HPE Aruba Certified Mobility Expert (ACMX) — Question 30
An administrator manages an Aruba wireless network. Users authenticate to the wireless network using PEAP, where their credentials are validated by the controllers local database. The company purchases Android tablets to use with an inventory tracking system The administrator notices that many of the users of these devices use their normal username and password to authenticate, which allows the tablet to access all resources that the user can access from their wireless computers. This is a security violation.
Which Aruba Mobility Controller (MC) feature should the administrator configure to restrict tablet access to a web portal for authentication, where an appropriate post-authentication policy can be applied to these tablets?
Answer options
- A. AirMatch
- B. AP fingerprinting
- C. Server-derived roles
- D. User-derived rules
Correct answer: C
Explanation
The correct answer is C, Server-derived roles, which allows the administrator to create specific roles for devices post-authentication, ensuring appropriate access levels. Options A and B do not address the need for role-based access control specific to device authentication, while D, User-derived rules, would not provide the necessary distinction for tablet access compared to wireless computers.