HPE6-A85 Sample Questions & Answers
Switching and campus architecture at Layer 2 and 3 tie with RF basics and AP configuration for the heaviest weighting, alongside the OSI and TCP/IP stack, connectivity and resiliency, basic routing topologies, security standards, AAA concepts, and health monitoring.
Launch the full HPE6-A85 simulator →Showing 10 of 20 free samples.
- Question 1Beginner
Network Stack · OSI Model Layer Functions
True or False: The primary function of the Transport Layer (Layer 4) in the OSI model is to provide logical node-to-node addressing and path determination across different networks.
Show answer & explanation
Correct answer: B
This statement is false. The function described—logical node-to-node addressing (IP addressing) and path determination (routing)—is the primary responsibility of the Network Layer (Layer 3). The Transport Layer (Layer 4) is responsible for process-to-process communication, segmentation, reliability (TCP), and flow control.
- Question 2Intermediate
Connectivity · Campus Network Design
A consultant is designing a network for a new multi-floor office building. The design uses a collapsed core architecture where distribution and core functions are combined. Each floor will have multiple access switches. How should the access layer switches connect to the collapsed core layer to ensure both redundancy and optimal bandwidth utilization?
Show answer & explanation
Correct answer: B
The best practice is to connect each access switch to both switches in the collapsed core using a multi-chassis LACP bundle (achieved with technologies like Aruba's VSX). This approach provides link and device redundancy while allowing both uplinks to be active simultaneously, doubling the available bandwidth and simplifying the Layer 2 topology by eliminating STP-blocked ports between the access and core layers.
- Question 3Beginner
Management and Monitoring · Network Management Platforms
A company is migrating its network management from a legacy on-premises solution to a cloud-based platform. The key goals are zero-touch provisioning for new hardware at remote sites, centralized configuration management via templates, and AI-powered insights into network health. Which Aruba product is the most suitable choice?
Show answer & explanation
Correct answer: C
Aruba Central is Aruba's cloud-native management platform that provides all the listed features. It is specifically designed for unified management of APs, switches, and gateways across distributed locations. It offers zero-touch provisioning (ZTP), powerful template-based configuration, and AIOps for network insights and troubleshooting. NetEdit is for switch configuration automation, ClearPass is for network access control, and AirWave is an on-premises management solution.
- Question 4Intermediate
Routing · OSPF Configuration
A network engineer is configuring OSPF (process 1) on an Aruba CX switch running AOS-CX. The switch has multiple Layer 3 interfaces, but OSPF must run in area 0 only on the interfaces whose IP addresses are in the 10.100.0.0/16 range (for example,
interface vlan 100with 10.100.1.1/24). How is this accomplished on AOS-CX?Show answer & explanation
Correct answer: B
AOS-CX has no router-level
networkstatement for OSPF. After the OSPF instance (router ospf 1) and its area are created, OSPF is enabled per Layer 3 interface withip ospf area; the interface's configured IPv4 network then participates in that area. To run OSPF only on the interfaces in 10.100.0.0/16, enterip ospf 1 area 0only in the contexts of those interfaces (for exampleinterface vlan 100).ip ospf passiveonly stops OSPF packets on an interface that is already in OSPF; it does not select interfaces by address range. - Question 5Intermediate
Switching · Voice VLAN
A technician is configuring Aruba CX access ports for VoIP phones that each have a PC connected to the phone's pass-through port. Voice traffic must be kept separate from data traffic so that it can be prioritized. Which switch feature designates a VLAN specifically for voice traffic - the VLAN that LLDP-MED then advertises to the phones - so that the phone's tagged traffic is kept in that VLAN while the PC's untagged traffic stays in the data VLAN?
Show answer & explanation
Correct answer: C
On AOS-CX the voice VLAN feature is enabled by designating a VLAN as a voice VLAN in the VLAN context (
vlan 20->voice;show vlan voicelists it). The phone port carries the data VLAN untagged (native VLAN) and the voice VLAN tagged. LLDP-MED advertises 'the voice VLAN configured on the interface' to the phone in its Network Policy TLV (sent only when a voice VLAN policy is present), and CDPv2 does the same for legacy Cisco phones; the phone then tags its voice traffic, which can be prioritized. LLDP-MED is the discovery/advertisement protocol, not the VLAN designation itself; port security limits MAC addresses, and native VLAN tagging (vlan trunk native tag) would force the PC's untagged frames to be dropped. - Question 6Advanced
Network Resiliency and Virtualization · VSX and Multi-Chassis LAG
A company, RetailRapid Corp, is upgrading its campus network core. They have deployed two Aruba CX 8325 switches and configured them for VSX. A downstream access switch needs to be connected to this VSX pair with a 2-member LACP bundle for redundancy and load balancing. The administrator has created
lag 1on the access switch. How must the links be physically cabled for the multi-chassis LAG to function correctly?graph TD subgraph Access Layer AS1[Access Switch] end subgraph VSX Core CX1[CX 8325 - Primary] CX2[CX 8325 - Secondary] CX1 ---|ISL| CX2 end AS1 -- Link 1 --> CX1 AS1 -- Link 2 --> CX2Show answer & explanation
Correct answer: B
For a multi-chassis LAG (MC-LAG) to a VSX pair to work, the member links of the LAG on the downstream device must be split between the two physical switches of the VSX pair. One link connects to the primary switch, and the other link connects to the secondary switch. The VSX pair then presents a single logical device to the access switch for the LACP negotiation, allowing for an active-active, redundant connection.
- Question 7Beginner
Network Stack · IPv6 Addressing
Which type of device is identified by the IPv6 address
fe80::21a:11ff:fe17:5884?Show answer & explanation
Correct answer: B
The IPv6 address prefix
fe80::/10is reserved for link-local unicast addressing. These addresses are automatically configured on every IPv6-enabled interface and are used for communication only on the local network segment (link). They are not routable. Thefffein the middle of the host portion also indicates it was likely generated from a MAC address using the EUI-64 format. - Question 8Beginner
Authentication and Authorization · Guest Access
What is the primary purpose of using a captive portal for a guest Wi-Fi network?
Show answer & explanation
Correct answer: A
A captive portal intercepts a user's web traffic and redirects them to a special web page. The primary purpose of this page is to present an Acceptable Use Policy (AUP), require authentication (e.g., social login, email, voucher code), or simply have them click a button to connect. This acts as a gateway for controlling and tracking guest access.
- Question 9Intermediate
Switching · Spanning Tree Protocol (STP)
An administrator is reviewing the
show spanning-treeoutput on an Aruba CX switch and sees that a port's role is 'Alternate'. What does this indicate about the port's state and function in the network?Show answer & explanation
Correct answer: D
In Rapid Spanning Tree Protocol (RSTP), an 'Alternate' port is a port that provides a redundant, secondary path toward the root bridge. It is currently in a discarding (blocking) state to prevent a loop but is ready to transition immediately to a forwarding state if the primary path (the Root Port) fails. This is a key enhancement of RSTP over legacy STP for faster convergence.
- Question 10Intermediate
Performance Optimization · Quality of Service (QoS)
A network administrator at a manufacturing plant needs to implement a basic Quality of Service (QoS) policy on an Aruba CX switch. The goal is to ensure that traffic from the SCADA control system (VLAN 50) is prioritized over general data traffic (VLAN 100). Which QoS mechanism should be used to achieve this?
Show answer & explanation
Correct answer: A
To prioritize traffic from a specific VLAN, the first step is to classify it. An administrator would create a policy that identifies traffic belonging to VLAN 50. Then, that traffic would be marked with a higher priority value (e.g., a specific CoS or DSCP value). Subsequent queuing mechanisms on the switch will then use this marking to give the SCADA traffic preferential treatment over the lower-priority data traffic, especially during periods of congestion.
Ready for the real thing?
The full HPE6-A85 simulator has every exam-style question, timed mode, and instant scoring.