2021 Updated Verified Pass HPE6-A79 Exam - Real Questions & Answers [Q21-Q43]

Share

2021 Updated Verified Pass HPE6-A79 Exam - Real Questions & Answers

Dumps Moneyack Guarantee - HPE6-A79 Dumps Approved Dumps


HP HPE6-A79 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Configure and validate a WLAN to support voice and video optimization
  • Analyze an entire WLAN infrastructure to determine the architectural requirements
Topic 2
  • Troubleshoot client connectivity and network access
  • Validate client connectivity to a secure WLAN
Topic 3
  • Use AirWave and a Mobility Master to gather information about client health
  • Configure role derivation and integrate with an existing AAA server
Topic 4
  • Configure a guest WLAN and validate client connectivity
  • Configure and validate a multizone solution
  • Create triggers and custom reports in AirWave
Topic 5
  • Configure a WLAN with WPA2/PSK Mac authentication for role derivation
  • Configure and validate a complex multisite high availability mobility environment
Topic 6
  • Analyze customer requirements to determine the need for a multizone deployment
  • Analyze customer requirements to determine roles, firewall policies, and rule requirements
Topic 7
  • Configure and validate IAP-VPN to a controller for remote access
  • Analyze a scenario to determine AirWave scalability requirements
Topic 8
  • Analyze an entire WLAN infrastructure to determine the licensing requirements
  • Analyze customer requirements to determine the need for QoS
Topic 9
  • Configure and validate remote connectivity using RAP or a branch office solution
  • Configure and validate Aruba WLAN solutions
Topic 10
  • Monitor the Spectrum Analyzer dashboard on the Mobility Controller
  • Configure a secure WLAN and integrate it with an existing infrastructure
Topic 11
  • Implement advanced services and security solutions
  • Analyze a scenario to determine remote access requirements
Topic 12
  • Integrate and monitor devices with AirWave
  • Monitor and optimize the RF environment
Topic 13
  • Analyze a complex highly available multi-controller environment to determine mobility requirements
  • Analyze functional requirements to create a solution design and implementation plan

 

NEW QUESTION 21
Refer to the exhibit.


An Aruba network is deployed with L2 and L3 Mobility Master (MM) redundancy across two datacenters, as shown in the exhibit. The network administrator confirms that all Mobility Controllers (MC) are currently communicating with MM1, which is the L2 Active and, L3 Primary.
Which MM IP will MCs communicate with if MM1 fails?

  • A. 10.1.1.12
  • B. 10.1.1.10
  • C. 10.2.1.21
  • D. 10.2.1.10

Answer: D

 

NEW QUESTION 22
Refer to the exhibit.

A network administrator completes the initial configuration dialog of the Mobility Controllers (MCs) and they join the Mobility Master (MM) for the first time. After the MM-MC association process, network administrator only creates AP groups, VAPs, and roles. Next, the network administrator proceeds with the configuration of the policies and creates the policy shown in the exhibit.
Which additional steps must be done to make sure this configuration takes effect over the contractor users?

  • A. Option A
  • B. Option B
  • C. Option C
  • D. Option D

Answer: C

 

NEW QUESTION 23
A network administrator wants to permit explicit SSH, FTP and HHTP(s) access to servers in the 10.100.20.5 to 10.100.20.31 range, all devices in 10.100.21.0/24 network, and a host with IP address 10.100.22.70. The services must work properly at all times.
Which configuration scripts accomplish this task with the fewer number of lines, while avoiding access to other devices not included in these ranges? (Choose two.)

  • A. Option B
  • B. Option C
  • C. Option A
  • D. Option E
  • E. Option D

Answer: A,C

 

NEW QUESTION 24
Users run Skype for Business on wireless clients with no WMM support over an Aruba Mobility Master (MM) - Mobility Controller (MC) based network. When traffic arrives at the wired network, it does not include either L2 or L3 markings.
Which configuration steps should the network administrator take to classify and mark voice and video traffic with UCC heuristics mode?

  • A. Confirm MM is the Openflow controller of MCs and Openflow is enabled in VAP and firewall roles. Enable Skype4Business ALG in UCC profiles.
  • B. Enable WMM in a VAP profile, and explicitly permit voice and video UDP ports in a firewall policy.
  • C. Confirm OpenFlow is enabled in the user role and VAP profile. Then enable WMM in a SSID profile, and explicitly permit voice and video UDP ports in a firewall policy.
  • D. Confirm the MC is the Openflow controller of the MMs and Openflow is enabled in VAP and firewall roles. Enable Skype4Business ALG in UCC profiles.

Answer: B

 

NEW QUESTION 25
Refer to the exhibit.

A network administrator is validating client connectivity and executes the show command shown in the exhibit. Which authentication method was used by a wireless station?

  • A. 802.1X user authentication
  • B. 802.1X machine authentication
  • C. EAP authentication
  • D. MAC authentication

Answer: A

 

NEW QUESTION 26
Refer to the exhibits.
Exhibit 1

Exhibit 2

A network administrator integrates a current Mobility Master (MM) - Mobility Controller (MC) deployment with a RADIUS server to authenticate a wireless user, the network administrator realizes that the client machine is not failing into the it_department role, as shown the exhibits.
Which configuration is required to map the users into the proper role, based on standard attributes returned by the RADIUS server in the Access Accept message?

  • A. aaa server-group Corp-Network
    set role condition Filter-Id equals it_department set-value it-role
  • B. aaa server-group Corp-employee
    set role condition Filter-Id value-of
  • C. aaa server-group Corp-employee
    set role condition Filter-Id equals it-role set-value it_department
  • D. aaa server-group ClearPass
    set role condition Filter-Id equals it_department set-value it-role
  • E. aaa server-group Corp-Network
    set role condition Filter-Id equals it-role set-value it_department

Answer: C

 

NEW QUESTION 27
A network administrator has racked up a 7210 Mobility Controller (MC) that will be terminating 200+ Aps on a medium-size branch office. Next, the technician cabled the appliance with 4SPF+ Direct Attached Cables (DACs) distributed between two-member switching stack and powered it up.
What must the administrator do next in the MCs to assure maximum wired bandwidth utilization?

  • A. Configure the same MSTP region that the switches have.
  • B. Make all ports trunk interfaces and permit data VLANs.
  • C. Disable spanning tree and allocate unique VLANs to each port.
  • D. Manually set 10Gbps speeds on all ports.
  • E. Map the four physical ports to port channel 0.

Answer: D

 

NEW QUESTION 28
An organization wants to deploy a WLAN infrastructure that provides connectivity to these client categories:
* Employees
* Contractors
* Guest users
* Corporate IoT legacy devices that support no authentication or encryption Employees and contractors must authenticate with company credentials and get network access based on AD group membership. Guest users are required to authenticate with captive portal using predefined credentials. Only employees will run L2 encryption.
Which implementation plan fulfills the requirements while maximizing the channel usage?

  • A. Create VAP1 to run WPA2-AES and 802.1x authentication. VAP2 to run opensystem encryption with MAC authentication, and VAP3 to run opensystem with captive portal.
  • B. Create VAP1 to run WPA2-AES and 802.1x authentication, and VAP2 to run opensystem encryption with MAC authentication and captive portal.
  • C. Create VAP1 to run WPA2-AES and 802.1x authentication. VAP2 to run opensystem encryption with MAC authentication, and VAP3 to run opensystem with captive portal and L2 fail through.
  • D. Create a single VAPto run WPA2-AES and 802.1x authentication. MAC authentication L2 fail through, captive portal, and VIA support.

Answer: B

 

NEW QUESTION 29
Refer to the exhibits.


A network administrator deploys User Based Tunneling (UBT) in a corporate network to unify the security policies enforcement. When users authenticate with 802.1X, ClearPass shows Accept results, and sends the Aruba-User-Role attribute as expected. However, the AOS-CX based switch does not seem to build the tunnel to the Mobility Controller (MC) for this user.
Why does the switch fail to run UBT for the user?

  • A. The switch is not configured with the gateway-role.
  • B. ClearPass is sending the wrong VSA type.
  • C. The switch has not fully associated to the MC.
  • D. The switch is not configured with the port-access role.
  • E. ClearPass is sending the wrong Vendor ID.

Answer: E

 

NEW QUESTION 30
Refer to the exhibit.

A network administrator is evaluating a deployment to validate that a user is assigned the proper role and reviews the output in the exhibit. How is the role assigned to user?

  • A. The MC assigned the default role based on the authentication method.
  • B. The MC assigned the role based on Aruba VSAs.
  • C. The MC assigned the role based on server derivation rules.
  • D. The MC assigned the machine authentication default user role.

Answer: A

 

NEW QUESTION 31
An Aruba WiFi solution for a football stadium includes 2500 APs, two Mobility Masters (MM), and eight Mobility Controllers (MCs). Key requirements are seamless roaming and even distribution of APs and clients, even during a MC failure.
Which MC's deployment option offers seamless roaming, and even AP client distribution among all MCs before and after a MC failure?

  • A. an eight-member HA group in dual mode
  • B. an eight-member L2-connected cluster
  • C. two four-member L2-connected clusters
  • D. a two-member HA group in dual mode

Answer: C

 

NEW QUESTION 32
Refer to the exhibit.

The network administrator must ensure that the configuration will force users to authenticate periodically every eight hours. Which configuration is required to effect this change?

  • A. Set the reauth-period to 28800 enable reauthentication in the dotlx profile.
  • B. Set the reauth-period to 28800 in the dotlx profile and enable reauthentication in the AAA profile.
  • C. Set the reauth-period to 28800 enable reauthentication in both dotlx and AAA profile.
  • D. Set the reauth-period to 28800 enable reauthentication in the AAA profile.

Answer: A

 

NEW QUESTION 33
Refer to the exhibit.

After deploying several cluster pairs, the network administrator notices that all APs assigned to Cluster1 communicate with MC1 instead of being distributed between members of the cluster. Also, no IP addresses are shown under the Standby IP column.
What should the network administrator do to fix this situation?

  • A. Rename the cluster profile as "CLUSTER1".
  • B. Apply the same cluster profile to both members.
  • C. Enable Cluster AP load balancing.
  • D. Place MCs at the same hierarchical group level.

Answer: A

 

NEW QUESTION 34
A network administrator assists with the migration of a WLAN from a third-party vendor to Aruba in different locations throughout the country. In order to manage the solution from a central point, the network administrator decides to deploy redundant Mobility Masters (MMs) in a datacenter that are reachable through the Internet.
Since not all locations own public IP addresses, the security team is not able to configure strict firewall polices at the datacenter without disrupting some MM to Mobility Controller (MC) communications. They are also concerned about exposing the MMs to unauthorized inbound connection attempts.
What should the network administrator do to ensure the solution is functional and secure?

  • A. Block all ports to the MMs except UDP 500 and 4500.
  • B. Install a PEFV license, and configure firewall policies that protect the MM.
  • C. Deploy an MC at the datacenter as a VPN concentrator.
  • D. Block all inbound connections, and instruct the MM to initiate the connection to the MCs.

Answer: A

 

NEW QUESTION 35
A joint venture between two companies results in a fully functional WLAN Aruba solution. The network administrator uses the following script to integrate the WLAN solution with two radius servers, radius1 and radius2.

While all users authenticate with [email protected] type of credentials, radius1 has user accounts with the domain name portion.
Which additional configuration is required to authenticate corp1.com users with radius1 and corp2 users with radius2?

  • A. Option C
  • B. Option A
  • C. Option B
  • D. Option D

Answer: B

 

NEW QUESTION 36
Refer to the exhibit.

Based on the output shown in the exhibit, which wireless connection phase has just completed?

  • A. MAC Authentication and 4-way handshake
  • B. L3 authentication and encryption
  • C. 802.11 enhanced open association
  • D. L2 authentication and encryption

Answer: B

 

NEW QUESTION 37
Refer to the exhibit.

A network administrator deploys a Mobility Master (MM) - Mobility Controller (MC) network with Aps in different locations. Users in one of the locations report that the WiFi network works fine for several hours, and then they are suddenly disconnected. This symptom may happen at any time, up to three times every day, and lasts no more than two minutes.
After some research, the network administrator logs into the MM and reviews the output shown in the exhibit.
Based on this information, what is the most likely reason users get disconnected?

  • A. AirMatch is reacting to non-scheduled RF events.
  • B. Adaptive Radio Management is reacting to RF events.
  • C. AirMatch is applying a scheduled optimization solution.
  • D. Users in the 2.4 GHz band are being affected by high interference.

Answer: D

 

NEW QUESTION 38
Refer to the exhibit.

A network administrator wants to allow contractors to access the WLAN named EmployeesNet. In order to restrict network access, the network administrator wants to assign this category of users to the contractor user role. To do this, the network administrator configures ClearPass in a way that it returns the Aruba-User-Role with the contractor value.
When testing the solution, the network administrator receives the wrong role.
What should the network administrator do to assign the contractor role to contractor users without affecting any other role assignment?

  • A. Set contractor as the default role in the AAA profile.
  • B. Create Contractor firewall role in the M.
  • C. Create server deviation rules in the server group.
  • D. Check the Download role from the CPPM option in the AAA profile.

Answer: D

 

NEW QUESTION 39
Refer to the exhibit.

A network administrator wants to configure an 802.1x supplicant for a wireless network that includes the following:
* AES encryption
* EAP-MSCHAP v2-based user and machine authentication
* Validation of server certificate in Microsoft Windows 10
The network administrator creates a WLAN profile and selects the change connection settings option. Then the network administrator changes the security type to Microsoft: Protected EAP (PEAP), and enables user and machine authentication under Additional Settings.
What must the network administrator do next to accomplish the task?

  • A. Change the security type to Microsoft: Smart Card or other certificate.
  • B. Enable user authentication under Settings
  • C. Change default RC4 encryption for AES.
  • D. Enable server certificate validation under Settings.

Answer: A

 

NEW QUESTION 40
Refer to the exhibit.

A network administrator deploys a new Mobility Master (MM) - Mobility Controller (MC) network. To test the solution, the network administrator accesses the console of a pair of APs and statically provisions them. However, one of the APs does not propagate the configured SSIDs. The network administrator looks at the logs and sees the output shown in the exhibit.
Which actions must the network administrator take to solve the problem?

  • A. Re-provision one of the APs with a different name or modify the name in the whitelist.
  • B. Create another AP group in the MC's configuration, and re-provision one AP with a different group.
  • C. Re-provision the AP with a different group, and modify the name of one AP in the whitelist.
  • D. Re-provision one of the APs with a different name, and add new entries with the proper group in the whitelist.

Answer: A

 

NEW QUESTION 41
Refer to the exhibit.

A network administrator has created AAA profile for the corporate VAP. In addition to the regular Radius based authentication, the administrator needs to be able to disconnect the users from either of the two servers that are part of the "Radius" server group.
What must the administrator do next in order to achieve this goal?

  • A. Use the "Radius' server group as both the Accounting Server Group and the RFC 3576 server in the AAA profile.
  • B. Create two new RFC 3576 servers and assign them as the RFC 3576 servers in the AAA profile.
  • C. Use the "Radius' server group as the RFC 3576 server in the AAA profile.
  • D. Use the "Radius" server group as the RADIUS Accounting Server Group in the AAA profile.

Answer: A

 

NEW QUESTION 42
Refer to the exhibit:

A company acquires ten barcode scanners to run inventory tasks. These WiFi devices support WPA2-PSK security only. The network administrator deploys a WLAN named scanners using the configuration shown in the exhibit.
What must the network administrator do next to ensure that the scanner devices successfully connect to their SSID?

  • A. Set internal as the MAC authentication server group.
  • B. Add scanner MAC addresses in the internal database.
  • C. Add scanner MAC addresses in user derivation rules.
  • D. Enable L2 Authentication Fail Through.

Answer: B

 

NEW QUESTION 43
......

Updated PDF (New 2021) Actual HP HPE6-A79 Exam Questions: https://www.actual4labs.com/HP/HPE6-A79-actual-exam-dumps.html

Verified HPE6-A79 Exam Dumps PDF [2021] Access using Actual4Labs: https://drive.google.com/open?id=1VlqfNk7Z0lVrd2pYMd6V47B4HTrbTuO7

Contact Us

If you have any question please leave me your email address, we will reply and send email to you in 12 hours.

Our Working Time: ( GMT 0:00-15:00 )
From Monday to Saturday

Support: Contact now