VMware Certified Professional 6 – Network Virtualization Beta v6.0 (2V0-641)

Page:    1 / 8   
Total 117 questions

Which NSX component can validate that security policies at your organization are being enforced correctly?

  • A. Activity Monitoring
  • B. Flow Monitoring
  • C. ERSPAN
  • D. Distributed firewalls


Answer : A

When preparing a vSphere host cluster to work with VMware NSX, which two options show
VIBs that are installed and registered with all hosts within the prepared cluster? (Choose two.)

  • A. NSX VXLAN
  • B. NSX Distributed Firewall
  • C. NSX Edge
  • D. NSX Data Security


Answer : A,B

Which two statements describe the benefits provided by firewall services deployed by
NSX? (Choose two.)

  • A. Firewall services deployed using a software appliance will provide east-west traffic filtering and security.
  • B. Firewall services deployed using a distributed kernel module will provide east-west traffic filtering and security.
  • C. Firewall services providing edge security services uses a virtual appliance and is centrally managed.
  • D. Firewall services providing edge security services uses a distributed kernel module.


Answer : B,C

A vSphere administrator wants to add a VLAN LIF to a Distributed Router. What must the vSphere administrator do for the VLAN LIF to be added successfully?

  • A. The vSphere administrator must assign a VLAN number to the distributed portgroup that the VLAN LIF connects to.
  • B. The vSphere administrator must assign a VLAN number to the Distributed Router that the Logical Switch connects to.
  • C. The vSphere administrator must assign a VLAN number to the Logical Switch that the Distributed Router connects to.
  • D. The vSphere administrator must assign a VLAN number to the uplink on the distributed switch that the VLAN LIF connects to.


Answer : A

You want to use an existing NSX Manager to extend logical networks to the ESXi hosts of a new cluster.
What should you do?

  • A. On the Installation > Host Preparation page of the Networking & Security section of the vSphere Web Client, click the Install link for the new cluster.
  • B. On the Installation > Host Preparation page of the Networking & Security section of the vSphere Web Client, click the Install link for each of the new hosts.
  • C. On the Installation > Management page of the Networking & Security section of the vSphere Web Client, click the green plus sign to deploy a new NSX controller node to the new cluster.
  • D. On the Installation > Logical Network Preparation page of the Networking & Security section of the vSphere Web Client, create a new Transport Zone for the new cluster.


Answer : A

What are three switch features found only on vSphere Distributed Switches? (Choose three.)

  • A. Network I/O Control
  • B. CDP
  • C. LLDP
  • D. SR-IOV
  • E. Port Mirroring


Answer : A,C,E

A company has augmented its Data Center infrastructure by using vCloud Hybrid Service during peak hours. The company wants to extend their existing subnets into the cloud while workloads retain their existing IP addresses. The virtual machines in these subnets use an
NSX Edge Gateway as their default gateway.
Which solution should this company use?

  • A. Layer 2 VPN
  • B. MPLS VPN
  • C. IPSec VPN
  • D. SSL VPN


Answer : A

A new ESXi 5.5 host is deployed in a vSphere environment with VMware NSX for vSphere.
How can the host be prepared for VMware NSX for vSphere?

  • A. By using Image Builder to pre-load the NSX for vSphere VIBs in the ESXi image in an Auto Deploy solution.
  • B. By leveraging VMware Update Manager to install the new NSX for vSphere VIBs into each of the hosts.
  • C. By creating a new VMkernel port in the host from the Host and Clusters inventory view in vSphere Web Client.
  • D. By entering the ESXi 5.5 management IP address in the NSX Controllers so the VIBs can be installed.


Answer : A

Which statement is true regarding deploying NSX over a physical network?

  • A. OSPF can be used for Management traffic in a Layer 3 fabric design.
  • B. NSX can implement IPv6 on an IPv4 physical network.
  • C. Routing is supported on bridged interfaces.
  • D. VLANs are not required to separate traffic between virtual machines.


Answer : B

What two statements correctly describe the way NSX provides integration with Cloud
Management Platforms (CMPs)? (Choose two.)

  • A. OpenStack provides integration with the Cinder plug-in.
  • B. OpenStack provides integration with the Neutron plug-in.
  • C. VMware provides open source API plug-ins for their own CMP products such as vCloud Director and vRealize Automation.
  • D. VMware provides out of the box integration with their own CMP products such as vCloud Director and vRealize Automation.


Answer : B,D

Which statement describes proper packet processing of layer 3 traffic in an NSX for vSphere topology?

  • A. All packets are processed by the distributed router. No packets are processed by the Logical Router Control VM.
  • B. Only packets requiring routing to another VM on the same host are processed by the distributed router. Other packets are processed by the Logical Router Control VM.
  • C. Only packets requiring routing to another VM on a different host are processed by the distributed router. Other packets are processed by the Logical Router Control VM.
  • D. All packets requiring routing are processed by performing a lookup in the Logical Router Control VM and then forwarded.


Answer : A

Layer 2 Multipathing (L2MP) and Multi-chassis Etherchannel (MEC) features have distinct scaling differences with the network switching and routing services provided by NSX.
Which two statements provide a proper contrast of these services? (Choose two.)

  • A. Multi-chassis Etherchannel features provide higher utilization of Ethernet links within a defined L2/L3 distribution area.
  • B. Multi-Chassis Etherchannel features provide an easy ability to scale a VLAN across the data center.
  • C. NSX provides a method to transparently deploy L2MP protocols upon existing data center installations without service disruption.
  • D. NSX provides a method to deploy scalable L2/L3 services on existing data center installations.


Answer : A,D

Which two components are required to enable layer 2 bridging? (Choose two.)

  • A. Distributed firewall rule to allow layer 2 traffic in the bridge.
  • B. Deployed Logical Switch.
  • C. Deployed Logical Router.
  • D. VLAN trunk configured on logical switch.


Answer : A,C

An administrator wishes to control traffic flow between two virtual machines. The virtual machines are in the same subnet, but are located on separate ESXi hosts.
The administrator deploys an Edge Firewall to one of the hosts and verifies the default firewall rule is set to deny, but the two virtual machines can still communicate with each other.
What task will correct this issue?

  • A. Configure both ESXi host firewalls to deny traffic from the virtual machine on the other host.
  • B. Deploy another Edge Firewall on the host running the second virtual machine.
  • C. Remove any other firewall appliances that may exist on either of the ESXi hosts.
  • D. Deploy a Distributed Firewall with firewall rules to prevent traffic between the virtual machines.


Answer : D

After consulting with the network team, it is decided that Transport Zones will be configured with Unicast Replication Mode for a new NSX for vSphere deployment.
Which statement is true regarding the function of the VXLAN Tunnel End Points (VTEPs)?

  • A. The VTEPs will send unicast frames to the NSX Controllers when the VTEPs do not have a MAC address in the MAC table.
  • B. The VTEPs will switch to Multicast Replication Mode for those VTEPs to which multicast path discovery is successful.
  • C. The VTEPs will send multicast frames to all other VTEPs in the Transport Zone when the VTEPs do not have a MAC address in the MAC table.
  • D. The VTEPs will send unicast frames to all local VTEPs and remote proxies in the Transport Zone when the VTEPs do not have a MAC address in the MAC table.


Answer : D

Page:    1 / 8   
Total 117 questions