HP HPE6-A78 - HPE Network Security Associate Exam

Question #11 (Topic: Exam A)
What is a use case for Transport Layer Security (TLS)?
A. to enable a client and a server to establish secure communications for another protocol B. to enable two parties to asymmetrically encrypt and authenticate all data that passes between them C. to establish a framework for devices to determine when to trust other devices’ certificates D. to provide a secure alternative to certificate authentication that is easier to implement
Answer: A
Question #12 (Topic: Exam A)
An MC has a WLAN that enforces WPA3-Enterprise with authentication to HPE Aruba Networking ClearPass Policy Manager (CPPM). The WLAN's default role is set to denyall. A Mobility Controller (MC) has these roles configured on it:
- authenticated
- denyall
- guest
- accounting
- guest-logon
- logon
- stateful-dot1x
- switch-logon
- voice
A client authenticates. CPPM returns an Access-Accept with an Aruba-User-Role VSA set to accountants. What role does the client receive?
A. guest B. authenticated C. denyall D. logon
Answer: C
Question #13 (Topic: Exam A)
You have configured a WLAN to use Personal security with the WPA3 version.
How does the WLAN handle authentication?
A. Users undergo EAP authentication with a RADIUS server. B. Users authenticate by submitting a preshared key that is shared by all users on the SSID. C. Users authenticate by submitting a preshared key that is unique to their session. D. Users undergo CHAP or MSCHAPv2 authentication to a RADIUS server.
Answer: B
Question #14 (Topic: Exam A)
What is a use case for tunneling traffic between an HPE Aruba Networking switch and an HPE Aruba Networking Mobility Controller (MC)?
A. simplifying network infrastructure management by using the MC to push configurations to the switches B. securing the network infrastructure control plane by creating a virtual out-of-band-management network C. applying firewall policies and deep packet inspection to wired clients D. enhancing the security of communications from the access layer to the core with data encryption
Answer: C
Question #15 (Topic: Exam A)
A company has AOS-CX switches deployed in a two-tier topology that uses OSPF routing at the core.
You need to prevent DoS attacks. To meet this need, what is one technology that you could apply to switch control plane? (Choose two.)
A. default CoPP policy B. custom CoPP policy C. OSPF authentication D. BGP authentication E. BPDU filtering
Answer: AB
Download Exam
Page: 3 / 12
Total 60 questions