nerdexam
HP

HPE6-A78 · Question #152

An ArubaOS-CX switch enforces 802.1X on a port. No fan-through options or port-access roles are configured on the port. The 802 1X supplicant on a connected client has not yet completed…

The correct answer is A. EAP only. For an ArubaOS-CX switch enforcing 802.1X on a port without any fallback options or port- access roles configured, and where the supplicant on the connected client has not completed authentication, the only type of traffic the authenticator accepts from the client is EAP…

Implementing and Configuring Aruba Network Security

Question

An ArubaOS-CX switch enforces 802.1X on a port. No fan-through options or port-access roles are configured on the port. The 802 1X supplicant on a connected client has not yet completed authentication. Which type of traffic does the authenticator accept from the client?

Options

  • AEAP only
  • BDHCP, DNS and RADIUS only
  • CRADIUS only
  • DDHCP, DNS, and EAP only

How the community answered

(21 responses)
  • A
    71% (15)
  • B
    10% (2)
  • C
    5% (1)
  • D
    14% (3)

Explanation

For an ArubaOS-CX switch enforcing 802.1X on a port without any fallback options or port- access roles configured, and where the supplicant on the connected client has not completed authentication, the only type of traffic the authenticator accepts from the client is EAP (Extensible Authentication Protocol). EAP is a universal authentication framework used in 802.1X for message exchange during the authentication process. The switch allows EAP packets because they are necessary for the client and the authentication server to perform the authentication process. This is standard behavior for 802.1X authenticators, which is to permit EAP traffic to pass through even before authentication is successful to facilitate the authentication exchange.

Topics

#802.1X#EAP#pre-authentication traffic#ArubaOS-CX

Community Discussion

No community discussion yet for this question.

Full HPE6-A78 Practice