What policy should ...
 
Notifications
Clear all

What policy should be added to an intermediate firewall to allow the downloadable role function to succeed?

1 Posts
1 Users
0 Likes
57 Views
(@kossmangonzalo)
Posts: 715
Noble Member
Topic starter
 

An administrator is implementing a downloadable user role solution involving AOS-CX switches. The AAA solution and the AOS-CX switches can successfully authenticate users; however, the role information fails to download to the switches.

What policy should be added to an intermediate firewall to allow the downloadable role function to succeed?

  • A . Allow TCP 443
    B. Allow UDP 1811
    C. Allow UDP 8211
    D. Allow TCP 22

Show Answer Hide Answer

Suggested Answer: A

Explanation:

pg 681 from the Aruba guide - "When using DUR, the ClearPass HPE-CPPM-Role VSA is used in combination with HTTPS to transfer the role to the switch." UDP 8211 (PAPI) is related to dynamic segmentation and the communication to the MC not DUR.
 
Posted : 07/11/2022 12:01 pm

Latest HP HPE6-A73 Dumps Valid Version

Latest And Valid Q&A | Instant Download | Once Fail, Full Refund
Share: