HPE7-A02 · Question #30
A company wants HPE Aruba Networking ClearPass Policy Manager (CPPM) to respond to Syslog messages from its Palo Alto Next Generation Firewall (NGFW) by quarantining clients involved in security…
The correct answer is A. Configure the Palo Alto as a context server on CPPM. To enable HPE Aruba Networking ClearPass Policy Manager (CPPM) to process Syslog messages from a Palo Alto Next Generation Firewall (NGFW) and quarantine clients involved in security incidents, you need to configure the Palo Alto as a context server on CPPM. This setup allows…
Question
A company wants HPE Aruba Networking ClearPass Policy Manager (CPPM) to respond to Syslog messages from its Palo Alto Next Generation Firewall (NGFW) by quarantining clients involved in security incidents. Which step must you complete to enable CPPM to process the Syslogs properly?
Options
- AConfigure the Palo Alto as a context server on CPPM.
- BInstall a Palo Alto Extension through ClearPass Guest.
- CEnable Insight and ingress event processing on the CPPM server.
- DConfigure CPPM to trust the root CA certificate for the NGFW.
How the community answered
(50 responses)- A82% (41)
- B2% (1)
- C6% (3)
- D10% (5)
Explanation
To enable HPE Aruba Networking ClearPass Policy Manager (CPPM) to process Syslog messages from a Palo Alto Next Generation Firewall (NGFW) and quarantine clients involved in security incidents, you need to configure the Palo Alto as a context server on CPPM. This setup allows CPPM to receive and understand the context of the Syslog messages sent by the Palo Alto NGFW, enabling it to take appropriate actions such as quarantining clients. 1. Context Server Configuration: Configuring the Palo Alto NGFW as a context server in CPPM ensures that CPPM can process and respond to Syslog messages effectively. 2. Security Incident Response: By understanding the context of the Syslog messages, CPPM can automatically trigger actions like client quarantine based on security incidents detected by the 3. Integration: This integration enhances the overall security posture by enabling coordinated responses between the firewall and CPPM.
Topics
Community Discussion
No community discussion yet for this question.