To address unencrypted tunnels between CX switches and Aruba Gateways after a security audit, which action must be performed?

Prepare for the HPE Aruba Networking Certification. Enhance your skills with interactive quiz formats, detailed explanations, and valuable study resources. Ensure you're ready for the exam!

Multiple Choice

To address unencrypted tunnels between CX switches and Aruba Gateways after a security audit, which action must be performed?

Explanation:
Securing the control channel between CX switches and Aruba Gateways requires enabling a feature that encrypts the traffic used for policy and tunnel signaling. Enabling Enhanced PAPI Security activates encryption and integrity protections specifically for the PAPI traffic that runs between these devices, so the tunnels are no longer unencrypted. This is the targeted option for protecting the inter-device communication that governs the tunnels, which is exactly what a security audit would require. The other options don’t address this specific control-plane traffic between CX and Gateway. They refer to more general security modes or to GRE-only protections, which wouldn’t guarantee encryption of the PAPI-based tunnels used by Aruba devices.

Securing the control channel between CX switches and Aruba Gateways requires enabling a feature that encrypts the traffic used for policy and tunnel signaling. Enabling Enhanced PAPI Security activates encryption and integrity protections specifically for the PAPI traffic that runs between these devices, so the tunnels are no longer unencrypted. This is the targeted option for protecting the inter-device communication that governs the tunnels, which is exactly what a security audit would require.

The other options don’t address this specific control-plane traffic between CX and Gateway. They refer to more general security modes or to GRE-only protections, which wouldn’t guarantee encryption of the PAPI-based tunnels used by Aruba devices.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy