Refer to the exhibit.

An AD user's department attribute value is configured as "QA". The user authenticates from a laptop running MAC OS X. Which role is assigned to the user in ClearPass?
A. HR Local
B. Remote Employee
C. [Guest]
D. Executive
E. IOS Device
A customer wants all guests who access a company's guest network to have their accounts approved by the receptionist, before they are given access to the network. How should the network administrator set this up in ClearPass? (Select two.)
A. Enable sponsor approval confirmation in Receipt actions.
B. Configure SMTP messaging in the Policy Manager.
C. Configure a MAC caching service in the Policy Manager.
D. Configure a MAC auth service in the Policy Manager.
E. Enable sponsor approval in the captive portal authentication profile on the NAD.
Refer to the exhibit.

Based on the Access Tracker output for the user shown, which statement describes the status?
A. The Aruba Terminate Session enforcement profile as applied because the posture check failed.
B. A Healthy Posture Token was sent to the Policy Manager.
C. A RADIUS-Access-Accept message is sent back to the Network Access Device.
D. The authentication method used is EAP-PEAP.
E. A NAP agent was used to obtain the posture token for the user.
Why can the Onguard posture check not be performed during 802.1x authentication?
A. Health Checks cannot be used with 802.1x.
B. Onguard uses RADIUS, so an additional service must be created.
C. Onguard uses HTTPS, so an additional service must be created.
D. Onguard uses TACACS, so an additional service must be created.
E. 802.1x is already secure, so Onguard is not needed.
ClearPass and a wired switch are configured for 802.1x authentication with RADIUS CoA (RFC 3576) on UDP port 3799. This port has been blocked by a firewall between the wired switch and ClearPass. What will be the outcome of this state?
A. RADIUS Authentications will fail because the wired switch will not be able to reach the ClearPass server.
B. During RADIUS Authentication, certificate exchange between the wired switch and ClearPass will fail.
C. RADIUS Authentications will timeout because the wired switch will not be able to reach the ClearPass server.
D. RADIUS Authentication will succeed, but Post-Authentication Disconnect-Requests from ClearPass to the wired switch will not be delivered.
E. RADIUS Authentication will succeed, but RADIUS Access-Accept messages from ClearPass to the wired switch for Change of Role will not be delivered.
An employee authenticates using a corporate laptop and runs the persistent Onguard agent to send a health check back the Policy Manager. Based on the health of the device, a VLAN is assigned to the corporate laptop. Which licenses are consumed in this scenario?
A. 1 Policy Manager license, 1 Onboard License
B. 2 Policy Manager licenses, 1 Onguard License
C. 1 Policy Manager license, 1 Profile License
D. 2 Policy Manager licenses, 2 Onguard licenses
E. 1 Policy Manager license, 1 Onguard License
Refer to the exhibit.

What information can be drawn from the audit row detail shown? (Select two.)
A. radius01 was deleted from the list of authentication sources.
B. The policy service was moved to position number 4.
C. radius01 was moved to position number 4.
D. The policy service was moved to position number 3.
E. raduis01 was added as an authentication source.
Refer to the exhibit.

Based on the configuration of a Windows 802.1X supplicant shown, what will be the outcome of selecting `Validate server certificate'?
A. The server and client will perform an HTTPS SSL certificate exchange.
B. The client will verify the server certificate against a trusted CA.
C. The client will send its private key to the server for verification.
D. The server will send its private key to the client for verification.
E. The client will send its certificate to the server for verification.
Which collectors can be used for device profiling? (Select two.)
A. Username and Password
B. ActiveSync Plugin
C. Client's role on the controller
D. Onguard agent
E. Active Directory Attributes
Refer to the exhibit.

Based on the information shown on a client's laptop, what will happen next?
A. The web login page will be displayed.
B. The client will send a NAS authentication request to ClearPass.
C. ClearPass will send a NAS authentication request to the NAD.
D. the NAD will send an authentication request to ClearPass.
E. The user will be presented with a self-registration receipt.