HPE6-A78 · Question #152
An ArubaOS-CX switch enforces 802.1X on a port. No fan-through options or port-access roles are configured on the port. The 802 1X supplicant on a connected client has not yet completed…
The correct answer is A. EAP only. For an ArubaOS-CX switch enforcing 802.1X on a port without any fallback options or port- access roles configured, and where the supplicant on the connected client has not completed authentication, the only type of traffic the authenticator accepts from the client is EAP…
Question
An ArubaOS-CX switch enforces 802.1X on a port. No fan-through options or port-access roles are configured on the port. The 802 1X supplicant on a connected client has not yet completed authentication. Which type of traffic does the authenticator accept from the client?
Options
- AEAP only
- BDHCP, DNS and RADIUS only
- CRADIUS only
- DDHCP, DNS, and EAP only
How the community answered
(21 responses)- A71% (15)
- B10% (2)
- C5% (1)
- D14% (3)
Explanation
For an ArubaOS-CX switch enforcing 802.1X on a port without any fallback options or port- access roles configured, and where the supplicant on the connected client has not completed authentication, the only type of traffic the authenticator accepts from the client is EAP (Extensible Authentication Protocol). EAP is a universal authentication framework used in 802.1X for message exchange during the authentication process. The switch allows EAP packets because they are necessary for the client and the authentication server to perform the authentication process. This is standard behavior for 802.1X authenticators, which is to permit EAP traffic to pass through even before authentication is successful to facilitate the authentication exchange.
Topics
Community Discussion
No community discussion yet for this question.