nerdexam
HP

HPE6-A84 · Question #37

You want to use Device Insight tags as conditions within CPPM role mapping or enforcement policy rules. What guidelines should you follow?

The correct answer is D. Use the Endpoint type for the rule conditions; no extra authorization source is required for services. According to the Aruba Cloud Authentication and Policy Overview, Device Insight tags are stored in the Endpoint Repository and can be used as conditions within CPPM role mapping or enforcement policy rules. The rule condition type should be Endpoint, and the attribute should be…

Implementing and Integrating Advanced Network Security

Question

You want to use Device Insight tags as conditions within CPPM role mapping or enforcement policy rules. What guidelines should you follow?

Options

  • ACreate an HTTP authentication source to the Central API that queries for the tags. To use that
  • BUse the Application type for the rule conditions; no extra authorization source is required for
  • CUse the Endpoints Repository type for the rule conditions; Add Endpoints Repository as a
  • DUse the Endpoint type for the rule conditions; no extra authorization source is required for services

How the community answered

(20 responses)
  • A
    15% (3)
  • B
    5% (1)
  • C
    5% (1)
  • D
    75% (15)

Explanation

According to the Aruba Cloud Authentication and Policy Overview, Device Insight tags are stored in the Endpoint Repository and can be used as conditions within CPPM role mapping or enforcement policy rules. The rule condition type should be Endpoint, and the attribute should be Device Insight Tags. No extra authorization source is required for services that use policies with

Topics

#Device Insight#ClearPass#enforcement policy#role mapping

Community Discussion

No community discussion yet for this question.

Full HPE6-A84 Practice