exam questions

Exam HPE6-A71 All Questions

View all questions & answers for the HPE6-A71 exam

Exam HPE6-A71 topic 1 question 1 discussion

Actual exam question from HP's HPE6-A71
Question #: 1
Topic #: 1
[All HPE6-A71 Questions]

An administrator deploys an AP at a branch office. The branch office has a private WAN circuit that provides connectivity to a corporate office controller. An
Ethernet port on the AP is connected to a network storage device that contains sensitive information. The administrator is concerned about sending this traffic in clear-text across the private WAN circuit.
What can the administrator do to prevent this problem?

  • A. Enable IPSec encryption on the AP's wired ports.
  • B. Convert the campus AP into a RAP.
  • C. Redirect the wired port traffic to an AP-to-controller GRE tunnel.
  • D. Enable AP encryption for wired ports.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
warwalker
Highly Voted 4 years, 8 months ago
The answer is B. Only RAP have IPSec tunnels for management traffic
upvoted 6 times
...
dianacuellarr
Most Recent 2 years ago
B is correct. ap wired-ap-profile tunnel mode In this default forwarding mode, the AP handles all 802.11 association requests and responses, but sends all 802.11 data packets, action frames, and EAPOL frames over a GRE tunnel to the managed device for processing. The managed device removes or adds the GRE headers, decrypts or encrypts 802.11 frames and applies firewall rules to the user traffic as usual.
upvoted 1 times
dianacuellarr
2 years ago
Sorry I made a mistake, I meant to say that the correct answer is C.
upvoted 1 times
...
...
cjoseph
2 years, 6 months ago
Selected Answer: B
B as previously mentioned by others
upvoted 1 times
...
kenkct
2 years, 11 months ago
Just curious, Is there a wired access point? or the access point only for WiFi?
upvoted 1 times
...
SnakeF0ng
3 years, 4 months ago
Answer should be C. Redirect the wired port traffic to an AP-to-controller GRE tunnel. In the Virtual AP profile, select Tunnel as the forwarding mode. Tunnel: The AP handles all 802.11 association requests and responses, but sends all 802.11 data packets, action frames and EAPOL frames over a GRE tunnel to the managed device for processing. The managed device removes or adds the GRE headers, decrypts or encrypts 802.11 frames and applies firewall rules to the user traffic as usual. Both remote and campus APs can be configured in tunnel mode.
upvoted 1 times
...
bolds04
4 years, 6 months ago
Per the Aruba ACMP boot camp books - page 407, RAPs and controllers must autheticate to each other to form the IPSec tunnel. The basis of authentication is either Pre-Shared Keys (PSK) or certificates.
upvoted 1 times
...
ahmedsoror
4 years, 6 months ago
I think it's B
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago