Weekend Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: geek65

2V0-41.23 VMware NSX 4.x Professional Questions and Answers

Questions 4

Which two commands does an NSX administrator use to check the IP address of the VMkernel port for the Geneve protocol on the ESXi transport node? (Choose two.)

Options:

A.

esxcfg-nics -1l

B.

esxcli network ip interface ipv4 get

C.

esxcli network nic list

D.

esxcfg-vmknic -1

E.

net-dvs

Buy Now
Questions 5

An administrator wants to validate the BGP connection status between the Tier-O Gateway and the upstream physical router.

What sequence of commands could be used to check this status on NSX Edge node?

Options:

A.

set vrf

show logical-routers

show bgp

B.

show logical-routers

get vrf

show ip route bgp

C.

get gateways

vrf

get bgp neighbor

D.

enable

get vrf

show bgp neighbor

Buy Now
Questions 6

Refer to the exhibit.

An administrator configured NSX Advanced Load Balancer to load balance the production web server traffic, but the end users are unable to access the production website by using the VIP address.

Which of the following Tier-1 gateway route advertisement settings needs to be enabled to resolve the problem? Mark the correct answer by clicking on the image.

Options:

Buy Now
Questions 7

Which command is used to set the NSX Manager's logging-level to debug mode for troubleshooting?

Options:

A.

Set service manager log-level debug

B.

Set service manager logging-level debug

C.

Set service nsx-manager log-level debug

D.

Set service nsx-manager logging-level debug

Buy Now
Questions 8

Which two statements are correct about East-West Malware Prevention? (Choose two.)

Options:

A.

A SVM is deployed on every ESXi host.

B.

NSX Application Platform must have Internet access.

C.

An agent must be installed on every ESXi host.

D.

An agent must be installed on every NSX Edge node.

E.

NSX Edge nodes must have Internet access.

Buy Now
Questions 9

Which three NSX Edge components are used for North-South Malware Prevention? (Choose three.)

Options:

A.

Thin Agent

B.

RAPID

C.

Security Hub

D.

IDS/IPS

E.

Security Analyzer

F.

Reputation Service

Buy Now
Questions 10

Which two choices are solutions offered by the VMware NSX portfolio? (Choose two.)

Options:

A.

VMware Tanzu Kubernetes Grid

B.

VMware Tanzu Kubernetes Cluster

C.

VMware NSX Advanced Load Balancer

D.

VMware NSX Distributed IDS/IPS

E.

VMware Aria Automation

Buy Now
Questions 11

How is the RouterLink port created between a Tier-1 Gateway and Tier-O Gateway?

Options:

A.

Automatically created when Tier-1 is connected with Tier-0 from NSX UI.

B.

Automatically created when Tier-1 is created.

C.

Manually create a Logical Switch and connect to bother Tier-1 and Tier-0 Gateways.

D.

Manually create a Segment and connect to both Tier-1 and Tier-0 Gateways.

Buy Now
Questions 12

NSX improves the security of today's modern workloads by preventing lateral movement, which feature of NSX can be used to achieve this?

Options:

A.

Network Segmentation

B.

Virtual Security Zones

C.

Edge Firewalling

D.

Dynamic Routing

Buy Now
Questions 13

What can the administrator use to identify overlay segments in an NSX environment if troubleshooting is required?

Options:

A.

VNI ID

B.

Segment ID

C.

Geneve ID

D.

VIAN ID

Buy Now
Questions 14

Which two of the following will be used for Ingress traffic on the Edge node supporting a Single Tier topology? (Choose two.)

Options:

A.

Inter-Tier interface on the Tier-0 gateway

B.

Tier-0 Uplink interface

C.

Downlink Interface for the Tier-0 DR

D.

Tier-1 SR Router Port

E.

Downlink Interface for the Tier-1 DR

Buy Now
Questions 15

What are three NSX Manager roles? (Choose three.)

Options:

A.

master

B.

cloud

C.

zookeepet

D.

manager

E.

policy

F.

controller

Buy Now
Questions 16

Which three selections are capabilities of Network Topology? (Choose three.)

Options:

A.

Display how the different NSX components are interconnected.

B.

Display the uplink configured on the Tier-0 Gateways.

C.

Display how the Physical components ate interconnected.

D.

Display the VMs connected to Segments.

E.

Display the uplinks configured on the Tier-1 Gateways.

Buy Now
Questions 17

Where is the insertion point for East-West network introspection?

Options:

A.

Tier-0 router

B.

Partner SVM

C.

Guest VM vNIC

D.

Host Physical NIC

Buy Now
Questions 18

Which Is the only supported mode In NSX Global Manager when using Federation?

Options:

A.

Controller

B.

Policy

C.

Proxy

D.

Proton

Buy Now
Questions 19

In which VPN type are the Virtual Tunnel interfaces (VTI) used?

Options:

A.

Route & SSL based VPNs

B.

Route-based VPN

C.

Policy & Route based VPNs

D.

SSL-based VPN

Buy Now
Questions 20

An NSX administrator Is treating a NAT rule on a Tler-0 Gateway configured In active-standby high availability mode. Which two NAT rule types are supported for this configuration? (Choose two.)

Options:

A.

Reflexive NAT

B.

Destination NAT

C.

1:1 NAT

D.

Port NAT

E.

Source NAT

Buy Now
Questions 21

Which two are supported by L2 VPN clients? (Choose two.)

Options:

A.

NSX for vSphere Edge

B.

3rd party Hardware VPN Device

C.

NSX Autonomous Edge

D.

NSX Edge

Buy Now
Questions 22

An NSX administrator is creating a Tier-1 Gateway configured In Active-Standby High Availability Mode. In the event of node failure, the failover policy should not allow the original tailed node to become the Active node upon recovery.

Which failover policy meets this requirement?

Options:

A.

Non-Preemptive

B.

Preemptive

C.

Enable Preemptive

D.

Disable Preemptive

Buy Now
Questions 23

Which CLI command on NSX Manager and NSX Edge is used to change NTP settings?

Options:

A.

get timezone

B.

get time-server

C.

set timezone

D.

set ntp-server

Buy Now
Questions 24

When deploying an NSX Edge Transport Node, what two valid IP address assignment options should be specified for the TEP IP addresses? (Choose two.)

Options:

A.

Use an IP Pool

B.

Use a DHCP Server

C.

Use RADIUS

D.

Use a Static IP List

E.

Use BootP

Buy Now
Questions 25

A security administrator needs to configure a firewall rule based on the domain name of a specific application.

Which field in a distributed firewall rule does the administrator configure?

Options:

A.

Profile

B.

Service

C.

Policy

D.

Source

Buy Now
Questions 26

Which NSX feature can be leveraged to achieve consistent policy configuration and simplicity across sites?

Options:

A.

VRF Lite

B.

Ethernet VPN

C.

NSX MTML5 UI

D.

NSX Federation

Buy Now
Questions 27

Which two choices are use cases for Distributed Intrusion Detection? (Choose two.)

Options:

A.

Use agentless antivirus with Guest Introspection.

B.

Quarantine workloads based on vulnerabilities.

C.

Identify risk and reputation of accessed websites.

D.

Gain Insight about micro-segmentation traffic flows.

E.

Identify security vulnerabilities in the workloads.

Buy Now
Questions 28

Which choice is a valid insertion point for North-South network introspection?

Options:

A.

Guest VM vNIC

B.

Partner SVM

C.

Tier-0 gateway

D.

Host Physical NIC

Buy Now
Questions 29

What are the four types of role-based access control (RBAC) permissions? (Choose four.)

Options:

A.

Read

B.

None

C.

Auditor

D.

Full access

E.

Enterprise Admin

F.

Execute

G.

Network Admin

Buy Now
Questions 30

When a stateful service is enabled for the first lime on a Tier-0 Gateway, what happens on the NSX Edge node'

Options:

A.

SR is instantiated and automatically connected with DR.

B.

DR Is instantiated and automatically connected with SR.

C.

SR and DR Is instantiated but requites manual connection.

D.

SR and DR doesn't need to be connected to provide any stateful services.

Buy Now
Questions 31

Which two steps must an NSX administrator take to integrate VMware Identity Manager in NSX to support role-based access control? (Choose two.)

Options:

A.

Create a SAML authentication in VMware Identity Manager using the NSX Manager FQDN.

B.

Enter the Identity Provider (IdP) metadata URL in NSX Manager.

C.

Create an OAuth 2.0 client in VMware Identity Manager.

D.

Add NSX Manager as a Service Provider (SP) in VMware Identity Manager.

E.

Enter the service URL, Client Secret, and SSL thumbprint in NSX Manager.

Buy Now
Questions 32

Which two BGP configuration parameters can be configured in the VRF Lite gateways? (Choose two.)

Options:

A.

Graceful Restart

B.

BGP Neighbors

C.

Local AS

D.

Route Distribution

E.

Route Aggregation

Buy Now
Exam Code: 2V0-41.23
Exam Name: VMware NSX 4.x Professional
Last Update: May 10, 2024
Questions: 107
2V0-41.23 pdf

2V0-41.23 PDF

$28  $80
2V0-41.23 Engine

2V0-41.23 Testing Engine

$33.25  $95
2V0-41.23 PDF + Engine

2V0-41.23 PDF + Testing Engine

$45.5  $130