Exit HPE6-A81 Aruba Certified ClearPass Expert Written
Question 3 of 5
0% complete
Q3 Single choice

A customer has deployed an OnGuard Solution to all the corporate devices using a group policy rule to push the OnGuard Agents. The network administrator is complaining that some of the agents are communicating to the ClearPass server that is located in a DMZ, outside the firewall.
The network administrator wants all of the agents System Health Validation traffic to stay inside the Management subnets.

What can the ClearPass administrator do to move the traffic only to the ClearPass Management Ports?

  • A

    Edit the agent.conf file being deployed to the clients to use the ClearPass Management Port for SHV updates.

  • B

    Select the correct OnGuard Agent installer, and use the one configured for Management Port for the clients.

  • C

    Configure a Policy Manager Zone mapping so the OnGuard agent will use the Management Port IP.

  • D

    Filter TCP port 6658 on the firewall, forcing the OnGuard agent to use the ClearPass Management port.