Summer Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: exc65

Which two are true of the NSX Gateway Firewall? (Choose two.)

A.

Firewall rules in System category cannot be edited.

B.

Firewall rules in Pre Rule category are applied to all gateways.

C.

NAT service can be configured in NSX Gateway Firewall policy.

D.

Security Groups can be used in Applied-To column.

E.

Applied-To can be configured at Firewall Policy level.

An administrator needs to configure their NSX-T logging to audit changes on firewall security policy. The administrator Is using the following command from NSX-T3.1 documentation :

Which Message ID from the following list will allow the administrator to track changes on firewall security rules?

A.

FABRIC

B.

MONITOR

C.

SYSTEM

D.

FIREWALL

An administrator needs to send FW connections logs to a remote server.

Which sequence of commands does the administrator need to apply on their ESXi Host?

A)

B)

C)

D)

A.

Option A

B.

Option B

C.

Option C

D.

Option D

When using URL Analysis In NSX-T, which two services must be set in the URL rule to capture traffic over TCP and UDP? (Choose two.)

A.

DNS

B.

DNS-TSIG

C.

DHCPv6

D.

DHCP

E.

DNS-UDP

A security administrator is verifying the health status of an NSX Service Instance.

Which two parameters must be functioning for the health status to show as Up? (Choose two.)

A.

VMs must have at least one vNIC.

B.

VMs must not have existing endpoint protection rules.

C.

VMs must have virtual hardware version 9 or higher.

D.

VMs must be available on the host.

E.

VMs must be powered on.

A customer has a requirement to achieve Zero-Trust Security and minimize operational overhead. Which VMware solution can be used by the customer to achieve the requirement?

A.

NSX Manager

B.

Tanzu Kubernetes Grid

C.

Carbon Black Anti-Virus

D.

NSX Intelligence

What is the NSX feature that allows a user to block ICMP between 192.168.1.100 and 192.168.1.101?

A.

NSX Distributed Switch Agent

B.

NSX Distributed IDS/IPS

C.

NSX Distributed Routing

D.

NSX Distributed Firewall

An administrator has enabled the "logging" option on a specific firewall rule. The administrator does not see messages on the Logging Server related to this firewall rule. What could be causing the issue?

A.

The logging on the firewall policy needs to be enabled.

B.

Firewall Rule Logging is only supported in Gateway Firewalls.

C.

NSX Manager must have Firewall Logging enabled.

D.

The logging server on the transport nodes is not configured.

A security administrator recently enabled Guest Introspection on NSX-T Data Center.

Which would be a reason none of the Microsoft Windows based VMs are reporting any information?

A.

Windows VMs require a reboot.

B.

VMware Tools need to be reconfigured.

C.

NSX Manager require a reboot.

D.

NSX Manager needs to be reconfigured.

What component in a transport node receives the firewall configuration from the central control plane?

A.

nsx-ccp

B.

nsx-appl-proxy

C.

nsx-mpa

D.

nsx-proxy