Which steps are required to use ClearPass as a TACACS+ Authentication server for a network device? (Select two.)
A. Configure a TACACS Enforcement Profile on ClearPass for the desired privilege level.
B. Configure a RADIUS Enforcement Profile on ClearPass for the desired privilege level.
C. Configure ClearPass as an Authentication server on the network device.
D. Configure ClearPass roles on the network device.
E. Enable RADIUS accounting on the NAD.
What are Operator Profiles used for?
A. to enforce role based access control for Aruba Controllers
B. to enforce role based access control for ClearPass Policy Manager admin users
C. to enforce role based access control for ClearPass Guest Admin users
D. to assign ClearPass roles to guest users
E. to map AD attributes to admin privilege levels in ClearPass Guest
Refer to the exhibit.
When configuring a Web Login Page in ClearPass Guest, the information shown is displayed. What is the Address field value `securelogin.arubanetworks.com' used for?
A. for ClearPass to send a TACACS+ request to the NAD
B. for appending to the Web Login URL, before the page name
C. for the client to POST the user credentials to the NAD
D. for ClearPass to send a RADIUS request to the NAD
E. for appending to the Web Login URL, after the page name.
Refer to the exhibit.
Based on the information shown, which field in the Captive Portal Authentication profile should be changed so that guest users are redirected to a page on ClearPass when they connect to the Guest SSID?
A. both Login and Welcome Page
B. Default Role
C. Welcome Page
D. Default Guest Role
E. Login Page
Which licenses are included in the built-in Starter kit for ClearPass?
A. 10 ClearPass Guest licenses, 10 ClearPass Onguard licenses and 10 ClearPass Onboard licenses
B. 25 ClearPass Profiler licenses
C. 25 ClearPass Enterprise licenses
D. 10 ClearPass Enterprise licenses
E. 25 ClearPass Redundancy licenses
Refer to the exhibit.
An AD user's department attribute value is configured as "Product Management". The user connects on Monday to a NAD that belongs to the Device Group HQ. Which role is assigned to the user in ClearPass?
A. HR Local
B. [Guest]
C. [Employee]
D. Linux User
E. Executive
Refer to the exhibit.
Which statement accurately reflects the status of the Policy Simulation test figure shown?
A. The test verifies that a client with username test1 can authenticate using EAP-PEAP.
B. Role mapping simulation verifies if the remote lab AD has the ClearPass server certificate.
C. Role mapping simulation verifies that the client certificate is valid during EAP-TLS authentication.
D. The simulation test result shows the firewall roles assigned to the client by the Aruba Controller.
E. The roles assigned in the results tab are based on rules matched in the AD Role Mapping Policy.
Refer to the exhibit.
Based on the Policy configuration shown, which VLAN will be assigned when a user with ClearPass role Engineer authenticates to the network successfully using connection protocol WEBAUTH?
A. Deny Access
B. Employee VLAN
C. Internet VLAN
D. Full Access VLAN
Refer to the exhibit.
Based on the Policy configuration shown, which VLAN will be assigned when a user with ClearPass role Engineer authenticates to the network successfully on Saturday using connection protocol WEBAUTH?
A. Full Access VLAN
B. Employee VLAN
C. Internet VLAN
D. Deny Access
Which statement is true about the configuration of a generic LDAP server as an External Authentication server in ClearPass? (Choose three.)
A. Generic LDAP Browser can be used to search the Base DN.
B. An administrator can customize the selection of attributes fetched from an LDAP server.
C. The bind DN can be in the administrator@domain format.
D. A maximum of one generic LDAP server can be configured in ClearPass.
E. A LDAP Browser can be used to search the Base DN.