HPE6-A73 Aruba Certified Switching Professional Exam Questions and Answers
An administrator will be replacing a campus switching infrastructure with AOS-CX switches that support VSX capabilities. The campus involves a core, as well as multiple access layers. Which feature should the
administrator implement to allow both VSX-capable core switches to process traffic sent to the default gateway in the campus VLANs?
Examine the network exhibit:

The ACL configuration defined on Core-1 is as follows:
If telnet was being used, which device connection would be permitted and functional in both directions?
(Choose two.)
When implementing deficit weighted round robin queuing, what importance does the weight value have?
Examine the commands entered on an AOS-CX switch:
What is true regarding this configuration for traffic received on interface 100?
In AOS-CX switching, what determines when a frame is forwarded by the switch between the ingress and the egress port?
A network administrator is managing a network that deploys a multicast service. The administrator has
multiple streams successfully being routed by PIM-DM in the network. The administrator then adds a new stream with a destination address of 239.0.0.1. However, clients who have not joined the stream are receiving it.
What should the administrator do to fix this problem?
A network administrator is implementing NAE on AOS-CX switches. When attempting to create an agent on a particular switch, the agent appears in the NAE Agents panel with a red triangle error symbol and a status of “Unknown”.
What is the cause of this issue?
A network administrator is implementing OSPF, where there are two exit points. Each exit point has a stateful, application inspection firewall to implement company policies.
What would the best practice be to ensure that one firewall will see both directions of the traffic, preventing asynchronous connections in the network?
An administrator in a company of 349 users has a pair of AOS-CX switches with connections to external
networks. Both switches are configured for OSPF. The administrator wants to import external routes on both switches, but assigns different seed metrics to the routes, as well as imports them as external type-1 routes.
What is the best way for the administrator to accomplish this?
A company has recently upgraded their campus switching infrastructure with AOS-CX switches. They have
implemented 802.1X authentication on access ports where laptop and IOT devices typically connect. An
administrator has noticed that for POE devices, the AOS-CX switch ports are delivering the maximum wattage
to the port instead of what the device actually needs.
Concerned about this waste of electricity, what should the administrator implement to solve this problem?
Which protocols are used by NetEdit to interact with third-party devices? (Choose two.)
What is correct regarding rate limiting and egress queue shaping on AOS-CX switches?
The company has just upgraded their access layer switches with AOS-CX switches and implemented an AAA solution with ClearPass. The company has become concerned about what actually connects to the user ports on the access layer switch, Therefore, the company is implementing 802.1X authentication on the AOS-CX switches. An administrator has globally enabled 802.1X, and has enabled it on all the access ports connected to user devices, including VoIP phones, security cameras, and wireless Aruba IAPs. Wireless users are complaining that they successfully authenticate to the IAPs; however, they do not have access to network resources. Previously, this worked before 802.1X was implemented on the AOS-CX switches.
What should the company do to solve this problem?
A company has recently purchased a ClearPass AAA solution. Their network consists of AOS-CX switches at the access layer. The company is implementing a rollout of IoT devices for smart building management to control the lighting and HVAC systems. The network administrator is concerned about allowing secure access to these devices since they only support MAC-Auth.
Which ClearPass feature should the administrator leverage to help determine that MAC address spoofing is not occurring for this group of devices?
An administrator is implementing a downloadable user role solution involving AOS-CX switches. The AAA
solution and the AOS-CX switches can successfully authenticate users; however, the role information fails to
download to the switches. What policy should be added to an intermediate firewall to allow the downloadable
role function to succeed?
A network engineer is having a problem adding a custom-written script to an AOS-CX switch’s NAE GUI. The script was written in Python and was successfully added on other AOS-CX switches. The engineer examines the following items from the CLI of the switch:

What should the engineer perform to fix this issue?
When implementing user-based tunneling on an AOS-CX switch, which component defines the primary and backup Aruba gateways?
An administrator is designing an access layer solution in a data center. A key requirement is to dual-home mission-critical server connections to two different switches, ensuring that the servers always have network access, even during switch software upgrades. This feature should support strictly-controlled provisioning.
What would best meet the administrator's needs when deploying AOS-CX switches?
An administrator has an aggregation layer of 8325CX switches configured as a VSX pair. The administrator is
concerned that when OSPF network changes occur, the aggregation switches will respond to the changes
slowly, and this will affect network connectivity, especially VoIP calls, in the connected access layer switches.
What should the administrator do on the aggregation layer switches to alleviate this issue?D18912E1457D5D1DDCBD40AB3BF70D5D
A network has two AOS-CX switches connected to two different service providers. The administrator is
concerned about bandwidth consumption on the service provider links and learned that the service providers were using the company as a transit AS.
Which feature should the administrator implement to prevent this situation?
A company has implemented 802.1X authentication on AOS-CX access switches, where two ClearPass
servers are used to implement AAA. Each switch has the two servers defined. A network engineer notices the following command configured on the AOS-CX switches:
radius-server tracking user-name monitor password plaintext aruba123
What is the purpose of this configuration?
Examine the following AOS-CX switch configuration:

Which access control entries would allow web traffic to the web servers 10.1.0.100 and 10.1.1.100?
How does an administrator install a script and create an agent and actions for the Network Analysis Engine running on AOS-CX switches?
A network administrator is tasked to set up BGP in the company's network. The administrator is defining an eBGP peering between an AOS-CX switch and a directly-connected service provider. The administrator has configured the following on the AOS-CX switch:

However, when using the "show bgp all summary" command, the state does not display "Established" for the eBGP peer. What must the administrator configure to fix this issue?
What must a network administrator implement in order to run an NAE script on an AOS-CX switch?
An administrator wants to use an existing Aruba gateway's firewall policies to filter both wireless and wired traffic. Which AOS-CX switch feature should a customer implement to ensure the gateway applies the same or similar firewall policies to users' wired and wireless traffic?
A network administrator wants to centralize the management of AOS-CX switches by implementing NetEdit.
How should the administrator purchase and/or install the NetEdit solution?
A network engineer is setting up BGP on AOS-CX switches. The engineer is establishing two different eBGP peering’s to two different service providers. The engineer has dozens of contiguous C-class public networks that need to be advertised to the two service providers. The engineer manually defines the networks to be advertised individually with the "network" command.
How can an administrator advertise only a summarized route to the two service providers?
A network administrator needs to replace an antiquated access layer solution with a modular solution involving AOS-CX switches. The administrator wants to leverage virtual switching technologies. The solution needs to support high-availability with dual-control planes.
Which solution should the administrator implement?
An administrator wants to drop traffic from VLAN 6 (10.1.6.0/24) to VLAN 5 (10.1.5.0/24), but allow all other traffic. What is correct configuration to accomplish this?


Examine the attached diagram

Two AOS-CX switches are configured for VSX at the access layer, where servers attached to them. An SVI interface is configured for VLAN 10 and serves as the default gateway for VLAN 10. The ISL link between the switches fails, but the keepalive interface functions. Active gateway has been configured on the switches.
What is correct about access from the servers to the Core?
