New Year Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: best70

5V0-41.21 VMware NSX-T Data Center 3.1 Security Questions and Answers

Questions 4

Which two are requirements for URL Analysis? (Choose two.)

Options:

A.

The ESXi hosts require access to the Internet to download category and reputation definitions.

B.

A layer 7 gateway firewall rule must be configured on the tier-0 gateway uplink to capture DNS traffic.

C.

A layer 7 gateway firewall rule must be configured on the tier-1 gateway uplink to capture DNS traffic,

D.

The NSX Edge nodes require access to the Internet to download category and reputation definitions.

E.

The NSX Manager requires access to the Internet to download category and reputation definitions.

Buy Now
Questions 5

A security administrator is verifying the health status of an NSX Service Instance.

Which two parameters must be functioning for the health status to show as Up? (Choose two.)

Options:

A.

VMs must have at least one vNIC.

B.

VMs must not have existing endpoint protection rules.

C.

VMs must have virtual hardware version 9 or higher.

D.

VMs must be available on the host.

E.

VMs must be powered on.

Buy Now
Questions 6

Information Security Management (ISM) describes a set of controls that organizations employ to protect which properties?

Options:

A.

confidentiality, integrity, and availability

B.

confidentiality, interoperability, and availability

C.

configuration. Integrity, and availability

D.

confidentiality. Integrity, and accessibility

Buy Now
Questions 7

Refer to the exhibit.

An administrator configured a firewall rule on their Edge Gateway to allow access to web servers.

What is missing in the Gateway Firewall policy to have the firewall rule applied?

Options:

A.

Firewall service needs to be enabled on gateway.

B.

Firewall rule needs to be moved to Default category.

C.

Firewall rule needs to be enabled.

D.

Firewall rule needs to be published

Buy Now
Questions 8

A security administrator is verifying why users are blocked from sports sites but are able to access gambling websites from the corporate network. What needs to be updated In nsx-T to block the gambling websites?

Options:

A.

vSphere Firewall Policy

B.

Endpoint Protection Rules

C.

Network Introspection Policy

D.

URL Analysis Attributes

Buy Now
Questions 9

Which of the following describes the main concept of Zero-Trust Networks for network connected devices?

Options:

A.

Network connected devices should only be trusted if they are issued by the organization.

B.

Network connected devices should only be trusted if the user can be successfully authenticated.

C.

Network connected devices should only be trusted if their identity and integrity can be verified continually.

D.

Network connected devices should only be trusted if they are within the organizational boundary.

Buy Now
Questions 10

Which esxcli command lists the firewall configuration on ESXi hosts?

Options:

A.

esxcli network firewall ruleset list

B.

vsipioct1 getrules -filter

C.

esxcli network firewall rules

D.

vsipioct1 getrules -f

Buy Now
Exam Code: 5V0-41.21
Exam Name: VMware NSX-T Data Center 3.1 Security
Last Update: Dec 22, 2024
Questions: 70

PDF + Testing Engine

$134.99

Testing Engine

$99.99

PDF (Q&A)

$84.99