hyper-V

C.

Via the Aruba Central cloud solution

D.

Via an OVA file and a virtualized platform like VMware’s ESXi

Question 36

A company has implemented 802.1X authentication on AOS-CX access switches, where two ClearPass

servers are used to implement AAA. Each switch has the two servers defined. A network engineer notices the following command configured on the AOS-CX switches:

radius-server tracking user-name monitor password plaintext aruba123

What is the purpose of this configuration?

Options:

A.

Implement replay protection for AAA messages

B.

Define the account to implement downloadable user roles

C.

Speed up the AAA authentication process

D.

Define the account to implement change of authorization

Question 37

Examine the VSX-related configuration of the core layer AOS-CX switch:

A network administrator is troubleshooting a connectivity issue involving the VSX LAG (link aggregation) between the core and access layer switch, during HW replacement of one of the core switches.

Which configuration should the administrator add to the core switch to fix this issue?

Options:

A.

ICX-Tx-Core1(config)# vsx

ICX-Tx-Core1(config-vsx)# system-mac 02:01:00:00:01:00

B.

ICX-Tx-Core1(config)# interface lag 1 multi-chassis

ICX-Tx-Core1(config-if-lag-if)# mtu 9198

C.

ICX-Tx-Core1(config)# interface 1/1/46-1/1/47

ICX-Tx-Core1(config-if-vlan)# active-gateway ip 10.1.11.1 mac 02:02:00:00:01:00

D.

ICX-Tx-Core1(config)# interface 1/1/45

ICX-Tx-Core1(config-if-vlan)# active-gateway ip 192.168.0.0 mac 02:02:00:00:01:00

Question 38

An administrator is managing a pair of core AOS-CX switches configured for VSX. Connected to this core are pairs of aggregation layer AOS-CX switches configured for VSX. OSPF is running between the aggregation and core layers. To speed up OSPF convergence, the administrator has configured BFD between the core and aggregation switches.

What is a best practice the administrator should implement to reduce CPU processing on the switches if a BFD neighbor fails?

Options:

A.

Disable ICMP redirects

B.

Implement graceful restart

C.

Increase the BFD echo timers

D.

Increase the VSX keepalive timer

Demo: 38 questions
Total 127 questions