HPE6-A73 Practice Test Questions Answers Updated 124 Questions [Q43-Q64]

Share

HPE6-A73 Practice Test Questions Answers Updated 124 Questions

HPE6-A73 dumps & Aruba Certified Switching Professional (ACSP) V1 Sure Practice with 124 Questions

NEW QUESTION # 43
Examine the following AOS-CX switch configuration:

Which statement correctly describes what is allowed for traffic entering interface 1/1/3?

  • A. Traffic from 10.0.12.0/24 will generate a log record when accessing 10.0.11.0/24
  • B. IP traffic from 10.1.11.0/24 is allowed to access 10.1.110.0/24
  • C. IP traffic from 10.0.11.0/24 is allowed to access 10.1.12.0/24
  • D. IP traffic from 10.1.12.0/24 is allowed to access 172.0.1.0/23

Answer: A


NEW QUESTION # 44
A network administrator is attempting to troubleshoot a connectivity issue between a group of users and a particular server. The administrator needs to examine the packets over a period of time from their desktop; however, the administrator is not directly connected to the AOS-CX switch involved with the traffic flow.
What is correct regarding the ERSPAN session that needs to be established on an AOS-CX switch?
(Choosetwo.)

  • A. The encapsulation protocol used is VXLAN
  • B. The encapsulation protocol is UDP
  • C. On the source AOS-CX switch, the destination specified is the switch to which the administrator's desktop is connected
  • D. On the source AOS-CX switch, the destination specified is the administrator's desktop
  • E. The encapsulation protocol used is GRE

Answer: D,E


NEW QUESTION # 45
A company requires access by all users, guests, and employees to be authenticated. Employees will be authenticated using 802.1X, whereas guests will be authenticated using captive portal. Which type of authentication must be configured on an AOS-CX switch ports where both guests and employees connect?

  • A. 802.1X, captive portal, and MAC-Auth
  • B. Both 802.1X and captive portal
  • C. Both 802.1X and MAC-Auth
  • D. 802.1X only

Answer: C


NEW QUESTION # 46
An administrator has configured the following on an AOS-CX switch:

What is the correct ACL rule configuration that would allow traffic from anywhere to reach the web ports on the two specified servers?

  • A. access-list ip server 10 permit tcp any group web-servers group web-ports
  • B. access-list ip server 10 permit tcp any web-servers group web-ports
  • C. access-list ip server 10 permit tcp any web-servers web-ports
  • D. access-list ip server 10 permit tcp any object-group web-servers object-group web-ports

Answer: B


NEW QUESTION # 47
An administrator is designing an access layer solution in a data center. A key requirement is to dual-home mission-critical server connections to two different switches, ensuring that the servers always have network access, even during switch software upgrades. This feature should support strictly-controlled provisioning.
What would best meet the administrator's needs when deploying AOS-CX switches?

  • A. NAE
  • B. Dynamic segmentation
  • C. VSF
  • D. VSX

Answer: D


NEW QUESTION # 48
A company has just purchased AOS-CX switches. The company has a free and open-source AAA solution.
The company wants to implement access control on the Ethernet ports of the AOS-CX switches.
Which security features can the company implement given the equipment that they are using?

  • A. Downloadable user roles
  • B. Device fingerprinting
  • C. Port-based tunneling
  • D. Local user roles

Answer: A


NEW QUESTION # 49
A network administrator is implementing NAE on AOS-CX switches. When attempting to create an agent on a particular switch, the agent appears in the NAE Agents panel with a red triangle error symbol and a status of
"Unknown".
What is the cause of this issue?

  • A. The RESTful API has not been enabled on the AOS-CX switch
  • B. The administrator does not have the appropriate credentials to interact with NAE
  • C. A connectivity issue exists between NAE and the AOS-CX switch
  • D. The number of scripts or agents has exceeded the hardware's capabilities

Answer: C

Explanation:
Explanation


NEW QUESTION # 50
How does PIM build the IP multicast routing table to route traffic between a multicast source and one or more receivers?

  • A. It uses the Bellman-Ford algorithm derived from distance vector protocols
  • B. It uses IGMP and calculates a shortest path tree (SPT)
  • C. It uses the unicast routing table and reverse path forwarding (RPF)
  • D. It uses the shortest path first (SPF) algorithm derived from link state protocols

Answer: C


NEW QUESTION # 51
An administrator is implementing a multicast solution in a multi-VLAN network. Which statement is true about the configuration of the switches in the network?

  • A. IGMP must be enabled on all routed interfaces where multicast traffic will traverse
  • B. IGMP requires join and leave messages to graft and prune multicast streams between switches
  • C. IGMP must be enabled on all interfaces where multicast sources and receivers are connected
  • D. IGMP snooping must be enabled on all interfaces on a switch to intelligently forward traffic

Answer: B


NEW QUESTION # 52
A network has two AOS-CX switches connected to two different service providers The administrator is concerned about bandwidth consumption on the service provider links and learned that the service providers were using the company as a transit AS.
Which feature should the administrator implement to prevent this situation?

  • A. Configure bi-directional forwarding detection on both switches.
  • B. Configure the two switches as route reflectors.
  • C. Configure a classifier policy to disable MED.
  • D. Configure route maps and apply them to BGP

Answer: D


NEW QUESTION # 53
An administrator has an AOS-CX switch configured with:

Based on the above configuration, how many OSPF routes will routing switches see in Area 1?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B


NEW QUESTION # 54
A company requires access by all users guests, and employees to be authenticated Employees will be authenticated using 802 1X. whereas guests will be authenticated using captive portal Which type of authentication must be configured on an AOS-CX switch ports where both guests and employees connect?

  • A. 802.1X, captive portal, and MAC-Auth
  • B. Both 802.1X and captive portal
  • C. 802 1X only
  • D. Both 802 1X and MAC-Auth

Answer: D


NEW QUESTION # 55
Which statement is correct regarding ACLs and TCAM usage?

  • A. Compression is automatically enabled for ASIC TCAMs on AOS-CX switches.
  • B. Applying an ACL to a group of VLANs consumes the same resources as specific ACE entries
  • C. Applying an ACL to a group of ports consumes the same resources as specific ACE entries
  • D. Using object groups consumes the same resources as specific ACE entries.

Answer: C


NEW QUESTION # 56
A network engineer for a company with 896 users across a multi-building campus wants to gather statistics on an important switch uplink and create actions based on issues that occur on the uplink. How often does an NAE agent gather information from the current state database in regard to the uplink interfaces?

  • A. Once every 60 seconds
  • B. Once every 1 second
  • C. Once every 5 seconds
  • D. Once every 30 seconds

Answer: A


NEW QUESTION # 57
Examine the network exhibit.

A company has a guest implementation for wireless and wired access. Wireless access is implemented through a third-party vendor. The company is concerned about wired guest traffic traversing the same network as the employee traffic. The network administrator has established a GRE tunnel between AOS-CX switches where guests are connected to a routing switch in the DMZ.
Which feature should the administrator implement to ensure that the guest traffic is tunneled to the DMZ while the employee traffic is forwarded using OSPF?

  • A. Classifier policies
  • B. Policy-based routing (PBR)
  • C. User-based tunneling (UBT)
  • D. OSPF route maps using the "set metric" command

Answer: C


NEW QUESTION # 58
What would prevent two OSPF routers from forming an adjacency? (Select two.)

  • A. Different priorities
  • B. Different IP addresses
  • C. Different router IDs
  • D. Different area types
  • E. Different MTU sizes

Answer: A,B


NEW QUESTION # 59
An administrator will be deploying NetEdit to manage an Aruba solution. What does NetEdit support?

  • A. Tracks configuration and hardware information
  • B. Manages AOS-CX switches and Aruba gateways
  • C. Can be purchased as a VM and/or hardware appliance
  • D. Support for Aruba-supplied security updates

Answer: B


NEW QUESTION # 60
An administrator is defining a VSX LAG on a pair of AOS-CX switches that are defined as primary and secondary. The VSX LAG fails to establish successfully with a remote switch; however, after verification, the remote switch is configured correctly. The administrator narrows down the problem to the configuration on the AOS-CX switches.
What would cause this problem?

  • A. The VSX LAG hash does not match the remote peer
  • B. LACP was enabled in active mode on the VSX LAG
  • C. The VSX LAG interfaces are in layer-3 mode
  • D. Local optimization was not enabled on the VSX LAG

Answer: A


NEW QUESTION # 61
A company has implemented 802.1X authentication on AOS-CX access switches, where two ClearPass servers are used to implement AAA. Each switch has the two servers defined. A network engineer notices the following command configured on the AOS-CX switches:
radius-server tracking user-name monitor password plaintext aruba123
What is the purpose of this configuration?

  • A. Define the account to implement change of authorization
  • B. Speed up the AAA authentication process
  • C. Implement replay protection for AAA messages
  • D. Define the account to implement downloadable user roles

Answer: A

Explanation:
Explanation
https://techhub.hpe.com/eginfolib/networking/docs/switches/K-KA-KB/16-01/5200-
0122_access_security_guide/content/ch09s02.html


NEW QUESTION # 62
Examine the configuration performed on newly deployed AOS-CX switches:

After performing this configuration, the administrator notices that the switch ports always remain in the EAP start state. What should the administrator do to fix this problem?

  • A. Enable change of authorization (CoA)
  • B. Set the ports to client-mode
  • C. Define the server group cppm
  • D. Create and assign a local user role to the ports

Answer: C

Explanation:
https://community.arubanetworks.com/blogs/esupport1/2020/04/29/downloadable-user-role-configuration-in-aruba-os-cx-with-mac-authentication


NEW QUESTION # 63
An administrator wants to use an existing Aruba gateway's firewall policies to filter both wireless and wired traffic. Which AOS-CX switch feature should a customer implement to ensure the gateway applies the same or similar firewall policies to users' wired and wireless traffic?

  • A. User-based tunneling
  • B. GRE tunneling
  • C. Port-based tunneling
  • D. IPSec tunneling

Answer: B


NEW QUESTION # 64
......

New HPE6-A73 Exam Questions| Real HPE6-A73 Dumps: https://pass4itsure.passleadervce.com/Aruba-Certified-Switching-Professional-ACSP-V1/reliable-HPE6-A73-exam-learning-guide.html