Free Aruba ACMA-6.3 Exam Questions & Answer from Training Expert TorrentValid [Q27-Q47]

Share

Free Aruba ACMA-6.3 Exam Questions & Answer from Training Expert TorrentValid

Top Aruba ACMA-6.3 Courses Online

NEW QUESTION 27
Which roles must be configured via the startup wizard when captive portal is being configured (Select Two)

  • A. The Logon Role
  • B. Roles are not used on the Aruba system
  • C. Pre-Authentication role
  • D. Unauthenticated role
  • E. Authenticated role

Answer: C,E

 

NEW QUESTION 28
Which of the following information is gathered by APs during scanning periods? (Select
three)

  • A. Interfering Clients connected to other APs
  • B. MAC addresses of neighboring APs
  • C. Security threats in the surroundings
  • D. Type of non-802.11 interference detected
  • E. 4.9 GHz devices

Answer: A,B,C

 

NEW QUESTION 29
What are the types of user derivation rules that can be applied to a user? (Choose two)

  • A. AP
  • B. SSID
  • C. VLAN
  • D. Role
  • E. MAC

Answer: C,D

 

NEW QUESTION 30
An access port has been placed in trusted mode. The Vlan on the port is in Untrusted mode. Which of the following statements is true?

  • A. The traffic is untrusted since the VLAN is untrusted
  • B. You cannot set Vlans as trusted or untrusted
  • C. The traffic is trusted since the port is trusted
  • D. Only traffic from that specific port is trusted, all other traffic is untrusted
  • E. This is an invalid configuration, both must be set the same

Answer: A

 

NEW QUESTION 31
When configuring a default gateway in the startup wizard it must be a part of:

  • A. A VLAN configured with an IP interface and assigned to a port
  • B. The management Vlan
  • C. An IP range that is not assigned to a port or VLAN
  • D. A VLAN assigned to a port but without an IP interface configured
  • E. A VLAN not configured on the controller

Answer: A

 

NEW QUESTION 32
View the Server group and User Roles screen shots above.

A user associated to an SSID with 802.1x using this server group. RadiusNY returned a standard radius attribute of filter-Id with a value of "employee".
What Role will the user get?

  • A. The User will get the Employee Role
  • B. The User will get the initial Role
  • C. The User will get the Emp Role
  • D. The User will get the 802.1x authentication default Role
  • E. The User will get the employee Role

Answer: D

 

NEW QUESTION 33
How many roles should be created on a controller?

  • A. The same number as SSIDs
  • B. One per authentication type
  • C. As many as necessary
  • D. The same number as firewall policies
  • E. One less than the number of firewall policies

Answer: C

 

NEW QUESTION 34
View the Server group screen shot above.

A company has provisioned the same VAP, AAA and SSID profiles at both its Miami and NY offices. This Server Group is applied for 802.1x authentication at both locations. The user's credentials are only found in the Miami Radius server "RadiusMiami". There is no Radius synchronization and both servers are reachable. What happens when the user attempts to authenticate?

  • A. The request is initially sent to RadiusNY1 then RadiusNY1 redirects the controller to send the authentication request to RadiusMiami
  • B. RadiusNY1 receives the request and returns a deny. The authentication request will then be sent to RadiusMiami.
  • C. The RadiusNY1 sends the request to RadiusMiami that replies to the controller
  • D. The controller recognizes the users Domain and sends the authentication request directly to RadiusMiami.
  • E. RadiusNY1 receives the request and returns a deny. No other action is taken.

Answer: E

 

NEW QUESTION 35
A port firewall policy is applied to a trunk port that denies controller access. An "allow all" Vlan firewall policy is applied to VLAN 33 on the same port. A user connected to VLAN 33 on that port attempts to gain access to the controller. Which of the following statements is true?

  • A. When locally connected to a controller's port you always have controller access
  • B. The Vlan policy is applied, therefore access to the controller is allowed
  • C. The Vlan policy is applied, then the port policy, therefore no controller access
  • D. You cannot place a firewall policy on a Ports Vlan when the Port already has a policy, therefore no controller access
  • E. The Port policy is applied, therefore no controller access

Answer: B

 

NEW QUESTION 36
A reboot of the controller is necessary in which of the following scenarios? (Select two)

  • A. Changing controller IP
  • B. Changing the VLAN of a Virtual AP Profile
  • C. Changing of Controller Role
  • D. Creating of a new AP Group
  • E. Extending a license range

Answer: A,C

 

NEW QUESTION 37
Web based captive portal can be authenticated by the following types of databases: (Select two)

  • A. Tacacs
  • B. Internal
  • C. Kerberos
  • D. PEAP
  • E. RADIUS

Answer: B,E

 

NEW QUESTION 38
Which is a Device Specific Attribute that can be evaluated in a user derivation rule?

  • A. location by AP Name
  • B. user login name
  • C. controller IP
  • D. controller Loopback address
  • E. authentication server

Answer: A

 

NEW QUESTION 39
In decrypt-tunneled forwarding mode, which of the following is true?

  • A. The AP decrypts the 802.11 frame, encrypts it as an Ethernet frame and sends it to the controller
  • B. The AP decrypts the 802.11 frame and bridges it on the wire
  • C. The AP decrypts and then the 802.11 frame is sent in a GRE tunnel to the controller
  • D. Client sets up an IPSEC tunnel with the controller
  • E. Clients decrypted traffic is sent down the GRE tunnel

Answer: C

 

NEW QUESTION 40
Which match condition can be used by a server derivation rule? (Choose two)

  • A. less than
  • B. inverse of
  • C. equals
  • D. contains
  • E. greater than

Answer: C,D

 

NEW QUESTION 41
Aruba's recommended best option for authenticating guest users is:

  • A. Captive Portal
  • B. Email address
  • C. Windows logon
  • D. Kerberos
  • E. Temporary employee account

Answer: A

 

NEW QUESTION 42
What Controller modes of operation are available from the startup wizard (Select three)?

  • A. Backup controller
  • B. Standalone
  • C. Master
  • D. Local
  • E. Primary

Answer: B,C,D

 

NEW QUESTION 43
When looking at clients in the 'Monitoring Clients' section of the Controller, which of the following information is NOT visible?

  • A. Role
  • B. Output power of client radio
  • C. Method of authentication
  • D. Age
  • E. MAC address

Answer: B

 

NEW QUESTION 44
The AP Wizard allows the selection of APs to be provisioned using which of the following methods (Select three):

  • A. APs designated as Air Monitors
  • B. APs of a specific type
  • C. All APs
  • D. APs in particular AP Group
  • E. APs meeting specified search criteria

Answer: C,D,E

 

NEW QUESTION 45
When configuring a guest WLAN via the WLAN section of the startup wizard, which
security option is NOT available?

  • A. WEP encryption
  • B. Captive Portal with no authentication or registration
  • C. Captive portal with email registration
  • D. Captive portal with authentication via credentials
  • E. Direct access to the internet with no captive portal

Answer: A

 

NEW QUESTION 46
Firewall policy should be written from:

  • A. Order is not important
  • B. Most specific to least specific
  • C. Least specific to most specific
  • D. Policies with the most rules 1st
  • E. Most important resources first

Answer: B

 

NEW QUESTION 47
......

New (2021) Aruba ACMA-6.3  Exam Dumps: https://www.torrentvalid.com/ACMA-6.3-valid-braindumps-torrent.html

ACMA-6.3 Practice Dumps - Verified By TorrentValid Updated 88 Questions: https://drive.google.com/open?id=1qhBLe2-KsweotmXWoo8snmF1-1cO5Y82