Weekend Sale - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

Refer to the exhibit.

Based on the Enforcement Policy configuration shown, when a user with Role Remote Worker connects to the network and the posture token assigned is quarantine, which Enforcement Profile will be applied?

A.

RestrictedACL

B.

Remote Employee ACL

C.

[Deny Access Profile]

D.

EMPLOYEE_VLAN

E.

HR VLAN

Refer to the exhibit.

Based on the Aruba TACACS+ dictionary shown, how is the Aruba-Role attribute used?

A.

The Aruba-Admin-Role on the controller is applies to users using TACACS+ to login to the Policy Manager

B.

To assign different privileges to clients during 802.1X authentication

C.

To assign different privileges to administrators logging into an Aruba NAD

D.

It is used by ClearPass to assign TIPS roles to clients during 802.1X authentication

E.

To assign different privileges to administrators logging into ClearPass

An administrator enabled the Pre-auth check for their guest self-registration.

At what stage in the registration process in this check performed?

A.

after the user clicks the login button and after the NAD sends an authentication request

B.

after the user self-registers but before the user logs in

C.

after the user clicks the login button but before the NAD sends an authentication request

D.

when a user is re-authenticating to the network

E.

before the user self-registers

Refer to the exhibit.

Based on the Posture Policy configuration shown, above, which statement is true?

A.

This Posture Policy can only be applied to an 802.1x wired service not 802.1x wireless.

B.

This Posture Policy checks the health status of devices running Windows, Linux and Mac OS X.

C.

This Posture Policy can use either the persistent or dissolvable Onguard agent to obtain the statement of health.

D.

This Posture Policy checks for presence of a firewall application in Windows devices.

E.

This Posture Policy checks with a Windows NPS server for posture tokens.

An employee provisions a personal smart phone using the Onboard process. In addition, the employee has a corporate laptop provided by IT that connects to the secure network.

How many licenses does the employee consume?

A.

1 Policy Manager license, 2 Guest Licenses

B.

2 Policy Manager licenses, 1 Onboard License

C.

1 Policy Manager license, 1 Onboard License

D.

1 Policy Manager license, 1 Guest License

E.

2 Policy Manager licenses, 2 Onboard Licenses

Refer to the exhibit.

Based on the configuration of the Enforcement Profiles in the Onboard Authorization service shown, which Onboarding action will occur?

A.

The device will be disconnected from the network after Onboarding so that an EAP-TLS authentication is not performed.

B.

The device will be disconnected from and reconnected to the network after Onboarding is completed.

C.

The device’s onboard authorization request will be denied.

D.

The device will be disconnected after post-Onboarding EAP-TLS authentication, so a second EAP-TLS authentication is performed.

E.

After logging in on the Onboard web login page, the device will be disconnected form and reconnected to the network before Onboard begins.

Refer to the exhibit.

Which statement accurately reflects the status of the Policy Simulation test figure shown?

A.

The test verifies that a client with username test1 can authenticate using EAP-PEAP.

B.

Role mapping simulation verifies if the remote lab AD has the ClearPass server certificate.

C.

Role mapping simulation verifies that the client certificate is valid during EAP-TLS authentication.

D.

The simulation test result shows the firewall roles assigned to the client by the Aruba Controller.

E.

The roles assigned in the results tab are based on rules matched in the AD Role Mapping Policy.

Refer to the exhibit.

An AD user’s department attribute is configured as “HR”. The user connects on Monday using an Android phone to an Aruba Controller that belongs to the Device Group Remote NAD.

Which roles are assigned to the user in ClearPass? (Select two.)

A.

Executive

B.

iOS Device

C.

Vendor

D.

Remote Employee

E.

HR Local

Which authorization servers are supported by ClearPass? (Select two.)

A.

Aruba Controller

B.

LDAP server

C.

Cisco Controller

D.

Active Directory

E.

Aruba Mobility Access Switch

What is a benefit of ClearPass Onguard?

A.

It enables organizations to run advanced endpoint posture assessments.

B.

It allows a receptionist in a hotel to create accounts for guest users.

C.

It allows employees to self-provision their personal devices on the corporate network.

D.

It offers an easy way for users to self-configure their devices to support 802.1X authentication on wired and wireless networks.

E.

It allows employees to create temporary accounts for Wi-Fi access.