Pass the VMware VMware NSX-T Data Center Security Skills 2023 5V0-41.21 Questions and answers with CertsForce

Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions
Questions # 11:

How does N5X Distributed IDS/IPS keep up to date with signatures?

Options:

A.

NSX Edge uses manually uploaded signatures by the security administrator.


B.

NSX-T Data Center is using a cloud based database to download the IDS/IPS signatures.


C.

NSX Manager has a local IDS/IPS signatures database that does not need to be updated.


D.

NSX Distributed IDS/IPS signatures are retrieved from updates.vmware.com.


Expert Solution
Questions # 12:

Information Security Management (ISM) describes a set of controls that organizations employ to protect which properties?

Options:

A.

confidentiality, integrity, and availability


B.

confidentiality, interoperability, and availability


C.

configuration. Integrity, and availability


D.

confidentiality. Integrity, and accessibility


Expert Solution
Questions # 13:

Refer to the exhibit.

Question # 13

A security administrator is configuring a time window to create a time-based distributed firewall rule. While configuring the time window, an error displayed as shown in the exhibit. Which action will resolve the problem?

Options:

A.

Change the time window interval.


B.

Restart me NTP service on the ESXl host.


C.

Configure the ESXl host to use a remote NTP server.


D.

Change the time windows frequency


Expert Solution
Questions # 14:

To which network operations does a user with the Security Engineer role have full access permission?

Options:

A.

Networking IP Address Pools, Networking NAT, Networking DHCP


B.

Networking Forwarding Policies, Networking NAT, Networking VPN


C.

Networking Load Balancing, Networking DNS, Networking Forwarding Policies


D.

Networking DHCP, Networking NAT, Networking Segments


Expert Solution
Questions # 15:

A security administrator is verifying why users are blocked from sports sites but are able to access gambling websites from the corporate network. What needs to be updated In nsx-T to block the gambling websites?

Options:

A.

vSphere Firewall Policy


B.

Endpoint Protection Rules


C.

Network Introspection Policy


D.

URL Analysis Attributes


Expert Solution
Questions # 16:

Which two are the insertion points for North-South service insertion? (Choose two.)

Options:

A.

Partner Service VM


B.

Uplink of tier-1 gateway


C.

Transport Node NIC


D.

Guest VM vNIC


E.

Uplink of tier-0 gateway


Expert Solution
Questions # 17:

Which three criteria help to determine the severity for a Distributed IDS/IPS? (Choose three.)

Options:

A.

The type-rating associated with the classification type.


B.

The Common Vulnerability Scoring System score specified in the signature.


C.

The load balancer deployment type.


D.

The Distributed Intrusion Detection and Intrusion Prevention rules.


E.

The severity specified in the signature itself


Expert Solution
Questions # 18:

What is one of the main use-cases of NSX-T Endpoint Protection?

Options:

A.

Use Network Security Services of a third party vendor


B.

Agentless Antivirus


C.

East-West Firewalling


D.

North-South Firewalling


Expert Solution
Questions # 19:

An organization is using VMware Identity Manager (vIDM) to authenticate NSX-T Data Center users Which two selections are prerequisites before configuring the service? (Choose two.)

Options:

A.

Validate vIDM functionality


B.

Assign a role to users


C.

Time Synchronization


D.

Configure vIDM Integration


E.

Certificate Thumbprint from vIDM


Expert Solution
Questions # 20:

Which is the port number used by transport nodes to export firewall statistics to NSX Manager?

Options:

A.

1235


B.

4789


C.

6081


D.

1234


Expert Solution
Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions