Q1. Which NSX service or feature provides optimized management of virtual machine broadcast (ARP) traffic?
A. NSX Controller
B. NSX Manager
C. Edge Services Gateway
D. VTEP
Answer: A
Q2. On which device Command Line Interface can an administrator list the ARP entries for a given VXLAN network?
A. ESXi Host
B. NSX Controller
C. NSX Manager
D. NSX Edge
Answer: A
Q3. An administrator configures the IPSec VPN service on an NSX Edge instance, but the negotiation fails. Examining the log file, the administrator notices the following messagE. INVALID_ID_INFORMATION Which misconfiguration caused the error?
A. Pre-shared key (PSK) does not match.
B. Diffie-Hellman (DH) Group does not match.
C. Perfect Forward Secrecy (PFS) does not match.
D. VPN tunnel address is incorrect.
Answer: A
Q4. Which statement is correct when upgrading vShield Data Security to NSX Data Security?
A. NSX Data Security does not support a direct upgrade.
B. NSX Controller must be deployed before the upgrade.
C. The vCloud Network and Security Virtual Wires must have been upgraded.
D. vCould Network and Security must be at least version 5.1 before starting the upgrade.
Answer: A
Q5. A vSphere administrator wants to setup an NSX Edge Service Gateway to provide traveling employees secure access to company servers located in specific network segments within the corporate Data Centers. The solution has to be as scalable as possible. Which Virtual Private Network solution will satisfy the administrator's requirements?
A. SSL VPN
B. MPLS VPN
C. Layer 2 VPN
D. IPSec VPN
Answer: A
Q6. Which service cannot be included in a Security Policy using Service Composer?
A. Endpoint Services
B. Firewall Rules
C. Virtual Private Network Services
D. Network Introspection Services
Answer: C
Q7. An administrator needs to perform a configuration backup of NSX. From which two locations can this task be performed? (Choose two.)
A. Directly on the NSX Manager
B. From the vSphere Web Client
C. Using the NSX API
D. Directly on each NSX Controller
Answer: A, C
Q8. -- Exhibit ---- Exhibit --The Exhibit shows two possible physical network architectures. Each architecture provides a means in dealing with the pictured failure. Based on the exhibit, which architecture provides the highest degree of connectivity in the event of the pictured failure?
A. Both designs will provide the same percentage of connectivty in times of failure.
B. Neither design is properly architected to work around the displayed failure.
C. Diagram A's architecture will provide the highest percentage of connectivity in times of failure.
D. Diagram B's architecture will provide the highest percentage of connectivity in times of failure.
Answer: D
Q9. High Availability (HA) was not initially configured when an administrator deployed an NSX Edge Service Gateway. What should the administrator do to configure the NSX Edge with HA?
A. Select the NSX Edge instance from the NSX Edges view in Networking & Security. Go to Manage> Settings> Configuration and add a NSX Edge appliance.
B. Delete the NSX Edge instance and redeploy it with HA. The existing NSX Edge configuration data will be lost.
C. Delete the NSX Edge instance and redeploy it with HA. The configuration data is retained by NSX Manager and pushed to the new NSX Edge instance.
D. Select the NSX Edge appliance from the Virtual Machines and Templates view. Go to Actions> All vCenter Actions> Enable HA to configure High Availability.
Answer: A
Q10. You are tasked with designing a data center architecture that should maximize the use of vMotion within your environment. The design has these requirements:
. The network must utilize widely offered layer 2 switching and layer 3 switching services
. Purchase of new equipment should be minimized Which two network design architectures will provide the requirements for vMotion in your data center? (Choose two.)
A. Utilize layer 3 switching from the access layer through the core.
B. Employ layer 2 multipathing using a standardized protocol.
C. Deploy a flat, traditional layer 2 switched network.
D. Deploy an overlay technology for the deployment of your virtual network.
Answer: A, D