ACMP Aruba parte 2

Description

Preguntas
Howard Clavijo
Quiz by Howard Clavijo, updated more than 1 year ago
Howard Clavijo
Created by Howard Clavijo almost 7 years ago
111
0

Resource summary

Question 1

Question
A user logged in with the Captive Portal settings shown in the above screen capture. What does the user need to do to logout?
Answer
  • A. wait 30 minutes then logout
  • B. wait 60 minutes then logout
  • C. click Logout on the browser screen
  • D. he cannot logout

Question 2

Question
Which of the following are valid RAP operating modes?
Answer
  • A. Always, Backup, Standard, Persistent
  • B. Always, Backup, Tunnel, Persistent
  • C. Always, Hotel-Connect, Tunnel, Standard
  • D. Backup, Hotel-Connect, Standard, Persistent

Question 3

Question
Referring to the diagram provided for this question, representing an office wireless LAN deployment, there will be approximately 250 users in the offices section of the building. According to Aruba best practice, which network device is the best choice for the wireless clients' default gateway?
Answer
  • A. device 'A'
  • B. device 'B'
  • C. device 'C'
  • D. device 'D'

Question 4

Question
An AP125 has been provisioned as a Campus AP in the default AP group. It has booted but the radio lights are orange. What might be a cause of this? Select all that apply.
Answer
  • A. The AP has booted successfully and is broadcasting wireless networks
  • B. The VAP does not have a VLAN assigned to it
  • C. The antenna gain parameters of the AP must be provisioned
  • D. The default AP Group does not have any VAPs assigned to it

Question 5

Question
As illustrated in the above diagram, a company has two campus locations and a building headquarters all located in different cities. Following best practices, what would be the best way to construct mobility domains for the company?
Answer
  • A. Buildings (1, 2) in one domain and Buildings (3, 4, 5, 6) in one domain
  • B. Buildings (1, 2) in one domain, Building (3) in one domain, and Buildings (4, 5, 6) in one domain
  • C. Buildings (1, 2, 4, 5, 6) in one domain and Building (3) in one domain
  • D. Buildings (1, 2, 3, 4, 5, 6) in one domain

Question 6

Question
Referring to the diagram provided for this question, an employee brought an unauthorized AP from home and attached the LAN port to the cubicle Ethernet port. All Aruba APs and AMs as well as the employee AP are in VLAN 170 and within RF range of each other. No traffic from the wired or wireless network has passed through the AP yet, but the AP began wireless broadcasts. How will the Aruba system first initially classify the employee's AP?
Answer
  • A. a valid AP
  • B. an AM
  • C. a Rouge AP
  • D. an interfering AP
  • E. a known interfering AP

Question 7

Question
An AP was configured to use dynamic controller discovery and assigned to an AP group, then powered off for over a week. When the AP is redeployed, what previous configuration will it retain?
Answer
  • A. It's AP name and AP Group
  • B. It's Serial Number
  • C. The controller's IP address
  • D. After a few days all configurations is lost
  • E. The controller IP address and the AP Group

Question 8

Question
Which set of configuration commands are needed to make VLAN 10 the management VLAN?
Answer
  • A. config# vlan 10 config# interface vlan 10 config-subif# ip address 10.10.10.1 255.255.255.0 config# controller-ip vlan 10
  • B. config# vlan 10 config# interface vlan 10 config-subif# ip address 10.10.10.1 255.255.255.0 config-subif# management-vlan
  • C. config# vlan 10 config-subif# interface vlan 10 config-subif# ip address 10.10.10.1 255.255.255.0 config-subif# management-vlan 10
  • D. config# vlan 10 config-subif# interface vlan 10 config-subif# ip address 10.10.10.1 255.255.255.0 config-subif# default-management-vlan

Question 9

Question
If a Remote AP (RAP) is attempting to contact a controller that is behind a NAT device what protocol must be allowed through the NAT/Firewall?
Answer
  • A. PAPI
  • B. NATT
  • C. IPSec
  • D. The controller must have a public IP address.

Question 10

Question
When a port has been configured as untrusted, but no wired access AAA profile has been configured. A user connects to that port. What happens next?
Answer
  • A. Since there is no wired access AAA profile, only port policies will be applied
  • B. The user will fall into the default wired access AAA profile and will be given the initial role
  • C. Since there is no wired access AAA profile the user will be given the logon role
  • D. When configuring the port as untrusted, an error message of "no wired access AAA profile exists". Therefore this is an invalid configuration.

Question 11

Question
In the university illustrated in the above diagram, the Life Sciences department has its own mobility domain, as does the engineering department. The university is planning on offering a new application and needs users to be able to roam between both mobility domains. What is the best way to accomplish this?
Answer
  • A. The 2 existing domains should be left as they are. A 3rd mobility domain should then be created and all 3 controllers need to be added to it
  • B. Merge the Life Sciences and Engineering controllers into the same mobility domain
  • C. The IP subnets of all controllers need to be configured to match
  • D. This cannot be accomplished

Question 12

Question
How does Aruba's infrastructure calculate location?
Answer
  • A. GPS
  • B. RF Fingerprinting
  • C. RSSI triangulation
  • D. TDOA

Question 13

Question
What can an AM do that an AP cannot do?
Answer
  • A. detect rogue APs
  • B. detect an AP failure
  • C. complete scanning of all channels in under 1 minute
  • D. detect interfering APs

Question 14

Question
A company purchased an indoor mesh deployment using the 620 controller and the AP 125 models, where 5 APs will be deployed on a floor to provide wireless internet access for users. Users may open VPN tunnels using software clients over the wireless network to a 3rd party VPN concentrator overseas. The company wants to limit wireless user access to NetBIOS over TCP traffic locally and VPN traffic overseas. Which licenses will be necessary for this deployment?
Answer
  • A. Base AOS, VPN, PEF-NG
  • B. Base AOS, AP Capacity, PEF-NG
  • C. Base AOS, AP Capacity, PEF-NG, VPN
  • D. Base AOS, AP Capacity

Question 15

Question
Two Aruba 620 controllers are configured as a VRRP pair. One of the controllers fails. Which is the maximum number of campus APs that the remaining controller can terminate?
Answer
  • A. 8
  • B. 32
  • C. 48
  • D. 96

Question 16

Question
For controller redundancy to work and support failover of access points, to which IP address should the Aruba AP terminate its GRE tunnel?
Answer
  • A. VRRP IP address
  • B. management IP of an Aruba controller
  • C. management IP of the backup Aruba controller
  • D. HSRP IP address

Question 17

Question
A Master switch can serve as an AP backup for a local switch.
Answer
  • True
  • False

Question 18

Question
What APs can be configured as a Certificate based RAP?
Answer
  • A. AP70
  • B. AP125
  • C. AP93
  • D. AP105
  • E. RAP5

Question 19

Question
Which of the following parameters can be specified in a rule for AP classification?
Answer
  • A. SSID of an AP
  • B. Number of clients connected to an AP.
  • C. SNR of an AP
  • D. Operating mode of an AP

Question 20

Question
Which of the following functions cannot be configured in the WIPS wizard?
Answer
  • A. Configure APs as Air Monitors
  • B. Configure rules for AP classification.
  • C. Configure preset levels for intrusion detection
  • D. Identify encryption method used in your network.

Question 21

Question
Which of the following configurations can accept a vlan pool?
Answer
  • A. Trunk native vlan
  • B. Virtual AP profile
  • C. User Role
  • D. Server derived role

Question 22

Question
When deploying Remote Mesh Portals, what is one of the purposes of the Mesh Private VLAN?
Answer
  • A. To separate wireless user traffic coming from mesh networks from non-mesh networks
  • B. To tag mesh wireless user traffic on a particular AP
  • C. To allow Mesh Points to form private vlan networks with certain users
  • D. To tag control plane traffic from Mesh points to the controller

Question 23

Question
wireless User A is associated with the Aruba AP. The Aruba controller is configured to perform L2 switching. What will be the wireless user's default gateway?
Answer
  • A. A
  • B. B
  • C. C
  • D. D

Question 24

Question
A user has called technical support because they cannot see any of their APs in building one. You perform the "show" command as illustrated above. What can you conclude about these two APs from this output?
Answer
  • A. the GRE for the APs terminate on two different controllers: 10.1.80.150 and 10.1.80.151
  • B. the system will not function because there is no building1 group defined
  • C. the building1 APs are configured to not accept any user connections
  • D. the user needs to configure his client to use the b/g band
  • E. the user needs to configure his client to use the a band

Question 25

Question
You want to locate a wireless device on the controller GUI. You go to the Clients list from the Monitoring tab and click the Locate button but the controller is unable to locate the client. Which could be the possible reasons for the error? (Choose all of the correct answers.)
Answer
  • A. No floor plan exists
  • B. Only 2 APs can hear the client
  • C. The client is not a valid client
  • D. No client was selected

Question 26

Question
When an Aruba 6000 controller has two M3 modules installed, for which uses may the modules be used? (Choose all the correct answers.)
Answer
  • A. hot standby operations
  • B. VRRP backup
  • C. higher AP density per switch chassis
  • D. Active-Active masters

Question 27

Question
In a master-local controller scenario, where is the mobility domain defined?
Answer
  • A. the AP group
  • B. the master controller
  • C. the local controller
  • D. the master and the local controllers

Question 28

Question
An Aruba based network has a Master and four local controllers deployed. But one of the locals, a new installation, is not seen by the Master. What might be wrong? Choose all that apply.
Answer
  • A. PAPI is not enabled on the local controller
  • B. The master controller can only support three local controllers.
  • C. IPSec is blocked by the internal network between the local and the master controllers.
  • D. The passphrase does not match on the master and local controllers.
  • E. GRE is blocked between the master and local controllers.

Question 29

Question
In the above diagram, the system shows two Aruba access points and a wired user. Which VLANs do NOT need to be configured on link A between the L2 switch and router to support the wireless users?
Answer
  • • A. 101 and 102
  • • B. 101 and 103
  • • C. 102 and 103

Question 30

Question
A port firewall policy is applied to a trunk port that denies controller access. An allow all Vlan firewall policy is applied to VLAN 33 on the same port. A user connected to VLAN 33 on that port attempts to gain access to the controller. What happens next?
Answer
  • A. The Port policy is applied, therefore no controller access
  • B. The Vlan policy is applied, then the port policy, therefore no controller access
  • C. The Vlan policy is applied, therefore access to the controller is allowed
  • D. You cannot place a firewall policy on a Ports Vlan when the Port already has a policy, therefore no controller access
  • E. When locally connected to a controllers port you always have controller access

Question 31

Question
Referring to the diagram provided for this question, an employee brought an unauthorized AP from home, but did not attach it to the LAN infrastructure. The APs are in the VLANs as shown in the diagram. Only AP1 is within RF range of the employee AP. By default, how will the Aruba system classify the employee's AP?
Answer
  • A. an AP
  • B. an AM
  • C. a Rogue AP
  • D. an Interfering AP
  • E. a valid workstation

Question 32

Question
When the controller is configured for Captive Portal and the user is only required to provide an email address for authentication, which option is configured in the gui?
Answer
  • • A. enable termination
  • • B. enable guest logon
  • • C. enable user logon
  • • D. eap method

Question 33

Question
What is the purpose of Mesh Clusters?
Answer
  • A. To separate Mesh points and Mesh Portals
  • B. To make sure that mesh points and portals with the same VAPs are not in the same cluster
  • C. To create a group of mesh points and mesh portals that create mesh links with each other using the same 802.11 connection settings
  • D. To cluster mesh APs of the same model together

Question 34

Question
An Aruba 650 controller is functioning as a standby Master. How many APs can it control while in standby mode?
Answer
  • A. 0
  • B. 16
  • C. 24
  • D. 128
  • E. 256

Question 35

Question
Which parameter does a Master switch use to determine where a provisioned AP should terminate its GRE tunnel?
Answer
  • A. at the IP address of the AP
  • B. the MAC address of the AP
  • C. the IP address of the switch nearest to the AP
  • D. the name and group settings of the AP
  • E. based on the VLAN of the AP

Question 36

Question
A client attaches to a secure jack interface set to untrusted. But when the client tries to access the captive portal page, the following message appears, Web Authentication is not enabled. What might be wrong? Choose all that apply.
Answer
  • A. The client has the browser provisioned with proxy settings.
  • B. The controller port needs to be set to trusted.
  • C. A “aaa” profile needs to be selected on the Wired Access page.
  • D. A Captive Portal profile needs to be assigned to the initial role.
  • E. Web Authentication cannot be used in this way.

Question 37

Question
What settings need to be changed on a factory default AP in order for it to use ADP to discover the Aruba Controller?
Answer
  • A. DNS of the controller
  • B. Static route
  • C. AP group
  • D. None

Question 38

Question
A client device associates with an SSID provisioned with 802.1X authentication. The client is set for LEAP authentication. EAP termination (AAA Fastconnect) is enabled on the controller. But the client continuously cycles through the authentication process. Which of the following could cause this?
Answer
  • A. The Radius server is rejecting the client credentials.
  • B. The client has an expired or revoked server certificate.
  • C. The DHCP server is not enabled.
  • D. The VLAN is missing for the SSID.
  • E. The controller does not support LEAP in this mode.

Question 39

Question
An AP resolved DNS and found the master controller. How will this AP be redirected to a Local controller?
Answer
  • A. Based on the AP-Groups CONTROLLER-IP attribute
  • B. Based on the AP-Groups LMS-IP attribute
  • C. In AP-provisioning set the LMS-IP attribute
  • D. Must be statically configure to find the local controller
  • E. In AP-Provisioning set the CONTROLLER-IP attribute

Question 40

Question
Referring to the diagram provided for this question, if the Aruba controller is configured to perform L3 switching, what will be the wireless user's default gateway?
Answer
  • A. A
  • B. B
  • C. C
  • D. D

Question 41

Question
A 3200 controller has 32 PEF-NG license, 16 RFProtect license and 32 AP licenses, how many AP's can terminate on the controller?
Answer
  • A. 32 Campus APs
  • B. 32 Campus and 32 Remote APs
  • C. 16 Campus APs
  • D. 16 Remote APs

Question 42

Question
Which of the following needs to be done prior to attempting to use the GUI quick setup of a factory defaulted Aruba S3500 Mobility Access Switch?
Answer
  • A. Set the S3500 IP address to the 172.16.0.0 range
  • B. Quick-Setup needs to be enabled on the LCD Panel
  • C. Connect the S3500 to the network for DHCP
  • D. Set the laptop IP address to the 192.168.0.0 range

Question 43

Question
A 3200 controller has 16 PEF-NG license, 16 RFProtect license. There are 10 Campus Aps terminating on the controller, how many remote AP's can terminate on the controller?
Answer
  • A. 6
  • B. 16
  • C. 24
  • D. 32

Question 44

Question
(group8) #show ap arm history ap-name AP1 Interface: wifi0 Referring to the output above, what can you conclude about AP1?
Answer
  • A. This device is scanning channels
  • B. This device is unstable because the channel assignment changed.
  • C. The device changed channels recently.
  • D. The device changed channels and power levels recently.
  • E. The device is transmitting at maximum power levels.

Question 45

Question
Referring to the diagram provided for this question, in which locations must you define the new data VLANs for wireless client traffic? (Choose all the correct answers.)
Answer
  • A. in all L2 switches where an Aruba AP is physically connected
  • B. in all APs and the L2 switches to which they are connected
  • C. in the Aruba controller and the router it's connected to in an L2 deployment
  • D. in the routers and switches where the APs are physically connected
  • E. only on the Aruba controller in an L3 deployment

Question 46

Question
When configuring split tunnel mode on a Remote AP (RAP) where is the routing function for the split tunnel defined?
Answer
  • A. On the IP routing tab in the configuration screen.
  • B. On the AP provisioning screen.
  • C. The RAP uses OSPF for routing.
  • D. In the Firewall policy.

Question 47

Question
In a network of 1 Master and 2 Local, to terminate 8 APs on each controller with Local redundancy what should be the license count on all controllers?
Answer
  • A. 16 AP license on all controllers
  • B. 8 AP license on Master 16 AP license on both locals
  • C. 8 AP license on all controllers
  • D. 1 AP license on Master and 16 AP license on both locals

Question 48

Question
Referring to the above screen capture, which tab tells you which licenses are installed on the controller?
Answer
  • A. Controller Summary
  • B. All Wlan Controllers
  • C. Process Logs
  • D. Inventory

Question 49

Question
In the diagram provided for this question, four buildings are identified on a college campus. Most of the wireless LAN traffic will be from students accessing the internet. According to Aruba best practices, which building is the best location to install the Aruba mobility controller?
Answer
  • A. data center
  • B. dormitory
  • C. server farm
  • D. library

Question 50

Question
Which of the following statements is not true about the remote node?
Answer
  • A. Remote Node builds an Ipsec tunnel to Remote Node Master?
  • B. A RN-Master can be either a Master or a Local controller
  • C. Remote Node is only used for Remote AP termination
  • D. Only L3 configurations are pushed from a RN-Master to an Remote Node
  • E. Remote Node can only be configured using the CLI

Question 51

Question
Which feature must be enabled for self-healing to be performed?
Answer
  • A. ADP
  • B. ARM
  • C. IDS
  • D. PEF

Question 52

Question
In tunneled node configuration the Aruba 3500 mobility access switch acts as a?
Answer
  • A. Authentication server
  • B. Security gateway
  • C. Wired to Wireless AP
  • D. Wired AP

Question 53

Question
When configuring Captive Portal, which protocols are supported when accessing the Captive Portal? (Choose all the correct answers.)
Answer
  • A. https
  • B. socks
  • C. http
  • D. telnet

Question 54

Question
How can a role be assigned to a user, connected to an untrusted port, on a controller?
Answer
  • A. An initial Role can be assigned
  • B. Roles are assigned to users connected to a trusted port
  • C. Captive Portal default Role can be assigned
  • D. Adding a wired AAA profile to a VLAN on the port
  • E. The Role assigned to the Port

Question 55

Question
Based on the above screen capture for Interfering APs, what can you conclude?
Answer
  • A. The APs must be connected to the Aruba network
  • B. The APs are classified as interfering because they are all transmitting on channel 6.
  • C. There must not be any evidence that the APs are attached to the wired network.
  • D. These APs are classified as interfering because they are not Aruba APs.
  • E. They are classified as interfering because they are running in b mode.

Question 56

Question
A Remote AP provisioned with an SSID in Bridged forwarding mode has which one of the following characteristics?
Answer
  • A. The client obtains its IP address from the controller.
  • B. The client's default gateway must be the controller.
  • C. The client traffic is forwarded through a GRE tunnel to the controller.
  • D. The client's default gateway may be the Access Point or a local gateway.
  • E. The client's authentication must be 802.1X.

Question 57

Question
An AP is not communicating with the controller. Upon investigation you find that the AP is not discovering its controller through DNS. Instead, it received a DHCP reply with option 43 specifying the SIP server's IP address. How do you resolve this problem?
Answer
  • A. Statically configure the AP to ignore Option 43
  • B. Remove the option 43 configuration on the DHCP server
  • C. Statically configure the AP to only use DNS resolution and not other dynamic discovery methods
  • D. After failing option 43 the AP should have proceeded with ADP, therefore the AP is faulty and needs to be replaced
  • E. The AP should be purged

Question 58

Question
Which two factors are important when choosing a controller model to support tunneled node?
Answer
  • A. Number of Wired Aps
  • B. Controller configuration
  • C. Number of Tunneled Ports
  • D. Layer 3 network architecture

Question 59

Question
Referring to the screen captures provided for this question, what can you conclude about the two clients from the Packet Rate Distribution screens?
Answer
  • A. client #1 does not support 802.11a
  • B. client #2 does not support 802.11g
  • C. client #1 is further from the AP than client #2
  • D. client #2 is further from the AP than client #1

Question 60

Question
Which of the following functions cannot be done in the offline Visual RF plan?
Answer
  • A. Create a BOM
  • B. Exporting a plan to the controller
  • C. Tracking AP's and client devices
  • D. Replicating floor plans

Question 61

Question
In the above diagram, the system shows two Aruba access points. Which VLANs must be configured on trunk link D between the router and Aruba controller to support wireless users when the controller is provisioned for L2 operations? (Choose all of the correct answers.)
Answer
  • A. 10
  • B. 101
  • C. 102
  • D. 103
  • E. 104

Question 62

Question
Which protocol does the Aruba controller utilize for controller redundancy?
Answer
  • A. HSRP
  • B. VRRP
  • C. VPN
  • D. GRE
  • E. IP-IP

Question 63

Question
Which of the following commands is most useful in showing the traffic of an individual user?
Answer
  • A. show datapath session table
  • B. show acl hits
  • C. show rights
  • D. show firewall

Question 64

Question
Aruba APs must be physically attached to the Aruba switch.
Answer
  • True
  • False

Question 65

Question
A Remote AP provisioned with an SSID in the operational mode always has which one of the following characteristics?
Answer
  • A. The RAP must obtain its configuration from the controller each time it boots.
  • B. The operational mode applies to tunnel and split-tunnel forwarding SSID.
  • C. The operational mode applies to a Bridge forwarding SSID.
  • D. The RAP does not support this mode.
  • E. The SSID only appears if the AP does not see the controller.

Question 66

Question
A client device associates with an SSID provisioned with 802.1X authentication. The client is set for PEAP authentication. EAP termination (AAA Fastconnect) is disabled on the controller. But the client continuously cycles through the authentication process. Which of the following could cause this? Choose all that apply.
Answer
  • A. The client is provisioned with the wrong EAP type.
  • B. The client has an expired or revoked server certificate.
  • C. The DHCP server is not enabled.
  • D. The VLAN is missing for the SSID.
  • E. The controller does not support PEAP in this mode.

Question 67

Question
As illustrated in the above diagram and screen capture, a wireless hacker injects messages into your network to detach a client from your Aruba AP. What action should you take to identify and prevent the Intruder from connecting to your system? (Choose all of the correct answers.)
Answer
  • A. enable Detect disconnect Station Attack
  • B. enable Spoofed Deauth Blacklist
  • C. take no action as there is no protection against this form of attack
  • D. take no action as the Aruba system ignores this attack because it is against the client

Question 68

Question
One hundred (100) additional APs were deployed in an existing network. But some APs are not able to connect to the lms-ip address, even though all of the APs belong to the same AP group. What might be wrong? Choose all possibilities.
Answer
  • A. The AP isn't getting an IP address
  • B. The AP has the wrong lms-ip address setting.
  • C. There is a firewall between some APs and the controller blocking PAPI.
  • D. The controller does not support that many APs in a single AP-Group.
  • E. The controller does not have enough AP licenses to support the

Question 69

Question
In the diagram provided for this question, the Aruba controller terminates one end of a GRE tunnel that carries wireless user traffic. Where does the other end terminate?
Answer
  • A. A
  • B. B
  • C. C
  • D. D

Question 70

Question
What are the different methods of configuring AP redundancy between 2 local controllers?
Answer
  • A. Active-Active VRRP
  • B. Configure the locals as remote nodes
  • C. Use named VLANS
  • D. LMS and Backup LMS IP
  • E. AP Redundancy can only be configured between a Master and Local

Question 71

Question
An access port has been placed in Untrusted mode. The Vlan on the port is in Trusted mode.
Answer
  • A. The traffic is trusted since the Vlan is trusted
  • B. The traffic is untrusted since the port is untrusted
  • C. This is an invalid configurations, both must be set the same
  • D. You cannot set Vlans as trusted or untrusted
  • E. Only traffic from that specific Vlan is trusted, all other traffic is untrusted

Question 72

Question
What does Aruba's RF self-healing require to operate?
Answer
  • A. LMS-IP
  • B. Backup LMS-IP
  • C. VRRP
  • D. None of the above

Question 73

Question
With Visual RF location tracking, show location history can be set for a maximum of?
Answer
  • A. 1 hour
  • B. 6 hours
  • C. 24 hours
  • D. 12 hours

Question 74

Question
Which of the following are valid RAP forwarding modes (select all that apply)?
Answer
  • A. Tunnel
  • B. Bridge
  • C. Split-Tunnel
  • D. Backup

Question 75

Question
In Visual RF, Floor plans can be imported in what format?
Answer
  • A. Visio
  • B. PNG
  • C. PDF
  • D. GIF
  • E. CAD

Question 76

Question
When direct consoled to an AP, what is the command sequence to factory default the AP and re-bootstrap?
Answer
  • A. setenv bootstat init
  • B. setenv master init, boot
  • C. purge, save, boot
  • D. init, save, boot

Question 77

Question
A network administrator runs a 'show ap mesh topology' command on an Aruba 620 controller. Which of the following information would he be able to obtain? Choose all that apply.
Answer
  • A. The number of mesh nodes in the network
  • B. The channel settings of each mesh node
  • C. The parent of each mesh node
  • D. The number of hops each mesh points has to make to reach the mesh portal

Question 78

Question
An Aruba controller is configured with the correct IP address and gateway information and is connected to the corporate LAN via a core layer 2 switch. An access point is provisioned with AP name and group and connected to a different switch on the corporate LAN that has IP connectivity to the core layer 2 switch. The AP powers on and connects to the LAN, but the wireless radios do not power on. Which could cause this condition? (Choose all of the correct answers.)
Answer
  • A. the layer 2 switches have ACLs that block GRE traffic
  • B. the layer 2 switches are configured to block multicast traffic
  • C. a DHCP server is not configured for the segment to which the AP is connected
  • D. the AP name needs to be configured on the Aruba controller

Question 79

Question
When APs boot up, in which order do they discover a controller?
Answer
  • A. DNS, DHCP, ADP multicast, ADP unicast, static
  • B. static, DNS, DHCP, ADP broadcast, ADP multicast
  • C. static, DHCP, ADP multicast, ADP broadcast, DNS
  • D. static, DHCP, DNS, ADP multicast, ADP broadcast

Question 80

Question
Which method can APs use to discover a controller?
Answer
  • A. DHCP
  • B. Dynamic DNS (DDNS)
  • C. PnP
  • D. PAPI

Question 81

Question
In a network setup with 1 master, 1 backup master and 5 local controllers where should the mobility domains be enabled.
Answer
  • A. Only on the master controller
  • B. All the local controllers in the network
  • C. All the controllers where the client is allowed to roam
  • D. Master and backup master

Question 82

Question
An Aruba RAP2 model can authenticate its IPSec tunnel to a controller using which of the following methods? Choose all that apply.
Answer
  • A. 802.1X
  • B. Captive Portal
  • C. IP address authentication
  • E. Certificate and MAC address authentication.

Question 83

Question
Which command, when executed on a master controller, will show the APs connected to an lms?
Answer
  • A. show stm connectivity
  • B. show ap active
  • C. show ap database
  • D. show ap bss-table

Question 84

Question
Which is the default management VLAN on an Aruba switch?
Answer
  • A. VLAN 10
  • B. VLAN 1
  • C. VLAN 100
  • D. None, it must be defined

Question 85

Question
A Remote AP provisioned in Split-Tunnel Forwarding mode has which of the following characteristics? Choose all that apply.
Answer
  • A. Local traffic first goes to the controller and is then split back to the local network.
  • B. Traffic is IPSec encrypted before it is sent to the controller.
  • C. The user role must have a “Permit” statement in order to locally bridge the traffic.
  • D. The user role must have a “route src-nat” statement to locally bridge the traffic.
  • E. The RAP uses UDP 4500 to send traffic to the controller.

Question 86

Question
How many Aruba controllers can be added to a single mobility domain?
Answer
  • A. 64 controllers of any type
  • B. 128 controllers supporting 2000 users
  • C. 256 controllers with no more than 1024 subnets
  • D. Controllers supporting up to 6000 AP's
  • E. There is no controller limit

Question 87

Question
A controller is provisioned in L3 Mode for Wireless Users. What must be configured on the controller to enable DHCP requests to an external DHCP server?
Answer
  • A. an IP helper command
  • B. the IP address of the DNS server
  • C. the IP address of the APs
  • D. the subnet address of the DHCP server

Question 88

Question
When does a backup SSID configured on a Remote AP (RAP) begin broadcasting?
Answer
  • A. When the GRE tunnel to the controller is established.
  • B. When the IPSec tunnel to the controller is established.
  • C. When the controller cannot be reached.
  • D. When bridging is required for guest users.

Question 89

Question
Referring to the diagram provided for this question, an employee brought an unauthorized AP from home and attached it to the cubicle Ethernet port as shown in the diagram. The APs are in VLANs as shown in the diagram. Only AP1 is within RF range. How will the Aruba system classify this AP?
Answer
  • A. an AP
  • B. an AM
  • C. a Rogue AP
  • D. an Interfering AP
  • E. a workstation

Question 90

Question
Screenshots of the Captive Portal authentication profile and server group of a guest network are displayed above. How was the user authenticated?
Answer
  • A. with a radius server called Radius01
  • B. with the Internal database
  • C. with a radius server called Internal
  • D. with another form of authentication
  • E. user wasn't authenticated against any server
Show full summary Hide full summary

Similar

ACMP- Aruba Certified Mobility Professional
Howard Clavijo
Photosynthesis and Respiration Quiz
Selam H
Food Chains and Food Webs Quiz
Selam H
Epithelial tissue
Morgan Morgan
IB SL Biology: Cells
mcgowan-w-10
EBW: Onderwerp 1, Gr7 (KABV)
mvloch
Evolution
rebeccachelsea
Peace and Conflict Flashcards - Edexcel GCSE Religious Studies Unit 8
nicolalennon12
PHR and SPHR Practice Questions
Elizabeth Rogers8284
Britain and World War 2
Sarah Egan
Core 1.3 Energy Generation, Storage and Use
T Andrews