Best Preparations of HPE6-A79 Exam 2021 HP ACMX Unlimited 56 Questions
Focus on HPE6-A79 All-in-One Exam Guide For Quick Preparation.
NEW QUESTION 17
Refer to the exhibits.

A network administrator deploys User Based Tunneling (UBT) in a corporate network to unify the security policies enforcement. When users authenticate with 802.1X, ClearPass shows Accept results, and sends the Aruba-User-Role attribute as expected. However, the AOS-CX based switch does not seem to build the tunnel to the Mobility Controller (MC) for this user.
Why does the switch fail to run UBT for the user?
- A. The switch has not fully associated to the MC.
- B. The switch is not configured with the gateway-role.
- C. ClearPass is sending the wrong VSA type.
- D. The switch is not configured with the port-access role.
- E. ClearPass is sending the wrong Vendor ID.
Answer: E
NEW QUESTION 18
Users run Skype for Business on wireless clients with no WMM support over an Aruba Mobility Master (MM) - Mobility Controller (MC) based network. When traffic arrives at the wired network, it does not include either L2 or L3 markings.
Which configuration steps should the network administrator take to classify and mark voice and video traffic with UCC heuristics mode?
- A. Confirm OpenFlow is enabled in the user role and VAP profile. Then enable WMM in a SSID profile, and explicitly permit voice and video UDP ports in a firewall policy.
- B. Confirm the MC is the Openflow controller of the MMs and Openflow is enabled in VAP and firewall roles. Enable Skype4Business ALG in UCC profiles.
- C. Enable WMM in a VAP profile, and explicitly permit voice and video UDP ports in a firewall policy.
- D. Confirm MM is the Openflow controller of MCs and Openflow is enabled in VAP and firewall roles. Enable Skype4Business ALG in UCC profiles.
Answer: C
NEW QUESTION 19
A network administrator wants to receive a warning level alarm every time the noise floor rises above -82 dBm on any of the AP radios.
Which alarm definition must the network administrator create to accomplish this?
Answer:
Explanation:
NEW QUESTION 20
An Aruba Mobility Master (MM) - Mobility Controller (MC) solution is connected to a wired network that is ready to prioritize DSCP marked traffic. A group of WMM-enabled clients sends traffic marked at L2 only.
What must the network administrator do to map those markings to DSCP equivalent values when traffic is received by the APs?
- A. Enable WMM in the SSID profile.
- B. Enable traffic to be marked with session ACLs.
- C. Enable Skype4Business ALG Support.
- D. Enable WMM in the VAP profile.
Answer: D
NEW QUESTION 21
A company with 535 users deploys an Aruba solution with more than 1000 Aruba APs, two 7220 Mobility Controllers, and a single Mobility Master (MM) virtual appliance at the campus server farm. The MCs run a HA Fast failover group in dual mode and operate at 50% AP capacity.
If there is an MM or MC failure, the network administrator must ensure that the network is fully manageable and the MC load does not exceed 80%.
What can the network administrator do to meet these requirements?
- A. Add an MC and an MM in the server farm.
- B. Place the APs in two different AP-Groups.
- C. Create a cluster with AP load balancing.
- D. Place the APs in the same hierarchy level.
- E. Add an MM and enable DC redundancy.
- F. Enable oversubscription in the HA group.
Answer: E
NEW QUESTION 22
Refer to the exhibits.
Exhibit 1
Exhibit 2
Exhibit 3
Exhibit 4
A captive portal-based solution is deployed in a Mobility Master (MM) - Mobility Controller (MC) network. A wireless station connects to the network and attempts the authentication process. The outputs are shown in the exhibits.
Which names correlate with the authentication and captive portal servers?
- A. cp.mycompany.com is the authentication server, and ClearPass.23 is the captive portal server.
- B. ClearPass.23 is the authentication server, and MC2 is the captive portal server.
- C. ClearPass.23 is the authentication server, and cp.mycompany.com is the captive portal server.
- D. Internal database in MC2 is the authentication server, and cp.mycompany.com is the captive portal server.
Answer: C
NEW QUESTION 23
A customer wants a WLAN solution that permits Aps to terminate WPA-2 encrypted traffic from different SSIDs to different geographic locations where non-related IT departments will take care of enforcing security policies. A key requirement is to minimize network congestion, overhead, and delay while providing data privacy from the client to the security policy enforcement point. Therefore, the solution must use the shortest path from source to destination.
Which Aruba feature best accommodates this scenario?
- A. Inter MC GRE tunnels
- B. VIA
- C. Inter MC S2S IPsec tunnels
- D. Multizone Aps
- E. RAPs
Answer: E
NEW QUESTION 24
Refer to the exhibit.
A network administrator deploys a Mobility Master (MM) - Mobility Controller (MC) network with Aps in different locations. Users in one of the locations report that the WiFi network works fine for several hours, and then they are suddenly disconnected. This symptom may happen at any time, up to three times every day, and lasts no more than two minutes.
After some research, the network administrator logs into the MM and reviews the output shown in the exhibit.
Based on this information, what is the most likely reason users get disconnected?
- A. Adaptive Radio Management is reacting to RF events.
- B. AirMatch is applying a scheduled optimization solution.
- C. Users in the 2.4 GHz band are being affected by high interference.
- D. AirMatch is reacting to non-scheduled RF events.
Answer: C
NEW QUESTION 25
Refer to the exhibit.
An organization provides WiFi access through a corporate SSID with an Aruba Mobility Master (MM) - Mobility Controller (MC) network that includes PEF functions. The organization wants to have a single firewall policy configured and applied to the employee role.
This policy must allow users to reach Web, FTP, and DNS services, as shown in the exhibit. Other services should be exclusive to other roles. The client NICs should receive IP settings dynamically.
Which policy design meets the organization's requirements while minimizing the number of policy rules?

- A. Option D
- B. Option B
- C. Option A
- D. Option C
Answer: D
NEW QUESTION 26
Refer to the exhibits.


A network administrator has fully deployed a WPA3 based WLAN with 802.1X authentication. Later he defined corp-employee as the default user-role for the 802.1X authentication method in the aaa profile. When testing the setup he realizes the client gets the "guest" role.
What is the reason "corp-employee" user role was not assigned?
- A. The administrator forgot to map a dotlx profile to the corp-employee aaa profile.
- B. The administrator forgot to enable PEFNG feature set on the Mobility Master.
- C. MC 1 has not received the configuration from the mobility master yet.
- D. The Mobility Master lacks MM-VA licenses; therefore, it shares partial configuration only.
Answer: C
NEW QUESTION 27
Refer to the exhibit.
A network engineer deploys two different DHCP pools in an Instant AP (IAP) cluster for WLANs that will have connectivity to a remote site using Aruba IPSec.
Based on the output shown in the exhibit, which IAP-VPN DHCP modes are being used?
- A. local L3 and distributed L2
- B. local L3 and centralized L2
- C. distributed L3 and centralized L2
- D. centralized L3 and distributed L2
Answer: D
NEW QUESTION 28
Refer to the exhibit.
A 7008 Branch Office Controller (BOC) is deployed in a remote office behind a core router. This core does not support 802.1q encapsulation. The Mobility Controller (MC) is the gateway for two tunneling mode SSIDs, as shown in the exhibit.
Which two different configuration options ensure that wireless users are able to reach the branch network through the router? (Choose two.)
- A. Configure all ports of the BOC as access ports on the controller VLAN, and change the gateway of clients to the core router IP.
- B. Configure the uplink of the BOC as an access port on the controller VLAN, and add static routes in the router for the SSID VLAN subnets.
- C. Configure the uplink of the BOC as a trunk port, tagging the controller and the SSOD VLANs, and enable NAT for the SSID VLANs.
- D. Configure the uplink of the BOC as a trunk port that permits the controller and the SSID VLANs. The controller VLAN must be native.
- E. Configure the uplink of the BOC as an access port on the controller VLAN, and enable NAT for the SSID VLANs.
Answer: B,C
NEW QUESTION 29
Refer to the exhibit.
After deploying several cluster pairs, the network administrator notices that all APs assigned to Cluster1 communicate with MC1 instead of being distributed between members of the cluster. Also, no IP addresses are shown under the Standby IP column.
What should the network administrator do to fix this situation?
- A. Rename the cluster profile as "CLUSTER1".
- B. Apply the same cluster profile to both members.
- C. Enable Cluster AP load balancing.
- D. Place MCs at the same hierarchical group level.
Answer: A
NEW QUESTION 30
Refer to the exhibit.
A network administrator completes the initial configuration dialog of the Mobility Controllers (MCs) and they join the Mobility Master (MM) for the first time. After the MM-MC association process, network administrator only creates AP groups, VAPs, and roles. Next, the network administrator proceeds with the configuration of the policies and creates the policy shown in the exhibit.
Which additional steps must be done to make sure this configuration takes effect over the contractor users?
- A. Option D
- B. Option B
- C. Option A
- D. Option C
Answer: D
NEW QUESTION 31
A joint venture between two companies results in a fully functional WLAN Aruba solution. The network administrator uses the following script to integrate the WLAN solution with two radius servers, radius1 and radius2.
While all users authenticate with [email protected] type of credentials, radius1 has user accounts with the domain name portion.
Which additional configuration is required to authenticate corp1.com users with radius1 and corp2 users with radius2?
- A. Option D
- B. Option B
- C. Option A
- D. Option C
Answer: C
NEW QUESTION 32
Refer to the exhibit.
A network administrator is evaluating a deployment to validate that a user is assigned the proper role and reviews the output in the exhibit. How is the role assigned to user?
- A. The MC assigned the role based on Aruba VSAs.
- B. The MC assigned the machine authentication default user role.
- C. The MC assigned the role based on server derivation rules.
- D. The MC assigned the default role based on the authentication method.
Answer: D
NEW QUESTION 33
Refer to the exhibit:
A company acquires ten barcode scanners to run inventory tasks. These WiFi devices support WPA2-PSK security only. The network administrator deploys a WLAN named scanners using the configuration shown in the exhibit.
What must the network administrator do next to ensure that the scanner devices successfully connect to their SSID?
- A. Enable L2 Authentication Fail Through.
- B. Set internal as the MAC authentication server group.
- C. Add scanner MAC addresses in user derivation rules.
- D. Add scanner MAC addresses in the internal database.
Answer: D
NEW QUESTION 34
Refer to the exhibit.
A network administrator deploys DSCP based prioritization in the entire wired network to improve voice quality for a SIP-based IP telephony system used by the company. However, users report that calls they make from WLAN have poor audio quality, while desktop phones do not experience the same problem. The network administrator makes a test call and looks in the datapath session table.
Based on the output shown in the exhibit, what is one area that the network administrator should focus on?
- A. wired network congestion
- B. WMM support on the WLAN
- C. UCC based DSCP correction
- D. Dynamic Multicast Rate Optimization
Answer: A
NEW QUESTION 35
A network administrator wants to permit explicit SSH, FTP and HHTP(s) access to servers in the 10.100.20.5 to 10.100.20.31 range, all devices in 10.100.21.0/24 network, and a host with IP address 10.100.22.70. The services must work properly at all times.
Which configuration scripts accomplish this task with the fewer number of lines, while avoiding access to other devices not included in these ranges? (Choose two.)
- A. Option D
- B. Option E
- C. Option A
- D. Option C
- E. Option B
Answer: C,E
NEW QUESTION 36
A network administrator is in charge of a Mobility Master (MM) - Mobility Controller (MC) based network security. Recently the Air Monitors detected a Rogue AP in the network and the administrator wants to enable "Tarpit" based wireless containment.
What profile must the administrator enable "tarpit" wireless containment on?
- A. IDS profile
- B. IDS DOS profile
- C. IDS General profile
- D. IDS Unauthorized device profile
Answer: D
NEW QUESTION 37
A network administrator has racked up a 7210 Mobility Controller (MC) that will be terminating 200+ Aps on a medium-size branch office. Next, the technician cabled the appliance with 4SPF+ Direct Attached Cables (DACs) distributed between two-member switching stack and powered it up.
What must the administrator do next in the MCs to assure maximum wired bandwidth utilization?
- A. Map the four physical ports to port channel 0.
- B. Disable spanning tree and allocate unique VLANs to each port.
- C. Manually set 10Gbps speeds on all ports.
- D. Make all ports trunk interfaces and permit data VLANs.
- E. Configure the same MSTP region that the switches have.
Answer: C
NEW QUESTION 38
......
HP HPE6-A79 Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
| Topic 4 |
|
| Topic 5 |
|
| Topic 6 |
|
| Topic 7 |
|
| Topic 8 |
|
| Topic 9 |
|
| Topic 10 |
|
| Topic 11 |
|
| Topic 12 |
|
| Topic 13 |
|
Guaranteed Success with HPE6-A79 Dumps: https://www.braindumpsit.com/HPE6-A79_real-exam.html