At which OSI Layer do Next Generation Firewalls capable of analyzing application traffic operate?
A. Layer 2
B. Layer 4
C. Layer 7
D. Layer 3
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
A security administrator is required to protect East-West virtual machine traffic with the NSX Distributed Firewall. What must be completed with the virtual machine's vNIC before applying the rules?
A. It must be connected to a vSphere Standard Switch.
B. It is connected to an NSX managed segment.
C. It is connected to a transport zone.
D. It is connected to the underlay.
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
Reference the CLI output.

What is the source IP address in the distributed firewall rule to accept HTTP traffic?
A. 172.16.30.11
B. 172.16.20.11
C. 172.16.10.11
D. 172.16.10.12
正解:C
質問 4:
Which are two use-cases for the NSX Distributed Firewall' (Choose two.)
A. Software defined networking
B. Security Analytics
C. Network Visualization
D. Zero-Trust with segmentation
E. Lateral Movement of Attacks prevention
正解:D,E
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
Which two are true of the NSX Gateway Firewall? (Choose two.)
A. Firewall rules in Pre Rule category are applied to all gateways.
B. NAT service can be configured in NSX Gateway Firewall policy.
C. Firewall rules in System category cannot be edited.
D. Security Groups can be used in Applied-To column.
E. Applied-To can be configured at Firewall Policy level.
正解:A,D
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
Which two are used to define dynamic groups for an NSX Distributed Firewall? (Choose two.)
A. physical servers
B. segment
C. machine name
D. tags
E. segment's port
正解:C,D
解説: (Pass4Test メンバーにのみ表示されます)
質問 7:
Which two statements are true about IDS/IPS signatures? (Choose two.)
A. Users can upload their own IDS signature definitions from the NSX UI.
B. IDS Signatures can be High Risk, Suspicious, Low Risk and Trustworthy.
C. Users can create their own IDS signature definitions from the NSX UI.
D. An IDS signature contains data used to identify known exploits and vulnerabilities.
E. An IDS signature contains a set of instructions that determine which traffic is analyzed.
正解:D,E
解説: (Pass4Test メンバーにのみ表示されます)
大栉** -
VMware会社のサービスもいい、5V0-41.21学習教材もいいです。だから、私は5V0-41.21試験に合格しました。