Month End Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

5V0-41.21 Exam Dumps - VMware NSX-T Data Center Security Skills 2023 Questions and Answers

Question # 4

An NSX administrator has turned on logging for the distributed firewall rule. On an ESXi host, where will the logs be stored?

Options:

A.

/var/log/esxupdate.log

B.

/var/log/dfwpktlogs.log

C.

/var/log/hostd.log

D.

/var/log/vmkerntl.log

Buy Now
Question # 5

A security administrator is verifying the health status of an NSX Service Instance.

Which two parameters must be functioning for the health status to show as Up? (Choose two.)

Options:

A.

VMs must have at least one vNIC.

B.

VMs must not have existing endpoint protection rules.

C.

VMs must have virtual hardware version 9 or higher.

D.

VMs must be available on the host.

E.

VMs must be powered on.

Buy Now
Question # 6

What is the NSX feature that allows a user to block ICMP between 192.168.1.100 and 192.168.1.101?

Options:

A.

NSX Distributed Switch Agent

B.

NSX Distributed IDS/IPS

C.

NSX Distributed Routing

D.

NSX Distributed Firewall

Buy Now
Question # 7

Which is an insertion point for East-West service insertion?

Options:

A.

tier-1 gateway

B.

Partner SVM

C.

Guest VM vNlC

D.

transport node

Buy Now
Question # 8

An NSX administrator has been tasked with configuring a remote logging server (192.168.110.60) to send FW connections and packets logs to a remote logging server. The administrator is using this command syntax found in the NSX-T 3.1 documentation:

Which of the following commands does the administrator use to complete the configuration task?

Options:

A.

set logging-server 192.168.110.60 proto udp level info facility syslog message Id FIREWALL-CONNECTION

B.

set logging-server 192.168.110.60 proto udp level info facility syslog message!- monitor. Firewall

C.

set logging-server 192.168.110.60 proto udp level info facility syslog message Id FIREWALL-PKTLOG

D.

set logging-server 192.168.110.60 proto udp level info facility syslog message Id system, fabric

Buy Now
Question # 9

Which two Guest OS drivers are required for the Identity Firewall to operate? (Choose two.)

Options:

A.

NSX Network Introspection

B.

vmxnet3

C.

NSX File Introspection

D.

Guest Introspection

E.

e1000e

Buy Now
Question # 10

Which esxcli command lists the firewall configuration on ESXi hosts?

Options:

A.

esxcli network firewall ruleset list

B.

vsipioct1 getrules -filter

C.

esxcli network firewall rules

D.

vsipioct1 getrules -f

Buy Now
Question # 11

Which two are the insertion points for North-South service insertion? (Choose two.)

Options:

A.

Partner Service VM

B.

Uplink of tier-1 gateway

C.

Transport Node NIC

D.

Guest VM vNIC

E.

Uplink of tier-0 gateway

Buy Now
Question # 12

Which two statements are true about IDS/IPS signatures? (Choose two.)

Options:

A.

Users can upload their own IDS signature definitions from the NSX UI.

B.

IDS Signatures can be High Risk, Suspicious, Low Risk and Trustworthy.

C.

Users can create their own IDS signature definitions from the NSX UI.

D.

An IDS signature contains data used to identify known exploits and vulnerabilities.

E.

An IDS signature contains a set of instructions that determine which traffic is analyzed.

Buy Now
Question # 13

Which of the following describes the main concept of Zero-Trust Networks for network connected devices?

Options:

A.

Network connected devices should only be trusted if they are issued by the organization.

B.

Network connected devices should only be trusted if the user can be successfully authenticated.

C.

Network connected devices should only be trusted if their identity and integrity can be verified continually.

D.

Network connected devices should only be trusted if they are within the organizational boundary.

Buy Now
Exam Code: 5V0-41.21
Exam Name: VMware NSX-T Data Center 3.1 Security
Last Update: Jan 31, 2025
Questions: 70
5V0-41.21 pdf

5V0-41.21 PDF

$25.5  $84.99
5V0-41.21 Engine

5V0-41.21 Testing Engine

$28.5  $94.99
5V0-41.21 PDF + Engine

5V0-41.21 PDF + Testing Engine

$40.5  $134.99