Which licenses are included in the built in Starter kit for Clearpass?
A. 25 ClearPass Policy Manager licenses
B. 25 Clearpass Enterprise licenses
C. 10 ClearPass Guest licenses, 10 ClearPass OnGuard licenses and 10 ClearPass Onboard licenses
D. 25 ClearPass Profiler licenses
E. 10 Clearpass Enterprise licenses
What is the Onboard license usage based on?
A. Each user connected to the provisioning SSID uses 1 Onboard license.
B. Each user authenticated using the Onboard credential uses 1 Onboard license.
C. Each user provisioned using the Onboard process uses 1 Onboard license.
D. Each user that has the OnGuard agent downloaded uses 1 Onboard license.
E. Each user that downloads the Onboard application to their iOS device uses 1 Onboard license.
An employee provisions their personal smart phone using the Onboard process. In addition, they have a corporate laptop given to them by IT that connects to the secure network. How many licenses does the user consume?
A. 1 Policy Manager license, 1 Onboard License.
B. 1 Policy Manager license, 1 Guest License.
C. 2 Policy Manager licenses, 1 Onboard License.
D. 2 Policy Manager licenses, 2 Onboard Licenses.
E. 1 Policy Manager license, 2 Guest licenses.
To setup an Aruba Controller as DHCP relay for device fingerprinting, which of the following IP addresses needs to be configured?
A. DHCP server IP
B. ClearPass server IP
C. Active Directory IP
D. Microsoft NPS server IP
E. Switch IP
Refer to the screen capture below:
Based on the Enforcement Policy configuration, if a user with Role Engineer connects to the network and the posture token assigned is Unknown, what Enforcement Profile will be applied?
A. EMPLOYEE_VLAN
B. Remote Employee ACL
C. RestrictedACL
D. Deny Access Profile
E. HR VLAN
Below is an extract from the Web Login Page configuration in ClearPass Guest: What is the purpose of the Pre-Auth Check?
A. To authenticate users before they launch the Web Login Page.
B. To authenticate users before ClearPass sends the credentials to the NAD device.
C. To authenticate users after the NAD device sends an authentication request to ClearPass.
D. To replace the need for the NAD to send an authentication request to ClearPass.
E. To re-authenticate users when they're roaming from one NAD to another.
A company implemented the Self-Registration with Sponsor Approval workflow for their Guest SSID. A guest connects to the Guest SSID, then self-registers. They see the following on their client device:
Which of the following is true?
A. The Sponsor approved the guest already.
B. The Sponsor has not approved the guest yet.
C. A confirmation email was sent to the sponsor at [email protected].
D. A guest registration receipt was sent to [email protected].
E. The guest is ready to login using their username and password.
Which of the following is TRUE of dual-SSID onboarding?
A. The device connects to the secure SSID for provisioning
B. The Onboard Authorization service is triggered when the user connects to the secure SSID
C. The Onboard Provisioning service is triggered when the user connects to the Provisioning SSID
D. The Onboard Authorization service is triggered during the Onboarding process
E. The Onboard Authorization service is never triggered
Which of the following types of Posture Token sources are available on Clearpass? (Choose 2)
A. Posture Policy
B. Endpoint Profiler
C. Microsoft NPS Server
D. Active Directory
E. Aruba Controller
Refer to the screen capture below: Based on the posture plugin configuration shown in the above screen, which of the following statements is true?
A. Check for any antivirus software enabled for all versions of Windows OS.
B. Check for any antivirus software enabled for Windows 7.
C. Check for AVG antivirus software enabled and is latest for Windows 7.
D. It is using the OnGuard dissolvable agent to perform the antivirus/antispyware checks.
E. It is using auto remediation for Windows 7 clients.