The interface is configured on an HPE Aruba Networking CX 8320 for a VMware server NIC. The server admin complains that the VMware vMotion traffic on VLAN 3903 fails, but the server can ping other peers with a large payload size. What must be done to correct the issue based on the provided interface status and configuration?
AThe VLAN 3903 is configured with mtu 9198
BThe interface 1/1/35 is configured with mtu 9198
CThe VLAN 3903 is configured with jumbo
DThat interface 1/1/35 is configured with jumbo
Your company needs to run BGP in a multi-homed configuration to two ISPs, advertising a block of public address space you own. Which AS number would be an example of a suitable number?
A65535
B64813
C63473
D65218
Your customer’s CISO would like to deploy colorless ports across the network. Which will you need to configure to meet this requirement?
APort-security
BMAC Auth
CSticky MAC
DVirtual MAC
You have applied the following OSPG configuration but are seeing the output from the command below. What is the reason for this?
AOSPF interfaces are passive by default.
BA Layer-3 interface has not been associated with a VRF.
CA different OSPF process ID is used on each switch.
DA loopback interface hasn’t been configured on Agg-2.
Refer to the output:
Which CLI command was used to produce this output?
AUse checkpoint diff to compare running-config with stored checkpoints.
BUse show checkpoint compare to compare running-config with stored saved-config revisions.
CUse show checkpoint diff to compare running-config with stored checkpoints.
DUse checkpoint compare to compare running-config with stored saved-config revisions.
You are helping another engineer troubleshoot a new downloadable user role configuration between your CX switches and ClearPass.
Which configuration on the switch should you verify?
AHTTPS client certificate
BREST API credentials
CSNMP community string
DUser-role configuration
Refer to the partial exhibit from an HPE Aruba Networking CX 8325:
If a new CX 8325 is to be deployed, which switch profile should be used to provide gateway and routing services?
AThe L3-agg profile should be selected instead of the factory default.
BSpine profile should be selected instead of the factory default.
CL3-core profile should be used, which is the factory default.
DLeaf profiled should be used, which is the factory default.
You need to quickly verify whether a server is responding to a connection request from a client device. What is the best way to capture these packets on a CX switch?
AConfigure a mirror session using ERSPAN to a computer running Wreshark.
BConfigure a mirror session with another port on the switch as the destination.
CInspect the summary of the packets in real time on the switch using tcpdump.
DConfigure a mirror session to the CPU, use tshark to capture to a PCAP file.
You are remotely connected to an HPE Aruba Networking CX 6200M switch using SSH to change the Control Plane ACL, allowing only defined subnets to access the switch with the assistance of the checkpoint auto 10 command. Later in the day, you are testing if the control-plane ACL is working, and you notice that access is allowed from all networks.
What needs to be done with the checkpoint feature to have the remaining without rolling back?
AUse the checkpoint commit command before you commit the change.
BUse the checkpoint commit after you commit the change.
CUse the checkpoint auto command after you commit the change.
DUse the checkpoint auto command before you commit the change.
Refer to the exhibit for an HPE Aruba Networking CX 6300M VSF:
If Member ID 1 fails, what would be the state of Member ID 2?
AConductor
BStandby
CNot present
DMember
An HPE Aruba Networking CX switch is managed in HPE Aruba Networking Central. If you need to validate configuration changes in the switch’s Global view, what information can you get using the Audit trail?
AThe configuration changes history is up to 7 years.
BThe configuration difference that was pushed to the device.
CThe method used to create the configuration (template, multi-edit, or GUI).
DThe username of the person who pushed the configuration.
An Aruba CX8100 VSX has the following state for LACP:
What can be observed based on the output?
AThe local lag253 configuration is set as a custom
BThe peer lag253 needs to have a valid AGGR key
CThe local lag253 configuration is set as default
DThe local lag27 would need to have individual AGGR key
You have applied the following OSPF configuration but are not seeing any output from the command below. What is the reason for this?
AA loopback interface hasn’t been configured on Agg-2.
BA VRF wasn’t specified in the show command.
COSPF interfaces are passive by default.
DA different OSPF process ID is used on each switch.
Which statement is valid when enabling ARP protection features on an HPE Aruba Networking CX switch?
ADHCP server utilization is required for IP to Mac binding to enable ARP protection.
BClient lease time on the DHCP server should be at least 3600s before enabling ARP protection.
COnce you enable DHCP snooping, you can enable ARP protection, and you will have full information to mitigate security risks.
DConfiguring IP to MAC address bindings allows ARP protection for networks without a DHCP server.
Which switch configuration is required to implement Dynamic User Roles (DUR)?
AInstall the CPPM HTTPS certificates root certificate.
BConfigure the http://.well-known/aruba/clearpass/https-root.pem URL.
CInstall the CPPM internal CA self-signed certificate.
DInstall the TA cert of the CPPM RADIUS certificate.
Your customer’s CISO would like to deploy colorless ports across the network. Which will you need to configure to meet this requirement?
AActive gateway
BDownloadable User Roles
CVirtual active forwarding
DDownloadable fingerprints
You have configured UBT on your CX switches, but how HTTPS-enabled websites will not load, which you suspect is due to the packet size. To resolve the issue, what should you configure on each device with tunneled traffic?
APath MTU discovery
BFragment reassembly
CIP fragmentation
DJumbo frames
You have configured BFD for OSPF on a CX switch and have noticed the BFD session stays down but the OSPF neighbor state is up. What could explain this behavior?
AThe remote switch does not support BFD.
BBFD is not supported on OSPF broadcast links, so OSPF ignores the config.
CBFD has not been enabled at the global configuration level.
DThe local switch uses OSPFv3, but the remote switch uses OSPFv2.
DRAG DROP -
Match where the configuration for loop-protection is defined on an Aruba CX switch. Options may be used more than once.
TAC has made a configuration change on the CLI of a CX switch using aruba-central support-mode. Which statement about the switch configuration in HPE Aruba Networking Central is true?
AThe user must make the same change in HPE Aruba Networking Central for synchronization to occur.
BHPE Aruba Networking Central will automatically overwrite the configuration change.
CThe configuration change will be automatically synchronized to HPE Aruba Networking Central.
DConfig auto-commit will be disabled and must be re-enabled manually.
What are valid NAE agent actions? (Choose two.)
AGenerate an SNMP trap.
BSet critical alarm level.
CStart/stop a packet capture.
DCreate a new TAC case.
ELog to a remote syslog server.
How would the route type affect the configuration if an OSPF configuration has several external routers?
AIf you have a primary exit with a secondary backup, you must choose E1, the primary with a lower default metric than the secondary.
BIf you want to consider internal and external costs equally, use E2 routes.
CIf you want to leverage all paths to destinations, use E2 with the same default metric.
DIf you want to use the closet exit point, use E2 with appropriate seed metric.
DRAG DROP -
Match each REST API method to the correct description.
After configuring NTP and the time zone on your switch and configuring a matching time zone in your browser, you notice an error message in the NAE dashboard saying, “Switch time and browser time are not in sync.”
What should you do to resolve the issue? (Choose two.)
AUse iburst on your switch NTP configuration
BClear NAE data from the switch CLI.
CConfigure NTP sync on your browser.
DClear the web client browser cache.
EDisable NTP from the switch CLI.
Refer to the exhibit for an HPE Aruba Networking CX 6300M VSF:
What is required on the VSF configuration for the stack configuration to work if either member fails?