[Oct-2021] Dumps Brief Outline Of The HPE6-A45 Exam - DumpsKing
HPE6-A45 Training & Certification Get Latest Aruba Certified Switching Professional (ACSP) V1
NEW QUESTION 88
Refer to the exhibit.
Several interfaces on an AOS-Switch enforce 802.1X to a Radius server at 10.254.202.202. The interface 802.1X settings are shown in the exhibit, and 802.1X is also enabled globally. The security team have added a requirement for port security on the interfaces as well. Before administrators enable port security, which additional step must they complete to prevent issues?
- A. Manually add legitimate MAC addresses to the switch authorized MAC list.
- B. Enable eavesdropping protection on the interfaces.
- C. Enable DHCP snooping on VLAN 20.
- D. Set 802.1X client limit on the interfaces.
Answer: C
NEW QUESTION 89
Refer to the exhibits.
Exhibit 1.
Exhibit 2.
The exhibits show the current operational state for routes on Switch-3. The company wants Switch-3 to prefer the link to Switch-1 over the link to Switch-2 for all intra-area, inter-area, and external traffic.
What can the network administrator do to achieve this goal?
- A. Set the OSPF administrative distance on Switch-2 higher than 110.
- B. Set the OSPF cost on VLAN 108 higher than 1 on Switch-2 and Switch-3.
- C. Set the OSPF area type to normal on all of the switches in Area 1.
- D. Set the cost in the OSPF Area 1 stub command higher than 1 on Switch-2.
Answer: D
NEW QUESTION 90
A customer wants access layer switches that support routing, ACLs, backplane stacking, and Smart rate ports.
The customer asks about Aruba 5400R z 12 switches.
Which Aruba Switch model would better meet the customer's requirements?
- A. 0
- B. 1
- C. 2930F
- D. 2
Answer: B
Explanation:
Reference: https://www.arubanetworks.com/assets/so/SB_CampusSwitching.pdf
NEW QUESTION 91
Exhibit
The network administrator enters the commands shown in Exhibit 2, and Switch-1 and Switch-2 exchange keepalive messages. What is the expected behavior if Switch-1 later fails t receive keepalive messages from Switch-2?
- A. After two consecutive missed keep-alive packets, Switch-1 disables interface 1, and the interface stays disabled until the issue is fixed.
- B. Switch-1 disables interface 1 for 10 seconds, and then re-enables it. The same process repeats twice, if the issue persists, the switch disables the interface permanently.
- C. After two consecutive missed keep-alive packets, Switch-1 SNMP traps, and Link 1 stays up until the issue is fixed.
- D. Switch-1 disables interface 1 for 10 and then re-enables it. The interface continues to be re-enabled and disabled every 10 seconds until the issue is fixed.
Answer: A
NEW QUESTION 92
Refer to the exhibit.
Every switch in the exhibit will route traffic. The company requires a topology in which failover for switch-to- switch links is exclusively handled by the routing protocol and occurs as quickly as possible. Which topology should the administrator use?
- A. D
- B. C
- C. A
- D. B
Answer: D
NEW QUESTION 93
An AOS-Switch uses tunneled node. What is a best practice for the path between an AOS-Switch and its Mobility Controller?
- A. The path can support jumbo frames
- B. The path implements MACsec
- C. The path has a device that applies NAT
- D. The path crosses no VLAN boundaries
Answer: A
NEW QUESTION 94
An AOS-Switch needs to implement tunneled node in role-based mode. Aruba ClearPass is configured to assign users for which the traffic should be tunneled to a role named tunnel. The Aruba Mobility Controller should apply policies associated with the employees group to these users.
What is the correct user role configuration on the AOS-Switch for this scenario?
- A. two user roles, one named employees that uses the tunneled-node-redirect command, and one named tunnel
- B. one user role named employees with tunnel set as the secondary role in the tunneled-node-redirect command
- C. two user roles, one named tunnel that uses the tunneled-node-redirect command, and one named employees
- D. one user role named tunnel with employees set as the secondary role in the tunneled-node-redirect command
Answer: B
NEW QUESTION 95
Refer to the exhibit.
An AOS-Switch has the ACL shown in the exhibit. A network administrator then enters these commands:
Switch(config)# mac-access-list standard myACL
Switch(config-std-macl)# deny 007d.45cc.0000 0000.0000.ffff
How does this ACL treat these frames:
1 = 007d.45cc.ffff 2 = 007d.45cc.0000
- A. It denies frame 1 and permits frame 2.
- B. It permits both frames.
- C. It denies both frames.
- D. It permits frame 1 and denies frame 2.
Answer: A
NEW QUESTION 96
A network administrator needs to control traffic based on Ethertype and Class of Service. What should the administrator configure for this purpose?
- A. both a standard IP ACL and an extended MAC ACL
- B. an extended IP ACL only
- C. an extended MAC ACL only
- D. both a standard IP ACL and a standard MAC ACL
Answer: C
NEW QUESTION 97
A network administrator configures DHCP snooping on VLAN 2. How does the switch handle DHCP traffic that arrives in this VLAN on an untrusted interface?
- A. It accepts packets from a DHCP server, but drops client packets.
- B. It accepts client packets, but drops packets from a DHCP server.
- C. It drops all DHCP traffic logs a security event.
- D. It accepts both client and server packets as long as they match the DHCP binding table.
Answer: A
NEW QUESTION 98
What is the minimum requirement for a device to pass local MAC authentication (LMA) on an AOS-Switch?
- A. The device MAC address matches a configured MAC group, address, OUI, or range, which is not necessarily associated with a profile .
- B. The device MAC address matches a default MAC group, which is enabled but not necessary associated with a profile.
- C. The device MAC address matches a default MAC group that is associated with an LMA profile.
- D. The device MAC address matches a MAC group, address OUI, or range that is associated with an LMA profile.
Answer: C
NEW QUESTION 99
Refer to the exhibit.
A network administrator sets up prioritization for an application that runs between Device 1 and Device 2.
However, the QoS for the application is not what the administrator expects.
How can the administrator check if the network infrastructure prioritizes traffic from Device 1 and Device 2?
- A. Set up RMON alarms on the switches that trigger when a high number of packets are dropped. Then, run the application and check for the alarm.
- B. Run a packet capture on Device 1, run the application, and look in the packet capture for a high value DSCP in the IP header.
- C. Clear interface statistics on the switches. Then, run the application and check the interface queue statistics for the switch-to-switch links.
- D. Run a packet capture on Device 2, run the application, and look in the packet capture for a high value DSCP in the IP header.
Answer: D
NEW QUESTION 100
Refer to the exhibits.
Exhibit 1
Exhibit 2
The exhibits show the current operational state for routes on Switch-3. The company wants Switch-3 to send all traffic to 172.16.0.0/16 through Switch-2.
Which single configuration change creates the desired behavior?
- A. Set a cost of 5 in the router ospf area 0.0.0.1 stub command on Switch-1.
- B. Change the OSPF external metric type to 2 on Switch-1 and Switch-2.
- C. Change the OSPF external metric type to 1 on Switch-1 and Switch-3.
- D. Set a cost of 15 in the redistribute static command on Switch-2.
Answer: A
NEW QUESTION 101
Refer to the exhibit.
Switch-1 and Switch-2 connect on interface A23. The switches experience a connectivity issue. The network administrator sees that both switches show this interface as up. The administrator sees the output shown in the exhibit on Switch-1.
What is a typical issue that could cause this output?
- A. asymmetric routing introduced by a routing protocol
- B. a jumbo frame mismatch
- C. mismatched subnet mask on the VLAN for the link
- D. an issue with VLAN mismatch
Answer: A
NEW QUESTION 102
OSPF Area 1 has two ABRs. One ABR is configured with this range for Area 1: 10.10.0.0/16. The other ABR is not configured with a range for Area 1.
Which type of issue occurs due to this mismatch?
- A. The ABRs lose adjacency in Area 1 and must route all traffic to each other through Area 0.
- B. The ABRs create a discontinuous area and disrupt intra-area routing between devices within Area 1.
- C. The ABRs lose adjacency entirely and cannot route traffic between each other at all.
- D. The ABR core would send Area 1 traffic destined to the other switch through an access switch.
Answer: B
NEW QUESTION 103
Refer to the exhibit.
The network administrator wants to reduce failover time if a switch link in VLAN 100 goes down. What should the administrator do?
- A. Lower the dead timer on the BDR of VLAN 100.
- B. Lower the hello timer only on the BDR of VLAN 100.
- C. Configure graceful restart on all of the OSPF routing devices on VLAN 100.
- D. Configure echo mode BFD on VLAN 100 on all OSPF routing devices on VLAN 100.
Answer: D
NEW QUESTION 104
Which solution allows administrators to monitor link status and port utilization on AOS-Switches from a centralized location?
- A. Aruba Mobility Controller
- B. Aruba ClearPass
- C. Aruba AirWave
- D. Aruba Mobility Manager
Answer: C
NEW QUESTION 105
Exhibit
A network administrator wants to add the protections of root guard to the network. Based on the spanning tree topology, on which ports should the network Administrator implement root guard?
- A. 3-24
- B. 1 and 2
- C. 2 and A2
- D. A1 and A2
Answer: D
NEW QUESTION 106
Refer to the exhibits.
Exhibit 1
Exhibit 2
Exhibit 2 shows IGMP groups on Switch-2, which runs IGMP but not PIM. Switch-1 and Switch-3 do not have IGMP or PIM enabled. Client 1 begins to forward multicasts to
239.1.1.1.
Which clients receive the multicasts?
- A. Client 2, Client 3, and Client 4
- B. Client 3 and Client 4, but not Client 2
- C. Client 3, but not any of the other clients
- D. Client 2, but not any of the other clients
Answer: D
NEW QUESTION 107
Refer to the exhibit.
Switch-1 is routing traffic to 192.0.2.0/24 over a less-than-optimal path. Which issue could prevent Switch-1 from selecting the first route listed in the table as a best BGP route?
- A. It has learned the same route using OSPF.
- B. It has no network statement for 192.168.2.0/24 in its BGP configuration.
- C. It has no route to 192.168.2.1 in its IP routing table.
- D. It does not have AS 46501 configured on it.
Answer: C
NEW QUESTION 108
What is the minimum requirement for a device to pass local MAC authentication (LMA) on an AOS-Switch?
- A. The device MAC address matches a MAC group, address, OUI, or range that is associated with an LMA profile.
- B. The device MAC address matches a default MAC group, which is enabled but not necessarily associated with a profile.
- C. The device MAC address matches a default MAC group that is associated with an LMA profile.
- D. The device MAC address matches a configured MAC group, address, OUI, or range, which is not necessarily associated with a profile.
Answer: A
Explanation:
Explanation/Reference:
NEW QUESTION 109
Refer to the exhibits.
Exhibit 1
Exhibit 2
A company does not require authentication for security, but AOS-Switches are set up to use local MAC authentication (LMA) to assign the correct VLAN and priority to IP phones. IP phones and computers belong to different VLANs. Each device is supposed to connect to a specific port, but sometimes users connect their devices to the wrong ports and cannot receive access without help from IT.
How can a network administrator configure the switches to eliminate this issue?
- A. Add the MAC addresses for computers to the myPhones MAC group.
- B. Apply LMA to all edge switch ports, and set the unauth VLAN to the user VLAN.
- C. Create a user role that applies the user VLAN, and set this role as the initial role.
- D. Set the address limit to 2 on the switch ports that apply LMA.
Answer: A
NEW QUESTION 110
A network administrator configures DHCP snooping on VLAN 2. How does the switch handle DHCP traffic that arrives in this VLAN on an untrusted interface?
- A. It drops all DHCP traffic and logs a security event.
- B. It accepts packets from a DHCP server, but drops client packets.
- C. It accepts both client and server packets as long as they match the DHCP binding table.
- D. It accepts client packets, but drops packets from a DHCP server.
Answer: D
Explanation:
Explanation
DHCP snooping only allows DHCP client traffic on an untrusted interface.By default when DHCP snooping is enabled on a VLAN, all untagged VLANs that are on that port are set as untrusted.
NEW QUESTION 111
......
Certification Training for HPE6-A45 Exam Dumps Test Engine: https://www.dumpsking.com/HPE6-A45-testking-dumps.html
Aruba Certified Switching Professional (ACSP) V1 HPE6-A45 Real Exam Questions and Answers FREE Updated: https://drive.google.com/open?id=122rCXiRC9BTHgoj4dfzcW_p2KfPg2zxO
