When ClearPass is communicating with external context servers, which connection protocol is typically used?
A. FTP over SSH
B. REST APIs over HTTPS
C. SOAP and XML
D. YAML
Which ClearPass feature assesses endpoint context and client device type?
A. Profiling
B. Captive Portal
C. Onboard
D. Posture
When should a role mapping policy be used in an 802.1x service with Active Directory as the authentication source?
A. When you want to match Active Directory attributes directly to an enforcement policy.
B. When you want to match Active Directory attributes to an Aruba firewall role on an Aruba Network Access Device.
C. When you want to translate and combine Active Directory attributes into ClearPass roles.
D. When you want to enable attributes as roles directly without combining multiple attributes.
Which are valid enforcement profile types? (Choose two.)
A. ClearPass Entity Update Enforcement
B. Aruba Script Enforcement
C. Policy Service Enforcement
D. RADIUS Change of Authorization (CoA)
Which option supports DHCP profiling for devices in a network?
A. configuring ClearPass as a DHCP relay for the client
B. DHCP profiling is enabled on ClearPass by default; configuration of the network access devices is not necessary
C. enabling the DHCP server to profile endpoints and forward meta-data to ClearPass
D. enabling DHCP relay on our network access devices so DHCP requests are forwarded to ClearPass
Which items can be obtained from device profiling? (Choose three.)
A. Device Category
B. Device Family
C. Device Health
D. Device Type
E. Device Location
What are benefits of using Network Device Groups in ClearPass? (Choose two.)
A. Network Access Devices (NADs) only require Aruba factory installed certificates to join a Network Device Group.
B. Allows Service selection rules to match based upon which Network Device Group the Network Access Device (NAD) belongs to.
C. A Network Access Device is must be discovered by ClearPass prior to be added to a Network Device Group.
D. Another way to add a customizable "attribute" field to reference when processing authentication requests.
E. Can apply to both Network Access Devices (NADs) as well as client machines as a way to filter authentication requests.
When joining ClearPass to an Active Directory (AD) domain, what information is required? (Choose two.)
A. Fully Qualified Domain Name (FQDN) of the AD Domain Controller.
B. ClearPass Policy Manager (CPPM) enterprise credentials.
C. Domain Administrator credentials with at least read access.
D. Cache Timeout value set to at least 10 hours.
E. Domain User credentials with read-write access.
What services are recommended to be allowed by the pre-authenticated role assigned to the Client during the Captive Portal process? (Choose three.)
A. DHCP options 43 and 150
B. RADIUS to ClearPass
C. HTTPS to ClearPass
D. HTTPS to the Internet
E. DHCP address assignment
F. DNS resolution
What are two ways to add guest accounts to ClearPass? (Choose two.)
A. Importing accounts from Active Directory once ClearPass is added with Admin credentials.
B. Assigning the default role "Lobby Ambassador to a receptionist to then add the accounts.
C. Using the "Import Accounts" under ClearPass Guest.
D. Using the "Create Account" or "Create Multiple" options under ClearPass Guest.
E. Using the "Sync Accounts" under ClearPass Guest.