nerdexam
HP

HPE7-A04 · Question #1

CX Switches come with trusted platform modules (TPM). What is the function of TPM?

The correct answer is A. TPM stores a certificate signed by an HPE Aruba Networking Certification Authority (CA). Option A is correct because a Trusted Platform Module (TPM) is a dedicated hardware security chip that securely stores cryptographic keys and certificates - on HPE Aruba CX Switches, it holds a device identity certificate signed by HPE Aruba Networking's own Certificate…

Designing for Virtualization, Automation, and Security

Question

CX Switches come with trusted platform modules (TPM). What is the function of TPM?

Options

  • ATPM stores a certificate signed by an HPE Aruba Networking Certification Authority (CA).
  • BTPM prevents customers from loading certificates signed by the CA of their choice to the switches
  • CTPM is just a convenient name to allow users to connect to the switch securely
  • DTPM stores a certificate signed by GeoTrust Certification Authority (CA).

How the community answered

(43 responses)
  • A
    86% (37)
  • B
    2% (1)
  • C
    2% (1)
  • D
    9% (4)

Explanation

Option A is correct because a Trusted Platform Module (TPM) is a dedicated hardware security chip that securely stores cryptographic keys and certificates - on HPE Aruba CX Switches, it holds a device identity certificate signed by HPE Aruba Networking's own Certificate Authority, enabling hardware-level authentication and supply chain integrity verification.

Option B is wrong because TPM doesn't restrict what certificates customers can load; it specifically stores the factory-provisioned HPE Aruba CA-signed certificate for device identity, not a customer access control mechanism.

Option C is wrong because TPM is not just a name or a user-facing login feature - it's a physical hardware component (defined by the TCG standard) with a specific cryptographic purpose, not a connectivity convenience label.

Option D is wrong because GeoTrust is a public commercial CA used for general TLS/SSL certificates; HPE Aruba uses its own internal CA to sign TPM device identity certificates, ensuring only genuine HPE Aruba hardware holds valid certificates.

Memory tip: Think of TPM as a tamper-proof ID badge baked into the hardware at the factory - the badge is issued and signed by the manufacturer's own CA (HPE Aruba), not a third-party commercial one.

Topics

#TPM#hardware security#certificate management#CX switches

Community Discussion

No community discussion yet for this question.

Full HPE7-A04 Practice