โ† All ACMA Flashcard Decks

Network Security Flashcards

7 cards from real ACMA practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Network Security flashcards as text
  1. Which Aruba security feature automatically classifies and contains rogue APs detected on the wireless network?

    Answer: Wireless Intrusion Protection (WIP)

    Wireless Intrusion Protection (WIP) detects, classifies, and contains rogue APs and other wireless threats.

  2. What is the purpose of 802.1X port-based authentication in an Aruba wired environment?

    Answer: To authenticate devices before granting network access

    802.1X authenticates devices at the port level before allowing them to access network resources.

  3. In Aruba ClearPass, what component issues certificates and enforces posture assessment?

    Answer: ClearPass Policy Manager

    ClearPass Policy Manager is the core engine that enforces authentication, authorization, and posture policies.

  4. Which attack does Aruba's 'STA blacklisting' feature primarily defend against?

    Answer: Repeated authentication failures or brute-force attempts

    STA blacklisting blocks client stations that repeatedly fail authentication, mitigating brute-force attacks.

  5. What security mode does Aruba recommend when deploying WPA3 in a mixed environment with WPA2 clients?

    Answer: WPA2/WPA3 Transition Mode

    WPA2/WPA3 Transition Mode allows both WPA2 and WPA3 clients to connect to the same SSID simultaneously.

  6. Which Aruba feature uses DHCP fingerprinting and HTTP user-agent strings to identify client device types?

    Answer: Device Fingerprinting in ClearPass

    ClearPass Device Fingerprinting uses DHCP, HTTP, and other attributes to identify and profile endpoint device types.

  7. What is the role of the 'trusted' flag on an Aruba AP port in the context of network security?

    Answer: It marks the uplink as a legitimate wired infrastructure port, suppressing rogue detection on it

    Marking an AP port as trusted tells the system it is a valid infrastructure uplink so it is not flagged as a rogue.