Filters
Question type

Study Flashcards

Which statement is correct regarding ACLs and TCAM usage?


A) Applying an ACL to a group of ports consumes the same resources as specific ACE entries
B) Using object groups consumes the same resources as specific ACE entries
C) Compression is automatically enabled for ASIC TCAMs on AOS-CX switches
D) Applying an ACL to a group of VLANs consumes the same resources as specific ACE entries

E) B) and D)
F) A) and D)

Correct Answer

verifed

verified

An administrator has configured the following on an AOS-CX switch: An administrator has configured the following on an AOS-CX switch:   What is the correct ACL rule configuration that would allow traffic from anywhere to reach the web ports on the two specified servers? A)  access-list ip server 10 permit tcp any web-servers group web-ports B)  access-list ip server 10 permit tcp any object-group web-servers object-group web-ports C)  access-list ip server 10 permit tcp any group web-servers group web-ports D)  access-list ip server 10 permit tcp any web-servers web-ports What is the correct ACL rule configuration that would allow traffic from anywhere to reach the web ports on the two specified servers?


A) access-list ip server 10 permit tcp any web-servers group web-ports
B) access-list ip server 10 permit tcp any object-group web-servers object-group web-ports
C) access-list ip server 10 permit tcp any group web-servers group web-ports
D) access-list ip server 10 permit tcp any web-servers web-ports

E) A) and B)
F) C) and D)

Correct Answer

verifed

verified

An administrator is looking for a data center switching solution that will greatly reduce the likelihood of dropped frames when uplink congestion is experienced. Which AOS-CX switch queuing feature meets the administrator's needs?


A) FIFO
B) VOQ
C) WFQ
D) DWWR

E) B) and C)
F) B) and D)

Correct Answer

verifed

verified

Examine the partial output of the BGP routing table of an AOS-CX switch: Examine the partial output of the BGP routing table of an AOS-CX switch:   The switch is learning about four possible path to reach the 1.0.0.0/8 network. Based on this output, which next-hop route will the AOS-CX select to be placed in the IP routing table? A)  192.168.1.5 B)  192.168.2.5 C)  192.168.3.5 D)  192.168.4.5 The switch is learning about four possible path to reach the 1.0.0.0/8 network. Based on this output, which next-hop route will the AOS-CX select to be placed in the IP routing table?


A) 192.168.1.5
B) 192.168.2.5
C) 192.168.3.5
D) 192.168.4.5

E) A) and B)
F) All of the above

Correct Answer

verifed

verified

Which protocols are used by NetEdit to interact with third-party devices? (Choose two.)


A) telnet
B) SNMP
C) SSH
D) Restful API
E) CDP

F) A) and B)
G) B) and E)

Correct Answer

verifed

verified

A network engineer for a company with 896 users across a multi-building campus wants to gather statistics on an important switch uplink and create actions based on issues that occur on the uplink. How often does an NAE agent gather information from the current state database in regard to the uplink interfaces?


A) Once every 60 seconds
B) Once every 1 second
C) Once every 30 seconds
D) Once every 5 seconds

E) B) and D)
F) B) and C)

Correct Answer

verifed

verified

When implementing user-based tunneling on an AOS-CX switch, which component defines the primary and backup Aruba gateways?


A) Transit VLAN
B) Gateway role
C) Server group
D) Zone

E) B) and D)
F) A) and C)

Correct Answer

verifed

verified

Examine the AOS-CS switch output: Examine the AOS-CS switch output:   Based on this output, what is correct? A)  802.1X authentication was successful, but MAC authentication is yet to start B)  802.1X authentication occurred and downloadable user roles are deployed C)  A local user role was deployed using a ClearPass solution D)  Only 802.1X authentication is configured on the port Based on this output, what is correct?


A) 802.1X authentication was successful, but MAC authentication is yet to start
B) 802.1X authentication occurred and downloadable user roles are deployed
C) A local user role was deployed using a ClearPass solution
D) Only 802.1X authentication is configured on the port

E) All of the above
F) A) and D)

Correct Answer

verifed

verified

A network has an ABR that connects area 0 and 1. A network engineer configures a summarized route for area 0. The ABR is a designated router (DR) for the segment it uses to connect to area 1. Which LSA type is assigned to this route when the summarized route is advertised into area 1 by the ABR?


A) LSA 1
B) LSA 4
C) LSA 3
D) LSA 2

E) A) and C)
F) B) and C)

Correct Answer

verifed

verified

Which AOS-CX feature is used to prevent head-on-line (HOL) blocking?


A) VSF
B) WFQ
C) VOQ
D) VSX

E) B) and C)
F) A) and C)

Correct Answer

verifed

verified

Examine the following AOS-CX configuration: Examine the following AOS-CX configuration:   Based on this configuration, which statement is correct regarding IoT traffic? A)  If 10.100.1.2 is not reachable, the IoT traffic will be automatically dropped by the switch B)  If a specific route is not available in the routing table, the traffic will be routed to 10.100.1.2 C)  The next hop of 10.100.1.2 can be one or more hops away from the AOS-CX switch D)  All routes are ignored in the routing table for IoT traffic, which is routed to 10.100.1.2 Based on this configuration, which statement is correct regarding IoT traffic?


A) If 10.100.1.2 is not reachable, the IoT traffic will be automatically dropped by the switch
B) If a specific route is not available in the routing table, the traffic will be routed to 10.100.1.2
C) The next hop of 10.100.1.2 can be one or more hops away from the AOS-CX switch
D) All routes are ignored in the routing table for IoT traffic, which is routed to 10.100.1.2

E) A) and B)
F) A) and C)

Correct Answer

verifed

verified

An AOS-CX switch is configured to implement downloadable user roles. Examine the AOS-CX switch output: An AOS-CX switch is configured to implement downloadable user roles. Examine the AOS-CX switch output:   Based on this output, what is the state of the user's access? A)  No downloadable user role exists B)  MAC authentication has passed, but 802.1X authentication is in progress C)  The RADIUS request timed out to the AAA server D)  The port should be configured for 802.1X Based on this output, what is the state of the user's access?


A) No downloadable user role exists
B) MAC authentication has passed, but 802.1X authentication is in progress
C) The RADIUS request timed out to the AAA server
D) The port should be configured for 802.1X

E) A) and B)
F) A) and D)

Correct Answer

verifed

verified

An administrator has an AOS-CX switch configured with: router ospf 1   area 0   area 1 stub no-summary It is the only ABR for area 1. The switch has the appropriate adjacencies to routing switches in areas 0 and 1. The current routes in each area are: Area 0: 5 routes (LSA Type 1 and 2) Area 1: 10 routes (LSA Type 1 and 2) External routes: 2 (LSA Type 5) Based on the above configuration, how many OSPF routes will routing switches see in Area 1?


A) 15
B) 6
C) 11
D) 12

E) C) and D)
F) A) and C)

Correct Answer

verifed

verified

What is a best practice concerning voice traffic and dynamic segmentation on AOS-CX switches?


A) Controller authentication and user-based tunneling of the voice traffic
B) Switch authentication and user-based tunneling of the voice traffic
C) Controller authentication and port-based tunneling of the voice traffic
D) Switch authentication and local forwarding of the voice traffic

E) B) and C)
F) None of the above

Correct Answer

verifed

verified

How is voice traffic prioritized correctly on AOS-CX switches?


A) By defining device profiles with QOS settings
B) By placing it in the strict priority queue
C) By implementing voice VLANs
D) By implementing weighted fair queueing (WFQ)

E) A) and D)
F) B) and C)

Correct Answer

verifed

verified

Which protocol should be configured to allow NetEdit to discover third-party devices?


A) SNMP
B) SSH
C) HTTPS
D) HTTP

E) A) and C)
F) B) and D)

Correct Answer

verifed

verified

A network administrator is managing a network that deploys a multicast service. The administrator has multiple streams successfully being routed by PIM-DM in the network. The administrator then adds a new stream with a destination address of 239.0.0.1. However, clients who have not joined the stream are receiving it. What should the administrator do to fix this problem?


A) Verify that IGMP is enabled between the switches connecting the multicast source and receivers
B) Change the destination multicast address to 239.1.1.1
C) Define the 239.0.0.1 stream on the rendezvous point (RP)
D) Define the 239.0.0.1 stream on the PIM candidate bootstrap router

E) A) and B)
F) A) and C)

Correct Answer

verifed

verified

Examine the configuration performed on newly deployed AOS-CX switches: Examine the configuration performed on newly deployed AOS-CX switches:   After performing this configuration, the administrator notices that the switch ports always remain in the EAP-start state. What should the administrator do to fix this problem? A)  Define the server group cppm B)  Set the ports to client-mode C)  Create and assign a local user role to the ports D)  Enable change of authorization (CoA) After performing this configuration, the administrator notices that the switch ports always remain in the EAP-start state. What should the administrator do to fix this problem?


A) Define the server group cppm
B) Set the ports to client-mode
C) Create and assign a local user role to the ports
D) Enable change of authorization (CoA)

E) None of the above
F) A) and D)

Correct Answer

verifed

verified

What is correct regarding the tunneling of user traffic between AOS-CX switches and Aruba Mobility Controllers (MCs) ?


A) Uses IPSec to protect the management and data traffic
B) Uses IPSec to protect the management traffic
C) Supports only port-based tunneling
D) Uses the same management protocol as Aruba APs

E) A) and B)
F) None of the above

Correct Answer

verifed

verified

A company is implementing AOS-CX switches at the access layer. The company wants to implement access control for employees and guests. Which security features will require a ClearPass server to be installed and used by the company?


A) Downloadable user roles
B) Dynamic segmentation
C) User-based tunneling (UBT)
D) Change of authorization (CoA)

E) None of the above
F) B) and C)

Correct Answer

verifed

verified

Showing 21 - 40 of 98

Related Exams

Show Answer