nerdexam
HP

HPE6-A48 · Question #30

A financial institution contacts an Aruba partner to deploy an advanced and secure Mobility Master (MM)-Mobility Controller (MC) WLAN solution in its main campus and 14 small offices/home offices…

The correct answer is D. Create user accounts with the sys-ap-role, and define shared secrets to associate to RAP IP addresses at the MM group level. See the full explanation below for the reasoning.

Question

A financial institution contacts an Aruba partner to deploy an advanced and secure Mobility Master (MM)-Mobility Controller (MC) WLAN solution in its main campus and 14 small offices/home offices (SOHOs). Key requirements are that users at all locations, including telecommuters with VIA, should be assigned roles with policies that filter undesired traffic. Also, advanced WIPs should be enforced at the campus only. These are additional requirements for this deployment:

RAPs should ship directly to their final destinations without any pre-setup and should come up with the right configuration as soon as they get Internet access. Activate should be configured with devices MACs, serial numbers, and provisioning rules that redirect them to the standalone VMC at the DMZ Users should be able to reach DNS, FTP, Web and telephone servers in the campus as well as send and receive IP telephone calls to and from the voice 10.1.50.0/24 segment. Local Internet access should be granted. Refer to the exhibit. Refer to the scenario and the exhibit. The standalone VMC will act as a VPN Concentrator of the RAPs. The network administrator configures the Standalone VMC with a pool of addresses and the SOHOs AP Group from the MM. Which additional steps must the network administrator perform to allow the RAPs to terminate their IPSec tunnels and associate to the Standalone VMC?

Exhibit

HPE6-A48 question #30 exhibit

Options

  • AAdd RAP MAC addresses into the RAP whitelist, and associate them with the SOHOs AP-Group.
  • BAdd RAP MAC addresses into the CPSec whitelist, and associate them with the SOHOs AP-Group.
  • CConfigure the same IP Pool at the MM group level, then create user accounts for the RAPs in the internal database.
  • DCreate user accounts with the sys-ap-role, and define shared secrets to associate to RAP IP addresses at the MM group level.

How the community answered

(48 responses)
  • A
    2% (1)
  • B
    6% (3)
  • C
    10% (5)
  • D
    81% (39)

Community Discussion

No community discussion yet for this question.

Full HPE6-A48 Practice