VMware
VMware NSX 4.x Advanced Design
3V0-42.23
Popular
Prepare for the 3V0-42.23 exam to validate your skills in advanced design for VMware NSX 4.x.
189 questions
0 views
Free
Questions 31–40 of 189
Which service manages distributed firewall policies in NSX?
-
A
NSX Manager
-
B
NSX Edge
-
C
NSX Control Plane
-
D
NSX Data Plane
Explanation
NSX Manager is responsible for managing distributed firewall policies; others perform different functions within NSX.
A company needs to ensure micro-segmentation for financial applications. What is the best NSX configuration approach?
-
A
Implement layer 3 NAT
-
B
Create application security groups
-
C
Use static routing
-
D
Enable standard VLANs
Explanation
Creating application security groups facilitates micro-segmentation; the other options do not achieve the required segmentation level.
What happens when a virtual machine is moved to a different host within the same NSX-T segment?
-
A
It retains its original IP address
-
B
Its IP address changes
-
C
It loses network connectivity
-
D
It requires reconfiguration of firewall rules
Explanation
The VM retains its original IP within the same segment; the other options incorrectly assume changes to connectivity or addressing.
Which NSX service provides advanced threat detection?
-
A
NSX Network Detection and Response
-
B
NSX Load Balancer
-
C
NSX VPN
-
D
NSX Distributed Firewall
Explanation
NSX Network Detection and Response identifies threats, whereas others serve different purposes.
A company needs to implement distributed firewall rules. What must you ensure first?
-
A
NSX Controller is operational
-
B
All virtual machines are powered on
-
C
Network segments are deleted
-
D
vCenter is downgraded
Explanation
The NSX Controller manages the distributed firewall rules, requiring it to be operational.
What happens when an NSX load balancer is configured but has no back-end servers?
-
A
Traffic is distributed to all servers
-
B
No traffic can be processed
-
C
Load balancer is disabled immediately
-
D
It redirects traffic to another load balancer
Explanation
Without back-end servers, there is no endpoint to process traffic, rendering the load balancer ineffective.
Which service does NSX use for microsegmentation?
-
A
NSX Distributed Firewall
-
B
NSX Edge Services Gateway
-
C
NSX Load Balancer
-
D
NSX VPN Service
Explanation
NSX Distributed Firewall enforces microsegmentation, while others serve different purposes.
A company needs to monitor traffic patterns in NSX-T. What should they use?
-
A
NSX Manager
-
B
NSX Flow Monitoring
-
C
NSX Edge Analytics
-
D
NSX Security Posture
Explanation
NSX Flow Monitoring provides insights into traffic patterns, while others do not focus on traffic analysis.
You are configuring a tier-1 gateway for Kubernetes integration. What is the first step?
-
A
Create a Workload Segment
-
B
Configure a distributed router
-
C
Deploy NSX Container Plugin
-
D
Attach Load Balancer
Explanation
Creating a Workload Segment is essential for proper gateway integration; others are subsequent steps.
Which service provides API access to NSX-T?
-
A
NSX-T Manager API
-
B
VMware vSphere API
-
C
NSX Data Center REST API
-
D
NSX Edges API
Explanation
The NSX-T Manager API offers programmatic access to manage NSX-T components; others do not solely focus on NSX-T.