HPE6-A45 Exam QuestionsBrowse all questions from this exam

HPE6-A45 Exam - Question 42


AOS-Switches authenticate guests to ClearPass with captive portal. An administrator notices that some guests are unable to reach the captive portal page. What will resolve this issue?

Show Answer
Correct Answer: A

Guests unable to reach the captive portal page usually means there is an issue with DNS resolution, which is necessary for them to be directed to the correct URL. Permitting DNS on the ClearPass Portal ensures that guests can resolve the appropriate domain names, thereby accessing the captive portal page successfully. Without DNS resolution, their browsers won't be able to find the portal, even if other settings are correct.

Discussion

5 comments
Sign in to comment
fredsOption: D
Aug 13, 2020

I think the correct is "D". ClearPass Policy Manager does not know the guest device MAC address. Typically, when a device cannot authenticate, the RADIUS server sends a RADIUS Reject message, and the switch port denies access. However, for a captive portal solution, ClearPass, as the RADIUS server, behaves differently. It uses a service with a special type of MAC-Auth (called Allow All MAC-Auth). When a device fails authentication, this service matches the device to a “deny any” profile rather than simply rejects the access. The profile defines various RADIUS attributes and VSAs to apply to the device’s session.

GiGiWRCOption: C
May 26, 2020

HTTP needs DNS to resolve address before to reach destination.

RashidaOption: D
Jul 27, 2020

Shouldn't the answer be D ?

darksyde
Aug 7, 2020

For me is the !D!

helpmmgOption: C
Mar 19, 2020

Answer should be C. Some clients may not be able to use HTTP or HTTPS.

udo2020Option: D
Sep 18, 2020

I think also it's D because the question states "some guests".