HPE6-A71 Exam QuestionsBrowse all questions from this exam

HPE6-A71 Exam - Question 1


An administrator deploys an AP at a branch office. The branch office has a private WAN circuit that provides connectivity to a corporate office controller. An

Ethernet port on the AP is connected to a network storage device that contains sensitive information. The administrator is concerned about sending this traffic in clear-text across the private WAN circuit.

What can the administrator do to prevent this problem?

Show Answer
Correct Answer: B

To prevent sensitive information from being transmitted in clear-text across the private WAN circuit, the administrator can convert the campus AP into a Remote AP (RAP). RAPs have IPSec tunnels for management traffic, which encrypts the data between the AP and the controller, ensuring that sensitive information is securely transmitted. This provides an effective solution for securing the data without the need for additional encryption mechanisms on the wired ports.

Discussion

7 comments
Sign in to comment
warwalkerOption: B
Aug 21, 2020

The answer is B. Only RAP have IPSec tunnels for management traffic

ahmedsororOption: B
Oct 1, 2020

I think it's B

bolds04Option: B
Oct 14, 2020

Per the Aruba ACMP boot camp books - page 407, RAPs and controllers must autheticate to each other to form the IPSec tunnel. The basis of authentication is either Pre-Shared Keys (PSK) or certificates.

SnakeF0ngOption: C
Nov 30, 2021

Answer should be C. Redirect the wired port traffic to an AP-to-controller GRE tunnel. In the Virtual AP profile, select Tunnel as the forwarding mode. Tunnel: The AP handles all 802.11 association requests and responses, but sends all 802.11 data packets, action frames and EAPOL frames over a GRE tunnel to the managed device for processing. The managed device removes or adds the GRE headers, decrypts or encrypts 802.11 frames and applies firewall rules to the user traffic as usual. Both remote and campus APs can be configured in tunnel mode.

kenkct
May 19, 2022

Just curious, Is there a wired access point? or the access point only for WiFi?

cjosephOption: B
Oct 15, 2022

B as previously mentioned by others

dianacuellarrOption: B
Apr 13, 2023

B is correct. ap wired-ap-profile tunnel mode In this default forwarding mode, the AP handles all 802.11 association requests and responses, but sends all 802.11 data packets, action frames, and EAPOL frames over a GRE tunnel to the managed device for processing. The managed device removes or adds the GRE headers, decrypts or encrypts 802.11 frames and applies firewall rules to the user traffic as usual.

dianacuellarr
Apr 13, 2023

Sorry I made a mistake, I meant to say that the correct answer is C.