NSX Set 1 Flashcards

1
Q

What are two challenges faced when providing network services to virtual workloads using a physical network infrastructure? (Choose two.)

a. Inability to provide router redundancy
b. Restrictions when migrating virtual workloads to ESXi hosts
c. Managing the amount of access switches required for large-scale vSphere environments
d. Inability for access switches to provide isolation of uplink failures to virtual workloads
e. Managing the size of routing tables

A

b. Restrictions when migrating virtual workloads to ESXi hosts
d. Inability for access switches to provide isolation of uplink failures to virtual workloads

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

At least how many bytes does the VXLAN encapsulation add to the encapsulated frame?

a. 50
b. 100
c. 1500
d. 9000

A

a. 50

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

An application developer has a network requirement for a feature not currently supported by the physical IP network.
Which option could not be used to meet the application requirements?

a. Upgrade the code of the network devices.
b. Turn the network feature on.
c. Install a new network just for the application.
d. Do a network refresh.

A

b. Turn the network feature on.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which NSX routing protocol offers the most flexible policy control when peering with the physical environment?

a. BGP
b. OSPF
c. ISIS
d. EIGRP

A

a. BGP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

________________________ does not require VXLAN.

A

NSX Micro-Segmentation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How many NSX Controllers are recommended for any vSphere network environment?

a. 1
b. 2
c. 3
d. 4

A

c. 3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

The _________________________ is required before the Distributed Firewall is functional.

A

NSX Controller Cluster

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

One Distributed Route (in HA mode) with 2 Edge Service Gateways in EMCP mode would provide high bandwidth and isolation to how many application networks?

a. 2
b. 4
c. 8
d. 10

A

b. 4

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

In a Cross-vCenter implementation, the Universal Control Cluster is deployed and configured in the vCenter instance associated with the ___________________________ .

A

Primary NSX Manager

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

___________________ , a vSphere Distributed Switch security policy, allows virtual machines to send frames with a MAC address that is different from the one specified in the vmx file.

A

Forged Transmits

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the minimum NSX role necessary for a user to edit the firewall on an Edge Services Gateway (ESG)?

a. Auditor
b. Security Administrator
c. NSX Administrator
d. Enterprise Administrator

A

b. Security Administrator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

_________________ would be used by the “insert X-Forwarded-For HTTP” option.

A

HTTP & HTTPS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

When deploying a standalone NSX Edge as a Layer 2 VPN Client, a _________________ needs to be configured on the client vSphere Distributed Switch.

A

Trunk Port

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

If the “Applied To” scope is set to Distributed Firewall, _____________________________ will have the firewall rule.

A

all VMs on prepared hosts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

A customer has Cisco Nexus 1000V switches in their environment
and is looking at deploying NSX. _____________________________________________ .

A

The environment must be migrated from the Nexus 1000V to vSphere Distributed Switches

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

An NSX admin notices an error during the initial configuration of the SSO lookup service. It displays “Disconnected” when the admin pulls up the lookup. __________________________________________ to resolve the issue.

A

Change the Port # from 7444 to 443

17
Q

Activity Monitoring has been enabled for a host with several machines. If only one VM shows up, you must install the Guest Introspection driver and the ________________________ must be enabled on the other VMs.

A

VM Data Collection

18
Q

The _____________ , in a vSphere Distributed Switch architecture, handles packet switching.

A

Data Plane

19
Q

Which two NSX roles can create security policies?

a. Auditor
b. Security Administrator
c. NSX Administrator
d. Enterprise Administrator

A

b. Security Administrator

d. Enterprise Administrator

20
Q

A logical bridge configured for HA uses 15 second heartbeats by default to detect failures.

a. True
b. False

A

a. True

21
Q

A logical bridge on the DLR supports VXLAN to VLAN bridging.

a. True
b. false

A

a. True

22
Q

A logical bridge forwards traffic through the hypervisor.

a. True
b. False

A

a. True

23
Q

When running the NSX Control Plane in Hybrid Mode, the minimum physical network requirements are?

a. NSX Controller connectivity
b. IGMP Snooping
c. Unicast L3 Routing
d. All of the above

A

d. All of the above

24
Q

____________________________________ so a virtualized application can have access to a physical database.

A

Configure a Distributed Logical Router with an L2 Bridge instance for VXLAN to VLAN traffic

25
Q

VMware NSX is a key component in enabling enterprises to realize the full potential of their investment in ___________________________________ .

A

Software-Defined Data Center

26
Q

________________ is a term that describes a situation where a bottleneck is created when traffic is sent to a single device for security enforcement.

A

Hairpinning

27
Q

The correct steps for connecting a VM to a logical switch is to _____________________________________________________ .

A

Select the logical switch, click the “Add VM” icon, and select the logical switch

28
Q

What is one challenge of implementing networks ecurity on a physical network?

a. Firewalls require additional network resources to operate.
b. Firewall rules sprawl.
c. Firewalls are expensive.
d. Firewalls provide only 98% security.

A

b. Firewall rules sprawl.

29
Q

Which of the following is not a characteristic of a physical network?

a. A workload can be moved anywhere at any time.
b. A Layer 3 segment can be separated by other Layer 3 segments.
c. A Layer 2 domain must be contiguous.
d. Systems in the same broadcast domain must be within 100 meters.

A

a. A workload can be moved anywhere at any time.

30
Q

Which constraint is not encountered when deploying services with network
dependencies?
a. The variable time to prepare the network for the service(s)
b. The manual involvement of a network engineer to configure the network
c. Potential procurement of new network equipment
d. The ability of a service owner to have IP connectivity between different tiers of the service

A

d. The ability of a service owner to have IP connectivity between different tiers of the service

31
Q

What is the maximum number of usable VLANs that can be deployed in the same Ethernet switch?

a. 4094
b. 4095
c. 4096
d. 4097

A

a. 4094