Which statement accurately describes configuration of Data and Management ports on the ClearPass appliance? (Select two.)
A. Static IP addresses are only allowed on the management port.
B. Configuration of the data port is mandatory.
C. Configuration on the management port is mandatory.
D. Configuration of the data port if optional.
E. Configuration of the management port is optional.
Refer to the exhibit.

Based on the ClearPass and Aruba Controller configuration settings for Onboarding shown, which statement accurately describes an employee's new personal device connecting to the Onboarding network? (Select two.)
A. Post-Onboarding, the device will be assigned the BYOD-Provision firewall role in the Aruba Controller.
B. Pre-Onboarding, the device will be redirected to the `Onboarding Page' Captive Portal.
C. The BYOD-Provision role is a ClearPass internal role and exists in ClearPass.
D. The device will not be redirected to any Onboarding page.
E. Pre-Onboarding, the device will be assigned the BYOD-Provision firewall role in the Aruba Controller.
What is the certificate format PKCS #7, or .p7b, used for?
A. Certificate Signing Request
B. Binary encoded X.509 certificate
C. Binary encoded X.509 certificate with public key
D. Certificate with an encrypted private key
E. Certificate chain
Which components of a ClearPass is mandatory?
A. Authorization Source
B. Profiler
C. Role Mapping Policy
D. Enforcement
E. Posture
What must be configured to enable RADIUS authentication with ClearPass on a network access device (NAD)? (Select two.)
A. the ClearPass server must have the network device added as a valid NAD
B. the ClearPass server certificate must be installed on the NAD
C. a matching shared secret must be configured on both the ClearPass server and NAD
D. an NTP server needs to be set up on the NAD
E. a bind username and bind password must be provided
Refer to the exhibit.

What can be concluded from the Access Tracker output shown?
A. The client used incorrect credentials to authenticate to the network.
B. ClearPass does not have a service enabled for MAC authentication.
C. The client MAC address is not present in the Endpoints table in the CrearPass database.
D. The RADIUS client on the Windows server failed to categorize the service correctly.
E. The client wireless profile is incorrectly setup.
Refer to the exhibit.

Based on the Policy configuration shown, which VLAN will be assigned when a user with ClearPass role Engineer authenticates to the network successfully on Saturday using connection protocol WEBAUTH?
A. Full Access VLAN
B. Employee VLAN
C. Internet VLAN
D. Deny Access
Refer to the exhibit.

Based on the configuration of the Enforcement Profiles in the Onboard Authorization service shown, which Onboarding action will occur?
A. The device will be disconnected from the network after Onboarding so that an EAP-TLS authentication is not performed.
B. The device will be disconnected from and reconnected to the network after Onboarding is completed.
C. The device's onboard authorization request will be denied.
D. The device will be disconnected after post-Onboarding EAP-TLS authentication, so a second EAP- TLS authentication is performed.
E. After logging in on the Onboard web login page, the device will be disconnected form and reconnected to the network before Onboard begins.
Refer to the exhibit.

Based on the Aruba TACACS+ dictionary shown, how is the Aruba-Role attribute used?
A. The Aruba-Admin-Role on the controller is applies to users using TACACS+ to login to the Policy Manager
B. To assign different privileges to clients during 802.1X authentication
C. To assign different privileges to administrators logging into an Aruba NAD
D. It is used by ClearPass to assign TIPS roles to clients during 802.1X authentication
E. To assign different privileges to administrators logging into ClearPass
Which is a valid policy simul-ation types in ClearPass? (Choose three.)
A. Enforcement Policy
B. Posture token derivation
C. Role Mapping
D. Endpoint Profiler
E. Chained simulation