Question 31

Refer to the exhibit.

You are reviewing packets in Wireshark. The capture shows traffic from source IP address
10.1.14.10 to several destinations in the 10.1.15.0/24 network. The packets use TCP flags FIN, PSH, and URG together.
What can you interpret from the packets that you see here?
  • Question 32

    A company has HPE Aruba Networking gateways that implement gateway IDS/IPS. Admins sometimes check the Security Dashboard, but they want a faster way to discover if a gateway starts detecting threats in traffic.
    What should they do?
  • Question 33

    A company issues user certificates to domain computers using its Windows CA and the default user certificate template. You have set up HPE Aruba Networking ClearPass Policy Manager (CPPM) to authenticate 802.1X clients with those certificates. However, during tests, you receive an error that authorization has failed because the usernames do not exist in the authentication source.
    What is one way to fix this issue and enable clients to successfully authenticate with certificates?
  • Question 34

    A company has HPE Aruba Networking APs running AOS-10 and managed by HPE Aruba Networking Central. The company also has AOS-CX switches. The security team wants you to capture traffic from a particular wireless client. You should capture this client's traffic over a 15-minute time period and then send the traffic to them in a PCAP file. What should you do?
  • Question 35

    You are setting up user-based tunneling (UBT) between access layer AOS-CX switches and AOS-10 gateways. You have selected reserved (local) VLAN mode. Tunneled devices include IoT devices, which should be assigned to:
    Roles: iot on the switches and iot-wired on the gateways VLAN: 64, for which the gateways route traffic.
    IoT devices connect to the access layer switches' edge ports, and the access layer switches reach the gateways on their uplinks.
    Where must you configure VLAN 64?