Q1. Which two network services are abstracted from the underlying hardware by NSX? (Choose two.)

A. Virtual Private Networks

B. Multiprotocol Label Switching

C. Load Balancing

D. Overlay Transport Virtualizations

Answer: A,C



Q2. What is one of the benefits of a spine-leaf network topology?

A. A loop prevention protocol is not required

B. Automatic propagation of security policies to all nodes

C. Allows for VXl ANs to be defined in h traditional network topology

D. Network virtualization relies on spine leaf topologies to create logical switches

Answer: D

Q3. What are two benefits of the NSX Distributed Firewall? (Choose two )

A. VMs are protected even as they are vMotioned

B. Each VM is individually protected by a L2-L4 stateful firewall

C. ESXi hosts are automatically protected by a distributed firewall

D. VXLANs are automatically protected by the Transport Zone definition

Answer: A,C

Q4. Which is a best practice to secure system traffic, ensure optimal performance and satisfy prerequisites for NSX?

A. Configure a single VMkernel and a single distributed port group for all the system traffic.

B. Configure a single distributed port group with a single VMkernel for Management and iSCSI traffic, a separate VMkernel for vMotion and VSAN traffic.

C. Dedicate separate VMkernel adapters for each type of system traffic. Dedicate separate distributed port groups for each VMkernel adapter and isolate the VLANs for each type of system traffic.

D. Dedicate separate VMkernel adapters for each type ofsystem traffic and dedicate separate standard switches for each type of system traffic connected to a single physical network.

Answer: B

Q5. An administrator has implemented VMware NSX on a leaf-spine underlay. They have deployed the following in the data center:

• Two racks for a management cluster that is not prepared for VMware NSX

• Six racks for compute clusters

• Two racks for an Edge cluster which holds a DLR control VM for bridging, and North/South Edge Service Gateways

Which three of the following are true regarding the physical and logical networking of the environment? (Choose three )

A. At least one VXLAN segment spans across all the racks

B. VXLAN segments span the compute and Edge racks

C. At least one VLAN spans the compute racks

D. At least one VLAN spans across the two management racks

E. At least 2 VLANs span across the two Edge racks.

Answer: B,C,D

Q6. Which details can an administrator verify from the Summary tab of the VMware NSX Manager? (Choose three)

A. Current time

B. Average MTBF

C. Version

D. Storage utilization

E. Health Score

Answer: A,C,E

Q7. What is the function of NSX Data Security?

A. Prevents sensitive data in your virtualized environment from being copied

B. Prevents sensitive data in your virtualized environment from being modified

C. Identifies sensitive data in your virtualized environment based upon regulation security policies

D. Identifies sensitive data in your virtualized environment based upon regulation violation reports

Answer: D

Q8. An NSX administrator is creating a filter as shown below.

What would be the purpose of creating a filter?

A. To quickly add a new rule.

B. To temporarily filter traffic.

C. To quickly remove a rule.

D. To quickly identify rules.

Answer: D

Q9. Which three NSX services are available for synchronization in a Cross-vCenter implementation? (Choose three.)

A. Spoofguard

B. Distributed Firewall

C. Edge Firewall

D. Logical Switch

E. Transport Zone

Answer: B,D,E


Referencehttps://pubs.vmware.com/NSX- 62/topic/com.vmware.ICbase/PDF/nsx_62_cross_vc_install.pdf

Q10. In a vSphere Distributed Switch architecture, which plane handles packet switching?

A. Data Plane

B. Forwarding Plane

C. Management Plane

D. Control Plan

Answer: A


Referencehttps://www.slideshare.net/VMworld/vmworld-2013-vsphere-distributed-switch-design-and-best-practices(slide 7)