QuestionQ1
Secure wired AOS-CXAn AOS-CX switch running AOS 10.07 has the following configuration:
class ip all
10 match any any any
class ipv6 all
10 match any any any
port-access policy policy1
10 class ip all action drop
20 class ipv6 all action drop
port-access role role1
associate policy policy1
port-access role role2
vlan access 19 $
The company wants to place clients whose authentication times out—either at the client end or because the RADIUS server does not respond—into VLAN 19. The company wants to continue denying access to clients that fail authentication.
Which roles should be configured on edge ports?
QuestionQ2
Secure wired AOS-CXA company uses HPE Aruba Networking APs and AOS-CX switches. The APs bridge wireless traffic and obtain DHCP IP addresses on VLAN 18. Wireless users are placed on VLAN 12. The company plans to begin using 802.1X authentication for the APs.
You are configuring the port-access role assigned to the APs after authentication. What is one recommended setting for this role?
Community Discussion
QuestionQ3
Threat detectionA company uses HPE Aruba Networking gateways that implement gateway IDS/IPS. Administrators occasionally review the Security Dashboard, but they want a quicker way to learn when a gateway begins detecting threats in traffic.
What should they do?
Community Discussion
QuestionQ4
Secure WLANYour company intends to implement Tunneled EAP (TEAP).
How can you configure HPE Aruba Networking ClearPass Policy Manager (CPPM) to enforce certificate-based authentication for clients that use TEAP?
Community Discussion
QuestionQ5
Endpoint classificationA company uses both HPE Aruba Networking ClearPass Manager (CPPM) and HPE Aruba Networking ClearPass Device Insight (CPDI).
What is one way that integration between the two solutions can help the company implement Zero Trust Security?

Community Discussion