<< Prev Question Next Question >>

Question 22/28

Refer to the scenario.
A customer has an Aruba ClearPass cluster. The customer has AOS-CX switches that implement 802.1X authentication to ClearPass Policy Manager (CPPM).
Switches are using local port-access policies.
The customer wants to start tunneling wired clients that pass user authentication only to an Aruba gateway cluster. The gateway cluster should assign these clients to the "eth-internet" role. The gateway should also handle assigning clients to their VLAN, which is VLAN 20.
The plan for the enforcement policy and profiles is shown below:

The gateway cluster has two gateways with these IP addresses:
* Gateway 1
o VLAN 4085 (system IP) = 10.20.4.21
o VLAN 20 (users) = 10.20.20.1
o VLAN 4094 (WAN) = 198.51.100.14
* Gateway 2
o VLAN 4085 (system IP) = 10.20.4.22
o VLAN 20 (users) = 10.20.20.2
o VLAN 4094 (WAN) = 198.51.100.12
* VRRP on VLAN 20 = 10.20.20.254
The customer requires high availability for the tunnels between the switches and the gateway cluster. If one gateway falls, the other gateway should take over its tunnels. Also, the switch should be able to discover the gateway cluster regardless of whether one of the gateways is in the cluster.
Assume that you have configured the correct UBT zone and port-access role settings. However, the solution is not working.
What else should you make sure to do?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (28q)
Question 1: Refer to the scenario. # Introduction to the customer You ar...
Question 2: A customer has an AOS 10 architecture, which includes Aruba ...
Question 3: Refer to the scenario. # Introduction to the customer You ar...
Question 4: When would you implement BPDU protection on an AOS-CX switch...
Question 5: Refer to the scenario. A customer requires these rights for ...
Question 6: Refer to the scenario. A hospital has an AOS10 architecture ...
Question 7: Refer to the exhibit. (Exhibit) Which security issue is poss...
Question 8: Refer to the exhibit. (Exhibit) Aruba ClearPass Policy Manag...
Question 9: A customer's admins have added RF Protect licenses and enabl...
Question 10: Refer to the scenario. A customer is using an AOS 10 archite...
Question 11: Refer to the scenario. # Introduction to the customer You ar...
Question 12: Refer to the scenario. A customer has an AOS10 architecture ...
Question 13: Refer to the scenario. A customer is migrating from on-prem ...
Question 14: Refer to the scenario. A customer requires these rights for ...
Question 15: Refer to the exhibit. (Exhibit) A customer requires protecti...
Question 16: A customer requires a secure solution for connecting remote ...
Question 17: A customer has an AOS 10 architecture, consisting of Aruba A...
Question 18: You are setting up Aruba ClearPass Policy Manager (CPPM) to ...
Question 19: A customer has an AOS 10-based solution, including Aruba APs...
Question 20: Refer to the scenario. This customer is enforcing 802.1X on ...
Question 21: You are reviewing an endpoint entry in ClearPass Policy Mana...
Question 22: Refer to the scenario. A customer has an Aruba ClearPass clu...
Question 23: You need to install a certificate on a standalone Aruba Mobi...
Question 24: A customer has an AOS 10-based mobility solution, which auth...
Question 25: Refer to the scenario. A customer has an AOS10 architecture ...
Question 26: You are designing an Aruba ClearPass Policy Manager (CPPM) s...
Question 27: Refer to the scenario. A customer requires these rights for ...
Question 28: Which element helps to lay the foundation for solid network ...