Labour Day Special - 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: c4sdisc65

Note! HPE6-A46 has been withdrawn.

HPE6-A46 Practice Exam Questions with Answers Delta - Implementing Aruba Campus Switching Solutions Certification

Question # 6

Refer to the exhibits:

Exhibit 1

HPE6-A46 question answer

Exhibit 2

HPE6-A46 question answer

A network administrator at a university notices high utilization on links between the access layer and core. The output shown in the exhibit is characteristic of samples taken several times an hour during congestion. The administrator suspects file sharing and other unauthorized traffic, and decides to use an ACL to permit only HTTP, HTTPS, and a few other authorized types of traffic.

How can the administrator apply the ACL to address both the security and the congestion problem?

A.

as an inbound PACL on the link aggregations on the access switches

B.

as an inbound VACL on the student VLAN on Switch-1

C.

as an inbound PACL on the link aggregations on Switch-1

D.

as an inbound VACL on the student VLAN on the access switches

Full Access
Question # 7

Refer to the exhibit.

HPE6-A46 question answer

Switch-1 is an AOS-switch that is operating at factory default settings for QoS and has type of service disabled. It receives a frame with 802.1p value 5 on trk1, on VLAN 2. How does the switch treat the frame when it forwards it on TRK2?

A.

It forwards it with higher than normal priority and 802.1p 0.

B.

It forwards it with normal priority and 802.1p 0.

C.

It forwards it with normal priority and 802.1p 5

D.

It forwards it with higher than normal priority and 802.1p 5.

Full Access
Question # 8

Two AOS-Switches connect on VLAN 10 in OSPF Area 1, which is defined as a stub area on both. Which mismatch can cause OSPF routers to lose adjacency?

A.

The administrator adds the backbone area to just one of the routers.

B.

The administrator enables graceful restart, or nonstop switching, on just one of the routers.

C.

The administrator enables jumbo frames on VLAN 10 on just one of the routers.

D.

The administrator adds the no-summary option to Area 1 on just one of the routers.

Full Access
Question # 9

Network administrators need to track when traffic matches deny entry in an ACL applied to a port. They want the alert to be sent to a syslog server that is already set up to send logs.

What should administrators do to enable alerts?

A.

Specify the log option for the ACL entry, and enable ACL debugging.

B.

Set the debug destination to session, and enable ACL debugging.

C.

Enable ACL debugging, and enable SNMP port security traps.

D.

Specify the log option for the ACL entry, and enable SNMP port security traps.

Full Access
Question # 10

Refer to the exhibit.

HPE6-A46 question answer

Which issue needs to be addressed in this design?

A.

a new plan for ISP redundancy, because Switch-1 can only support one AS number, so it cannot connect to both ISP 1 and ISP 2

B.

an adjustment to the physical links, because both links to the ISP routers must be on the commander to prevent a split-brain situation

C.

a new way to provide core redundancy, because AOS-Switches in VSF fabrics can only establish BGP relationships with AOS-Switches

D.

a way to ensure that the company private network does not become a transit for traffic between ISP 1 and ISP 2

Full Access
Question # 11

A company requires AOS-Switches at the campus core. The switches:

  • Will act as the default gateways for several campus VLANs
  • Must provide redundancy for their services and tolerate the loss of a link or an entire switch
  • Must recover from the failure of one of the switches within a second or less

VRRP and MSTP are proposed to meet these requirements. What is an issue with this proposal?

A.

VRRP provides redundancy against lost links but not a failed switch.

B.

VRRP provides routing redundancy but not default gateway redundancy.

C.

VRRP does not interoperate with MSTP.

D.

VRRP takes longer than a second to fail over.

Full Access
Question # 12

Refer to the exhibit.

HPE6-A46 question answer

The exhibit shows configurations for interface 5 and VLAN 20. Note that DHCP snooping and ARP protection are also enabled.

A network administrator finds that interface 5 on an AOS-Switch is disabled. The administrator re-enables the interface, but it shuts down again. What should the administrator investigate?

A.

a device that sends too much unicast traffic

B.

rogue DHCP server

C.

a loop on the interface

D.

a device that sends unauthorized ARP messages

Full Access
Question # 13

Refer to the exhibit.

HPE6-A46 question answer

A network administrator wants to add the protections of root guard to the network. Based on the spanning tree topology, on which ports should the network administrator implement root guard?

A.

3-24

B.

1 and 2

C.

A1 and A2

D.

2 and A3

Full Access
Question # 14

Refer to the exhibit.

HPE6-A46 question answer

Switch-1 is routing traffic to 192.0.2.0/24 over a less-than-optimal path. Which issue could prevent Switch-1 from selecting the first route listed in the table as a best BGP route?

A.

It does not have AS 46501 configured on it.

B.

It has no route to 192.168.2.1 in its IP routing table.

C.

It has no network statement for 192.168.2.0/24 in its BGP configuration.

D.

It has learned the same route using OSPF.

Full Access
Question # 15

A company wants to implement role-based tunneled node on AOS-Switches. Which solution should be included in the plan to help apply the roles?

A.

a RADIUS server, such as Aruba ClearPass

B.

an SNMP server, such as Aruba AirWave

C.

Aruba Mobility Manager (MM)

D.

Aruba Meridian

Full Access
Question # 16

Refer to the exhibits.

Exhibit 1

HPE6-A46 question answer

Exhibit 2

HPE6-A46 question answer

The network administrator needs to set up BGP between the two company switches, Switch-1 and Switch-2. The BGP connection does not establish. Based on the exhibits, what does the administrator need to do to fix the issue?

A.

Set the update source for the neighbor to the local loopback interface on each switch.

B.

Enter the network command for 10.0.0.0/24 in the router BGP mode on each switch.

C.

Enable the multihop option for the neighbor on each of the switches.

D.

Enable BGP on the interfaces that the switches use to reach each other.

Full Access
Question # 17

A company has AOS-Switches deployed at sites with inexperienced IT staff. The main office network administrators want to track if configurations change on branch switches.

What should be set up for this purpose?

A.

an SNMP trap

B.

an RMON alarm

C.

an IP SLA profile

D.

an auto-config server

Full Access
Question # 18

A company SNMP policy requires:

  • Read-write access to AOS-Switches is controlled by SNMPv3.
  • Read-only access to AOS-Switches is permitted with SNMPv3 or SNMPv2c to support legacy applications.

Administrators enable SNMPv3 on the AOS-Switches and set up the proper users and communities. What else should they do on the AOS-Switches to implement this policy?

A.

Leave SNMPv2c enabled, and enable SNMPv3 only.

B.

Leave SNMPv2c enabled, and enable SNMPv3 restricted access.

C.

Disable SNMPv2c, and leave the default public community.

D.

Disable SNMPv2c, and enable SNMPv3 restricted access.

Full Access
Question # 19

Refer to the exhibit.

HPE6-A46 question answer

A network administrator needs to deploy AOS-Switches that implement port-based tunneled node. Their Aruba controller has IP address 10.1.10.5/24. The architect has assigned tunneled-node endpoints to VLAN 20.

What is one issue with the current configuration planned for VLAN 20 on the switch?

A.

VLAN 20 must have GRE enabled on it.

B.

VLAN 20 cannot have an IP address.

C.

VLAN 20 must have an IP address in the same subnet as the controller.

D.

VLAN 20 must not enable jumbo frames.

Full Access
Question # 20

AOS-Switches authenticate guests to ClearPass with captive portal. An administrator notices that some guests are unable to reach the captive portal page. What will resolve this issue?

A.

Permit DNS on the ClearPass Portal

B.

Permit DHCP on the ClearPass Portal.

C.

Permit HTTP or HTTPS on the ClearPass Portal.

D.

Permit Allow All MAC-Auth on the ClearPass Portal.

Full Access
Question # 21

A network administrator needs to create a QoS policy on an AOS-Switch. What is one component that the administrator must create before the policy?

A.

an extended IPv4 ACL

B.

a traffic behavior

C.

an extended MAC ACL

D.

a traffic class

Full Access
Question # 22

A network administrator enters this command on an AOS-Switch:

Switch(config)# radius-server host 10.1.3.3 time-window 60

Which behavior will the switch show?

A.

It will wait one minute for a response from the RADIUS server before it sends another message

B.

It will reject RADIUS server change of authorization (CoA) messages with timestamps that are more than one minute old

C.

It will maintain idle user sessions for one minute before it re-authenticates the user to the RADIUS server

D.

It will give supplicants up to one minute to respond to RADIUS challenges before it considers authentication failed

Full Access
Question # 23

What is one difference between BPDU protection and root guard?

A.

BPDU protection works with RPVST+, RSTP, and MSTP. Root guard works with RSTP or MSTP, but not RPVST+.

B.

BPDU protection blocks a port if it receives any BPDU, but root guard blocks a port only if the BPDU indicates a better root path.

C.

BPDU protection is typically implemented on edge ports, but root guard is typically implemented on uplinks with the root port role.

D.

BPDU protection drops BPDUs received on a port, but does not block the port. Root guard blocks the port if it receives a BPDU.

Full Access
Question # 24

Refer to the exhibits.

Exhibit 1.

HPE6-A46 question answer

Exhibit 2.

HPE6-A46 question answer

The VoIP phone connects, authenticates successfully, and is dynamically assigned to tagged VLAN 6. The endpoint connected to the phone does not authenticate but starts to send untagged traffic.

How does the switch handle this traffic?

A.

It forwards the traffic in VLAN 5.

B.

It relays the traffic to the RADIUS server for authentication.

C.

It forwards the traffic in VLAN 6.

D.

It drops the traffic.

Full Access
Question # 25

A company has AOS-Switches, Aruba ClearPass, and Aruba AirWave. A network administrator needs to set up a new switch with the same settings found on other switches in the company.

Which action is likely to be the most useful to perform the task?

A.

View usage patterns on the switches on AirWave.

B.

Retrieve the running config from ClearPass.

C.

Use the configuration audit tool on AirWave.

D.

Access the Network Device view on ClearPass.

Full Access