HPE6-A86 Practice Questions
Prepare for HPE6-A86 with more than an answer.
Unlock the full exam and previous versions
- v1HPE Aruba Networking Certified Associate - Switching 165 questions Current
- HPE6-A41Legacy Applying Aruba Switching Fundamentals for Mobility (ACSA) 123 questions Locked
- HPE6-A69Legacy Aruba Certified Switching Expert (ACSX) 255 questions Locked
- HPE6-A72Legacy Aruba Certified Switching Associate (ACSA) 157 questions Locked
- HPE6-A73Legacy Aruba Certified Switching Professional (ACSP) 158 questions Locked
- Exam fee
- $260 USD
- Level
- Associate
- Valid for
- 3 years
Domains covered on the exam 5
- Networking Fundamentals25%
- HPE Aruba Networking Product Knowledge20%
- Configure HPE Aruba Networking Solutions25%
- Troubleshoot, Operate, and Maintain HPE Aruba Networking Solutions17%
- Security and QoS13%
- 1
You are troubleshooting a workstation that cannot access resources outside of its local subnet. You have confirmed the workstation has a valid IP address, subnet mask, and DNS server. You suspect an issue with its default gateway configuration. From the workstation, which command-line utility would be most effective to test connectivity to its configured default gateway?
Show answer details
Correct answer: D
The
pingcommand sends ICMP Echo Request messages to a target IP address and waits for an Echo Reply. It is the most direct and fundamental tool for verifying Layer 3 reachability. Pinging the default gateway IP address will quickly confirm whether the workstation can communicate with its first-hop router at the IP layer. - 2
A junior network administrator needs to create a static route on an Aruba CX switch. The goal is to direct all traffic destined for the 10.100.0.0/16 network to the next-hop router at 192.168.1.254. Which command correctly creates this static route in the default VRF?
Show answer details
Correct answer: C
The correct syntax for creating a static route in AOS-CX is
ip route /. This command, entered in global configuration mode, adds the specified route to the routing table for the current VRF context (default, in this case). - 3
What is the primary architectural difference in AOS-CX that distinguishes it from many traditional network operating systems, allowing for greater resiliency and programmability?
Show answer details
Correct answer: B
AOS-CX's core design is fundamentally different. It is not a monolithic system. Instead, it uses a centralized state database. All processes (like STP, LACP, OSPF) are independent modules that read from and write to this database. This separation means a crash in one process does not affect others, enhancing resiliency. Furthermore, the entire system state and configuration are accessible via a full REST API, enabling deep programmability and automation.
- 4
A network topology consists of four switches. The network administrator needs to ensure Switch A always becomes the root bridge for the Spanning Tree Protocol instance. What is the most effective way to configure Switch A to achieve this?
Show answer details
Correct answer: C
The STP root bridge election is determined by the Bridge ID, which is a combination of a configurable priority and the switch's MAC address. The switch with the lowest Bridge ID wins. By setting the priority to the lowest possible value (0), you can effectively guarantee that this switch will become the root bridge, assuming no other switch is also configured with a priority of 0.
- 5
A user reports that they can access local file servers but not the internet. A network technician checks the Aruba CX switch port connected to the user and sees the following output from the
show vlancommand:------------------------------------------------------------------ VLAN ID Name Status Reason ------------------------------------------------------------------ 1 DEFAULT_VLAN up -- 10 Users up -- 20 Servers up -- 30 Guests down No port up 99 Management up --The user is supposed to be in the 'Users' VLAN (VLAN 10), and the switch port is 1/1/5. Which command should the technician use next to verify the port's VLAN assignment?
Show answer details
Correct answer: C
The
show interfacecommand provides detailed information about a specific port, including its administrative and operational status, speed, duplex, and most importantly for this scenario, its VLAN configuration (e.g., whether it's an access port and which VLAN it's assigned to, or if it's a trunk). This command will quickly confirm if port 1/1/5 is correctly configured asvlan access 10. - 6
What is the function of the
no shutdowncommand when issued within an interface configuration context on an Aruba CX switch?Show answer details
Correct answer: B
By default, many interfaces on a switch are in an administratively down state. The
shutdowncommand disables an interface, and theno shutdowncommand reverses this, placing the interface in an administratively up state. This allows the interface to attempt to establish a link and pass traffic if a device is connected. - 7
A network engineer is analyzing the following diagram representing an RSTP-enabled network. Switch-C has the lowest MAC address. Assuming all switches have the default RSTP priority, which port on Switch-D will be in the 'Blocking' state (Alternate port role)?
graph TD subgraph Core SwitchA("Switch-A Pri: 32768") SwitchB("Switch-B Pri: 32768") end subgraph Access SwitchC("Switch-C Pri: 28672") SwitchD("Switch-D Pri: 32768") end SwitchA -- "Port 1" --- SwitchC SwitchB -- "Port 1" --- SwitchC SwitchA -- "Port 2" --- SwitchD SwitchB -- "Port 2" --- SwitchDShow answer details
Correct answer: B
- Root Bridge Election: Switch-C has the lowest priority (28672), so it becomes the Root Bridge. All ports on Switch-C are Designated ports.
- Root Port Selection: Switch-D must select one port as its Root Port (the best path to the Root Bridge). The path through Switch-A is likely chosen over Switch-B if Switch-A has a lower MAC address or better path cost (assumed equal here). Let's assume the path via Switch-A is chosen as the Root Port.
- Alternate Port: The remaining link on Switch-D, which connects to Switch-B, provides a redundant but less-preferred path to the Root Bridge. In RSTP, this port becomes an Alternate port and enters a Blocking state to prevent a loop.
- 8
A financial services company is implementing a new access layer using Aruba CX 6200F switches. To comply with security policies, any port that connects to an end-user device must only allow a single, specific MAC address to communicate. If an unauthorized device is connected, the port should immediately be disabled and an SNMP trap sent to the monitoring system. Which set of commands correctly implements this policy on interface 1/1/1?
Show answer details
Correct answer: B
This configuration correctly meets all requirements.
port-security enableactivates the feature.mac-address stickylearns the first MAC address and binds it to the port.client-limit 1enforces the single device policy.violation-mode shutdown-notifyis the correct syntax in AOS-CX to both disable the port (shutdown) and send an SNMP trap (notify) upon violation. - 9
A network administrator is reviewing the configuration of an Aruba CX 6300 switch stack running VSF. They need to verify the VSF member IDs, their current state, and which member is acting as the Commander. Which command provides the most concise output for this specific task?
Show answer details
Correct answer: C
The
show vsfcommand is specifically designed to display the status of the Virtual Switching Framework (VSF). It provides a summary table that includes each member's ID, MAC address, state (e.g., Commander, Standby, Member), priority, and model, which is exactly the information required. - 10
A network engineer is configuring inter-VLAN routing on an Aruba CX 6100 switch. The switch needs to route traffic between VLAN 10 (192.168.10.0/24) and VLAN 20 (192.168.20.0/24). Which two components are essential to enable this functionality? (Select TWO)
Show answer details
Correct answer: B, D
This global command enables Layer 3 routing capabilities on the switch. Without it, the switch operates only at Layer 2 and cannot route between VLANs.
Each VLAN that needs to participate in routing requires a Layer 3 interface, which is an SVI (e.g.,
interface vlan 10). This SVI must be configured with an IP address from its respective subnet to act as the default gateway for devices in that VLAN.
