Which most accurately describes the "Select All Matches" rule evaluation algorithm in Enforcement Policies?
A. All rules are checked for any matching rules and their respective Enforcement profiles are applied.
B. All rules is checked, and if there is no match, no Enforcement profile is applied.
C. Each rule is checked, and once a match if found, the Enforcement profile assigned to that rule is applied, along with the default Enforcement profile.
D. Each rule is checked, and once a match is found, the Enforcement profile assigned to that rule is applied and the rule matching stops.
Refer to the exhibit.
An administrator has enabled `department' and `memberOf' as roles. Which effect will this have on Enforcement?
A. The user's memberOf attribute is sent back to the controller as a firewall role.
B. The user's authentication will be rejected if the user does not have a department attribute in AD.
C. The user's department and group membership must be included in role mapping rules.
D. The user's department and group membership will be available as roles for evaluation by the enforcement policy.
Which options support DHCP profiling for devices in a network? (Choose two.)
A. configuring ClearPass as a DHCP relay for the client
B. enabling the DHCP server to profile endpoints and forward meta-data to ClearPass
C. enabling DHCP relay on our network access devices so DHCP requests are forwarded to ClearPass
D. enabling the DHCP server to forward DHCP traffic to ClearPass
E. DHCP profiling is enabled on ClearPass by default; configuration of the network access devices is not necessary
What must be configured when a network administrator wants to configure RADIUS authentication with a network access device (NAD)? (Choose two.)
A. The NAD and ClearPass must be configured for NTP time synchronization.
B. The NAD must be configured for RADIUS accouning.
C. The ClearPass EAP/RADIUS server certificate must be installed on the NAD.
D. ClearPass and the NAD must have the same shared secret.
E. The NAD must be configured as a known network device in ClearPass.
In ClearPass, which two service configuration can process credentials from a web Login Page? (Choose two.)
A. Guest Service MAC Authentication
B. MSCHAP RADIUS Service
C. Aruba Application Authentication
D. WebAuth Service
E. EAP-PEAP RADIUS Service
What happens when a client successfully authenticates but does not match any Enforcement Policy rules?
A. no role is applied to the device
B. logon profile is applied to the device
C. default Enforcement profile is applied
D. guest rule is applied to the device
E. default rule is applied to the device
Refer to the exhibit.
Based on the information shown, why did the Joining AD fail?
A. the GSS is wrong
B. the wrong FQDN of the AD was entered while joining
C. thewrong domain name was selected while joining the AD
D. there is a clock difference between ClearPass and AD servers
E. there is an IP communication issue
What Information is needed to add ClearPass to an Active Directory Domain? (Select two.)
A. domain user credentials
B. CPPM enterprise credentials
C. Administrator FQDN
D. domain controller FQDN
E. Administrator user credentials
Refer to the exhibit.
Under which option on the Receipt page can SMS delivery be enabled?
A. Footer
B. Form
C. Actions
D. Title
E. Header
What is the primary use of the ClearPass OnGuard Application?
A. Device Profiling
B. Guest Access
C. Secure Employee Access
D. Endpoint Posture
E. Onboarding BYOD Devices