nerdexam
HP

HPE7-A02 · Question #14

A company has a variety of HPE Aruba Networking solutions, including an HPE Aruba Networking infrastructure and HPE Aruba Networking ClearPass Policy Manager (CPPM). The company passes traffic from…

The correct answer is A. Have the third-party firewall send Syslogs to CPPM, which can work with network devices to lock. To further protect the company from internal threats, you can recommend having the third-party SRX firewall send Syslogs to HPE Aruba Networking ClearPass Policy Manager (CPPM). ClearPass can analyze these logs to detect potential security incidents and coordinate with network…

Designing and Planning Network Security Deployments

Question

A company has a variety of HPE Aruba Networking solutions, including an HPE Aruba Networking infrastructure and HPE Aruba Networking ClearPass Policy Manager (CPPM). The company passes traffic from the corporate LAN destined to the data center through a third-party SRX firewall. The company would like to further protect itself from internal threats. What is one solution that you can recommend?

Options

  • AHave the third-party firewall send Syslogs to CPPM, which can work with network devices to lock
  • BUse tunnel mode SSIDs and user-based tunneling (UBT) on AOS-CX switches to pass all internal
  • CAdd ClearPass Device Insight (CPDI) to the solution; integrate it with the third-party firewall to
  • DConfigure CPPM to poll the third-party firewall for a broad array of information about internal

How the community answered

(53 responses)
  • A
    62% (33)
  • B
    21% (11)
  • C
    11% (6)
  • D
    6% (3)

Explanation

To further protect the company from internal threats, you can recommend having the third-party SRX firewall send Syslogs to HPE Aruba Networking ClearPass Policy Manager (CPPM). ClearPass can analyze these logs to detect potential security incidents and coordinate with network devices to respond to threats. By integrating Syslog data from the firewall, CPPM can identify malicious activities and take actions such as locking internal attackers out of the network or triggering specific security policies. This approach enhances the company's internal threat detection and response capabilities.

Topics

#syslog integration#ClearPass Policy Manager#internal threat protection#third-party firewall

Community Discussion

No community discussion yet for this question.

Full HPE7-A02 Practice