3 Months Free Update
3 Months Free Update
3 Months Free Update
A company has a few servers in a secure, remote location storing highly-confidential documents connected to two AOS-CX 6400 switches configured in a VSX pair The AOS-CX switches perform access control with 802 1X and will be implementing user-based tunneling (UBT) so that Aruba gateway application inspection and stateful firewall policies can be applied to the traffic. The gateways are running version 84 and implement the AP, PEF, and RFP licenses
Which licensing is needed for the two AOS-CX switches?
An administrator wants to implement a virtual switching technology that implements a single control-plane solution. Which S-CX switches would meet these criteria?
Examine the configuration of Core-1 and Core-2. AOS-CX switches configured as a VSX stack:
Core1: Interlace lag 256
no shutdown
no routing
vlan trunk allowed all
lacp mode active Interface 1/1/46
no shutdown
lag 256 Interface 1/1/47
no shutdown
lag 256
VSX
Inter-switch-link lag 256
vsx-sync vsx-global
exit
Cofe2: interlace lag 250
no shutdown
no routing
vlan trunk allowed all
lacp mode active
Interlace 1/1/46
no shutdown
lag 256 Interface 1/1/47
no shutdown
lag 256 vsx
inter-switch-link lag 256
exit
When using the "show vsx status" command, the two switches fall to connect and successfully synchronize. What should the administrator do to fix this issue?
What is the purpose of the transit VLAN when implementing dynamic segmentation policies involving AOS-CX switches and an Aruba gateway solution?
An administrate is managing a VSX pair of AOS-CX switches. The administrator configures the following on the secondary switch:
secondary (config)# vlan 100
secondary (conflg. vlan-100) # description BBB
Currently VLAN 100 does not exist on the primary switch. The administrator then accesses the primary switch and configures the following:
Primary(config) vlan 100 primary(config-v1an-100) # description AAA
What Is correct regarding the results of this configuration?
An administrator is implementing a multi-area OSPF network. The network contains a backbone (area 0) and two other areas (1 and 2) connected to ABRs in the backbone The network has one routing switch connected to a service provider located in area 2 Which network design would minimize the number of routes in the routing switches' link state databases (LSDBs) while still allowing full connectivity?
Examine the partial output of the BGP routing table of an AOS-CX switch:
The switch is learning about four possible path to reach the 1.0.0.0/8 network. Based on this output, which next-hop route will the AOS-CX select to be placed in the IP routing table?
A network administrator is implementing OSPF, where there are two exit points. Each exit point has a stateful, application inspection firewall to implement company policies.
What would the best practice be to ensure that one firewall will see both directions of the traffic, preventing asynchronous connections in the network?
A company has recently upgraded their campus switching infrastructure with AOS-CX switches. They have
implemented 802.1X authentication on access ports where laptop and IOT devices typically connect. An
administrator has noticed that for POE devices, the AOS-CX switch ports are delivering the maximum wattage
to the port instead of what the device actually needs.
Concerned about this waste of electricity, what should the administrator implement to solve this problem?
A company has recently purchased a ClearPass AAA solution. Their network consists of AOS-CX switches at the access layer. The company is implementing a rollout of IoT devices for smart building management to control the lighting and HVAC systems. The network administrator is concerned about allowing secure access to these devices since they only support MAC-Auth.
Which ClearPass feature should the administrator leverage to help determine that MAC address spoofing is not occurring for this group of devices?
An administrator creates an ACL rule with both the “count” and “log” option enabled. What is correct about the
action taken by an AOS-CX switch when there is a match on this rule?
A network has two AOS-CX switches connected to two different service providers. The administrator is
concerned about bandwidth consumption on the service provider links and learned that the service providers were using the company as a transit AS.
Which feature should the administrator implement to prevent this situation?
A company is implementing a new wireless design and needs it to support high availability, even during times of switch system upgrades. The solution will involve Aruba Mobility Controller (MC) and Aruba AP connections requiring POE. Which campus AOS-CX switch solution and virtual switching should the company implement at the campus access layer?
An administrator wants to implement dynamic segmentation policies. The network consists of AOS-CX and Aruba gateways.
Which type of forwarding should the administrator implement for users that already connect via wireless, but will also be connecting on Ethernet switch ports?
When cutting and pasting configurations into NetEdit, which character is used to enter commands within the context of the previous command?
An administrator has an AOS-CX switch configured with:
router ospf 1
area 0
area 1 stub no-summary
It is the only ABR for area 1. The switch has the appropriate adjacencies to routing switches in areas 0 and 1.
The current routes in each area are:
Area 0: 5 routes (LSA Type 1 and 2)
Area 1: 10 routes (LSA Type 1 and 2)
External routes: 2 (LSA Type 5)
Based on the above configuration, how many OSPF routes will routing switches see in Area 1?
MAC authentication is enabled on port 1/1/27 of an AOS-CX switch. The following MAC addresses are defined on the AAA server:
* 88:3a:30:97:b6:00
* 00:50:56:b1:fc:9b
Examine the AOS-CX switch output:
Based on this information, what is true concerning port 1/1/27?
When implementing deficit weighted round robin queuing, what importance does the weight value have?
An administrator will be deploying NetEdit to manage an Aruba solution. What does NetEdit support?
What is the correct way of associating a VRF instance to either a VLAN or an interface?
A network engineer is using NetEdit to manage AOS-CX switches. The engineer notices that a lot of thirdparty VoIP phones are showing up in the NetEdit topology. The engineer deletes these, but they are
automatically rediscovered by NetEdit and added back in.
What should the administrator do to solve this problem?
Which protocols are used by NetEdit to interact with third-party devices? (Choose two.)
An administrator has an aggregation layer of 8325CX switches configured as a VSX pair. The administrator is
concerned that when OSPF network changes occur, the aggregation switches will respond to the changes
slowly, and this will affect network connectivity, especially VoIP calls, in the connected access layer switches.
What should the administrator do on the aggregation layer switches to alleviate this issue?D18912E1457D5D1DDCBD40AB3BF70D5D
An administrator of a company has concerns about upgrading the access layer switches. The users rely
heavily on wireless and VoIP telephony. Which is the best recommendation to ensure a short downtime for the users during upgrading the access layer switches?
An access layer AOS-CX has no OoS configuration on it. The switch receives an 802.1Q tagged VoIP frame on a port. The frame has an 802.1p value of 6. The IP header has a DSCP value of EF46 How will the switch forward this frame?
An administrator wants to drop traffic from VLAN 6 (10.1.6.0/24) to VLAN 5 (10.1.5.0/24), but allow all other traffic. What is correct configuration to accomplish this?
An administrator is managing a network comprised of AOS-CX switches deployed at the aggregation layer. The switches are paired in a VSX stack and run the OSPF routing protocol. The administrator is concerned about how long it takes for OSPF to converge when one of the VSX switches has to reboot.
What should the administrator to do speed up the OSPF convergence of the switch that is rebooting?
An administrator in a company of 349 users has a pair of AOS-CX switches with connections to external
networks. Both switches are configured for OSPF. The administrator wants to import external routes on both switches, but assigns different seed metrics to the routes, as well as imports them as external type-1 routes.
What is the best way for the administrator to accomplish this?
A network administrator wants to centralize the management of AOS-CX switches by implementing NetEdit.
How should the administrator purchase and/or install the NetEdit solution?