Refer to the exhibit.

Every switch in the exhibit will route traffic. The company requires a topology in which failover for switch-toswitch links is exclusively handled by the routing protocol and occurs as quickly as possible.
Which topology should the administrator use?
A. A
B. B
C. C
D. D
Refer to the exhibit.

Several interfaces on an AOS-Switch enforce 802.1X to a Radius server at 10.254.202.202. The interface 802.1X settings are shown in the exhibit, and 802.1X is also enabled globally. The security team have added a requirement for port security on the interfaces as well.
Before administrators enable port security, which additional step must they complete to prevent issues?
A. Set 802.1X client limit on the interfaces.
B. Manually add legitimate MAC addresses to the switch authorized MAC list.
C. Enable DHCP snooping on VLAN 20.
D. Enable eavesdropping protection on the interfaces.
Two 5400R AOS-Switches are OSPF neighbors. The network administrator wants routing to update as quickly as possible in the event of a failure on a neighboring switch.
Which technology should the administrator implement on the connected switch interfaces?
A. MAC Lockdown
B. Unidirectional Link Detection (UDLD)
C. Bidirectional Forwarding Detection (BFD)
D. Spanning Tree Root Guard
Refer to the exhibit.

The company wants the fastest convergence and best load sharing of traffic over the links between Switch1 and the VSF fabric.
Which technology should the network administrator implement on these links?
A. RPVST+
B. MSTP
C. loop protection
D. LACP
The security plan for AOS-Switches requires protection from incoming malware traffic: generated from a worm-or virus-infected host.
Which feature should be implemented to provide the required protection?
A. DHCP snooping
B. connection-rate filtering
C. port security
D. proxy ARP
What must an OSPF router do when it receives a link state update?
A. It must participate in a new election for the Designated Router and Backup DR.
B. It must initiate a graceful restart timer.
C. It must re-establish adjacency with its Designated Router and Backup DR.
D. It must run the shortest path first algorithm.
A company needs to update the software on a VSF fabric with two Aruba 540GR switches.
What can the network administrator do to minimize downtime during the update?
A. Ensure that both switches have redundant management modules
B. Deploy the new software with the enhanced PAPI feature
C. Upload the new software through the OOBM ports
D. Implement a sequenced reboot of the new software
A network administrator needs to configure VRRP on VLAN 2 on two AOS-Switches. Which two settings must match on both switches?
A. the physical IP address and priority
B. the VRID and priority
C. the virtual IP address and the physical IP address
D. the VRID and the virtual IP address
Refer to the exhibit.

A network administrator wants to prevent endpoints from spoofing the MAC address of the VLAN 2 default gateway. What should the administrator configure on Switch-1?
A. MAC lockdown of the default gateway MAC address on ports 1-20
B. MAC lockdown of the default gateway MAC address on trk1
C. default gateway MAC address as a port security authorized address on trk1
D. default gateway MAC address as a port security authorized address on ports 1-20
Refer to the exhibits: Exhibit 1

Exhibit 2 A network administrator at a university notices high utilization on links between the access layer and core. The output shown in the exhibit is characteristic of samples taken several times an hour during congestion. The administrator suspects file sharing and other unauthorized traffic, and decides to use an ACL to permit only HTTP, HTTPS, and a few other authorized types of traffic.

How can the administrator apply the ACL to address both the security and the congestion problem?
A. as an inbound PACL on the link aggregations on the access switches
B. as an inbound VACL on the student VLAN on Switch-1
C. as an inbound PACL on the link aggregations on Switch-1
D. as an inbound VACL on the student VLAN on the access switches