HPE7-A01 · Question #108
A customer is concerned about me unprotected traffic between an AOS-CX switch and a gateway, running on AOStO. What is a feasible option to protect this traffic?
The correct answer is A. Implement an IPSec tunnel to protect PAPI between the AOS-CX switches and the gateway. According to the Aruba Documentation Portal1, PAPI (Port Aggregation Protocol) is a protocol that allows multiple physical ports to be aggregated into a single logical port for increased bandwidth and performance. PAPI can be used between AOS-CX switches and gateways, or…
Question
A customer is concerned about me unprotected traffic between an AOS-CX switch and a gateway, running on AOStO. What is a feasible option to protect this traffic?
Options
- AImplement an IPSec tunnel to protect PAPI between the AOS-CX switches and the gateway
- BImplement an MD5 HMAC function lo protect PAPI between the AOS-CX switches and the
- CImplement a GRE tunnel to protect PAPI between the AOS-CX switches and the gateway
- Dno action is needed, an RSA certificate already encrypts the traffic
How the community answered
(29 responses)- A76% (22)
- B3% (1)
- C7% (2)
- D14% (4)
Explanation
According to the Aruba Documentation Portal1, PAPI (Port Aggregation Protocol) is a protocol that allows multiple physical ports to be aggregated into a single logical port for increased bandwidth and performance. PAPI can be used between AOS-CX switches and gateways, or between AOS-CX switches and other devices. Option A: Implement an IPSec tunnel to protect PAPI between the AOS-CX switches and the gateway This is because option A shows how to implement an IPSec tunnel between two devices using the interface command and the ipsec command. An IPSec tunnel can provide encryption and authentication for PAPI traffic between two devices, such as an AOS-CX switch and a
Topics
Community Discussion
No community discussion yet for this question.