This page was exported from Free Exam Dumps Collection [ http://free.examcollectionpass.com ] Export date:Wed Nov 27 22:38:47 2024 / +0000 GMT ___________________________________________________ Title: Get Latest May-2022 Conduct effective penetration tests using ExamcollectionPass HPE6-A79 [Q32-Q53] --------------------------------------------------- Get Latest [May-2022] Conduct effective penetration tests using ExamcollectionPass HPE6-A79 Penetration testers simulate HPE6-A79 exam PDF NO.32 Refer to the exhibit.A network administrator has a Mobility Master (MM) Mobility Controller (MC) architecture along with the MC in the DMZ for terminating RAPs. The network firewall has been provisioned to allow access to the MC in the DMZ for both UDP 500 and 4500. Then he proceeds to provision an AP as shown in the exhibit.Which additional configuration steps must the administrator to assure RAPs successfully contact the MC? (Choose two.)  Create the RAP1 account in the InternalDB of the MC.  Create an IP local pool and PSK at the device node level.  Create the RAP1 account in the InternalDB of the MM.  Add the RAP1 entry in the CPsec whitelist at the MM level.  Create an IP local pool and PSK at the /mm/mynode level. NO.33 Refer to the exhibit.The network administrator must ensure that the configuration will force users to authenticate periodically every eight hours. Which configuration is required to effect this change?  Set the reauth-period to 28800 enable reauthentication in the dotlx profile.  Set the reauth-period to 28800 enable reauthentication in the AAA profile.  Set the reauth-period to 28800 enable reauthentication in both dotlx and AAA profile.  Set the reauth-period to 28800 in the dotlx profile and enable reauthentication in the AAA profile. NO.34 Refer to the exhibit.A network administrator deploys a Mobility Master (MM) – Mobility Controller (MC) network with Aps in different locations. Users in one of the locations report that the WiFi network works fine for several hours, and then they are suddenly disconnected. This symptom may happen at any time, up to three times every day, and lasts no more than two minutes.After some research, the network administrator logs into the MM and reviews the output shown in the exhibit.Based on this information, what is the most likely reason users get disconnected?  Adaptive Radio Management is reacting to RF events.  AirMatch is applying a scheduled optimization solution.  Users in the 2.4 GHz band are being affected by high interference.  AirMatch is reacting to non-scheduled RF events. NO.35 Refer to the exhibits.A user reports slow connectivity to a network administrator when connecting to AP-Garden and suggests that there might be a problem with the WLAN. The user’s device supports 802.11n in the 2.4 GHz band. The network administrator finds the user in the Mobility Master (MM) and reviews the output shown in the exhibit.What can the network administrator conclude after analyzing the data?  2.4Ghz band is currently congested, therefore a NIC upgrade to 802.11ac or higher is recommended so the user can move to 5Ghz.  Channel usage is high and though this device has high speed the overall client rate is low on AP-Garden. there could be a few clients monopolizing the airtime on both bands at low speeds.  User’s SNR value over time is lower than recommended, therefore he should either get closer to the Access Point or increase the transmit power.  365s are low cost outdoor APs recommended for coverage design only. AP-Garden currently has more clients than recommended and is getting congested. NO.36 Refer to the exhibit.A network administrator adds a Mobility Controller (MC) in the /mm level and notices that the device does not show up in the managed networks hierarchy. The network administrator accesses the CLI. executes the show switches command, and obtains the output shown in the exhibit.What is the reason that the MC does not appear as a managed device in the hierarchy?  The network administrator added the device using the wrong Pre-Shared Key (PSK).  The network administrator has not moved the device into a group yet.  The digital certificate of the MC is not trusted by the MM.  The IP address of the MC does not match the one that was defined in the MM. NO.37 Refer to the exhibits.Exhibit 1Exhibit 2Exhibit 3A network administrator wants to allow contractors to access the corporate WLAN named EmployeesNet with the contractor role in VLAN 40. When users connect, they do not seem to get an IP address. After some verification checks, the network administrator confirms the DHCP server (10.254.1.21) is reachable from the Mobility Controller (MC) and obtains the outputs shown in the exhibits.What should the network administrator do next to troubleshoot this problem?  Permit UDP67 to the contractor role.  Remove the IP address in VLAN 40.  Configure the DHCP helper address.  Confirm there is an IP pool for VLAN 40. NO.38 A network administrator wants to receive a major alarm every time a controller or an Aruba switch goes down for either a local or an upstream device failure. Which alarm definition must the network administrator create to accomplish this? NO.39 Refer to the exhibits.A network administrator has fully deployed a WPA3 based WLAN with 802.1X authentication. Later he defined corp-employee as the default user-role for the 802.1X authentication method in the aaa profile. When testing the setup he realizes the client gets the “guest” role.What is the reason “corp-employee” user role was not assigned?  The administrator forgot to map a dotlx profile to the corp-employee aaa profile.  The administrator forgot to enable PEFNG feature set on the Mobility Master.  MC 1 has not received the configuration from the mobility master yet.  The Mobility Master lacks MM-VA licenses; therefore, it shares partial configuration only. NO.40 Refer to the exhibit.After deploying several cluster pairs, the network administrator notices that all APs assigned to Cluster1 communicate with MC1 instead of being distributed between members of the cluster. Also, no IP addresses are shown under the Standby IP column.What should the network administrator do to fix this situation?  Apply the same cluster profile to both members.  Enable Cluster AP load balancing.  Rename the cluster profile as “CLUSTER1”.  Place MCs at the same hierarchical group level. NO.41 Refer to the exhibit.Based on the output shown in the exhibit, which wireless connection phase has just completed?  L3 authentication and encryption  MAC Authentication and 4-way handshake  802.11 enhanced open association  L2 authentication and encryption NO.42 A network administrator has racked up a 7210 Mobility Controller (MC) that will be terminating 200+ Aps on a medium-size branch office. Next, the technician cabled the appliance with 4SPF+ Direct Attached Cables (DACs) distributed between two-member switching stack and powered it up.What must the administrator do next in the MCs to assure maximum wired bandwidth utilization?  Map the four physical ports to port channel 0.  Disable spanning tree and allocate unique VLANs to each port.  Manually set 10Gbps speeds on all ports.  Configure the same MSTP region that the switches have.  Make all ports trunk interfaces and permit data VLANs. NO.43 Users run encrypted Skype for Business traffic with no WMM support over an Aruba Mobility Master (MM) – Mobility Controller (MC) based network. When voice, video, and application sharing traffic arrive at the wired side of the network, all the flows look alike due to the lack of L2 and L3 markings How can the network administrator identify these flows and mark QoS accordingly?  Confirm the MC is the Openflow controller of the MMs and Openflow is enabled in VAP and the firewall roles. Then enable WMM in a VAP profile.  Use a media firewall policy that match these three flows, and use permit and TOS actions with 56, 40, and 34 values for voice, video, and application sharing, respectively Then enable the Skype4Business ALG in the UCC profiles.  Confirm the MC is the Openflow controller of the MMs and Openflow is enabled in VAP and the firewall roles. Then enable the Skype4Business ALG in the UCC profiles.  Confirm the MM is the Openflow controller of the MCs and Openflow is enabled in VAP and the firewall roles. Then integrate the MM with the Skype4Business SDN API. and enable the Skype4Business ALG in the UCC profiles. NO.44 A network administrator is in charge of a Mobility Master (MM) – Mobility Controller (MC) based WLAN. The administrator has deployed an Airwave Management Platform (AMP) server in order to improve the monitoring capabilities and generate reports and alerts.The administrator has configured SNMPv3 and Admin credentials on both the MMs and MCs and has created Groups and Folders in the AMP server.What two additional steps must the administrator do in order to let Airwave monitor the network devices? (Choose two.)  Manually add the Active MM and wait for automatic Discovery.  Map the AMP’s IP address with a mgmt-config profile in the MM.  Set the AMP’s IP address and Org string as DHCP option 43.  Manually add each MM. MC and Access Point in the AMP server.  Move “New” devices into a group and folder in Airwave. NO.45 A network administrator has deployed an Airwave Management Platform (AMP) server and integrated it with a Mobility Master (MM) – Mobility Controller (MC) based WLAN. The AMP server already has all Aruba Mobility devices including Access Points (APs) in the “UP” devices list.What are two actions the administrator can execute upon the APs under “Airwave>Devices>Monitor”? (Choose two.)  Open the WebUI of the MC where the AP terminates.  Re-provision the Access Point.  Disable and change the mode of the AP’s radios.  Invoke MC’s show commands for that Access Point.  Run Spectrum Analysis locally. NO.46 A software development company has 764 employees who work from home. The company also has small offices located in different cities throughout the world. During working hours, they use RAPs to connect to a datacenter to upload software code as well as interact with databases.In the past two month, cabling issues have occurred connection to the 7240XM Mobility Controller (MC) that runs ArubaOS 8 and terminates the RAPs. These RAPs disconnect, affecting the users connected to the RAPs. This also causes problems with code uploads and database synchronizations. Therefore, the company decides to add a second 7240XM controller for redundancy.How should the network administrator deploy both controllers in order to provide the redundancy while preventing failover events from disconnecting users?  Connect both controllers with common VLANs. and create an HA fast failover group with public addresses in the internet VLAN.  Connect both controllers with common VLANs. and create an L2-connected cluster using public addresses in the internet VLAN.  Connect both controllers with different VLANs. and create an L2-connected cluster using public addresses in the internet VLAN.  Connect both controllers with common VLANs. and configure LMS/BLMS values equal to public addresses in the internet VLAN. NO.47 A joint venture between two companies results in a fully functional WLAN Aruba solution. The network administrator uses the following script to integrate the WLAN solution with two radius servers, radius1 and radius2.While all users authenticate with username@domainname.com type of credentials, radius1 has user accounts with the domain name portion.Which additional configuration is required to authenticate corp1.com users with radius1 and corp2 users with radius2?  Option A  Option B  Option C  Option D NO.48 An organization wants to deploy a WLAN infrastructure that provides connectivity to these client categories:* Employees* Contractors* Guest users* Corporate IoT legacy devices that support no authentication or encryption Employees and contractors must authenticate with company credentials and get network access based on AD group membership. Guest users are required to authenticate with captive portal using predefined credentials. Only employees will run L2 encryption.Which implementation plan fulfills the requirements while maximizing the channel usage?  Create VAP1 to run WPA2-AES and 802.1x authentication. VAP2 to run opensystem encryption with MAC authentication, and VAP3 to run opensystem with captive portal and L2 fail through.  Create a single VAPto run WPA2-AES and 802.1x authentication. MAC authentication L2 fail through, captive portal, and VIA support.  Create VAP1 to run WPA2-AES and 802.1x authentication. VAP2 to run opensystem encryption with MAC authentication, and VAP3 to run opensystem with captive portal.  Create VAP1 to run WPA2-AES and 802.1x authentication, and VAP2 to run opensystem encryption with MAC authentication and captive portal. NO.49 Refer to the exhibit.A network administrator is validating client connectivity and executes the show command shown in the exhibit. Which authentication method was used by a wireless station?  EAP authentication  802.1X machine authentication  MAC authentication  802.1X user authentication NO.50 A network administrator is in charge of a Mobility Master (MM) – Mobility Controller (MC) based network security. Recently the Air Monitors detected a Rogue AP in the network and the administrator wants to enable “Tarpit” based wireless containment.What profile must the administrator enable “tarpit” wireless containment on?  IDS Unauthorized device profile  IDS profile  IDS General profile  IDS DOS profile NO.51 Refer to the exhibit:A company acquires ten barcode scanners to run inventory tasks. These WiFi devices support WPA2-PSK security only. The network administrator deploys a WLAN named scanners using the configuration shown in the exhibit.What must the network administrator do next to ensure that the scanner devices successfully connect to their SSID?  Set internal as the MAC authentication server group.  Add scanner MAC addresses in user derivation rules.  Enable L2 Authentication Fail Through.  Add scanner MAC addresses in the internal database. NO.52 Users run Skype for Business on wireless clients with no WMM support over an Aruba Mobility Master (MM) – Mobility Controller (MC) based network. When traffic arrives at the wired network, it does not include either L2 or L3 markings.Which configuration steps should the network administrator take to classify and mark voice and video traffic with UCC heuristics mode?  Enable WMM in a VAP profile, and explicitly permit voice and video UDP ports in a firewall policy.  Confirm OpenFlow is enabled in the user role and VAP profile. Then enable WMM in a SSID profile, and explicitly permit voice and video UDP ports in a firewall policy.  Confirm the MC is the Openflow controller of the MMs and Openflow is enabled in VAP and firewall roles. Enable Skype4Business ALG in UCC profiles.  Confirm MM is the Openflow controller of MCs and Openflow is enabled in VAP and firewall roles. Enable Skype4Business ALG in UCC profiles. NO.53 A customer wants a WLAN solution that permits Aps to terminate WPA-2 encrypted traffic from different SSIDs to different geographic locations where non-related IT departments will take care of enforcing security policies. A key requirement is to minimize network congestion, overhead, and delay while providing data privacy from the client to the security policy enforcement point. Therefore, the solution must use the shortest path from source to destination.Which Aruba feature best accommodates this scenario?  Inter MC S2S IPsec tunnels  RAPs  Multizone Aps  VIA  Inter MC GRE tunnels  Loading … HP HPE6-A79 Exam Syllabus Topics: TopicDetailsTopic 1Use AirWave and a Mobility Master to gather information about client health Configure role derivation and integrate with an existing AAA serverTopic 2Configure and validate IAP-VPN to a controller for remote access Analyze a scenario to determine AirWave scalability requirementsTopic 3Monitor the Spectrum Analyzer dashboard on the Mobility Controller Configure a secure WLAN and integrate it with an existing infrastructureTopic 4Configure a guest WLAN and validate client connectivity Configure and validate a multizone solution Create triggers and custom reports in AirWaveTopic 5Implement advanced services and security solutions Analyze a scenario to determine remote access requirementsTopic 6Troubleshoot client connectivity and network access Validate client connectivity to a secure WLANTopic 7Integrate and monitor devices with AirWave Monitor and optimize the RF environmentTopic 8Configure and validate remote connectivity using RAP or a branch office solution Configure and validate Aruba WLAN solutionsTopic 9Analyze an entire WLAN infrastructure to determine the licensing requirements Analyze customer requirements to determine the need for QoSTopic 10Analyze customer requirements to determine the need for a multizone deployment Analyze customer requirements to determine roles, firewall policies, and rule requirementsTopic 11Analyze a complex highly available multi-controller environment to determine mobility requirements Analyze functional requirements to create a solution design and implementation planTopic 12Configure a WLAN with WPA2PSK Mac authentication for role derivation Configure and validate a complex multisite high availability mobility environment   Tested Material Used To HPE6-A79 Test Engine: https://www.examcollectionpass.com/HP/HPE6-A79-practice-exam-dumps.html --------------------------------------------------- Images: https://free.examcollectionpass.com/wp-content/plugins/watu/loading.gif https://free.examcollectionpass.com/wp-content/plugins/watu/loading.gif --------------------------------------------------- --------------------------------------------------- Post date: 2022-05-09 19:19:16 Post date GMT: 2022-05-09 19:19:16 Post modified date: 2022-05-09 19:19:16 Post modified date GMT: 2022-05-09 19:19:16