VMware 6V0-21.25 VMware vDefend Security for VCF 5.x Administrator Exam Practice Test
VMware vDefend Security for VCF 5.x Administrator Questions and Answers
Which of the following is true regarding the VMware vDefend Distributed Firewall?
Which of the following are important components to cyber security design? (Select all that apply)
NestDB is a central Database deployed on all three NSX Managers nodes responsible for storing the user intent.
If you want to run Gateway IDS/IPS, what is the minimum Edge Form Factor size supported to run this feature?
Which type of firewall enforcement point is NOT supported on the Gateway Firewall?
Which one of the following are the ICMP Timer Variables that can be customized within the vDefend Distributed Firewall?
Which of the following is not an available option for membership criteria selection when creating group of type Antrea?
Which one of the following is NOT one of the use-cases of Distributed Intrusion Detection and Prevention?
What features does NSX Live Traffic Analysis tool provide? (Select all that apply)
Which of these are NOT a grouping criteria when creating a dynamic group? (Select all that apply)
Which of the following is NOT true regarding the Gateway IDS/IPS?
Which of the following is NOT true in the context of Malware Prevention?
Which of the following does the Applied To field impact?
Which of the following is true regarding the vDefend Gateway Firewall?
Which statements are true for DFW and Rule processing order based on the information shown in the image? (Select all that apply)
[root@vesxi-nsxt-10:~] vsipioctl getconfig -f nic-2292571-ethO-vmware-sfw.2
ruleset mains {
# generation number: 0
# realization time : 2020-05-21T13:01:48
# FILTER rules
rule 1596 at 1 inout protocol tcp from addrset e70a9a79-c346-48c4-8b9d- 402e97e38a7c to addrset be665396-14d9-4ee4-98b9- 9c21ebfl27a port 464 accept;
rule 1596 at 2 inout protocol udp from addrset e70a9a79-c346-48c4-8b9d- 402e97e38a7c to addrset be665396-14d9-4ee4-98b9- 9c21ebfl27a port 464 accept;
rule 1595 at 3 inout protocol udp from addrset e70a9a79-c346-48c4-8b9d- 402e97e38a7c to addrset 9edl2e5f-36f4-42a9-a79b- 87efc243alef port 53 accept;
rule 1594 at 4 inout protocol udp from addrset e70a9a79-c346-48c4-8b9d- 402e97e38a7c to addrset 59e6aa90-e360-4341-9fb3- b312772b79fb port 123 accept;
rule 2 at 5 inout protocol any from any to any accept;
}
What of the following is true regarding Distributed Firewall logging?
In the context of Role-Based access control which of the following is NOT a built-in vDefend Role?
Which of the following are valid configuration options for a VMware vDefend Distributed Firewall Policy? (Select all that apply)
You need to build a security group that references External DNS servers. Which of the following is the best way to build the Security group?
What layers of the OSI model does the vDefend Firewall provide protection?
Which of the following components can enforce Layer 7 Context Firewall Rules? (Select all that apply)
Which vDefend Gateway Firewall feature is ONLY supported on T1 Gateways?