VMware

VMware NSX 4.x Advanced Design

3V0-42.23
Popular

Prepare for the 3V0-42.23 exam to validate your skills in advanced design for VMware NSX 4.x.

189 questions 0 views Free
Start Mock Test Timed · Full-length · Scored

Questions 51–60 of 189

Q51

What happens when an NSX Edge device runs out of available IP addresses from its assigned DHCP pool?

  • A Clients receive static IPs
  • B DHCP service shuts down
  • C Clients receive APIPA addresses
  • D Clients are dropped from the network
Explanation Clients typically fall back to APIPA when DHCP fails to assign addresses.
Q52

Which service provides advanced load balancing for applications?

  • A NSX Advanced Load Balancer
  • B VMware vSphere Replication
  • C NSX Distributed Firewall
  • D vRealize Network Insight
Explanation NSX Advanced Load Balancer provides application traffic management; others serve different purposes.
Q53

A company needs secure multi-cloud connectivity for its applications. What should they implement?

  • A NSX VPN and Direct Connect
  • B vSphere Storage DRS
  • C vCenter High Availability
  • D VMware Tanzu
Explanation NSX VPN and Direct Connect enable secure connectivity across clouds; others do not address multi-cloud needs.
Q54

You are configuring an NSX Distributed Firewall. What happens when you apply a deny rule above an allow rule?

  • A All traffic is allowed
  • B Traffic is denied unless explicitly allowed
  • C Rules are ignored and all traffic is allowed
  • D Only outbound traffic is affected
Explanation Deny rules above allow rules take precedence; thus, traffic is denied unless specifically permitted.
Q55

Which service provides logical switching in NSX?

  • A Logical Switches
  • B Edge Services
  • C Distributed Firewall
  • D Load Balancer
Explanation Logical Switches create Layer 2 networks for VMs, while other options serve different functions.
Q56

A company needs to enforce security policies across multiple NSX segments. What should they implement?

  • A Shared Edge Services
  • B NSX Distributed Firewall
  • C VLAN Trunking
  • D Service Insertion
Explanation The NSX Distributed Firewall allows policy enforcement at the VM level across segments, unlike the other options.
Q57

You are configuring an NSX Tier-0 Gateway. What happens when you enable HA with Active/Standby mode?

  • A Two active routers run simultaneously
  • B Increased throughput on one router
  • C Automatic failover between routers
  • D Only one router processes traffic
Explanation Enabling HA in Active/Standby mode allows for automatic failover; the other options describe incorrect HA behavior.
Q58

Which service enables micro-segmentation in NSX?

  • A NSX Distributed Firewall
  • B NSX Load Balancer
  • C NSX Edge Gateway
  • D NSX Manager
Explanation NSX Distributed Firewall provides micro-segmentation, while the others focus on networking functions.
Q59

A company needs to ensure network traffic can only be monitored by specific users in their NSX environment. What should they configure?

  • A Role-Based Access Control (RBAC)
  • B Layer 7 Load Balancing
  • C Service Insertion
  • D VPN Tunneling
Explanation RBAC allows specific access rights to users; other options do not address user permissions.
Q60

You are configuring dynamic routing within NSX. What happens when you set a lower administrative distance for a static route than for an OSPF route?

  • A Static route is preferred
  • B OSPF route is preferred
  • C Both routes are used
  • D Static route is ignored
Explanation A lower administrative distance means higher preference; OSPF would be ignored for static.