Updated Free HP HPE6-A79 Test Engine Questions with 56 Q&As
The Best HP ACMX HPE6-A79 Professional Exam Questions
HP HPE6-A79 Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
| Topic 5 |
|
| Topic 6 |
|
| Topic 7 |
|
| Topic 8 |
|
NEW QUESTION 30
A joint venture between two companies results in a fully functional WLAN Aruba solution. The network administrator uses the following script to integrate the WLAN solution with two radius servers, radius1 and radius2.
While all users authenticate with [email protected] type of credentials, radius1 has user accounts with the domain name portion.
Which additional configuration is required to authenticate corp1.com users with radius1 and corp2 users with radius2?
- A. Option A
- B. Option B
- C. Option D
- D. Option C
Answer: A
NEW QUESTION 31
An organization wants to deploy a WLAN infrastructure that provides connectivity to these client categories:
* Employees
* Contractors
* Guest users
* Corporate IoT legacy devices that support no authentication or encryption Employees and contractors must authenticate with company credentials and get network access based on AD group membership. Guest users are required to authenticate with captive portal using predefined credentials. Only employees will run L2 encryption.
Which implementation plan fulfills the requirements while maximizing the channel usage?
- A. Create a single VAPto run WPA2-AES and 802.1x authentication. MAC authentication L2 fail through, captive portal, and VIA support.
- B. Create VAP1 to run WPA2-AES and 802.1x authentication. VAP2 to run opensystem encryption with MAC authentication, and VAP3 to run opensystem with captive portal.
- C. Create VAP1 to run WPA2-AES and 802.1x authentication, and VAP2 to run opensystem encryption with MAC authentication and captive portal.
- D. Create VAP1 to run WPA2-AES and 802.1x authentication. VAP2 to run opensystem encryption with MAC authentication, and VAP3 to run opensystem with captive portal and L2 fail through.
Answer: C
NEW QUESTION 32
Users run encrypted Skype for Business traffic with no WMM support over an Aruba Mobility Master (MM) - Mobility Controller (MC) based network. When voice, video, and application sharing traffic arrive at the wired side of the network, all the flows look alike due to the lack of L2 and L3 markings How can the network administrator identify these flows and mark QoS accordingly?
- A. Confirm the MC is the Openflow controller of the MMs and Openflow is enabled in VAP and the firewall roles. Then enable the Skype4Business ALG in the UCC profiles.
- B. Confirm the MM is the Openflow controller of the MCs and Openflow is enabled in VAP and the firewall roles. Then integrate the MM with the Skype4Business SDN API. and enable the Skype4Business ALG in the UCC profiles.
- C. Confirm the MC is the Openflow controller of the MMs and Openflow is enabled in VAP and the firewall roles. Then enable WMM in a VAP profile.
- D. Use a media firewall policy that match these three flows, and use permit and TOS actions with 56, 40, and 34 values for voice, video, and application sharing, respectively Then enable the Skype4Business ALG in the UCC profiles.
Answer: B
NEW QUESTION 33
An organization has several RAPs at different locations that broadcast two SSIDs. The internet-only SSID is in bridge/always mode, and the corporate SSID is in split-tunneling/standard mode. The network administrator deploys 10 more RAPs in different locations.
Users can successfully connect to the corporate SSID that is propagated by a RAP at a remote location. However, they report that it takes too long to access public internet web sites.
What is one part of the configuration that should be checked by the network administrator to verify this RAP deployment?
- A. Assigned VLAN
- B. IP pool
- C. User roles policies
- D. Operating mode
Answer: C
NEW QUESTION 34
Refer to the exhibit.
Based on the output shown in the exhibit, which wireless connection phase has just completed?
- A. MAC Authentication and 4-way handshake
- B. 802.11 enhanced open association
- C. L3 authentication and encryption
- D. L2 authentication and encryption
Answer: C
NEW QUESTION 35
A fully functional WLAN is deployed in a campus network using the following script.
Which part of the script can a network administrator re-use to assign a different default role to users when they connect to the same SSID in a second building?
- A. server group and ssid profile
- B. server group and VAP profile
- C. server group, aaa profile, and ssid profile
- D. server group and VAP
Answer: A
NEW QUESTION 36
Refer to the exhibit.
An organization provides WiFi access through a corporate SSID with an Aruba Mobility Master (MM) - Mobility Controller (MC) network that includes PEF functions. The organization wants to have a single firewall policy configured and applied to the employee role.
This policy must allow users to reach Web, FTP, and DNS services, as shown in the exhibit. Other services should be exclusive to other roles. The client NICs should receive IP settings dynamically.
Which policy design meets the organization's requirements while minimizing the number of policy rules?

- A. Option C
- B. Option B
- C. Option D
- D. Option A
Answer: A
NEW QUESTION 37
A network administrator has updated the ArubaOS code of a standalone Mobility Controller (MC) that is used for User-Based Tunneling (UBT) to a newer early release. Ever since the MC seems to reject PAPI sessions from the switch with the 10.1.10.10 IP address. Also the controller's prompt is now followed by a star mark: "(MC_VA) [mynode] *#" When opening a support ticket, an Aruba TAC engineer asks the administrator to gather the crash logs and if possible replicate UBT connection attempts from the switch while running packet captures of PAPI traffic on the controller and obtain the PCAP files. The administrator has a PC with Wireshark and TFTP server using the 10.0.20.20 IP address.
What commands must the administrator issue to accomplish these requests? (Choose two.)
- A. Option B
- B. Option D
- C. Option C
- D. Option E
- E. Option A
Answer: A,D
NEW QUESTION 38
Refer to the exhibit.
A network administrator deploys DSCP based prioritization in the entire wired network to improve voice quality for a SIP-based IP telephony system used by the company. However, users report that calls they make from WLAN have poor audio quality, while desktop phones do not experience the same problem. The network administrator makes a test call and looks in the datapath session table.
Based on the output shown in the exhibit, what is one area that the network administrator should focus on?
- A. wired network congestion
- B. WMM support on the WLAN
- C. UCC based DSCP correction
- D. Dynamic Multicast Rate Optimization
Answer: A
NEW QUESTION 39
Refer to the exhibits.
Exhibit 1
Exhibit 2
Exhibit 3
A network administrator wants to allow contractors to access the corporate WLAN named EmployeesNet with the contractor role in VLAN 40. When users connect, they do not seem to get an IP address. After some verification checks, the network administrator confirms the DHCP server (10.254.1.21) is reachable from the Mobility Controller (MC) and obtains the outputs shown in the exhibits.
What should the network administrator do next to troubleshoot this problem?
- A. Permit UDP67 to the contractor role.
- B. Confirm there is an IP pool for VLAN 40.
- C. Configure the DHCP helper address.
- D. Remove the IP address in VLAN 40.
Answer: A
NEW QUESTION 40
Refer to the exhibits.


A network administrator has fully deployed a WPA3 based WLAN with 802.1X authentication. Later he defined corp-employee as the default user-role for the 802.1X authentication method in the aaa profile. When testing the setup he realizes the client gets the "guest" role.
What is the reason "corp-employee" user role was not assigned?
- A. The administrator forgot to enable PEFNG feature set on the Mobility Master.
- B. MC 1 has not received the configuration from the mobility master yet.
- C. The administrator forgot to map a dotlx profile to the corp-employee aaa profile.
- D. The Mobility Master lacks MM-VA licenses; therefore, it shares partial configuration only.
Answer: B
NEW QUESTION 41
Users run Skype for Business on wireless clients with no WMM support over an Aruba Mobility Master (MM) - Mobility Controller (MC) based network. When traffic arrives at the wired network, it does not include either L2 or L3 markings.
Which configuration steps should the network administrator take to classify and mark voice and video traffic with UCC heuristics mode?
- A. Enable WMM in a VAP profile, and explicitly permit voice and video UDP ports in a firewall policy.
- B. Confirm OpenFlow is enabled in the user role and VAP profile. Then enable WMM in a SSID profile, and explicitly permit voice and video UDP ports in a firewall policy.
- C. Confirm MM is the Openflow controller of MCs and Openflow is enabled in VAP and firewall roles. Enable Skype4Business ALG in UCC profiles.
- D. Confirm the MC is the Openflow controller of the MMs and Openflow is enabled in VAP and firewall roles. Enable Skype4Business ALG in UCC profiles.
Answer: A
NEW QUESTION 42
A software development company has 764 employees who work from home. The company also has small offices located in different cities throughout the world. During working hours, they use RAPs to connect to a datacenter to upload software code as well as interact with databases.
In the past two month, cabling issues have occurred connection to the 7240XM Mobility Controller (MC) that runs ArubaOS 8 and terminates the RAPs. These RAPs disconnect, affecting the users connected to the RAPs. This also causes problems with code uploads and database synchronizations. Therefore, the company decides to add a second 7240XM controller for redundancy.
How should the network administrator deploy both controllers in order to provide the redundancy while preventing failover events from disconnecting users?
- A. Connect both controllers with common VLANs. and configure LMS/BLMS values equal to public addresses in the internet VLAN.
- B. Connect both controllers with different VLANs. and create an L2-connected cluster using public addresses in the internet VLAN.
- C. Connect both controllers with common VLANs. and create an L2-connected cluster using public addresses in the internet VLAN.
- D. Connect both controllers with common VLANs. and create an HA fast failover group with public addresses in the internet VLAN.
Answer: D
NEW QUESTION 43
Refer to the exhibit.
A network administrator wants to allow contractors to access the WLAN named EmployeesNet. In order to restrict network access, the network administrator wants to assign this category of users to the contractor user role. To do this, the network administrator configures ClearPass in a way that it returns the Aruba-User-Role with the contractor value.
When testing the solution, the network administrator receives the wrong role.
What should the network administrator do to assign the contractor role to contractor users without affecting any other role assignment?
- A. Check the Download role from the CPPM option in the AAA profile.
- B. Create server deviation rules in the server group.
- C. Set contractor as the default role in the AAA profile.
- D. Create Contractor firewall role in the M.
Answer: A
NEW QUESTION 44
A company plans to build a resort that includes a hotel with 1610 rooms, a casino, and a convention center. The company is interested in a mobility solution that provides scalability and a service-based approach, where they can rent the WLAN infrastructure at the convention center to any customer (tenant) that hosts events at the resort.
The solution should provide:
* Seamless roaming when users move from the hotel to the casino or the convention center
* Simultaneous propagation of the resort and customer-owned SSIDs at the convention center
* Null management access upon resort network infrastructure to the customers (tenants)
* Configuration and monitor rights of rented SSIDs to the customers (tenants) Which deployment meets the requirements?
- A. Deploy lAPs with zone based SSIDs and manage them with different central accounts.
- B. Deploy an MM-MC infrastructure, and create different hierarchy groups for MCs and APs
- C. Deploy lAPs. and manage them with different central accounts.
- D. Deploy an MM-MC infrastructure with multizone AP's, with one zone for tenant SSIDs.
- E. Deploy lAPs along with AirWave. and deploy role-based management access control.
Answer: C
NEW QUESTION 45
Refer to the exhibit.
A network administrator has a Mobility Master (MM) Mobility Controller (MC) architecture along with the MC in the DMZ for terminating RAPs. The network firewall has been provisioned to allow access to the MC in the DMZ for both UDP 500 and 4500. Then he proceeds to provision an AP as shown in the exhibit.
Which additional configuration steps must the administrator to assure RAPs successfully contact the MC? (Choose two.)
- A. Add the RAP1 entry in the CPsec whitelist at the MM level.
- B. Create the RAP1 account in the InternalDB of the MC.
- C. Create the RAP1 account in the InternalDB of the MM.
- D. Create an IP local pool and PSK at the device node level.
- E. Create an IP local pool and PSK at the /mm/mynode level.
Answer: A,E
NEW QUESTION 46
Refer to the exhibits.

A user reports slow connectivity to a network administrator when connecting to AP-Garden and suggests that there might be a problem with the WLAN. The user's device supports 802.11n in the 2.4 GHz band. The network administrator finds the user in the Mobility Master (MM) and reviews the output shown in the exhibit.
What can the network administrator conclude after analyzing the data?
- A. 2.4Ghz band is currently congested, therefore a NIC upgrade to 802.11ac or higher is recommended so the user can move to 5Ghz.
- B. 365s are low cost outdoor APs recommended for coverage design only. AP-Garden currently has more clients than recommended and is getting congested.
- C. User's SNR value over time is lower than recommended, therefore he should either get closer to the Access Point or increase the transmit power.
- D. Channel usage is high and though this device has high speed the overall client rate is low on AP-Garden. there could be a few clients monopolizing the airtime on both bands at low speeds.
Answer: B
NEW QUESTION 47
Refer to the exhibit.

An Aruba network is deployed with L2 and L3 Mobility Master (MM) redundancy across two datacenters, as shown in the exhibit. The network administrator confirms that all Mobility Controllers (MC) are currently communicating with MM1, which is the L2 Active and, L3 Primary.
Which MM IP will MCs communicate with if MM1 fails?
- A. 10.2.1.21
- B. 10.1.1.12
- C. 10.1.1.10
- D. 10.2.1.10
Answer: D
NEW QUESTION 48
A company with 535 users deploys an Aruba solution with more than 1000 Aruba APs, two 7220 Mobility Controllers, and a single Mobility Master (MM) virtual appliance at the campus server farm. The MCs run a HA Fast failover group in dual mode and operate at 50% AP capacity.
If there is an MM or MC failure, the network administrator must ensure that the network is fully manageable and the MC load does not exceed 80%.
What can the network administrator do to meet these requirements?
- A. Place the APs in two different AP-Groups.
- B. Add an MC and an MM in the server farm.
- C. Enable oversubscription in the HA group.
- D. Place the APs in the same hierarchy level.
- E. Add an MM and enable DC redundancy.
- F. Create a cluster with AP load balancing.
Answer: E
NEW QUESTION 49
Refer to the exhibit.
A network engineer deploys two different DHCP pools in an Instant AP (IAP) cluster for WLANs that will have connectivity to a remote site using Aruba IPSec.
Based on the output shown in the exhibit, which IAP-VPN DHCP modes are being used?
- A. local L3 and centralized L2
- B. distributed L3 and centralized L2
- C. centralized L3 and distributed L2
- D. local L3 and distributed L2
Answer: C
NEW QUESTION 50
A network administrator is in charge of a Mobility Master (MM) - Mobility Controller (MC) based network security. Recently the Air Monitors detected a Rogue AP in the network and the administrator wants to enable "Tarpit" based wireless containment.
What profile must the administrator enable "tarpit" wireless containment on?
- A. IDS Unauthorized device profile
- B. IDS General profile
- C. IDS profile
- D. IDS DOS profile
Answer: A
NEW QUESTION 51
Refer to the exhibit.
A network administrator is validating client connectivity and executes the show command shown in the exhibit. Which authentication method was used by a wireless station?
- A. 802.1X user authentication
- B. 802.1X machine authentication
- C. EAP authentication
- D. MAC authentication
Answer: A
NEW QUESTION 52
......
Try 100% Updated HPE6-A79 Exam Questions [2022]: https://www.actualcollection.com/HPE6-A79-exam-questions.html